cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2025.1.9.1 Par Nicolas Coolman (2025/01/09)
~ Démarre par Mamou (Administrator) (2025/01/28 18:08:38)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Mamou\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Mamou\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Demarrage du système: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 19045) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (2) - 0s
~ MSIE: Internet Explorer v11.3636.19041.0
~ OBIE: Microsoft Edge v132.0.2957.127

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (9) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, VOLUME_KMSCLIENT channel
Windows ID Activation : OK
~ Windows Partial Key : T83GX
Windows License : OK
Expiration Licence Windows : 103483 minute(s) (72 jour(s))
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (1) - 1s
Windows Defender W10 (Activate) (Protection)

---\\ INFORMATIONS SUR LE SYSTEME (18) - 0s
~ Operating System: Intel64 Family 6 Model 141 Stepping 1, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
System Restore: Activé (Enable)
System drive C: has 125 GB (61%) free of 204 GB : OK =>.Disk Space

---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS)
~ Slots Total (Total Slots) : 2
~ Slots Utilisés (Used Slots) : 2
~ Slots Disponibles (Free Slots) : 0
~ Type de barrette (FormFactor): SO-DIMM
~ Taille (Size) : 8 Go
~ Vitesse (Speed) : 3200
~ Charge mémoire (Memory Usage) : 44%
~ RAM physique Total (Total Physical) : 16 Go : OK
~ RAM physique Disponible (Available Physical) : 9 Go
~ Total virtuelle (Total Virtual) : 18.08 Go
~ Disponible virtuelle (Available Virtual): 9.83 Go

---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s
~ Computer Name: DESKTOP-SRDQL9K
~ User Name: Mamou
~ Logged in as Administrator

---\\ ENUMERATION DES UNITES DE STOCKAGE (7) - 0s
~ Drive C: has 125 GB free of 204 GB (System)
~ Drive D: has 183 GB free of 281 GB
~ Drive F: has 255 GB free of 255 GB

---\\ ETAT DE LA COMMANDE TRIM
~ La commande TRIM est active (NTFS)
~ La commande TRIM est active (ReFS)

---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (1) - 1s
~ La technologie SMART n'est pas active sur le disque système

---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 0s
[MD5.690CE9EB3D49AD59C0A9172D2B5EC01E] - 16/12/2024 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5974480] =>.Microsoft®
[MD5.D28778D07C8F7CA59B7569E4EDA54512] - 21/07/2024 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [89600] [Unsigned] =>.Microsoft Corporation
[MD5.583B60A43F502D90331E6589E1DBC6DD] - 20/09/2024 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [420656] [Unsigned] =>.Microsoft Corporation
[MD5.1E3BF5DEB441C7EF2E4AEA094A60F8A5] - 17/01/2025 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5047296] [Unsigned] =>.Microsoft Corporation
[MD5.4E79357D0CC0EF9897239A9BFF18A87C] - 26/11/2024 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [947200] [Unsigned] =>.Microsoft Corporation
[MD5.9E9B92A002EACFE2831EA4842C34C545] - 28/10/2024 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation
[MD5.0797A5FE041E8E861F4BFE5DF0A35E6E] - 17/01/2025 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821912] =>.Microsoft®
[MD5.7C31C466DB21218EA7E17E9A1A2FE0F1] - 17/01/2025 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583768] =>.Microsoft®
[MD5.CF5F6AE33CCBDF0A975049FD8428943B] - 26/11/2024 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3433472] [Unsigned] =>.Microsoft Corporation
[MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.585A0F9DFF199CC4EA94F621C270FF47] - 09/10/2024 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [657888] [Unsigned] =>.Microsoft Corporation
[MD5.81FF48994C82B1CA2C4EBD9C6C6683C4] - 17/11/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31200] [Unsigned] =>.Microsoft Corporation
[MD5.E53DE91C9330F0E17075C11CD0A7719A] - 17/11/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
[MD5.14D133579A5B1E08E336B7FE259CA85A] - 17/05/2024 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
[MD5.BE6DCE5C9655A6DA501C46DA125B41A9] - 09/10/2024 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [154112] [Unsigned] =>.Microsoft Corporation
[MD5.7E0352A6396756AD61CC755CAEDBD2D4] - 09/10/2024 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138752] [Unsigned] =>.Microsoft Corporation
[MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.2954A20F0F0152E89FC459A11382C98A] - 17/05/2024 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [228352] [Unsigned] =>.Microsoft Corporation
[MD5.6E4E7AE6A3C0E30C80A42B4F9E9DBCB9] - 09/10/2024 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [584696] [Unsigned] =>.Microsoft Corporation
[MD5.09D0F16FB9555790DA934BDC2543E940] - 17/11/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation
[MD5.D5C723AA798C5B4FFE3E3E3591D16C59] - 17/01/2025 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2842096] [Unsigned] =>.Microsoft Corporation
[MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation
[MD5.E8308FE2DB8DCD31A02CADD808819EDE] - 17/05/2024 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] [Unsigned] =>.Microsoft Corporation
[MD5.360DD75AEDB512B0DD878A81BEE89BEF] - 17/05/2024 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [170496] [Unsigned] =>.Microsoft Corporation
[MD5.02577FC71C31F625B302566190AA1382] - 17/11/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118752] [Unsigned] =>.Microsoft Corporation
[MD5.484DC5AD718AE12B3AD99B511FABE088] - 17/11/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [431088] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (24) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
O23 - Service: AlService (AlService) . (...) - C:\Program Files (x86)\Alsoft\AlService.exe (.not file.)
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_357acc06f2c40efb\IntelCpHDCPSvc.exe {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
O23 - Service: Intel(R) Driver & Support Assistant (DSAService) . (.Intel - DSAService.) - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
O23 - Service: Intel(R) Driver & Support Assistant Updater (DSAUpdateService) . (.Intel - DSAUpdateService.) - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
O23 - Service: ELAN Service (ELANFPService) . (...) - C:\WINDOWS\System32\ELANFPService.exe (.not file.)
O23 - Service: SpyHunter 5 Kernel (EsgShKernel) . (...) - C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe (.not file.)
O23 - Service: Intel(R) Dynamic Tuning service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Tuning Service.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\esif_uf.exe {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
O23 - Service: Energy Server Service queencreek (ESRV_SVC_QUEENCREEK) . (.Intel Corporation. All rights reserved. - Intel(R) System Usage Report.) - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe {49636608EE9E60E1C04C525D50FC2D44}.
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) . (.Intel Corporation - Intel® Graphics Command Center Service.) - C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_f94b71985382657d\OneApp.IGCC.WinService.exe {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe {071FA1C11A5CBB5DE62052E44E09AD52}. =>.Intel(R) Corporation
O23 - Service: Intel(R) Audio Service (IntelAudioService) . (.Intel - IntelAudioService.) - C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\AS\IAS\IntelAudioService.exe [Unsigned] =>.Intel
O23 - Service: Intel® Graphics Software Service (IntelGraphicsSoftwareService) . (.Intel Corporation - IntelGraphicsSoftware.Service.) - C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [Unsigned] =>.Intel Corporation
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation
O23 - Service: MoondustriesLosoce (MoondustriesLosoce) . (.Necessary Daseke - Necessary Daseke.) - C:\Program Files (x86)\MoondustriesLosoce\MoondustriesLosoce.exe [Unsigned]
O23 - Service: Nahimic service (NahimicService) . (.Nahimic - .) - C:\WINDOWS\System32\NahimicService.exe [Unsigned] =>.Nahimic
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3cf99e411755df38\RtkAudUService64.exe {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor
O23 - Service: SpyHunter 5 Kernel Monitor (ShMonitor) . (...) - C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe (.not file.)
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_Q (SystemUsageReportSvc_QUEENCREEK) . (.Intel Corporation. All rights reserved. - Intel(R) System Usage Report.) - C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe {49636608EE9E60E1C04C525D50FC2D44}.
O23 - Service: TeamViewer (TeamViewer) . (.TeamViewer Germany GmbH - TeamViewer.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer Germany GmbH
O23 - Service: Intel(R) Management Engine WMI Provider Registration (WMIRegistrationService) . (.Intel Corporation - Intel(R) Management Engine WMI Provider Reg.) - C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (123) - 5s
SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SR - Auto [18/12/2024] [ 174520] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Auto [00/00/0000] [ 0] AlService (AlService) . (...) - C:\Program Files (x86)\Alsoft\AlService.exe (.not file.) [Unsigned]
SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Demand [28/02/2017] [ 38320] ampa (ampa) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\System32\ampa.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [05/08/2024] [ 44696] BERT Reader Service (bertreader) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\bertreader.sys {4CDE56436766DE111AB20178D4C6926E}. =>.Intel Corporation
SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft®
SR - Auto [02/07/2022] [ 352800] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_357acc06f2c40efb\IntelCpHDCPSvc.exe {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
SR - Demand [27/12/2016] [ 35760] ddmdrv (ddmdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\system32\ddmdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Demand [30/09/2022] [ 167440] SAMSUNG Mobile USB Comp (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD.®
SR - Demand [16/11/2020] [ 76976] (dptf_acpi) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_58a6d4f6ac5608c6\dptf_acpi.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
SR - Demand [16/11/2020] [ 73392] (dptf_cpu) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\dptf_cpu.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
SR - Auto [25/11/2024] [ 47000] Intel(R) Driver & Support Assistant (DSAService) . (.Intel.) - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
SR - Auto [25/11/2024] [ 330136] Intel(R) Driver & Support Assistant Updater (DSAUpdateService) . (.Intel.) - C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
SR - Demand [23/10/2023] [ 30264] DAEMON Tools Ultra V (dtultrascsibus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtultrascsibus.sys =>.Disc Soft Ltd®
SR - Demand [23/10/2023] [ 47672] DAEMON Tools Ultra Vi (dtultrausbbus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtultrausbbus.sys =>.Disc Soft Ltd®
SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - Auto [00/00/0000] [ 0] ELAN Service (ELANFPService) . (...) - C:\WINDOWS\System32\ELANFPService.exe (.not file.) [Unsigned]
SR - Demand [27/09/2023] [ 84032] EnigmaFileMonDriver Mini-Filter Driver (EnigmaFileMonDriver) . (.EnigmaSoft Limited.) - C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys =>.Microsoft®
SR - Auto [00/00/0000] [ 0] SpyHunter 5 Kernel (EsgShKernel) . (...) - C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe (.not file.) [Unsigned]
SR - Auto [16/11/2020] [ 2286768] Intel(R) Dynamic Tuning ser (esifsvc) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\esif_uf.exe {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
SR - Demand [16/11/2020] [ 427184] (esif_lf) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\esif_lf.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
SR - Auto [03/10/2024] [ 1150600] Energy Server Service queencreek (ESRV_SVC_QUEENCREEK) . (.Intel Corporation. All rights reserved..) - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe {49636608EE9E60E1C04C525D50FC2D44}.
SS - Demand [26/11/2024] [ 906280] NVIDIA FrameView SDK service (FvSvc) . (.NVIDIA.) - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA
SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [27/01/2021] [ 128664] Intel(R) Serial IO G (iaLPSS2_GPIO2_TGL) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_c330c09d72f3e083\iaLPSS2_GPIO2_TGL.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
SR - Demand [27/01/2021] [ 201376] Intel(R) Serial IO I2C (iaLPSS2_I2C_TGL) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_312c3014729186bd\iaLPSS2_I2C_TGL.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft®
SR - Demand [23/11/2024] [ 2442648] Intel(R) Wireless Bluetooth (ibtusb) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ibtusb.inf_amd64_e23b2f04028dc04a\ibtusb.sys {538CC909F5F4A3979C3AC72C582CAABE}. =>.Intel Corporation
SR - Auto [02/07/2022] [ 95256] Intel(R) Graphics Command Center Service (igccservice) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_f94b71985382657d\OneApp.IGCC.WinService.exe {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
SR - Auto [02/07/2022] [ 409624] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
SR - Demand [02/07/2022] [44685320] (igfxn) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_357acc06f2c40efb\igdkmdn64.sys {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
SR - Demand [30/11/2021] [ 313000] Technologie Intel® Smart (IntcAudioBus) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcaudiobus.inf_amd64_f879990e81dc8c38\IntcAudioBus.sys {00D5CC9021A67611F4B5D5441F74113CFB}. =>.Intel(R) Corporation
SR - Demand [30/09/2021] [ 6530600] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.®
SR - Demand [30/11/2021] [ 856736] Technologie Intel® Smart Sound (IntcBTAu) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcbtau.inf_amd64_654e479c38c4d0b3\IntcBTAu.sys {00D5CC9021A67611F4B5D5441F74113CFB}. =>.Intel(R) Corporation
SR - Demand [30/11/2021] [ 746648] Technologie Intel® Smart Sound (IntcDMic) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcdmic.inf_amd64_d4ace4b9cf06c911\IntcDMic.sys {00D5CC9021A67611F4B5D5441F74113CFB}. =>.Intel(R) Corporation
SR - Demand [30/11/2021] [ 1134240] Technologie Intel® Smart Sound (IntcOED) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\IntcOED.sys {00D5CC9021A67611F4B5D5441F74113CFB}. =>.Intel(R) Corporation
SR - Demand [30/11/2021] [ 882848] Technologie Intel® Smart Sound (IntcUSB) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcusb.inf_amd64_2f4c83f014ffdaee\IntcUSB.sys {00D5CC9021A67611F4B5D5441F74113CFB}. =>.Intel(R) Corporation
SS - Demand [15/09/2021] [ 785240] Intel(R) Capability Lice (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe {3BCEA6A75123B821E309D6399265C7BD}. =>.Intel(R) Corporation
SS - Demand [24/09/2024] [ 6164192] Intel(R) SUR QC Software Asset Manager (Intel(R) SUR QC SAM) . (.Intel Corporation.) - C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe {49636608EE9E60E1C04C525D50FC2D44}. =>.Intel Corporation
SR - Auto [14/12/2023] [ 762480] Intel(R) TPM Provis (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe {071FA1C11A5CBB5DE62052E44E09AD52}. =>.Intel(R) Corporation
SR - Auto [30/11/2021] [ 532648] Intel(R) Audio Service (IntelAudioService) . (.Intel.) - C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\AS\IAS\IntelAudioService.exe [Unsigned] =>.Intel
SR - Demand [21/01/2021] [ 84888] Intel(R) GNA Scoring Accelera (IntelGNA) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys =>.Gaussian Mixture Models and Neural Networks Accelerator®
SR - Auto [20/12/2024] [ 289280] Intel® Graphics Software Service (IntelGraphicsSoftwareService) . (.Intel Corporation.) - C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Auto [11/07/2023] [ 630280] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation
SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Demand [26/08/2023] [ 109272] mbamchameleon (mbamchameleon) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbamchameleon.sys =>.Malwarebytes Corporation®
SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [14/02/2024] [ 323264] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_6b6e8cc42a3d1f09\x64\TeeDriverW10x64.sys {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation
SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft®
SS - Demand [14/01/2025] [ 277568] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Demand [18/08/2022] [ 86200] Nahimic Easy Surround de (NahimicBTLink) . (.A-Volute SAS.) - C:\WINDOWS\System32\drivers\NahimicBTLink.sys =>.A-Volute SAS®
SR - Auto [14/11/2023] [ 1909512] Nahimic service (NahimicService) . (.Nahimic.) - C:\WINDOWS\System32\NahimicService.exe =>.A-Volute SAS®
SR - Demand [16/05/2024] [ 95896] Nahimic mirroring de (Nahimic_Mirroring) . (.A-Volute SAS.) - C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys =>.A-Volute SAS®
SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Demand [12/07/2021] [ 5336144] ___ Pilote de carte Intel(R) Wireless pour Windows 10 64 bi (Netwtw10) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\Netwtw10.sys {58B1C1C43E999C1CF7C694A1D776D0FE}. =>.Intel Corporation
SR - Demand [02/12/2024] [ 5548440] ___ Pilote de carte Intel(R) Wireless pour Windows 10 64 bi (Netwtw14) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\netwtw6e.inf_amd64_bf4689a7153fc9c5\Netwtw14.sys {00A47D21C615E09611922FDAA694F0CFEF}. =>.Intel Corporation
SR - Auto [26/11/2024] [ 1278008] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SR - Auto [04/12/2024] [ 1275568] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Demand [04/12/2024] [76292784] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\nvlddmkm.sys =>.NVIDIA Corporation®
SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SR - Demand [26/11/2024] [ 59928] NVIDIA Virtual Au (nvvad_WaveExtensible) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvvad64v.sys {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft®
SS - Demand [11/12/2024] [ 464608] ProtonVPN Service (ProtonVPN Service) . (.ProtonVPN.) - C:\Program Files\Proton\VPN\v3.5.1\ProtonVPNService.exe =>.Proton AG®
SS - Demand [11/12/2024] [ 464104] ProtonVPN WireGuard (ProtonVPN WireGuard) . (.ProtonVPN.) - C:\Program Files\Proton\VPN\v3.5.1\ProtonVPN.WireGuardService.exe =>.Proton AG®
SR - Demand [11/12/2024] [ 40360] ProtonVPNCallout (ProtonVPNCallout) . (.Proton AG.) - C:\Program Files\Proton\VPN\v3.5.1\Resources\ProtonVPN.CalloutDriver.sys =>.Proton AG®
SR - Demand [00/00/0000] [ 0] rsDwf (rsDwf) . (...) - C:\WINDOWS\System32\DRIVERS\rsDwf.sys (.not file.) [Unsigned]
SR - Demand [28/09/2021] [ 1151976] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.®
SR - Auto [09/11/2023] [ 1963928] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3cf99e411755df38\RtkAudUService64.exe {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor
SR - Demand [21/04/2024] [ 1418184] Realtek USB FE/ (rtump64x64) . (.Realtek Corporation.) - C:\WINDOWS\System32\drivers\rtump64x64.sys {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Corporation
SR - Demand [07/12/2019] [ 411648] Realtek USB FE/Gb (rtux64w10) . (.Realtek Corporation.) - C:\WINDOWS\System32\drivers\rtux64w10.sys [Unsigned] =>.Realtek Corporation
SR - Demand [03/10/2024] [ 49888] semav6msr64 (semav6msr64) . (.Intel(R) Corporation.) - C:\WINDOWS\system32\drivers\semav6msr64.sys {49636608EE9E60E1C04C525D50FC2D44}. =>.Intel(R) Corporation
SR - Auto [00/00/0000] [ 0] SpyHunter 5 Kernel Monitor (ShMonitor) . (...) - C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe (.not file.) [Unsigned]
SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft®
SR - Boot [15/10/2023] [ 203832] SPTD2 (sptd2) . (.Duplex Secure Ltd.) - C:\WINDOWS\System32\Drivers\sptd2.sys =>.Disc Soft Ltd®
SR - Demand [30/09/2022] [ 174112] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD.®
SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Auto [03/10/2024] [ 209544] Intel(R) System Usage Report Service SystemUsageReportSvc_Q (SystemUsageReportSvc_QUEENCREEK) . (.Intel Corporation. All rights reserved..) - C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe {49636608EE9E60E1C04C525D50FC2D44}.
SR - Demand [30/12/2020] [ 49024] TAP-ProtonVPN Windows Adapte (tapprotonvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapprotonvpn.sys =>.Microsoft®
SR - Auto [03/05/2024] [21605176] TeamViewer (TeamViewer) . (.TeamViewer Germany GmbH.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer Germany GmbH
SS - Demand [03/10/2024] [ 1150600] User Energy Server Service queencreek (USER_ESRV_SVC_QUEENCREEK) . (.Intel Corporation. All rights reserved..) - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe {49636608EE9E60E1C04C525D50FC2D44}.
SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [18/08/2023] [ 29592] Wintun (wintun) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wintun.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft®
SR - Demand [21/07/2023] [ 489368] WireGuard (WireGuard) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wireguard.sys =>.Microsoft®
SR - Auto [22/02/2024] [ 144064] Intel(R) Management Engine WMI Provider Registration (WMIRegistrationService) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation

---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (16) - 2s
O38 - TASK: {01A2047D-6778-4CF8-BC40-D8033D5C24C0} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992] =>.Adobe Inc.
O38 - TASK: {2DD72AFC-77C4-4DCF-BAF0-AAEB8D997550} [64Bits][\Opera scheduled Autoupdate 1689936728] - (.Opera Software - Opera auto-updater.) -- C:\Program Files\Opera\autoupdate\opera_autoupdate.exe [5656472] =>.Opera Software
O38 - TASK: {3BCA2A72-F52B-4A9F-894E-EC214F2D6C7A} [64Bits][\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132] - (.Intel Corporation - IntelSoftwareAssetManagerService.exe.) -- C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [6164192] =>.Intel Corporation
O38 - TASK: {4D9A53F9-E333-47C3-B79D-D155BEF72F94} [64Bits][\NVIDIA app SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA app.) -- C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA app.exe [3333672] =>.NVIDIA Corporation
O38 - TASK: {98ADD1CB-DD16-4CBC-B892-0ECFD2F75BB3} [64Bits][\R@1n-KMS\Office15ProPlus] - (.DESKTOP-SRDQL9K\Mamou - .) -- wmic [0] =>HackTool.WinActivator
O38 - TASK: {9ECA6B89-6727-489D-A78E-3CCC23D00147} [64Bits][\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon] - (.Intel Corporation - IntelSoftwareAssetManagerService.exe.) -- C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [6164192] =>.Intel Corporation
O38 - TASK: {C26F0910-D04C-4BF7-A881-BE9312337E19} [64Bits][\R@1n-KMS\Windows100Professional] - (.DESKTOP-SRDQL9K\Mamou - .) -- wmic [0] =>HackTool.WinActivator
O38 - TASK: {CFC5E9E4-E535-48E7-8230-8CE6D52FA9E1} [64Bits][\Uninstall AdwCleaner Application] - (.Malwarebytes - AdwCleaner.) -- D:/adwcleaner(1).exe [8790880] =>.Malwarebytes
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc.
C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1689936728 - (.Opera Software.) -- C:\Program Files\Opera\autoupdate\opera_autoupdate.exe [--scheduledtask --bypasslauncher .--scheduledtask] =>.Opera Software
C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 - (.Intel Corporation.) -- C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [--automatic] =>.Intel Corporation
C:\WINDOWS\System32\Tasks\NVIDIA app SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA app.exe [] =>.NVIDIA Corporation
C:\WINDOWS\System32\Tasks\R@1n-KMS\Office15ProPlus - (.DESKTOP-SRDQL9K\Mamou.) -- wmic [path SoftwareLicensingProduct where (ID="b322da9c-] =>HackTool.WinActivator
C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon - (.Intel Corporation.) -- C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [--automatic] =>.Intel Corporation
C:\WINDOWS\System32\Tasks\R@1n-KMS\Windows100Professional - (.DESKTOP-SRDQL9K\Mamou.) -- wmic [path SoftwareLicensingProduct where (ID="2de67392-] =>HackTool.WinActivator
C:\WINDOWS\System32\Tasks\Uninstall AdwCleaner Application - (.Malwarebytes.) -- D:/adwcleaner(1).exe [/uninstall] =>.Malwarebytes

---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (14) - 1s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation
O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3cf99e411755df38\RtkAudUService64.exe {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_0FBB3CA904637366835E02E7613312E2] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - HKCU\..\Run: [Ww5EqxGa] . (.IObit - ScreenShot.) -- C:\Users\Mamou\AppData\Roaming\WycT1ndu\Set-up.exe =>.IObit CO., LTD®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [PWRISOVM.EXE] . (.Power Software Ltd - PowerISO Virtual Drive Manager.) -- C:\Program Files\PowerISO\PWRISOVM.EXE {20456EFF672504B0D5FF21FA45558265}. =>.Power Software Ltd
O4 - HKLM\..\Wow6432Node\Run: [Intel® Graphics Software] . (.Intel Corporation - Intel® Graphics Software.) -- C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.exe {00D7739EA600A8A7E08B94F506C3A57BB1}. =>.Intel Corporation
O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000
O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000
O4 - HKUS\S-1-5-21-3824323892-2633900218-3341220402-1001\..\Run: [MicrosoftEdgeAutoLaunch_0FBB3CA904637366835E02E7613312E2] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-3824323892-2633900218-3341220402-1001\..\Run: [Ww5EqxGa] . (.IObit - ScreenShot.) -- C:\Users\Mamou\AppData\Roaming\WycT1ndu\Set-up.exe =>.IObit CO., LTD®

---\\ PROCESSUS LANCES (85) - 3s
[MD5.0B57344E90BD8B31639147178A871177] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\Display.NvContainer\NVDisplay.Container.exe [1275568] [PID.2880] =>.NVIDIA Corporation®
[MD5.C6137A78801377218A4786305A4C2989] - (.Intel - DSAService.) -- C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [47000] [PID.4536] {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
[MD5.26EC8891D4AF3D8BB11FCAD4F04CE5CB] - (.Intel Corporation. All rights reserved. - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [209544] [PID.4596] {49636608EE9E60E1C04C525D50FC2D44}.
[MD5.F71592297963DCD74260011BAA8B232B] - (.Intel Corporation - Intel(R) Dynamic Tuning Service.) -- C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4ce8bafd96682424\esif_uf.exe [2286768] [PID.4660] {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation
[MD5.9D60DDF36361E24DF7BF45E3F24667B4] - (.Intel - DSAUpdateService.) -- C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [330136] [PID.4680] {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
[MD5.09FA3CBCCE5D9D92533C7D7F9B2836B5] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1278008] [PID.4688] =>.NVIDIA Corporation®
[MD5.6F58AE777730E7936C9B204794B93CEC] - (.Nahimic - .) -- C:\WINDOWS\system32\NahimicService.exe [1909512] [PID.4704] [Unsigned] =>.Nahimic
[MD5.390B75720CF626D7A1571BE04285286C] - (.Adobe Inc. - Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520] [PID.4712] =>.Adobe Inc.®
[MD5.DEA5E8CD7316B43A313A0C04E2075E5E] - (.Intel Corporation - IntelGraphicsSoftware.Service.) -- C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [289280] [PID.4724] [Unsigned] =>.Intel Corporation
[MD5.2B8E287D62D3C06AEDB109F047517467] - (.Intel - IntelAudioService.) -- C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_625d5a9ea859462f\AS\IAS\IntelAudioService.exe [532648] [PID.4752] [Unsigned] =>.Intel
[MD5.1450ED5FA0D7C098ED7389DE8F52E7C8] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3cf99e411755df38\RtkAudUService64.exe [1963928] [PID.4808] {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor
[MD5.7DDFE8CBF24AF36E9E7B0541691899B0] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe [630280] [PID.4828] {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation
[MD5.7D8CD1F2A1A4191E5FC86ACA8C349C34] - (.Intel Corporation - Intel(R) Management Engine WMI Provider Reg.) -- C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe [144064] [PID.4884] {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation
[MD5.72FAC36134187357199C0967565B0FC6] - (.TeamViewer Germany GmbH - TeamViewer.) -- C:\Program Files\TeamViewer\TeamViewer_Service.exe [21605176] [PID.5108] {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer Germany GmbH
[MD5.DDCC5F4FA135CB14143505A345795C44] - (.Intel(R) Corporation - Service for Intel(R) PresentMon API clients.) -- C:\Program Files\Intel\Intel Graphics Software\PresentMonService.exe [2234760] [PID.8228] {00FA469E09972CF07B97A5CA9B56FD63A7}. =>.Intel(R) Corporation
[MD5.E0A742F7C5FB4AEF2320D014346E7DAC] - (...) -- C:\Windows\System32\AggregatorHost.exe [322048] [PID.9392] [Unsigned]
[MD5.0B57344E90BD8B31639147178A871177] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\Display.NvContainer\NVDisplay.Container.exe [1275568] [PID.14560] =>.NVIDIA Corporation®
[MD5.09FA3CBCCE5D9D92533C7D7F9B2836B5] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1278008] [PID.12392] =>.NVIDIA Corporation®
[MD5.09FA3CBCCE5D9D92533C7D7F9B2836B5] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1278008] [PID.12008] =>.NVIDIA Corporation®
[MD5.09FA3CBCCE5D9D92533C7D7F9B2836B5] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1278008] [PID.10600] =>.NVIDIA Corporation®
[MD5.F62AD2968B954C4DF589F70F044528F1] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_c7eb580ac5e3786b\igfxEMN.exe [750400] [PID.5540] {215984FAAA9220687BBBC1A5805AABF8}. =>.Intel Corporation
[MD5.AE01EEE6E39567ADEB64754C466E428C] - (.Intel Corporation. All rights reserved. - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe [1088648] [PID.15196] {49636608EE9E60E1C04C525D50FC2D44}.
[MD5.64BAA3F4A0ADB93A13A0501BF7CC4356] - (.NVIDIA Corporation - NVIDIA ShadowPlay Helper.) -- C:\Program Files\NVIDIA Corporation\NVIDIA App\ShadowPlay\nvsphelper64.exe [816168] [PID.9024] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
[MD5.1450ED5FA0D7C098ED7389DE8F52E7C8] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3cf99e411755df38\RtkAudUService64.exe [1963928] [PID.13184] {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor
[MD5.1939CB3108C135154BBD80F25EA57E54] - (...) -- C:\Program Files\Proton\VPN\v3.5.1\ProtonVPN.exe [461536] [PID.1916] =>.Proton AG®
[MD5.5BBB213526579A74FBEF971DA44B4BF2] - (.Intel Corporation - Intel® Graphics Software.) -- C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.exe [421072] [PID.14908] {00D7739EA600A8A7E08B94F506C3A57BB1}. =>.Intel Corporation
[MD5.ACED1B784557672F38BF8F86708C6513] - (.ProtonVPN - Proton VPN.) -- C:\Program Files\Proton\VPN\v3.5.1\ProtonVPNService.exe [464608] [PID.11212] =>.Proton AG®
[MD5.76970A27E40B8B6E03C929027D10BF66] - (.A-Volute - A-Volute NS.) -- C:\WINDOWS\system32\NhNotifSys.exe [1218768] [PID.3324] [Unsigned] =>.A-Volute
[MD5.931FC3D878E864B5B7AEE51A727015BB] - (.Intel Corporation. All rights reserved. - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [1150600] [PID.12064] {49636608EE9E60E1C04C525D50FC2D44}.
[MD5.D08322884D1CF2886617D4FE39F07E57] - (.Adobe Systems Incorporated - Acrobat Collaboration Synchronizer 24.5.) -- C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [12304792] [PID.17380] =>.Adobe Inc.®
[MD5.D08322884D1CF2886617D4FE39F07E57] - (.Adobe Systems Incorporated - Acrobat Collaboration Synchronizer 24.5.) -- C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [12304792] [PID.1448] =>.Adobe Inc.®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.5224] =>.Opera Norway AS®
[MD5.3C43CE98A93211E7143D30BACBD457C2] - (.Opera Software - Opera crash-reporter.) -- C:\Program Files\Opera\116.0.5366.51\opera_crashreporter.exe [2048920] [PID.6864] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.13216] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.5508] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.8876] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.12752] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11428] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.2312] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.7804] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.7728] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11656] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.13520] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11768] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.2964] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.6664] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.17148] =>.Opera Norway AS®
[MD5.96A82DB1402AF538A49685516EA0E386] - (.Intel Corporation - Intel® Graphics Command Center Service.) -- C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_f94b71985382657d\OneApp.IGCC.WinService.exe [95256] [PID.1972] {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
[MD5.080FF34A32A51851CAC92FFB1960CF2A] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_cb841b7c497d4503\igfxCUIServiceN.exe [409624] [PID.13364] {63F80010501D2B4B6C5FD1004665FFE7}. =>.Intel Corporation
[MD5.BCF6C51DF794C13AB1FE0667A83F3F95] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [812024] [PID.16308] =>.Microsoft®
[MD5.D218A30C5B3D137F0684E549596DF06B] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe [463424] [PID.13444] =>.Mozilla Corporation®
[MD5.D218A30C5B3D137F0684E549596DF06B] - (.Mozilla Corporation - Thunderbird.) -- C:\Program Files\Mozilla Thunderbird\thunderbird.exe [463424] [PID.1660] =>.Mozilla Corporation®
[MD5.17AFD439629AA2761146A4AB3CE4FD0B] - (.NVIDIA Corporation - NVIDIA app.) -- C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe [3333672] [PID.4000] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
[MD5.17AFD439629AA2761146A4AB3CE4FD0B] - (.NVIDIA Corporation - NVIDIA app.) -- C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe [3333672] [PID.5708] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.14104] =>.Opera Norway AS®
[MD5.17AFD439629AA2761146A4AB3CE4FD0B] - (.NVIDIA Corporation - NVIDIA app.) -- C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe [3333672] [PID.8888] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
[MD5.17AFD439629AA2761146A4AB3CE4FD0B] - (.NVIDIA Corporation - NVIDIA app.) -- C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe [3333672] [PID.12800] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
[MD5.17AFD439629AA2761146A4AB3CE4FD0B] - (.NVIDIA Corporation - NVIDIA app.) -- C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe [3333672] [PID.4584] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.9968] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.6948] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.6312] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.2576] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.3220] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.7120] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.12584] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.15728] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.15000] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.14256] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.14296] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11184] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11056] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.12412] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.2568] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11636] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.13304] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.1340] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.3812] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.5188] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.11652] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.8576] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.15332] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.3000] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.6880] =>.Opera Norway AS®
[MD5.4146F7CC4EFDF2F3EE548D0ECDE37B79] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe [1622424] [PID.17880] =>.Opera Norway AS®
[MD5.7E65B7A869283B355B0C864B68C55386] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Mamou\AppData\Roaming\ZHP\ZHPSuite.exe [3539656] [PID.15528] [Unsigned] =>.Nicolas Coolman

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.4894 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ IE Restricted Site Good: localhost
~ Microsoft Internet Explorer Restricted Site(s) Domains: 1(Good) / 0(Bad)

---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (3) - 0s
E2 - GCE: Preference [Mamou][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
E2 - GCE: Preference [Mamou][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate
E2 - GCE: Preference [Mamou][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation

---\\ INTERNET EXPLORER,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ETUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\132.0.2957.127\BHO\ie_to_edge_bho_64.dll =>.Microsoft®

---\\ RACCOURCIS GLOBAL STARTUP (48) - 1s
O4 - GS\Desktop [Mamou]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe [Unsigned] =>.Free Time
O4 - GS\Desktop [Mamou]: MediaHuman YouTube to MP3 Converter.lnk . (...) D:\YouTube to MP3 Converter\YouTubeToMP3.exe {7B3DFFECA0905B96F87FD38A}.
O4 - GS\Desktop [Mamou]: Syberia3.lnk . (...) D:\Syberia 3 Deluxe Edition\Syberia3.exe [Unsigned]
O4 - GS\Desktop [Mamou]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Mamou\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Mamou]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Mamou\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Mamou]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Mamou\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Mamou]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\sendTo [Mamou]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Mamou]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Mamou]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe [Unsigned] =>.Free Time
O4 - GS\sendTo [Mamou]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) C:\Program Files\TeamViewer\TeamViewer.exe --sendto {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer Germany GmbH
O4 - GS\sendTo [Mamou]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Mamou]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) D:\CDBurnerXP-x64-4.5.8.7128\cdbxpp.exe =>.Canneverbe Limited®
O4 - GS\TaskBar [Mamou]: Excel 2013.lnk . (...) C:\WINDOWS\Installer\{90150000-0011-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft®
O4 - GS\TaskBar [Mamou]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\opera.exe [Unsigned] =>.Opera Software
O4 - GS\TaskBar [Mamou]: PowerPoint 2013.lnk . (...) C:\WINDOWS\Installer\{90150000-0011-0000-1000-0000000FF1CE}\pptico.exe =>.Microsoft®
O4 - GS\TaskBar [Mamou]: Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Mamou]: Word 2013.lnk . (...) C:\WINDOWS\Installer\{90150000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft®
O4 - GS\Programs [Mamou]: ESET Online Scanner.lnk . (...) C:\Users\Mamou\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [Unsigned]
O4 - GS\Programs [Mamou]: RAV Antivirus.lnk . (...) C:\Program Files (x86)\RAVAntivirus\ui\RAVAntivirus.exe --focused [Unsigned]
O4 - GS\CommonDesktop [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\CommonDesktop [Public]: NVIDIA.lnk . (.NVIDIA Corporation - .) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA app.exe [Unsigned] =>.NVIDIA Corporation
O4 - GS\CommonDesktop [Public]: PowerISO.lnk . (.Power Software Ltd - PowerISO.) C:\Program Files\PowerISO\PowerISO.exe {20456EFF672504B0D5FF21FA45558265}. =>.Power Software Ltd
O4 - GS\CommonDesktop [Public]: Proton VPN.lnk . (.ProtonVPN - Proton VPN.) C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe =>.Proton AG®
O4 - GS\CommonDesktop [Public]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) C:\Program Files\TeamViewer\TeamViewer.exe {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer Germany GmbH
O4 - GS\CommonDesktop [Public]: Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Programs [Public]: ESET Online Scanner.lnk . (...) C:\Users\Mamou\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [Unsigned]
O4 - GS\Programs [Public]: RAV Antivirus.lnk . (...) C:\Program Files (x86)\RAVAntivirus\ui\RAVAntivirus.exe --focused [Unsigned]
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Intel Driver & Support Assistant.lnk . (.Intel - Intel Driver & Support Assistant Helper.) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAServiceHelper.exe installstartup {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\opera.exe [Unsigned] =>.Opera Software
O4 - GS\ProgramsCommon [Public]: TeamViewer.lnk . (.TeamViewer Germany GmbH - TeamViewer.) C:\Program Files\TeamViewer\TeamViewer.exe {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer Germany GmbH
O4 - GS\ProgramsCommon [Public]: Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\..\{95700b23-ea30-4328-a854-90ea2adf3a16}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{a68a613f-1463-49a8-b095-b62eec347a34}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{a84d63b9-6d61-46ad-b27b-c9c0caca4a97}: DhcpNameServer = 212.27.40.241 212.27.40.240 =>.France 9 Telecom, Free

---\\ PROTOCOLE ADDITIONNEL (25) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ CLE DE REGISTRE EXPLORER StartupApproved (14) - 0s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ProtonVPN =>.OpenVPN Technologie
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_0FBB3CA904637366835E02E7613312E2
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ProtonVPN =>.OpenVPN Technologie
[HKEY_USERS\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_0FBB3CA904637366835E02E7613312E2
[HKEY_USERS\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtkAudUService =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AVGUI.exe =>.AVG Software
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:AdvancePCPro
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:CloneCDTray
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:PWRISOVM.EXE

---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (5) - 1s
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\132.0.2957.127\Installer\setup.exe =>.Microsoft®

---\\ LOGICIELS INSTALLES (42) - 10s
O42 - Logiciel: Adobe Acrobat (64-bit) - (.Adobe.) [HKLM][64Bits] -- {AC76BA86-1036-1033-7760-BC15014EA700} [Unsigned] =>.Adobe
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-018244601108} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: AOMEI Partition Assistant 9.13.1 - (.AOMEI International Network Limited..) [HKLM][64Bits] -- {04F850ED-FD0F-4ED1-AE1B-4498165BF3D2}_is1 [Unsigned] =>.AOMEI International Network Limited.
O42 - Logiciel: Application NVIDIA 11.0.1.184 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp [Unsigned] =>.NVIDIA Corporation
O42 - Logiciel: FormatFactory 3.9.0.0 - (.Free Time.) [HKLM][64Bits] -- FormatFactory [Unsigned] =>.Free Time
O42 - Logiciel: Intel Driver && Support Assistant - (.Intel.) [HKLM][64Bits] -- {E2412D7F-3FB3-4638-819A-953908EA116E} [Unsigned] =>.Intel (Hidden)
O42 - Logiciel: Intel(R) Arc Software & Drivers - (.Intel(R) Corporation.) [HKLM][64Bits] -- Intel(R) Arc Software & Drivers {00FC16D1FF014E4F0543E90097D79FB81E}. =>.Intel(R) Corporation
O42 - Logiciel: Intel(R) Computing Improvement Program - (.Intel Corporation.) [HKLM][64Bits] -- {E860D8DC-CF76-4E75-B248-2FEEEC5BACAD} [Unsigned] =>.Intel Corporation
O42 - Logiciel: Intel(R) Wireless Bluetooth(R) - (.Intel Corporation.) [HKLM][64Bits] -- {00001100-0230-1036-84C8-B8D95FA3C8C3} [Unsigned] =>.Intel Corporation
O42 - Logiciel: Intel® Driver & Support Assistant - (.Intel.) [HKLM][64Bits] -- {909DA2FA-374E-4D0A-BE27-9E7E12761DD2} {00DEBCB54E3F22A34DC97C3E82BD6ABC1E}. =>.Intel
O42 - Logiciel: Intel® Graphics Software - (.Intel Corporation.) [HKLM][64Bits] -- {DD5B20EB-DD0A-4F58-9B16-F4DFAEACDA2E} {00D7739EA600A8A7E08B94F506C3A57BB1}. =>.Intel Corporation
O42 - Logiciel: Intel® Graphics Software - (.Intel Corporation.) [HKLM][64Bits] -- {F62983F3-2F42-4411-B808-6550DC1F61EF} [Unsigned] =>.Intel Corporation (Hidden)
O42 - Logiciel: MediaHuman YouTube to MP3 Converter 3.9.9.87 - (.MediaHuman.) [HKLM][64Bits] -- MediaHuman YouTube to MP3 Converter_is1 {7B3DFFECA0905B96F87FD38A}. =>.MediaHuman
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla
O42 - Logiciel: Mozilla Thunderbird (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 128.6.0 (x64 fr) =>.Mozilla Corporation®
O42 - Logiciel: NvCpl - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp.NvCPL [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp.NvBackend [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA FrameView SDK 1.4.10624.35034762 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk [Unsigned] =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.23.1019 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX [Unsigned] =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA MessageBus 3 for NvApp - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp.MessageBus [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA NvDLISR - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvDLISR [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Pilote graphique 566.36 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver [Unsigned] =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA ShadowPlay 11.0.1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Virtual Audio 4.65.0.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: Opera Stable 116.0.5366.51 - (.Opera Software.) [HKLM][64Bits] -- Opera 116.0.5366.51 =>.Opera Norway AS®
O42 - Logiciel: Pinaview version 1.0.0.1 - (.Pinaview.) [HKCU][64Bits] -- {84397963-BE19-41C0-96B5-A99788C74F2A}_is1 [Unsigned]
O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM][64Bits] -- PowerISO [Unsigned] =>.Power Software Ltd
O42 - Logiciel: Proton VPN - (.Proton AG.) [HKLM][64Bits] -- Proton VPN_is1 =>.Proton AG®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3191937) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{D212CFE8-6822-42AC-84E9-6352CE0AA036} =>.Microsoft®
O42 - Logiciel: TeamViewer - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer {062EE3FD7CDC52097C1DA6AFA87C745E}. =>.TeamViewer
O42 - Logiciel: Update for Skype for Business 2015 (KB4484289) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113} =>.Microsoft®
O42 - Logiciel: Update for Skype for Business 2015 (KB4484289) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113} =>.Microsoft®
O42 - Logiciel: Update for Skype for Business 2015 (KB4484289) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113} =>.Microsoft®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WinRAR 6.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (190) - 10s
HKLM\SOFTWARE\A-Volute =>.A-Volute
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\AVG =>.AVG Software
HKLM\SOFTWARE\Avira =>.Avira
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\Cybelsoft =>.CybelSoft
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Disc Soft =>.Disc Soft
HKLM\SOFTWARE\dotnet =>.Legitimate
HKLM\SOFTWARE\EnigmaSoft =>.Enigma Software Group, LLC
HKLM\SOFTWARE\ESET =>.ESET
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nahimic =>.Nahimic
HKLM\SOFTWARE\NETGEAR =>.Netgear Inc
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Opera Software =>.Opera Software
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Proton AG =>.Legitimate
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\ReasonLabs
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RivetNetworks =>.Rivet Networks
HKLM\SOFTWARE\SSO
HKLM\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKLM\SOFTWARE\Thunderbird =>.Thunderbird
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\XuanZhi
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\ASpeedupTab
HKLM\SOFTWARE\WOW6432Node\AVG =>.AVG Software
HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\DAMN =>.DAMN
HKLM\SOFTWARE\WOW6432Node\dotnet =>.Legitimate
HKLM\SOFTWARE\WOW6432Node\Elaborate Bytes =>.Elaborate Bytes
HKLM\SOFTWARE\WOW6432Node\Eset =>.ESET
HKLM\SOFTWARE\WOW6432Node\GOG.com =>.GOG.com
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\iMobie =>.iMobie Inc
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\ITA
HKLM\SOFTWARE\WOW6432Node\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Micro Application =>.Micro Application
HKLM\SOFTWARE\WOW6432Node\Microids =>.Microids
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\NETGEAR =>.Netgear Inc
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\PowerISO =>.PowerISO Computing
HKLM\SOFTWARE\WOW6432Node\PowerPivot =>.PowerPivot
HKLM\SOFTWARE\WOW6432Node\Proton Technologies AG =>.Proton Technologies AG
HKLM\SOFTWARE\WOW6432Node\SERCOMM =>.Sercomm
HKLM\SOFTWARE\WOW6432Node\SSO
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\A-Volute =>.A-Volute
HKCU\SOFTWARE\Adlice Software =>.Adlice Software
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Alcohol Soft =>.Alcohol Software
HKCU\SOFTWARE\APCTab
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\AVG =>.AVG Software
HKCU\SOFTWARE\Avira =>.Avira
HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Corel =>.Corel
HKCU\SOFTWARE\DAMN =>.DAMN
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\ESET =>.ESET
HKCU\SOFTWARE\EUDK
HKCU\SOFTWARE\FreeTime =>.FreeTime Inc
HKCU\SOFTWARE\FreeTime/FormatFactory
HKCU\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller
HKCU\SOFTWARE\GOG.com =>.GOG.com
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Lavasoft =>.Lavasoft
HKCU\SOFTWARE\ld
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\MediaHuman =>.MediaHuman
HKCU\SOFTWARE\Micro Application =>.Micro Application
HKCU\SOFTWARE\Microids =>.Microids
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\NETGEAR =>.Netgear Inc
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opalium =>.Opalium
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Partition Assistant
HKCU\SOFTWARE\PinaJob
HKCU\SOFTWARE\PowerISO =>.PowerISO Computing
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\RivetNetworks =>.Rivet Networks
HKCU\SOFTWARE\RSpeedupTab
HKCU\SOFTWARE\SA Corporate
HKCU\SOFTWARE\SlySoft =>.SlySoft
HKCU\SOFTWARE\SSO
HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKCU\SOFTWARE\Thunderbird =>.Thunderbird
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\XuanZhi
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software
HKU\.DEFAULT\SOFTWARE\Avira =>.Avira
HKU\.DEFAULT\SOFTWARE\ESET =>.ESET
HKU\.DEFAULT\SOFTWARE\INTEL =>.Intel
HKU\.DEFAULT\SOFTWARE\Nahimic =>.Nahimic
HKU\.DEFAULT\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\A-Volute =>.A-Volute
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Adlice Software =>.Adlice Software
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Alcohol Soft =>.Alcohol Software
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\APCTab
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\AVG =>.AVG Software
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Avira =>.Avira
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Corel =>.Corel
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\DAMN =>.DAMN
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Disc Soft =>.Disc Soft
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\ESET =>.ESET
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\EUDK
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\FreeTime =>.FreeTime Inc
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\FreeTime/FormatFactory
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\GOG.com =>.GOG.com
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Lavasoft =>.Lavasoft
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\ld
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Licenses =>.Microsoft Corporation
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\MediaHuman =>.MediaHuman
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Micro Application =>.Micro Application
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Microids =>.Microids
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\NETGEAR =>.Netgear Inc
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Opalium =>.Opalium
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Partition Assistant
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\PinaJob
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\PowerISO =>.PowerISO Computing
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\RivetNetworks =>.Rivet Networks
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\RSpeedupTab
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\SA Corporate
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\SlySoft =>.SlySoft
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\SSO
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Thunderbird =>.Thunderbird
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Unity =>.Unity
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\XuanZhi
HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ PACKAGES (5) - 0s
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.4239_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.4239.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj - (.nVidia Corporation.) [][NVIDIA Control Panel] =>nVidia Corporation
C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.48.312.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][Realtek Audio Control] =>Realtek Semiconductor Corp
C:\Program Files (x86)\WindowsApps\RivetNetworks.KillerControlCenter_3.1624.1026.0_x64__rh07ty8m5nkag - (.Rivet Networks.) [][Killer Intelligence Center] =>Rivet Networks

---\\ CONTENU DES DOSSIERS PROGRAMMES (130) - 3s
O43 - CFD: 29/03/2024 - [] D -- C:\Program Files\Adobe =>.Adobe Inc.®
O43 - CFD: 21/07/2023 - [] D -- C:\Program Files\CUAssistant =>.Microsoft®
O43 - CFD: 27/01/2025 - [0] D -- C:\Program Files\Cybelsoft =>.Cybelsoft
O43 - CFD: 28/01/2025 - [] D -- C:\Program Files\dotnet =>.Microsoft®
O43 - CFD: 27/09/2023 - [] D -- C:\Program Files\EnigmaSoft =>.Enigma Software Group, LLC
O43 - CFD: 17/01/2025 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 14/01/2025 - [] D -- C:\Program Files\Mozilla Thunderbird =>.Mozilla
O43 - CFD: 17/01/2025 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 27/01/2025 - [] D -- C:\Program Files\Opera =>.Opera Software
O43 - CFD: 25/10/2023 - [] D -- C:\Program Files\PowerISO =>.PowerISO Computing
O43 - CFD: 24/10/2024 - [] D -- C:\Program Files\Proton =>.Legitimate
O43 - CFD: 27/08/2023 - [0] D -- C:\Program Files\ReasonLabs
O43 - CFD: 21/10/2024 - [] D -- C:\Program Files\ruxim =>.Microsoft®
O43 - CFD: 27/01/2025 - [] D -- C:\Program Files\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 23/07/2023 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 21/07/2023 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 29/10/2023 - [0] D -- C:\Program Files (x86)\AdvancePCPro
O43 - CFD: 23/10/2023 - [] D -- C:\Program Files (x86)\AOMEI Partition Assistant =>.AOMEI Tech Co
O43 - CFD: 15/10/2023 - [] D -- C:\Program Files (x86)\DAMN NFO Viewer =>.Damn
O43 - CFD: 11/10/2024 - [] D -- C:\Program Files (x86)\FormatFactory =>.chen jun hao®
O43 - CFD: 07/01/2024 - [0] D -- C:\Program Files (x86)\iMobie =>.iMobie Inc
O43 - CFD: 17/01/2025 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 27/08/2023 - [] D -- C:\Program Files (x86)\LaughddiSoftware [Unsigned]
O43 - CFD: 11/10/2024 - [0] D -- C:\Program Files (x86)\lavasoft =>.Lavasoft
O43 - CFD: 26/08/2023 - [] D -- C:\Program Files (x86)\MoondustriesLosoce [Unsigned]
O43 - CFD: 17/01/2025 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 17/01/2025 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 21/07/2023 - [] D -- C:\Program Files (x86)\Proton Technologies
O43 - CFD: 27/01/2025 - [0] D -- C:\Program Files (x86)\SlySoft =>.SlySoft
O43 - CFD: 28/10/2024 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 21/07/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant =>.AOMEI Tech Co
O43 - CFD: 26/08/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft =>.Enigma Software Group, LLC
O43 - CFD: 07/01/2024 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie =>.iMobie Inc
O43 - CFD: 17/01/2025 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 02/01/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaHuman =>.MediaHuman
O43 - CFD: 25/10/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microids =>.Microids
O43 - CFD: 17/01/2025 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 25/10/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO =>.PowerISO Computing
O43 - CFD: 13/01/2025 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proton =>.Legitimate
O43 - CFD: 23/07/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 21/07/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 21/07/2023 - [] D -- C:\ProgramData\A-Volute =>.A-Volute
O43 - CFD: 29/03/2024 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 15/10/2023 - [0] D -- C:\ProgramData\Alcohol Soft =>.Alcohol Software
O43 - CFD: 27/08/2023 - [] D -- C:\ProgramData\Alsoft
O43 - CFD: 21/07/2023 - [] D -- C:\ProgramData\AOMEIPA =>.AOMEI Tech Co
O43 - CFD: 27/08/2023 - [] D -- C:\ProgramData\AVG =>.AVG Software
O43 - CFD: 11/10/2024 - [0] D -- C:\ProgramData\BrightData
O43 - CFD: 15/10/2023 - [] D -- C:\ProgramData\DVD Shrink =>.DVD Shrink
O43 - CFD: 26/08/2023 - [] D -- C:\ProgramData\EnigmaSoft Limited =>.Enigma Software Group, LLC
O43 - CFD: 18/08/2023 - [] D -- C:\ProgramData\GOG.com =>.GOG.com
O43 - CFD: 17/01/2025 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 27/08/2023 - [] D -- C:\ProgramData\InterAction studios =>.InterAction Studios
O43 - CFD: 26/08/2023 - [] D -- C:\ProgramData\Malwarebytes' Anti-Malware (portable) =>.Malwarebytes
O43 - CFD: 28/01/2025 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation
O43 - CFD: 27/01/2025 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 17/01/2025 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 06/10/2023 - [0] D -- C:\ProgramData\PC HelpSoft Driver Updater Pro
O43 - CFD: 17/01/2025 - [] D -- C:\ProgramData\RivetNetworks
O43 - CFD: 15/10/2023 - [] D -- C:\ProgramData\SlySoft =>.SlySoft
O43 - CFD: 25/08/2023 - [0] D -- C:\ProgramData\SSO
O43 - CFD: 24/08/2023 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 29/03/2024 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 15/10/2023 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 19/09/2024 - [] D -- C:\Users\Mamou\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 18/08/2023 - [0] D -- C:\Users\Mamou\AppData\Roaming\changzhi2
O43 - CFD: 19/09/2024 - [] D -- C:\Users\Mamou\AppData\Roaming\com.adobe.dunamis =>.Adobe Inc.
O43 - CFD: 18/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\downloader
O43 - CFD: 28/10/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 25/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\Geek Uninstaller =>.Geek Uninstaller
O43 - CFD: 24/11/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\iMobie =>.iMobie Inc
O43 - CFD: 18/08/2023 - [0] D -- C:\Users\Mamou\AppData\Roaming\lddownloader
O43 - CFD: 23/07/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 17/10/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\PowerISO =>.PowerISO Computing
O43 - CFD: 27/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\rav-antivirus-client
O43 - CFD: 27/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\ReasonLabs
O43 - CFD: 13/05/2024 - [] D -- C:\Users\Mamou\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 24/11/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\Thunderbird =>.Thunderbird
O43 - CFD: 07/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\U3 =>.U3
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 14/01/2025 - [] D -- C:\Users\Mamou\AppData\Roaming\WycT1ndu
O43 - CFD: 18/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\XuanZhi
O43 - CFD: 25/08/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\XuanZhi9
O43 - CFD: 28/01/2025 - [] D -- C:\Users\Mamou\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 19/09/2024 - [] D -- C:\Users\Mamou\AppData\Local\Adobe =>.Adobe
O43 - CFD: 09/08/2023 - [] D -- C:\Users\Mamou\AppData\Local\Alsoft
O43 - CFD: 11/10/2024 - [0] D -- C:\Users\Mamou\AppData\Local\BrightData
O43 - CFD: 27/08/2023 - [] D -- C:\Users\Mamou\AppData\Local\CEF =>.CEF
O43 - CFD: 27/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 23/10/2023 - [] D -- C:\Users\Mamou\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 27/08/2023 - [] D -- C:\Users\Mamou\AppData\Local\EDSComponents
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\ESET =>.ESET
O43 - CFD: 04/05/2024 - [] D -- C:\Users\Mamou\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 04/10/2024 - [0] D -- C:\Users\Mamou\AppData\Local\FTMod
O43 - CFD: 25/08/2023 - [] D -- C:\Users\Mamou\AppData\Local\Gh
O43 - CFD: 24/11/2023 - [] D -- C:\Users\Mamou\AppData\Local\iMobie_Inc =>.iMobie Inc
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\Intel =>.Intel Corporation
O43 - CFD: 02/01/2024 - [] D -- C:\Users\Mamou\AppData\Local\MediaHuman =>.MediaHuman
O43 - CFD: 10/03/2024 - [] D -- C:\Users\Mamou\AppData\Local\mpress =>.MPress
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\NEO
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\Local\NhNotifSys
O43 - CFD: 17/01/2025 - [0] D -- C:\Users\Mamou\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 25/10/2024 - [] D -- C:\Users\Mamou\AppData\Local\ProtonVPN =>.Legitimate
O43 - CFD: 29/03/2024 - [] D -- C:\Users\Mamou\AppData\Local\SolidDocuments =>.SolidDocuments
O43 - CFD: 22/10/2024 - [] D -- C:\Users\Mamou\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 13/05/2024 - [] D -- C:\Users\Mamou\AppData\Local\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 24/11/2023 - [] D -- C:\Users\Mamou\AppData\Local\Thunderbird =>.Thunderbird
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\Local\ToastNotificationManagerCompat
O43 - CFD: 27/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 26/08/2023 - [0] D -- C:\Users\Mamou\AppData\Local\Programs\Grand Explorer
O43 - CFD: 14/01/2025 - [] D -- C:\Users\Mamou\AppData\Local\Programs\Pinaview
O43 - CFD: 29/03/2024 - [] D -- C:\Users\Mamou\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\LocalLow\Intel =>.Intel Corporation
O43 - CFD: 25/08/2023 - [] D -- C:\Users\Mamou\AppData\LocalLow\Microids =>.Microids
O43 - CFD: 19/10/2023 - [0] D -- C:\Users\Mamou\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 17/01/2025 - [] D -- C:\Users\Mamou\AppData\LocalLow\NVIDIA =>.nVidia Corporation
O43 - CFD: 19/10/2023 - [] D -- C:\Users\Mamou\AppData\LocalLow\webviewdata
O43 - CFD: 11/10/2024 - [] D -- C:\Users\Mamou\Desktop\clé papiers a remettre
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\Desktop\QTranslate.6.9.0
O43 - CFD: 21/07/2023 - [] RD -- C:\Users\Mamou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 11/10/2024 - [] D -- C:\Users\Mamou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory =>.FormatFactory
O43 - CFD: 14/04/2024 - [0] D -- C:\Users\Mamou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pinaview
O43 - CFD: 21/07/2023 - [] D -- C:\Users\Mamou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 04/04/2024 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe
O43 - CFD: 17/01/2025 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Intel =>.Intel Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 0s
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL {20456EFF672504B0D5FF21FA45558265}. =>.Power Software Ltd
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL {20456EFF672504B0D5FF21FA45558265}. =>.Power Software Ltd
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: NvCplDesktopContext [64Bits] - . (.Orphan.) [Unsigned]
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL {20456EFF672504B0D5FF21FA45558265}. =>.Power Software Ltd
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 1s
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®

---\\ LISTE DES PILOTES DU SYSTEME (84) - 6s
O58 - SDL:2019/12/07 10:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2023/08/27 11:39:48 A . (.Bitdefender - BDDCI filter driver.) -- C:\WINDOWS\System32\drivers\bddci.sys [367096] =>.Bitdefender SRL®
O58 - SDL:2024/08/05 00:16:46 A . (.Intel Corporation - Boot Error Record Reader Driver.) -- C:\WINDOWS\System32\drivers\bertreader.sys [44696] {4CDE56436766DE111AB20178D4C6926E}. =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2024/06/22 12:34:03 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2023/10/23 18:15:09 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2023/10/23 18:15:18 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2023/09/27 19:29:57 A . (.EnigmaSoft Limited - SpyHunter Guard.) -- C:\WINDOWS\System32\drivers\EnigmaFileMonDriver.sys [84032] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft®
O58 - SDL:2023/08/26 15:21:00 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] =>.Malwarebytes Corporation®
O58 - SDL:2023/08/26 15:21:31 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft®
O58 - SDL:2022/08/18 22:55:58 A . (. - A-Volute BTLink driver.) -- C:\WINDOWS\System32\drivers\NahimicBTLink.sys [86200] =>.A-Volute SAS®
O58 - SDL:2024/05/16 01:58:50 A . (. - A-Volute Mirroring VAD driver.) -- C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [95896] =>.A-Volute SAS®
O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft®
O58 - SDL:2021/07/12 20:50:06 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwtw10.sys [5336144] {58B1C1C43E999C1CF7C694A1D776D0FE}. =>.Intel Corporation
O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft®
O58 - SDL:2024/11/26 08:17:12 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [59928] {0997C56CAA59055394D9A9CDB8BEEB56}. =>.NVIDIA Corporation
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft®
O58 - SDL:2021/09/28 01:12:58 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1151976] =>.Realtek Semiconductor Corp.®
O58 - SDL:2019/12/07 10:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek
O58 - SDL:2021/09/30 01:41:16 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6530600] =>.Realtek Semiconductor Corp.®
O58 - SDL:2024/04/21 20:36:14 A . (.Realtek Corporation - Realtek USB FE/1GbE/2.5GbE/5GbE/10GbE NIC N.) -- C:\WINDOWS\System32\drivers\rtump64x64.sys [1418184] {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Corporation
O58 - SDL:2019/12/07 10:07:54 A . (.Realtek Corporation - Realtek USB FE/GbE NIC NDIS6.40 64-bit Driv.) -- C:\WINDOWS\System32\drivers\rtux64w10.sys [411648] [Unsigned] =>.Realtek Corporation
O58 - SDL:2017/06/07 01:36:28 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\WINDOWS\System32\drivers\scdemu.sys [138296] =>.Power Software Limited®
O58 - SDL:2024/10/03 23:33:24 A . (.Intel(R) Corporation - Intel(R) System Usage Report.) -- C:\WINDOWS\System32\drivers\semav6msr64.sys [49888] {49636608EE9E60E1C04C525D50FC2D44}. =>.Intel(R) Corporation
O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft®
O58 - SDL:2023/10/15 17:29:46 A . (.Duplex Secure Ltd - SCSI Pass Through Direct Driver.) -- C:\WINDOWS\System32\drivers\sptd2.sys [203832] =>.Disc Soft Ltd®
O58 - SDL:2022/09/30 04:23:56 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [167440] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2022/09/30 04:24:08 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [174112] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2019/12/07 10:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2020/12/30 11:27:18 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024] =>.Microsoft®
O58 - SDL:2019/12/07 10:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 10:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2023/08/18 15:29:07 A . (.WireGuard LLC - Wintun Driver.) -- C:\WINDOWS\System32\drivers\wintun.sys [29592] =>.Microsoft®
O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft®
O58 - SDL:2023/07/21 14:58:16 A . (.WireGuard LLC - WireGuard Driver.) -- C:\WINDOWS\System32\drivers\wireguard.sys [489368] =>.Microsoft®
O58 - SDL:2017/02/28 13:20:18 A . (...) -- C:\WINDOWS\System32\ampa.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2016/12/27 17:45:52 A . (...) -- C:\WINDOWS\System32\ddmdrv.sys [35760] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2017/02/28 13:20:18 A . (...) -- C:\WINDOWS\SysWOW64\ampa.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.®

---\\ ASSOCIATION Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (9) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe =>.Opera Norway AS®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (1) - 0s
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (52) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [222208] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [222208] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [305152] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342464] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1049088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [841216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [166400] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [854016] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488448] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [543232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [132608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2497536] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [342528] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [512512] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223744] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1139200] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [860672] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1486848] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2256896] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1531392] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1015296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [552448] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [654336] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [323072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3433472] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481728] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283648] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1050080] =>.Microsoft®
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245760] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [573952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [295936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [559104] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [994816] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [162288] =>.Microsoft®

---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (15) - 2s
O87 - FAEL: "{638a0da1-1e7f-47e7-a4f4-7321276a4877}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ldplayer9box\Ld9BoxHeadless.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{6f5a979a-ef5b-4b81-81be-48de4b31f909}" [In-None-P17-TRUE] .(...) -- C:\Program Files\ldplayer9box\VBoxNetNAT.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{49ac4437-e379-41f4-9af0-dd450f5144d0}" [In-None-P17-TRUE] .(...) -- D:\LDPlayer\LDPlayer9\dnplayer.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{0E30B5B5-8D84-4F7C-9219-F9F2DEC97950}C:\users\mamou\desktop\chicken.invaders.2.build.7688955\chicken.invaders.2.build.7688955\ci2rm.exe" [In-None-P6-TRUE] .(...) -- C:\users\mamou\desktop\chicken.invaders.2.build.7688955\chicken.invaders.2.build.7688955\ci2rm.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{971FF153-A01E-4C80-83AA-628F5E2EF995}C:\users\mamou\desktop\chicken.invaders.2.build.7688955\chicken.invaders.2.build.7688955\ci2rm.exe" [In-None-P17-TRUE] .(...) -- C:\users\mamou\desktop\chicken.invaders.2.build.7688955\chicken.invaders.2.build.7688955\ci2rm.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{3E5B4D68-B171-4F17-889D-08090DBC8CB0}C:\program files (x86)\deluge\deluge.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\deluge\deluge.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{AE15B92D-C3B0-457A-B8A3-8EC9BB5A3A3B}C:\program files (x86)\deluge\deluge.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\deluge\deluge.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{D27657B6-5419-4B79-A574-84F8BBBDE6C4}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\deluge\deluge.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{F0DCBBF3-8AA2-4C68-9005-37C282305EB4}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\deluge\deluge.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{A95E9BF5-4D55-42B4-BE77-213A6A5CCC7D}" [In-None-P6-TRUE] .(...) -- F:\format factory\FormatFactory\FormatFactory.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{54FEE9AB-9363-432D-A53A-9516FAF6F6CC}" [In-None-P6-TRUE] .(...) -- F:\format factory\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{76DC446A-679E-44AA-92D7-9D0A0763D9AD}" [In-None-P6-TRUE] .(...) -- F:\format factory\FormatFactory\FormatFactory.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{DC10ADE3-7A53-4197-8C53-2EF56EE80672}" [In-None-P6-TRUE] .(...) -- F:\format factory\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{991034E1-51CE-4CEC-A8D8-3F9F2113D6ED}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Cybelsoft\DriversCloud.com\DriversCloudAgent.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{AAEFE582-41C9-4FFE-92BE-E1CC3DBB4827}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Cybelsoft\DriversCloud.com\DriversCloudAgent.exe [Unsigned] (.not file.) =>.SUP.Orphan

---\\ CODES PRODUITS LOGICIELS (2) - 1s
O90 - PUC: "910A08ADB3C4AAD4CA1A96737DACFAE9" [HKLM] . (.Update for x64-based Windows Systems (KB5001716).)
O90 - PUC: "F7D2142E3BF3836418A9599380AE11E6" [HKLM] . (.Intel Driver && Support Assistant.) -- C:\WINDOWS\Installer\{E2412D7F-3FB3-4638-819A-953908EA116E}\Icon.exe

---\\ PACKAGES WINDOWS INSTALLER (21) - 16s
[MD5.7B0BCD5F0D379F3CD6DB7AD74F727DD8] [WIS][2025/01/27 11:01:17] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\2ca4ac74.msi [1063424] =>.Adobe Systems Incorporated
[MD5.A406A0BF7CE9C08EC5516CF3DF930309] [WIS][2025/01/17 19:57:23] (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Patch/Audio .) -- C:\WINDOWS\Installer\72589.msi [32948224] =>.Intel Corporation
[MD5.DF4B4BFA154E0FC00C7AE0C19A2243AC] [WIS][2024/11/25 09:23:22] (.Intel - Intel Driver & Support Assistant.) -- C:\WINDOWS\Installer\9779709e.msi [2519040] =>.Intel
[MD5.B3F7DE15829B3E82B592D5E99F5A56B4] [WIS][2024/12/20 02:36:32] (.Intel Corporation - Intel® Graphics Software v24.50.1001.1.) -- C:\WINDOWS\Installer\9779710b.msi [33386496] =>.Intel Corporation
[MD5.E274E206A7C8209DACB5AA9E9C2C1B9F] [WIS][2025/01/17 19:31:18] (.Intel Corporation - Intel(R) Computing Improvement Program.) -- C:\WINDOWS\Installer\977971b4.msi [25329664] =>.Intel Corporation
[MD5.B41412A0B6691203CB3D068A99EB50D5] [WIS][2024/03/19 03:16:51] (.Adobe - Installers.) -- C:\WINDOWS\Installer\eecc8.msi [11638272] =>.Adobe
[MD5.7AA9470CB5BDE92009350BBE6427F914] [WIS][2024/09/07 04:13:41] (.Adobe Inc..) -- C:\WINDOWS\Installer\10a228.msp [438337536] =>.Adobe Inc.
[MD5.9E05E2BA065AB8DC72674636D78169CD] [WIS][2024/06/15 05:30:39] (.Adobe Inc..) -- C:\WINDOWS\Installer\153949.msp [118222848] =>.Adobe Inc.
[MD5.DE8F0E4507CE7D46EEAE9A461C02450B] [WIS][2024/06/14 03:46:05] (.Adobe Inc..) -- C:\WINDOWS\Installer\18be9f02.msp [269279232] =>.Adobe Inc.
[MD5.2C091A912D7D0EBAA30808F6F4D36F1A] [WIS][2024/04/11 05:17:19] (.Adobe Inc..) -- C:\WINDOWS\Installer\2de48567.msp [127819776] =>.Adobe Inc.
[MD5.2922498088FF8896C483C4D25FF525E7] [WIS][2024/11/05 03:46:12] (.Adobe Inc..) -- C:\WINDOWS\Installer\34c145b0.msp [489873408] =>.Adobe Inc.
[MD5.1E39CB85AE856371DA0E708ED48C77C0] [WIS][2024/07/23 12:12:19] (.Adobe Inc..) -- C:\WINDOWS\Installer\3c415cc4.msp [401948672] =>.Adobe Inc.
[MD5.DDCE65CA800967B607969C388D3B4E7F] [WIS][2024/11/14 02:21:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\44ca0644.msp [158765056] =>.Adobe Inc.
[MD5.0A04FE1BC7A45044EA49FD8D710F982E] [WIS][2024/08/03 02:41:37] (.Adobe Inc..) -- C:\WINDOWS\Installer\4d0f92a6.msp [24514560] =>.Adobe Inc.
[MD5.C02890AC7F18D2B952B6ADA74D9E08E4] [WIS][2024/03/31 05:02:26] (.Adobe Inc..) -- C:\WINDOWS\Installer\6d31a.msp [375574528] =>.Adobe Inc.
[MD5.EECC18BCF430B3B37FCE1A0718FED501] [WIS][2024/10/02 02:30:01] (.Adobe Inc..) -- C:\WINDOWS\Installer\7ca6b.msp [192561152] =>.Adobe Inc.
[MD5.3F1006BAB6559ECBF64D1F8AFD8C258F] [WIS][2024/06/27 16:54:54] (.Adobe Inc..) -- C:\WINDOWS\Installer\7d56d.msp [117788672] =>.Adobe Inc.
[MD5.FEFCDE3C120D6CCFAF86848F0F6F93A9] [WIS][2024/12/06 03:20:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\bfdbf.msp [387006464] =>.Adobe Inc.
[MD5.4844FD2F0E15220E19C291A4A46FDD88] [WIS][2024/05/12 06:24:36] (.Adobe Inc..) -- C:\WINDOWS\Installer\d212e0d.msp [127385600] =>.Adobe Inc.
[MD5.1B8EE51643E4FD11DB4478BAD57187A0] [WIS][2024/03/19 03:17:32] (.Adobe Inc..) -- C:\WINDOWS\Installer\eecc9.msp [452677632] =>.Adobe Inc.
[MD5.E9CA41BD52E3D5DE146A173569A35C0F] [WIS][2024/05/04 23:55:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\f78b9.msp [100311040] =>.Adobe Inc.

---\\ FEATURE CONTROL. (22) - 1s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:EstimateSpeedUp.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AdvancePCPro.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AASIapp.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrobat.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroLicApp.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrodist.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Common.DBConnection64.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Common.DBConnection64.exe

---\\ OBSERVATEURS des évènements (146) - 14s

Application.Error: Application Error (4)
~Numéro: 342964
~Date: 01/28/2025 05:38:33 PM
~ID: 1000
~Description: Nom de l’application défaillante Explorer.EXE, version : 10.0.19041.5247, horodatage : 0xc91815a0 Nom du module défaillant : ucrtbase.dll, version : 10.0.19041.3636, horodatage : 0x81cf5d89 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000
~Suggestion: Réparer ou réinstaller l'application.

Application.Warning: Microsoft-Windows-RestartManager (8)
~Numéro: 342954
~Date: 01/28/2025 05:38:00 PM
~ID: 10010
~Description: Impossible de redémarrer l’application « C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.exe » (pid 14908) - 1.
~Suggestion: Redémarrer manuellement l'application ou le service

Application.Warning: Microsoft-Windows-Perflib (65)
~Numéro: 342779
~Date: 01/28/2025 05:17:37 PM
~ID: 1008
~Description: La procédure d'ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll » a échoué avec le code d'erreur 1359. Les données de performances pour ce service ne sont pas disponibles.
~Suggestion: Rechercher le concerné et décocher «Compteurs de performances activés».

Application.Error: Software Protection Platform Service (131)
~Numéro: 342776
~Date: 01/28/2025 05:15:33 PM
~ID: 8198
~Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0x80004005 Arguments de la ligne de commande : RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=2de
~Suggestion: Aucune

Application.Warning: Microsoft-Windows-PerfProc (15)
~Numéro: 342749
~Date: 01/28/2025 05:15:13 PM
~ID: 2002
~Description: Impossible d’ouvrir l’objet de traitement \BaseNamedObjects\WmiProviderSubSystemHostJob pour un accès en interrogation. Le processus appelant peut ne pas disposer de l’autorisation d’ouvrir ce travail. Les quatre premiers octets (DWORD) de la section
~Suggestion: Vérifier les compteurs de performances

Application.Error: Microsoft-Windows-PerfNet (15)
~Numéro: 342748
~ID: 2004
~Description: Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code de statut.
~Suggestion: Essayer de redémarrer le service Serveur

Application.Warning: Microsoft-Windows-WMI (30)
~Numéro: 342043
~Date: 01/27/2025 03:53:02 PM
~ID: 63
~Description: Un fournisseur, IntelMEProv, a été inscrit dans l’espace de noms Windows Management Instrumentation root\Intel_ME, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de sécurité s’i
~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié.

Application.Error: VSS (2)
~Numéro: 340830
~Date: 01/17/2025 08:40:34 PM
~ID: 13
~Description: Informations du service de cliché instantané de volumes : impossible de démarrer le serveur COM de CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} et de nom CEventSystem. [0x8007045b, Un arrêt système est en cours. ]

Application.Error: .NET Runtime (2)
~Numéro: 340748
~Date: 01/17/2025 08:29:46 PM
~ID: 1025
~Description: Application: wmiprvse.exeFramework Version: v4.0.30319Description: The application requested process termination through System.Environment.FailFast(string message).Message: Une exception inattendue a été levée par le fournisseur : System.IO.FileLoad

Application.Error: Microsoft Security Client (3)
~Numéro: 340747
~Date: 01/17/2025 08:29:45 PM
~ID: 3002
~Description: 0x80041001

Application.Warning: Microsoft-Windows-System-Restore (2)
~Numéro: 339258
~Date: 01/17/2025 06:34:03 PM
~ID: 8303
~Description: Scoping unsuccessful for shadowcopy \\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy8 with error 0x80070057.
~Suggestion: Exécuter la commande chkdsk / f

System.Warning: DCOM (524)
~Numéro: 75140
~Date: 01/28/2025 05:39:39 PM
~ID: 10016
~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}DESKTOP-SRDQL9KMamouS-1-5-21-3824323892-2633900218-3341220402-1001LocalHost (avec LRPC)Microsoft.Windows.Search_1.14.17.19041_neutral_ne
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Error: Microsoft-Windows-WindowsUpdateClient (6)
~Numéro: 75110
~Date: 01/28/2025 05:21:41 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80073d02 : 9NMPJ99VJBWV-Microsoft.YourPhone.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp

System.Error: NetBT (90)
~Numéro: 75092
~Date: 01/28/2025 05:15:30 PM
~ID: 4311
~Description: L’initialisation a échoué car le pilote de périphérique n’a pas pu être créé. Utilisez la chaîne « %2 » pour identifier l’interface pour laquelle l’initialisation a échoué. Cette chaîne représente l’adresse MAC de l’interface défaillante ou l’identi

System.Warning: Netwtw14 (17)
~Numéro: 75083
~Date: 01/28/2025 05:15:15 PM
~ID: 6062
~Description: \Device\NDMP2Killer(R) Wi-Fi 6E AX1675x 160MHz Wireless Network Adapter (210NGW)

System.Error: Service Control Manager (256)
~Numéro: 75026
~Date: 01/27/2025 03:55:04 PM
~ID: 7023
~Description: Le service Service Broker du moniteur d'exécution System Guard s’est arrêté avec l’erreur : %%3489660935

System.Warning: Microsoft-Windows-Kernel-PnP (48)
~Numéro: 74982
~Date: 01/27/2025 03:52:57 PM
~ID: 219
~Description: Le chargement du pilote \Driver\WudfRd a échoué pour le périphérique USB\VID_04F3&PID_0C55\5&2812dab9&0&13.
~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système

System.Warning: Microsoft-Windows-WLAN-AutoConfig (21)
~Numéro: 74921
~Date: 01/27/2025 03:52:32 PM
~ID: 10002
~Description: Le module d’extensibilité WLAN s’est arrêté. Chemin d’accès du module : C:\WINDOWS\System32\DriverStore\FileRepository\netwtw6e.inf_amd64_bf4689a7153fc9c5\IntelIHVRouter14.dll
~Suggestion: 1)Désactivez/Réactiver la connexion réseau sans fil. ou 2) Redémarrer le service WLAN AutoConfig

System.Warning: Microsoft-Windows-DNS-Client (21)
~Numéro: 74464
~Date: 01/27/2025 02:47:24 PM
~ID: 1014
~Description: La résolution du nom client.wns.windows.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx

System.Error: EventLog (2)
~Numéro: 74191
~Date: 01/18/2025 06:58:24 PM
~ID: 6008
~Description: L’arrêt système précédant à 18:57:16 le ‎18/‎01/‎2025 n’était pas prévu.

System.Error: Application Popup (141)
~Numéro: 73842
~Date: 01/17/2025 08:07:25 PM
~ID: 1060
~Description: \??\C:\Users\Mamou\AppData\Local\Temp\ehdrv.sys

System.Error: Killer Network Service (6)
~Numéro: 73321
~Date: 01/17/2025 07:49:27 PM
~ID: 16
~Description: Error Loading Configuration File user.xml

System.Warning: Netwtw10 (44)
~Numéro: 73245
~Date: 01/17/2025 07:47:06 PM
~Description: 6062 - Lso was triggered

System.Error: Microsoft-Windows-Eventlog (1)
~Numéro: 73107
~Date: 01/17/2025 07:36:22 PM
~ID: 30
~Description: Le service de journalisation des événements a rencontré une erreur (5) lors de l’activation de l’éditeur {0bf2fb94-7b60-4b4d-9766-e82f658df540} sur le canal Microsoft-Windows-Kernel-ShimEngine/Operational. Cette erreur n’affecte pas le fonctionnement

System.Error: disk (3)
~Numéro: 72872
~Date: 01/16/2025 11:25:57 AM
~ID: 11
~Description: Le pilote a détecté une erreur du contrôleur sur \Device\Harddisk1\DR1.

System.Error: volsnap (1)
~Numéro: 72805
~Date: 01/14/2025 03:27:24 PM
~ID: 36
~Description: Les clichés instantanés du volume C: ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur.

System.Warning: Microsoft-Windows-TPM-WMI (1)
~Numéro: 71828
~Date: 12/19/2024 09:16:05 AM
~ID: 1800
~Description: Un redémarrage est nécessaire avant d’installer la mise à jour du démarrage sécurisé. Raison : 6

---\\ SCAN ADDITIONNEL (25) - 3s
C:\WINDOWS\System32\Tasks\R@1n-KMS\Office15ProPlus =>HackTool.WinActivator
C:\WINDOWS\System32\Tasks\R@1n-KMS\Windows100Professional =>HackTool.WinActivator
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\NvCplDesktopContext =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\EveryDaySoft\EDSWindows10Tuner\EDSWindows10Tuner.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\EveryDaySoft\EDSWindows10Tuner\EDSWindows10Tuner.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Setup_MagicISO.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Deluge\deluge.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Deluge\deluge.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\EveryDaySoft\EDSWindows10Tuner\EDSWindows10Tuner.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\EveryDaySoft\EDSWindows10Tuner\EDSWindows10Tuner.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\RegCloneCD.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\SlySoft\CloneCD\CloneCD.exe.ApplicationCompany =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Setup_MagicISO.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Deluge\deluge.exe.FriendlyAppName =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3824323892-2633900218-3341220402-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Deluge\deluge.exe.ApplicationCompany =>.SUP.Orphan.MUICache

---\\ RECAPITULATIF DES ELEMENTS TROUVES (5) - 0s
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/2024/08/26/muicache-cle-de-registre/ =>.SUP.Orphan.MUICache

---\\ NUMEROS DE SÉRIE
[008BA1F172FD50BA8D4C11B74FFAC8A282] [21/09/2024] (.IObit CO., LTD.) - C:\Users\Mamou\AppData\Roaming\WycT1ndu\Set-up.exe =>.IObit CO., LTD
[0407ABB64E9990180789EACB81F5F914] [30/10/2023] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
[05101D15D8F858EE5327DC9BF4B5E60B] [30/09/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.
[062EE3FD7CDC52097C1DA6AFA87C745E] [03/05/2024] (.TeamViewer Germany GmbH.) - C:\Program Files\TeamViewer\TeamViewer.exe =>.Not verified
[062EE3FD7CDC52097C1DA6AFA87C745E] [03/05/2024] (.TeamViewer Germany GmbH.) - C:\Program Files\TeamViewer\TeamViewer_Service.exe =>.Not verified
[062EE3FD7CDC52097C1DA6AFA87C745E] [03/05/2024] (.TeamViewer Germany GmbH.) - C:\Program Files\TeamViewer\uninstall.exe =>.Not verified
[0636AFB1DA06CA9791388B36E258D048] [26/11/2024] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation
[06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD.
[06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD.
[0737B0D0DCDCAB8D78D2F40CB122F93F] [14/01/2025] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[0737B0D0DCDCAB8D78D2F40CB122F93F] [14/01/2025] (.Mozilla Corporation.) - C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation
[0737B0D0DCDCAB8D78D2F40CB122F93F] [14/01/2025] (.Mozilla Corporation.) - C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe =>.Mozilla Corporation
[0847C0D333578DAFA9934DA5A3788807] [17/11/2019] (.Canneverbe Limited.) - D:\CDBurnerXP-x64-4.5.8.7128\cdbxpp.exe =>.Canneverbe Limited
[087FBAAF351173C37EB07F0A65CD0A8A] [17/01/2025] (.Spotify AB.) - C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.255.235.0_x64__zpdnekdrzrea0\Spotify.exe =>.Not verified
[091DEFAF8797E7448DEE71E4391D17CC] [27/01/2025] (.Opera Norway AS.) - C:\Program Files\Opera\116.0.5366.51\opera_crashreporter.exe =>.Opera Norway AS
[091DEFAF8797E7448DEE71E4391D17CC] [27/01/2025] (.Opera Norway AS.) - C:\Program Files\Opera\opera.exe =>.Opera Norway AS
[0997C56CAA59055394D9A9CDB8BEEB56] [17/01/2025] (.NVIDIA Corporation.) - C:\ProgramData\NVIDIA Corporation\NVIDIA app\UpdateFramework\ota-artifacts\nvapp\69f9240dbde0b866b9f3ecad9f47bc0b\NvidiaAppSetupInt_11.0.1.189_OFFICIAL_FC2D54.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [26/11/2024] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [26/11/2024] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [26/11/2024] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NVIDIA App\ShadowPlay\nvsphelper64.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [26/11/2024] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvvad64v.sys =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [28/01/2025] (.NVIDIA Corporation.) - C:\Users\Mamou\AppData\Local\NVIDIA Corporation\NVIDIA app\NvBackend\ApplicationOntology\NvOAWrapperCache.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [28/01/2025] (.NVIDIA Corporation.) - C:\Users\Mamou\AppData\Local\NVIDIA Corporation\NVIDIA app\NvBackend\ApplicationOntology\OAWrapper.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [28/01/2025] (.NVIDIA Corporation.) - C:\Users\Mamou\AppData\Local\NVIDIA Corporation\NVIDIA app\NvBackend\ApplicationOntology\Ontology64.dll =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [28/01/2025] (.NVIDIA Corporation.) - C:\Users\Mamou\AppData\Local\NVIDIA Corporation\NVIDIA app\NvBackend\DAO\291ca85181b2ae9de85b2b95167c3b771e4f3c90590f6a72e11640f857bdfb88\NvOAWrapperCache.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [28/01/2025] (.NVIDIA Corporation.) - C:\Users\Mamou\AppData\Local\NVIDIA Corporation\NVIDIA app\NvBackend\DAO\291ca85181b2ae9de85b2b95167c3b771e4f3c90590f6a72e11640f857bdfb88\OAWrapper.exe =>.Not verified
[0997C56CAA59055394D9A9CDB8BEEB56] [28/01/2025] (.NVIDIA Corporation.) - C:\Users\Mamou\AppData\Local\NVIDIA Corporation\NVIDIA app\NvBackend\DAO\291ca85181b2ae9de85b2b95167c3b771e4f3c90590f6a72e11640f857bdfb88\Ontology64.dll =>.Not verified
[0B1B44BD5B5C9A87E1803162F9742406] [27/08/2023] (.Bitdefender SRL.) - C:\WINDOWS\System32\drivers\bddci.sys =>.Bitdefender SRL
[0BFCFAC08E216A1C1FDAA6B77BB2D66E] [28/09/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.
[0C0712E8A9B1FAED49AD9F9BEF25D0FD] [11/12/2024] (.Proton AG.) - C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe =>.Proton AG
[0C0712E8A9B1FAED49AD9F9BEF25D0FD] [11/12/2024] (.Proton AG.) - C:\Program Files\Proton\VPN\v3.5.1\ProtonVPN.exe =>.Proton AG
[0C0712E8A9B1FAED49AD9F9BEF25D0FD] [11/12/2024] (.Proton AG.) - C:\Program Files\Proton\VPN\v3.5.1\ProtonVPN.WireGuardService.exe =>.Proton AG
[0C0712E8A9B1FAED49AD9F9BEF25D0FD] [11/12/2024] (.Proton AG.) - C:\Program Files\Proton\VPN\v3.5.1\ProtonVPNService.exe =>.Proton AG
[0C0712E8A9B1FAED49AD9F9BEF25D0FD] [11/12/2024] (.Proton AG.) - C:\Program Files\Proton\VPN\v3.5.1\Resources\ProtonVPN.CalloutDriver.sys =>.Proton AG
[0C0712E8A9B1FAED49AD9F9BEF25D0FD] [13/01/2025] (.Proton AG.) - C:\Program Files\Proton\VPN\unins000.exe =>.Proton AG
[0CA6A7A3916ECDE96F5EA62A34148760] [14/11/2023] (.A-Volute SAS.) - C:\WINDOWS\System32\NahimicService.exe =>.A-Volute SAS
[0CA6A7A3916ECDE96F5EA62A34148760] [16/05/2024] (.A-Volute SAS.) - C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys =>.A-Volute SAS
[0CA6A7A3916ECDE96F5EA62A34148760] [18/08/2022] (.A-Volute SAS.) - C:\WINDOWS\System32\drivers\NahimicBTLink.sys =>.A-Volute SAS
[0D0194CD1E3142205135D1C636E4E9BA] [04/12/2024] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation
[0D0194CD1E3142205135D1C636E4E9BA] [04/12/2024] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_085de2d4b49d7707\nvlddmkm.sys =>.NVIDIA Corporation
[0D1A340F78D7D000E089FDBAAD6522DF] [05/12/2024] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Inc.
[0D1A340F78D7D000E089FDBAAD6522DF] [05/12/2024] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe =>.Adobe Inc.
[0D1A340F78D7D000E089FDBAAD6522DF] [18/12/2024] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.
[0F91AC8781452E9478FDB90D5A52336C] [09/11/2023] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3cf99e411755df38\RtkAudUService64.exe =>.Not verified
[0F91AC8781452E9478FDB90D5A52336C] [21/04/2024] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rtump64x64.sys =>.Not verified
[11215F9DDE67138EA8C52C9F6F1901954DE8] [18/04/2016] (.chen jun hao.) - C:\Program Files (x86)\FormatFactory\FFInst.exe =>.chen jun hao
[112172E6B04266BB4059BFEF636CF8F452A0] [15/10/2023] (.Disc Soft Ltd.) - C:\WINDOWS\System32\Drivers\sptd2.sys =>.Disc Soft Ltd
[112172E6B04266BB4059BFEF636CF8F452A0] [23/10/2023] (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtultrascsibus.sys =>.Disc Soft Ltd
[112172E6B04266BB4059BFEF636CF8F452A0] [23/10/2023] (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtultrausbbus.sys =>.Disc Soft Ltd
[20456EFF672504B0D5FF21FA45558265] [05/09/2023] (.Power Software Limited.) - C:\Program Files\PowerISO\PowerISO.exe =>.Not verified
[20456EFF672504B0D5FF21FA45558265] [05/09/2023] (.Power Software Limited.) - C:\Program Files\PowerISO\PWRISOSH.DLL =>.Not verified
[20456EFF672504B0D5FF21FA45558265] [05/09/2023] (.Power Software Limited.) - C:\Program Files\PowerISO\PWRISOVM.EXE =>.Not verified
[227EFDF22825BA270530FB09D52B32F8] [07/06/2017] (.Power Software Limited.) - C:\WINDOWS\System32\drivers\scdemu.sys =>.Power Software Limited
[28736D0D296789512BAC66CCE86C4A00] [27/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\system32\ddmdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.
[28736D0D296789512BAC66CCE86C4A00] [28/02/2017] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\System32\ampa.sys =>.CHENGDU AOMEI Tech Co., Ltd.
[28736D0D296789512BAC66CCE86C4A00] [28/02/2017] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\SysWOW64\ampa.sys =>.CHENGDU AOMEI Tech Co., Ltd.
[33000003D37669DC80EC01A2430000000003D3] [03/12/2024] (..NET.) - C:\Program Files\dotnet\dotnet.exe =>.Not verified
[33000003D37669DC80EC01A2430000000003D3] [28/01/2025] (..NET.) - C:\ProgramData\Package Cache\{aafaa0cc-b975-4ffa-ba33-8690e64683c4}\windowsdesktop-runtime-8.0.12-win-x64.exe =>.Not verified
[33000003DE6C778D9215F2E1960000000003DE] [29/12/2024] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.134.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified
[56000009DB126DEAB38A518D4B0000000009DB] [21/01/2021] (.Gaussian Mixture Models and Neural Networks Accelerator.) - C:\Windows\System32\DriverStore\FileRepository\gna.inf_amd64_689d3d5fefeef458\gna.sys =>.Gaussian Mixture Models and Neural Networks Accelerator
[6F36C4B74B4F8AB001F039D692A75B49] [26/08/2023] (.Malwarebytes Corporation.) - C:\WINDOWS\system32\drivers\mbamchameleon.sys =>.Malwarebytes Corporation
[6F36C4B74B4F8AB001F039D692A75B49] [26/08/2023] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys =>.Malwarebytes Corporation
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH
[7B3DFFECA0905B96F87FD38A] [02/01/2024] (.LLC MEDIAHUMAN.) - D:\YouTube to MP3 Converter\unins000.exe =>.Not verified
[7B3DFFECA0905B96F87FD38A] [21/12/2023] (.LLC MEDIAHUMAN.) - D:\YouTube to MP3 Converter\YouTubeToMP3.exe =>.Not verified

~ Unselected Options: NF,
~ End of the scan, 8854 items in 01mn23s (1465)(0)

Publicité


Signaler le contenu de ce document

Publicité