~ ZHPDiag v2023.12.5.60 Par Nicolas Coolman (2023/12/05) ~ Démarre par Josette Regnault (Administrator) (2023/12/19 14:57:38) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Josette Regnault\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Josette Regnault\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Demarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 19045) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v120.0.6099.110 ~ MSIE: Internet Explorer v11.3636.19041.0 ~ OBIE: Microsoft Edge v120.0.2210.77 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (2) - 3s ~ Windows Server License Manager Script : OK Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 2s Windows Defender W10 (Activate) (Protection) Malwarebytes version 4.6.7.301 v4.6.7.301 (Protection) ---\\ LOGICIELS ANTI-MALWARE (1) - 2s ~ RogueKiller version 15.13.1.0 v15.13.1.0 (Anti-Malware) ---\\ LOGICIELS D'OPTIMISATION (3) - 2s ~ CCleaner Browser v120.0.23442.109 (Optimisation) ~ CCleaner Update Helper v1.8.1583.3 (Optimisation) ~ CCleaner v6.19 (Optimisation) ---\\ INFORMATIONS SUR LE SYSTEME (18) - 2s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 631 GB (85%) free of 738 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 2 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 0 ~ Type de barrette (FormFactor): SO-DIMM ~ Taille (Size) : 4 Go ~ Vitesse (Speed) : 1333 ~ Charge mémoire (Memory Usage) : 41% ~ RAM physique Total (Total Physical) : 8 Go : OK ~ RAM physique Disponible (Available Physical) : 5 Go ~ Total virtuelle (Total Virtual) : 15.86 Go ~ Disponible virtuelle (Available Virtual): 11.78 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: JOSETTEREGNAULT ~ User Name: Josette Regnault ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (7) - 0s ~ Drive C: has 631 GB free of 738 GB (System) ~ Drive D: has 189 GB free of 199 GB ~ Drive F: has 0 GB free of 0 GB ---\\ ETAT DE LA COMMANDE TRIM ~ La commande TRIM est active (NTFS) ~ La commande TRIM est active (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (28) - 34s ~ Model: WDC WD10JPVX-00JC3T0 v01.01A01 (738 Gb ) ~ Media Type: HDD Disque Fixe ( Bus: SATA) ---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0 OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 18.775 OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 8.233 OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 16.073 OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown ---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute] OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [47][200][200] [51][0] OK - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [39][179][177] [21][2050] OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][91][91] [0][9655] OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][200][200] [140][0] OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [46][200][200] [0][0] OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][75][75] [0][18708] OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [50][100][100] [0][0] OK - 0B - Nombre de recalibration (Calibration Retry Count) - [50][100][100] [0][0] OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][92][92] [0][8160] OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [50][200][200] [0][80] OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [50][176][176] [0][8057] OK - C2 - Température interne actuelle (Enclosure Temperature) - [34][113][99] [0][34] OK - C4 - Nombre d'opérations de réallocations (remap) (Reallocation Event Count) - [50][200][200] [0][0] OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [50][200][200] [0][0] OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [48][100][253] [0][0] OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [50][200][200] [0][0] OK - C8 - Nombre Total d'erreurs d'écriture d'un secteur (Uncorrectable Sector Count) - [8][100][253] [0][0] ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 4s [MD5.02280F4613E3D8EB6579D79AB7A182CA] - 13/12/2023 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5550856] =>.Microsoft® [MD5.100F56A73211E0B2BCD076A55E6393FD] - 15/11/2023 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.1FD4446BC2C8154A3A063EF0DEE5C166] - 13/12/2023 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [427200] [Unsigned] =>.Microsoft Corporation [MD5.84A34BF3486F7B9B7035DB78D78BDD1E] - 15/11/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5039616] [Unsigned] =>.Microsoft Corporation [MD5.AC8E6842E0A9C37B747F62D23EF372E9] - 13/12/2023 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [905728] [Unsigned] =>.Microsoft Corporation [MD5.FDFCBEF77C6503730AE57E117A0CB3A9] - 15/11/2023 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.55C17AD6C235AF6F7F5C45F79D4D854B] - 15/11/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821392] =>.Microsoft® [MD5.8854E5A5353A5C3E9F5B93E5FDFFD0E3] - 15/11/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583168] =>.Microsoft® [MD5.1EB40BFFBAB2FDD69C949C63FA22CB10] - 15/11/2023 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3456512] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.A7068973DF4AE070B85A68C2F603E088] - 13/12/2023 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [656872] [Unsigned] =>.Microsoft Corporation [MD5.81FF48994C82B1CA2C4EBD9C6C6683C4] - 15/11/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31200] [Unsigned] =>.Microsoft Corporation [MD5.E53DE91C9330F0E17075C11CD0A7719A] - 15/11/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.D0F81A35A1A28117B8AB1C11FC0E363D] - 15/11/2023 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation [MD5.2824929F2BCC3EBDCFA92D628B94C51C] - 15/11/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.B3855513A8202B5F33C6192B09FDB9BF] - 15/11/2023 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138240] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.E1EF9BC57E7816DA7EAA9C98AB25140B] - 15/11/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [227840] [Unsigned] =>.Microsoft Corporation [MD5.80837B389013924ED89FF0B8280EC6CC] - 13/12/2023 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [580568] [Unsigned] =>.Microsoft Corporation [MD5.09D0F16FB9555790DA934BDC2543E940] - 15/11/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.1C834F90B547E5D6B59378384B389400] - 15/11/2023 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2844656] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.AB7EC8C94F4597212DAA92974C4585BA] - 15/11/2023 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.DFC63E0133E9A721B5B962F3A7E8F35D] - 15/11/2023 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.02577FC71C31F625B302566190AA1382] - 15/11/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118752] [Unsigned] =>.Microsoft Corporation [MD5.484DC5AD718AE12B3AD99B511FABE088] - 15/11/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [431088] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (6) - 4s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: Service CCleaner Browser Update (ccleaner) (ccleaner) . (.Piriform Software - CCleaner Browser.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® O23 - Service: MediatekRegistryWriter (MediatekRegistryWriter) . (.Mediatek Inc. - MediatekRegistryWriter.) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry.exe =>.MEDIATEK INC.® O23 - Service: MediatekRegistryWriter64 (MediatekRegistryWriter64) . (.Mediatek Inc. - MediatekRegistryWriter.) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry64.exe =>.MEDIATEK INC.® O23 - Service: RogueKiller RTP (rkrtservice) . (.ADLICE - .) - C:\Program Files\RogueKiller\RogueKillerSvc.exe =>.ADLICE® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (93) - 29s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [20/09/2023] [ 173040] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SR - Disabl [14/08/2018] [ 335872] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Demand [16/11/2017] [ 48624] AnchorFree TAP-Windows Adapter V9 (aftap0901) . (.The OpenVPN Project.) - C:\WINDOWS\System32\DRIVERS\aftap0901.sys =>.AnchorFree Inc® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [07/12/2019] [ 4233728] Qualcomm Atheros Exte (athr) . (.Qualcomm Atheros Communications, Inc..) - C:\WINDOWS\System32\drivers\athwnx.sys [Unsigned] =>.Qualcomm Atheros Communications, Inc. SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [20/01/2011] [ 67624] Broadcom xD Picture Bus Driver (b57xdbd) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\b57xdbd.sys =>.Broadcom Corporation® SR - Demand [20/01/2011] [ 19496] Broadcom xD Picture vstorp client (b57xdmp) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\b57xdmp.sys =>.Broadcom Corporation® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Demand [16/05/2011] [ 51240] (bScsiMSa) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bScsiMSa.sys =>.Broadcom Corporation® SR - Demand [06/05/2011] [ 86056] (bScsiSDa) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bScsiSDa.sys =>.Broadcom Corporation® SR - Auto [13/12/2022] [ 208176] Service CCleaner Browser Update (ccleaner) (ccleaner) . (.Piriform Software.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED® SS - Demand [13/12/2023] [ 1847224] CCleaner Browser Elevation Service (CCleanerBrowserElevatio (CCleanerBrowserElevationService) . (.Piriform Software.) - C:\Program Files (x86)\CCleaner Browser\Application\120.0.23442.109\elevation_service.exe =>.PIRIFORM SOFTWARE LIMITED® SS - Demand [13/12/2022] [ 208176] Service CCleaner Browser Update (ccleanerm) (ccleanerm) . (.Piriform Software.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED® SS - Demand [05/12/2023] [ 1082784] CCleaner Performance Optimizer Service (CCleanerPerformanceOptimizerService) . (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED® SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SS - Demand [09/03/2017] [ 300128] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SR - Demand [30/09/2022] [ 167440] SAMSUNG Mobile USB Com (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD.® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Disabl [17/12/2007] [ 163840] EPSON V5 Service4(01) (EPSON_EB_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40STB.EXE [Unsigned] =>.Seiko Epson Corporation SR - Disabl [11/01/2007] [ 126464] EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) . (.SEIKO EPSON CORPORATION.) - C:\ProgramData\EPSON\EPW!3 SSRP\E_S40RPB.EXE [Unsigned] =>.Seiko Epson Corporation SR - Demand [07/10/2015] [ 525512] ELAN Input Device (ETD) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\DRIVERS\ETD.sys =>.ELAN Microelectronics Corporation® SS - Demand [07/10/2015] [ 144072] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation® SS - Demand [12/12/2023] [ 1772832] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.110\elevation_service.exe =>.Google LLC® SR - Auto [02/12/2023] [ 162080] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SS - Demand [02/12/2023] [ 162080] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [09/03/2017] [ 5382856] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Microsoft® SR - Demand [06/03/2009] [ 51712] Intel 28F320C3 Flash Update De (int0800) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\flashud.sys [Unsigned] =>.Intel Corporation SR - Demand [15/10/2010] [ 317440] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\DRIVERS\IntcDAud.sys [Unsigned] =>.Intel(R) Corporation SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Demand [07/12/2019] [ 446464] Broadcom NetLink (TM) Gigabit Et (k57nd60a) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\k57nd60a.sys [Unsigned] =>.Broadcom Corporation SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [17/12/2023] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SS - Demand [17/12/2023] [ 9405400] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® SR - Demand [17/12/2023] [ 239576] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SR - Auto [04/12/2014] [ 405136] MediatekRegistryWriter (MediatekRegistryWriter) . (.Mediatek Inc..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry.exe =>.MEDIATEK INC.® SR - Auto [04/12/2014] [ 454288] MediatekRegistryWriter64 (MediatekRegistryWriter64) . (.Mediatek Inc..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry64.exe =>.MEDIATEK INC.® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [19/10/2010] [ 56344] Intel(R) Management Engine Interf (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\HECIx64.sys =>.Intel Corporation® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [07/12/2019] [ 2224128] RT2870 USB Extensi (netr28ux) . (.MediaTek Inc..) - C:\WINDOWS\System32\drivers\netr28ux.sys [Unsigned] =>.MediaTek Inc. SR - Disabl [29/12/2016] [ 458176] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® SR - Demand [17/01/2017] [14190520] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvacwu.inf_amd64_bdd6ea477d4e2fba\nvlddmkm.sys =>.NVIDIA Corporation® SR - Boot [17/01/2017] [ 48696] (nvpciflt) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\DRIVERS\nvpciflt.sys =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Disabl [27/11/2011] [ 2253120] NVIDIA Update Service Daemon (nvUpdatusService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Auto [05/12/2023] [16039344] RogueKiller RTP (rkrtservice) . (.ADLICE.) - C:\Program Files\RogueKiller\RogueKillerSvc.exe =>.ADLICE® SR - Demand [07/12/2019] [ 687616] Realtek RT (RTL8192su) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RTL8192su.sys [Unsigned] =>.Realtek Semiconductor Corporation SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [30/09/2022] [ 174112] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD.® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [18/12/2023] [ 54208] (TrueSight) . (. {169D2C94309C0380414BCFDD93A6B27D}..) - C:\Windows\System32\drivers\truesight.sys {169D2C94309C0380414BCFDD93A6B27D}. SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (20) - 16s O38 - TASK: {38575F59-A610-4E8D-BAB2-BD21EA1E0292} [64Bits][\GoogleUpdateTaskMachineCore{8D281090-9A48-4C91-A389-464AFD446D1E}] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080] =>.Google LLC O38 - TASK: {480DDCB1-95B2-4098-BE9E-4CC2FAAF336E} [64Bits][\CCleanerUpdateTaskMachineUA] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176] =>.Piriform Software O38 - TASK: {7E2954BA-7616-4157-8BBA-76AE03A25597} [64Bits][\CCleanerUpdateTaskMachineCore] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176] =>.Piriform Software O38 - TASK: {825327EB-B7E1-45C1-B7FF-203376CFE87D} [64Bits][\CCleaner Browser Heartbeat Task (Logon)] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3074496] =>.Piriform Software O38 - TASK: {856BFC46-E6CD-4EF1-B7DD-AE7EEA115AAB} [64Bits][\CCleaner Browser Heartbeat Task (Hourly)] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3074496] =>.Piriform Software O38 - TASK: {98868ECB-0D1E-4812-A95D-C611131B6668} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200] =>.Adobe Inc. O38 - TASK: {A22887A2-0251-440F-917A-E233DFE24A9F} [64Bits][\CCleanerCrashReporting] - (.Piriform Software - CCleaner Bug Report.) -- C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648] =>.Piriform Software O38 - TASK: {BE726F2B-D4C6-4ADF-97DD-C45478E21957} [64Bits][\CCleaner Update] - (.Piriform Software Ltd - CCleaner CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [714256] =>.Piriform Software Ltd O38 - TASK: {DCAE9767-2280-4DF2-92B4-47D43079CF39} [64Bits][\CCleanerSkipUAC - Josette Regnault] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [37458848] =>.Piriform Software Ltd O38 - TASK: {F1B9881C-17DF-4A23-87CF-A7130E3EE055} [64Bits][\GoogleUpdateTaskMachineUA{BD489EB7-9E53-4777-9204-11C4D62DE6CB}] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080] =>.Google LLC C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore{8D281090-9A48-4C91-A389-464AFD446D1E} - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google LLC C:\WINDOWS\System32\Tasks\CCleanerUpdateTaskMachineUA - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [/ua ./ua] =>.Piriform Software C:\WINDOWS\System32\Tasks\CCleanerUpdateTaskMachineCore - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [/c] =>.Piriform Software C:\WINDOWS\System32\Tasks\CCleaner Browser Heartbeat Task (Logon) - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [--type=heartbeat --logon.--type=heartbeat] =>.Piriform Software C:\WINDOWS\System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [--type=heartbeat --hourly.--type=heartbeat] =>.Piriform Software C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\WINDOWS\System32\Tasks\CCleanerCrashReporting - (.Piriform Software.) -- C:\Program Files\CCleaner\CCleanerBugReport.exe [1] =>.Piriform Software C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - Josette Regnault - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA{BD489EB7-9E53-4777-9204-11C4D62DE6CB} - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google LLC ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (25) - 3s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe [Unsigned] =>.Intel Corporation O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe [Unsigned] =>.Intel Corporation O4 - HKCU\..\Run: [EPSON SX100 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [Unsigned] =>.Seiko Epson Corporation O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Program Files\Microsoft OneDrive\OneDrive.exe =>.Microsoft® O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_6D10E82E99D7F10E1DF76E18803C7369] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKCU\..\Run: [TrayStatus] . (.Binary Fortress Software - TrayStatus.) -- C:\Program Files\TrayStatus\TrayStatus.exe {0CAA438A19CDE7C4B893C53BB58DE99F}. =>.Binary Fortress Software O4 - HKCU\..\Run: [KeyboardLeds.exe] . (.KARPOLAN - Keyboard LEDs.) -- C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe [Unsigned] =>.KARPOLAN O4 - HKCU\..\Run: [CCleanerBrowserAutoLaunch_B8BDA7FB0DE3C122FA02676A09BEB28A] . (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [NUSB3MON] . (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe =>.Renesas Electronics Corporation® O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [EPSON SX100 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEDE.EXE [Unsigned] =>.Seiko Epson Corporation O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Program Files\Microsoft OneDrive\OneDrive.exe =>.Microsoft® O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [MicrosoftEdgeAutoLaunch_6D10E82E99D7F10E1DF76E18803C7369] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [TrayStatus] . (.Binary Fortress Software - TrayStatus.) -- C:\Program Files\TrayStatus\TrayStatus.exe {0CAA438A19CDE7C4B893C53BB58DE99F}. =>.Binary Fortress Software O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [KeyboardLeds.exe] . (.KARPOLAN - Keyboard LEDs.) -- C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe [Unsigned] =>.KARPOLAN O4 - HKUS\S-1-5-21-1866081160-206520495-2343403741-1000\..\Run: [CCleanerBrowserAutoLaunch_B8BDA7FB0DE3C122FA02676A09BEB28A] . (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED® ---\\ PROCESSUS LANCES (41) - 21s [MD5.920B704FD1BE9B9C6E64AA042961653B] - (.Adobe Inc. - Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040] [PID.3164] =>.Adobe Inc.® [MD5.E3AD7C396002C00BBDD346BA43418FA5] - (.Mediatek Inc. - MediatekRegistryWriter.) -- C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry.exe [405136] [PID.3344] =>.MEDIATEK INC.® [MD5.A4A92227408FF2A694AC01FCBE4F4432] - (.Mediatek Inc. - MediatekRegistryWriter.) -- C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry64.exe [454288] [PID.3376] =>.MEDIATEK INC.® [MD5.C4F55F56913AE71F9CF6FBCF480765F4] - (...) -- C:\Program Files\RogueKiller\RogueKillerSvc.exe [16039344] [PID.3628] =>.ADLICE® [MD5.8EB5A3BCA26ACB6688A0CD7B35CFDAD9] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe [301856] [PID.8652] =>.Google LLC® [MD5.15C1CADD3729AE6A4C1F8FA08D61BDC6] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe [402208] [PID.8564] =>.Google LLC® [MD5.17F4ABC9F07E14AF7F85FEC171F70536] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [809952] [PID.6816] =>.Microsoft® [MD5.3501FCB3D4B149411A49B86AD4F04FC7] - (...) -- C:\Program Files\RogueKiller\RogueKiller64.exe [35511728] [PID.8824] =>.ADLICE® [MD5.E3E342BBE0522FD1CB5F5CF21E31C4E4] - (.KARPOLAN - Keyboard LEDs.) -- C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe [912896] [PID.10952] [Unsigned] =>.KARPOLAN [MD5.381594B4F1101549EF3106F4AC779A08] - (.Adobe Systems Incorporated - Acrobat Collaboration Synchronizer 23.6.) -- C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11517400] [PID.12280] =>.Adobe Inc.® [MD5.381594B4F1101549EF3106F4AC779A08] - (.Adobe Systems Incorporated - Acrobat Collaboration Synchronizer 23.6.) -- C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11517400] [PID.11608] =>.Adobe Inc.® [MD5.56D0881DF1E6AA6518BBC0C347D0E73C] - (...) -- C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe [436744] [PID.5128] =>.Adobe Systems, Incorporated® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.3032] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.6944] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.6204] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.8936] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.10072] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.9012] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.10264] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.1856] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.9196] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.10136] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.10324] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.4984] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.3580] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.3432] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.6768] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.6308] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.10920] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.11196] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.11160] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.11036] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.8668] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.6456] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.8996] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.8788] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.8104] =>.Google LLC® [MD5.E057CDAB57CFF8A581B7CCF0552EA48F] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Josette Regnault\AppData\Roaming\ZHP\ZHPSuite.exe [3570848] [PID.9804] [Unsigned] =>.Nicolas Coolman [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.9308] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.13140] =>.Google LLC® [MD5.DCA0EC2AEC1E6ED84321288E80132952] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2693920] [PID.5520] =>.Google LLC® ---\\ CHROME, Démarrage, Recherche, Extensions (10) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc. G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.duckduckgo.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://encrypted.google.com =>.Google Inc. G2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button} G2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [kmhkepipobnjllejbafajoemahjejdcm] iGraal =>Toolbar.Graal G2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Josette Regnault][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Josette Regnault][User Data\Default\Local Extension Settings] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button} G2 - GCE: Preference [Josette Regnault][User Data\Default\Local Extension Settings] [kmhkepipobnjllejbafajoemahjejdcm] =>Toolbar.Graal ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (33) - 4s P2 - EXT FILE: (.Language: English (CA) - Firefox Language Pack for English (CA).) -- C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\extensions\langpack-en-CA@firefox.mozilla.org.xpi [Unsigned] P2 - EXT FILE: (.Language: Français (French) - Firefox Language Pack for Français (fr.) -- C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\extensions\langpack-fr@firefox.mozilla.org.xpi [Unsigned] P2 - EXT FILE: (.uBlock Origin.) -- C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\extensions\uBlock0@raymondhill.net.xpi [Unsigned] =>.uBlock Origin P2 - EXT FILE: (.Download Video.) -- C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}.xpi [Unsigned] =>.Download Video C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\crashes =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\datareporting =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\extensions =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\gmp-widevinecdm =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\minidumps =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\saved-telemetry-pings =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\security_state =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\sessionstore-backups =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\settings =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\shader-cache =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\jtt7ag3w.default-release-1679059830944\storage =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\blocklists C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\browser-extension-data =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\crashes =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\datareporting =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\extensions =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\features =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\gmp =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\gmp-widevinecdm =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\minidumps =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\saved-telemetry-pings =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\sessionstore-backups =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\storage =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\weave =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\browser-extension-data\screenshots@mozilla.org =>Mozilla Corporation C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\browser-extension-data\uBlock0@raymondhill.net =>uBlock C:\Users\Josette Regnault\AppData\Roaming\Mozilla\Firefox\Profiles\wf4cz41t.default\browser-extension-data\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} =>Download Flash and Video ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.3758 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (15) - 1s E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [bkgoflemacdadndiohhdnphcmdhacabg] E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [dpdmhfocilnekecfjgimjdeckachfbec] =>.Dropbox Inc. {For Gmail} E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [fllaojicojecljbmefodhfapmkghcbnh] =>.ga-extension-publishers {Désactivation Google Analytics} E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [giceanipjojfnkbciljjblakfkihbjdb] Voir mes recettes =>.recettes.net E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [hgfjoaookbahbhinopgfoiajfijfcdhm] iGraal =>Toolbar.Graal E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [jfcjijcigimhjjdimpghneggnegiphhh] E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [Josette Regnault][User Data\Default\Extensions] [mihcahmgecmbnbcchbopgniflfhgnkff] =>.Google Inc. {Verifier} E2 - GCE: Preference [Josette Regnault][User Data\Default\Local Extension Settings] [bkgoflemacdadndiohhdnphcmdhacabg] E2 - GCE: Preference [Josette Regnault][User Data\Default\Local Extension Settings] [hgfjoaookbahbhinopgfoiajfijfcdhm] E2 - GCE: Preference [Josette Regnault][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [Josette Regnault][User Data\Default\Sync Extension Settings] [dpdmhfocilnekecfjgimjdeckachfbec] =>.Dropbox Inc. {For Gmail} E2 - GCE: Preference [Josette Regnault][User Data\Default\Sync Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes ---\\ INTERNET EXPLORER,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (40) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.77\BHO\ie_to_edge_bho_64.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (78) - 10s O4 - GS\Desktop [joset]: 1unzip.lnk . (...) C:\Users\Josette Regnault\AppData\Roaming\1unzip\1unzip\1unzip.exe [Unsigned] O4 - GS\Desktop [joset]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Josette Regnault\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [joset]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Josette Regnault\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [joset]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=quicklaunch =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\Quicklaunch [joset]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Quicklaunch [joset]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Quicklaunch [joset]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [joset]: Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE /recycle =>.Microsoft Corporation® O4 - GS\sendTo [joset]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [joset]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [joset]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [joset]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=taskbar =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\TaskBar [joset]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\TaskBar [joset]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\TaskBar [joset]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\TaskBar [joset]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [joset]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [joset]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\TaskBar [joset]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft® O4 - GS\Startup [joset]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Startup [joset]: Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Startup [joset]: TrayStatus.lnk . (.Binary Fortress Software - .) C:\Program Files (x86)\TrayStatus\TrayStatus.exe [Unsigned] =>.Binary Fortress Software O4 - GS\Desktop [Josette Regnault]: 1unzip.lnk . (...) C:\Users\Josette Regnault\AppData\Roaming\1unzip\1unzip\1unzip.exe [Unsigned] O4 - GS\Desktop [Josette Regnault]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Josette Regnault\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Josette Regnault]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Josette Regnault\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Josette Regnault]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=quicklaunch =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\Quicklaunch [Josette Regnault]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Quicklaunch [Josette Regnault]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Quicklaunch [Josette Regnault]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [Josette Regnault]: Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE /recycle =>.Microsoft Corporation® O4 - GS\sendTo [Josette Regnault]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Josette Regnault]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Josette Regnault]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Josette Regnault]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=taskbar =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\TaskBar [Josette Regnault]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\TaskBar [Josette Regnault]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\TaskBar [Josette Regnault]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\TaskBar [Josette Regnault]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [Josette Regnault]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Josette Regnault]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\TaskBar [Josette Regnault]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft® O4 - GS\Startup [Josette Regnault]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Startup [Josette Regnault]: Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Startup [Josette Regnault]: TrayStatus.lnk . (.Binary Fortress Software - .) C:\Program Files (x86)\TrayStatus\TrayStatus.exe [Unsigned] =>.Binary Fortress Software O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\CommonDesktop [Public]: Keyboard LEDs.lnk . (.KARPOLAN - Keyboard LEDs.) C:\Program Files (x86)\Keyboard LEDs\KeyboardLeds.exe [Unsigned] =>.KARPOLAN O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: RogueKiller.lnk . (...) C:\Program Files\RogueKiller\RogueKiller64.exe =>.ADLICE® O4 - GS\CommonDesktop [Public]: VideoPad - Logiciel de montage vidéo.lnk . (.NCH Software - VideoPad - Logiciel de montage vidéo.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software, Inc.® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\WINDOWS\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: Mediatek Wireless Utility.lnk . (.Mediatek Inc. - Mediatek Wireless LAN Card Utility.) C:\Program Files (x86)\MediatekWiFi\Common\RaUI.exe -s [Unsigned] =>.MediaTek Inc. O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico [Unsigned] =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=tile =>.PIRIFORM SOFTWARE LIMITED® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: OneDrive.lnk . (.Microsoft Corporation - Accédez à vos fichiers les plu.) C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Suite NCH.lnk . (.NCH Software - VideoPad - Logiciel de montage vidéo.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe -extsuite =>.NCH Software, Inc.® O4 - GS\ProgramsCommon [Public]: Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: VideoPad - Logiciel de montage vidéo.lnk . (.NCH Software - VideoPad - Logiciel de montage vidéo.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software, Inc.® O4 - GS\ProgramsCommon [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (5) - 1s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{217DE529-51BA-41BC-A67C-1A65DB17A435}: NameServer = 208.67.222.222,208.67.220.220 =>.OpenDNS, LLC DNS O17 - HKLM\System\CCS\Services\Tcpip\..\{217DE529-51BA-41BC-A67C-1A65DB17A435}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{E3416823-4B63-4451-8294-EEA4B0E450C0}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{e85eed5e-4a92-4461-bd83-59a8d7f95e52}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (23) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (2) - 0s O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 376.) - C:\Windows\System32\DriverStore\FileRepository\nvacwu.inf_amd64_bdd6ea477d4e2fba\nvinitx.dll =>.NVIDIA Corporation O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\System32\userinit.exe =>.Microsoft Corporation ---\\ CLE DE REGISTRE EXPLORER StartupApproved (28) - 1s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EPSON SX100 Series [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:TrayStatus [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleanerBrowserAutoLaunch_B8BDA7FB0DE3C122FA02676A09BEB28A [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_6D10E82E99D7F10E1DF76E18803C7369 [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Thunderbird.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:TrayStatus.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Google Chrome.lnk [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EPSON SX100 Series [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:TrayStatus [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleanerBrowserAutoLaunch_B8BDA7FB0DE3C122FA02676A09BEB28A [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_6D10E82E99D7F10E1DF76E18803C7369 [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Thunderbird.lnk [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:TrayStatus.lnk [HKEY_USERS\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Google Chrome.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IgfxTray =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HotKeysCmds =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Persistence =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ETDCtrl =>.Elantech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:NUSB3MON [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Dropbox =>.Dropbox Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:ETDCtrl =>.Elantech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Mediatek Wireless Utility.lnk ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (8) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: CCleaner Browser [64Bits] - {052EB454-9F19-CB42-7875-807F79F311C4} . (.Piriform Software - CCleaner Browser Installer.) -- C:\Program Files (x86)\CCleaner Browser\Application\120.0.23442.109\Installer\chrmstp.exe =>.PIRIFORM SOFTWARE LIMITED® O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\120.0.6099.110\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.77\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (47) - 31s O42 - Logiciel: 1unzip - (.1unzip.) [HKCU][64Bits] -- 1unzip 1unzip [Unsigned] O42 - Logiciel: ABBYY FineReader 6.0 Sprint - (.ABBYY Software House.) [HKLM][64Bits] -- {ACF60000-22B9-4CE9-98D6-2CCF359BAC07} [Unsigned] =>.ABBYY Software House O42 - Logiciel: Adobe Acrobat (64-bit) - (.Adobe.) [HKLM][64Bits] -- {AC76BA86-1036-1033-7760-BC15014EA700} [Unsigned] =>.Adobe O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-018244601053} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} [Unsigned] =>.Atheros O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {4710662C-8204-4334-A977-B1AC9E547819} [Unsigned] =>.Broadcom Corporation O42 - Logiciel: Broadcom NetLink Controller - (.Broadcom Corporation.) [HKLM][64Bits] -- {C91DCB72-F5BB-410D-A91A-314F5D1B4284} [Unsigned] =>.Broadcom Corporation O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Software Ltd® O42 - Logiciel: CCleaner Browser - (.Auteurs de CCleaner Browser.) [HKLM][64Bits] -- CCleaner Browser =>.PIRIFORM SOFTWARE LIMITED® O42 - Logiciel: CCleaner Update Helper - (.Piriform Software.) [HKLM][64Bits] -- {E4EAC0E2-A80B-479F-BA45-DCDA595C9A93} [Unsigned] =>.Piriform Software (Hidden) O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: ELAN Touchpad 11.15.0.18_X64 - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation® O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {DEDB47A3-C988-4A43-A645-E2CEA571E680} =>.Macrovision Corporation® O42 - Logiciel: EPSON Scan - (.Epson/Seico.) [HKLM][64Bits] -- EPSON Scanner =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Stylus SX100_TX100 Manuel - (.Epson/Seico.) [HKLM][64Bits] -- EPSON Stylus SX100_TX100 Guide d'utilisation =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON SX100 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX100 Series =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Web-To-Page - (.Epson/Seico.) [HKLM][64Bits] -- {7F14F68C-17FA-4F88-B3FD-7F449C1EBF32} [Unsigned] =>.Epson/Seico O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Keyboard LEDs - (.KARPOLAN.) [HKLM][64Bits] -- Keyboard LEDs [Unsigned] =>.KARPOLAN O42 - Logiciel: Malwarebytes version 4.6.7.301 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Mediatek RT2870 Wireless LAN Card - (.MediatekWiFi.) [HKLM][64Bits] -- {28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D} [Unsigned] =>.MediatekWiFi O42 - Logiciel: Microsoft Windows Debugging Symbols - (.Microsoft.) [HKLM][64Bits] -- {46EA439E-2D16-49B6-AA80-00DE992FE7CE} [Unsigned] =>.Microsoft O42 - Logiciel: Molotov - (.Molotov.) [HKCU][64Bits] -- Molotov [Unsigned] =>.Molotov O42 - Logiciel: Mozilla Thunderbird (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 115.5.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Optimus 1.5.21 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Update Components - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: OpenOffice 4.1.8 - (.Apache Software Foundation.) [HKLM][64Bits] -- {FDE124E1-6198-42CB-8A93-B383D9B9FD25} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: Package de pilotes Windows - Qualcomm (qcusbnet) Net (01/22/2015 4.0.3.4) - (.Qualcomm.) [HKLM][64Bits] -- 5A3651B0569E399BEACAC74DE336290F6E851732 =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Qualcomm Incorporated (qcfilter) USB (01/14/2 - (.Qualcomm Incorporated.) [HKLM][64Bits] -- C2E3ECA9120E1236452A8B0CD770442818376C1D =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Qualcomm Incorporated (qcusbser) Modem (12/04 - (.Qualcomm Incorporated.) [HKLM][64Bits] -- F5E607889C343E26F5189058973A947D741D1DDC =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - Qualcomm Incorporated (qcusbser) Ports (12/04 - (.Qualcomm Incorporated.) [HKLM][64Bits] -- 914AB492E06987587BF2D1448ED3A10B84BB7CA1 =>.Microsoft Windows® O42 - Logiciel: Panneau de configuration NVIDIA 376.54 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} [Unsigned] =>.Renesas Electronics Corporation (Hidden) O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} [Unsigned] =>.Renesas Electronics Corporation O42 - Logiciel: RogueKiller version 15.13.1.0 - (.Adlice Software.) [HKLM][64Bits] -- 8B3D7924-ED89-486B-8322-E8594065D5CB_is1 =>.ADLICE® O42 - Logiciel: TrayStatus - (.Binary Fortress Software.) [HKLM][64Bits] -- d6b74f60-2e9d-4c60-a8b7-b7d737c44ad4_is1 {0CAA438A19CDE7C4B893C53BB58DE99F}. =>.Binary Fortress Software O42 - Logiciel: VideoPad - Logiciel de montage vidéo - (.NCH Software.) [HKLM][64Bits] -- VideoPad =>.NCH Software, Inc.® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: Vulkan Run Time Libraries 1.0.26.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.26.0 =>.LunarG, Inc.® ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (148) - 31s HKLM\SOFTWARE\Ada2 HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AE Protection =>.Legitimate HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\dotnet HKLM\SOFTWARE\DTS =>.Creative Technology HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\ESET =>.ESET HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\SonicFocus =>.Sonic Focus HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ABBYY =>.ABBYY Software HKLM\SOFTWARE\WOW6432Node\Ada2 HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\WOW6432Node\dotnet HKLM\SOFTWARE\WOW6432Node\EPSON =>.EPSON HKLM\SOFTWARE\WOW6432Node\Eset =>.ESET HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\KARPOLAN =>.KARPOLAN HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\Mediatek =>.Mediatek Corporation HKLM\SOFTWARE\WOW6432Node\MediatekWiFi =>.Mediatek Corporation HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\NCH Software =>.NCH Software HKLM\SOFTWARE\WOW6432Node\NCH Swift Sound =>.NCH Swift Sound HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\ABBYY =>.ABBYY Software HKCU\SOFTWARE\Adlice Software =>.Adlice Software HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\Binary Fortress Software =>.Binary Fortress Software HKCU\SOFTWARE\CCleaner Browser HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Common =>.Corel Corporation HKCU\SOFTWARE\Dropbox =>.Dropbox HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\EPSON =>.EPSON HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\IncrediMail =>.IncrediMail HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\KARPOLAN =>.KARPOLAN HKCU\SOFTWARE\Lavasoft =>.Lavasoft HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\NCH Software =>.NCH Software HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\skypeapp-7e40a957c262 =>.Skype Technologies HKCU\SOFTWARE\skypeapp-ff7296c1b794 =>.Skype Technologies HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\SYNCJM =>.SYNCJM HKCU\SOFTWARE\Thunderbird =>.Thunderbird HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software HKU\.DEFAULT\SOFTWARE\Adobe =>.Adobe HKU\.DEFAULT\SOFTWARE\Dropbox =>.Dropbox HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\.DEFAULT\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\7-Zip =>.Igor Pavlov HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\ABBYY =>.ABBYY Software HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Adlice Software =>.Adlice Software HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Binary Fortress Software =>.Binary Fortress Software HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\CCleaner Browser HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Common =>.Corel Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Dropbox =>.Dropbox HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Elantech =>.Elantech Inc. HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\EPSON =>.EPSON HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Google =>.Google HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\IncrediMail =>.IncrediMail HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\KARPOLAN =>.KARPOLAN HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Lavasoft =>.Lavasoft HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Licenses =>.Microsoft Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\NCH Software =>.NCH Software HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\ProtectedStorage =>.Microsoft Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Skype =>.Skype HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\skypeapp-7e40a957c262 =>.Skype Technologies HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\skypeapp-ff7296c1b794 =>.Skype Technologies HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\SYNCJM =>.SYNCJM HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Thunderbird =>.Thunderbird HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-1866081160-206520495-2343403741-1000\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (7) - 1s C:\Program Files (x86)\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.7.2.0_x64__gs5k5vmxr2ste - (.Matt Hafner.) [][WiFi Analyzer] C:\Program Files (x86)\WindowsApps\4041090013366.YouTubev2.0_1.0.29.0_x64__k5n3qe4w2etea - (.GA71MOV.) [][YouTube v2.0] C:\Program Files (x86)\WindowsApps\AdobeAcrobatReaderCoreApp_23.0.0.0_x64__pc75e8sa7ep4e - (..) [][Adobe Acrobat Reader] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.3636_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.3636.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r - (.Adobe Systems Incorporated.) [][Reader Notification Client] =>Adobe Systems Incorporated C:\Program Files (x86)\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0 - (.Spotify.) [][Spotify Music] =>Spotify ---\\ CONTENU DES DOSSIERS PROGRAMMES (130) - 12s O43 - CFD: 06/11/2021 - [] D -- C:\Program Files\Adobe =>.Adobe Inc.® O43 - CFD: 11/05/2017 - [] D -- C:\Program Files\Broadcom =>.Broadcom O43 - CFD: 16/12/2023 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 15/11/2023 - [] D -- C:\Program Files\dotnet =>..NET® O43 - CFD: 10/02/2020 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 26/10/2020 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation® O43 - CFD: 02/12/2023 - [] D -- C:\Program Files\Google =>.Google LLC® O43 - CFD: 17/12/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 26/10/2020 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 18/12/2023 - [] D -- C:\Program Files\RogueKiller =>.Adlice Software O43 - CFD: 11/10/2023 - [] D -- C:\Program Files\RUXIM =>.Microsoft® O43 - CFD: 02/05/2023 - [] D -- C:\Program Files\TrayStatus =>.Binary Fortress Software O43 - CFD: 25/05/2018 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 03/12/2018 - [] D -- C:\Program Files\WinRAR =>.WinRAR O43 - CFD: 12/05/2017 - [] D -- C:\Program Files (x86)\ABBYY FineReader 6.0 Sprint =>.ABBYY Software O43 - CFD: 23/05/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.® O43 - CFD: 22/11/2017 - [] D -- C:\Program Files (x86)\Atheros =>.Qualcomm Atheros O43 - CFD: 18/12/2023 - [] D -- C:\Program Files (x86)\CCleaner Browser =>.PIRIFORM SOFTWARE LIMITED® O43 - CFD: 09/08/2020 - [] D -- C:\Program Files (x86)\epson =>.SEIKO EPSON Corporation® O43 - CFD: 24/05/2020 - [] D -- C:\Program Files (x86)\Epson Software =>.Epson/Seico O43 - CFD: 19/12/2023 - [] D -- C:\Program Files (x86)\Google =>.Google LLC® O43 - CFD: 01/10/2022 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 11/05/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 26/04/2023 - [] D -- C:\Program Files (x86)\Keyboard LEDs =>.Electronic Data Systems O43 - CFD: 01/10/2022 - [] D -- C:\Program Files (x86)\MediatekWiFi =>.Mediatek Corporation O43 - CFD: 17/12/2020 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 16/12/2023 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla O43 - CFD: 18/04/2019 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software O43 - CFD: 29/10/2020 - [] D -- C:\Program Files (x86)\NutsAboutNets O43 - CFD: 26/10/2020 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 16/12/2020 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 11/05/2017 - [] D -- C:\Program Files (x86)\Renesas Electronics =>.Renesas Electronics Corporation® O43 - CFD: 16/10/2019 - [0] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics O43 - CFD: 26/04/2023 - [] D -- C:\Program Files (x86)\TrayStatus =>.Binary Fortress Software O43 - CFD: 25/05/2018 - [0] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 11/02/2020 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 6.0 Sprint =>.ABBYY Software O43 - CFD: 15/11/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software =>.Epson/Seico O43 - CFD: 26/04/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Keyboard LEDs =>.Electronic Data Systems O43 - CFD: 01/10/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mediatek Wireless =>.Mediatek Corporation O43 - CFD: 16/12/2020 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.8 =>.SourceForge O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Renesas Electronics =>.Renesas Electronics O43 - CFD: 18/12/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller =>.Adlice Software O43 - CFD: 02/05/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrayStatus =>.Binary Fortress Software O43 - CFD: 05/04/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UDPixel O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 06/11/2021 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 11/05/2017 - [] D -- C:\ProgramData\Atheros =>.Qualcomm Atheros O43 - CFD: 26/04/2023 - [] D -- C:\ProgramData\Binary Fortress Software =>.Binary Fortress Software O43 - CFD: 28/04/2022 - [0] D -- C:\ProgramData\CCleaner Browser O43 - CFD: 18/12/2017 - [] D -- C:\ProgramData\Doctor Web =>.Doctor Web Ltd O43 - CFD: 12/05/2017 - [] D -- C:\ProgramData\EPSON =>.EPSON O43 - CFD: 08/10/2018 - [] D -- C:\ProgramData\IM =>.IncrediMail Ltd O43 - CFD: 08/10/2018 - [] D -- C:\ProgramData\IncrediMail =>.IncrediMail O43 - CFD: 11/12/2023 - [0] D -- C:\ProgramData\Lavasoft =>.Lavasoft O43 - CFD: 17/12/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 01/10/2022 - [] D -- C:\ProgramData\Mediatek Driver =>.Mediatek Corporation O43 - CFD: 19/12/2023 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 18/04/2019 - [] D -- C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 26/10/2020 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 11/05/2017 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 05/09/2022 - [] D -- C:\ProgramData\Piriform =>.Piriform O43 - CFD: 18/12/2023 - [] D -- C:\ProgramData\RogueKiller =>.Adlice Software O43 - CFD: 04/10/2018 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 01/09/2017 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 06/11/2021 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 15/02/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 24/05/2020 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 11/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 03/12/2018 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\1unzip O43 - CFD: 29/10/2020 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Acrylic Wi-Fi Home =>.Acrylic O43 - CFD: 07/11/2021 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 10/12/2020 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\AnyDesk =>.philandro Software GmbH O43 - CFD: 21/11/2022 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\com.adobe.dunamis =>.Adobe Inc. O43 - CFD: 29/10/2020 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Etwok O43 - CFD: 12/05/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 17/12/2023 - [0] D -- C:\Users\Josette Regnault\AppData\Roaming\Lavasoft =>.Lavasoft O43 - CFD: 21/08/2019 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Molotov =>.Molotov O43 - CFD: 08/12/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 24/04/2019 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\NCH Software =>.NCH Software O43 - CFD: 25/06/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 05/04/2019 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 02/08/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Remo =>.Remo Inc O43 - CFD: 27/06/2020 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Skype =>.Skype O43 - CFD: 02/08/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\SMP O43 - CFD: 03/08/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\SMP Optimizer O43 - CFD: 12/08/2020 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Thunderbird =>.Thunderbird O43 - CFD: 26/04/2023 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\TrayStatus =>.Binary Fortress Software O43 - CFD: 15/08/2023 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 11/05/2017 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 19/12/2023 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 29/10/2019 - [] D -- C:\Users\Josette Regnault\AppData\Local\Adobe =>.Adobe O43 - CFD: 12/10/2023 - [] D -- C:\Users\Josette Regnault\AppData\Local\Backup =>.Symantec O43 - CFD: 28/11/2019 - [] D -- C:\Users\Josette Regnault\AppData\Local\Binary_Fortress_Software O43 - CFD: 12/02/2020 - [] D -- C:\Users\Josette Regnault\AppData\Local\cache =>.Legitimate O43 - CFD: 11/05/2022 - [] D -- C:\Users\Josette Regnault\AppData\Local\CCleaner Browser O43 - CFD: 27/05/2017 - [] D -- C:\Users\Josette Regnault\AppData\Local\CEF =>.CEF O43 - CFD: 21/09/2023 - [] D -- C:\Users\Josette Regnault\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 02/12/2023 - [] D -- C:\Users\Josette Regnault\AppData\Local\Google =>.Google O43 - CFD: 08/10/2018 - [] D -- C:\Users\Josette Regnault\AppData\Local\IM =>.IncrediMail Ltd O43 - CFD: 17/12/2023 - [0] D -- C:\Users\Josette Regnault\AppData\Local\Lavasoft =>.Lavasoft O43 - CFD: 18/12/2023 - [] D -- C:\Users\Josette Regnault\AppData\Local\Malwarebytes =>.Malwarebytes O43 - CFD: 19/08/2018 - [] D -- C:\Users\Josette Regnault\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 20/09/2018 - [] D -- C:\Users\Josette Regnault\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 21/08/2019 - [] D -- C:\Users\Josette Regnault\AppData\Local\Molotov =>.Molotov O43 - CFD: 08/12/2017 - [] D -- C:\Users\Josette Regnault\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 11/05/2017 - [] D -- C:\Users\Josette Regnault\AppData\Local\mpress =>.MPress O43 - CFD: 05/04/2019 - [] D -- C:\Users\Josette Regnault\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 13/05/2017 - [0] D -- C:\Users\Josette Regnault\AppData\Local\Skype =>.Skype O43 - CFD: 07/11/2021 - [] D -- C:\Users\Josette Regnault\AppData\Local\SolidDocuments =>.SolidDocuments O43 - CFD: 09/05/2019 - [] D -- C:\Users\Josette Regnault\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 19/08/2018 - [] D -- C:\Users\Josette Regnault\AppData\Local\Thunderbird =>.Thunderbird O43 - CFD: 26/04/2023 - [] D -- C:\Users\Josette Regnault\AppData\Local\TrayStatus =>.Binary Fortress Software O43 - CFD: 15/12/2023 - [] D -- C:\Users\Josette Regnault\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 10/10/2018 - [] D -- C:\Users\Josette Regnault\AppData\Local\{003ACA6A-C058-424D-B955-A82DE5375C64} O43 - CFD: 05/04/2019 - [] D -- C:\Users\Josette Regnault\AppData\Local\Programs\Opera =>.Opera Software O43 - CFD: 30/10/2018 - [] D -- C:\Users\Josette Regnault\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 16/09/2023 - [0] D -- C:\Users\Josette Regnault\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 03/07/2023 - [] D -- C:\Users\Josette Regnault\Desktop\fibre O43 - CFD: 04/07/2021 - [] D -- C:\Users\Josette Regnault\Desktop\Le Spray Déodorant Anti-Odeurs Pour les Pieds Qui Puent._files O43 - CFD: 06/07/2023 - [] D -- C:\Users\Josette Regnault\Desktop\Mes prélèvements - www.cesu.urssaf.fr_files O43 - CFD: 15/12/2023 - [] D -- C:\Users\Josette Regnault\Desktop\pc qui rame_files O43 - CFD: 26/10/2020 - [] D -- C:\Users\Josette Regnault\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1unzip O43 - CFD: 26/10/2020 - [] RD -- C:\Users\Josette Regnault\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 17/12/2023 - [0] D -- C:\Users\Josette Regnault\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft O43 - CFD: 21/08/2019 - [0] D -- C:\Users\Josette Regnault\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Molotov =>.Molotov O43 - CFD: 06/11/2021 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: UpToDateCloudOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: UpToDatePinnedOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: ReadOnlyOverlayHandler Class [ OneDrive6] - {9AA2F32D-362A-42D9-9328-24A483E2CCC3}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: UpToDateUnpinnedOverlayHandler Class [ OneDrive7] - {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 3s O108 - CMH1: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll =>.Microsoft® O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 1s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTEME (79) - 23s O58 - SDL:2019/12/07 10:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2017/11/16 10:29:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\aftap0901.sys [48624] =>.AnchorFree Inc® O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwnx.sys [4233728] [Unsigned] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2011/01/20 17:15:28 A . (.Broadcom Corporation - Broadcom xD Picture Card Bus Driver.) -- C:\WINDOWS\System32\drivers\b57xdbd.sys [67624] =>.Broadcom Corporation® O58 - SDL:2011/01/20 17:15:30 A . (.Broadcom Corporation - Broadcom xD Picture Card Miniport Driver.) -- C:\WINDOWS\System32\drivers\b57xdmp.sys [19496] =>.Broadcom Corporation® O58 - SDL:2019/12/07 10:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2011/05/16 13:57:32 A . (.Broadcom Corporation - Broadcom Memory Stick Driver.) -- C:\WINDOWS\System32\drivers\bScsiMSa.sys [51240] =>.Broadcom Corporation® O58 - SDL:2011/05/06 09:11:12 A . (.Broadcom Corporation - Broadcom SD 3.0 Driver.) -- C:\WINDOWS\System32\drivers\bScsiSDa.sys [86056] =>.Broadcom Corporation® O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2023/10/11 10:14:03 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/10/07 02:11:38 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\WINDOWS\System32\drivers\ETD.sys [525512] =>.ELAN Microelectronics Corporation® O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2009/03/06 19:38:24 A . (.Intel Corporation - BIOS Update Driver.) -- C:\WINDOWS\System32\drivers\flashud.sys [51712] [Unsigned] =>.Intel Corporation O58 - SDL:2010/10/19 22:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2019/12/07 10:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2017/03/09 01:16:06 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5382856] =>.Microsoft® O58 - SDL:2010/10/15 15:28:18 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [317440] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\WINDOWS\System32\drivers\k57nd60a.sys [446464] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2023/12/17 09:38:56 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2023/12/17 09:38:45 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft® O58 - SDL:2023/12/17 09:39:48 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239576] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28ux.sys [2224128] [Unsigned] =>.MediaTek Inc. O58 - SDL:2017/01/17 05:56:42 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvpciflt.sys [48696] =>.NVIDIA Corporation® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2019/12/07 10:07:47 A . (.Realtek Semiconductor Corporation - Realtek RTL8192S USB NDIS Driver.) -- C:\WINDOWS\System32\drivers\RTL8192su.sys [687616] [Unsigned] =>.Realtek Semiconductor Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2022/09/30 04:23:56 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [167440] =>.Samsung Electronics CO., LTD.® O58 - SDL:2022/09/30 04:24:08 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [174112] =>.Samsung Electronics CO., LTD.® O58 - SDL:2019/12/07 10:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2023/12/18 17:17:36 A . (...) -- C:\WINDOWS\System32\drivers\truesight.sys [54208] {169D2C94309C0380414BCFDD93A6B27D}. O58 - SDL:2019/12/07 10:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 1s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.Piriform Software O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.Piriform Software O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.Piriform Software O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 16s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (50) - 3s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [304128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1341952] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [161280] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [813056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [487424] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [542720] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [131584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2468352] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [333824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [489472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1130496] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [864256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1485312] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2257920] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1538560] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1009152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [654848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [322560] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3456512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [941680] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [570368] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1050112] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [295424] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556032] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [904192] [Unsigned] =>.Microsoft Corporation ---\\ PACKAGES WINDOWS INSTALLER (33) - 116s [MD5.50EA7A4D9481B12A97070942F474D918] [WIS][2018/05/17 15:37:42] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\1cab387.msi [40960] =>.Google Inc. [MD5.AB69C49C8D15FB8CFBACE8DF5BF86720] [WIS][2023/10/19 09:42:06] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\2424857e.msi [1060352] =>.Adobe Systems Incorporated [MD5.A8D5ABEA01654F1761F31F8CA0458661] [WIS][2005/03/05 07:09:00] (.ABBYY Software House - ABBYY FineReader 6.0 Sprint.) -- C:\WINDOWS\Installer\278aaa.msi [1593344] =>.ABBYY Software House [MD5.3D3C818B53F93F3F6DBF8813BAA856EA] [WIS][2020/10/30 07:22:42] (.OpenOffice - OpenOffice 4.1.8.) -- C:\WINDOWS\Installer\291f4e.msi [2469888] =>.OpenOffice [MD5.B41412A0B6691203CB3D068A99EB50D5] [WIS][2021/10/05 13:57:31] (.Adobe - Installers.) -- C:\WINDOWS\Installer\38edf029.msi [11638272] =>.Adobe [MD5.D14EF96A97F550C4F60445F5C8562098] [WIS][2011/02/17 17:00:52] (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\WINDOWS\Installer\423a1c.msi [794112] =>.Renesas Electronics Corporation [MD5.C63A5C0413280485F550088947A2F5D2] [WIS][2017/05/11 10:26:34] (.InstallShield - Broadcom Card Reader Driver Installer.) -- C:\WINDOWS\Installer\423a20.msi [3656704] =>.InstallShield [MD5.AE2933A83BBE75FB43D1A63032E375C3] [WIS][2011/05/16 16:33:42] (.Broadcom Corporation - Broadcom Driver Installer.) -- C:\WINDOWS\Installer\423a25.msi [1989120] =>.Broadcom Corporation [MD5.B08585988CAD01BD990B313E812E5759] [WIS][2022/12/13 13:54:51] (.Piriform Software - CCleaner Update Helper.) -- C:\WINDOWS\Installer\72432a2f.msi [32768] =>.Piriform Software [MD5.EF5A7C9D86F8E236E07314519DC7A5C4] [WIS][2023/03/21 07:30:04] (.Adobe Inc..) -- C:\WINDOWS\Installer\186576.msp [319053824] =>.Adobe Inc. [MD5.8C76CC67931590E408EB3C1F81F5D480] [WIS][2023/05/05 01:23:28] (.Adobe Inc..) -- C:\WINDOWS\Installer\18e6c0d.msp [77373440] =>.Adobe Inc. [MD5.E5100D0116E1CB18C4AE18C43675CBC7] [WIS][2022/06/05 04:07:23] (.Adobe Inc..) -- C:\WINDOWS\Installer\1a384bb1.msp [132579328] =>.Adobe Inc. [MD5.5B7DA0BBB67AFF3BA49FAE9A0BA7147D] [WIS][2022/03/03 01:13:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\1a449f7a.msp [174493696] =>.Adobe Inc. [MD5.372536BF13E51B494DCA602533FF613F] [WIS][2022/09/08 03:24:49] (.Adobe Inc..) -- C:\WINDOWS\Installer\24022999.msp [65650688] =>.Adobe Inc. [MD5.A11A971CBDC0F252F3BF5199D8B28D0C] [WIS][2023/06/15 01:11:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\24028502.msp [324608000] =>.Adobe Inc. [MD5.E340B1CDFDF1797F4F05DD993CDC6D70] [WIS][2023/10/10 00:10:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\242bbd37.msp [130416640] =>.Adobe Inc. [MD5.9D655F34CE959E02D9DB7A5983B98956] [WIS][2022/12/24 08:46:24] (.Adobe Inc..) -- C:\WINDOWS\Installer\24a840ed.msp [256380928] =>.Adobe Inc. [MD5.3720BDF8A9A9930067035BC3AD04F44A] [WIS][2022/04/07 10:59:57] (.Adobe Inc..) -- C:\WINDOWS\Installer\2ce5dc82.msp [101658624] =>.Adobe Inc. [MD5.1847D6B520A3CBC4FE0891534A223F0A] [WIS][2022/11/14 23:20:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\2e8a3710.msp [69357568] =>.Adobe Inc. [MD5.1124B65C79FF863154BC3B1B416DFF9E] [WIS][2021/10/05 13:57:54] (.Adobe Inc..) -- C:\WINDOWS\Installer\38edf02a.msp [223842304] =>.Adobe Inc. [MD5.CEE31BEFD23037527A2BA4237C2FBC1C] [WIS][2022/10/16 21:35:27] (.Adobe Inc..) -- C:\WINDOWS\Installer\3d9367b8.msp [130744320] =>.Adobe Inc. [MD5.161497598857B7D5B35D530BE747FB09] [WIS][2023/04/04 22:51:19] (.Adobe Inc..) -- C:\WINDOWS\Installer\43416b29.msp [104329216] =>.Adobe Inc. [MD5.C933AB8A40A086E0A8180FDFF9754945] [WIS][2023/07/03 08:29:00] (.Adobe Inc..) -- C:\WINDOWS\Installer\4370a7b8.msp [113807360] =>.Adobe Inc. [MD5.AC57B0CD6401F4C717B52D403CB6892E] [WIS][2023/01/21 09:08:41] (.Adobe Inc..) -- C:\WINDOWS\Installer\4919c46a.msp [69443584] =>.Adobe Inc. [MD5.81F7633F359C7BC2AA9FB2C5527D7613] [WIS][2021/12/24 22:41:36] (.Adobe Inc..) -- C:\WINDOWS\Installer\6c9bcce7.msp [183558144] =>.Adobe Inc. [MD5.4734AEAD6C5EDA895B023DE9EC66FFD2] [WIS][2023/11/05 07:45:57] (.Adobe Inc..) -- C:\WINDOWS\Installer\7c77b3dd.msp [89821184] =>.Adobe Inc. [MD5.1D14D261AA0BDC4F039BFE2ABD9B453E] [WIS][2022/08/03 01:38:41] (.Adobe Inc..) -- C:\WINDOWS\Installer\8780d8bd.msp [64937984] =>.Adobe Inc. [MD5.6049D0E498510FD3904A79308F00AE46] [WIS][2022/09/29 09:06:19] (.Adobe Inc..) -- C:\WINDOWS\Installer\8c1194b9.msp [199811072] =>.Adobe Inc. [MD5.4E6720890196EBAE963EAE9E81792F7F] [WIS][2023/08/01 09:51:05] (.Adobe Inc..) -- C:\WINDOWS\Installer\933a09.msp [79806464] =>.Adobe Inc. [MD5.2C1B23C637E1F8314D5F855DC828A5C8] [WIS][2023/09/07 03:57:43] (.Adobe Inc..) -- C:\WINDOWS\Installer\a2592b2.msp [153894912] =>.Adobe Inc. [MD5.DB373473B96BD661649BCCD6C1E8C064] [WIS][2023/08/19 09:46:54] (.Adobe Inc..) -- C:\WINDOWS\Installer\b1386f7.msp [70483968] =>.Adobe Inc. [MD5.0175539DFC1B00BC87D609AA6897FDFF] [WIS][2023/02/14 04:06:21] (.Adobe Inc..) -- C:\WINDOWS\Installer\b79e870.msp [66363392] =>.Adobe Inc. [MD5.D996A85372465FAAF4212202C0CAC805] [WIS][2022/07/05 08:25:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\df5da.msp [67080192] =>.Adobe Inc. ---\\ FEATURE CONTROL. (5) - 1s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:OneDrive.exe [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrodist.exe [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroLicApp.exe [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrobat.exe [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AASIapp.exe ---\\ OBSERVATEURS des évènements (155) - 55s Application.Error: VSS (19) ~Numéro: 72638 ~Date: 12/18/2023 05:16:19 PM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Warning: Chrome (5) ~Numéro: 72556 ~Date: 12/17/2023 09:24:31 AM ~ID: 256 ~Description: [8580:7256:1217/092431.459:WARNING:chrome_content_verifier_delegate.cc(236)] Corruption detected in extension kmhkepipobnjllejbafajoemahjejdcm installed at: C:\Users\Josette Regnault\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipob ~Suggestion: Aucune Application.Warning: ESENT (10) ~Numéro: 72494 ~Date: 12/16/2023 11:10:22 AM ~ID: 636 ~Description: qmgr.dll (11968,D,35) QmgrDatabaseInstance: Le fichier de mappage de vidage « C:\ProgramData\Microsoft\Network\Downloader\qmgr.jfm » sera supprimé. Motif : ReadHdrFailed. Application.Error: Application Error (15) ~Numéro: 72373 ~Date: 12/15/2023 04:50:25 PM ~ID: 1000 ~Description: Nom de l’application défaillante explorer.exe, version : 10.0.19041.3758, horodatage : 0x873a6ae7 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x72bb81f0 ID du proces ~Suggestion: Réparer ou réinstaller l'application. Application.Warning: Microsoft-Windows-WMI (6) ~Numéro: 72192 ~Date: 12/13/2023 07:24:50 PM ~ID: 63 ~Description: Un fournisseur, DMWmiBridgeProv1, a été inscrit dans l’espace de noms Windows Management Instrumentation root\cimv2\mdm\dmmap, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Error: Microsoft-Windows-Defrag (33) ~Numéro: 72165 ~Date: 12/13/2023 07:02:00 PM ~ID: 264 ~Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur SYSTEM RESERVED (F:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) ~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation. Application.Warning: Microsoft-Windows-System-Restore (2) ~Numéro: 72145 ~Date: 12/13/2023 11:18:06 AM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy \\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy17 with error 0x80070057. ~Suggestion: Exécuter la commande chkdsk / f Application.Error: Application Hang (20) ~Numéro: 72119 ~Date: 12/13/2023 09:46:56 AM ~ID: 1002 ~Description: Le programme SearchApp.exe version 10.0.19041.3636 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et ma ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: Windows Search Service (1) ~Numéro: 72013 ~Date: 12/11/2023 06:04:52 PM ~ID: 3036 ~Description: Impossible de terminer l’analyse dans la source de contenu .Contexte : Application , Catalogue SystemIndexDétails : Une erreur interne s’est produite dans les Services HTTP Microsoft Windo ~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/ Application.Error: Microsoft-Windows-Perflib (4) ~Numéro: 72006 ~Date: 12/11/2023 05:59:47 PM ~ID: 1023 ~Description: Windows ne peut pas charger la DLL de compteur extensible « C:\WINDOWS\system32\sysmain.dll » (code d'erreur Win32 126). ~Suggestion: Accorder l’autorisation lecture et exécution pour le compte de Service réseau sur la DLL de compteur de performances pour SQL Server Analysis Services. Application.Warning: Microsoft-Windows-PerfProc (1) ~Numéro: 72005 ~ID: 2002 ~Description: Impossible d’ouvrir l’objet de traitement \BaseNamedObjects\WmiProviderSubSystemHostJob pour un accès en interrogation. Le processus appelant peut ne pas disposer de l’autorisation d’ouvrir ce travail. Les quatre premiers octets (DWORD) de la section ~Suggestion: Vérifier les compteurs de performances Application.Warning: Wlclntfy (8) ~Numéro: 70700 ~Date: 11/15/2023 07:17:03 PM ~ID: 6006 ~Description: Le traitement de l’événement de notification (CreateSession) par l’abonné aux notifications Winlogon a duré 688 secondes. ~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System System.Warning: Microsoft-Windows-DNS-Client (20) ~Numéro: 93572 ~Date: 12/19/2023 11:01:02 AM ~ID: 1014 ~Description: La résolution du nom espaceclient.virginmobile.fr a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: Microsoft-Windows-Time-Service (92) ~Numéro: 93542 ~Date: 12/19/2023 09:39:04 AM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "time.windows.com,0x9". NtpClient réessaiera dans 15 minutes, puis doublera l'intervalle d'attente pour les tentatives suiva ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Warning: DCOM (205) ~Numéro: 93516 ~Date: 12/18/2023 05:21:39 PM ~ID: 10016 ~Description: propres à l’applicationLocalExécutionWindows.SecurityCenter.WscBrokerManagerNon disponibleAUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: Microsoft-Windows-Kernel-Processor-Power (120) ~Numéro: 93513 ~Date: 12/18/2023 05:18:36 PM ~ID: 37 ~Description: La vitesse du processeur logique Hyper-V 3 est limitée par le microprogramme du système. Le processeur a connu cet état de performances réduites pendant 71 secondes depuis le dernier rapport. System.Warning: Microsoft-Windows-Wininit (13) ~Numéro: 93508 ~Date: 12/18/2023 05:17:30 PM ~ID: 11 ~Description: Les bibliothèques de liens dynamiques sont chargées pour chaque application. L’administrateur système doit vérifier la liste des bibliothèques pour s’assurer qu’elles sont associées à des applications approuvées. Pour plus d’informations, visitez htt System.Error: NETLOGON (13) ~Numéro: 93501 ~Date: 12/18/2023 05:17:24 PM ~ID: 3095 ~Description: Cet ordinateur est configuré en tant que membre d’un groupe de travail, et non en tant que membre d’un domaine. Il n’est pas nécessaire d’exécuter le service Accès réseau dans cette configuration. System.Warning: k57nd60a (13) ~Numéro: 93483 ~Date: 12/18/2023 05:17:03 PM ~ID: 4 ~Description: Broadcom NetLink (TM) Gigabit Ethernet: The network link is down. Check to make sure the network cable is properly connected. System.Error: Service Control Manager (35) ~Numéro: 93384 ~Date: 12/17/2023 09:30:38 AM ~ID: 7034 ~Description: Le service MediatekRegistryWriter s’est terminé de façon inattendue pour la 1ème fois. System.Error: WAS (4) ~Numéro: 93247 ~Date: 12/16/2023 09:50:40 AM ~ID: 5175 ~Description: L'adaptateur de l'écouteur servant le protocole 'net.msmq' a été déconnecté de façon inattendue. System.Error: Microsoft-Windows-WindowsUpdateClient (5) ~Numéro: 93031 ~Date: 12/14/2023 10:03:54 AM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80073d02 : 9NMPJ99VJBWV-Microsoft.YourPhone. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: BTHUSB (73) ~Numéro: 92131 ~Date: 11/29/2023 09:03:47 AM ~ID: 48 ~Description: L'adaptateur local ne prend pas en charge la lecture de la clé de chiffrement pour un appareil connecté. Assurez-vous que les appareils puissent se connecter à ce système. System.Warning: Microsoft-Windows-WLAN-AutoConfig (3) ~Numéro: 91949 ~Date: 11/27/2023 03:45:48 PM ~ID: 4003 ~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 5 Famille IP : 0 ~Suggestion: Vérifier les paramètres d'économie d'énergie System.Warning: APPHOSTSVC (2) ~Numéro: 91305 ~Date: 11/15/2023 06:58:39 PM ~ID: 9009 ~Description: Application Host Helper Service a rencontré une erreur lors de la suppression du répertoire de l'historique 'C:\inetpub\history\CFGHISTORY_0000000002'. Le répertoire sera ignoré. Notez que le répertoire peut encore être supprimé à l'avenir si le serv System.Error: EventLog (1) ~Numéro: 89843 ~Date: 10/21/2023 12:30:38 PM ~ID: 6008 ~Description: L’arrêt système précédant à 13:28:27 le ‎21/‎10/‎2023 n’était pas prévu. System.Error: Microsoft-Windows-WHEA-Logger (1) ~Numéro: 88954 ~Date: 10/08/2023 05:24:31 PM ~ID: 1 ~Description: Une erreur matérielle irrécupérable s’est produite. Un enregistrement décrivant cette erreur est inclus dans la section des données de cet événement. System.Warning: User32 (1) ~Numéro: 88952 ~Date: 10/08/2023 05:20:10 PM ~ID: 1073 ~Description: La tentative par l’utilisateur JosetteRegnault\Josette Regnault de redémarrer/arrêter l’ordinateur JOSETTEREGNAULT a échoué ---\\ SCAN ADDITIONNEL (16) - 26s C:\Users\Josette Regnault\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal C:\Users\Josette Regnault\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal C:\Users\Josette Regnault\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hgfjoaookbahbhinopgfoiajfijfcdhm =>Toolbar.Graal C:\Users\Josette Regnault\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\Josette Regnault\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome [HKU\S-1-5-21-1866081160-206520495-2343403741-1000\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings]:kmhkepipobnjllejbafajoemahjejdcm =>Toolbar.Graal [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Josette Regnault\ZHPDiag3.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PCHealthCheck\PCHealthCheck.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PCHealthCheck\PCHealthCheck.exe.ApplicationCompany =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Josette Regnault\Desktop\adwcleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Josette Regnault\Desktop\adwcleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1866081160-206520495-2343403741-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Josette Regnault\ZHPDiag3.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-1866081160-206520495-2343403741-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PCHealthCheck\PCHealthCheck.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-1866081160-206520495-2343403741-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\PCHealthCheck\PCHealthCheck.exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-1866081160-206520495-2343403741-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Josette Regnault\Desktop\adwcleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1866081160-206520495-2343403741-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Josette Regnault\Desktop\adwcleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache ---\\ RECAPITULATIF DES ELEMENTS TROUVES (5) - 0s https://nicolascoolman.eu/2017/09/25/toolbar-igraal/ =>Toolbar.Graal https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_fr.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_popup.2.0.13.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\Users\Josette Regnault\Downloads\adwcleaner_8.4.0 (1).exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\Users\Josette Regnault\Downloads\adwcleaner_8.4.0.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2023] (.Malwarebytes Inc..) - C:\Users\Josette Regnault\Downloads\MBSetup (1).exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [18/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_ELXR82.1.0.12.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [18/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_ge.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [18/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_sp.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [18/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_drawer.2.0.12.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [18/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_scanresults.2.0.14.x64.dll =>.Malwarebytes Inc. [011F39A2261A993DD15176DA6FE4FBEA] [05/10/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\acrocef_1\RdrCEF.exe =>.Adobe Inc. [0179B1E53056E28D2089AD60A29585C9] [16/11/2017] (.AnchorFree Inc.) - C:\WINDOWS\System32\DRIVERS\aftap0901.sys =>.AnchorFree Inc [036939C475D53C1D70992DB8A87EB7D3] [06/04/2007] (.Macrovision Corporation.) - C:\Program Files (x86)\InstallShield Installation Information\{DEDB47A3-C988-4A43-A645-E2CEA571E680}\setup.exe =>.Macrovision Corporation [03B471CD4D7FFEC29A3B20B2CB0F5F54] [09/09/2016] (.LunarG, Inc..) - C:\Program Files (x86)\VulkanRT\1.0.26.0\UninstallVulkanRT.exe =>.LunarG, Inc. [045296F8FCD829A75DC94294F5A415A4] [05/11/2023] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Inc. [045296F8FCD829A75DC94294F5A415A4] [05/11/2023] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe =>.Adobe Inc. [045296F8FCD829A75DC94294F5A415A4] [20/09/2023] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [0575E1F7EC9BD8A67A3F6189C63E97BB] [05/12/2023] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [05/12/2023] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [13/12/2022] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [13/12/2023] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Application\120.0.23442.109\elevation_service.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [13/12/2023] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [15/11/2023] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\CCleanerBrowserUninstall.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [18/12/2023] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Application\120.0.23442.109\Installer\chrmstp.exe =>.PIRIFORM SOFTWARE LIMITED [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD. [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD. [068033EE736CDDF17B241B41E65EF935] [05/12/2023] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd [068983642C953E46F7BDCE4143F133C1] [10/11/2021] (.Adobe Systems, Incorporated.) - C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe =>.Adobe Systems, Incorporated [06F04788031055D31DEFFEFCD026D6C5] [14/08/2018] (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated [0A01C3FF8855F008C8E4FA63973252E6] [06/02/2021] (.NCH Software, Inc..) - C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software, Inc. [0C1CD3EEA47EDDA7A032573B014D0AFD] [15/12/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [15/12/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe =>.Mozilla Corporation [0CAA438A19CDE7C4B893C53BB58DE99F] [01/05/2023] (.Binary Fortress Software Ltd.) - C:\Program Files\TrayStatus\TrayStatus.exe =>.Not verified [0CAA438A19CDE7C4B893C53BB58DE99F] [02/05/2023] (.Binary Fortress Software Ltd.) - C:\Program Files\TrayStatus\unins000.exe =>.Not verified [0E4418E2DEDE36DD2974C3443AFB5CE5] [02/12/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [02/12/2023] (.Google LLC.) - C:\Users\Josette Regnault\Downloads\ChromeSetup (1).exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [06/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Temp\scoped_dir348_1888908779\old_chrome.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [07/12/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [07/12/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [12/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.110\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [12/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [18/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.110\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [18/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.110\Installer\setup.exe =>.Google LLC [14781BC862E8DC503A559346F5DCC518] [17/01/2017] (.NVIDIA Corporation.) - C:\WINDOWS\System32\DRIVERS\nvpciflt.sys =>.NVIDIA Corporation [14781BC862E8DC503A559346F5DCC518] [17/01/2017] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvacwu.inf_amd64_bdd6ea477d4e2fba\nvlddmkm.sys =>.NVIDIA Corporation [14781BC862E8DC503A559346F5DCC518] [29/12/2016] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation [169D2C94309C0380414BCFDD93A6B27D] [18/12/2023] (.ADLICE (Julien Ascoet).) - C:\Windows\System32\drivers\truesight.sys =>.Not verified [1839AF8574AA0E80C371D9803461DD7B] [05/12/2023] (.ADLICE.) - C:\Program Files\RogueKiller\RogueKiller64.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [05/12/2023] (.ADLICE.) - C:\Program Files\RogueKiller\RogueKillerSvc.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [18/12/2023] (.ADLICE.) - C:\Program Files\RogueKiller\unins000.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [18/12/2023] (.ADLICE.) - C:\Users\Josette Regnault\Downloads\RogueKiller_setup.exe =>.ADLICE [2367F9728992B672A43FDD0D2EE77909] [05/03/2008] (.SEIKO EPSON Corporation.) - C:\Program Files (x86)\epson\escndv\setup\setup.exe =>.SEIKO EPSON Corporation [2367F9728992B672A43FDD0D2EE77909] [13/03/2008] (.SEIKO EPSON Corporation.) - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IINSEDE.EXE =>.SEIKO EPSON Corporation [330000037BA10A3ECB66E901C000000000037B] [15/11/2023] (..NET.) - C:\ProgramData\Package Cache\{7f2c8be3-7757-4594-aead-09a5112e7725}\windowsdesktop-runtime-7.0.14-win-x64.exe =>..NET [330000037BA10A3ECB66E901C000000000037B] [20/10/2023] (..NET.) - C:\Program Files\dotnet\dotnet.exe =>..NET [330000B898AA86B5A39E5A1BBD00020000B898] [09/03/2017] (.Intel(R) pGFX.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX [3A8E4911EA414DE537BCEE2AAAB74FC7] [06/05/2011] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bScsiSDa.sys =>.Broadcom Corporation [3A8E4911EA414DE537BCEE2AAAB74FC7] [16/05/2011] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bScsiMSa.sys =>.Broadcom Corporation [3A8E4911EA414DE537BCEE2AAAB74FC7] [20/01/2011] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\b57xdbd.sys =>.Broadcom Corporation [3A8E4911EA414DE537BCEE2AAAB74FC7] [20/01/2011] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\b57xdmp.sys =>.Broadcom Corporation [43BB437D609866286DD839E1D00309F5] [27/11/2011] (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe =>.NVIDIA Corporation [56F008E69A7C4C3FEB389C66EAF58259] [04/12/2014] (.MEDIATEK INC..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry.exe =>.MEDIATEK INC. [56F008E69A7C4C3FEB389C66EAF58259] [04/12/2014] (.MEDIATEK INC..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry64.exe =>.MEDIATEK INC. [6DCCE46BF957272AE06D045FED960536] [07/10/2015] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDAniConf.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [07/10/2015] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [07/10/2015] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [07/10/2015] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDUn_inst.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [07/10/2015] (.ELAN Microelectronics Corporation.) - C:\WINDOWS\System32\DRIVERS\ETD.sys =>.ELAN Microelectronics Corporation [6DF38C00071DD66C20838DB081346A51] [17/11/2010] (.Renesas Electronics Corporation.) - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe =>.Renesas Electronics Corporation [746A0188D4029410B5C3671049114284] [15/12/2006] (.SEIKO EPSON Corporation.) - C:\Program Files (x86)\epson\TPMANUAL\ESSX100_TX100\FRA\USE_G\DOCUNINS.EXE =>.SEIKO EPSON Corporation ~ Unselected Options: NF, ~ End of the scan, 21054 items in 08mn46s (1485)(0)