cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2022.11.13.84 Par Nicolas Coolman (2022/11/13)
~ Démarré par sorli (Administrator) (2022/11/18 09:36:26)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\sorli\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\sorli\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 11 =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (2) - 0s
~ MSIE: Internet Explorer v11.1.22000.0
~ OBIE: Microsoft Edge v107.0.1418.42

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 3V66T
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (1) - 64s
Windows Defender W10 (Activate) (Protection)

---\\ LOGICIELS ANTI-MALWARE (1) - 64s
~ GridinSoft Anti-Malware (Anti-Malware)

---\\ LOGICIELS DE PARTAGE P2P (1) - 64s
~ qBittorrent 4.4.5 v4.4.5 (P2P)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 76 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4106.256 MB (40% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 301 GB (31%) free of 952 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: DESKTOP-PS4VAU1
~ User Name: sorli
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s
~ Drive C: has 301 GB free of 952 GB (System)
~ Drive D: has 0 GB free of 0 GB

---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTÈME (32) - 45s
~ Model: ST1000LM024 HN-M101MBB v2BA30001 (952 Gb )
~ Media Type: HDD Disque Fixe ( Bus: SATA)

---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME
OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0
OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 8.855
OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 5.455
OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 3.922
OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown


---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute]
OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [47][100][100] [51][69]
OK - 02 - Performance de débit (Throughput Performance) - [38][252][252] [0][0]
OK - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [35][92][87] [25][2519]
OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][95][95] [0][5191]
OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][252][252] [10][0]
OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [46][252][252] [51][0]
OK - 08 - Recherche de performance de temps (Seek Time Performance) - [36][252][252] [15][0]
OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][100][100] [0][16235]
OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [50][252][252] [51][0]
OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][96][96] [0][4305]
OK - BF - Nombre d'erreurs chargement/déchargement de tête (G-Sense Error Rate) - [34][100][100] [0][575]
OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [34][100][100] [0][107]
OK - C2 - Température interne actuelle (Enclosure Temperature) - [2][64][52] [0][24]
OK - C3 - Matériel ECC Récupéré (Hardware ECC Recovered) - [58][100][100] [0][0]
OK - C4 - Nombre d'opérations de réallocations (remap) (Reallocation Event Count) - [50][252][252] [0][0]
OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [50][252][252] [0][0]
OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [48][252][252] [0][0]
OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [54][100][100] [0][10]
OK - C8 - Nombre Total d'erreurs d'écriture d'un secteur (Uncorrectable Sector Count) - [42][100][100] [0][24659]
OK - DF - Nombre d'erreurs chargement/déchargement de tête (Load Retry Count) - [50][99][99] [0][1136]
OK - E1 - Nombre de cycles de chargement/déchargement (Load/Unload Cycle Count) - [50][43][43] [0][59061]

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 10s
[MD5.BE443AC408420B554A2543C14B7E0A4E] - 26/09/2022 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5025904] =>.Microsoft®
[MD5.5B6074C9C7461198561B7B68A0A46FFE] - 20/08/2022 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [73728] [Unsigned] =>.Microsoft Corporation
[MD5.6A5110ED320EE52FE069A68F3D989836] - 20/08/2022 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [555112] [Unsigned] =>.Microsoft Corporation
[MD5.B40E4304F279119D9345BE970BABCE41] - 10/11/2021 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5256256] =>.Microsoft®
[MD5.78FD6DC1F98BC559DF306EA756751B7D] - 20/08/2022 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [888832] [Unsigned] =>.Microsoft Corporation
[MD5.4DCC20D63916FCED1CAEEA57C257F179] - 20/08/2022 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [339968] [Unsigned] =>.Microsoft Corporation
[MD5.0780FF791E5BE8CF4A64542DD15FCABB] - 26/09/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [964160] =>.Microsoft®
[MD5.64250A2AF8E98DC2754EBE76E4060493] - 26/09/2022 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [712264] =>.Microsoft®
[MD5.5D1CE777D7264DA3FFB2CC1208171434] - 26/09/2022 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3563520] [Unsigned] =>.Microsoft Corporation
[MD5.E7BB7B471CFC16E98562D8FDD6920107] - 05/06/2021 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.F17705A6CA8CC3F1E63C33B7D8A5DBFE] - 20/08/2022 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [681320] [Unsigned] =>.Microsoft Corporation
[MD5.042C8D972ED850473764904938B5D515] - 20/08/2022 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [62832] [Unsigned] =>.Microsoft Corporation
[MD5.E815EB78F2787F595D1595AC6A95F4F2] - 20/08/2022 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [126976] [Unsigned] =>.Microsoft Corporation
[MD5.ADC230AF330C70963495928A7CC269A5] - 05/06/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [196608] [Unsigned] =>.Microsoft Corporation
[MD5.C25B19BFAA5FB370BFB7EF31B3F96D92] - 26/09/2022 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [180224] [Unsigned] =>.Microsoft Corporation
[MD5.2C38DD438396E1ABF087315B5EC7DF10] - 05/06/2021 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [180224] [Unsigned] =>.Microsoft Corporation
[MD5.6E27484BEA3669E52DE405FE0907B70C] - 20/08/2022 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [155648] [Unsigned] =>.Microsoft Corporation
[MD5.81A684FFDB8949489FC40E0E8E8025C1] - 20/08/2022 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [253952] [Unsigned] =>.Microsoft Corporation
[MD5.8801BF8063178FF7AC5FC2D515DEF172] - 26/09/2022 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [636248] [Unsigned] =>.Microsoft Corporation
[MD5.4F1CDD6726946886DC44A890F56B99C8] - 05/06/2021 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [364544] [Unsigned] =>.Microsoft Corporation
[MD5.1205E53CD230766CE42672F620094FE5] - 20/08/2022 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [3192160] [Unsigned] =>.Microsoft Corporation
[MD5.6C59C459DBFA9A2A3AC2E89B5CC7C5C0] - 20/08/2022 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [126976] [Unsigned] =>.Microsoft Corporation
[MD5.BA3F8ED847AA0CB7A3D34514FB911880] - 20/08/2022 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [131072] [Unsigned] =>.Microsoft Corporation
[MD5.9A6C811E02B515B69C43145E22D9C19C] - 05/06/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [192512] [Unsigned] =>.Microsoft Corporation
[MD5.B6DAA0729A5008547A0B8CBA32BFEC16] - 13/09/2021 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [151888] [Unsigned] =>.Microsoft Corporation
[MD5.4B7955D9DE9CF26928968E93C6C30E95] - 05/06/2021 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [479568] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (59) - 11s
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cbdhsvc.dll (cbdhsvc) . (.Microsoft Corporation - Historique du Presse-papiers Microsoft (R).) - C:\WINDOWS\System32\cbdhsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service utilisateur du Presse-papiers_10d20be (cbdhsvc_10d20be) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_10d20be) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Microsoft Edge Update Service (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Malwarebytes Installer Service (MBAMInstallerService) . (...) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMInstallerService.exe (.not file.)
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Hôte de synchronisation_10d20be (OneSyncSvc_10d20be) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\WINDOWS\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\windows.staterepository.dll (StateRepository) . (.Microsoft Corporation - Serveur d'API Windows StateRepository.) - C:\Windows\System32\windows.staterepository.dll =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\Program Files\Windows Defender\MsMpEng.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service utilisateur de notifications Push Windows_10d20be (WpnUserService_10d20be) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (82) - 39s
SR - Boot [05/06/2021] [ 107344] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SR - System [18/08/2022] [ 87592] adgnetworkwfpdrv (adgnetworkwfpdrv) . (.Adguard Software Ltd.) - C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys =>.Microsoft®
SR - Disabl [02/11/2022] [ 472424] Adguard Service (Adguard Service) . (.Adguard Software Limited.) - C:\Program Files (x86)\AdGuard\AdguardSvc.exe =>.Adguard Software Limited®
SR - Boot [05/06/2021] [ 1135432] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Demand [05/06/2021] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Demand [05/06/2021] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Boot [05/06/2021] [ 83280] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 26960] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 112440] Apple Solid State Drive Device (AppleSSD) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleSSD.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 131912] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [28/09/2015] [ 172376] WinCDEmu Virtual Bus Driver (BazisVirtualCDBus) . (.Sysprogs OU.) - C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys =>.Sysprogs OU®
SR - Demand [05/06/2021] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Boot [05/06/2021] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft®
SS - Demand [29/09/2021] [ 282728] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Boot [05/06/2021] [ 3440440] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.Marvell Semiconductor Inc..) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 3423032] QLogic Legacy Ethernet Adapte (ebdrv0) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbd0a.sys =>.Microsoft®
SS - Demand [16/12/2020] [ 1450368] Freedome Service (Freedome Service) . (.F-Secure Corporation.) - C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe =>.F-Secure Corporation®
SR - Demand [16/12/2020] [ 31760] fsfreedomewintun (fsfreedomewintun) . (.F-Secure Corporation.) - C:\WINDOWS\System32\drivers\fsfreedomewintun.sys =>.Microsoft®
SR - Demand [19/12/2020] [ 107784] GridinSoft Internet Security Driver (GridinSoftInetSecurityDriver) . (.GridinSoft LLC.) - C:\WINDOWS\System32\DRIVERS\gsInetSecurity.sys =>.GridinSoft, LLC®
SR - Demand [00/00/0000] [ 0] GridinSoft Mini-Filter service (GSDriver) . (...) - C:\WINDOWS\System32\drivers\GSDriver64.sys (.not file.) [Unsigned]
SR - Boot [05/06/2021] [ 64328] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [05/06/2021] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [05/06/2021] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [05/06/2021] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [05/06/2021] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [05/06/2021] [ 884552] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 411976] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 558928] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft®
SR - Disabl [00/00/0000] [ 0] Intel Bluetooth Service (ibtsiva) . (...) - C:\WINDOWS\System32\ibtsiva (.not file.) [Unsigned] =>.Intel Corporation
SR - Demand [29/09/2021] [ 284744] Intel(R) Wireless Bluetooth( (ibtusb) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\ibtusb.sys {28D8BD3C11854B538A3996B7E4F8EE23}. =>.Intel Corporation
SR - Disabl [29/09/2021] [ 354920] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
SR - Demand [29/09/2021] [ 7322064] (igfxLP) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64lp.sys =>.Intel(R) pGFX®
SR - Demand [03/11/2016] [ 481768] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\IntcDAud.sys =>.Intel(R) OWR®
SR - Boot [05/06/2021] [ 176952] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 108880] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 124240] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 137552] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Auto [15/11/2022] [ 199768] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Corporation®
SR - Boot [13/11/2022] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft®
SR - Auto [00/00/0000] [ 0] Malwarebytes Installer Service (MBAMInstallerService) . (...) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMInstallerService.exe (.not file.) [Unsigned]
SR - Disabl [00/00/0000] [ 0] Malwarebytes Service (MBAMService) . (...) - C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbamservice.exe (.not file.) [Unsigned] =>.Malwarebytes
SR - Boot [00/00/0000] [ 0] MBAMSwissArmy (MBAMSwissArmy) . (...) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys (.not file.) [Unsigned]
SR - Boot [05/06/2021] [ 80696] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 100176] (megasas35i) . (.Broadcom Inc.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 575824] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 1131344] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 87352] (mpi3drvi) . (.Broadcom Limited.) - C:\WINDOWS\System32\drivers\mpi3drvi.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 63816] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 146256] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Demand [20/08/2022] [ 79192] NDKPerf Driver (NDKPerf) . (.Microsoft.) - C:\WINDOWS\System32\drivers\NDKPerf.sys =>.Microsoft®
SR - Demand [30/08/2022] [ 8772680] ___ Pilote de carte Intel(R) Wireless pour Windows 10 64 bi (Netwtw04) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\Netwtw04.sys {58B1C1C43E999C1CF7C694A1D776D0FE}. =>.Intel Corporation
SR - Boot [05/06/2021] [ 150344] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 166216] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 58704] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 68432] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft®
SR - Demand [17/11/2021] [ 38400] Revoflt (Revoflt) . (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys =>.Microsoft®
SR - Demand [29/09/2021] [ 1151992] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.®
SR - Demand [29/09/2021] [ 448096] Realtek USB Card Reader - UER (RTSUER) . (.Realsil Semiconductor Corporation.) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp.®
SR - Boot [05/06/2021] [ 44872] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 81736] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 209736] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft®
SR - Demand [29/09/2021] [ 56328] (SmbDrv) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys =>.Synaptics Incorporated®
SR - Demand [05/11/2019] [ 34136] (SmbDrvI) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys =>.Synaptics Incorporated®
SR - Boot [05/06/2021] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Demand [29/08/2018] [ 27136] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tap0901.sys [Unsigned] =>.The OpenVPN Project
SR - Demand [19/12/2020] [ 38216] GridinSoft Trojan Killer Driver (TrojanKillerDriver) . (.GridinSoft LLC.) - C:\WINDOWS\System32\DRIVERS\gtkdrv.sys =>.GridinSoft, LLC®
SR - Demand [29/09/2021] [ 157632] Intel(R) Trusted Execution Engine I (TXEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TXEIx64.sys =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SR - Boot [05/06/2021] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [05/06/2021] [ 305488] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [05/06/2021] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (2) - 34s
O38 - TASK: {EAC331A4-8B8E-4F55-902E-D3CA8DE6985A} [64Bits][\FreedomeReset] - (.F-Secure Corporation - F-Secure Freedome.) -- C:\Program Files (x86)\F-Secure\Freedome\FReset.exe [648607] =>.F-Secure Corporation
C:\WINDOWS\System32\Tasks\FreedomeReset - (.F-Secure Corporation.) -- C:\Program Files (x86)\F-Secure\Freedome\FReset.exe [] =>.F-Secure Corporation

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (6) - 3s
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\sorli\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_EFAA12C27269C3EB5B9A11BAB173C99F] . (...) -- . [Unsigned]
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-1372863263-1333732368-1273757222-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\sorli\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-1372863263-1333732368-1273757222-1001\..\Run: [MicrosoftEdgeAutoLaunch_EFAA12C27269C3EB5B9A11BAB173C99F] . (...) -- . [Unsigned]

---\\ PROCESSUS LANCÉS (5) - 13s
[MD5.672F83558A6FB3800BD891BFBAFC5B04] - (...) -- C:\Windows\System32\AggregatorHost.exe [286720] [PID.3252] [Unsigned]
[MD5.2E5BD37723B0FE8F55E507678DA111ED] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [1001320] [PID.6920] =>.Microsoft®
[MD5.E6C5A069251DA4F9B4E4E061671A488C] - (.F-Secure Corporation - F-Secure VPN Service.) -- C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe [1450368] [PID.3708] =>.F-Secure Corporation®
[MD5.11AE2BF99610B081FD73BB95EAE559B3] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\sorli\Downloads\ZHPSuite.exe [3509960] [PID.1028] [Unsigned] =>.Nicolas Coolman
[MD5.799A6FE3272C438D8E8940FEEB3772F9] - (.Farbar - Farbar Recovery Scan Tool.) -- C:\Users\sorli\Downloads\FRST64-2.1.exe [2375168] [PID.2836] [Unsigned] =>.Farbar

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.22000.856 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)

---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (13) - 2s
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [bkcoaehlnhbggcbmohegigjfgfdiihmp] Adguard Software Ltd
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [fbcohnmimjicjdomonkcbcpbpnhggkip] MyJDownloader =>.MyJDownloader
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [ilonanfdcnaljoedndpfeflllibalflj] Download with JDownloader
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [kkkldohdhcfhpjchcefpkfhjfeapdmek] Total Adblock - Ad Blocker =>.Legitimate
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [nnnkddnnlpamobajfibfdgfnbcnkgngh]
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [oeibmbobgpgnbnlbaffdgebpeepfbnhi] Custom New Tab URL =>Hijacker.Browser
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [okdacpiidbbphpjpfmecjjhicomjdeie]
E2 - GCE: Preference [sorli][User Data\Default\Extensions] [pdffkfellgipmhklpdmokmckkkfcopbh] Adguard Software Ltd
E2 - GCE: Preference [sorli][User Data\Default\Local Extension Settings] [fbcohnmimjicjdomonkcbcpbpnhggkip] =>.MyJDownloader
E2 - GCE: Preference [sorli][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
E2 - GCE: Preference [sorli][User Data\Default\Local Extension Settings] [nnnkddnnlpamobajfibfdgfnbcnkgngh]
E2 - GCE: Preference [sorli][User Data\Default\Local Extension Settings] [pdffkfellgipmhklpdmokmckkkfcopbh]
E2 - GCE: Preference [sorli][User Data\Default\Sync Extension Settings] [oeibmbobgpgnbnlbaffdgebpeepfbnhi]

---\\ INTERNET EXPLORER,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.42\BHO\ie_to_edge_bho_64.dll =>.Microsoft®

---\\ RACCOURCIS GLOBAL STARTUP (51) - 15s
O4 - GS\Desktop [sorli]: gMKVExtractGUI - Raccourci (2).lnk . (...) C:\Users\sorli\Downloads\mkv extract\gMKVExtractGUI.exe [Unsigned]
O4 - GS\Desktop [sorli]: JDownloader 2.lnk . (.AppWork GmbH - JDownloader 2.) C:\Users\sorli\AppData\Local\JDownloader 2.0\JDownloader2.exe =>.Appwork GmbH®
O4 - GS\Desktop [sorli]: MPC-HC.lnk . (.MPC-HC Team - MPC-HC.) C:\Program Files (x86)\MPC-HC\mpc-hc.exe [Unsigned] =>.MPC-HC Team
O4 - GS\Desktop [sorli]: Téléchargements - Raccourci.lnk . (...) C:\Users\sorli\Downloads [Unsigned]
O4 - GS\Desktop [sorli]: ZHPCleaner.lnk . (...) C:\Users\sorli\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Desktop [sorli]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sorli\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [sorli]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\sorli\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [sorli]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\sendTo [sorli]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [sorli]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [sorli]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [sorli]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\Programs [sorli]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation
O4 - GS\Programs [sorli]: Bureau.lnk . (...) C:\Users\sorli\Desktop [Unsigned]
O4 - GS\Programs [sorli]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sorli\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [sorli]: Start Tor Browser.lnk . (...) C:\Users\sorli\Desktop\Tor Browser\Browser\firefox.exe [Unsigned]
O4 - GS\Desktop [WgaUtilAcc]: gMKVExtractGUI - Raccourci (2).lnk . (...) C:\Users\sorli\Downloads\mkv extract\gMKVExtractGUI.exe [Unsigned]
O4 - GS\Desktop [WgaUtilAcc]: JDownloader 2.lnk . (.AppWork GmbH - JDownloader 2.) C:\Users\sorli\AppData\Local\JDownloader 2.0\JDownloader2.exe =>.Appwork GmbH®
O4 - GS\Desktop [WgaUtilAcc]: MPC-HC.lnk . (.MPC-HC Team - MPC-HC.) C:\Program Files (x86)\MPC-HC\mpc-hc.exe [Unsigned] =>.MPC-HC Team
O4 - GS\Desktop [WgaUtilAcc]: Téléchargements - Raccourci.lnk . (...) C:\Users\sorli\Downloads [Unsigned]
O4 - GS\Desktop [WgaUtilAcc]: ZHPCleaner.lnk . (...) C:\Users\sorli\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Desktop [WgaUtilAcc]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sorli\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [WgaUtilAcc]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\sorli\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [WgaUtilAcc]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\sendTo [WgaUtilAcc]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WgaUtilAcc]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WgaUtilAcc]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [WgaUtilAcc]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\Programs [WgaUtilAcc]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation
O4 - GS\Programs [WgaUtilAcc]: Bureau.lnk . (...) C:\Users\sorli\Desktop [Unsigned]
O4 - GS\Programs [WgaUtilAcc]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sorli\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [WgaUtilAcc]: Start Tor Browser.lnk . (...) C:\Users\sorli\Desktop\Tor Browser\Browser\firefox.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: AdGuard.lnk . (.Adguard Software Limited - AdGuard for Windows.) C:\Program Files (x86)\AdGuard\Adguard.exe =>.Adguard Software Limited®
O4 - GS\CommonDesktop [Public]: F-Secure Freedome VPN.lnk . (.F-Secure Corporation - F-Secure Freedome UI.) C:\Program Files (x86)\F-Secure\Freedome\Freedome.exe =>.F-Secure Corporation®
O4 - GS\CommonDesktop [Public]: GridinSoft Anti-Malware.lnk . (.Gridinsoft LLC - .) C:\Program Files (x86)\GridinSoft Anti-Malware\gsam.exe [Unsigned] =>.GridinSoft LLC
O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd.®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: WinRAR.lnk . (.Alexander Roshal - Traiter les archives au format.) C:\Program Files (x86)\WinRAR\WinRAR.exe [Unsigned] =>.Alexander Roshal
O4 - GS\Programs [Public]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation
O4 - GS\Programs [Public]: Bureau.lnk . (...) C:\Users\sorli\Desktop [Unsigned]
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sorli\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [Public]: Start Tor Browser.lnk . (...) C:\Users\sorli\Desktop\Tor Browser\Browser\firefox.exe [Unsigned]
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 1s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{570d61c0-f4b0-40a6-9f5d-fd92de2cc8c8}: NameServer = 198.18.1.93
O17 - HKLM\System\CCS\Services\Tcpip\..\{cde37a75-af58-4e18-beac-942985d135ae}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (22) - 4s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\system32\userinit.exe =>.Microsoft Corporation

---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (6) - 0s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_EFAA12C27269C3EB5B9A11BAB173C99F
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_EFAA12C27269C3EB5B9A11BAB173C99F
[HKEY_USERS\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Adguard =>.Adguard

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 2s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.42\Installer\setup.exe =>.Microsoft®

---\\ LOGICIELS INSTALLÉS (15) - 24s
O42 - Logiciel: AdGuard - (.Adguard Software Limited.) [HKLM][64Bits] -- {5c0c90e9-a68a-4d54-8aa1-27be958c07a7} =>.Adguard Software Limited®
O42 - Logiciel: AdGuard - (.Adguard Software Limited.) [HKLM][64Bits] -- {685F6AB3-7C61-42D1-AE5B-3864E48D1035} [Unsigned] (Hidden)
O42 - Logiciel: F-Secure Freedome VPN 2.39.6634.0 - (.lrepacks.ru.) [HKLM][64Bits] -- F-Secure Freedome VPN_is1 [Unsigned] =>.lrepacks.ru
O42 - Logiciel: GridinSoft Anti-Malware - (.Gridinsoft LLC.) [HKLM][64Bits] -- GridinSoft Anti-Malware =>.GridinSoft, LLC®
O42 - Logiciel: JDownloader 2 - (.AppWork GmbH.) [HKLM][64Bits] -- jdownloader2 =>.Appwork GmbH®
O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft®
O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Edge WebView2 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft EdgeWebView =>.Microsoft®
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft®
O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A2A8076-135F-4F55-BB02-DED67C8C6934} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: MPC-HC 1.9.23 - (.MPC-HC Team.) [HKLM][64Bits] -- {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1 [Unsigned] =>.MPC-HC Team
O42 - Logiciel: qBittorrent 4.4.5 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent [Unsigned] =>.The qBittorrent project
O42 - Logiciel: Revo Uninstaller Pro 5.0.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group Ltd.®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WinRAR 6.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (82) - 24s
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\CyberGhost =>.CyberGhost S.R.L
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\GridinSoft =>.GridinSoft
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adguard =>.Adguard
HKLM\SOFTWARE\WOW6432Node\Cliqz =>.Cliqz GmbH
HKLM\SOFTWARE\WOW6432Node\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\WOW6432Node\F-Secure =>.F-Secure
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\qBittorrent =>.uTorrent (P2P)
HKLM\SOFTWARE\WOW6432Node\Waterfox =>.Waterfox
HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\AdGuard =>.Adguard
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\AppWork =>.Appwork GmbH
HKCU\SOFTWARE\BitTorrentPersist
HKCU\SOFTWARE\ChangeTracker =>.Legitimate
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\F-Secure =>.F-Secure
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Magnet =>.Magnet
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mirage =>.Mirage Game
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\CyberGhost =>.CyberGhost S.R.L
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\AdGuard =>.Adguard
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\AppWork =>.Appwork GmbH
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\BitTorrentPersist
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\ChangeTracker =>.Legitimate
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\ej-technologies =>.ej-technologies
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\F-Secure =>.F-Secure
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\JavaSoft =>.JavaSoft
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Magnet =>.Magnet
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\Mirage =>.Mirage Game
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\MPC-HC =>.MPC-HC Team
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ PACKAGES (7) - 0s
C:\Program Files (x86)\WindowsApps\63220GiuseppeAlioto.Wallpapers4K_1.0.12.0_x86__t6cshyshj749p - (..) [][Wallpapers 4K]
C:\Program Files (x86)\WindowsApps\king.com.CandyCrushSodaSaga_1.217.400.0_x64__kgqvnymyfvs32 - (.king.com.) [][Candy Crush Soda Saga] =>king.com
C:\Program Files (x86)\WindowsApps\MicrosoftTeams_22183.300.1431.9295_x64__8wekyb3d8bbwe - (..) [][Microsoft Teams]
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.765.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Web Experience Pack] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.22000.1_neutral_neutral_cw5n1h2txyewy - (..) [][UDK Package]
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.22000.1.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\WinRAR.ShellExtension_1.0.0.1_x64__s4jet1zx4n14a - (..) [][WinRAR]

---\\ CONTENU DES DOSSIERS PROGRAMMES (169) - 27s
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [] D -- C:\Program Files\GridinSoft Anti-Malware =>.GridinSoft LLC
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [0] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 13/11/2022 - [] D -- C:\Program Files\MediaInfo =>.Jérôme Martinez
O43 - CFD: 17/11/2022 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Synaptics =>.Synaptics
O43 - CFD: 11/11/2022 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 12/11/2022 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 17/11/2022 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 15/11/2022 - [] D -- C:\Program Files (x86)\AdGuard =>.Insoft LLC
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 16/11/2022 - [] D -- C:\Program Files (x86)\F-Secure =>.F-Secure Corporation®
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [] D -- C:\Program Files (x86)\Malwarebytes =>.Malwarebytes
O43 - CFD: 12/11/2022 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Program Files (x86)\MPC-HC =>.MPC-HC Team
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\Program Files (x86)\qBittorrent [Unsigned]
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adguard =>.Insoft LLC
O43 - CFD: 11/11/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 01/10/2021 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft
O43 - CFD: 15/11/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira =>.Avira Software
O43 - CFD: 11/11/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft =>.Enigma Software Group, LLC
O43 - CFD: 16/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freedome
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware =>.GridinSoft LLC
O43 - CFD: 11/11/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro =>.EIDOS hitman Game
O43 - CFD: 18/05/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LockHunter =>.Crystal Rich Ltd
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix =>.Matroska
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC =>.MPC-HC Team
O43 - CFD: 28/08/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 =>.MPC-HC Team
O43 - CFD: 24/06/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proxy2Service
O43 - CFD: 14/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group
O43 - CFD: 11/11/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subtitle Edit =>.Nikse
O43 - CFD: 11/11/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 11/11/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit
O43 - CFD: 15/11/2022 - [] D -- C:\ProgramData\Adguard =>.Insoft LLC
O43 - CFD: 11/11/2022 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 15/11/2022 - [0] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 11/11/2022 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 16/11/2022 - [] D -- C:\ProgramData\F-Secure =>.F-Secure
O43 - CFD: 15/11/2022 - [] D -- C:\ProgramData\MB2Migration
O43 - CFD: 11/11/2022 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 15/11/2022 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 17/11/2022 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\Piriform =>.Piriform
O43 - CFD: 17/11/2022 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [0] D -- C:\ProgramData\Transmission =>.Transmission
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group
O43 - CFD: 11/11/2022 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Adguard Software Limited
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Azureus
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\MediaInfo =>.Jérôme Martinez
O43 - CFD: 12/11/2022 - [] SD -- C:\Users\sorli\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 17/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\qBittorrent
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 18/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Adaware =>.adaware
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Adguard_Software_Limited
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\sorli\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Local\BitTorrentHelper
O43 - CFD: 15/11/2022 - [] D -- C:\Users\sorli\AppData\Local\cache =>.Legitimate
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 15/11/2022 - [] D -- C:\Users\sorli\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 16/11/2022 - [] D -- C:\Users\sorli\AppData\Local\F-Secure =>.F-Secure
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\sorli\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 16/11/2022 - [] D -- C:\Users\sorli\AppData\Local\JDownloader 2.0 =>.JDownloader
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 17/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/11/2022 - [] D -- C:\Users\sorli\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 17/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [0] D -- C:\Users\sorli\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 18/11/2022 - [0] D -- C:\Users\sorli\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Local\qBittorrent
O43 - CFD: 18/11/2022 - [] D -- C:\Users\sorli\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\sorli\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Local\transmission =>.Transmission
O43 - CFD: 12/11/2022 - [0] D -- C:\Users\sorli\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Local\VS Revo Group =>.VS Revo Group
O43 - CFD: 18/11/2022 - [] D -- C:\Users\sorli\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 12/11/2022 - [0] D -- C:\Users\sorli\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 03/10/2021 - [] D -- C:\Users\sorli\AppData\LocalLow\IObit =>.IObit
O43 - CFD: 09/12/2021 - [] D -- C:\Users\sorli\AppData\LocalLow\iT6tF6rB9
O43 - CFD: 09/04/2022 - [] D -- C:\Users\sorli\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 02/11/2022 - [0] D -- C:\Users\sorli\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 15/12/2021 - [] D -- C:\Users\sorli\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 16/11/2022 - [] D -- C:\Users\sorli\Desktop\BLOOD S02
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\Desktop\The Serpent Queen (2022) [imdb-tt14022350]
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\Desktop\The.Bible.S01.FRENCH.720p.WEB.x264-CiELOS
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\Desktop\The.Serpent.Queen.S01.FRENCH.WEB.AMZ.2160p.x265.10bits.EAC3.5.1-Amen
O43 - CFD: 13/11/2022 - [] D -- C:\Users\sorli\Desktop\The.Serpent.Queen.S01.MULTi.1080p.AMZN.WEB-DL.DDP5.1.H264-FRATERNiTY
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\Desktop\Yellowstone 2018 S02 MULTi 1080p WEB DDP2.0 H264-FRATERNiTY
O43 - CFD: 17/11/2022 - [] D -- C:\Users\sorli\Desktop\Yellowstone 2018 S03 MULTi 1080p WEB DDP2.0 H264-FRATERNiTY
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\Desktop\Yellowstone.S04.MULTi.1080p.AMZN.WEB-DL.DDP2.0.H.264-FRATERNiTY
O43 - CFD: 11/11/2022 - [] RD -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] RD -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 31/10/2022 - [0] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bing Wallpaper
O43 - CFD: 14/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader =>.JDownloader
O43 - CFD: 11/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] RD -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] RD -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VobSub
O43 - CFD: 11/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\Users\sorli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 17/11/2022 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 17/11/2022 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 11/11/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/11/2022 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 12/11/2022 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Adguard Software Limited

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 6s
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: GridinSoft Anti-Malware [64Bits] - {F77F27A6-89F3-471A-AFA8-3B280940A10C} . (.Gridinsoft LLC - Anti-Malware Shell Extension (64-bit).) -- C:\Program Files\GridinSoft Anti-Malware\shellext.dll =>.GridinSoft, LLC®
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: GridinSoft Anti-Malware [64Bits] - {F77F27A6-89F3-471A-AFA8-3B280940A10C} . (.Gridinsoft LLC - Anti-Malware Shell Extension (64-bit).) -- C:\Program Files\GridinSoft Anti-Malware\shellext.dll =>.GridinSoft, LLC®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll [Unsigned] =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: GridinSoft Anti-Malware [64Bits] - {F77F27A6-89F3-471A-AFA8-3B280940A10C} . (.Gridinsoft LLC - Anti-Malware Shell Extension (64-bit).) -- C:\Program Files\GridinSoft Anti-Malware\shellext.dll =>.GridinSoft, LLC®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: GridinSoft Anti-Malware [64Bits] - {F77F27A6-89F3-471A-AFA8-3B280940A10C} . (.Gridinsoft LLC - Anti-Malware Shell Extension (64-bit).) -- C:\Program Files\GridinSoft Anti-Malware\shellext.dll =>.GridinSoft, LLC®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 2s
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\notepad.exe - (.Microsoft Corporation - Bloc-notes.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®

---\\ LISTE DES PILOTES DU SYSTÈME (442) - 67s
O58 - SDL:2022/08/20 22:37:44 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [294912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:44 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107344] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:42 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [836976] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:42 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:57 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [164168] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:46 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:41 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:46 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:57 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [700416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/18 03:22:18 A . (.Adguard Software Ltd - AdGuard WFP network driver x64 for Windows.) -- C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [87592] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135432] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:46 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [681320] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:18 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:32 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [139264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:33 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [339968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2021/06/05 13:04:42 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2022/08/20 22:37:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [243032] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:43 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [255312] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83280] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26960] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:37 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [234848] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:42 A . (.Apple Inc. - Apple Solid State Drive Device.) -- C:\WINDOWS\System32\drivers\AppleSSD.sys [112440] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:37 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 19:23:01 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [164152] =>.Microsoft®
O58 - SDL:2021/06/05 19:23:01 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [201040] =>.Microsoft®
O58 - SDL:2021/06/05 19:23:01 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [184656] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131912] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:34 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [62832] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [255328] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:27 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [106808] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:46 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [107864] =>.Microsoft®
O58 - SDL:2015/09/28 19:08:15 A . (.Sysprogs OU - WinCDEmu virtual CDROM bus.) -- C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys [172376] =>.Sysprogs OU®
O58 - SDL:2021/06/05 13:04:42 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2021/06/05 13:05:34 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [40960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:42:45 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [177496] =>.Microsoft®
O58 - SDL:2022/08/20 22:40:30 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [155648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:50:09 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [155648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:29 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:23:29 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [507904] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [139264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:29 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [180224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:33 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:01 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [155648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1921024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:49 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [75096] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:03 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:44 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:31 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [95568] =>.Microsoft®
O58 - SDL:2022/08/20 22:49:46 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [126976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:44 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [196608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:42:11 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [103776] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2021/06/05 13:04:45 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:24 A . (.Microsoft Corporation - CimFS driver.) -- C:\WINDOWS\System32\drivers\cimfs.sys [161120] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:32 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:24 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [468328] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:06 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [540672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:25:44 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [447840] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:20 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1127776] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:46 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:39:50 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [66920] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:30 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [782336] =>.Microsoft®
O58 - SDL:2022/08/20 22:43:04 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [71008] =>.Microsoft®
O58 - SDL:2021/09/13 16:42:11 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [86352] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:44 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [140648] =>.Microsoft®
O58 - SDL:2022/09/26 15:28:01 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [610304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:56 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [132432] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:30 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:25:44 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [180224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:43 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [136544] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:45 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [75080] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:46 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:13 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [95600] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:34 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:34 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [50976] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:39 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [70992] =>.Microsoft®
O58 - SDL:2022/09/26 15:31:18 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [129480] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:36 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [230728] =>.Microsoft®
O58 - SDL:2022/08/20 22:43:02 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:25:46 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [71000] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:21 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [4646248] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:21 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [542032] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:21 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [1070440] =>.Microsoft®
O58 - SDL:2021/06/05 13:06:05 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [143672] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:33 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [157016] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:44 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbd0a.sys [3423032] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.Marvell Semiconductor Inc. - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3440440] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - CPU Scheduler for High Performance I/O.) -- C:\WINDOWS\System32\drivers\ExecutionContext.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:39:32 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [439648] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:32 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [451936] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:57 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:23 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [119112] =>.Microsoft®
O58 - SDL:2022/08/20 22:43:59 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:41 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [476520] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:56 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [99688] =>.Microsoft®
O58 - SDL:2020/12/16 15:11:14 A . (.F-Secure Corporation - F-Secure Freedome Wintun Driver.) -- C:\WINDOWS\System32\drivers\fsfreedomewintun.sys [31760] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [61768] =>.Microsoft®
O58 - SDL:2022/09/26 15:31:18 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [865624] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:42 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [537952] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:52 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [40960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/12/19 21:29:06 A . (.GridinSoft LLC - GridinSoft Internet Security Driver.) -- C:\WINDOWS\System32\drivers\gsInetSecurity.sys [107784] =>.GridinSoft, LLC®
O58 - SDL:2020/12/19 21:29:06 A . (.GridinSoft LLC - GridinSoft Anti-Malware Mini-Filter Driver.) -- C:\WINDOWS\System32\drivers\gtkdrv.sys [38216] =>.GridinSoft, LLC®
O58 - SDL:2021/06/05 13:04:43 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [180224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:43 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [520192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [66912] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [143360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [274432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:03 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:03 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [87400] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:33 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:03 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [131072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:43:02 A . (.Microsoft Corporation - HidSpi KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\HidSpiCx.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64328] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:35 A . (.Microsoft Corporation - HSP Device Driver.) -- C:\WINDOWS\System32\drivers\Hsp.sys [111968] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:29 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1697104] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [69960] =>.Microsoft®
O58 - SDL:2021/09/13 16:41:34 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [131392] =>.Microsoft®
O58 - SDL:2021/06/05 13:06:16 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [180536] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [78144] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [57672] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [74040] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:03 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [155648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:42 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:44 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2021/06/05 13:04:43 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884552] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [411976] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558928] =>.Microsoft®
O58 - SDL:2021/09/29 11:17:38 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) -- C:\WINDOWS\System32\drivers\ibtusb.sys [284744] {28D8BD3C11854B538A3996B7E4F8EE23}. =>.Intel Corporation
O58 - SDL:2021/09/29 11:05:52 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64lp.sys [7322064] =>.Intel(R) pGFX®
O58 - SDL:2022/08/20 22:43:01 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/11/03 12:23:14 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [481768] =>.Intel(R) OWR®
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [54632] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:50 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [476680] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:31 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:50 A . (.Microsoft Corporation - Intel Platform Monitoring Driver.) -- C:\WINDOWS\System32\drivers\IntelPMT.sys [75272] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [284008] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:29 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [83280] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:31 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [114688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [144728] =>.Microsoft®
O58 - SDL:2022/08/20 22:42:46 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [253952] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:54 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [94520] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [53560] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [176952] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:03 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [91488] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:04 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 19:23:03 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [58184] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [65864] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:57 A . (.Microsoft Corporation - Kernel Mode Power Dependency Coordinator.) -- C:\WINDOWS\System32\drivers\kmpdc.sys [66920] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:31 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:45:37 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [528384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/03/08 22:53:51 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [177520] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:30 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [210256] =>.Microsoft®
O58 - SDL:2022/08/20 22:45:37 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:29 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108880] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124240] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [137552] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:33 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [172032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [561480] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [90440] =>.Microsoft®
O58 - SDL:2022/11/15 16:29:25 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [199768] =>.Malwarebytes Corporation®
O58 - SDL:2022/11/13 17:51:52 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:50 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [425984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:45:54 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Avago Technologies - MEGASAS2i RAID Controller Driver for Window.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [80696] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Broadcom Inc - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [100176] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575824] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:29 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [94208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131344] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:39 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:51:18 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:40 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:01 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [91488] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:01 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [131400] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Broadcom Limited - Broadcom MPI 3.0 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\mpi3drvi.sys [87352] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:09 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [110592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:51:47 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [196608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:25:45 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [636248] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:44 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [312680] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [74056] =>.Microsoft®
O58 - SDL:2022/08/20 22:42:42 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [210264] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:07 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [91480] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:14 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [53576] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:46 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [324952] =>.Microsoft®
O58 - SDL:2022/08/20 22:45:37 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:39 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:31 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:45:37 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:13 A . (.Microsoft Corporation - Microsoft® QUIC Library.) -- C:\WINDOWS\System32\drivers\msquic.sys [377712] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:45 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [415072] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:42 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [390496] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [74040] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:31 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:44 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:27 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [164168] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63816] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146256] =>.Microsoft®
O58 - SDL:2021/12/15 14:16:21 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1577280] =>.Microsoft®
O58 - SDL:2022/08/20 22:51:09 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:03 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [159744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:32 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:17 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:39 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:33 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [233472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:51:10 A . (...) -- C:\WINDOWS\System32\drivers\NDKPerf.sys [79192] =>.Microsoft®
O58 - SDL:2022/08/20 22:51:09 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [103776] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:32 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:06:00 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [163840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:47 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [352256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:37 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [90440] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:39 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [364544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:45 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [640360] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:14 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [329064] =>.Microsoft®
O58 - SDL:2022/08/30 16:33:48 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwtw04.sys [8772680] {58B1C1C43E999C1CF7C694A1D776D0FE}. =>.Intel Corporation
O58 - SDL:2022/02/09 12:28:14 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [119104] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:42 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [3192160] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:33 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [57656] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [40960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [202088] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:43 A . (.Microsoft Corporation - Nvme Disk Driver.) -- C:\WINDOWS\System32\drivers\nvmedisk.sys [83296] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150344] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166216] =>.Microsoft®
O58 - SDL:2022/08/20 22:40:45 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [749568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:51:53 A . (.Microsoft Corporation - Plan 9 redirector.) -- C:\WINDOWS\System32\drivers\p9rdr.sys [136560] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:09 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [184640] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [126976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:44 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [214368] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:33 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [537960] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [50536] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [87400] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:32 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [152912] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:19 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [95592] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:56 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [193880] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:49 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [843776] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58704] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68432] =>.Microsoft®
O58 - SDL:2022/08/20 22:51:09 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [169320] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:33 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [181584] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:41 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:43:02 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:35 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [462848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [255344] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:09 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [74728] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:19 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:39:50 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [71016] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:30 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:33 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [131072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:34 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [114688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:33 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:33 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:25:44 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [488792] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:06:13 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [192512] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:50:42 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [62808] =>.Microsoft®
O58 - SDL:2021/06/05 13:06:16 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [319816] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:40 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2295136] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:00 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [1013088] =>.Microsoft®
O58 - SDL:2021/11/17 14:50:18 A . (.VS Revo Group - Revo Uninstaller Pro Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [38400] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [245760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:41 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [143360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:50:31 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [180224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:46:34 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:06:15 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:29 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [110592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/09/29 11:13:20 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1151992] =>.Realtek Semiconductor Corp.®
O58 - SDL:2021/06/05 13:04:54 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [81920] [Unsigned] =>.Realtek
O58 - SDL:2021/09/29 11:12:52 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [448096] =>.Realtek Semiconductor Corp.®
O58 - SDL:2022/08/20 22:37:43 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [144728] =>.Microsoft®
O58 - SDL:2022/08/20 22:45:47 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:49 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [210280] =>.Microsoft®
O58 - SDL:2022/08/20 22:45:54 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [222568] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:35 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [337240] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [65856] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:49 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [136552] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:07 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [132456] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [115016] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [196944] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:01 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:06:00 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [119112] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44872] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81736] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:46 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [75104] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209736] =>.Microsoft®
O58 - SDL:2021/06/05 19:23:06 A . (.Microsoft Corporation - Pilote réseau SMB Direct.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [196608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/09/29 11:12:30 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [56328] =>.Synaptics Incorporated®
O58 - SDL:2019/11/05 20:57:54 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [34136] =>.Synaptics Incorporated®
O58 - SDL:2022/08/20 22:45:47 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:23:33 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [263512] =>.Microsoft®
O58 - SDL:2022/08/20 22:49:39 A . (.Microsoft Corporation - Storage Spaces Parser driver.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:23:33 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [857448] =>.Microsoft®
O58 - SDL:2021/06/05 19:23:03 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [127304] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [119096] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:45 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [851968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:53 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [364544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:48 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [210272] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:33 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [226672] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:54 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [931168] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [115024] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:34 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [99680] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [82248] =>.Microsoft®
O58 - SDL:2022/08/20 22:45:54 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [114688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/29 14:48:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] [Unsigned] =>.The OpenVPN Project
O58 - SDL:2022/08/20 22:45:54 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:59 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [65848] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:42 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [3208528] =>.Microsoft®
O58 - SDL:2022/09/26 15:25:42 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [74056] =>.Microsoft®
O58 - SDL:2021/09/13 16:42:51 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [151888] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:12 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [71000] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [172360] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:36 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [345448] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:57 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [90112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:50 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:14 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [159744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:37 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [155648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/09/29 11:05:14 A . (.Intel Corporation - Intel(R) Trusted Execution Engine Interface.) -- C:\WINDOWS\System32\drivers\TXEIx64.sys [157632] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2022/09/26 15:23:34 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [111960] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [200704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [212992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [65536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [139264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:57 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [291144] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:57 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:51:17 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [376832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 19:23:04 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [65872] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [356688] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [188744] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:02 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:16 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [106808] =>.Microsoft®
O58 - SDL:2022/08/20 22:46:34 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:34 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [266240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:33 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [380928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:44:59 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:23:35 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [222552] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:34 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:05 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [66896] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:05 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [116056] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:05 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [550232] =>.Microsoft®
O58 - SDL:2021/09/13 16:41:33 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [696656] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:04 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:16 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:38:04 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [505192] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:32 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:49 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:23:35 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [169280] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:05 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [69632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:41 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [365904] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:05 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [656736] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [102728] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:24 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [308584] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:49 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [849232] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:47 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [81920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/01/13 22:50:54 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [750960] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:52 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:51:23 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [165216] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:39 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [202096] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [65856] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [53576] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [53568] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:47 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [53576] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:13 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [83304] =>.Microsoft®
O58 - SDL:2022/08/20 22:37:44 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\WINDOWS\System32\drivers\volmgr.sys [120168] =>.Microsoft®
O58 - SDL:2022/03/08 22:54:53 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [418120] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:14 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [479568] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:44 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [53576] =>.Microsoft®
O58 - SDL:2022/09/26 15:23:40 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [120136] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305488] =>.Microsoft®
O58 - SDL:2022/08/20 22:40:47 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:00 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [106496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:40:47 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:44 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [61440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:40 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:42:41 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [122880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:42:46 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [238952] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:55 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [49560] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:55 A . (.Microsoft Corporation - Microsoft antimalware device filter driver.) -- C:\WINDOWS\System32\drivers\WdDevFlt.sys [103656] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:45 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [869736] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:55 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [421112] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:45 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [91496] =>.Microsoft®
O58 - SDL:2022/08/20 22:40:45 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [1007616] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:43:15 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [54624] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:55 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [73960] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [90424] =>.Microsoft®
O58 - SDL:2022/09/26 15:24:18 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [206176] =>.Microsoft®
O58 - SDL:2022/08/20 22:40:47 A . (.Microsoft Corporation - Windows Wifi Class Extension.) -- C:\WINDOWS\System32\drivers\WifiCx.sys [806912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/09/13 16:42:23 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [65872] =>.Microsoft®
O58 - SDL:2022/08/20 22:43:04 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [103960] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:46 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [53744] =>.Microsoft®
O58 - SDL:2021/06/05 13:06:16 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [69960] =>.Microsoft®
O58 - SDL:2021/06/05 13:06:00 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [139600] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2022/08/20 22:39:36 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [307176] =>.Microsoft®
O58 - SDL:2022/08/20 22:38:06 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:04:45 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft®
O58 - SDL:2021/06/05 13:04:45 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [57672] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:23 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [274744] =>.Microsoft®
O58 - SDL:2022/08/20 22:54:11 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [66896] =>.Microsoft®
O58 - SDL:2021/06/05 13:05:25 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [82248] =>.Microsoft®
O58 - SDL:2022/08/20 22:44:59 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:45:40 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [159744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:45:39 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [348160] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:30 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [385024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:37:31 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:24:22 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [684032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:41:44 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [3362816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/09/26 15:24:23 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3833856] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/08/20 22:42:44 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [61440] [Unsigned] =>.Microsoft Corporation

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (61) - 108s
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\attach.dll [22224] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\awt.dll [1201360] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\client\jvm.dll [3863760] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\dt_shmem.dll [28368] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\dt_socket.dll [24784] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\fontmanager.dll [628432] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (..) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\freetype.dll [490704] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\hprof.dll [133328] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\instrument.dll [148688] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\j2pcsc.dll [19152] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\j2pkcs11.dll [59088] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jaas_nt.dll [21712] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jabswitch.exe [34000] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java.dll [137936] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java.exe [206544] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java_crw_demo.dll [26832] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JavaAccessBridge.dll [135888] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JavaAccessBridge-32.dll [136400] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java-rmi.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\javaw.exe [206544] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jawt.dll [16592] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JAWTAccessBridge.dll [17616] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JAWTAccessBridge-32.dll [17616] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jdwp.dll [170192] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jjs.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jli.dll [179920] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jpeg.dll [142032] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jsdt.dll [19152] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jsound.dll [34512] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jsoundds.dll [29392] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\keytool.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\kinit.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\klist.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\ktab.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\lcms.dll [201936] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\management.dll [36560] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\mlib_image.dll [583888] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\net.dll [85712] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\nio.dll [54480] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\npt.dll [19152] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\orbd.exe [19152] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\pack200.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\policytool.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\rmid.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\rmiregistry.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (..) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\sawindbg.dll [48336] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\server\jvm.dll [6280400] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\servertool.exe [18640] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\splashscreen.dll [181456] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\sunec.dll [137424] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\sunmscapi.dll [32464] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\tnameserv.exe [19152] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:33 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\unpack.dll [69328] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:34 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\unpack200.exe [167632] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:34 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\verify.dll [43728] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:34 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\w2k_lsa_auth.dll [24272] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\WindowsAccessBridge.dll [142544] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:32 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\WindowsAccessBridge-32.dll [144592] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/14 16:13:34 A . (.Temurin.) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\zip.dll [74960] {034A447570D970982409EBB3DA98B69D}.
O61 - LFC: 2022/11/16 09:15:16 A . (..) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\tmp\7zip\SevenZipJBinding-Do9iQmsMdyfO\lib7-Zip-JBinding.dll [4193064] [Unsigned]
O61 - LFC: 2022/11/16 09:14:42 N . (.Java(TM) Native Access (JNA).) -- C:\Users\sorli\AppData\Local\JDownloader 2.0\tmp\jna\jna8076361185862070500.dll [200192] [Unsigned]

---\\ ASSOCIATION Shell Spawning (10) - 2s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (8) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (1) - 0s
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (52) - 9s
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [327680] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1339392] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1511424] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [225280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [835584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [57344] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [172032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [122880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [835584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [245760] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [614400] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [548864] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [102400] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2109440] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1544192] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [466944] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [114688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1290240] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [188728] =>.Microsoft®
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1277952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1155072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1785856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [69632] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [253952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [135168] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1114112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [520192] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [98304] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [662520] =>.Microsoft®
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [335872] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3563520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1662976] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [278528] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [143360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1137688] =>.Microsoft®
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [1351680] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [303104] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1388544] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [94208] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [589824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [352256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2723840] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [536576] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [569344] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [311296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [831488] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [188416] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [294912] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [131072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [385024] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [217088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [217088] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (7) - 18s
O87 - FAEL: "{15D5F954-3264-45BB-AE46-C4BAE4DE275B}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{38DED671-44D7-4380-89B6-D02295CF1487}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{5BA77BEF-479A-47F5-B6B3-70925DDF5580}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{691E264D-6DA8-4CE5-8839-CDAD351C60B8}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{39CC0919-FFD2-4F76-A00A-AC955DECAF80}" [In-None-P17-TRUE] .(.Adguard Software Limited - AdGuard for Windows.) -- C:\Program Files (x86)\AdGuard\AdguardSvc.exe =>.Adguard Software Limited®
O87 - FAEL: "{2D000252-8E61-4240-AABA-1C68B8F72AEE}" [In-None-P6-TRUE] .(.The qBittorrent Project - qBittorrent - A Bittorrent Client.) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe [Unsigned] =>.The qBittorrent project
O87 - FAEL: "{57AA997E-FBA5-4EA0-8C3D-90A402819135}" [In-None-P17-TRUE] .(.The qBittorrent Project - qBittorrent - A Bittorrent Client.) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe [Unsigned] =>.The qBittorrent project

---\\ CODES PRODUITS LOGICIELS (2) - 0s
O90 - PUC: "3BA6F58616C71D24EAB583464ED80153" [HKLM] . (.AdGuard.) -- C:\WINDOWS\Installer\{685F6AB3-7C61-42D1-AE5B-3864E48D1035}\AdguardIcon.exe =>.Performix LLC
O90 - PUC: "6708A2A6F53155F4BB20ED6DC7C89643" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation

---\\ PACKAGES WINDOWS INSTALLER (1) - 2s
[MD5.3A79817BD816AF18F717F9D93CCB07D4] [WIS][2022/11/02 19:47:40] (.Adguard Software Limited - Version: 7.11.4095.0 .) -- C:\WINDOWS\Installer\2dbd988.msi [31453184]

---\\ FEATURE CONTROL. (124) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate

---\\ OBSERVATEURS des évènements (111) - 68s

Application.Error: ESENT (3)
~Numéro: 1158
~Date: 11/17/2022 07:09:48 AM
~ID: 455
~Description: %1 (%2) %3L’erreur %5 s’est produite lors de l’ouverture d’un fichier journal %4.
~Suggestion: Créer un dossier C:\Windows\system32\config\systemprofile\AppData\Local\TileDataLayer\Database

Application.Error: Application Hang (3)
~Numéro: 1118
~Date: 11/16/2022 11:22:58 PM
~ID: 1002
~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.

Application.Warning: Microsoft-Windows-RestartManager (1)
~Numéro: 1035
~Date: 11/16/2022 11:00:14 AM
~ID: 10010
~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9.
~Suggestion: Redémarrer manuellement l'application ou le service

Application.Warning: Windows Search Service (2)
~Numéro: 952
~Date: 11/15/2022 07:09:36 PM
~ID: 10024
~Description: Le processus de filtrage d’hôte %2 n’a pas répondu et il est actuellement en cours d’arrêt forcé.
~Suggestion: Aucune

Application.Error: Application Error (2)
~Numéro: 686
~Date: 11/15/2022 11:23:18 AM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x62b9e0ef Nom du module défaillant : %4, version : %5, horodatage : 0x62b9e0ef Code d’exception : 0xc0000409 Décalage d’erreur : 0x0000000000c86620 ID du processus défaillant : 0xd4c He
~Suggestion: Réparer ou réinstaller l'application.

Application.Error: MBAMIService (2)
~Numéro: 504
~Date: 11/13/2022 11:13:07 PM
~ID: 0
~Description: MBAMIServiceUnable to launch installer.

Application.Error: Microsoft-Windows-User Profiles Service (4)
~Numéro: 438
~Date: 11/13/2022 09:15:07 PM
~ID: 1512
~Description: Windows ne peut pas décharger votre fichier Registre. La mémoire utilisée par le Registre n’a pas été libérée. Ce problème est souvent causé par des services qui s’exécutent sous un compte d’utilisateur. Essayez de configurer les services pour qu’ils

Application.Warning: Wlclntfy (2)
~Numéro: 347
~Date: 11/13/2022 01:31:39 PM
~ID: 6006
~Description: Le traitement de l’événement de notification (%3) par l’abonné aux notifications Winlogon <%1> a duré %2 secondes.
~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System

Application.Error: Microsoft-Windows-Perflib (2)
~Numéro: 171
~Date: 11/12/2022 11:40:06 AM
~ID: 1023
~Description: Windows ne peut pas charger la DLL de compteur extensible « %1 » (code d'erreur Win32 %2).
~Suggestion: Accorder l’autorisation lecture et exécution pour le compte de Service réseau sur la DLL de compteur de performances pour SQL Server Analysis Services.

Application.Error: SecurityCenter (1)
~Numéro: 27
~Date: 11/11/2022 10:27:11 PM
~ID: 16
~Description: Erreur lors de la mise à jour du statut %1 vers %2.
~Suggestion: Vérifier s'il y a pas une erreur dans le Centre de Sécurité de Windows

System.Warning: DCOM (54)
~Numéro: 1515
~Date: 11/18/2022 09:26:22 AM
~ID: 10016
~Description: propres à l’applicationLocalActivation{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Error: Server (12)
~Numéro: 1509
~Date: 11/18/2022 09:26:09 AM
~ID: 2505
~Description: Le serveur n’a pas pu se lier au transport %1 car un autre ordinateur du réseau porte le même nom. Le serveur n’a pas pu démarrer.

System.Warning: BTHUSB (16)
~Numéro: 1508
~Date: 11/18/2022 09:26:05 AM
~ID: 34
~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n

System.Error: Microsoft-Windows-DNS-Client (33)
~Numéro: 1454
~Date: 11/17/2022 09:02:26 AM
~ID: 1012
~Description: 322122548500

System.Warning: Microsoft-Windows-Time-Service (2)
~Numéro: 1443
~Date: 11/17/2022 07:20:14 AM
~ID: 134
~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta
~Suggestion: Resynchroniser le client avec l'homologue de source de temps

System.Warning: Microsoft-Windows-WLAN-AutoConfig (12)
~Numéro: 1433
~Date: 11/17/2022 07:10:19 AM
~ID: 4003
~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 1 Famille IP : 0
~Suggestion: Vérifier les paramètres d'économie d'énergie

System.Warning: Display (1)
~Numéro: 1429
~ID: 4101
~Description: Le pilote d’affichage %1 ne répondait plus.

System.Error: Service Control Manager (33)
~Numéro: 1425
~Date: 11/17/2022 07:09:43 AM
~ID: 7000
~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%2

System.Error: MTConfig (1)
~Numéro: 729
~Date: 11/13/2022 11:12:57 PM
~ID: 1
~Description: Une tentative de configuration du mode d’entrée d’un périphérique multipoint a échoué.

System.Error: Microsoft-Windows-WindowsUpdateClient (2)
~Numéro: 582
~Date: 11/13/2022 09:15:14 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp

---\\ SCAN ADDITIONNEL (83) - 32s
C:\Users\sorli\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oeibmbobgpgnbnlbaffdgebpeepfbnhi =>Hijacker.Browser
C:\Users\sorli\AppData\Local\Temp\mat-debug-1988.log =>.SUP.Temporary.Microsoft
C:\Users\sorli\AppData\Local\Temp\mat-debug-6360.log =>.SUP.Temporary.Microsoft
C:\Users\sorli\AppData\Local\Temp\mat-debug-7184.log =>.SUP.Temporary.Microsoft
C:\Users\sorli\AppData\Local\Temp\mat-debug-8160.log =>.SUP.Temporary.Microsoft
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\install-antimalware-fix.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\install-antimalware-fix.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\c35da94f-ecc7-4bcf-8546-ffb8c982c35e\adguardInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\c35da94f-ecc7-4bcf-8546-ffb8c982c35e\adguardInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\4667fdbb-f3a7-419d-96f6-427bee124517\qbittorrent_4.4.5_x64_setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\4667fdbb-f3a7-419d-96f6-427bee124517\qbittorrent_4.4.5_x64_setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\GridinSoft Anti-Malware 4.1.77.5153 Multi-FR + Crack\gsam-4.1.77-setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\GridinSoft Anti-Malware 4.1.77.5153 Multi-FR + Crack\gsam-4.1.77-setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\GridinSoft Anti-Malware 4.1.77.5153 Multi-FR + Crack\Patch\(x86)_4.1.77_patch.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\43cdfaf0-a51b-444d-9ab1-08aa5b9a6da3\rcsetup153.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\43cdfaf0-a51b-444d-9ab1-08aa5b9a6da3\rcsetup153.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\6360fe19-35e1-496e-8baa-2edb528413b6\winrar-x64-611fr.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\6360fe19-35e1-496e-8baa-2edb528413b6\winrar-x64-611fr.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\22865a4d-3a87-4147-9154-1da66b49d490\MBSetup-37335.37335 (2).exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\22865a4d-3a87-4147-9154-1da66b49d490\MBSetup-37335.37335 (2).exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\KVRT.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\KVRT.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Nouveau dossier (3)\Media_Repair.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Nouveau dossier (3)\Media_Repair.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5844\Media_Repair.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5844\Media_Repair.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5688\Media_Repair.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5688\Media_Repair.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\vlc-3.0.17.4-win64.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\vuze_5-7-6-0_fr_11926.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\vuze_5-7-6-0_fr_11926.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\deluge_1-3-15_fr_228356.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\deluge_1-3-15_fr_228356.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\~nsu.tmp\Au_.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\~nsu.tmp\Au_.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\WESTERN\La.Derniere.Chasse. WESTERN 1H50 1996.MULTI.1080p.BluRay.HDLight.AC3.x264-gismo65.mkv.zatp.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Avira Phantom VPN Pro 2 24 1 25128-wawacity\Avira Phantom VPN Pro 2.24.1.25128\VpnInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Avira Phantom VPN Pro 2 24 1 25128-wawacity\Avira Phantom VPN Pro 2.24.1.25128\VpnInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\61A4.tmp\extd.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\61E4.tmp\extd.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\C5EE.tmp\extd.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\decrypt_STOPDjvu.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\decrypt_STOPDjvu.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\install-antimalware-fix.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\install-antimalware-fix.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\c35da94f-ecc7-4bcf-8546-ffb8c982c35e\adguardInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\c35da94f-ecc7-4bcf-8546-ffb8c982c35e\adguardInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\4667fdbb-f3a7-419d-96f6-427bee124517\qbittorrent_4.4.5_x64_setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\4667fdbb-f3a7-419d-96f6-427bee124517\qbittorrent_4.4.5_x64_setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\GridinSoft Anti-Malware 4.1.77.5153 Multi-FR + Crack\gsam-4.1.77-setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\GridinSoft Anti-Malware 4.1.77.5153 Multi-FR + Crack\gsam-4.1.77-setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\GridinSoft Anti-Malware 4.1.77.5153 Multi-FR + Crack\Patch\(x86)_4.1.77_patch.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\43cdfaf0-a51b-444d-9ab1-08aa5b9a6da3\rcsetup153.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\43cdfaf0-a51b-444d-9ab1-08aa5b9a6da3\rcsetup153.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\6360fe19-35e1-496e-8baa-2edb528413b6\winrar-x64-611fr.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\6360fe19-35e1-496e-8baa-2edb528413b6\winrar-x64-611fr.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\22865a4d-3a87-4147-9154-1da66b49d490\MBSetup-37335.37335 (2).exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\MicrosoftEdgeDownloads\22865a4d-3a87-4147-9154-1da66b49d490\MBSetup-37335.37335 (2).exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\KVRT.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\KVRT.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Nouveau dossier (3)\Media_Repair.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Nouveau dossier (3)\Media_Repair.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5844\Media_Repair.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5844\Media_Repair.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5688\Media_Repair.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\Rar$EXa7104.5688\Media_Repair.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\vlc-3.0.17.4-win64.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\vuze_5-7-6-0_fr_11926.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\vuze_5-7-6-0_fr_11926.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\deluge_1-3-15_fr_228356.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\deluge_1-3-15_fr_228356.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\~nsu.tmp\Au_.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\~nsu.tmp\Au_.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\WESTERN\La.Derniere.Chasse. WESTERN 1H50 1996.MULTI.1080p.BluRay.HDLight.AC3.x264-gismo65.mkv.zatp.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Avira Phantom VPN Pro 2 24 1 25128-wawacity\Avira Phantom VPN Pro 2.24.1.25128\VpnInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\Avira Phantom VPN Pro 2 24 1 25128-wawacity\Avira Phantom VPN Pro 2.24.1.25128\VpnInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\61A4.tmp\extd.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\61E4.tmp\extd.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\AppData\Local\Temp\C5EE.tmp\extd.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\decrypt_STOPDjvu.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-1372863263-1333732368-1273757222-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\sorli\Downloads\decrypt_STOPDjvu.exe.ApplicationCompany =>.SUP.Orphan.MUICache

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (5) - 0s
https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft
https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache

---\\ NUMEROS DE SÉRIE
[020CD424A7487F24C381DCC4CFEFA858] [19/12/2020] (.GridinSoft, LLC.) - C:\WINDOWS\System32\DRIVERS\gsInetSecurity.sys =>.GridinSoft, LLC
[020CD424A7487F24C381DCC4CFEFA858] [19/12/2020] (.GridinSoft, LLC.) - C:\WINDOWS\System32\DRIVERS\gtkdrv.sys =>.GridinSoft, LLC
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\attach.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\awt.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\client\jvm.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\dt_shmem.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\dt_socket.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\fontmanager.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\freetype.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\hprof.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\instrument.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\j2pcsc.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\j2pkcs11.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jaas_nt.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jabswitch.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java_crw_demo.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JavaAccessBridge.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JavaAccessBridge-32.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\java-rmi.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\javaw.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jawt.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JAWTAccessBridge.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\JAWTAccessBridge-32.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jdwp.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jjs.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jli.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jpeg.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jsdt.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jsound.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\jsoundds.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\keytool.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\kinit.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\klist.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\ktab.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\lcms.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\management.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\mlib_image.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\msvcp120.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\msvcr120.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\net.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\nio.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\npt.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\orbd.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\pack200.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\policytool.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\rmid.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\rmiregistry.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\sawindbg.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\server\jvm.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\servertool.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\splashscreen.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\sunec.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\sunmscapi.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\tnameserv.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\unpack.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\unpack200.exe =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\verify.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\w2k_lsa_auth.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\WindowsAccessBridge.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\WindowsAccessBridge-32.dll =>.Not verified
[034A447570D970982409EBB3DA98B69D] [14/11/2022] (.Eclipse.org Foundation, Inc..) - C:\Users\sorli\AppData\Local\JDownloader 2.0\jre\bin\zip.dll =>.Not verified
[0407ABB64E9990180789EACB81F5F914] [24/03/2022] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
[044E3BF58976880FFD074448A8F7A058] [15/11/2022] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Corporation
[04DC4A9C3993F2DA716D7302FF1DB0BE] [05/11/2019] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys =>.Synaptics Incorporated
[04DF4D56733AE38D598EA004DD2D9C51] [29/09/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp.
[07ED134B1ECF561A9EB5B05388BFF047] [04/04/2022] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.
[07ED134B1ECF561A9EB5B05388BFF047] [12/11/2022] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\unins000.exe =>.VS Revo Group Ltd.
[07ED134B1ECF561A9EB5B05388BFF047] [25/07/2022] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd.
[08E4163CF72241F925DAB311603393A9] [02/11/2022] (.Adguard Software Limited.) - C:\Program Files (x86)\AdGuard\Adguard.exe =>.Adguard Software Limited
[08E4163CF72241F925DAB311603393A9] [02/11/2022] (.Adguard Software Limited.) - C:\Program Files (x86)\AdGuard\AdguardSvc.exe =>.Adguard Software Limited
[08E4163CF72241F925DAB311603393A9] [12/11/2022] (.Adguard Software Limited.) - C:\ProgramData\Package Cache\{5c0c90e9-a68a-4d54-8aa1-27be958c07a7}\adgSetup.exe =>.Adguard Software Limited
[0BFCFAC08E216A1C1FDAA6B77BB2D66E] [29/09/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.
[0E9D0AE05A4E724C5D8895B6276A92F3] [16/12/2020] (.F-Secure Corporation.) - C:\Program Files (x86)\F-Secure\Freedome\drivertool32.exe =>.F-Secure Corporation
[0E9D0AE05A4E724C5D8895B6276A92F3] [16/12/2020] (.F-Secure Corporation.) - C:\Program Files (x86)\F-Secure\Freedome\Freedome.exe =>.F-Secure Corporation
[0E9D0AE05A4E724C5D8895B6276A92F3] [16/12/2020] (.F-Secure Corporation.) - C:\Program Files (x86)\F-Secure\Freedome\fsvpnservice.exe =>.F-Secure Corporation
[1121F7C4F04F79EA2F0DD8725F116C3AED65] [28/09/2015] (.Sysprogs OU.) - C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys =>.Sysprogs OU
[19FE2B7721886C7BCAC1364C90CD7FA9] [29/09/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys =>.Synaptics Incorporated
[1EE55221A5CCC4861C339155EA52E491] [04/01/2021] (.GridinSoft, LLC.) - C:\Program Files\GridinSoft Anti-Malware\shellext.dll =>.GridinSoft, LLC
[1EE55221A5CCC4861C339155EA52E491] [04/01/2021] (.GridinSoft, LLC.) - C:\Program Files\GridinSoft Anti-Malware\uninst.exe =>.GridinSoft, LLC
[330000029B1302828FF3904ED200000000029B] [20/08/2022] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl
[330000B85395C584DD5249B00800020000B853] [03/11/2016] (.Intel(R) OWR.) - C:\WINDOWS\System32\drivers\IntcDAud.sys =>.Intel(R) OWR
[330000B898AA86B5A39E5A1BBD00020000B898] [29/09/2021] (.Intel(R) pGFX.) - C:\WINDOWS\System32\DRIVERS\igdkmd64lp.sys =>.Intel(R) pGFX
[359895823C34080DC07DC7D4] [13/04/2022] (.Appwork GmbH.) - C:\Users\sorli\AppData\Local\JDownloader 2.0\JDownloader2.exe =>.Appwork GmbH
[359895823C34080DC07DC7D4] [13/04/2022] (.Appwork GmbH.) - C:\Users\sorli\AppData\Local\JDownloader 2.0\Uninstall JDownloader.exe =>.Appwork GmbH
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH

~ Unselected Options: O82,
~ End of the scan, 6324 items in 11mn58s (1816)(0)

Publicité


Signaler le contenu de ce document

Publicité