~ ZHPDiag v2024.12.11.32 Par Nicolas Coolman (2024/12/11) ~ Démarre par Utilisateur (Administrator) (2024/12/20 18:42:38) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\Utilisateur\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Demarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 19045) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (4) - 0s ~ MFIE: Mozilla Firefox 109.0.1 (x64 fr) ~ OPIE: Opera 114.0.5282.235 ~ MSIE: Internet Explorer v11.3636.19041.0 ~ OBIE: Microsoft Edge v131.0.2903.99 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 3V66T Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (1) - 0s Malwarebytes version 5.2.1.144 v5.2.1.144 (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (18) - 0s ~ Operating System: Intel64 Family 6 Model 165 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 20 GB (22%) free of 88 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : ~ Slots Utilisés (Used Slots) : ~ Slots Disponibles (Free Slots) : 0 ~ Type de barrette (FormFactor): ~ Taille (Size) : 0 Go ~ Vitesse (Speed) : ~ Charge mémoire (Memory Usage) : 53% ~ RAM physique Total (Total Physical) : 8 Go : OK ~ RAM physique Disponible (Available Physical) : 4 Go ~ Total virtuelle (Total Virtual) : 9.19 Go ~ Disponible virtuelle (Available Virtual): 3.85 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: ANNIE ~ User Name: Utilisateur ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (6) - 0s ~ Drive C: has 20 GB free of 88 GB (System) ~ Drive D: has 138 GB free of 139 GB ---\\ ETAT DE LA COMMANDE TRIM ~ La commande TRIM est active (NTFS) ~ La commande TRIM est active (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (1) - 0s ~ La technologie SMART n'est pas active sur le disque système ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 1s [MD5.690CE9EB3D49AD59C0A9172D2B5EC01E] - 17/12/2024 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5974480] =>.Microsoft® [MD5.D28778D07C8F7CA59B7569E4EDA54512] - 10/07/2024 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [89600] [Unsigned] =>.Microsoft Corporation [MD5.583B60A43F502D90331E6589E1DBC6DD] - 30/08/2024 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [420656] [Unsigned] =>.Microsoft Corporation [MD5.38DD8E704873BDC8071987F18B12AFFB] - 24/07/2024 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5045760] [Unsigned] =>.Microsoft Corporation [MD5.4E79357D0CC0EF9897239A9BFF18A87C] - 22/11/2024 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [947200] [Unsigned] =>.Microsoft Corporation [MD5.9E9B92A002EACFE2831EA4842C34C545] - 23/10/2024 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.7CD32F5CF65B86C38DDEA8D86D2C71CA] - 12/06/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821800] =>.Microsoft® [MD5.DE5762BFDE6D02F60FED8702089B2792] - 12/06/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583680] =>.Microsoft® [MD5.CF5F6AE33CCBDF0A975049FD8428943B] - 22/11/2024 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3433472] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.585A0F9DFF199CC4EA94F621C270FF47] - 09/10/2024 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [657888] [Unsigned] =>.Microsoft Corporation [MD5.81FF48994C82B1CA2C4EBD9C6C6683C4] - 15/11/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31200] [Unsigned] =>.Microsoft Corporation [MD5.E53DE91C9330F0E17075C11CD0A7719A] - 15/11/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.14D133579A5B1E08E336B7FE259CA85A] - 16/05/2024 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation [MD5.BE6DCE5C9655A6DA501C46DA125B41A9] - 25/09/2024 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [154112] [Unsigned] =>.Microsoft Corporation [MD5.7E0352A6396756AD61CC755CAEDBD2D4] - 25/09/2024 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138752] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.2954A20F0F0152E89FC459A11382C98A] - 16/05/2024 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [228352] [Unsigned] =>.Microsoft Corporation [MD5.6E4E7AE6A3C0E30C80A42B4F9E9DBCB9] - 25/09/2024 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [584696] [Unsigned] =>.Microsoft Corporation [MD5.09D0F16FB9555790DA934BDC2543E940] - 15/11/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.0BCA424282646E17B49188EDA293B410] - 14/08/2024 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2844536] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.E8308FE2DB8DCD31A02CADD808819EDE] - 16/05/2024 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] [Unsigned] =>.Microsoft Corporation [MD5.360DD75AEDB512B0DD878A81BEE89BEF] - 16/05/2024 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [170496] [Unsigned] =>.Microsoft Corporation [MD5.02577FC71C31F625B302566190AA1382] - 15/11/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118752] [Unsigned] =>.Microsoft Corporation [MD5.484DC5AD718AE12B3AD99B511FABE088] - 15/11/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [431088] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (7) - 1s O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.8.0\ABService.exe =>.AOMEI International Network Limited® O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) . (.HP Inc. - .) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc.® O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe {071FA1C11A5CBB5DE62052E44E09AD52}. =>.Intel(R) Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_550508a90a3c9a47\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (70) - 2s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Boot [14/05/2019] [ 51120] ambakdrv (ambakdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Auto [21/12/2016] [ 171952] ammntdrv (ammntdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.® SR - Auto [21/12/2021] [ 32176] amwrtdrv (amwrtdrv) . (.AOMEI International Network Limited.) - C:\WINDOWS\system32\amwrtdrv.sys =>.AOMEI International Network Limited® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Demand [30/09/2022] [ 167440] SAMSUNG Mobile USB Com (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\drivers\ssudbus2.sys =>.Samsung Electronics CO., LTD.® SR - Demand [24/04/2020] [ 599928] Intel(R) PRO/1000 P (e1dexpress) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_f6c146a8872514f7\e1d68x64.sys =>.Intel(R) INTELND1820® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [04/06/2018] [ 39504] Intel(R) Watchdog Timer Driver (ICCWDT) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\ICCWDT.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [22/10/2020] [ 5936224] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [11/11/2024] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Demand [11/11/2024] [ 239568] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [15/10/2020] [ 308656] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_6557ea4289534d04\x64\TeeDriverW10x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Demand [00/00/0000] [ 0] (MpKsl76d00ac9) . (...) - C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{466AF4E4-0A82-40B1-A502-C1B9F791BCF3}\MpKslDrv.sys (.not file.) [Unsigned] SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [05/10/2020] [ 230720] Service for NVIDIA High Definitio (NVHDA) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvhda64v.sys =>.NVIDIA Corporation® SR - Demand [05/10/2020] [32479640] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_60daf66a00f2e0b6\nvlddmkm.sys =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Demand [07/12/2019] [ 8169472] Realtek Wir (RTWlanE01) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\rtwlane01.sys [Unsigned] =>.Realtek Semiconductor Corporation SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [30/09/2022] [ 174112] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD.® SR - Demand [29/06/2021] [ 65144] SAMSUNG Mobile USB QCRMNE (ssudqcfilter) . (.QUALCOMM Incorporated.) - C:\WINDOWS\System32\drivers\ssudqcfilter.sys =>.Samsung Electronics Co., Ltd.® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [05/10/2020] [ 717624] NVIDIA USB Type-C PPC Se (UcmCxUcsiNvppc) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvppc.inf_amd64_27e934acf40fccb7\UcmCxUcsiNvppc.sys =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (22) - 3s O38 - TASK: {61BC31C7-12BA-47FF-956B-3775DB57D17F} [64Bits][\Intel PTT EK Recertification] - (.Intel(R) Corporation - Intel(R)PTT EK Recertification Service.) -- C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664] =>.Intel(R) Corporation O38 - TASK: {65D1E54F-CA1D-47DB-8106-7C67DFEE4541} [64Bits][\WinZip Update Notifier 2] - (.Corel Corporation - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [3177592] =>.Corel Corporation O38 - TASK: {6846040E-28F9-46C1-AB45-EA7A55EF3B2F} [64Bits][\WinZip - Outil de déduplication - Images - Utilisateur] - (.WinZip Computing - WinZip BGT Tools Manager.) -- C:\Program Files\WinZip\WzBGTToolsManager64.exe [332368] =>.WinZip Computing O38 - TASK: {6DD23CEF-B2B6-497F-BC98-01C531AC68C5} [64Bits][\Opera scheduled Autoupdate 1633710669] - (.Opera Software - Opera auto-updater.) -- C:\Users\Utilisateur\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5605784] =>.Opera Software O38 - TASK: {80368677-0E4E-4614-ABAB-CFB10726C6B4} [64Bits][\WinZip Update Notifier 3] - (.Corel Corporation - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [3177592] =>.Corel Corporation O38 - TASK: {892AEFE4-9F4A-43D0-AD04-2A2D8427FC77} [64Bits][\WinZip Updater - Utilisateur] - (.(c) 2015-2022 Corel Corporation All rights reserved. - WzUpdater.) -- C:\Program Files\WinZip\WzUpdater.exe [441936] O38 - TASK: {A21C0FD0-149B-49B2-AC50-C10D625F667D} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [661408] =>.Mozilla Corporation O38 - TASK: {BC704E52-008C-436A-9445-548D22CE367D} [64Bits][\WinZip - Outil de déduplication - Téléchargements - Utilisateur] - (.WinZip Computing - WinZip BGT Tools Manager.) -- C:\Program Files\WinZip\WzBGTToolsManager64.exe [332368] =>.WinZip Computing O38 - TASK: {C00F7796-11DC-4727-B31C-C43624066D1E} [64Bits][\WinZip - Outil de déduplication - Documents - Utilisateur] - (.WinZip Computing - WinZip BGT Tools Manager.) -- C:\Program Files\WinZip\WzBGTToolsManager64.exe [332368] =>.WinZip Computing O38 - TASK: {CCFF0A49-278C-4934-8761-C5E219ED54A9} [64Bits][\WinZip Update Notifier 1] - (.Corel Corporation - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [3177592] =>.Corel Corporation O38 - TASK: {D0743BDF-E45D-4DD3-B3F2-7876A3696743} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [710560] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification - (.Intel(R) Corporation.) -- C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [] =>.Intel(R) Corporation C:\WINDOWS\System32\Tasks\WinZip Update Notifier 2 - (.Corel Corporation.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [-checkType="scheduled_12PM" -show.-checkType="sche] =>.Corel Corporation C:\WINDOWS\System32\Tasks\WinZip - Outil de déduplication - Images - Utilisateur - (.WinZip Computing.) -- C:\Program Files\WinZip\WzBGTToolsManager64.exe [{8E12013C-A1EA-4D14-BD80-618D43334D5C}] =>.WinZip Computing C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1633710669 - (.Opera Software.) -- C:\Users\Utilisateur\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [--scheduledtask --bypasslauncher .--scheduledtask] =>.Opera Software C:\WINDOWS\System32\Tasks\WinZip Update Notifier 3 - (.Corel Corporation.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [-checkType="scheduled_3PM" -show.-checkType="sched] =>.Corel Corporation C:\WINDOWS\System32\Tasks\WinZip Updater - Utilisateur - (.(c) 2015-2022 Corel Corporation All rights reserved..) -- C:\Program Files\WinZip\WzUpdater.exe [/onlycheck] C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\WinZip - Outil de déduplication - Téléchargements - Utilisateur - (.WinZip Computing.) -- C:\Program Files\WinZip\WzBGTToolsManager64.exe [{86028757-4F6C-4F2A-8836-9311464E3B36}] =>.WinZip Computing C:\WINDOWS\System32\Tasks\WinZip - Outil de déduplication - Documents - Utilisateur - (.WinZip Computing.) -- C:\Program Files\WinZip\WzBGTToolsManager64.exe [{58152587-FDC3-46BF-90FC-B9D3143F7CF2}] =>.WinZip Computing C:\WINDOWS\System32\Tasks\WinZip Update Notifier 1 - (.Corel Corporation.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [-checkType="scheduled_9AM" -show.-checkType="sched] =>.Corel Corporation C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (15) - 1s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_550508a90a3c9a47\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® O4 - HKLM\..\Run: [WinZip UN] . (.Corel Corporation - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe {0CD13B35B68DD6D292DBA4BD79CC8B82}. =>.Corel Corporation O4 - HKCU\..\Run: [HP ENVY 4500 series (NET)] . (. - .) -- 1. O4 - HKCU\..\Run: [Opera Browser Assistant] . (.Opera Software - Opera Browser Assistant.) -- C:\Users\Utilisateur\AppData\Local\Programs\Opera\assistant\browser_assistant.exe =>.Opera Software AS® O4 - HKCU\..\Run: [OneStartChromium] . (.OneStart.ai - OneStart.) -- C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - HKCU\..\Run: [OneStartUpdate] . (.OneStart.ai - OneStart.) -- C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-128484715-2522177360-3649030042-1001\..\Run: [HP ENVY 4500 series (NET)] . (. - .) -- 1. O4 - HKUS\S-1-5-21-128484715-2522177360-3649030042-1001\..\Run: [Opera Browser Assistant] . (.Opera Software - Opera Browser Assistant.) -- C:\Users\Utilisateur\AppData\Local\Programs\Opera\assistant\browser_assistant.exe =>.Opera Software AS® O4 - HKUS\S-1-5-21-128484715-2522177360-3649030042-1001\..\Run: [OneStartChromium] . (.OneStart.ai - OneStart.) -- C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - HKUS\S-1-5-21-128484715-2522177360-3649030042-1001\..\Run: [OneStartUpdate] . (.OneStart.ai - OneStart.) -- C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - HKUS\S-1-5-21-128484715-2522177360-3649030042-1001\..\Run: [MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (19) - 1s P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\crashes =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\datareporting =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\features =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\minidumps =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\security_state =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\settings =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\shader-cache =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\storage =>Mozilla Corporation C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\2e5khw60.default-release\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.4894 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (4) - 0s E2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes E2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [Utilisateur][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (4) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (40) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\131.0.2903.99\BHO\ie_to_edge_bho_64.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (79) - 5s O4 - GS\Desktop [Annie]: Documents Annie.lnk . (...) D:\Documents Annie [Unsigned] O4 - GS\Desktop [Annie]: Documents Raymond - Raccourci.lnk . (...) D:\Documents Raymond [Unsigned] O4 - GS\Desktop [Annie]: Microsoft Office Excel 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Annie]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Desktop [Annie]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Annie]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [Annie]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Quicklaunch [Annie]: Wondershare Recoverit.lnk . (.2021 Wondershare. All rights reserved. - Wondershare Recoverit.) C:\Program Files\Wondershare\Recoverit - Data Recovery\recoveritassist.exe =>.Wondershare Technology Group Co.,Ltd® O4 - GS\sendTo [Annie]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Annie]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Annie]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Annie]: Microsoft Office Excel 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Annie]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Annie]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS® O4 - GS\TaskBar [Annie]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\TaskBar [Annie]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Annie]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS® O4 - GS\Programs [Annie]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Navigation privée de Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Programs [Annie]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Programs [Annie]: Paramètres des outils WinZip.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\winzip64.exe /toolsetting [Unsigned] =>.WinZip Computing O4 - GS\Desktop [Utilisateur]: Documents Annie.lnk . (...) D:\Documents Annie [Unsigned] O4 - GS\Desktop [Utilisateur]: Documents Raymond - Raccourci.lnk . (...) D:\Documents Raymond [Unsigned] O4 - GS\Desktop [Utilisateur]: Microsoft Office Excel 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\Desktop [Utilisateur]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Desktop [Utilisateur]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Utilisateur]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [Utilisateur]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Quicklaunch [Utilisateur]: Wondershare Recoverit.lnk . (.2021 Wondershare. All rights reserved. - Wondershare Recoverit.) C:\Program Files\Wondershare\Recoverit - Data Recovery\recoveritassist.exe =>.Wondershare Technology Group Co.,Ltd® O4 - GS\sendTo [Utilisateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Utilisateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Utilisateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Utilisateur]: Microsoft Office Excel 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Utilisateur]: Microsoft Office Word 2007.lnk . (...) C:\WINDOWS\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Utilisateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS® O4 - GS\TaskBar [Utilisateur]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\TaskBar [Utilisateur]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Utilisateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS® O4 - GS\Programs [Utilisateur]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Navigation privée de Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Programs [Utilisateur]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Programs [Utilisateur]: Paramètres des outils WinZip.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\winzip64.exe /toolsetting [Unsigned] =>.WinZip Computing O4 - GS\CommonDesktop [Public]: AOMEI Backupper.lnk . (.AOMEI International Network Limited - ABLaucher Application.) C:\Program Files (x86)\AOMEI\AOMEI Backupper\ABLaucher.exe =>.AOMEI International Network Limited® O4 - GS\CommonDesktop [Public]: ApowerRecover.lnk . (.Apowersoft - ApowerRecover.) C:\Program Files (x86)\Apowersoft\ApowerRecover\DRW.exe {050F33BC8850EA3E3E2033D79A29009A}. =>.APowerSoft O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: HP Print and Scan Doctor.lnk . (.HP Development Company, L.P. - HP Print and Scan Doctor 5.7.4.) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe {0FE61CE3A48D36CE6BFFF377F7B46A5B}. =>.HP Development Company, L.P. O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\Malwarebytes.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: Wondershare Recoverit.lnk . (.2021 Wondershare. All rights reserved. - Wondershare Recoverit.) C:\Program Files\Wondershare\Recoverit - Data Recovery\recoveritassist.exe =>.Wondershare Technology Group Co.,Ltd® O4 - GS\Programs [Public]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS® O4 - GS\Programs [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Navigation privée de Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Programs [Public]: OneStart.lnk . (.OneStart.ai - OneStart.) C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe {7209B6BCFD61AFA5A476DBF0}. O4 - GS\Programs [Public]: Paramètres des outils WinZip.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\winzip64.exe /toolsetting [Unsigned] =>.WinZip Computing O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Startup [Public]: WinZip Préchargeur.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\WzPreloader.exe [Unsigned] =>.WinZip Computing O4 - GS\Startup [Public]: Wondershare PEScreenshot.lnk . (.Wondershare - .) C:\Program Files (x86)\Wondershare\PDFelement11\PENotify.exe "/enablenotify" "1" "/path" "PECaptureTool" "/entrance" "DeviceBoot" [Unsigned] =>.Wondershare O4 - GS\Startup [Public]: Wondershare PEToolbox.lnk . (.Wondershare - .) C:\Program Files (x86)\Wondershare\PDFelement11\PENotify.exe "/enablenotify" "1" "/path" "PDFToolbox" "/entrance" "DeviceBoot" [Unsigned] =>.Wondershare O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\Malwarebytes.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Pixillion - Convertisseur d'images.lnk . (.NCH Software - Pixillion - Convertisseur d'images.) C:\Program Files (x86)\NCH Software\Pixillion\pixillion.exe =>.NCH Software, Inc.® O4 - GS\ProgramsCommon [Public]: SyncBackFree.lnk . (.2BrightSparks Pte. Ltd. - SyncBackFree.) C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe =>.2BrightSparks Pte. Ltd.® O4 - GS\ProgramsCommon [Public]: WinZip Duplicate File Finder.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\DupFF64.exe [Unsigned] =>.WinZip Computing O4 - GS\ProgramsCommon [Public]: WinZip Image Manager.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\ImgUtil64.exe [Unsigned] =>.WinZip Computing O4 - GS\ProgramsCommon [Public]: WinZip PDF Express.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\PdfUtil64.exe [Unsigned] =>.WinZip Computing O4 - GS\ProgramsCommon [Public]: WinZip SafeShare.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\SafeShare64.exe [Unsigned] =>.WinZip Computing O4 - GS\ProgramsCommon [Public]: WinZip Secure Backup.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\Sbkup64.exe [Unsigned] =>.WinZip Computing O4 - GS\ProgramsCommon [Public]: WinZip.lnk . (.WinZip Computing - .) C:\Program Files (x86)\WinZip\winzip64.exe [Unsigned] =>.WinZip Computing ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{b94a8568-8e35-445a-8ec9-a911ebe19d4f}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{c01870f3-4742-47be-a468-7d9a2bfe00b3}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (20) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\system32\userinit.exe =>.Microsoft Corporation ---\\ CLE DE REGISTRE EXPLORER StartupApproved (11) - 0s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Opera Browser Assistant =>.Opera Software [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP ENVY 4500 series (NET) [HKEY_USERS\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKEY_USERS\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Opera Browser Assistant =>.Opera Software [HKEY_USERS\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP ENVY 4500 series (NET) [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtkAudUService =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SecurityHealth =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (5) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\131.0.2903.99\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (23) - 4s O42 - Logiciel: AOMEI Backupper - (.AOMEI International Network Limited..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1 [Unsigned] =>.AOMEI International Network Limited. O42 - Logiciel: ApowerRecover - (.Apowersoft.) [HKLM][64Bits] -- EaseUS Data Recovery Wizard_is1 [Unsigned] =>.APowerSoft O42 - Logiciel: DroidKit - (.iMobie Inc..) [HKLM][64Bits] -- DroidKit [Unsigned] =>.iMobie Inc. O42 - Logiciel: K-Lite Codec Pack 16.0.5 Basic - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 [Unsigned] =>.KLCP O42 - Logiciel: Logiciel de base du périphérique HP ENVY 4500 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {9A9B64A8-A9E8-4588-B924-D1898D3E6355} [Unsigned] =>.Hewlett-Packard Co. O42 - Logiciel: Malwarebytes version 5.2.1.144 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 109.0.1 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Display MessageBus - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvDisplay.MessageBus [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: OneStart - (.Auteurs de OneStart.) [HKCU][64Bits] -- OneStart.ai OneStart {7209B6BCFD61AFA5A476DBF0}. O42 - Logiciel: Opera Stable 114.0.5282.235 - (.Opera Software.) [HKCU][64Bits] -- Opera 114.0.5282.235 =>.Opera Norway AS® O42 - Logiciel: Opera Stable 115.0.5322.77 - (.Opera Software.) [HKCU][64Bits] -- Opera 115.0.5322.77 =>.Opera Norway AS® O42 - Logiciel: Opera Stable 94.0.4606.76 - (.Opera Software.) [HKCU][64Bits] -- Opera 94.0.4606.76 [Unsigned] =>.Opera Software O42 - Logiciel: Panneau de configuration NVIDIA 456.71 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: Pixillion - Convertisseur d'images - (.NCH Software.) [HKLM][64Bits] -- Pixillion =>.NCH Software, Inc.® O42 - Logiciel: SyncBackFree - (.2BrightSparks.) [HKLM][64Bits] -- SyncBackFree_is1 =>.2BrightSparks Pte. Ltd.® O42 - Logiciel: WinZip 27.0 - (.Corel Corporation.) [HKLM][64Bits] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C24143} [Unsigned] =>.Corel Corporation O42 - Logiciel: Wondershare PDFelement ( Version 11.1.3 ) - (.Wondershare.) [HKLM][64Bits] -- {66E8BEAD-6D95-434D-BD2B-FA6096C84291}_is1 {0E59B210F402BB4803BEEC5B210130C5}. =>.Wondershare O42 - Logiciel: Wondershare Recoverit(Build 10.5.11.6) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- {829555DC-31E5-4FEA-B350-8FCF24CECD95}_is1 [Unsigned] =>.Wondershare Software Co.,Ltd. ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (111) - 4s HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\EASEUS =>.EaseUS Software HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\HP =>.HP HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PEPrinter =>.Legitimate HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\2BrightSparks =>.Ignite Realtime HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\HP =>.HP HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros HKLM\SOFTWARE\WOW6432Node\iMobie =>.iMobie Inc HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\WOW6432Node\LAV =>.LAV Inc HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\NCH Software =>.NCH Software HKLM\SOFTWARE\WOW6432Node\NCH Swift Sound =>.NCH Swift Sound HKLM\SOFTWARE\WOW6432Node\Nico Mak Computing =>.Nico Mak Computing HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\2BrightSparks =>.Ignite Realtime HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting HKCU\SOFTWARE\AOMEI =>.AOMEI Tech Co HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\Lavasoft =>.Lavasoft HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\NCH Software =>.NCH Software HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OEMSDK HKCU\SOFTWARE\OneStart.ai HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\WinZip Computing =>.WinZip Computing HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Corel =>.Corel HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKU\.DEFAULT\SOFTWARE\WinZip Computing =>.WinZip Computing HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\2BrightSparks =>.Ignite Realtime HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Akeo Consulting =>.Akeo Consulting HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\AOMEI =>.AOMEI Tech Co HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Apowersoft =>.Apowersoft HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Corel =>.Corel HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Gabest =>.Gabest HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\HP =>.HP HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Icaros =>.Icaros HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Lavasoft =>.Lavasoft HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\NCH Software =>.NCH Software HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\OEMSDK HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\OneStart.ai HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Trolltech =>.Trolltech HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\WinZip Computing =>.WinZip Computing HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKU\S-1-5-21-128484715-2522177360-3649030042-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (5) - 0s C:\Program Files (x86)\WindowsApps\89E2DF08.Passwarden_3.3.9.0_x64__6bkczb78q4msy - (..) [][Passwarden] C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrinterControl_156.1.1125.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP Smart] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.4239_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.4239.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.38.277.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][Realtek Audio Control] =>Realtek Semiconductor Corp ---\\ CONTENU DES DOSSIERS PROGRAMMES (68) - 2s O43 - CFD: 16/10/2024 - [] D -- C:\Program Files\HPPrintScanDoctor =>.HP Inc.® O43 - CFD: 12/11/2024 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 14/02/2023 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 08/10/2021 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 22/11/2024 - [] D -- C:\Program Files\RUXIM =>.Microsoft® O43 - CFD: 13/02/2023 - [] D -- C:\Program Files\WinZip {0E2D336B0A2BF7F31C96DA992B22FEC8}. =>.WinZip O43 - CFD: 19/10/2024 - [] D -- C:\Program Files\Wondershare =>.Wondershare O43 - CFD: 19/01/2023 - [] D -- C:\Program Files (x86)\2BrightSparks =>.Ignite Realtime O43 - CFD: 21/12/2021 - [] D -- C:\Program Files (x86)\AOMEI =>.AOMEI Tech Co O43 - CFD: 27/08/2022 - [] D -- C:\Program Files (x86)\Apowersoft =>.Apowersoft O43 - CFD: 05/08/2024 - [0] D -- C:\Program Files (x86)\iMobie =>.iMobie Inc O43 - CFD: 27/08/2022 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 20/12/2021 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 08/11/2022 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software O43 - CFD: 08/10/2021 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 23/10/2024 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 21/12/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper =>.AOMEI Tech Co O43 - CFD: 27/08/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft O43 - CFD: 05/08/2024 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie =>.iMobie Inc O43 - CFD: 27/08/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 13/02/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip =>.WinZip O43 - CFD: 19/10/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare O43 - CFD: 19/10/2024 - [0] D -- C:\ProgramData\ABBYY =>.ABBYY Software O43 - CFD: 09/10/2021 - [] D -- C:\ProgramData\Aomei =>.AOMEI Tech Co O43 - CFD: 15/02/2023 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology O43 - CFD: 13/02/2023 - [0] D -- C:\ProgramData\DIPUS O43 - CFD: 12/11/2024 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 18/03/2024 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 08/11/2022 - [] D -- C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 19/12/2024 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 08/10/2021 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 20/01/2023 - [] D -- C:\ProgramData\SystemAcCrux O43 - CFD: 13/02/2023 - [] D -- C:\ProgramData\WinZip =>.WinZip O43 - CFD: 19/10/2024 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 09/10/2021 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 19/10/2024 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare O43 - CFD: 19/01/2023 - [] D -- C:\Users\Utilisateur\AppData\Roaming\2BrightSparks =>.Ignite Realtime O43 - CFD: 08/10/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 27/08/2022 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 20/01/2023 - [] D -- C:\Users\Utilisateur\AppData\Roaming\EaseUS =>.EaseUS Software O43 - CFD: 04/02/2023 - [] D -- C:\Users\Utilisateur\AppData\Roaming\HPPSDr O43 - CFD: 05/08/2024 - [] D -- C:\Users\Utilisateur\AppData\Roaming\iMobie =>.iMobie Inc O43 - CFD: 17/12/2024 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Lavasoft =>.Lavasoft O43 - CFD: 05/12/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 07/11/2022 - [] D -- C:\Users\Utilisateur\AppData\Roaming\NCH Software =>.NCH Software O43 - CFD: 25/09/2024 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 19/10/2024 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 20/12/2024 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 19/01/2023 - [] D -- C:\Users\Utilisateur\AppData\Local\2BrightSparks =>.Ignite Realtime O43 - CFD: 19/04/2022 - [] D -- C:\Users\Utilisateur\AppData\Local\Adobe =>.Adobe O43 - CFD: 17/01/2023 - [] D -- C:\Users\Utilisateur\AppData\Local\assembly =>.Assembly O43 - CFD: 17/12/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 05/08/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\iMobie_Inc =>.iMobie Inc O43 - CFD: 17/12/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\Malwarebytes =>.Malwarebytes O43 - CFD: 05/12/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 17/12/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\OneStart.ai O43 - CFD: 08/10/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 14/10/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\Rufus O43 - CFD: 15/12/2023 - [] D -- C:\Users\Utilisateur\AppData\Local\WinZip =>.WinZip O43 - CFD: 20/12/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 17/12/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\Programs\Opera =>.Opera Software O43 - CFD: 20/12/2024 - [] D -- C:\Users\Utilisateur\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 15/11/2024 - [] D -- C:\Users\Utilisateur\Desktop\Documents Josette O43 - CFD: 31/08/2022 - [] D -- C:\Users\Utilisateur\Desktop\Dossier Mont Nôtre Dame O43 - CFD: 01/04/2023 - [] D -- C:\Users\Utilisateur\Desktop\Gan O43 - CFD: 07/07/2023 - [] D -- C:\Users\Utilisateur\Desktop\photos MND O43 - CFD: 01/04/2023 - [] D -- C:\Users\Utilisateur\Desktop\Recuperation O43 - CFD: 08/10/2021 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (32) - 1s O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshls64.dll {0CD13B35B68DD6D292DBA4BD79CC8B82}. =>.WinZip Computing O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH2: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshls64.dll {0CD13B35B68DD6D292DBA4BD79CC8B82}. =>.WinZip Computing O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshls64.dll {0CD13B35B68DD6D292DBA4BD79CC8B82}. =>.WinZip Computing O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshls64.dll {0CD13B35B68DD6D292DBA4BD79CC8B82}. =>.WinZip Computing O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 0s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTEME (71) - 8s O58 - SDL:2019/12/07 10:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2024/06/12 06:59:54 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2018/06/04 04:08:22 A . (.Intel Corporation - Intel(R) Watchdog Timer Driver (Intel(R) WD.) -- C:\WINDOWS\System32\drivers\ICCWDT.sys [39504] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2024/11/11 20:07:19 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2024/11/11 20:07:18 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft® O58 - SDL:2024/11/11 20:07:47 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239568] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2020/10/05 14:03:02 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [230720] =>.NVIDIA Corporation® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2020/10/22 00:24:34 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5936224] =>.Realtek Semiconductor Corp.® O58 - SDL:2019/12/07 10:07:47 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 69342 29887.) -- C:\WINDOWS\System32\drivers\rtwlane01.sys [8169472] [Unsigned] =>.Realtek Semiconductor Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2022/09/30 05:23:56 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [167440] =>.Samsung Electronics CO., LTD.® O58 - SDL:2022/09/30 05:24:08 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [174112] =>.Samsung Electronics CO., LTD.® O58 - SDL:2021/06/29 04:44:08 A . (.QUALCOMM Incorporated - Filter Driver for the Qualcomm USB Driver S.) -- C:\WINDOWS\System32\drivers\ssudqcfilter.sys [65144] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2019/12/07 10:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2019/05/14 11:28:20 A . (...) -- C:\WINDOWS\System32\ambakdrv.sys [51120] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2016/12/21 22:52:42 A . (...) -- C:\WINDOWS\System32\ammntdrv.sys [171952] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2021/12/21 11:55:14 A . (...) -- C:\WINDOWS\System32\amwrtdrv.sys [32176] =>.AOMEI International Network Limited® ---\\ DERNIERS FICHIERS MODIFIES OU CREES (Utilisateur) (8) - 9s O61 - LFC: 2024/12/17 15:14:16 A . (.OneStart.ai.) -- C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\130.0.6723.134\Installer\setup.exe [4918336] {7209B6BCFD61AFA5A476DBF0}. O61 - LFC: 2024/12/17 17:14:36 A . (.Chuyu Team & M2-Team.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\amd64\NCleaner.dll [55808] [Unsigned] O61 - LFC: 2024/12/17 17:14:36 A . (.Chuyu Team & M2-Team.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\arm64\NCleaner.dll [40448] [Unsigned] O61 - LFC: 2024/12/17 17:14:36 A . (.初雨团队.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\Plugins\FrogPlugins_Pcn7FMvReAsVWfCQBfRJCw\Plugin.amd64.dll [177664] [Unsigned] O61 - LFC: 2024/12/17 17:14:36 A . (.初雨团队.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\Plugins\FrogPlugins_Pcn7FMvReAsVWfCQBfRJCw\Plugin.arm64.dll [159744] [Unsigned] O61 - LFC: 2024/12/17 17:14:36 A . (.初雨团队.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\Plugins\FrogPlugins_Pcn7FMvReAsVWfCQBfRJCw\Plugin.x86.dll [119296] [Unsigned] O61 - LFC: 2024/12/17 17:14:36 A . (.初雨团队.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\Plugins\FrogPlugins_Pcn7FMvReAsVWfCQBfRJCw\PluginRes.dll [644608] [Unsigned] O61 - LFC: 2024/12/17 17:14:37 A . (.Chuyu Team & M2-Team.) -- C:\Users\Utilisateur\Downloads\Dism++10.1.1002.1B\Config\x86\NCleaner.dll [35840] [Unsigned] ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 3s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (52) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [222208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [222208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [305152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342464] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [166400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [854016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [543232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [132608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2497536] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [342528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [512512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1139200] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [860672] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2256896] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1486848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [162288] =>.Microsoft® O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1531392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1014784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [552448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [654336] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [323072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3433472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283648] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1050080] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [573952] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [295936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [994816] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (2) - 4s O87 - FAEL: "{9E3770B6-91FD-440B-ACE1-BEEFB3F44369}" [In-None-P6-TRUE] .(.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.8.0\ABService.exe =>.AOMEI International Network Limited® O87 - FAEL: "{B42E017E-8414-408A-B370-81FB731775D9}" [In-None-P17-TRUE] .(.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.8.0\ABService.exe =>.AOMEI International Network Limited® ---\\ CODES PRODUITS LOGICIELS (2) - 0s O90 - PUC: "166F59DC4C5A5F446AAACEDD192C1434" [HKLM] . (.WinZip 27.0.) -- C:\WINDOWS\Installer\{CD95F661-A5C4-44F5-A6AA-ECDD91C24143}\ARPPRODUCTICON.exe O90 - PUC: "910A08ADB3C4AAD4CA1A96737DACFAE9" [HKLM] . (.Update for x64-based Windows Systems (KB5001716).) ---\\ PACKAGES WINDOWS INSTALLER (2) - 1s [MD5.45AC88C1DBA522E9B61A41A8F667FAA8] [WIS][2023/01/16 20:23:25] (.Corel Corporation - Utilitaire de Compression WinZip.) -- C:\WINDOWS\Installer\977568.msi [91210240] =>.Corel Corporation [MD5.881511472FCB7845A2455263B082CA3E] [WIS][2014/07/22 02:27:07] (.Hewlett-Packard Co. - HP ENVY 4500 series Basic Device Software.) -- C:\WINDOWS\Installer\ea5f5.msi [4775936] =>.Hewlett-Packard Co. ---\\ FEATURE CONTROL. (1) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:WebAuthBroker.exe ---\\ OBSERVATEURS des évènements (46) - 5s Application.Error: Application Hang (1) ~Numéro: 76822 ~Date: 12/20/2024 06:40:09 PM ~ID: 1002 ~Description: Le programme ZHPSuite.exe version 2024.12.11.32 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maint ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. System.Warning: DCOM (25) ~Numéro: 97167 ~Date: 12/20/2024 06:38:01 PM ~ID: 10016 ~Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}ANNIEUtilisateurS-1-5-21-128484715-2522177360-3649030042-1001LocalHost (avec LRPC)Microsoft.Windows.ShellExperienceHost_10.0.19041.50 ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Microsoft-Windows-TPM-WMI (10) ~Numéro: 97156 ~Date: 12/20/2024 06:00:00 PM ~ID: 1796 ~Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur -2147020471. Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931 ~Suggestion: Aucune System.Error: Microsoft-Windows-WindowsUpdateClient (1) ~Numéro: 97133 ~Date: 12/20/2024 07:55:57 AM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80073d02 : 9NMPJ99VJBWV-Microsoft.YourPhone. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: Microsoft-Windows-DNS-Client (4) ~Numéro: 97085 ~Date: 12/19/2024 11:07:27 AM ~ID: 1014 ~Description: La résolution du nom gtrace.mediago.io a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: e1dexpress (3) ~Numéro: 97059 ~Date: 12/19/2024 08:17:10 AM ~ID: 27 ~Description: Intel(R) Ethernet Connection (12) I219-V ~Suggestion: Vérifier la Connection Ethernet System.Error: EventLog (2) ~Numéro: 97007 ~Date: 12/19/2024 08:17:07 AM ~ID: 6008 ~Description: L’arrêt système précédant à 19:34:27 le ‎18/‎12/‎2024 n’était pas prévu. System.Error: Service Control Manager (5) ~Numéro: 96864 ~Date: 12/17/2024 05:48:42 PM ~ID: 7031 ~Description: Le service NVIDIA Display Container LS s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 6000 millisecondes : Redémarrer le service. ---\\ SCAN ADDITIONNEL (12) - 7s [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Programs\Opera\Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Programs\Opera\Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe.ApplicationCompany =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Temp\scoped_dir2332_749919968\kprm_2.17.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Temp\scoped_dir2332_749919968\kprm_2.17.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-128484715-2522177360-3649030042-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Programs\Opera\Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-128484715-2522177360-3649030042-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Programs\Opera\Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-128484715-2522177360-3649030042-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-128484715-2522177360-3649030042-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-128484715-2522177360-3649030042-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Temp\scoped_dir2332_749919968\kprm_2.17.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-128484715-2522177360-3649030042-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Utilisateur\AppData\Local\Temp\scoped_dir2332_749919968\kprm_2.17.exe.ApplicationCompany =>.SUP.Orphan.MUICache ---\\ RECAPITULATIF DES ELEMENTS TROUVES (2) - 0s https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/2024/08/26/muicache-cle-de-registre/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [00A657F778B31AE523D667131718D16EB2] [11/11/2024] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mb5uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [11/11/2024] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [11/11/2024] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [11/11/2024] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\MBAMCore_b.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [17/12/2024] (.Malwarebytes Inc..) - C:\Users\Utilisateur\Downloads\adwcleaner.exe =>.Malwarebytes Inc. [04A7F76A460675F0A3A9B60C0362F84E] [04/01/2023] (.2BrightSparks Pte. Ltd..) - C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe =>.2BrightSparks Pte. Ltd. [04A7F76A460675F0A3A9B60C0362F84E] [23/01/2023] (.2BrightSparks Pte. Ltd..) - C:\Program Files (x86)\2BrightSparks\SyncBackFree\unins000.exe =>.2BrightSparks Pte. Ltd. [050F33BC8850EA3E3E2033D79A29009A] [24/01/2022] (.Apowersoft Ltd.) - C:\Program Files (x86)\Apowersoft\ApowerRecover\DRW.exe =>.Not verified [059917FD7718808BC34BE224E415216F] [29/07/2022] (.Wondershare Technology Group Co.,Ltd.) - C:\Program Files\Wondershare\Recoverit - Data Recovery\recoveritassist.exe =>.Wondershare Technology Group Co.,Ltd [05F4210DB2B283A32FF2AED29FCB68A4] [14/10/2021] (.Opera Software AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\assistant\browser_assistant.exe =>.Opera Software AS [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\drivers\ssudbus2.sys =>.Samsung Electronics CO., LTD. [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD. [07EFF6937E472271E722F7E06248A3F1] [21/09/2022] (.NCH Software, Inc..) - C:\Program Files (x86)\NCH Software\Pixillion\pixillion.exe =>.NCH Software, Inc. [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\dxcompiler.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\installer.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\libEGL.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\libGLESv2.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\notification_helper.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\opera.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\opera_browser.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\opera_crashreporter.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\opera_elf.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\opera_gx_splash.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\vk_swiftshader.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\vulkan-1.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\win10_share_handler.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [02/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\win8_importing.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [04/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\installer_helper_64.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [04/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\dxcompiler.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\installer.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\libEGL.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\libGLESv2.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\notification_helper.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\opera.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\opera_browser.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\opera_crashreporter.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\opera_elf.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\opera_gx_splash.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\vk_swiftshader.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\vulkan-1.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\win10_share_handler.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\115.0.5322.77\win8_importing.dll =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [17/12/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS [091DEFAF8797E7448DEE71E4391D17CC] [28/11/2024] (.Opera Norway AS.) - C:\Users\Utilisateur\AppData\Local\Programs\Opera\114.0.5282.235\installer_helper_64.exe =>.Opera Norway AS [0A9F96AABFB5DAC0F29F565D33FF1AF6] [27/08/2022] (.Wondershare Technology Co.,Ltd.) - C:\Users\Utilisateur\Desktop\recoverit_setup_full4198 (1).exe =>.Wondershare Technology Co.,Ltd [0A9F96AABFB5DAC0F29F565D33FF1AF6] [27/08/2022] (.Wondershare Technology Co.,Ltd.) - C:\Users\Utilisateur\Desktop\recoverit_setup_full4198.exe =>.Wondershare Technology Co.,Ltd [0B8F52FAF64C421EABB2275AE148C519] [16/11/2022] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_550508a90a3c9a47\RtkAudUService64.exe =>.Realtek Semiconductor Corp. [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [22/10/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [0C1CD3EEA47EDDA7A032573B014D0AFD] [13/02/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [13/02/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0CD13B35B68DD6D292DBA4BD79CC8B82] [19/08/2022] (.Corel Corporation.) - C:\Program Files\WinZip\wzshls64.dll =>.Not verified [0CD13B35B68DD6D292DBA4BD79CC8B82] [19/08/2022] (.Corel Corporation.) - C:\Program Files\WinZip\WZUpdateNotifier.exe =>.Not verified [0DE0334681D807F0FE33B3CA718CE5F9] [16/10/2024] (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe =>.HP Inc. [0DE0334681D807F0FE33B3CA718CE5F9] [16/10/2024] (.HP Inc..) - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe =>.HP Inc. [0E2D336B0A2BF7F31C96DA992B22FEC8] [19/08/2022] (.ChUP Add-in Express.) - C:\Program Files\WinZip\adxregistrator.exe =>.Not verified [0E59B210F402BB4803BEEC5B210130C5] [27/09/2024] (.Wondershare Technology Group Co.,Ltd.) - C:\Program Files\Wondershare\PDFelement11\Uninstall.exe =>.Not verified [0FE61CE3A48D36CE6BFFF377F7B46A5B] [08/02/2024] (.HP Inc..) - C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe =>.Not verified [28736D0D296789512BAC66CCE86C4A00] [14/05/2019] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [28736D0D296789512BAC66CCE86C4A00] [21/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [2F568997EDD3D061460493FE] [21/12/2021] (.AOMEI International Network Limited.) - C:\WINDOWS\system32\amwrtdrv.sys =>.AOMEI International Network Limited [33000003DE6C778D9215F2E1960000000003DE] [17/12/2024] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified [415D8D481D99C6E4657864D0515EE54A] [15/12/2021] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.8.0\ABService.exe =>.AOMEI International Network Limited [415D8D481D99C6E4657864D0515EE54A] [15/12/2021] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.8.0\Backupper.exe =>.AOMEI International Network Limited [415D8D481D99C6E4657864D0515EE54A] [15/12/2021] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper\ABLaucher.exe =>.AOMEI International Network Limited [44239C2187EFAE7BA9F3CD89C4FE9D84] [21/07/2014] (.Hewlett Packard.) - C:\program files\hp\hp envy 4500 series\bin\hpnetworkcommunicatorcom.exe =>.Hewlett Packard [56000001757376CD78AD000C9A000000000175] [04/06/2018] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\ICCWDT.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [560000077B478C76C9AFCAFCAF00000000077B] [24/04/2020] (.Intel(R) INTELND1820.) - C:\Windows\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_f6c146a8872514f7\e1d68x64.sys =>.Intel(R) INTELND1820 [560000082B1E36C56B00276A8A00000000082B] [15/10/2020] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_6557ea4289534d04\x64\TeeDriverW10x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [62E745E92165213C971F5C490AEA12A5] [01/10/2020] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation [62E745E92165213C971F5C490AEA12A5] [05/10/2020] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvhda64v.sys =>.NVIDIA Corporation [62E745E92165213C971F5C490AEA12A5] [05/10/2020] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_60daf66a00f2e0b6\nvlddmkm.sys =>.NVIDIA Corporation [62E745E92165213C971F5C490AEA12A5] [05/10/2020] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvppc.inf_amd64_27e934acf40fccb7\UcmCxUcsiNvppc.sys =>.NVIDIA Corporation [7209B6BCFD61AFA5A476DBF0] [01/10/2024] (.Apollo Technologies Inc..) - C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\onestart.exe =>.Not verified [7209B6BCFD61AFA5A476DBF0] [17/12/2024] (.Apollo Technologies Inc..) - C:\Users\Utilisateur\AppData\Local\OneStart.ai\OneStart\Application\130.0.6723.134\Installer\setup.exe =>.Not verified [75B5499C96D676A5FAE2656B351E1FD6] [29/06/2021] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\drivers\ssudqcfilter.sys =>.Samsung Electronics Co., Ltd. ~ Unselected Options: NF, O82, ~ End of the scan, 7123 items in 01mn07s (1034)(0)