~ ZHPDiag v2024.4.10.13 Par Nicolas Coolman (2024/04/10)
~ Démarre par Utilisateur (Administrator) (2024/04/14 15:02:18)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Utilisateur\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Demarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 19045) =>.Microsoft Corporation
---\\ NAVIGATEURS INTERNET (3) - 0s
~ MFIE: Mozilla Firefox 124.0.2 (x64 fr)
~ MSIE: Internet Explorer v11.3636.19041.0
~ OBIE: Microsoft Edge v123.0.2420.81
---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : 7T9QQ
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK
---\\ LOGICIELS DE PROTECTION (2) - 4s
Windows Defender W10 (Activate) (Protection)
Bitdefender Agent v27.0.1.266 (Protection)
---\\ LOGICIELS D'OPTIMISATION (4) - 4s
~ CCleaner Browser v122.0.24368.130 (Optimisation)
~ CCleaner Update Helper v1.8.1067.0 (Optimisation)
~ CCleaner Update Helper v1.8.1583.3 (Optimisation)
~ CCleaner v6.22 (Optimisation)
---\\ INFORMATIONS SUR LE SYSTEME (18) - 3s
~ Operating System: Intel64 Family 6 Model 55 Stepping 8, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
System Restore: Activé (Enable)
System drive C: has 854 GB (89%) free of 953 GB : OK =>.Disk Space
---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS)
~ Slots Total (Total Slots) : 2
~ Slots Utilisés (Used Slots) : 1
~ Slots Disponibles (Free Slots) : 1
~ Type de barrette (FormFactor): DIMM
~ Taille (Size) : 4 Go
~ Vitesse (Speed) : 1333
~ Charge mémoire (Memory Usage) : 46%
~ RAM physique Total (Total Physical) : 4 Go : OK
~ RAM physique Disponible (Available Physical) : 2 Go
~ Total virtuelle (Total Virtual) : 7.89 Go
~ Disponible virtuelle (Available Virtual): 6.29 Go
---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s
~ Computer Name: DESKTOP-QOEK1RT
~ User Name: Utilisateur
~ Logged in as Administrator
---\\ ENUMERATION DES UNITES DE STOCKAGE (5) - 1s
~ Drive C: has 854 GB free of 953 GB (System)
---\\ ETAT DE LA COMMANDE TRIM
~ La commande TRIM est active (NTFS)
~ La commande TRIM est active (ReFS)
---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (33) - 50s
~ Model: ST1000LM035-1RK172 vSDM2 (953 Gb )
~ Media Type: HDD Disque Fixe ( Bus: SATA)
---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME
OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0
OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 1.047
OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 4.002
OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 4.344
OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown
---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute]
OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [15][81][64] [6][59875]
RE - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [3][99][99] [0][0]
OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][88][88] [20][12417]
OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][100][100] [36][0]
OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [15][84][60] [45][13141]
OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][94][94] [0][5632]
OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [19][100][100] [97][0]
OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][99][99] [20][2028]
OK - B8 - Transfert de données à travers le cache (End-to-End error ) - [50][100][100] [99][0]
OK - BB - Nombre d'erreurs irrécupérable avec ECC (Reported Uncorrectable Errors) - [50][100][100] [0][0]
OK - BC - Nombre d'opérations avortées (Command Timeout) - [50][100][99] [0][8]
OK - BD - Erreurs incorrigibles signalées (High Fly Writes) - [58][100][100] [0][0]
OK - BE - Température interne (Airflow Temperature) - [34][61][46] [40][39]
OK - BF - Nombre d'erreurs chargement/déchargement de tête (G-Sense Error Rate) - [50][100][100] [0][77]
OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [50][100][100] [0][99]
OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [50][50][50] [0][35255]
OK - C2 - Température interne actuelle (Enclosure Temperature) - [34][39][54] [0][39]
OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [18][100][100] [0][0]
OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [16][100][100] [0][0]
OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [62][200][200] [0][0]
OK - F0 - Heures de navigation des têtes (Head Flying Hours) - [0][100][253] [0][5385]
OK - F1 - Total Ecriture Hôte (Total Host Writing) - [0][100][253] [0][17406]
---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 11s
[MD5.238538D74FEA273BFF1E00622ECCAF3A] - 12/04/2024 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [5656192] =>.Microsoft®
[MD5.100F56A73211E0B2BCD076A55E6393FD] - 15/11/2023 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation
[MD5.926BC1C0F525809AEF198F563FA6BA86] - 12/04/2024 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [420624] [Unsigned] =>.Microsoft Corporation
[MD5.84A34BF3486F7B9B7035DB78D78BDD1E] - 15/11/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [5039616] [Unsigned] =>.Microsoft Corporation
[MD5.5CF49C3BBD3D21EF689112C01503AB04] - 12/04/2024 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [905728] [Unsigned] =>.Microsoft Corporation
[MD5.FDFCBEF77C6503730AE57E117A0CB3A9] - 15/11/2023 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation
[MD5.DE67B43CCFF4861AA8D4951974C9BFDC] - 14/02/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [827048] =>.Microsoft®
[MD5.C94BF70DEBB894C69AAA358E39E062A4] - 14/02/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [587920] =>.Microsoft®
[MD5.EBF98CF7AE96D23C72595C66F5466145] - 12/04/2024 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3436544] [Unsigned] =>.Microsoft Corporation
[MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.EC43EC69708D0D1ECCE4F1D091922B2D] - 12/04/2024 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [651744] [Unsigned] =>.Microsoft Corporation
[MD5.81FF48994C82B1CA2C4EBD9C6C6683C4] - 15/11/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [31200] [Unsigned] =>.Microsoft Corporation
[MD5.E53DE91C9330F0E17075C11CD0A7719A] - 15/11/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
[MD5.D0F81A35A1A28117B8AB1C11FC0E363D] - 15/11/2023 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
[MD5.2824929F2BCC3EBDCFA92D628B94C51C] - 15/11/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation
[MD5.CDB5694CFBE5AFC0FB4139A878E95781] - 12/04/2024 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [135168] [Unsigned] =>.Microsoft Corporation
[MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.E1EF9BC57E7816DA7EAA9C98AB25140B] - 15/11/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [227840] [Unsigned] =>.Microsoft Corporation
[MD5.5758FCE164B2D8E7DC7791747A397C55] - 12/04/2024 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [580592] [Unsigned] =>.Microsoft Corporation
[MD5.09D0F16FB9555790DA934BDC2543E940] - 15/11/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation
[MD5.34523021B6A0DD1E1887215DB9173D29] - 12/04/2024 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2845048] [Unsigned] =>.Microsoft Corporation
[MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation
[MD5.3765A152D22371552A7DBE622D9C365E] - 14/02/2024 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [112128] [Unsigned] =>.Microsoft Corporation
[MD5.DFC63E0133E9A721B5B962F3A7E8F35D] - 15/11/2023 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
[MD5.02577FC71C31F625B302566190AA1382] - 15/11/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118752] [Unsigned] =>.Microsoft Corporation
[MD5.484DC5AD718AE12B3AD99B511FABE088] - 15/11/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [431088] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES SERVICES (Non désactivés) (8) - 14s
O23 - Service: Bitdefender Agent RedLine Service (bdredline_agent) . (.Bitdefender - Bitdefender redline update.) - C:\Program Files\Bitdefender Agent\redline\bdredline.exe {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
O23 - Service: Service CCleaner Browser Update (ccleaner) (ccleaner) . (.Piriform Software - CCleaner Browser.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED®
O23 - Service: Foxit Reader Update Service (FoxitReaderUpdateService) . (.Foxit Software Inc. - Foxit Reader Update Service.) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe =>.FOXIT SOFTWARE INC.®
O23 - Service: GoogleUpdater InternalService 125.0.6386.2 (GoogleUpdaterIn (GoogleUpdaterInternalService125.0.6386.2) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe =>.Google LLC®
O23 - Service: GoogleUpdater Service 125.0.6386.2 (GoogleUpdaterService125 (GoogleUpdaterService125.0.6386.2) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe =>.Google LLC®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe [Unsigned] =>.Intel Corporation
O23 - Service: ProductAgentService (ProductAgentService) . (.Bitdefender - Bitdefender Agent.) - C:\Program Files\Bitdefender Agent\ProductAgentService.exe {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (81) - 49s
SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\Windows\System32\drivers\3ware.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\Windows\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\Windows\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\Windows\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 4233728] Qualcomm Atheros Extens (athr) . (.Qualcomm Atheros Communications, Inc..) - C:\Windows\System32\drivers\athw8x.sys [Unsigned] =>.Qualcomm Atheros Communications, Inc.
SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\Windows\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\Windows\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Auto [20/07/2023] [ 2574864] Bitdefender Agent RedLine Service (bdredline_agent) . (.Bitdefender.) - C:\Program Files\Bitdefender Agent\redline\bdredline.exe {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
SR - Disabl [00/00/0000] [ 0] Bitdefender Safepay Service (BDSafepaySrv) . (...) - C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe (.not file.) [Unsigned]
SR - System [16/09/2021] [ 94600] bdvpn_netfilter (bdvpn_netfilter) . (.Pango Inc.) - C:\Windows\System32\drivers\bdvpn_netfilter.sys =>.Pango Inc.®
SR - Auto [13/12/2022] [ 208176] Service CCleaner Browser Update (ccleaner) (ccleaner) . (.Piriform Software.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED®
SS - Demand [14/03/2024] [ 1753208] CCleaner Browser Elevation Service (CCleanerBrowserElevatio (CCleanerBrowserElevationService) . (.Piriform Software.) - C:\Program Files (x86)\CCleaner Browser\Application\122.0.24368.130\elevation_service.exe =>.PIRIFORM SOFTWARE LIMITED®
SS - Demand [13/12/2022] [ 208176] Service CCleaner Browser Update (ccleanerm) (ccleanerm) . (.Piriform Software.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED®
SS - Demand [11/03/2024] [ 1081248] CCleaner Performance Optimizer Service (CCleanerPerformanceOptimizerService) . (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED®
SS - Demand [26/03/2024] [ 74016] @C:\Program Files (x86)\Google\Chrome Remote Desktop\124.0. (chromoting) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome Remote Desktop\124.0.6367.18\remoting_host.exe =>.Google LLC®
SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\Windows\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\Windows\System32\drivers\cht4vx64.sys =>.Microsoft®
SS - Demand [30/07/2015] [ 290208] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\Windows\System32\drivers\evbda.sys =>.Microsoft®
SR - Auto [18/03/2021] [ 2356800] Foxit Reader Update Service (FoxitReaderUpdateService) . (.Foxit Software Inc..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe =>.FOXIT SOFTWARE INC.®
SS - Demand [09/04/2024] [ 1670944] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\123.0.6312.122\elevation_service.exe =>.Google LLC®
SR - Auto [04/04/2024] [ 4774176] GoogleUpdater InternalService 125.0.6386.2 (GoogleUpdaterIn (GoogleUpdaterInternalService125.0.6386.2) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe =>.Google LLC®
SR - Auto [04/04/2024] [ 4774176] GoogleUpdater Service 125.0.6386.2 (GoogleUpdaterService125 (GoogleUpdaterService125.0.6386.2) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe =>.Google LLC®
SR - System [23/11/2021] [ 20160] GUBootStartup (GUBootStartup) . (.Glarysoft Ltd.) - C:\Windows\System32\drivers\GUBootStartup.sys =>.Glarysoft Ltd®
SR - Auto [04/04/2024] [ 4774176] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
SS - Demand [04/04/2024] [ 4774176] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
SR - Demand [19/11/2020] [ 32696] ASUS Wireless Radio Control (HIDSwitch) . (.ASUS.) - C:\Windows\System32\drivers\AsRadioControl.sys =>.ASUSTek Computer Inc.®
SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\Windows\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\Windows\System32\drivers\ibbus.sys =>.Microsoft®
SR - Demand [30/07/2015] [ 3797960] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys =>.Intel Corporation - pGFX®
SR - Auto [30/07/2015] [ 328608] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
SR - Demand [26/06/2015] [ 50232] Intel WiDi Audio Device (intaud_WaveExtensible) . (.Intel Corporation.) - C:\Windows\System32\drivers\intelaud.sys =>.Intel(R) Wireless Display®
SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Demand [26/06/2015] [ 39480] IWD Bus Enumerator (iwdbus) . (.Intel Corporation.) - C:\Windows\System32\drivers\iwdbus.sys =>.Intel(R) Wireless Display®
SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\Windows\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\Windows\System32\drivers\mlx4_bus.sys =>.Microsoft®
SR - Demand [17/10/2013] [ 16376] Driver for Monitor (MonitorFunction) . (.TeamViewer GmbH.) - C:\Windows\System32\drivers\TVMonitor.sys =>.TeamViewer GmbH®
SS - Demand [01/04/2024] [ 239520] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\Windows\System32\drivers\mvumis.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\Windows\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\Windows\System32\drivers\percsas3i.sys =>.Microsoft®
SR - Auto [12/12/2023] [ 686032] ProductAgentService (ProductAgentService) . (.Bitdefender.) - C:\Program Files\Bitdefender Agent\ProductAgentService.exe {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
SR - Demand [08/07/2015] [ 321792] Realtek PCIE CardReader Driver - BA (RSBASTOR) . (.Realtek Semiconductor Corp..) - C:\Windows\System32\DRIVERS\RtsBaStor.sys =>.Realtek Semiconductor Corp®
SR - Demand [07/12/2019] [ 694272] Realtek RT640 NT Dri (rt640x64) . (.Realtek.) - C:\Windows\System32\drivers\rt640x64.sys [Unsigned] =>.Realtek
SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\Windows\System32\drivers\SmartSAMD.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft®
SR - Demand [20/02/2020] [ 47920] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\Windows\System32\drivers\tap0901.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\Windows\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\Windows\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\Windows\System32\drivers\winverbs.sys =>.Microsoft®
---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (24) - 27s
O38 - TASK: {1991D4D0-918E-4E77-AF99-B5EB9A72A232} [64Bits][\CCleanerSkipUAC - Utilisateur] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [39024544] =>.Piriform Software Ltd
O38 - TASK: {2411B749-FC3A-43C0-B345-F780600DF2C1} [64Bits][\CCleanerUpdateTaskMachineCore] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176] =>.Piriform Software
O38 - TASK: {26B4FFE1-BDCC-40D7-95E0-4800F3F3039B} [64Bits][\CCleanerBrowserProtectS-1-5-21-3361203557-2016680538-3122071309-1001] - (.Piriform Software - Piriform Software CCleaner Browser Protect.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowserProtect.exe [1717416] =>.Piriform Software
O38 - TASK: {2D67301A-C50C-4435-B3FE-4659D2679F23} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - La tâche Agent de navigateur par défaut eff.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34720] =>.Mozilla Foundation
O38 - TASK: {30486F3F-E0DD-4604-A309-807F8CCAE8EB} [64Bits][\CCleaner Update] - (.Piriform Software Ltd - CCleaner CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [714256] =>.Piriform Software Ltd
O38 - TASK: {4476C71A-40B8-4DAB-A80F-49F5C6988DEC} [64Bits][\CCleaner Browser Heartbeat Task (Logon)] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3152936] =>.Piriform Software
O38 - TASK: {7BEE36DF-9F3F-4C77-9D09-3480C98A0423} [64Bits][\CCleanerUpdateTaskMachineUA] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176] =>.Piriform Software
O38 - TASK: {BC8CFA6E-F9B1-4A81-92ED-D8EE84FF33B5} [64Bits][\CCleanerCrashReporting] - (.Gen Digital Inc. All rights reserved. - CCleaner Bug Report.) -- C:\Program Files\CCleaner\CCleanerBugReport.exe [5074848]
O38 - TASK: {C3B89680-F135-4DFA-98C6-025D7988317F} [64Bits][\Mozilla\Firefox Background Update S-1-5-21-3361203557-2016680538-3122071309-1001 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [671136] =>.Mozilla Corporation
O38 - TASK: {CB679431-4EDE-44AE-B271-6808D588A342} [64Bits][\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem125.0.6386.2{B0FC2EC9-72A4-4393-8C99-0DDC3EF04949}] - (.Google LLC - GoogleUpdater (x86).) -- C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe [4774176] =>.Google LLC
O38 - TASK: {E85AEC19-2346-4DC1-B46D-2710D020C201} [64Bits][\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864] - (.Bitdefender - Bitdefender Agent WatchDog.) -- C:\Program Files\Bitdefender Agent\27.0.1.266\WatchDog.exe [1111184] =>.BitDefender
O38 - TASK: {EEB184A7-C09F-4BA3-ABCB-6BF70AD81409} [64Bits][\CCleaner Browser Heartbeat Task (Hourly)] - (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3152936] =>.Piriform Software
C:\Windows\System32\Tasks\CCleanerSkipUAC - Utilisateur - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd
C:\Windows\System32\Tasks\CCleanerUpdateTaskMachineCore - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [/c] =>.Piriform Software
C:\Windows\System32\Tasks\CCleanerBrowserProtectS-1-5-21-3361203557-2016680538-3122071309-1001 - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowserProtect.exe [--runonce] =>.Piriform Software
C:\Windows\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation
C:\Windows\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd
C:\Windows\System32\Tasks\CCleaner Browser Heartbeat Task (Logon) - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [--type=heartbeat --logon.--type=heartbeat] =>.Piriform Software
C:\Windows\System32\Tasks\CCleanerUpdateTaskMachineUA - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [/ua ./ua] =>.Piriform Software
C:\Windows\System32\Tasks\CCleanerCrashReporting - (.Gen Digital Inc. All rights reserved..) -- C:\Program Files\CCleaner\CCleanerBugReport.exe [1]
C:\Windows\System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3361203557-2016680538-3122071309-1001 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation
C:\Windows\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem125.0.6386.2{B0FC2EC9-72A4-4393-8C99-0DDC3EF04949} - (.Google LLC.) -- C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe [--wake --system --enable-logging --vmodule=*/compo] =>.Google LLC
C:\Windows\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 - (.Bitdefender.) -- C:\Program Files\Bitdefender Agent\27.0.1.266\WatchDog.exe [repair] =>.BitDefender
C:\Windows\System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) - (.Piriform Software.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [--type=heartbeat --hourly.--type=heartbeat] =>.Piriform Software
---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (13) - 4s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\Windows\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Users\Utilisateur\Desktop\GlaryUtilitiesPortable\App\GlaryUtilities5\StartupManager.exe =>.Glarysoft LTD®
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000
O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000
O4 - HKUS\S-1-5-21-3361203557-2016680538-3122071309-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-3361203557-2016680538-3122071309-1001\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Users\Utilisateur\Desktop\GlaryUtilitiesPortable\App\GlaryUtilities5\StartupManager.exe =>.Glarysoft LTD®
O4 - HKUS\S-1-5-21-3361203557-2016680538-3122071309-1001\..\Run: [MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-3361203557-2016680538-3122071309-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED®
---\\ PROCESSUS LANCES (11) - 11s
[MD5.1DBE918F1EDE43C8D49B6D9A7DEA25F3] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [328608] [PID.2248] [Unsigned] =>.Intel Corporation
[MD5.CD082F85659C69CF75ED8AAC10B1F032] - (.Foxit Software Inc. - Foxit Reader Update Service.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [2356800] [PID.3452] =>.FOXIT SOFTWARE INC.®
[MD5.33BC0814D3EA990455A2E956A24FB71A] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender Agent\ProductAgentService.exe [686032] [PID.3552] {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
[MD5.BFE27E59D71DA8D4C5433AECE14C4CBF] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [540064] [PID.5200] [Unsigned] =>.Intel Corporation
[MD5.D6298429D647B5ECFB3D1A407E2C364C] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\system32\igfxHK.exe [256928] [PID.5260] [Unsigned] =>.Intel Corporation
[MD5.97BB6425C86F46C2B21E0861421B6AE5] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxTray.exe [393632] [PID.5288] [Unsigned] =>.Intel Corporation
[MD5.FA8A6A975F136CBBCD34A59286027A87] - (.Bitdefender - DiscoverySrv.) -- C:\Program Files\Bitdefender Agent\27.0.1.266\DiscoverySrv.exe [839536] [PID.5496] {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
[MD5.3C18A10A5B68BC3A0DD97F8BBAB8B41D] - (...) -- C:\Windows\System32\AggregatorHost.exe [321536] [PID.4304] [Unsigned]
[MD5.17F4ABC9F07E14AF7F85FEC171F70536] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [809952] [PID.6736] =>.Microsoft®
[MD5.2D7F4EDFFB125254296F1AD9DCD1A2A1] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPSuite.exe [3538592] [PID.7324] [Unsigned] =>.Nicolas Coolman
[MD5.BB8BDC561394C4ECFD2158D228DA62B5] - (.Bitdefender - Bitdefender redline update.) -- C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2574864] [PID.7968] {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
---\\ CHROME, Démarrage, Recherche, Extensions (4) - 1s
G2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [inomeogfingihgjfjlpeplalcfajhgai] Chrome Remote Desktop =>.Legitimate
G2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [Utilisateur][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (15) - 4s
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\bookmarkbackups =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\crashes =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\datareporting =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\gmp-widevinecdm =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\minidumps =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\security_state =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\sessionstore-backups =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\settings =>Mozilla Corporation
C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\storage =>Mozilla Corporation
---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.4165 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation
---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (3) - 1s
E2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
E2 - GCE: Preference [Utilisateur][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate
E2 - GCE: Preference [Utilisateur][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
---\\ INTERNET EXPLORER,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft
---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=
---\\ ETUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)
---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 1s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.81\BHO\ie_to_edge_bho_64.dll =>.Microsoft®
---\\ RACCOURCIS GLOBAL STARTUP (47) - 23s
O4 - GS\Desktop [Utilisateur]: Assistance.lnk . (.TeamViewer - Assistance à distance pour Ost.) C:\AA Soft Medical\Télé assistance AASM.exe =>.TeamViewer®
O4 - GS\Desktop [Utilisateur]: Chrome Remote Desktop.lnk . (.Google LLC - .) C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe --profile-directory=Default --app-id=efmjfjelnicpmdcmfikempdhlmainjcb [Unsigned] =>.Google LLC
O4 - GS\Desktop [Utilisateur]: Documentation OsteoLog.lnk . (...) C:\AA Soft Medical\Aide.htm [Unsigned]
O4 - GS\Desktop [Utilisateur]: M DELATTRE (1) - Raccourci.lnk . (...) C:\Users\Utilisateur\Downloads\M DELATTRE (1).pdf [Unsigned]
O4 - GS\Desktop [Utilisateur]: OsteoLog.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\Office10\MsAccess.exe "c:\AA Soft Medical\Gestion Patients.mde" /Runtime =>.Microsoft Corporation®
O4 - GS\Desktop [Utilisateur]: RPT.lnk . (...) C:\AA Soft Medical\RPT.mde [Unsigned]
O4 - GS\Desktop [Utilisateur]: temMedecin - Raccourci.lnk . (...) C:\TEM-ACUPUNCTURE\TEM\temMedecin.exe [Unsigned]
O4 - GS\Desktop [Utilisateur]: temPatient - Raccourci.lnk . (...) C:\TEM-ACUPUNCTURE\TEM\temPatient.exe [Unsigned]
O4 - GS\Desktop [Utilisateur]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Utilisateur]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=quicklaunch =>.PIRIFORM SOFTWARE LIMITED®
O4 - GS\Quicklaunch [Utilisateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 10.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.FOXIT SOFTWARE INC.®
O4 - GS\Quicklaunch [Utilisateur]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC
O4 - GS\Quicklaunch [Utilisateur]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\sendTo [Utilisateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Utilisateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Utilisateur]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=taskbar =>.PIRIFORM SOFTWARE LIMITED®
O4 - GS\TaskBar [Utilisateur]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\Programs [Utilisateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=desktop =>.PIRIFORM SOFTWARE LIMITED®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED®
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 10.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.FOXIT SOFTWARE INC.®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC
O4 - GS\CommonDesktop [Public]: LibreOffice 7.1.lnk . (.The Document Foundation - LibreOffice, la suite de produ.) C:\Program Files (x86)\LibreOffice\program\soffice.exe [Unsigned] =>.The Document Foundation
O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Utilisateur\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\Windows\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (...) C:\Program Files (x86)\Audacity\audacity.exe [Unsigned]
O4 - GS\ProgramsCommon [Public]: CCleaner Browser.lnk . (.Piriform Software - CCleaner Browser.) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe --check-run=src=tile =>.PIRIFORM SOFTWARE LIMITED®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation
---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (7) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{d0d814b7-80c9-4ef9-bf74-2b2cb8d7d7ad}: NameServer = 198.51.100.1 =>.USA Internet Assigned Numbers Authority IANA
O17 - HKLM\System\CCS\Services\Tcpip\..\{092b1473-da07-4107-bc23-00f4e6c37fc3}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{a5a1337d-befb-4c8d-9d65-8c027bb2722c}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{d0d814b7-80c9-4ef9-bf74-2b2cb8d7d7ad}: DhcpNameServer = 8.8.8.8 =>.France Google Cloud
O17 - HKLM\System\CCS\Services\Tcpip\..\{092b1473-da07-4107-bc23-00f4e6c37fc3}: DhcpDomain = lan =>.Local Domain
---\\ PROTOCOLE ADDITIONNEL (19) - 4s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation
---\\ CLE DE REGISTRE EXPLORER StartupApproved (12) - 1s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D
[HKEY_USERS\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
[HKEY_USERS\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastUI.exe =>.Avast Software s.r.o
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WindowsDefender =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Bdagent =>.Bitdefender
---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (7) - 3s
O40 - ASIC: CCleaner Browser [64Bits] - {052EB454-9F19-CB42-7875-807F79F311C4} . (.Piriform Software - CCleaner Browser Installer.) -- C:\Program Files (x86)\CCleaner Browser\Application\122.0.24368.130\Installer\chrmstp.exe =>.PIRIFORM SOFTWARE LIMITED®
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\123.0.6312.122\Installer\chrmstp.exe =>.Google LLC®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\123.0.2420.81\Installer\setup.exe =>.Microsoft®
---\\ LOGICIELS INSTALLES (17) - 24s
O42 - Logiciel: 7-Zip 19.00 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip [Unsigned] =>.Igor Pavlov
O42 - Logiciel: 7-Zip 23.01 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-2301-000001000000} [Unsigned] =>.Igor Pavlov
O42 - Logiciel: AA Soft Medical - OsteoLog - (.AA Soft Medical.) [HKLM][64Bits] -- {9C94EE78-79F5-474F-915E-8D1B4008FAD4} [Unsigned]
O42 - Logiciel: Audacity 1.2.6 - (.Audacity.) [HKLM][64Bits] -- Audacity_is1 [Unsigned] =>.Audacity
O42 - Logiciel: Bitdefender Agent - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender Agent {07D4810D1E19768AE30BFDEA229AD105}. =>.BitDefender
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Software Ltd®
O42 - Logiciel: CCleaner Browser - (.Auteurs de CCleaner Browser.) [HKLM][64Bits] -- CCleaner Browser =>.PIRIFORM SOFTWARE LIMITED®
O42 - Logiciel: CCleaner Update Helper - (.Piriform Software.) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>Heuristic.Suspect (Hidden)
O42 - Logiciel: CCleaner Update Helper - (.Piriform Software.) [HKLM][64Bits] -- {E4EAC0E2-A80B-479F-BA45-DCDA595C9A93} [Unsigned] =>.Piriform Software (Hidden)
O42 - Logiciel: Chrome Remote Desktop Host - (.Google LLC.) [HKLM][64Bits] -- {B3DF9767-C635-4558-A655-D586070E2CE3} [Unsigned] =>.Google LLC
O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1 =>.FOXIT SOFTWARE INC.®
O42 - Logiciel: Free Photo Viewer - (.10-Strike Software.) [HKLM][64Bits] -- Free Photo Viewer_is1 [Unsigned] =>.10-Strike Software
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- {1EEC1DBC-CB2B-3E05-83BB-07461962A8CF} [Unsigned] =>.Google LLC
O42 - Logiciel: LibreOffice 7.1.4.2 - (.The Document Foundation.) [HKLM][64Bits] -- {7BE60D5A-5444-4E4D-9BAE-6A5BEA22C2AA} [Unsigned] =>.The Document Foundation
O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 124.0.2 (x64 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (98) - 24s
HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction
HKLM\SOFTWARE\1D0EC6DE-4A80-4CC3-A335-E6E41C951198
HKLM\SOFTWARE\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\Avast Software =>.AVAST Software
HKLM\SOFTWARE\bdvpn.backup
HKLM\SOFTWARE\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\cl2021.upgrade
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\LibreOffice =>.LibreOffice
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Avast Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited
HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\10-Strike Software =>.10-Strike Software
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Audacity =>.Audacity
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\Bitdefender VPN =>.Bitdefender
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Etiam =>.Etiam
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\GlarySoft =>.GlarySoft
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\.DEFAULT\SOFTWARE\Bitdefender =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\SetId =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\SetID_bdwt
HKU\.DEFAULT\SOFTWARE\Sub_ID_com.bitdefender.vpn =>.Bitdefender
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\10-Strike Software =>.10-Strike Software
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Audacity =>.Audacity
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\AVAST Software =>.AVAST Software
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Bitdefender VPN =>.Bitdefender
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Etiam =>.Etiam
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Foxit Software =>.Foxit Software
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\GlarySoft =>.GlarySoft
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\The Document Foundation =>.The Document Foundation
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\SOFTWARE\ZHP =>.Nicolas Coolman
---\\ PACKAGES (3) - 0s
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.4239_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.4239.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\SpotifyAB.SpotifyMusic_1.235.663.0_x64__zpdnekdrzrea0 - (.Spotify.) [][Spotify Music] =>Spotify
---\\ CONTENU DES DOSSIERS PROGRAMMES (72) - 12s
O43 - CFD: 18/03/2024 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 14/04/2024 - [] D -- C:\Program Files\Bitdefender =>.Bitdefender
O43 - CFD: 26/12/2023 - [] D -- C:\Program Files\Bitdefender Agent =>.Bitdefender
O43 - CFD: 14/04/2024 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 31/03/2021 - [] D -- C:\Program Files\Google =>.Google LLC®
O43 - CFD: 31/03/2021 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 06/07/2021 - [] D -- C:\Program Files\LibreOffice =>.LibreOffice
O43 - CFD: 14/04/2024 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 02/04/2024 - [] D -- C:\Program Files\RUXIM =>.Microsoft®
O43 - CFD: 31/03/2021 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 12/04/2021 - [] D -- C:\Program Files (x86)\Audacity =>.Audacity
O43 - CFD: 02/04/2024 - [] D -- C:\Program Files (x86)\CCleaner Browser =>.PIRIFORM SOFTWARE LIMITED®
O43 - CFD: 31/03/2021 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software
O43 - CFD: 12/04/2021 - [] D -- C:\Program Files (x86)\Free Photo Viewer =>.10-Strike Software®
O43 - CFD: 09/04/2024 - [] D -- C:\Program Files (x86)\Google =>.Google LLC®
O43 - CFD: 31/03/2021 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 13/04/2024 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 18/03/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 13/04/2024 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 28/05/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 31/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation
O43 - CFD: 12/04/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Photo Viewer
O43 - CFD: 06/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.1 =>.LibreOffice
O43 - CFD: 31/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 22/11/2021 - [0] D -- C:\ProgramData\48C4687D-9760-4F5B-BAB3-60351B0841E4
O43 - CFD: 22/11/2021 - [] D -- C:\ProgramData\AnchorFree_Inc
O43 - CFD: 22/11/2021 - [] D -- C:\ProgramData\Atc
O43 - CFD: 14/04/2024 - [] D -- C:\ProgramData\Avast Software =>.AVAST Software
O43 - CFD: 04/09/2023 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender
O43 - CFD: 14/04/2024 - [0] D -- C:\ProgramData\Bitdefender =>.Bitdefender
O43 - CFD: 22/11/2021 - [] D -- C:\ProgramData\Bitdefender Agent =>.Bitdefender
O43 - CFD: 22/11/2021 - [] D -- C:\ProgramData\Bitdefender VPN =>.Bitdefender
O43 - CFD: 28/05/2021 - [0] D -- C:\ProgramData\CCleaner Browser
O43 - CFD: 30/11/2021 - [] D -- C:\ProgramData\Etiam =>.Etiam
O43 - CFD: 31/03/2021 - [] D -- C:\ProgramData\Foxit ContentPlatform =>.Foxit Corporation
O43 - CFD: 31/03/2021 - [] D -- C:\ProgramData\Foxit Software =>.Foxit Software
O43 - CFD: 22/11/2021 - [] D -- C:\ProgramData\Gemma
O43 - CFD: 25/10/2022 - [] D -- C:\ProgramData\Hydra Windows SDK
O43 - CFD: 13/04/2024 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation
O43 - CFD: 18/03/2024 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation
O43 - CFD: 02/04/2024 - [] D -- C:\ProgramData\Piriform =>.Piriform
O43 - CFD: 06/07/2021 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 31/03/2021 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 16/04/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\AnyDesk =>.philandro Software GmbH
O43 - CFD: 25/07/2023 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Bitdefender Security App =>.Bitdefender
O43 - CFD: 23/11/2021 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\DiskDefrag =>SUP.Optional.AuslogicsDiskDefrag
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Foxit AgentInformation =>.Foxit Corporation
O43 - CFD: 01/04/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 28/06/2023 - [] D -- C:\Users\Utilisateur\AppData\Roaming\GlarySoft =>.GlarySoft
O43 - CFD: 06/07/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\LibreOffice =>.LibreOffice
O43 - CFD: 13/04/2024 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Skype =>.Skype
O43 - CFD: 12/04/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 30/11/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 14/04/2024 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 14/04/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\Avast Software =>.AVAST Software
O43 - CFD: 07/03/2022 - [0] D -- C:\Users\Utilisateur\AppData\Local\Bdch =>.Softwin
O43 - CFD: 03/02/2022 - [] D -- C:\Users\Utilisateur\AppData\Local\Bitdefender =>.Bitdefender
O43 - CFD: 28/05/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\CCleaner Browser
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\CEF =>.CEF
O43 - CFD: 12/04/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 16/04/2021 - [] D -- C:\Users\Utilisateur\AppData\Local\Google =>.Google
O43 - CFD: 13/04/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/04/2024 - [] D -- C:\Users\Utilisateur\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 01/04/2021 - [] D -- C:\Users\Utilisateur\AppData\LocalLow\Foxit
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Utilisateur\Desktop\Anciennes données de Firefox
O43 - CFD: 22/11/2021 - [] D -- C:\Users\Utilisateur\Desktop\GlaryUtilitiesPortable
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Utilisateur\Desktop\Photos
O43 - CFD: 31/03/2021 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 22/11/2021 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc.
O43 - CFD: 07/03/2022 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Bitdefender =>.Bitdefender
---\\ DERNIERS FICHIERS CREES DANS WINDOWS Prefetcher (1) - 71s
O45 - LFCP:[MD5.F64A97ABDC88089101F4EA5F5C314921] 12/04/2024 A -- C:\Windows\Prefetch\CCLEANERBROWSERPROTECT.EXE-9C20960D.pf =>PUP.Optional.Eazel
---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (25) - 4s
O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\system32\igfxDTCM.dll [Unsigned] =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 2s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®
---\\ LISTE DES PILOTES DU SYSTEME (69) - 49s
O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [107320] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [1135416] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\Windows\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\Windows\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [83256] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [26936] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [131896] =>.Microsoft®
O58 - SDL:2020/11/19 01:02:54 A . (.ASUS - ASUS Wireless Radio Control.) -- C:\Windows\System32\drivers\AsRadioControl.sys [32696] =>.ASUSTek Computer Inc.®
O58 - SDL:2019/12/07 11:07:47 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athw8x.sys [4233728] [Unsigned] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2021/09/16 11:55:02 A . (.Pango Inc - Pango NetFilter WFP Driver.) -- C:\Windows\System32\drivers\bdvpn_netfilter.sys [94600] =>.Pango Inc.®
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\Windows\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\Windows\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\Windows\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\Windows\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2024/03/13 17:52:11 A . (...) -- C:\Windows\System32\drivers\cimfs.sys [98816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3418936] =>.Microsoft®
O58 - SDL:2021/11/23 20:00:50 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\Windows\System32\drivers\GUBootStartup.sys [20160] =>.Glarysoft Ltd®
O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64312] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\Windows\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412176] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\Windows\System32\drivers\ibbus.sys [558904] =>.Microsoft®
O58 - SDL:2015/07/30 22:45:32 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [3797960] =>.Intel Corporation - pGFX®
O58 - SDL:2015/06/26 22:46:16 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [50232] =>.Intel(R) Wireless Display®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\Windows\System32\drivers\ItSas35i.sys [172344] =>.Microsoft®
O58 - SDL:2015/06/26 22:46:16 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [39480] =>.Intel(R) Wireless Display®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [108856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82744] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [59704] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas35i.sys [105480] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\Windows\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\Windows\System32\drivers\ndfltr.sys [146232] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150328] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166200] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas2i.sys [58680] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas3i.sys [68408] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\Windows\System32\drivers\rt640x64.sys [694272] [Unsigned] =>.Realtek
O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\Windows\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek
O58 - SDL:2015/07/08 08:27:46 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsBaStor.sys [321792] =>.Realtek Semiconductor Corp®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\Windows\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2020/02/20 14:02:31 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [47920] =>.Microsoft®
O58 - SDL:2013/10/17 17:32:57 A . (.TeamViewer GmbH - TVMonitor.sys.) -- C:\Windows\System32\drivers\TVMonitor.sys [16376] =>.TeamViewer GmbH®
O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\Windows\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\Windows\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\Windows\System32\drivers\winverbs.sys [73016] =>.Microsoft®
---\\ DERNIERS FICHIERS MODIFIES OU CREES (Utilisateur) (1) - 34s
O61 - LFC: 2024/04/13 15:53:11 A . (..) -- C:\Users\Utilisateur\Downloads\Firefox Installer (1).exe [0] [Unsigned]
---\\ ASSOCIATION Shell Spawning (9) - 1s
O67 - Shell Spawning: <.bat>
[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- "C:\Windows\System32\WScript.exe" "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
---\\ MENU DE DÉMARRAGE INTERNET (20) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.Piriform Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.Piriform Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Piriform Software - CCleaner Browser.) -- C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.Piriform Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 15s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (50) - 8s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [304128] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342976] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1049088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [161280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [813056] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488960] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [542720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [131584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2484224] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [349184] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [518656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1130496] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [860672] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1486336] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2257920] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1533952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1014272] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [646656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [323072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3436544] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283136] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [951008] =>.Microsoft®
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [570368] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [295424] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [992768] [Unsigned] =>.Microsoft Corporation
---\\ CODES PRODUITS LOGICIELS (2) - 1s
O90 - PUC: "87EE49C95F97F47419E5D8B10480AF4D" [HKCU] . (.AA Soft Medical - OsteoLog.)
O90 - PUC: "87EE49C95F97F47419E5D8B10480AF4D" [HKU] . (.AA Soft Medical - OsteoLog.)
---\\ PACKAGES WINDOWS INSTALLER (10) - 15s
[MD5.881F98AF62764B6A8C21C2946F955167] [WIS][2021/05/28 16:47:23] (.Piriform Software - CCleaner Update Helper.) -- C:\Windows\Installer\109481f.msi [32768] =>.Piriform Software
[MD5.7025502DE20D7B39FB06870AB06D015B] [WIS][2024/03/18 10:34:42] (.Igor Pavlov - 7-Zip (x64 edition) Package.) -- C:\Windows\Installer\1d97f4b6.msi [1933312] =>.Igor Pavlov
[MD5.F02ABDCCD53C7E4BE5F827DFF8F2EC61] [WIS][2021/03/29 17:29:59] (.B. Peyrol - Gestion de patients.) -- C:\Windows\Installer\1f26dcde.msi [45495296]
[MD5.AE349CB85F97B0D81AD702967B421096] [WIS][2021/07/06 12:19:22] (.The Document Foundation - LibreOffice 7.1.) -- C:\Windows\Installer\2d7b13.msi [328892416] =>.The Document Foundation
[MD5.911EBC6E12BBF70C90F1D36B346F07A7] [WIS][2021/07/05 11:13:16] (..) -- C:\Windows\Installer\323f73.msi [540672]
[MD5.2819A5D01D047E6EB61AFB98E3B2D593] [WIS][2021/07/05 11:24:01] (..) -- C:\Windows\Installer\323f94.msi [544768]
[MD5.DD94B8B08F4F2E5D2251217CC1B0CA85] [WIS][2021/07/05 11:15:12] (..) -- C:\Windows\Installer\323f95.msi [14155776]
[MD5.219E3E1A51E492621589BDA0A5F07C8D] [WIS][1980/01/01 02:00:00] (.Google LLC - Chrome Remote Desktop Host Package.) -- C:\Windows\Installer\405be58.msi [21159936] =>.Google LLC
[MD5.B08585988CAD01BD990B313E812E5759] [WIS][2022/12/13 17:14:36] (.Piriform Software - CCleaner Update Helper.) -- C:\Windows\Installer\5729820.msi [32768] =>.Piriform Software
[MD5.94F9E3A8794B2A8C71087A921297CE39] [WIS][2021/03/31 17:55:06] (.Google LLC - Google Chrome Installer.) -- C:\Windows\Installer\b14595.msi [74534912] =>.Google LLC
---\\ FEATURE CONTROL. (1) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:FoxitReader.exe
---\\ OBSERVATEURS des évènements (132) - 78s
Application.Warning: ESENT (177)
~Numéro: 33036
~Date: 04/14/2024 02:58:11 PM
~ID: 472
~Description: taskhostw (3708,R,98) WebCacheLocal: Page d’en-tête de sauvegarde du fichier C:\Users\Utilisateur\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat endommagée. La page d’en-tête primaire (32768 octets) a été utilisée à la place.
~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe
Application.Warning: Wlclntfy (36)
~Numéro: 32957
~Date: 04/14/2024 01:14:09 PM
~ID: 6006
~Description: Le traitement de l’événement de notification (Logon) par l’abonné aux notifications Winlogon a duré 211 secondes.
~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System
Application.Error: Microsoft-Windows-Perflib (4)
~Numéro: 32846
~Date: 04/13/2024 04:53:39 PM
~ID: 1000
~Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe
~Suggestion: Aucune
Application.Error: VSS (15)
~Numéro: 32843
~Date: 04/13/2024 04:52:46 PM
~ID: 8193
~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. .
~Suggestion: Utiliser la procédure de reconstruction du VSS
Application.Error: Application Error (44)
~Numéro: 32822
~Date: 04/13/2024 04:05:42 PM
~Description: Nom de l’application défaillante firefox.exe, version : 124.0.2.8857, horodatage : 0x660aaf9f Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00007ff61b766590 ID du pr
~Suggestion: Réparer ou réinstaller l'application.
Application.Error: Application Hang (13)
~Numéro: 32644
~Date: 04/12/2024 04:05:50 PM
~ID: 1002
~Description: Le programme SystemSettings.exe version 10.0.19041.4123 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.
Application.Warning: Windows Search Service (9)
~Numéro: 32316
~Date: 04/09/2024 02:04:29 PM
~ID: 10023
~Description: Le processus du protocole hôte 8336 n’a pas répondu et il est actuellement en cours d’arrêt forcé {processus de filtrage d’hôte 4108}.
~Suggestion: Désactiver l'indexation des boîtes aux lettres
Application.Error: Microsoft-Windows-Defrag (13)
~Numéro: 32241
~Date: 04/08/2024 02:34:37 PM
~ID: 264
~Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur (C:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A)
~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation.
Application.Warning: Software Protection Platform Service (3)
~Numéro: 32143
~Date: 04/03/2024 08:07:54 AM
~ID: 8233
~Description: Le moteur de règles a signalé l’échec d’une tentative d’activation de licences en volume. Motif :0xC004F074 IdApp = 0ff1ce15-a989-479d-af46-f275c6370663, IdSku = 85dd8b5f-eaa4-4af3-a628-cce9e77c9a03 Déclencheur=NetworkAvailable
Application.Warning: Microsoft-Windows-System-Restore (3)
~Numéro: 31760
~Date: 03/13/2024 04:58:26 PM
~ID: 8303
~Description: Scoping unsuccessful for shadowcopy \\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy2 with error 0x80070057.
~Suggestion: Exécuter la commande chkdsk / f
Application.Warning: Microsoft-Windows-WMI (6)
~Numéro: 29598
~Date: 01/11/2024 11:11:25 AM
~ID: 63
~Description: Un fournisseur, DMWmiBridgeProv1, a été inscrit dans l’espace de noms Windows Management Instrumentation root\cimv2\mdm\dmmap, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de
~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié.
System.Warning: DCOM (326)
~Numéro: 39041
~Date: 04/14/2024 03:00:11 PM
~ID: 10016
~Description: propres à l’applicationLocalExécutionWindows.SecurityCenter.WscDataProtectionNon disponibleAUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible
~Suggestion: Vérifier les autorisations pour l'accès DCOM
System.Error: Service Control Manager (295)
~Numéro: 39038
~Date: 04/14/2024 03:00:03 PM
~ID: 7000
~Description: Le service Service Google Update (gupdate) n’a pas pu démarrer en raison de l’erreur : %Service Google Update (gupdate)053
System.Warning: BTHUSB (142)
~Numéro: 39014
~Date: 04/14/2024 02:56:42 PM
~ID: 34
~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est 0x2491f7fffff, a reçu 0x1fffffff. La fonctionnalité du rôle périph
System.Warning: Microsoft-Windows-DNS-Client (10)
~Numéro: 38932
~Date: 04/14/2024 01:23:36 PM
~ID: 1014
~Description: La résolution du nom fe3cr.delivery.mp.microsoft.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx
System.Error: EventLog (11)
~Numéro: 38861
~Date: 04/14/2024 01:10:20 PM
~ID: 6008
~Description: L’arrêt système précédant à 12:52:11 le 14/04/2024 n’était pas prévu.
System.Warning: Microsoft-Windows-Kernel-PnP (21)
~Numéro: 38801
~Date: 04/13/2024 06:17:11 PM
~ID: 225
~Description: L’application \Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe avec l’ID de processus 1736 a arrêté le retrait ou l’éjection pour le périphérique USB\VID_13FE&PID_3D00\07B316027B6F0218.
System.Error: Microsoft-Windows-WindowsUpdateClient (7)
~Numéro: 38785
~Date: 04/13/2024 05:29:10 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x8024200b : 2024-01 Mise à jour de sécurité pour Windows 10 Version 22H2 pour les systèmes x64 (KB5034441).
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp
System.Warning: disk (2)
~Numéro: 38619
~Date: 04/12/2024 07:37:15 PM
~ID: 51
~Description: Une erreur a été détectée sur le périphérique \Device\Harddisk1\DR3 lors d'une opération de pagination.
System.Warning: User32 (1)
~Numéro: 38618
~Date: 04/12/2024 07:36:50 PM
~ID: 1073
~Description: La tentative par l’utilisateur DESKTOP-QOEK1RT\Utilisateur de redémarrer/arrêter l’ordinateur DESKTOP-QOEK1RT a échoué
System.Error: Microsoft-Windows-Kernel-Boot (1)
~Numéro: 38344
~Date: 04/10/2024 11:33:48 AM
~ID: 29
~Description: 3221225473Une erreur irrécupérable s’est produite pendant le traitement des données de restauration.
System.Error: ACPI (5)
~Numéro: 38138
~Date: 04/08/2024 11:29:03 AM
~ID: 13
~Description: : le contrôleur embarqué n’a pas répondu dans le délai imparti. Cette erreur peut indiquer que le matériel ou le microprogramme du contrôleur embarqué présente une erreur ou que le BIOS accède au contrôleur embarqué de manière incorrecte. Contactez
System.Error: BugCheck (1)
~Numéro: 36641
~Date: 02/13/2024 09:36:51 PM
~ID: 1001
~Description: 0x000000a0 (0x00000000000000f0, 0x0000000000000000, 0x0000000000000001, 0xffff92073437b040)C:\Windows\MEMORY.DMPe1c11d72-7c92-432c-8c42-65bef06a05fe
System.Warning: i8042prt (1)
~Numéro: 36510
~Date: 02/13/2024 02:44:42 PM
~ID: 17
~Description: Le périphérique a renvoyé une ou plusieurs réponses incorrectes après une réinitialisation du clavier.
---\\ SCAN ADDITIONNEL (35) - 81s
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
C:\Users\Utilisateur\AppData\Roaming\DiskDefrag =>SUP.Optional.AuslogicsDiskDefrag
C:\Windows\Prefetch\CCLEANERBROWSERPROTECT.EXE-9C20960D.pf =>PUP.Optional.Eazel
HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\MSACCESS.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\MSACCESS.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLED.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLED.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\root\Office16\Winword.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\root\Office16\Winword.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files\avast software\avast\avastui.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files\avast software\avast\avastui.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\TEM-ACUPUNCTURE\TEM\temPatient.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Lite.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Lite.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\MSACCESS.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\MSACCESS.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLED.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLED.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\root\Office16\Winword.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\root\Office16\Winword.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files\avast software\avast\avastui.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files\avast software\avast\avastui.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\TEM-ACUPUNCTURE\TEM\temPatient.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Lite.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3361203557-2016680538-3122071309-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Lite.exe.ApplicationCompany =>.SUP.Orphan.MUICache
---\\ RECAPITULATIF DES ELEMENTS TROUVES (8) - 0s
https://nicolascoolman.eu/2022/09/05/zhpdiag-lanalyse-s-m-a-r-t-du-disque-systeme/ => SMART Information
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>SUP.Optional.AuslogicsDiskDefrag
https://nicolascoolman.eu/2017/09/27/pup-optional-browserdefender/ =>PUP.Optional.Eazel
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.FirefoxRestriction
https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache
---\\ NUMEROS DE SÉRIE
[00A657F778B31AE523D667131718D16EB2] [14/04/2024] (.Malwarebytes Inc..) - C:\Users\Utilisateur\Downloads\adwcleaner.exe =>.Malwarebytes Inc.
[024FD22ED89C8823D79C2A09A4E6423F] [19/11/2020] (.ASUSTek Computer Inc..) - C:\Windows\System32\drivers\AsRadioControl.sys =>.ASUSTek Computer Inc.
[03E9EB4DFF67D4F9A554A422D5ED86F3] [16/04/2021] (.philandro Software GmbH.) - C:\Users\utilisateur\downloads\AnyDesk.exe =>.philandro Software GmbH
[0407ABB64E9990180789EACB81F5F914] [04/01/2021] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
[0575E1F7EC9BD8A67A3F6189C63E97BB] [02/04/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Application\122.0.24368.130\Installer\chrmstp.exe =>.PIRIFORM SOFTWARE LIMITED
[0575E1F7EC9BD8A67A3F6189C63E97BB] [11/03/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED
[0575E1F7EC9BD8A67A3F6189C63E97BB] [11/03/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED
[0575E1F7EC9BD8A67A3F6189C63E97BB] [13/12/2022] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe =>.PIRIFORM SOFTWARE LIMITED
[0575E1F7EC9BD8A67A3F6189C63E97BB] [14/03/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Application\122.0.24368.130\elevation_service.exe =>.PIRIFORM SOFTWARE LIMITED
[0575E1F7EC9BD8A67A3F6189C63E97BB] [14/03/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe =>.PIRIFORM SOFTWARE LIMITED
[0575E1F7EC9BD8A67A3F6189C63E97BB] [14/03/2024] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files (x86)\CCleaner Browser\CCleanerBrowserUninstall.exe =>.PIRIFORM SOFTWARE LIMITED
[068033EE736CDDF17B241B41E65EF935] [05/03/2024] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd
[072472F2386F4608A0790DA2BE8A48F7] [18/03/2021] (.FOXIT SOFTWARE INC..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.FOXIT SOFTWARE INC.
[072472F2386F4608A0790DA2BE8A48F7] [18/03/2021] (.FOXIT SOFTWARE INC..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe =>.FOXIT SOFTWARE INC.
[072472F2386F4608A0790DA2BE8A48F7] [31/03/2021] (.FOXIT SOFTWARE INC..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\unins000.exe =>.FOXIT SOFTWARE INC.
[07D4810D1E19768AE30BFDEA229AD105] [12/12/2023] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Agent\27.0.1.266\DiscoverySrv.exe =>.Not verified
[07D4810D1E19768AE30BFDEA229AD105] [12/12/2023] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Agent\ProductAgentService.exe =>.Not verified
[07D4810D1E19768AE30BFDEA229AD105] [20/07/2023] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Agent\redline\bdredline.exe =>.Not verified
[07D4810D1E19768AE30BFDEA229AD105] [28/09/2023] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Agent\27.0.1.266\installer\installer.exe =>.Not verified
[0C1CD3EEA47EDDA7A032573B014D0AFD] [01/04/2024] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [01/04/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [01/04/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [01/04/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [13/04/2024] (.Mozilla Corporation.) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\gmp-gmpopenh264\2.3.2\gmpopenh264.dll =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [13/04/2024] (.Mozilla Corporation.) - C:\Users\Utilisateur\Downloads\Firefox Installer.exe =>.Mozilla Corporation
[0C2D0D2F42480B1FD62F609AA748769D] [25/05/2016] (.10-Strike Software.) - C:\Program Files (x86)\Free Photo Viewer\FreePhotoViewer.exe =>.10-Strike Software
[0D7A68D77DF530EC4708B0E1CB3884A5] [16/09/2021] (.Pango Inc..) - C:\Windows\System32\drivers\bdvpn_netfilter.sys =>.Pango Inc.
[0E4418E2DEDE36DD2974C3443AFB5CE5] [04/04/2024] (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\125.0.6386.2\updater.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [04/04/2024] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [09/04/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\123.0.6312.122\elevation_service.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [09/04/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [12/04/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\123.0.6312.122\Installer\chrmstp.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [13/04/2024] (.Google LLC.) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6xsh7kpb.default-release\gmp-widevinecdm\4.10.2710.0\widevinecdm.dll =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [26/03/2024] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome Remote Desktop\124.0.6367.18\remoting_host.exe =>.Google LLC
[13222A5DCCF716DF5AF9C87084412DD9] [08/07/2015] (.Realtek Semiconductor Corp.) - C:\Windows\System32\DRIVERS\RtsBaStor.sys =>.Realtek Semiconductor Corp
[1ABEE452F106342568D826705DC1F4B1] [14/04/2024] (.Safer Networking Ltd..) - C:\Users\Utilisateur\Desktop\spybot-2.4.exe =>.Safer Networking Ltd.
[25C902D026E31244C125996771C9DC01] [17/10/2013] (.TeamViewer GmbH.) - C:\Windows\System32\drivers\TVMonitor.sys =>.TeamViewer GmbH
[330000B483B303C2ADC8A5F4C100020000B483] [26/06/2015] (.Intel(R) Wireless Display.) - C:\Windows\System32\drivers\intelaud.sys =>.Intel(R) Wireless Display
[330000B483B303C2ADC8A5F4C100020000B483] [26/06/2015] (.Intel(R) Wireless Display.) - C:\Windows\System32\drivers\iwdbus.sys =>.Intel(R) Wireless Display
[3D27AFBEA5996F13E5B5624421F16295] [16/01/2020] (.TeamViewer.) - C:\AA Soft Medical\Télé assistance AASM.exe =>.TeamViewer
[60C19744D4DA5603BB57F39C75816E5B] [20/03/2016] (.Glarysoft LTD.) - C:\Users\Utilisateur\Desktop\GlaryUtilitiesPortable\App\GlaryUtilities5\StartupManager.exe =>.Glarysoft LTD
[7ABBA622E23F817B27D68D43E6E39093] [23/11/2021] (.Glarysoft Ltd.) - C:\Windows\System32\drivers\GUBootStartup.sys =>.Glarysoft Ltd
~ Unselected Options: NF,
~ End of the scan, 7888 items in 12mn19s (1131)(0)