~ ZHPDiag v2024.10.2.29 Par Nicolas Coolman (2024/10/02) ~ Démarre par Stéphane (Administrator) (2024/10/08 09:26:08) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\Stéphane\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Stéphane\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Demarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 19045) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v129.0.6668.90 ~ MSIE: Internet Explorer v11.3636.19041.0 ~ OBIE: Microsoft Edge v129.0.2792.65 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : FC2HD Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (1) - 1s Windows Defender W10 (Activate) (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (18) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 600 GB (87%) free of 686 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 4 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 2 ~ Type de barrette (FormFactor): SO-DIMM ~ Taille (Size) : 8 Go ~ Vitesse (Speed) : 1600 ~ Charge mémoire (Memory Usage) : 36% ~ RAM physique Total (Total Physical) : 12 Go : OK ~ RAM physique Disponible (Available Physical) : 8 Go ~ Total virtuelle (Total Virtual) : 14.27 Go ~ Disponible virtuelle (Available Virtual): 9.73 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: DESKTOP-N2B4NKT ~ User Name: Stéphane ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (5) - 1s ~ Drive C: has 600 GB free of 686 GB (System) ---\\ ETAT DE LA COMMANDE TRIM ~ La commande TRIM est active (NTFS) ~ La commande TRIM est active (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (30) - 14s ~ Model: Hitachi HTS547575A9E384 vJE4OA50A (686 Gb ) ~ Media Type: HDD Disque Fixe ( Bus: SATA) ---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0 OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 2.626 OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 8.221 OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 5.178 OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown ---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute] OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [11][100][100] [62][0] OK - 02 - Performance de débit (Throughput Performance) - [5][100][100] [40][0] RE - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [7][170][170] [33][1] OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [18][97][97] [0][5516] OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][100][100] [5][0] OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [11][100][100] [67][0] OK - 08 - Recherche de performance de temps (Seek Time Performance) - [5][100][100] [40][0] OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [18][90][90] [0][4701] OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [19][100][100] [60][0] OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][97][97] [0][5514] OK - BF - Nombre d'erreurs chargement/déchargement de tête (G-Sense Error Rate) - [10][100][100] [0][0] OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [50][100][100] [0][46] OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [18][95][95] [0][53053] OK - C2 - Température interne actuelle (Enclosure Temperature) - [2][133][133] [0][45] OK - C4 - Nombre d'opérations de réallocations (remap) (Reallocation Event Count) - [50][100][100] [0][0] OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [34][100][100] [0][0] OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [8][100][100] [0][0] OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [10][200][200] [0][0] OK - DF - Nombre d'erreurs chargement/déchargement de tête (Load Retry Count) - [10][100][100] [0][0] ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 3s [MD5.F1846BB7F670919E97C2196F5EB6FAA6] - 03/10/2024 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5845320] =>.Microsoft® [MD5.D28778D07C8F7CA59B7569E4EDA54512] - 03/10/2024 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [89600] [Unsigned] =>.Microsoft Corporation [MD5.583B60A43F502D90331E6589E1DBC6DD] - 03/10/2024 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [420656] [Unsigned] =>.Microsoft Corporation [MD5.38DD8E704873BDC8071987F18B12AFFB] - 03/10/2024 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5045760] [Unsigned] =>.Microsoft Corporation [MD5.2985613F9F28FB2E214F590295CE601B] - 03/10/2024 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [904704] [Unsigned] =>.Microsoft Corporation [MD5.4E1A78C18B556C264C0519B93EE0A88F] - 03/10/2024 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.7CD32F5CF65B86C38DDEA8D86D2C71CA] - 03/10/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821800] =>.Microsoft® [MD5.DE5762BFDE6D02F60FED8702089B2792] - 03/10/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583680] =>.Microsoft® [MD5.B1A9DE92C2535AF2F5C14A13A12EEBBF] - 03/10/2024 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3431936] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.447A00BAB17CE1481C446D7133689C38] - 03/10/2024 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [657928] [Unsigned] =>.Microsoft Corporation [MD5.81FF48994C82B1CA2C4EBD9C6C6683C4] - 03/10/2024 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31200] [Unsigned] =>.Microsoft Corporation [MD5.E53DE91C9330F0E17075C11CD0A7719A] - 03/10/2024 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.14D133579A5B1E08E336B7FE259CA85A] - 03/10/2024 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation [MD5.BE6DCE5C9655A6DA501C46DA125B41A9] - 03/10/2024 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [154112] [Unsigned] =>.Microsoft Corporation [MD5.7E0352A6396756AD61CC755CAEDBD2D4] - 03/10/2024 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138752] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.2954A20F0F0152E89FC459A11382C98A] - 03/10/2024 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [228352] [Unsigned] =>.Microsoft Corporation [MD5.6E4E7AE6A3C0E30C80A42B4F9E9DBCB9] - 03/10/2024 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [584696] [Unsigned] =>.Microsoft Corporation [MD5.09D0F16FB9555790DA934BDC2543E940] - 03/10/2024 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.0BCA424282646E17B49188EDA293B410] - 03/10/2024 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2844536] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.E8308FE2DB8DCD31A02CADD808819EDE] - 03/10/2024 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] [Unsigned] =>.Microsoft Corporation [MD5.360DD75AEDB512B0DD878A81BEE89BEF] - 03/10/2024 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [170496] [Unsigned] =>.Microsoft Corporation [MD5.02577FC71C31F625B302566190AA1382] - 03/10/2024 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118752] [Unsigned] =>.Microsoft Corporation [MD5.484DC5AD718AE12B3AD99B511FABE088] - 03/10/2024 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [431088] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (7) - 2s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe [Unsigned] =>.AMD O23 - Service: AtherosSvc (AtherosSvc) . (. - Windows Setup API.) - C:\WINDOWS\System32\drivers\AdminService.exe [Unsigned] =>.Atheros O23 - Service: GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterIn (GoogleUpdaterInternalService130.0.6679.0) . (.Google LLC - Google Updater.) - C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe =>.Google LLC® O23 - Service: GoogleUpdater Service 130.0.6679.0 (GoogleUpdaterService130 (GoogleUpdaterService130.0.6679.0) . (.Google LLC - Google Updater.) - C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe =>.Google LLC® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe [Unsigned] =>.Intel Corporation O23 - Service: Samsung Update Service (SamsungUpdateService) . (.Samsung Electronics Co., Ltd. - Samsung Update Windows Service.) - C:\Program Files\Samsung\SamsungUpdate\SUService.exe {08802BE2CCF38CBDD227F05CC7114019}. =>.Samsung Electronics Co., Ltd. O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (81) - 6s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [16/12/2015] [ 255472] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [16/12/2015] [21648880] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\atikmdag.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [16/12/2015] [ 674288] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\atikmpag.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [16/12/2015] [ 82664] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.® SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Auto [30/01/2019] [ 415992] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\AdminService.exe =>.Qualcomm Atheros® SR - Demand [07/12/2019] [ 4233728] Qualcomm Atheros Extens (athr) . (.Qualcomm Atheros Communications, Inc..) - C:\WINDOWS\System32\drivers\athw8x.sys [Unsigned] =>.Qualcomm Atheros Communications, Inc. SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Demand [30/01/2019] [ 69368] BtFilter (BtFilter) . (.Qualcomm.) - C:\WINDOWS\System32\drivers\btfilter.sys =>.Qualcomm Atheros® SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SS - Demand [03/05/2016] [ 299488] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SS - Demand [01/10/2024] [ 1742952] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\129.0.6668.90\elevation_service.exe =>.Google LLC® SR - Auto [26/08/2024] [ 4884584] GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterIn (GoogleUpdaterInternalService130.0.6679.0) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe =>.Google LLC® SR - Auto [26/08/2024] [ 4884584] GoogleUpdater Service 130.0.6679.0 (GoogleUpdaterService130 (GoogleUpdaterService130.0.6679.0) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe =>.Google LLC® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [01/09/2012] [ 647736] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [03/05/2016] [ 3811288] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Intel(R) pGFX® SR - Auto [03/05/2016] [ 337888] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel(R) pGFX® SR - Demand [01/12/2015] [ 50160] Intel WiDi Audio Device (intaud_WaveExtensible) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\intelaud.sys =>.Intel(R) Wireless Display® SR - Demand [21/08/2015] [ 463112] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\IntcDAud.sys =>.Intel Corporation - Client Components Group® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Demand [01/12/2015] [ 38896] IWD Bus Enumerator (iwdbus) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iwdbus.sys =>.Intel(R) Wireless Display® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [17/07/2012] [ 62784] Intel(R) Management Engine Interf (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\HECIx64.sys =>.Intel Corporation® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Demand [30/07/2012] [ 690832] Realtek 8168 NT Driver (RTL8168) . (.Realtek.) - C:\WINDOWS\System32\drivers\Rt630x64.sys =>.Realtek Semiconductor Corp® SR - Auto [30/08/2024] [ 408416] Samsung Update Service (SamsungUpdateService) . (.Samsung Electronics Co., Ltd..) - C:\Program Files\Samsung\SamsungUpdate\SUService.exe {08802BE2CCF38CBDD227F05CC7114019}. =>.Samsung Electronics Co., Ltd. SR - Auto [00/00/0000] [ 0] SecDrv (SecDrv) . (...) - C:\Windows\System32\drivers\SECDRV.SYS (.not file.) [Unsigned] SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [12/06/2015] [ 614088] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated® SR - Auto [12/06/2015] [ 246464] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Demand [12/10/2023] [ 251776] VirtualBox NDIS 6.0 Miniport Service (VBoxNetAdp) . (.Oracle and/or its affiliates.) - C:\WINDOWS\System32\DRIVERS\VBoxNetAdp6.sys =>.Oracle Corporation® SR - System [12/10/2023] [ 262648] VirtualBox NDIS6 Bridge (VBoxNetLwf) . (.Oracle and/or its affiliates.) - C:\WINDOWS\System32\DRIVERS\VBoxNetLwf.sys =>.Oracle Corporation® SS - Demand [12/10/2023] [ 802752] VirtualBox system service (VBoxSDS) . (.Oracle and/or its affiliates.) - C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe =>.Oracle Corporation® SR - System [12/10/2023] [ 1060600] VirtualBox Service (VBoxSup) . (.Oracle and/or its affiliates.) - C:\WINDOWS\System32\DRIVERS\VBoxSup.sys =>.Oracle Corporation® SR - System [12/10/2023] [ 201328] VirtualBox USB Monitor Service (VBoxUSBMon) . (.Oracle and/or its affiliates.) - C:\WINDOWS\System32\DRIVERS\VBoxUSBMon.sys =>.Oracle Corporation® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (6) - 7s O38 - TASK: {2CCAB7AF-6DAD-4B6F-8452-F0558925A4A3} [64Bits][\OpenWebSearchRepair] - (...) -- %Temp%\OpenWebSearchRepair.cmd [0] =>PUP.Optional.SimpleSearches O38 - TASK: {3DB99909-AB97-4554-8D8F-A8D19D67DAE8} [64Bits][\Samsung\SamsungUpdate\UserModeWorker] - (.Samsung Electronics Co., Ltd. - Samsung Update.) -- C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe [682336] =>.Samsung Electronics Co., Ltd. O38 - TASK: {505F8A61-BEC1-406C-95A9-F3BA8B327B90} [64Bits][\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{3E907B65-EF1B-4E87-AAFF-812A29372C83}] - (.Google LLC - Google Updater.) -- C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584] =>.Google LLC C:\WINDOWS\System32\Tasks\OpenWebSearchRepair - (...) -- %Temp%\OpenWebSearchRepair.cmd [] =>PUP.Optional.SimpleSearches C:\WINDOWS\System32\Tasks\Samsung\SamsungUpdate\UserModeWorker - (.Samsung Electronics Co., Ltd..) -- C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe [] =>.Samsung Electronics Co., Ltd. C:\WINDOWS\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{3E907B65-EF1B-4E87-AAFF-812A29372C83} - (.Google LLC.) -- C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [--wake --system.--wake] =>.Google LLC ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (9) - 1s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Stéphane\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_565E4FA6F7D0E888D6C8C142B82C9DC0] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3387019964-3532494323-3827923169-1002\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Stéphane\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKUS\S-1-5-21-3387019964-3532494323-3827923169-1002\..\Run: [MicrosoftEdgeAutoLaunch_565E4FA6F7D0E888D6C8C142B82C9DC0] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® ---\\ PROCESSUS LANCES (54) - 8s [MD5.BBADD85854BFB5D43C60B7AC8EEA3DBA] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [255472] [PID.2280] [Unsigned] =>.AMD [MD5.6A9C613D0F5F9676D128F39B63ACE45B] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [337888] [PID.2588] [Unsigned] =>.Intel Corporation [MD5.0882413280F191D815F7DF42AE64B5B6] - (. - Windows Setup API.) -- C:\Windows\System32\drivers\AdminService.exe [415992] [PID.3548] [Unsigned] =>.Atheros [MD5.441CD3114A07B66953AB9D55C7B1712F] - (.Samsung Electronics Co., Ltd. - Samsung Update Windows Service.) -- C:\Program Files\Samsung\SamsungUpdate\SUService.exe [408416] [PID.3736] {08802BE2CCF38CBDD227F05CC7114019}. =>.Samsung Electronics Co., Ltd. [MD5.332DA8BCEC73A64DACA440BF83F50068] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246464] [PID.3764] =>.Synaptics Incorporated® [MD5.E0A742F7C5FB4AEF2320D014346E7DAC] - (...) -- C:\Windows\System32\AggregatorHost.exe [322048] [PID.5176] [Unsigned] [MD5.B3AB2D5B98E67EC56ED4EB9D2A3199BF] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [683504] [PID.7496] [Unsigned] =>.AMD [MD5.52CBE1D8C8660EA91EB0DA5602B85844] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3940040] [PID.6732] =>.Synaptics Incorporated® [MD5.3DADA7675DB82139D3671FD2FE89A468] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.9928] =>.Synaptics Incorporated® [MD5.C7025ED9332D112CD4DAD7C8E92F30B1] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [549344] [PID.8104] [Unsigned] =>.Intel Corporation [MD5.BBD33D80F5208FE34A54EEA8552F5A9A] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxTray.exe [391648] [PID.4652] [Unsigned] =>.Intel Corporation [MD5.60E602805EF0D0E04D36FD3C37D6C21E] - (.Samsung Electronics Co., Ltd. - Samsung Update.) -- C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe [682336] [PID.6664] {08802BE2CCF38CBDD227F05CC7114019}. =>.Samsung Electronics Co., Ltd. [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.3780] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.2200] =>.Google LLC® [MD5.01C915A06DCD038C79705DCC556ABAB6] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [307400] [PID.2704] =>.Advanced Micro Devices, Inc.® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.10104] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.11012] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.10996] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.2128] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.5800] =>.Google LLC® [MD5.F7F43570449082C5A6B5FFAC21C1F79D] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [307912] [PID.9812] =>.Advanced Micro Devices, Inc.® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.8376] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.9012] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.11488] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.5184] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.3596] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.2172] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.10448] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.11236] =>.Google LLC® [MD5.1976031F12E9147846EEB7EDC4C5BF7D] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [812016] [PID.3208] =>.Microsoft® [MD5.B76135DCCCDBBC7FC657809135AEF9AE] - (.Samsung Electronics Co., Ltd. - Samsung Update.) -- C:\Program Files\Samsung\SamsungUpdate\SUEngine.exe [433504] [PID.3148] {08802BE2CCF38CBDD227F05CC7114019}. =>.Samsung Electronics Co., Ltd. [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.4620] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.6912] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.11912] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.1916] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.8920] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.5948] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.4572] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.11100] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.11796] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.5556] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.6812] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.8256] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.9824] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.9456] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.964] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.5632] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.10204] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.576] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.4740] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.10276] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.9908] =>.Google LLC® [MD5.2FB6428BD717B9694FC79E9115987AFC] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [2762856] [PID.10564] =>.Google LLC® [MD5.8AFEEB16C79B03D080604C27A21E68A2] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Stéphane\Desktop\ZHPSuite.exe [3539144] [PID.11136] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (3) - 1s G2 - GCE: Preference [Stéphane][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Stéphane][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Stéphane][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.4894 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (3) - 0s E2 - GCE: Preference [Stéphane][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [Stéphane][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [Stéphane][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.65\BHO\ie_to_edge_bho_64.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (31) - 2s O4 - GS\Desktop [Stéphane]: Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\Stéphane\Desktop\Tor Browser\Browser\firefox.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Desktop [Stéphane]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Stéphane\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Stéphane]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Quicklaunch [Stéphane]: Oracle VM VirtualBox.lnk . (.Oracle and/or its affiliates - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe [Unsigned] =>.Oracle and/or its affiliates O4 - GS\sendTo [Stéphane]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Stéphane]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Stéphane]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Programs [Stéphane]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stéphane\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Stéphane]: Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\Stéphane\Desktop\Tor Browser\Browser\firefox.exe [Unsigned] =>.Mozilla Corporation O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\CommonDesktop [Public]: Medal of Honor débarquement allié.lnk . (.Electronic Arts Inc. - Medal of Honor Allied Assault(tm).) C:\Program Files (x86)\EA GAMES\MOHDA\MOHAA.exe [Unsigned] =>.Electronic Arts Inc. O4 - GS\CommonDesktop [Public]: Oracle VM VirtualBox.lnk . (.Oracle and/or its affiliates - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe [Unsigned] =>.Oracle and/or its affiliates O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe {09D08EBDA06BE07C815EA7AF25EF6875}. =>.VideoLAN O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Stéphane\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Public]: Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\Stéphane\Desktop\Tor Browser\Browser\firefox.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 1s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{f3ebd72f-3404-414f-a1c1-c5266b933d72}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (19) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\system32\userinit.exe =>.Microsoft Corporation ---\\ CLE DE REGISTRE EXPLORER StartupApproved (1) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (6) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\129.0.6668.90\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.65\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (9) - 7s O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM][64Bits] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: Medal of Honor débarquement allié - (.Games Software.) [HKLM][64Bits] -- {0DEA94ED-915A-4834-A87E-388D012C8E02} [Unsigned] =>.Games Software O42 - Logiciel: Oracle VM VirtualBox 7.0.12 - (.Oracle and/or its affiliates.) [HKLM][64Bits] -- {32B822F6-0014-44F1-B755-8146EBA5A8E3} [Unsigned] =>.Oracle and/or its affiliates O42 - Logiciel: SafeDiscShim - (..) [HKLM][64Bits] -- {97FE301F-3933-4406-97C0-480C21D61118}_is1 [Unsigned] O42 - Logiciel: Samsung Update Service - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {A9FE82D6-A108-44D3-B1D5-675FB8E5BB29} [Unsigned] =>.Samsung Electronics Co., Ltd. O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey [Unsigned] =>.Synaptics Incorporated O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WinRAR 7.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver {048B08399EC703623C72CD2077AD65D9}. =>.win.rar GmbH ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (67) - 7s HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\INextUUID =>.Hewlett-Packard HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Oracle =>.Oracle HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\C07ft5Y =>.Total War Game HKLM\SOFTWARE\WOW6432Node\EA GAMES =>.EA Games HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Oracle =>.Oracle HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\StarForce HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Tor Project =>.Legitimate HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\Google =>.Google HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\Oracle =>.Oracle HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\StarForce HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\Synaptics =>.Synaptics HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\Tor Project =>.Legitimate HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (3) - 0s C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.4239_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.4239.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungUpdate_3.0.102.0_x64__3c1yjt4zspk6g - (..) [][Samsung Update] ---\\ CONTENU DES DOSSIERS PROGRAMMES (53) - 4s O43 - CFD: 08/10/2024 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 02/10/2024 - [] D -- C:\Program Files\ATI Technologies =>.ATI Technologies O43 - CFD: 28/09/2024 - [] D -- C:\Program Files\Google =>.Google LLC® O43 - CFD: 02/10/2024 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 03/10/2024 - [] D -- C:\Program Files\Oracle =>.Oracle O43 - CFD: 28/09/2024 - [] D -- C:\Program Files\RUXIM =>.Microsoft® O43 - CFD: 02/10/2024 - [] D -- C:\Program Files\Samsung =>.Samsung Electronics O43 - CFD: 02/10/2024 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 02/10/2024 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 08/10/2024 - [] D -- C:\Program Files\WinRAR {048B08399EC703623C72CD2077AD65D9}. =>.WinRAR O43 - CFD: 02/10/2024 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies O43 - CFD: 03/10/2024 - [] D -- C:\Program Files (x86)\EA GAMES [Unsigned] =>.EA Games O43 - CFD: 28/09/2024 - [] D -- C:\Program Files (x86)\Google =>.Google LLC® O43 - CFD: 03/10/2024 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 03/10/2024 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 02/10/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc O43 - CFD: 03/10/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES =>.EA Games O43 - CFD: 03/10/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox =>.Oracle O43 - CFD: 02/10/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 08/10/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 02/10/2024 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 04/10/2024 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 02/10/2024 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 28/09/2024 - [] D -- C:\ProgramData\Synaptics =>.Synaptics O43 - CFD: 06/10/2024 - [] D -- C:\ProgramData\VirtualBox =>.Oracle O43 - CFD: 30/09/2024 - [] D -- C:\ProgramData\VMware =>.VMware O43 - CFD: 03/10/2024 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 02/10/2024 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 30/09/2024 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware O43 - CFD: 28/09/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 28/09/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\ATI =>.ATI O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\Eipix =>.Eipix Games O43 - CFD: 04/10/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\StarForce O43 - CFD: 28/09/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\Synaptics =>.Synaptics O43 - CFD: 02/10/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Local\AMD_Common O43 - CFD: 28/09/2024 - [] D -- C:\Users\Stéphane\AppData\Local\ATI =>.ATI O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Local\Backup =>.Symantec O43 - CFD: 07/10/2024 - [] D -- C:\Users\Stéphane\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 28/09/2024 - [] D -- C:\Users\Stéphane\AppData\Local\Google =>.Google O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\Desktop\Bigfish Game O43 - CFD: 07/10/2024 - [] D -- C:\Users\Stéphane\Desktop\fgdump O43 - CFD: 07/10/2024 - [] D -- C:\Users\Stéphane\Desktop\fgdump-2.1.0-exeonly O43 - CFD: 07/10/2024 - [] D -- C:\Users\Stéphane\Desktop\Mimikatz O43 - CFD: 03/10/2024 - [] D -- C:\Users\Stéphane\Desktop\SafeDisc O43 - CFD: 04/10/2024 - [] D -- C:\Users\Stéphane\Desktop\Tor Browser =>.Roger Dingledine O43 - CFD: 02/10/2024 - [] RD -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 08/10/2024 - [] D -- C:\Users\Stéphane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 02/10/2024 - [] D -- C:\Users\Default\AppData\Local\ATI =>.ATI O43 - CFD: 02/10/2024 - [] D -- C:\Users\Default User\AppData\Local\ATI =>.ATI ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (29) - 1s O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll {048B08399EC703623C72CD2077AD65D9}. =>.Alexander Roshal O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll {048B08399EC703623C72CD2077AD65D9}. =>.Alexander Roshal O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Desktop Control Panel.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll =>.Advanced Micro Devices, Inc.® O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll [Unsigned] =>.Intel Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll {048B08399EC703623C72CD2077AD65D9}. =>.Alexander Roshal O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 1s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTEME (75) - 16s O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2015/12/16 20:07:34 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [82664] =>.Advanced Micro Devices, Inc.® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [4233728] [Unsigned] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2015/12/16 20:07:42 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [21648880] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/16 20:07:40 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [674288] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/01/30 23:44:54 A . (.Qualcomm - BT Filter.) -- C:\WINDOWS\System32\drivers\btfilter.sys [69368] =>.Qualcomm Atheros® O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2024/10/03 13:10:21 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2012/07/17 18:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation® O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2012/09/01 18:01:56 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [647736] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2016/05/03 23:30:46 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3811288] =>.Intel(R) pGFX® O58 - SDL:2015/08/21 11:50:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/12/01 21:46:03 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50160] =>.Intel(R) Wireless Display® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2015/12/01 21:46:03 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38896] =>.Intel(R) Wireless Display® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2012/07/30 18:04:12 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [690832] =>.Realtek Semiconductor Corp® O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2015/06/12 06:11:08 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [614088] =>.Synaptics Incorporated® O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/10/12 11:04:56 A . (.Oracle and/or its affiliates - VirtualBox NDIS 6.0 Host-Only Network Adapt.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [251776] =>.Oracle Corporation® O58 - SDL:2023/10/12 11:05:00 A . (.Oracle and/or its affiliates - VirtualBox NDIS 6.0 Lightweight Filter Driv.) -- C:\WINDOWS\System32\drivers\VBoxNetLwf.sys [262648] =>.Oracle Corporation® O58 - SDL:2023/10/12 11:05:02 A . (.Oracle and/or its affiliates - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxSup.sys [1060600] =>.Oracle Corporation® O58 - SDL:2023/10/12 11:05:06 A . (.Oracle and/or its affiliates - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [201328] =>.Oracle Corporation® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® ---\\ DERNIERS FICHIERS MODIFIES OU CREES (Utilisateur) (11) - 27s O61 - LFC: 2024/10/07 12:34:20 A . (..) -- C:\Users\Stéphane\Desktop\fgdump-2.1.0-exeonly\fgdump.exe [974848] [Unsigned] O61 - LFC: 2024/10/07 12:14:52 A . (..) -- C:\Users\Stéphane\Desktop\Mimikatz\mimikatz_trunk\Win32\mimidrv.sys [30552] [Unsigned] O61 - LFC: 2024/10/07 12:14:52 A . (..) -- C:\Users\Stéphane\Desktop\Mimikatz\mimikatz_trunk\Win32\mimispool.dll [10240] [Unsigned] O61 - LFC: 2024/10/07 12:14:52 A . (..) -- C:\Users\Stéphane\Desktop\Mimikatz\mimikatz_trunk\x64\mimidrv.sys [37208] [Unsigned] O61 - LFC: 2024/10/07 12:14:52 A . (..) -- C:\Users\Stéphane\Desktop\Mimikatz\mimikatz_trunk\x64\mimikatz.exe [1355264] [Unsigned] O61 - LFC: 2024/10/07 12:14:52 A . (..) -- C:\Users\Stéphane\Desktop\Mimikatz\mimikatz_trunk\x64\mimilib.dll [37376] [Unsigned] O61 - LFC: 2024/10/07 12:14:52 A . (..) -- C:\Users\Stéphane\Desktop\Mimikatz\mimikatz_trunk\x64\mimispool.dll [10752] [Unsigned] O61 - LFC: 2024/10/03 18:44:48 A . (..) -- C:\Users\Stéphane\Desktop\SafeDiscShim_Setup_0.1.0.exe [2142114] [Unsigned] O61 - LFC: 2024/10/03 18:34:11 A . (..) -- C:\Users\Stéphane\Desktop\SafeDiscShim_Setup_0.1.1.exe [2146449] [Unsigned] O61 - LFC: 2024/10/04 11:42:32 A . (.© 2024 The Tor Project.) -- C:\Users\Stéphane\Desktop\tor-browser-windows-x86_64-portable-13.5.6.exe [105583680] {0B1115C9BCC1B7C8DC39A438D3996023}. O61 - LFC: 2024/10/02 23:12:01 A . (..) -- C:\Users\Stéphane\Desktop\vlc-3.0.21-win64.exe [44943296] {09D08EBDA06BE07C815EA7AF25EF6875}. ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (1) - 0s O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (51) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [222208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [222208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [305152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342464] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [165888] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [813056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [543232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [132608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2498560] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [342528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [512512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1141760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [860672] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1486848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2256896] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1531392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1014784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [552448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [647168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [317952] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3431936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283648] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1050080] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [573952] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [295936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [140800] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [994304] [Unsigned] =>.Microsoft Corporation ---\\ PACKAGES WINDOWS INSTALLER (30) - 2s [MD5.33DE59D1617E6B2D1547015C065AF220] [WIS][2015/11/06 22:17:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\15cdfb.msi [798208] =>.Advanced Micro Devices, Inc. [MD5.536167E291C71316C611F3A43CA0F4FF] [WIS][2024/08/30 15:03:58] (.Samsung Electronics Co., Ltd. - Samsung Update Service.) -- C:\WINDOWS\Installer\38cd74.msi [1126400] =>.Samsung Electronics Co., Ltd. [MD5.ED4D8BE359482F0AB4A121BFFAC58004] [WIS][2014/11/11 10:49:56] (.Advanced Micro Devices, Inc. - Branding.) -- C:\WINDOWS\Installer\57a94.msi [439808] =>.Advanced Micro Devices, Inc. [MD5.DD2996956A5FF586E139A0F6E282A1F1] [WIS][2015/11/06 22:17:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57a98.msi [936448] =>.Advanced Micro Devices, Inc. [MD5.B5FBD70BF8821E90DAD1153B9694B5F6] [WIS][2015/11/06 22:14:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57a9c.msi [761856] =>.Advanced Micro Devices, Inc. [MD5.E4F68C8A893EDDFAED7BA288250EB36A] [WIS][2015/11/06 22:14:38] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57aa0.msi [729600] =>.Advanced Micro Devices, Inc. [MD5.7728BB97625301E150865031564F5F15] [WIS][2015/11/06 22:14:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57aa4.msi [751104] =>.Advanced Micro Devices, Inc. [MD5.F9AC9FB191D441823C1052F5FEBEE1EE] [WIS][2015/11/06 22:14:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57aa8.msi [856064] =>.Advanced Micro Devices, Inc. [MD5.F42E649718BB3849F98409E503DE63ED] [WIS][2015/11/06 22:15:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57aac.msi [710144] =>.Advanced Micro Devices, Inc. [MD5.608A1F5C35480A0BAAC504D7E0772F51] [WIS][2015/11/06 22:15:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ab0.msi [738304] =>.Advanced Micro Devices, Inc. [MD5.FBE93E0EF7EB12C553E4C3956DE3D92C] [WIS][2015/11/06 22:15:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ab4.msi [732160] =>.Advanced Micro Devices, Inc. [MD5.9B62B5036A4A8E3D9902A8A4B7B3386D] [WIS][2015/11/06 22:15:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ab8.msi [747008] =>.Advanced Micro Devices, Inc. [MD5.77CDA6654DAB7014F4F93141BC6AE9B1] [WIS][2015/11/06 22:15:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57abc.msi [759808] =>.Advanced Micro Devices, Inc. [MD5.AA563DB9A625AE9C99501CAD6705945E] [WIS][2015/11/06 22:15:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ac0.msi [736256] =>.Advanced Micro Devices, Inc. [MD5.2B5DA6F4DA399028F4FE7681A29C68B8] [WIS][2015/11/06 22:15:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ac4.msi [780800] =>.Advanced Micro Devices, Inc. [MD5.A314040F23826FE89BB621D0E754EEB3] [WIS][2015/11/06 22:16:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ac8.msi [760832] =>.Advanced Micro Devices, Inc. [MD5.CDB424F62BA826E303A0C068E113040B] [WIS][2015/11/06 22:16:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57acc.msi [729600] =>.Advanced Micro Devices, Inc. [MD5.4C83D2D27E74DC8A1BC1A2D6406A51C2] [WIS][2015/11/06 22:16:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ad0.msi [723968] =>.Advanced Micro Devices, Inc. [MD5.0684EADD0C3C71215EEB2AC5128217A3] [WIS][2015/11/06 22:16:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ad4.msi [755200] =>.Advanced Micro Devices, Inc. [MD5.3E83B039033236F00A35F062DCD8BB50] [WIS][2015/11/06 22:16:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ad8.msi [738816] =>.Advanced Micro Devices, Inc. [MD5.A63E2A0DEF6F6CBC5053C4810CB11ED0] [WIS][2015/11/06 22:16:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57adc.msi [837120] =>.Advanced Micro Devices, Inc. [MD5.372FC3CF695B500D0183DE0F9A107953] [WIS][2015/11/06 22:16:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ae0.msi [728064] =>.Advanced Micro Devices, Inc. [MD5.2DB7B2D0A36DC635B3F8AC774CAC02C1] [WIS][2015/11/06 22:17:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ae4.msi [813056] =>.Advanced Micro Devices, Inc. [MD5.A03616C15CDAE787ADD7FE88F95E856E] [WIS][2015/11/06 22:17:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57ae8.msi [742912] =>.Advanced Micro Devices, Inc. [MD5.D5D78F8EB23EE410028D4AB426AF84FD] [WIS][2015/11/06 22:17:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57aec.msi [731648] =>.Advanced Micro Devices, Inc. [MD5.F23AC48170EF3246A0B9CECA08270D9B] [WIS][2015/11/06 22:17:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57af0.msi [737280] =>.Advanced Micro Devices, Inc. [MD5.5893D3DE1AFD5346E4E255535F55A48E] [WIS][2015/11/06 22:18:10] (.Advanced Micro Devices, Inc. - Catalyst Control Center Utility 64.) -- C:\WINDOWS\Installer\57af4.msi [412160] =>.Advanced Micro Devices, Inc. [MD5.565C90E80F461B07FA901E65E7C8E9A7] [WIS][2015/11/06 22:19:04] (.Advanced Micro Devices, Inc. - AMD Fuel.) -- C:\WINDOWS\Installer\57af8.msi [2981888] =>.Advanced Micro Devices, Inc. [MD5.59C74865D50EEAFA144A0D0D8F5F52BB] [WIS][2015/11/06 22:14:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\57afc.msi [56514048] =>.Advanced Micro Devices, Inc. [MD5.7E8B64D8EA7876FC02F51F8B951544E2] [WIS][2024/10/03 19:15:10] (.Oracle and/or its affiliates - Oracle VM VirtualBox 7.0.12 installation pa.) -- C:\WINDOWS\Installer\b776d8.msi [110268416] =>.Oracle and/or its affiliates ---\\ OBSERVATEURS des évènements (137) - 28s Application.Error: Application Error (71) ~Numéro: 2360 ~Date: 10/08/2024 09:13:24 AM ~ID: 1000 ~Description: Nom de l’application défaillante SUEngine.exe, version : 3.0.102.0, horodatage : 0x66d16093 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.4957, horodatage : 0xc5225d0f Code d’exception : 0xe0434352 Décalage d’erreur : 0x000000000003 ~Suggestion: Réparer ou réinstaller l'application. Application.Error: .NET Runtime (71) ~Numéro: 2359 ~ID: 1026 ~Description: Application : SUEngine.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : System.IndexOutOfRangeException à SU3.Information.SystemInformation.get_BIOSVersio ~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif Application.Error: Application Hang (2) ~Numéro: 2352 ~Date: 10/08/2024 09:01:29 AM ~ID: 1002 ~Description: Le programme explorer.exe version 10.0.19041.4957 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et mai ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: Wlclntfy (11) ~Numéro: 2077 ~Date: 10/07/2024 11:45:20 AM ~ID: 6000 ~Description: L’abonné aux notifications Winlogon n’était pas disponible pour traiter un événement de notification. ~Suggestion: Aucune Application.Warning: ESENT (1) ~Numéro: 2002 ~Date: 10/07/2024 11:15:49 AM ~ID: 472 ~Description: taskhostw (5568,R,98) WebCacheLocal: Page d’en-tête de sauvegarde du fichier C:\Users\Stéphane\AppData\Local\Microsoft\Windows\WebCache\V01.chk endommagée. La page d’en-tête primaire (4096 octets) a été utilisée à la place. ~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe Application.Warning: Microsoft-Windows-RestartManager (4) ~Numéro: 1525 ~Date: 10/04/2024 01:57:31 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe » (pid 5392) - 1. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Error: VSS (8) ~Numéro: 1180 ~Date: 10/03/2024 03:54:25 PM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Warning: Microsoft-Windows-WMI (82) ~Numéro: 709 ~Date: 10/03/2024 02:37:19 PM ~ID: 63 ~Description: Un fournisseur, DMWmiBridgeProv1, a été inscrit dans l’espace de noms Windows Management Instrumentation root\cimv2\mdm\dmmap, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Warning: Software Protection Platform Service (1) ~Numéro: 586 ~Date: 10/03/2024 12:12:10 PM ~ID: 1193 ~Description: Échec de la collecte des informations PKEY pour l’OEM:clé de produit (Product Key) DM. Erreur : 0xC004E016 Clé de produit (Product Key) : FCCQ8-NX6TH-2KBCQ-T343X-C7GBG Application.Error: System Restore (2) ~Numéro: 252 ~Date: 10/02/2024 10:31:32 PM ~Description: Échec de la création d’un point de restauration (Processus = C:\AMD\WU-CCC2\ccc2_install\VC12RTx64\vcredist_x64.exe /q /norestart ; Description = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 ; Erreur = 0x80042302). Application.Error: Microsoft-Windows-CAPI2 (1) ~Numéro: 81 ~Date: 10/02/2024 10:27:24 PM ~ID: 257 ~Description: Le service Services de chiffrement n’a pas réussi à initialiser la base de données du catalogue. L’erreur ESENT était : -1409. ~Suggestion: Réparer la base de données du catalogue à l'aide d'Esentutl ou créer-en une nouvelle si elle n'est pas réparable System.Warning: DCOM (210) ~Numéro: 2395 ~Date: 10/08/2024 09:27:42 AM ~ID: 10016 ~Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}DESKTOP-N2B4NKTStéphaneS-1-5-21-3387019964-3532494323-3827923169-1002LocalHost (avec LRPC)Microsoft.Windows.ShellExperienceHost_10.0. ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Service Control Manager (79) ~Numéro: 2373 ~Date: 10/08/2024 07:39:40 AM ~ID: 7024 ~Description: Le service GoogleUpdater InternalService 130.0.6679.0 (GoogleUpdaterInternalService130.0.6679.0) s’est arrêté avec l’erreur spécifique au service suivante : %%75001 System.Error: Microsoft-Windows-TPM-WMI (23) ~Numéro: 2372 ~Date: 10/08/2024 07:39:13 AM ~ID: 1796 ~Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur -2147020471. Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931 System.Warning: BTHUSB (96) ~Numéro: 2366 ~Date: 10/08/2024 07:36:14 AM ~ID: 34 ~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est 0x2491f7fffff, a reçu 0x1fffffff. La fonctionnalité du rôle périph System.Error: VBoxNetLwf (69) ~Numéro: 2326 ~Date: 10/07/2024 09:14:10 PM ~ID: 12 ~Description: Le pilote a détecté une erreur de pilote interne sur \Device\VBoxNetLwf. System.Warning: Microsoft-Windows-Kernel-Processor-Power (24) ~Numéro: 2325 ~Date: 10/07/2024 09:13:14 PM ~ID: 37 ~Description: La vitesse du processeur logique Hyper-V 0 est limitée par le microprogramme du système. Le processeur a connu cet état de performances réduites pendant 72 secondes depuis le dernier rapport. System.Warning: Microsoft-Windows-DNS-Client (3) ~Numéro: 2319 ~Date: 10/07/2024 09:12:19 PM ~ID: 1014 ~Description: La résolution du nom login.live.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: Microsoft-Windows-WLAN-AutoConfig (6) ~Numéro: 2317 ~Date: 10/07/2024 09:12:14 PM ~ID: 4003 ~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 7 Famille IP : 0 ~Suggestion: Vérifier les paramètres d'économie d'énergie System.Error: Application Popup (56) ~Numéro: 2217 ~Date: 10/07/2024 11:46:12 AM ~ID: 1060 ~Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS System.Warning: Microsoft-Windows-Kernel-PnP (88) ~Numéro: 2051 ~Date: 10/07/2024 11:33:10 AM ~ID: 219 ~Description: Le chargement du pilote \Driver\IntcDAud a échoué pour le périphérique HDAUDIO\FUNC_01&VEN_8086&DEV_2806&SUBSYS_144DC0D8&REV_1000\4&1391229c&0&0301. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: EventLog (1) ~Numéro: 1585 ~Date: 10/06/2024 07:57:18 PM ~ID: 6008 ~Description: L’arrêt système précédant à 18:37:57 le ‎06/‎10/‎2024 n’était pas prévu. System.Error: bowser (2) ~Numéro: 1305 ~Date: 10/04/2024 05:58:32 PM ~ID: 8003 ~Description: Le maître explorateur a reçu une annonce de serveur de l’ordinateur STÉPHANE-PC qui pense qu’il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{05239971-45B7-4F5D-83E3-B208E2E5FBCC}. Le maître explorateur s’arrête ou une élect System.Error: Microsoft-Windows-WindowsUpdateClient (1) ~Numéro: 487 ~Date: 10/03/2024 12:26:15 PM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x8024200d : 2024-09 Mise à jour cumulative pour Windows 10 Version 22H2 pour les systèmes x64 (KB5043064). ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: Microsoft-Windows-Kernel-Tm (2) ~Numéro: 483 ~Date: 10/03/2024 12:23:30 PM ~ID: 4 ~Description: The TransactionManager (TmId={76c578ee-80ea-11ef-bb55-20898419747a}, LogPath=\Device\HarddiskVolume4\Windows\System32\config\COMPONENTS{53b39e63-18c4-11ea-a811-000d3aa4692b}.TM) has failed to advance its log tail, due to the transaction (UOW={6b6852a ---\\ SCAN ADDITIONNEL (22) - 5s C:\WINDOWS\System32\Tasks\OpenWebSearchRepair =>PUP.Optional.SimpleSearches HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\Stéphane\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\Stéphane\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome C:\Users\Stéphane\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Downloads\VirtualBox-7.1.2-164945-Win.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Downloads\VirtualBox-7.1.2-164945-Win.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Desktop\SafeDiscShim_Setup_0.1.0.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Desktop\SafeDiscShim_Setup_0.1.1.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Desktop\vlc-3.0.21-win64.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Downloads\VirtualBox-7.1.2-164945-Win.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Downloads\VirtualBox-7.1.2-164945-Win.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Desktop\SafeDiscShim_Setup_0.1.0.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Desktop\SafeDiscShim_Setup_0.1.1.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3387019964-3532494323-3827923169-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Stéphane\Desktop\vlc-3.0.21-win64.exe.FriendlyAppName =>.Unsigned ---\\ RECAPITULATIF DES ELEMENTS TROUVES (7) - 0s https://nicolascoolman.eu/2022/09/05/zhpdiag-lanalyse-s-m-a-r-t-du-disque-systeme/ => SMART Information https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>PUP.Optional.SimpleSearches https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/forum/Topic/2024/08/26/muicache-cle-de-registre/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [00A5AD09B4CADC9329EBFE452343CF425F] [08/10/2024] (.Advanced Micro Devices.) - C:\Users\Stéphane\Desktop\amd-software-adrenalin-edition-24.9.1-minimalsetup-241001_web.exe =>.Not verified [048B08399EC703623C72CD2077AD65D9] [08/10/2024] (.win.rar GmbH.) - C:\Users\Stéphane\Desktop\winrar-x64-701fr.exe =>.Not verified [048B08399EC703623C72CD2077AD65D9] [12/05/2024] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.Not verified [048B08399EC703623C72CD2077AD65D9] [12/05/2024] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.Not verified [048B08399EC703623C72CD2077AD65D9] [12/05/2024] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.Not verified [0640025BFF0C48973299D4632083C37B] [30/09/2024] (.Broadcom Inc.) - C:\Users\Stéphane\Desktop\vmware-workstation-windows-17.6.0-4873.exe =>.Not verified [08802BE2CCF38CBDD227F05CC7114019] [30/08/2024] (.Samsung Electronics Co., Ltd..) - C:\Program Files\Samsung\SamsungUpdate\SUEngine.exe =>.Not verified [08802BE2CCF38CBDD227F05CC7114019] [30/08/2024] (.Samsung Electronics Co., Ltd..) - C:\Program Files\Samsung\SamsungUpdate\SUService.exe =>.Not verified [08802BE2CCF38CBDD227F05CC7114019] [30/08/2024] (.Samsung Electronics Co., Ltd..) - C:\Program Files\Samsung\SamsungUpdate\SUUserModeWorker.exe =>.Not verified [09D08EBDA06BE07C815EA7AF25EF6875] [02/10/2024] (.VideoLAN.) - C:\Users\Stéphane\Desktop\vlc-3.0.21-win64.exe =>.Not verified [09D08EBDA06BE07C815EA7AF25EF6875] [09/06/2024] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.Not verified [0B1115C9BCC1B7C8DC39A438D3996023] [04/10/2024] (.THE TOR PROJECT, INC..) - C:\Users\Stéphane\Desktop\tor-browser-windows-x86_64-portable-13.5.6.exe =>.Not verified [0B50CF246B263EFD85A729315158F3FF] [01/10/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\129.0.6668.90\elevation_service.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [01/10/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [04/10/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\129.0.6668.90\Installer\chrmstp.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [04/10/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\129.0.6668.90\Installer\setup.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [26/08/2024] (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [26/08/2024] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC [0B50CF246B263EFD85A729315158F3FF] [28/09/2024] (.Google LLC.) - C:\Users\Stéphane\Downloads\ChromeSetup.exe =>.Google LLC [1D9FF0CFF14FE700963E52F6CDACF575] [12/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\InstNT.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [12/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [12/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [12/06/2015] (.Synaptics Incorporated.) - C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [12/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated [2BA3468EC4341A0C6D2AC5EC] [07/10/2024] (.RARE IDEAS, LLC.) - C:\Users\Stéphane\Downloads\FirefoxPortable_131.0_French.paf.exe =>.Not verified [2C80892E0115B0B77AA3594B9A733953] [30/07/2012] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\drivers\Rt630x64.sys =>.Realtek Semiconductor Corp [33000003DE6C778D9215F2E1960000000003DE] [02/10/2024] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.129.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified [330000B7E741A34024FC3AB6E700020000B7E7] [01/12/2015] (.Intel(R) Wireless Display.) - C:\WINDOWS\System32\drivers\intelaud.sys =>.Intel(R) Wireless Display [330000B7E741A34024FC3AB6E700020000B7E7] [01/12/2015] (.Intel(R) Wireless Display.) - C:\WINDOWS\System32\drivers\iwdbus.sys =>.Intel(R) Wireless Display [330000B898AA86B5A39E5A1BBD00020000B898] [03/05/2016] (.Intel(R) pGFX.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Intel(R) pGFX [330000B898AA86B5A39E5A1BBD00020000B898] [03/05/2016] (.Intel(R) pGFX.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel(R) pGFX [330000B898AA86B5A39E5A1BBD00020000B898] [03/05/2016] (.Intel(R) pGFX.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX [3DD79449EA86A17D1AED3D553A987DDF] [30/01/2019] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\AdminService.exe =>.Qualcomm Atheros [3DD79449EA86A17D1AED3D553A987DDF] [30/01/2019] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\btfilter.sys =>.Qualcomm Atheros [4CD9E755850C1372B48DC182A7308BAB] [04/11/2015] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [04/11/2015] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [04/11/2015] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [04/11/2015] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [16/12/2015] (.Advanced Micro Devices, Inc..) - C:\Program Files\AMD\CCC2\Install\ccc2_install.exe =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [16/12/2015] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [19/05/2015] (.Advanced Micro Devices, Inc..) - C:\AMD\WU-CCC2\ccc2_install\WULaunchApp.exe =>.Advanced Micro Devices, Inc. [51CA009816FDBD80F120E015EE75823E] [03/10/2024] (.Oracle Corporation.) - C:\Users\Stéphane\Desktop\VirtualBox-7.0.12-159484-Win.exe =>.Oracle Corporation [51CA009816FDBD80F120E015EE75823E] [12/10/2023] (.Oracle Corporation.) - C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe =>.Oracle Corporation [51CA009816FDBD80F120E015EE75823E] [12/10/2023] (.Oracle Corporation.) - C:\WINDOWS\System32\DRIVERS\VBoxNetAdp6.sys =>.Oracle Corporation [51CA009816FDBD80F120E015EE75823E] [12/10/2023] (.Oracle Corporation.) - C:\WINDOWS\System32\DRIVERS\VBoxNetLwf.sys =>.Oracle Corporation [51CA009816FDBD80F120E015EE75823E] [12/10/2023] (.Oracle Corporation.) - C:\WINDOWS\System32\DRIVERS\VBoxSup.sys =>.Oracle Corporation [51CA009816FDBD80F120E015EE75823E] [12/10/2023] (.Oracle Corporation.) - C:\WINDOWS\System32\DRIVERS\VBoxUSBMon.sys =>.Oracle Corporation ~ Unselected Options: NF, O82, ~ End of the scan, 6255 items in 02mn44s (1057)(0)