~ ZHPDiag v2025.3.10.4 Par Nicolas Coolman (2025/03/10) ~ Démarre par lstco (Administrator) (2025/03/13 10:29:43) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\lstco\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\lstco\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Demarrage du système: Normal (Normal boot) Windows 11, 64-bit (Build 26100) ---\\ NAVIGATEURS INTERNET (3) - 0s ~ MFIE: Mozilla Firefox 136.0 (x64 fr) ~ MSIE: Internet Explorer v11.1882.26100.0 ~ OBIE: Microsoft Edge v134.0.3124.66 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 0s Windows Defender W11 (Activate) (Protection) Malwarebytes version 5.2.8.173 v5.2.8.173 (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (18) - 1s ~ Operating System: Intel64 Family 6 Model 165 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 362 GB (76%) free of 476 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 4 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 2 ~ Type de barrette (FormFactor): DIMM ~ Taille (Size) : 16 Go ~ Vitesse (Speed) : 2666 ~ Charge mémoire (Memory Usage) : 17% ~ RAM physique Total (Total Physical) : 32 Go : OK ~ RAM physique Disponible (Available Physical) : 26 Go ~ Total virtuelle (Total Virtual) : 33.87 Go ~ Disponible virtuelle (Available Virtual): 27.13 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: LSTCOSERGIO ~ User Name: lstco ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (6) - 0s ~ Drive C: has 362 GB free of 476 GB (System) ~ Drive D: has 126 GB free of 476 GB ---\\ ETAT DE LA COMMANDE TRIM ~ La commande TRIM est active (NTFS) ~ La commande TRIM est active (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (25) - 9s ~ Model: Samsung SSD 870 EVO 500GB vSVT02B6Q (476 Gb ) ~ Media Type: SSD Disque Fixe ( Bus: SATA) ---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0 OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 0.007 OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 0.342 OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 0.506 OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): 0 ---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute] OK - 05 - Pourcentage utilisé (Percentage Used) - [51][100][100] [10][0] OK - 09 - Commandes d'écriture de l'hôte (Host Write Commands) - [50][97][97] [0][13184] OK - 0C - Heures de mise sous tension (Power On Hours) - [50][98][98] [0][1590] OK - B1 - Total du Nombre de niveau d'usure (Total Wear Leveling Count) - [19][99][99] [0][6] OK - B3 - Nombre Total de blocs réservés utilisés (Total Used reserved Block Count) - [19][100][100] [10][0] OK - B5 - Nombre d’échecs de programme (total) (Total Program Fail Count) - [50][100][100] [10][0] OK - B6 - Total de Pire effacement du nombre d’échecs (Total Erase Fail Count) - [50][100][100] [10][0] OK - B7 - Rétrogradation de l'interface SATA (SATA Interface Downshift) - [19][100][100] [10][0] OK - BB - Nombre d'erreurs incorrigibles (Reported Uncorrectable Errors) - [50][100][100] [0][0] OK - BE - Temperature débit d'air (Temperature Airflow) - [50][72][46] [0][28] OK - C3 - Taux d'erreurs ECC (ECC Errors Rate) - [26][200][200] [0][0] OK - C7 - Nombre d'erreurs CRC Ultra-DMA (CRC Error Count) - [62][100][100] [0][0] OK - EB - Nombre de récupérations POR (POR Recovery Count) - [18][99][99] [0][101] OK - F1 - Nombre total d'écriture Hôte (Total LBA Written, Lifetime Host Writes) - [50][99][99] [0][5849] ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 1s [MD5.8FADAEAEEC580A6580696F4AC2014D55] - 05/03/2025 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2774080] =>.Microsoft® [MD5.79C75E0A3ADCD5CB91CA67BDB4ECBC11] - 30/01/2025 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [90112] [Unsigned] =>.Microsoft Corporation [MD5.B05B2D529881119FDA9C422D1D15E0A8] - 05/03/2025 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [646112] [Unsigned] =>.Microsoft Corporation [MD5.CA0C9AB1C5D6C7A3D4A49F8B2D75FD4F] - 05/03/2025 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2650080] =>.Microsoft® [MD5.B98BA6ADE62EE6E2247EDECF0DC177B9] - 05/03/2025 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [970752] [Unsigned] =>.Microsoft Corporation [MD5.732C26520DA53BC12BD9891326E9620F] - 22/11/2024 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [348160] [Unsigned] =>.Microsoft Corporation [MD5.FF1BAA9200590459E5A3AD32761C7A81] - 05/03/2025 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [1212168] =>.Microsoft® [MD5.20B14F235EAF42A05003B5314FF719FD] - 05/03/2025 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [894656] =>.Microsoft® [MD5.9CA2735AF3C1FC70226E74AC952522A7] - 30/01/2025 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [181168] [Unsigned] =>.Microsoft Corporation [MD5.D1A5165A4050F4DDAD675E1278C4EC5C] - 01/04/2024 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.99AEC54630BE1A2EF7022048765EE4C4] - 05/03/2025 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [722376] [Unsigned] =>.Microsoft Corporation [MD5.DCA60DD9AD8009F47C3B8FDCFF836657] - 05/03/2025 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [67000] [Unsigned] =>.Microsoft Corporation [MD5.7343300029A25828E41B5E37279F62E7] - 22/11/2024 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [131072] [Unsigned] =>.Microsoft Corporation [MD5.DE63B4BDC0D66886A148A3348DEB300E] - 22/11/2024 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [221184] [Unsigned] =>.Microsoft Corporation [MD5.0EF9F9DE0ADC47ADAC41C6FFDE40FF91] - 22/11/2024 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [206280] [Unsigned] =>.Microsoft Corporation [MD5.2F344032BB21D271A5CA2A5621319846] - 22/11/2024 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [200704] [Unsigned] =>.Microsoft Corporation [MD5.9C6EDD48D79D5632C718B7AE925967DD] - 22/11/2024 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [155648] [Unsigned] =>.Microsoft Corporation [MD5.DC3273B4F8162F30C9EF2043A399B0FE] - 22/11/2024 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [253952] [Unsigned] =>.Microsoft Corporation [MD5.4A694CB1742C1B02374E2EC8272490FA] - 05/03/2025 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [931256] [Unsigned] =>.Microsoft Corporation [MD5.CC1540DCE3518BDCD5E643564C4E2264] - 22/11/2024 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [348160] [Unsigned] =>.Microsoft Corporation [MD5.02E1E980C7DF89F2620F309ECD9F052E] - 12/03/2025 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [3642784] [Unsigned] =>.Microsoft Corporation [MD5.D7ABF96C1A3172188814E579026844C2] - 22/11/2024 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [135168] [Unsigned] =>.Microsoft Corporation [MD5.9882A8E0B851913585E5FAC2BC443EFB] - 22/11/2024 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [147456] [Unsigned] =>.Microsoft Corporation [MD5.625A404601DF718885159EA48CBF3029] - 05/03/2025 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [212992] [Unsigned] =>.Microsoft Corporation [MD5.4D2AB025858B2157E0AB1B90BA68CB55] - 22/11/2024 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [185648] [Unsigned] =>.Microsoft Corporation [MD5.2B6D4D84CE893D0234877B03FD80EC00] - 22/11/2024 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [513456] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (6) - 1s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atiesrxx.exe =>.Advanced Micro Devices Inc.® O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe {071FA1C11A5CBB5DE62052E44E09AD52}. =>.Intel(R) Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation O23 - Service: Cycling Manager 2007 Drivers Auto Removal (pr2akt6c) (pr2akt6c) . (.Cyanide - Cycling Manager 2007 Drivers Auto Removal.) - C:\WINDOWS\System32\pr2akt6c.exe [Unsigned] =>.Cyanide O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (98) - 4s SR - Boot [01/04/2024] [ 108464] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Boot [01/04/2024] [ 1136544] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [28/01/2022] [ 595856] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atiesrxx.exe =>.Advanced Micro Devices Inc.® SR - Demand [01/04/2024] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [01/04/2024] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [28/01/2022] [ 118576] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices Inc.® SR - Boot [01/04/2024] [ 84400] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [01/04/2024] [ 260512] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Demand [28/01/2022] [80540576] (amdwddmg) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\amdkmdag.sys =>.Advanced Micro Devices Inc.® SR - Boot [01/04/2024] [ 28064] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [01/04/2024] [ 113456] Apple Solid State Drive Device (AppleSSD) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleSSD.sys =>.Microsoft® SR - Boot [01/04/2024] [ 133024] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [22/07/2019] [ 108152] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft® SR - Boot [01/04/2024] [ 534944] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [28/09/2015] [ 172376] WinCDEmu Virtual Bus Driver (BazisVirtualCDBus) . (.Sysprogs OU.) - C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys =>.Sysprogs OU® SR - Demand [24/09/2017] [ 8519384] Pilote pour carte rés (BCM43XX) . (.Broadcom Corporation.) - C:\WINDOWS\System32\DRIVERS\bcmwl63a.sys =>.Broadcom Corporation® SR - Demand [01/04/2024] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Boot [01/04/2024] [ 320944] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [01/04/2024] [ 1854880] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Demand [01/12/2024] [ 2287792] Denuvo Anti-Cheat (Denuvo Anti-Cheat) . (.Denuvo GmbH.) - C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys =>.Microsoft® SS - Demand [01/12/2024] [ 993880] Denuvo Anti-Cheat Update Service (Denuvo Anti-Cheat Update Service) . (.Denuvo GmbH.) - C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe {0BA1CCC11A40C754CA631EA6}. SR - Demand [30/09/2022] [ 167440] SAMSUNG Mobile USB Comp (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD.® SR - Demand [07/02/2023] [ 42256] DAEMON Tools Lite Virtual SCSI Bus (dtlitescsibus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys =>.AVB Disc Soft, SIA® SR - Demand [07/02/2023] [ 63696] DAEMON Tools Lite Virtual USB Bus (dtliteusbbus) . (.Disc Soft Ltd.) - C:\WINDOWS\System32\drivers\dtliteusbbus.sys {76CEA6897FE1FB6E06DF03619025CC50}. =>.Disc Soft Ltd SR - Boot [01/04/2024] [ 3441568] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.Marvell Semiconductor Inc..) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [01/04/2024] [ 3424160] QLogic Legacy Ethernet Adapte (ebdrv0) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbd0a.sys =>.Microsoft® SR - System [14/05/2017] [ 42616] ElbyCDIO Driver (ElbyCDIO) . (.Elaborate Bytes AG.) - C:\WINDOWS\System32\Drivers\ElbyCDIO.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [01/04/2024] [ 65440] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [00/00/0000] [ 0] HWiNFO Kernel Driver (v204) (HWiNFO_204) . (...) - C:\Users\lstco\AppData\Local\Temp\HWiNFO_x64_204.sys (.not file.) [Unsigned] SR - Demand [01/04/2024] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [01/04/2024] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [01/04/2024] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [01/04/2024] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [23/12/2020] [ 128680] Intel(R) Serial IO G (iaLPSS2_GPIO2_TGL) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_cb8dd04b85ac9a58\iaLPSS2_GPIO2_TGL.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation SR - Demand [01/04/2024] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [01/04/2024] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [01/04/2024] [ 885568] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [01/04/2024] [ 413088] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [01/04/2024] [ 559920] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [17/02/2021] [ 5977120] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Auto [14/12/2023] [ 762480] Intel(R) TPM Provis (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe {071FA1C11A5CBB5DE62052E44E09AD52}. =>.Intel(R) Corporation SR - Boot [01/04/2024] [ 187200] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Auto [11/07/2023] [ 630280] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation SR - Demand [08/09/2018] [ 243800] KeyScrambler (KeyScrambler) . (.QFX Software Corporation.) - C:\WINDOWS\System32\drivers\keyscrambler.sys =>.QFX Software Corporation® SS - Demand [24/02/2025] [ 123304] LibreOffice Maintenance Service (LibreOfficeMaintenance) . (.The Document Foundation.) - C:\Program Files\LibreOffice\program\update_service.exe {5FFBE1BC422D8BC2DAB2B379D64BEA1D}. =>.The Document Foundation SR - Auto [22/02/2024] [ 3883208] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation SR - Boot [01/04/2024] [ 110000] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [01/04/2024] [ 125344] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [01/04/2024] [ 138560] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Auto [24/01/2025] [ 232024] MBAMChameleon (mbamchameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft® SR - Boot [22/02/2025] [ 22120] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SS - Demand [11/03/2025] [ 9484384] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® SR - Demand [12/07/2024] [ 239568] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SS - Demand [18/12/2024] [ 2788304] MBVpnTunnelService (MBVpnTunnelService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe =>.Malwarebytes Inc.® SR - Boot [01/04/2024] [ 81840] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [01/04/2024] [ 101168] (megasas35i) . (.Broadcom Inc.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [01/04/2024] [ 576944] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [10/01/2021] [ 310656] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_a54e540558404ee5\x64\TeeDriverW10x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [01/04/2024] [ 1132336] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [01/04/2024] [ 90544] (mpi3drvi) . (.Broadcom Limited.) - C:\WINDOWS\System32\drivers\mpi3drvi.sys =>.Microsoft® SR - Boot [01/04/2024] [ 64928] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [01/04/2024] [ 147248] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [22/11/2024] [ 83360] NDKPerf Driver (NDKPerf) . (.Microsoft.) - C:\WINDOWS\System32\drivers\NDKPerf.sys =>.Microsoft® SR - Auto [05/03/2025] [ 118784] Mi (NetworkPrivacyPolicy) . (...) - C:\Windows\System32\DriverStore\FileRepository\networkprivacypolicy.inf_amd64_787acdbf42fd4326\NetworkPrivacyPolicy.sys [Unsigned] SR - Boot [01/04/2024] [ 151472] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [01/04/2024] [ 167344] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [08/02/2008] [ 72328] Cycling Manager 2007 Environment Driver (pe3akt6c) (pe3akt6c) . (.Cyanide.) - C:\WINDOWS\System32\drivers\pe3akt6c.sys =>.Protection Technology, Ltd.® SR - Boot [01/04/2024] [ 59824] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [01/04/2024] [ 69552] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Boot [08/02/2008] [ 107656] Cycling Manager 2007 File System Driver (pf2akt6c) (pf2akt6c) . (.Cyanide.) - C:\WINDOWS\System32\drivers\pf2akt6c.sys =>.Protection Technology, Ltd.® SR - Demand [22/11/2024] [ 58784] Microsoft Pluton Secu (PlutonHeci) . (.Microsoft.) - C:\Windows\System32\DriverStore\FileRepository\pluton-heci.inf_amd64_9aaa7a8c15ac7e9a\pluton-heci.sys =>.Microsoft® SR - Demand [22/11/2024] [ 58672] Microsoft Pluton Service (PlutonHsp2) . (.Microsoft.) - C:\Windows\System32\DriverStore\FileRepository\plutonhsp2.inf_amd64_0b3fdc25d1dc1c6e\PlutonHsp2.sys =>.Microsoft® SR - Auto [08/02/2008] [ 777608] Cycling Manager 2007 Drivers Auto Removal (pr2akt6c) (pr2akt6c) . (.Cyanide.) - C:\WINDOWS\System32\pr2akt6c.exe =>.Protection Technology, Ltd.® SR - Boot [08/02/2008] [ 103568] Cycling Manager 2007 Synchronization Driver (ps7akt6c) (ps7akt6c) . (.Cyanide.) - C:\WINDOWS\System32\drivers\ps7akt6c.sys =>.Protection Technology, Ltd.® SR - Boot [01/04/2024] [ 45488] pvscsi Storage Controller Dr (pvscsi) . (.VMware, Inc..) - C:\WINDOWS\System32\drivers\pvscsii.sys =>.Microsoft® SS - Demand [14/08/2023] [ 780312] QFX Software Update Service (QFXUpdateService) . (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\x64\QFXUpdateService.exe =>.QFX Software Corporation® SR - Demand [28/03/2024] [ 19504] RevoProcessDetector (RevoProcessDetector) . (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\RevoProcessDetector.sys =>.Microsoft® SR - Demand [20/11/2019] [ 1167768] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.® SR - Demand [18/12/2024] [ 887768] Realtek NetAdapter Driver (rt68cx21) . (.Realtek.) - C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_af6aa5163f8d80cc\rt68cx21x64.sys {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek SR - Auto [17/02/2021] [ 1231864] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® SR - Boot [01/04/2024] [ 45984] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [01/04/2024] [ 82848] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [01/04/2024] [ 210848] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [30/09/2022] [ 174112] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD.® SS - Demand [02/12/2024] [ 2661984] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\steamservice.exe {06FB83D0BA7C64B957849B76A8C1DE72}. =>.Valve Corporation SR - System [21/02/2023] [ 278208] Steam Xbox Controller Enhance (steamxbox) . (.Valve Corporation.) - C:\WINDOWS\System32\drivers\steamxbox.sys =>.Valve Corp.® SR - Boot [01/04/2024] [ 32176] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [22/02/2020] [ 44544] (VClone) . (.Elaborate Bytes AG.) - C:\WINDOWS\System32\drivers\VClone.sys =>.Microsoft® SR - Boot [01/04/2024] [ 167840] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [01/04/2024] [ 306608] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [01/04/2024] [ 37184] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [01/04/2024] [ 74032] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (12) - 3s O38 - TASK: {30339EDF-75C9-4D5A-99F7-8ADC689B7B14} [64Bits][\PegasunStart] - (.Pegasun - Pegasun System Utilities.) -- C:\Program Files (x86)\Pegasun\SystemUtilities\SystemUtilities.exe [995976] =>.Pegasun O38 - TASK: {790BC3FB-861E-423C-BEB0-144EC5384A69} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] =>.Mozilla Corporation O38 - TASK: {85B4025A-CF8E-469F-B00E-6048DA32054D} [64Bits][\Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator] - (...) -- C:\WINDOWS\System32\UIEOrchestrator.exe [336816] O38 - TASK: {90754FA6-0317-4708-B0CB-F02F58B89808} [64Bits][\Mozilla\Firefox Background Update S-1-5-21-2715982157-3697937772-1319394629-1001 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] =>.Mozilla Corporation O38 - TASK: {D1211565-C8D3-4652-94F0-E7177DB88C70} [64Bits][\Microsoft\Windows\Diagnosis\UnexpectedCodepath] - (...) -- C:\WINDOWS\system32\UCConfigTask.exe [90112] O38 - TASK: {E7E0026C-9033-4B70-AA9C-524E41F65690} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - La tâche Agent de navigateur par défaut eff.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\PegasunStart - (.Pegasun.) -- C:\Program Files (x86)\Pegasun\SystemUtilities\SystemUtilities.exe [-hide] =>.Pegasun C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator - (...) -- C:\WINDOWS\System32\UIEOrchestrator.exe [/SendHeartbeat] C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2715982157-3697937772-1319394629-1001 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\Microsoft\Windows\Diagnosis\UnexpectedCodepath - (...) -- C:\WINDOWS\system32\UCConfigTask.exe [] C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (18) - 2s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_42DF5A43A4390047F10FA270BD5D1218] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKCU\..\Run: [Nextcloud] . (.Nextcloud GmbH - Nextcloud.) -- C:\Program Files\Nextcloud\nextcloud.exe {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam.) -- D:\Program Files (x86)\Steam\steam.exe {06FB83D0BA7C64B957849B76A8C1DE72}. =>.Valve Corporation O4 - HKCU\..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Microsoft® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [IJNetworkScanUtility] . (.CANON INC. - Canon IJ Network Scan Utility.) -- C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe =>.Canon Inc.® O4 - HKLM\..\Wow6432Node\Run: [KeyScrambler] . (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\keyscrambler.exe =>.QFX Software Corporation® O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-21-2715982157-3697937772-1319394629-1001\..\Run: [MicrosoftEdgeAutoLaunch_42DF5A43A4390047F10FA270BD5D1218] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKUS\S-1-5-21-2715982157-3697937772-1319394629-1001\..\Run: [Nextcloud] . (.Nextcloud GmbH - Nextcloud.) -- C:\Program Files\Nextcloud\nextcloud.exe {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O4 - HKUS\S-1-5-21-2715982157-3697937772-1319394629-1001\..\Run: [Steam] . (.Valve Corporation - Steam.) -- D:\Program Files (x86)\Steam\steam.exe {06FB83D0BA7C64B957849B76A8C1DE72}. =>.Valve Corporation O4 - HKUS\S-1-5-21-2715982157-3697937772-1319394629-1001\..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Microsoft® ---\\ PROCESSUS LANCES (32) - 2s [MD5.2363BB2FEB43CCF824E32ECF3FE9B540] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atiesrxx.exe [595856] [PID.2352] =>.Advanced Micro Devices Inc.® [MD5.424C9C652836381C558F550D36AE7EF5] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atieclxx.exe [846736] [PID.2768] =>.Advanced Micro Devices Inc.® [MD5.7DDFE8CBF24AF36E9E7B0541691899B0] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe [630280] [PID.3952] {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation [MD5.3BBF275D2B9378C87C99D65A923AA56B] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe [1231864] [PID.3980] =>.Realtek Semiconductor Corp.® [MD5.52DE371C83CA88E4D279B082D992DA7F] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe [3883208] [PID.4140] {701032F3F400811DADC51E7F7875D8BC}. =>.Intel Corporation [MD5.646161AE8088E086C327636F609C39C3] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe [512536] [PID.8260] =>.QFX Software Corporation® [MD5.355D959CA57959E2B765E1297B490AF2] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\x64\KeyScrambler.exe [566296] [PID.9712] =>.QFX Software Corporation® [MD5.7828FEC7026B5AD39E8DA1A00CC71857] - (.Pegasun - Pegasun System Utilities.) -- C:\Program Files (x86)\Pegasun\SystemUtilities\SystemUtilities.exe [995976] [PID.8548] {7FA7B4F0E07AAA123C346A3057584358}. =>.Pegasun [MD5.0AD3634005710BED24681C8670C312E8] - (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe [298760] [PID.3048] =>.Malwarebytes Inc.® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.7404] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.1704] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.6300] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.8872] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.5920] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.9576] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.4272] =>.Mozilla Corporation® [MD5.23FF9DDA6A7592236CD833DAF1A2D23C] - (.Malwarebytes - Malwarebytes Native Message Service.) -- C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbambgnativemsg.exe [2807136] [PID.2412] =>.Malwarebytes Inc.® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.9560] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.4304] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.3192] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.2564] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.9956] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.6496] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.3808] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.2460] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.2936] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.1744] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.6924] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.996] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.12176] =>.Mozilla Corporation® [MD5.80EC506420D9EC4A22CA00D747AEF2E2] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [682560] [PID.9788] =>.Mozilla Corporation® [MD5.AFE7A9B4D19C552A741233E83C3E9B4F] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\lstco\Desktop\ZHPSuite.exe [3540680] [PID.12000] [Unsigned] =>.Nicolas Coolman ---\\ COMODO DRAGON, Démarrage, Recherche, Extensions (6) - 0s C2 - GCE: Preference [lstco][User Data\Default\Extensions] [Temp] C2 - GCE: Preference [lstco][User Data\Default\Extensions] [aneodkojaglhnkkdbbdnmmmgimlcaogo] Comodo Drag&Drop Service =>.Comodo Group. C2 - GCE: Preference [lstco][User Data\Default\Extensions] [dihmnpngfonlhjmgkflpnibiaaliendo] Comodo Media Grabber =>.Comodo Group. C2 - GCE: Preference [lstco][User Data\Default\Extensions] [ffjgpapimgnmibnacmeilgjefnoofefp] Comodo Online Security =>.Legitimate C2 - GCE: Preference [lstco][User Data\Default\Extensions] [mcmdgbiocnkpnaccjkailibfgepaccgf] Comodo Share Page Service =>.Comodo Group. C2 - GCE: Preference [lstco][User Data\Default\Local Extension Settings] [ffjgpapimgnmibnacmeilgjefnoofefp] =>.Legitimate ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (45) - 3s P2 - EXT FILE: (.Disconnect - Make the web faster, more private, and.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\2.0@disconnect.me.xpi [Unsigned] =>.Disconnect P2 - EXT FILE: (.Ghostery.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\firefox@ghostery.com.xpi [Unsigned] =>.Ghostery P2 - EXT FILE: (.Decentraleyes.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\jid1-BoFifL9Vbdl2zQ@jetpack.xpi [Unsigned] =>.Decentraleyes P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [Unsigned] =>.Mozilla Corporation P2 - EXT FILE: (.uBlock Origin.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\uBlock0@raymondhill.net.xpi [Unsigned] =>.uBlock Origin P2 - EXT FILE: (.Malwarebytes Browser Guard.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [Unsigned] =>.Malwarebytes Browser Guard P2 - EXT FILE: (.PDF2Go.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\{5fe0e3b1-ef04-41af-aae8-4653d2dbd0eb}.xpi [Unsigned] P2 - EXT FILE: (.ClearURLs.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\{74145f27-f039-47ce-a470-a662b129930a}.xpi [Unsigned] P2 - EXT FILE: (.Web of Trust.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [Unsigned] P2 - EXT FILE: (.Video DownloadHelper.) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [Unsigned] =>.Video DownloadHelper P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla P2 - EXT: (...) -- C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions\staged =>.Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\crashes =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\datareporting =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extension-store =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extension-store-menus =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\extensions =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\features =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\minidumps =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\security_state =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\settings =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\shader-cache =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\storage =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\weave =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\amazon@search.mozilla.org =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\bing@search.mozilla.org =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\ddg@search.mozilla.org =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\ebay@search.mozilla.org =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\firefox@tampermonkey.net C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\google@search.mozilla.org =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\helper@savefrom.net C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\qwant@search.mozilla.org =>Mozilla Corporation C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\wikipedia@search.mozilla.org =>Wikipedia C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\{b9acf540-acba-11e1-8ccb-001fd0e08bd4} C:\Users\lstco\AppData\Roaming\Mozilla\Firefox\Profiles\yqesmil5.default-release\browser-extension-data\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} =>Michel Gutierrez ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.26100.2308 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (3) - 0s E2 - GCE: Preference [lstco][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [lstco][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [lstco][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (4) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\134.0.3124.66\BHO\ie_to_edge_bho_64.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (45) - 2s O4 - GS\Desktop [lstco]: RomStation.lnk . (...) C:\RomStation\RomStation.exe [Unsigned] O4 - GS\Desktop [lstco]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\lstco\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\sendTo [lstco]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [lstco]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [lstco]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Programs [lstco]: Adlice Protect.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe [Unsigned] =>.Adlice Software O4 - GS\Programs [lstco]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation O4 - GS\Programs [lstco]: PC Health Check.lnk . (...) C:\Users\lstco\AppData\Local\PCHealthCheck\PCHealthCheck.exe =>.Microsoft® O4 - GS\Programs [lstco]: RogueKiller Anti-Malware.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe [Unsigned] =>.Adlice Software O4 - GS\Programs [lstco]: UCheck.lnk . (...) C:\Program Files (x86)\UCheck\UCheck64.exe [Unsigned] O4 - GS\Desktop [Malou]: RomStation.lnk . (...) C:\RomStation\RomStation.exe [Unsigned] O4 - GS\Desktop [Malou]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\lstco\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\sendTo [Malou]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Malou]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Malou]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Programs [Malou]: Adlice Protect.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe [Unsigned] =>.Adlice Software O4 - GS\Programs [Malou]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation O4 - GS\Programs [Malou]: PC Health Check.lnk . (...) C:\Users\lstco\AppData\Local\PCHealthCheck\PCHealthCheck.exe =>.Microsoft® O4 - GS\Programs [Malou]: RogueKiller Anti-Malware.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe [Unsigned] =>.Adlice Software O4 - GS\Programs [Malou]: UCheck.lnk . (...) C:\Program Files (x86)\UCheck\UCheck64.exe [Unsigned] O4 - GS\CommonDesktop [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) D:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: LibreOffice 25.2.lnk . (.The Document Foundation - LibreOffice, la suite de produ.) C:\Program Files (x86)\LibreOffice\program\soffice.exe [Unsigned] =>.The Document Foundation O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\Malwarebytes.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) D:\VLC\vlc.exe {09D08EBDA06BE07C815EA7AF25EF6875}. =>.VideoLAN O4 - GS\Programs [Public]: Adlice Protect.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe [Unsigned] =>.Adlice Software O4 - GS\Programs [Public]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation O4 - GS\Programs [Public]: PC Health Check.lnk . (...) C:\Users\lstco\AppData\Local\PCHealthCheck\PCHealthCheck.exe =>.Microsoft® O4 - GS\Programs [Public]: RogueKiller Anti-Malware.lnk . (...) C:\Program Files (x86)\RogueKiller\RogueKiller64.exe [Unsigned] =>.Adlice Software O4 - GS\Programs [Public]: UCheck.lnk . (...) C:\Program Files (x86)\UCheck\UCheck64.exe [Unsigned] O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player Legacy.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) D:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: GIMP 2.10.38.lnk . (.Spencer Kimball, Peter Mattis and the GIMP Developmen - GNU Image Manipulation Program.) C:\Program Files\GIMP 2\bin\gimp-2.10.exe {04C7F0B4A058C867A8174952557CFA2F}. =>.Spencer Kimball, Peter Mattis and the GIMP Developmen O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\Malwarebytes.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Nextcloud.lnk . (.Nextcloud GmbH - .) C:\Program Files (x86)\Nextcloud\nextcloud.exe [Unsigned] =>.Nextcloud GmbH O4 - GS\ProgramsCommon [Public]: OpenShot Video Editor.lnk . (.OpenShot Studios, LLC - OpenShot Video Editor.) D:\Program Files\OpenShot Video Editor\openshot-qt.exe [Unsigned] =>.OpenShot Studios, LLC O4 - GS\ProgramsCommon [Public]: RomStation.lnk . (...) C:\RomStation\RomStation.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: TechPowerUp GPU-Z.lnk . (.TechPowerUp (www.techpowerup.com) - GPU-Z - Video card Information Utility.) D:\Program Files (x86)\GPU-Z\GPU-Z.exe =>.TechPowerUp LLC® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{13f932f7-a1ef-4d44-b502-cd1b9977cddc}: DhcpNameServer = 192.168.209.130 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{e54637d8-62eb-427f-9333-762f78ed16e9}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{f3604b28-e65c-4b7b-8fb2-f2164497ef06}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (22) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (5) - 0s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur multim.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\134.0.3124.66\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (35) - 8s O42 - Logiciel: Canon IJ Network Scan Utility - (..) [HKLM][64Bits] -- Canon_IJ_Network_Scan_UTILITY =>.Canon Inc.® O42 - Logiciel: Canon IJ Network Tool - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_UTILITY =>.Canon Inc.® O42 - Logiciel: Canon MP560 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP560_series [Unsigned] =>.Canon Inc. O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 [Unsigned] =>.CDBurnerXP O42 - Logiciel: Championship Manager 01-02 - (..) [HKLM][64Bits] -- Championship Manager 01-02 [Unsigned] O42 - Logiciel: Denuvo Anti-Cheat - (.Denuvo GmbH.) [HKLM][64Bits] -- Denuvo Anti-Cheat {0BA1CCC11A40C754CA631EA6}. O42 - Logiciel: DownloadHelper CoApp - (.ACLAP.) [HKLM][64Bits] -- DownloadHelper CoApp [Unsigned] O42 - Logiciel: GIMP 2.10.38-1 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 {04C7F0B4A058C867A8174952557CFA2F}. =>.The GIMP Team O42 - Logiciel: KeyScrambler - (.QFX Software Corporation.) [HKLM][64Bits] -- KeyScrambler [Unsigned] =>.QFX Software Corporation O42 - Logiciel: LibreOffice 25.2.1.2 - (.The Document Foundation.) [HKLM][64Bits] -- {C155ED9C-4F2D-408C-BF76-07CB2B126B25} [Unsigned] =>.The Document Foundation O42 - Logiciel: Malwarebytes version 5.2.8.173 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Microsoft Flight Simulator – DVD Content - (.Xbox Game Studios.) [HKLM][64Bits] -- {0EE844B4-4833-46AB-B307-75DBF52FC226} {1D07300F56003F4AFFA9D6BC55EA6725}. O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 136.0 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: Nextcloud - (.Nextcloud GmbH.) [HKLM][64Bits] -- {6FA44D28-70A9-4DAF-915E-B90B85C0A08D} [Unsigned] =>.Nextcloud GmbH O42 - Logiciel: OpenShot Video Editor 3.3.0 - (.OpenShot Studios, LLC.) [HKLM][64Bits] -- {4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1 =>.OpenShot Studios, LLC® O42 - Logiciel: PCM Fast Editor - (.PCM Fast Editor.) [HKCU][64Bits] -- b4e96ac10814a05a [Unsigned] =>.PCM Fast Editor O42 - Logiciel: Pegasun System Utilities - (.Pegasun.) [HKLM][64Bits] -- {BFDC3B26-7DB0-43D3-BC84-7E9649C157EA}_is1 [Unsigned] =>.Pegasun O42 - Logiciel: Pro Cycling Manager 2007 - (.Games Software.) [HKLM][64Bits] -- Pro Cycling Manager 2007 [Unsigned] =>.Games Software O42 - Logiciel: Pro Cycling Manager 2007 - (.Games Software.) [HKLM][64Bits] -- Pro Cycling Manager 2007_is1 [Unsigned] =>.Games Software O42 - Logiciel: Quick CPU - (.CoderBag.) [HKLM][64Bits] -- {AE5EF916-ED1B-40AC-BDAE-CBD67D66722F} [Unsigned] O42 - Logiciel: Quick CPU x64 - (.CoderBag LLC.) [HKLM][64Bits] -- {B83DF7F3-83B2-4AB8-931B-3EE0C617D378} [Unsigned] O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek O42 - Logiciel: Revo Uninstaller 2.5.7 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 {0FAE00141B9F1625F78019F259FFFCDF}. =>.VS Revo Group, Ltd. O42 - Logiciel: RomStation - (.RomStation.) [HKLM][64Bits] -- {458550e8-599b-4ff8-b969-b261d95d86ee}_is1 [Unsigned] =>.RomStation O42 - Logiciel: Skype 8.131 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {528BBC91-C272-41DE-99A3-C3C16D478D26} [Unsigned] =>.Skype Technologies S.A. O42 - Logiciel: Skype version 8.137 - (.Skype Technologies S.A..) [HKLM][64Bits] -- Skype_is1 =>.Microsoft® O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy =>.Piriform Software Ltd® O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve Corp.® O42 - Logiciel: SumatraPDF - (.Krzysztof Kowalczyk.) [HKCU][64Bits] -- SumatraPDF =>.Krzysztof Kowalczyk® O42 - Logiciel: TechPowerUp GPU-Z - (.TechPowerUp.) [HKLM][64Bits] -- {8B0F211E-5846-4FB2-B0B9-4EB31546FDF9}}_is1 [Unsigned] =>.TechPowerUp O42 - Logiciel: TP-Link Archer T6E Driver - (.TP-Link.) [HKLM][64Bits] -- {F2CF3250-3769-431E-A808-056BFA917849} [Unsigned] =>.TP-LINK O42 - Logiciel: Undisputed - (.Steel City Interactive.) [HKLM][64Bits] -- Steam App 1451190 {06FB83D0BA7C64B957849B76A8C1DE72}. =>.SteamApp.Game O42 - Logiciel: USB Disk Storage Format Tool 6.1 - (.Authorsoft Corporation.) [HKLM][64Bits] -- USB Disk Storage Format Tool_is1 [Unsigned] =>.Authorsoft Corporation O42 - Logiciel: VdhCoApp 1.6.3 - (.DownloadHelper.) [HKLM][64Bits] -- weh-iss-net.downloadhelper.coapp_is1 [Unsigned] =>.DownloadHelper O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (165) - 8s HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction HKLM\SOFTWARE\1D0EC6DE-4A80-4CC3-A335-E6E41C951198 HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKLM\SOFTWARE\Canon =>.Canon HKLM\SOFTWARE\Chromium =>.Chromium HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\Cybelsoft =>.CybelSoft HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\DownloadHelper =>.DownloadHelper HKLM\SOFTWARE\GIMP 2.10 HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\LibreOffice =>.LibreOffice HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nextcloud GmbH =>.Nextcloud GmbH HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\paint.net =>.Rick Brewster HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PDF Architect 9 =>.pdfforge GmbH HKLM\SOFTWARE\PDF Pro Ltd. =>.Visagesoft HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Setup =>.Unknown HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\1D0EC6DE-4A80-4CC3-A335-E6E41C951198 HKLM\SOFTWARE\WOW6432Node\Absolute Software =>.Absolute Software HKLM\SOFTWARE\WOW6432Node\Avast Software =>.AVAST Software HKLM\SOFTWARE\WOW6432Node\Canon =>.Canon HKLM\SOFTWARE\WOW6432Node\Chromium =>.Chromium HKLM\SOFTWARE\WOW6432Node\ComodoGroup =>.ComodoGroup HKLM\SOFTWARE\WOW6432Node\Cyanide =>.Cyanide HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\Nextcloud GmbH =>.Nextcloud GmbH HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\PDF Pro Ltd. =>.Visagesoft HKLM\SOFTWARE\WOW6432Node\Pro Cycling Manager 2007 HKLM\SOFTWARE\WOW6432Node\QFX Software =>.QFX Software HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype HKLM\SOFTWARE\WOW6432Node\Sports Interactive Ltd =>.Sports Interactive Ltd HKLM\SOFTWARE\WOW6432Node\Sports Interactive Ltd. HKLM\SOFTWARE\WOW6432Node\TP-Link =>.TP-LINK HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Xbox Game Studios HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adlice Software =>.Adlice Software HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\appdatalow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Authorsoft =>.Authorsoft HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKCU\SOFTWARE\Canon =>.Canon HKCU\SOFTWARE\ChangeTracker =>.Legitimate HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CoderBag HKCU\SOFTWARE\Cyanide =>.Cyanide HKCU\SOFTWARE\DenuvoAntiCheat HKCU\SOFTWARE\FreeTime =>.FreeTime Inc HKCU\SOFTWARE\FreeTime/FormatFactory HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript HKCU\SOFTWARE\HWiNFO32 HKCU\SOFTWARE\HWiNFO64 HKCU\SOFTWARE\IGA =>.Legitimate HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Nextcloud GmbH =>.Nextcloud GmbH HKCU\SOFTWARE\paint.net =>.Rick Brewster HKCU\SOFTWARE\PDF Pro Ltd. =>.Visagesoft HKCU\SOFTWARE\Pegasun =>.Pegasun HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QFX Software =>.QFX Software HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\ShowKey HKCU\SOFTWARE\Steel City Interactive HKCU\SOFTWARE\SumatraPDF =>.Krzysztof Kowalczyk HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\techPowerUp =>.TechPowerUp HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\Ubisoft =>.Ubisoft HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software HKU\.DEFAULT\SOFTWARE\AMD =>.AMD HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU\.DEFAULT\SOFTWARE\PDF Architect 9 =>.pdfforge GmbH HKU\.DEFAULT\SOFTWARE\The Document Foundation =>.The Document Foundation HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Adlice Software =>.Adlice Software HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Akeo Consulting =>.Akeo Consulting HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\AMD =>.AMD HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\appdatalow =>.Microsoft Corporation HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Authorsoft =>.Authorsoft HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Canon =>.Canon HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\ChangeTracker =>.Legitimate HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\CoderBag HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Cyanide =>.Cyanide HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\DenuvoAntiCheat HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\FreeTime =>.FreeTime Inc HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\FreeTime/FormatFactory HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\HWiNFO32 HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\HWiNFO64 HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\IGA =>.Legitimate HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Nextcloud GmbH =>.Nextcloud GmbH HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\paint.net =>.Rick Brewster HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\PDF Pro Ltd. =>.Visagesoft HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Pegasun =>.Pegasun HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\QFX Software =>.QFX Software HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\ShowKey HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Steel City Interactive HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\SumatraPDF =>.Krzysztof Kowalczyk HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Sysinternals =>.Sysinternals HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\techPowerUp =>.TechPowerUp HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\The Document Foundation =>.The Document Foundation HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Ubisoft =>.Ubisoft HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (14) - 1s C:\Program Files (x86)\WindowsApps\22364Disney.ESPNBetaPWA_16.0.1.0_neutral__6rarf9sa4v8jt - (..) [][ESPN] C:\Program Files (x86)\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep - (.Canon Inc..) [][Canon Inkjet Print Utility] =>Canon Inc. C:\Program Files (x86)\WindowsApps\5319275A.WhatsAppDesktop_2.2509.4.0_x64__cv1g1gvanyjgm - (.WhatsApp Inc..) [][WhatsApp] C:\Program Files (x86)\WindowsApps\BytedancePte.Ltd.TikTok_1.0.5.0_neutral__6yccndn6064se - (..) [][TikTok] C:\Program Files (x86)\WindowsApps\MicrosoftTeams_25031.702.3408.1909_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][Microsoft Teams (personal)] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.Core_1000.22700.1012.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:ProductPkgDisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.WebExperience_525.1301.30.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Web Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.CrossDevice_0.25012.50.0_x64__cw5n1h2txyewy - (..) [][ms-resource://MicrosoftWindows.CrossDevice/CrossDeviceComponentStub/Resources/PackageName] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.26100.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MSTeams_25031.805.3440.5290_x64__8wekyb3d8bbwe - (..) [][Microsoft Teams] C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][Realtek Audio Control] =>Realtek Semiconductor Corp C:\Program Files (x86)\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0 - (.Spotify.) [][ms-resource:AppTitle] =>Spotify C:\Program Files (x86)\WindowsApps\WuhanNetPowerTechnologyCo.1499394B7A7B3_6.0.0.0_x64__63m8b6nby1dvp - (..) [][视频格式转换大师] ---\\ CONTENU DES DOSSIERS PROGRAMMES (122) - 3s O43 - CFD: 31/01/2023 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 18/02/2023 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc. O43 - CFD: 30/03/2023 - [] D -- C:\Program Files\COMODO =>.Comodo Group. O43 - CFD: 12/03/2025 - [0] D -- C:\Program Files\Cybelsoft =>.Cybelsoft O43 - CFD: 05/12/2024 - [] D -- C:\Program Files\Denuvo Anti-Cheat {0BA1CCC11A40C754CA631EA6}. O43 - CFD: 19/02/2024 - [] D -- C:\Program Files\DownloadHelper CoApp [Unsigned] O43 - CFD: 02/02/2023 - [] D -- C:\Program Files\GIMP 2 {04C7F0B4A058C867A8174952557CFA2F}. O43 - CFD: 12/03/2025 - [] D -- C:\Program Files\HWiNFO64 O43 - CFD: 05/03/2025 - [] D -- C:\Program Files\LibreOffice =>.LibreOffice O43 - CFD: 08/03/2024 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 06/03/2025 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 23/01/2025 - [] D -- C:\Program Files\net.downloadhelper.coapp [Unsigned] O43 - CFD: 10/01/2025 - [] D -- C:\Program Files\Nextcloud {00BF5A991AFB9ACA79C3329007B9AA620A}. O43 - CFD: 12/03/2025 - [] D -- C:\Program Files\QuickCPU {248393CEB4B89604268EB5AABA48C5E8}. O43 - CFD: 12/11/2024 - [] D -- C:\Program Files\Speccy =>.Piriform O43 - CFD: 13/11/2024 - [] D -- C:\Program Files\USB Disk Storage Format Tool =>.Authorsoft O43 - CFD: 18/02/2023 - [] D -- C:\Program Files (x86)\Canon =>.Canon Inc.® O43 - CFD: 12/03/2024 - [] D -- C:\Program Files (x86)\Championship Manager 01-02 [Unsigned] O43 - CFD: 07/02/2023 - [0] D -- C:\Program Files (x86)\Elaborate Bytes =>.Elaborate Bytes O43 - CFD: 08/03/2025 - [] D -- C:\Program Files (x86)\Freemake =>.Freemake O43 - CFD: 24/01/2025 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 17/03/2024 - [] D -- C:\Program Files (x86)\KeyScrambler =>.QFX Software O43 - CFD: 05/02/2023 - [] D -- C:\Program Files (x86)\Pegasun {7FA7B4F0E07AAA123C346A3057584358}. =>.Pegasun O43 - CFD: 18/04/2023 - [] D -- C:\Program Files (x86)\QuickCPU {248393CEB4B89604268EB5AABA48C5E8}. O43 - CFD: 24/01/2025 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 22/03/2023 - [] D -- C:\Program Files (x86)\TP-Link =>.TP-LINK O43 - CFD: 01/04/2024 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities =>.Canon Inc. O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP560 series =>.Canon Inc. O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities =>.Canon Inc. O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Championship Manager 01-02 O43 - CFD: 31/03/2023 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO =>.Comodo Group. O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cyanide =>.Cyanide O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyScrambler =>.QFX Software O43 - CFD: 05/03/2025 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice =>.LibreOffice O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pegasun System Utilities O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickCPU O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickCPU64 O43 - CFD: 21/12/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 06/03/2025 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy =>.Piriform O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-Link =>.TP-LINK O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Storage Format Tool 6.1 =>.Authorsoft O43 - CFD: 22/11/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 18/03/2024 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 10/04/2023 - [0] D -- C:\ProgramData\BrightData O43 - CFD: 01/02/2023 - [] D -- C:\ProgramData\Canneverbe Limited =>.Canneverbe Limited O43 - CFD: 18/02/2023 - [0] D -- C:\ProgramData\Canon IJ Network Tool =>.Canon Inc. O43 - CFD: 18/02/2023 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc. O43 - CFD: 02/04/2023 - [] D -- C:\ProgramData\Comodo =>.Comodo Group. O43 - CFD: 30/03/2023 - [0] D -- C:\ProgramData\Comodo Downloader =>.Comodo Group. O43 - CFD: 18/01/2025 - [0] D -- C:\ProgramData\dbg =>.DBG O43 - CFD: 06/02/2023 - [] D -- C:\ProgramData\iTop O43 - CFD: 08/03/2024 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 13/03/2025 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 18/04/2023 - [] D -- C:\ProgramData\QFX Software =>.QFX Software O43 - CFD: 30/03/2023 - [0] D -- C:\ProgramData\Shared Space =>.Comodo Group. O43 - CFD: 22/03/2023 - [] D -- C:\ProgramData\TP-Link =>.TP-LINK O43 - CFD: 06/02/2023 - [] D -- C:\ProgramData\{150F4013-6884-4350-8DDC-6BFCB4C5DC15} O43 - CFD: 10/04/2023 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared =>.Ellora Assets Corporation O43 - CFD: 05/12/2024 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 31/01/2023 - [] D -- C:\Users\lstco\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 01/02/2023 - [] D -- C:\Users\lstco\AppData\Roaming\Canneverbe Limited =>.Canneverbe Limited O43 - CFD: 30/03/2023 - [] D -- C:\Users\lstco\AppData\Roaming\Comodo =>.Comodo Group. O43 - CFD: 07/02/2023 - [] D -- C:\Users\lstco\AppData\Roaming\Disc-Soft O43 - CFD: 19/10/2024 - [] D -- C:\Users\lstco\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 03/03/2023 - [] D -- C:\Users\lstco\AppData\Roaming\GIMP =>.The GIMP Team O43 - CFD: 02/02/2023 - [] D -- C:\Users\lstco\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 31/01/2023 - [] D -- C:\Users\lstco\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 05/02/2023 - [] D -- C:\Users\lstco\AppData\Roaming\Nextcloud O43 - CFD: 28/07/2024 - [] D -- C:\Users\lstco\AppData\Roaming\Pegasun =>.Pegasun O43 - CFD: 01/03/2025 - [] D -- C:\Users\lstco\AppData\Roaming\Pro Cycling Manager 2007 O43 - CFD: 18/04/2023 - [] D -- C:\Users\lstco\AppData\Roaming\QFX Software =>.QFX Software O43 - CFD: 12/03/2025 - [] D -- C:\Users\lstco\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 13/03/2025 - [] D -- C:\Users\lstco\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 01/02/2023 - [] D -- C:\Users\lstco\AppData\Local\AMD =>.AMD O43 - CFD: 08/04/2023 - [] D -- C:\Users\lstco\AppData\Local\babl-0.1 =>.The GIMP Team O43 - CFD: 18/10/2023 - [] D -- C:\Users\lstco\AppData\Local\Backup =>.Symantec O43 - CFD: 10/04/2023 - [0] D -- C:\Users\lstco\AppData\Local\BrightData O43 - CFD: 03/02/2023 - [] D -- C:\Users\lstco\AppData\Local\cache =>.Legitimate O43 - CFD: 31/01/2023 - [] D -- C:\Users\lstco\AppData\Local\CEF =>.CEF O43 - CFD: 17/03/2024 - [] D -- C:\Users\lstco\AppData\Local\Coderbag O43 - CFD: 30/03/2023 - [] D -- C:\Users\lstco\AppData\Local\Comodo =>.Comodo Group. O43 - CFD: 12/03/2025 - [] D -- C:\Users\lstco\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 18/01/2025 - [0] D -- C:\Users\lstco\AppData\Local\DBG =>.DBG O43 - CFD: 31/05/2024 - [] D -- C:\Users\lstco\AppData\Local\Disc_Soft_FZE_LLC O43 - CFD: 07/02/2023 - [] D -- C:\Users\lstco\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd O43 - CFD: 24/01/2025 - [] D -- C:\Users\lstco\AppData\Local\driverscloud O43 - CFD: 20/03/2023 - [] D -- C:\Users\lstco\AppData\Local\FlightSimulator O43 - CFD: 06/03/2025 - [] D -- C:\Users\lstco\AppData\Local\FreemakeAudioConverter O43 - CFD: 10/04/2023 - [] D -- C:\Users\lstco\AppData\Local\FreemakeVideoConverter =>.Freemake O43 - CFD: 02/02/2023 - [] D -- C:\Users\lstco\AppData\Local\Free_Time_Co.,_Ltd O43 - CFD: 05/04/2023 - [0] D -- C:\Users\lstco\AppData\Local\FTMod O43 - CFD: 03/03/2023 - [] D -- C:\Users\lstco\AppData\Local\gegl-0.4 =>.Portable Apps O43 - CFD: 03/03/2023 - [] D -- C:\Users\lstco\AppData\Local\GIMP =>.The GIMP Team O43 - CFD: 03/03/2023 - [] D -- C:\Users\lstco\AppData\Local\gtk-2.0 =>.GTK Project O43 - CFD: 19/03/2023 - [] D -- C:\Users\lstco\AppData\Local\INetHistory O43 - CFD: 13/02/2023 - [] D -- C:\Users\lstco\AppData\Local\JxBrowser O43 - CFD: 13/03/2025 - [] D -- C:\Users\lstco\AppData\Local\Malwarebytes =>.Malwarebytes O43 - CFD: 31/01/2023 - [] D -- C:\Users\lstco\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 31/01/2023 - [] D -- C:\Users\lstco\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 04/02/2023 - [] D -- C:\Users\lstco\AppData\Local\Nextcloud O43 - CFD: 23/01/2025 - [] D -- C:\Users\lstco\AppData\Local\PackageManagement O43 - CFD: 08/03/2023 - [] D -- C:\Users\lstco\AppData\Local\paint.net =>.Rick Brewster O43 - CFD: 02/03/2023 - [0] D -- C:\Users\lstco\AppData\Local\PDF Creator O43 - CFD: 13/02/2023 - [] D -- C:\Users\lstco\AppData\Local\RomStation =>.RomStation O43 - CFD: 02/02/2023 - [] D -- C:\Users\lstco\AppData\Local\Rufus O43 - CFD: 20/10/2024 - [] D -- C:\Users\lstco\AppData\Local\Steam =>.Steam Games O43 - CFD: 12/11/2024 - [] D -- C:\Users\lstco\AppData\Local\SumatraPDF =>.Krzysztof Kowalczyk O43 - CFD: 22/03/2023 - [] D -- C:\Users\lstco\AppData\Local\TP-Link =>.TP-LINK O43 - CFD: 13/10/2024 - [] D -- C:\Users\lstco\AppData\Local\VS Revo Group =>.VS Revo Group O43 - CFD: 11/03/2025 - [] D -- C:\Users\lstco\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 03/03/2025 - [] D -- C:\Users\lstco\AppData\LocalLow\AMD =>.AMD O43 - CFD: 12/04/2023 - [0] D -- C:\Users\lstco\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 25/10/2024 - [] D -- C:\Users\lstco\AppData\LocalLow\Steel City Interactive O43 - CFD: 03/03/2025 - [] RD -- C:\Users\lstco\Desktop\Jeux de Sergio O43 - CFD: 12/03/2025 - [] RD -- C:\Users\lstco\Desktop\Logiciel utiles O43 - CFD: 10/03/2025 - [] D -- C:\Users\lstco\Desktop\ZoukCompas 2023-2024 O43 - CFD: 22/11/2024 - [] RD -- C:\Users\lstco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 22/11/2024 - [] D -- C:\Users\lstco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PCM Fast Editor =>.PCM Fast Editor O43 - CFD: 22/11/2024 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Malwarebytes =>.Malwarebytes ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 1s O106 - SIOI: [ NextcloudError] - {E0342B74-7593-4C70-9D61-22F294AAFE05}. (.Nextcloud GmbH - Nextcloud shell extension.) -- C:\Program Files\Nextcloud\NCOverlays.dll {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O106 - SIOI: [ NextcloudOK] - {E1094E94-BE93-4EA2-9639-8475C68F3886}. (.Nextcloud GmbH - Nextcloud shell extension.) -- C:\Program Files\Nextcloud\NCOverlays.dll {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O106 - SIOI: [ NextcloudOKShared] - {E243AD85-F71B-496B-B17E-B8091CBE93D2}. (.Nextcloud GmbH - Nextcloud shell extension.) -- C:\Program Files\Nextcloud\NCOverlays.dll {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O106 - SIOI: [ NextcloudSync] - {E3D6DB20-1D83-4829-B5C9-941B31C0C35A}. (.Nextcloud GmbH - Nextcloud shell extension.) -- C:\Program Files\Nextcloud\NCOverlays.dll {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O106 - SIOI: [ NextcloudWarning] - {E4977F33-F93A-4A0A-9D3C-83DEA0EE8483}. (.Nextcloud GmbH - Nextcloud shell extension.) -- C:\Program Files\Nextcloud\NCOverlays.dll {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (26) - 0s O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: PDFCreator.ShellContextMenu [64Bits] - {d9cea52e-100d-4159-89ea-76e845bc13e1} . (.Orphan.) [Unsigned] O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH3: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH3: NextcloudContextMenuHandler [64Bits] - {BC6988AB-ACE2-4B81-84DC-DC34F9B24401} . (.Nextcloud GmbH - Windows Shell Context Menu Handler.) -- C:\Program Files\Nextcloud\NCContextMenu.dll {00BF5A991AFB9ACA79C3329007B9AA620A}. =>.Nextcloud GmbH O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - Radeon Software: Desktop Control Panel.) -- C:\WINDOWS\System32\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (12) - 1s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\LSASS.exe - (.Microsoft Corporation - Local Security Authority Process.) [AuditLevel\\8] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\notepad.exe - (.Microsoft Corporation - Bloc-notes.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ ENUMERATION DES CLES StartupReg (1) - 0s O53 - SMSR:HKLM\...\startupreg\Steam [Key] [64Bits] . (.Valve Corporation - Steam.) -- D:\Program Files (x86)\Steam\steam.exe =>.Valve Corporation ---\\ LISTE DES PILOTES DU SYSTEME (83) - 8s O58 - SDL:2024/04/01 08:22:27 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108464] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1136544] =>.Microsoft® O58 - SDL:2024/04/01 08:22:18 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2024/04/01 08:22:19 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2022/01/28 17:02:54 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [118576] =>.Advanced Micro Devices Inc.® O58 - SDL:2024/04/01 08:22:28 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [84400] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [260512] =>.Microsoft® O58 - SDL:2024/04/01 08:22:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [28064] =>.Microsoft® O58 - SDL:2024/04/01 08:22:20 A . (.Apple Inc. - Apple Solid State Drive Device.) -- C:\WINDOWS\System32\drivers\AppleSSD.sys [113456] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [133024] =>.Microsoft® O58 - SDL:2019/07/22 08:48:08 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [108152] =>.Microsoft® O58 - SDL:2015/09/28 19:08:15 A . (.Sysprogs OU - WinCDEmu virtual CDROM bus.) -- C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys [172376] =>.Sysprogs OU® O58 - SDL:2024/04/01 08:22:20 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2017/09/24 13:48:06 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\WINDOWS\System32\drivers\BCMWL63a.SYS [8519384] =>.Broadcom Corporation® O58 - SDL:2024/04/01 08:22:25 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [534944] =>.Microsoft® O58 - SDL:2024/04/01 08:22:38 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [145200] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [320944] =>.Microsoft® O58 - SDL:2024/04/01 08:22:38 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2024/04/01 08:22:28 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1854880] =>.Microsoft® O58 - SDL:2023/02/07 13:00:53 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256] =>.AVB Disc Soft, SIA® O58 - SDL:2023/02/07 13:00:53 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696] {76CEA6897FE1FB6E06DF03619025CC50}. =>.Disc Soft Ltd O58 - SDL:2017/05/14 17:29:02 A . (.Elaborate Bytes AG - ElbyCD Windows x64 I/O driver.) -- C:\WINDOWS\System32\drivers\ElbyCDIO.sys [42616] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2024/04/01 08:22:25 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbd0a.sys [3424160] =>.Microsoft® O58 - SDL:2024/04/01 08:22:25 A . (.Marvell Semiconductor Inc. - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3441568] =>.Microsoft® O58 - SDL:2024/11/22 11:01:13 A . (...) -- C:\WINDOWS\System32\drivers\globmerger.sys [136648] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [65440] =>.Microsoft® O58 - SDL:2024/04/01 08:22:20 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:20 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:25 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2024/04/01 08:22:21 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2024/04/01 08:22:29 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885568] =>.Microsoft® O58 - SDL:2024/04/01 08:22:29 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [413088] =>.Microsoft® O58 - SDL:2024/04/01 08:22:38 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [559920] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [187200] =>.Microsoft® O58 - SDL:2018/09/08 07:15:56 A . (.QFX Software Corporation - KeyScrambler Keyboard Encryption Driver.) -- C:\WINDOWS\System32\drivers\keyscrambler.sys [243800] =>.QFX Software Corporation® O58 - SDL:2024/04/01 08:22:28 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [110000] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [125344] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [138560] =>.Microsoft® O58 - SDL:2023/01/31 19:09:21 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2025/01/24 11:15:44 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [232024] =>.Microsoft® O58 - SDL:2025/02/22 11:12:19 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [22120] =>.Microsoft® O58 - SDL:2024/07/12 10:55:03 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239568] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Avago Technologies - MEGASAS2i RAID Controller Driver for Window.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81840] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Broadcom Inc - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [101168] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [576944] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1132336] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Broadcom Limited - Broadcom MPI 3.0 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\mpi3drvi.sys [90544] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [64928] =>.Microsoft® O58 - SDL:2024/04/01 08:22:44 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [147248] =>.Microsoft® O58 - SDL:2024/11/22 11:01:20 A . (...) -- C:\WINDOWS\System32\drivers\NDKPerf.sys [83360] =>.Microsoft® O58 - SDL:2024/04/01 08:22:38 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [151472] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [167344] =>.Microsoft® O58 - SDL:2008/02/08 17:14:50 A . (.Cyanide - Cycling Manager 2007 Environment Driver.) -- C:\WINDOWS\System32\drivers\pe3akt6c.sys [72328] =>.Protection Technology, Ltd.® O58 - SDL:2024/04/01 08:22:28 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [59824] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [69552] =>.Microsoft® O58 - SDL:2008/02/08 17:14:20 A . (.Cyanide - Cycling Manager 2007 File System Driver.) -- C:\WINDOWS\System32\drivers\pf2akt6c.sys [107656] =>.Protection Technology, Ltd.® O58 - SDL:2008/02/08 17:14:00 A . (.Cyanide - Cycling Manager 2007 Synchronization Driver.) -- C:\WINDOWS\System32\drivers\ps7akt6c.sys [103568] =>.Protection Technology, Ltd.® O58 - SDL:2024/04/01 08:22:28 A . (.VMware, Inc. - VMware PVSCSI StorPort driver (64-bit).) -- C:\WINDOWS\System32\drivers\pvscsii.sys [45488] =>.Microsoft® O58 - SDL:2024/03/28 04:43:20 A . (.VS Revo Group - Revo Uninstaller Process Detector.) -- C:\WINDOWS\System32\drivers\RevoProcessDetector.sys [19504] =>.Microsoft® O58 - SDL:2019/11/20 05:00:20 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1167768] =>.Realtek Semiconductor Corp.® O58 - SDL:2024/11/22 11:01:05 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [86016] [Unsigned] =>.Realtek O58 - SDL:2021/02/17 02:40:44 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5977120] =>.Realtek Semiconductor Corp.® O58 - SDL:2024/04/01 08:22:28 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [45984] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [82848] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [210848] =>.Microsoft® O58 - SDL:2022/09/30 05:23:56 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [167440] =>.Samsung Electronics CO., LTD.® O58 - SDL:2022/09/30 05:24:08 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [174112] =>.Samsung Electronics CO., LTD.® O58 - SDL:2023/02/21 10:59:42 A . (.Valve Corporation - Steam Xbox Controller Enhanced Features Dri.) -- C:\WINDOWS\System32\drivers\steamxbox.sys [278208] =>.Valve Corp.® O58 - SDL:2024/04/01 08:22:28 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [32176] =>.Microsoft® O58 - SDL:2020/02/22 09:43:04 A . (.Elaborate Bytes AG - Virtual CloneDrive storage miniport.) -- C:\WINDOWS\System32\drivers\VClone.sys [44544] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [167840] =>.Microsoft® O58 - SDL:2024/04/01 08:22:28 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [306608] =>.Microsoft® O58 - SDL:2024/04/01 08:22:43 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [37184] =>.Microsoft® O58 - SDL:2024/04/01 08:22:41 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [74032] =>.Microsoft® O58 - SDL:2017/09/24 13:48:06 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\WINDOWS\System32\bcmwl63a.sys [8519384] =>.Broadcom Corporation® ---\\ DERNIERS FICHIERS MODIFIES OU CREES (Utilisateur) (2) - 2s O61 - LFC: 2025/03/07 06:18:38 A . (..) -- C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll [537656] {062C3C468163EB513E02E999226743D6}. O61 - LFC: 2025/03/07 06:18:38 A . (..) -- C:\ProgramData\Malwarebytes\MBAMService\sample.dll [537656] {062C3C468163EB513E02E999226743D6}. ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (1) - 8s O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (48) - 1s O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [434176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1613824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [876544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [57344] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [184320] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [122880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [946176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [282624] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [593920] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [135168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [425984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2056192] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1454080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1024000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1146880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [942080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [233472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [233472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [114688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [274432] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [1409024] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1654784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [90112] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [139264] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1105920] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [503808] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [98304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [811376] =>.Microsoft® O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [368640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [181168] =>.Microsoft® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1470464] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [278528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [143360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1129528] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [352256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [319488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1236992] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [81920] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [606208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [577536] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2932736] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [425984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [131072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [1179648] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [192512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [380928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [462848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [606208] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (16) - 11s O87 - FAEL: "{085B65E1-6DD3-4F9B-AE4F-BAFAE351E978}" [Out-None-P17-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B32E9980-052C-4061-A780-2F34F0AD2AF5}" [Out-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{2D1257C1-A7AB-44F0-B7AD-6EFA14AC18E1}" [In-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BD27D4FD-0AF3-4641-AE33-93161CAD2DB7}" [In-None-P17-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B185F2FD-7EBC-4FB6-BF24-40B24C4458E7}" [In-None-P17-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{853AB357-F9DF-47FA-B347-BBC0F07613DB}" [In-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0B9B7564-C230-4DB5-802B-BBAA1FC954AD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{AB4CC19B-5344-461B-A2E9-CC43E676A8DD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3EDFDB36-4B8B-4645-9AD4-12CE672822F2}" [In-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{FEF08BB9-E19F-45E4-8E1B-640B23E3B28C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.250.335.0_x64__zpdnekdrzrea0\Spotify.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{ADFA6F89-4864-4CD9-BB64-85ED2AFF9B8B}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\Steam\steamapps\common\Undisputed\Undisputed.exe [Unsigned] =>.Steam SteamApps Games O87 - FAEL: "{5E38EA1B-7EDB-4A5B-8FD2-8BF181BBEBD7}" [In-None-P6-TRUE] .(...) -- D:\Program Files (x86)\Steam\steamapps\common\Undisputed\Undisputed.exe [Unsigned] =>.Steam SteamApps Games O87 - FAEL: "UDP Query User{EF3DA454-2000-4D17-B533-00FC708F7B39}C:\xboxgames\microsoft flight simulator\content\flightsimulator.exe" [In-None-P17-TRUE] .(...) -- C:\xboxgames\microsoft flight simulator\content\flightsimulator.exe [Unsigned] O87 - FAEL: "TCP Query User{4CE8FABA-ECF3-4E24-A134-93ED4C2A88D7}C:\xboxgames\microsoft flight simulator\content\flightsimulator.exe" [In-None-P6-TRUE] .(...) -- C:\xboxgames\microsoft flight simulator\content\flightsimulator.exe [Unsigned] O87 - FAEL: "{F317EDC4-5264-44AD-BF76-34AE2287C2FB}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Cybelsoft\DriversCloud.com\DriversCloudAgent.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DF0EE50B-98C1-48A2-B55D-4A49F5682695}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Cybelsoft\DriversCloud.com\DriversCloudAgent.exe [Unsigned] (.not file.) =>.SUP.Orphan ---\\ CODES PRODUITS LOGICIELS (3) - 0s O90 - PUC: "3F7FD38B2B388BA439B1E30E6C713D87" [HKLM] . (.Quick CPU x64.) -- C:\WINDOWS\Installer\{B83DF7F3-83B2-4AB8-931B-3EE0C617D378}\icon.ico O90 - PUC: "619FE5EAB1DECA04DBEABC6DD76627F2" [HKLM] . (.Quick CPU.) -- C:\WINDOWS\Installer\{AE5EF916-ED1B-40AC-BDAE-CBD67D66722F}\icon.ico O90 - PUC: "82D44AF69A07FAD419E59BB0580C0AD8" [HKLM] . (.Nextcloud.) -- C:\WINDOWS\Installer\{6FA44D28-70A9-4DAF-915E-B90B85C0A08D}\Nextcloud.ico ---\\ PACKAGES WINDOWS INSTALLER (8) - 7s [MD5.477F23CE0959FD6DB5689EDE03603A66] [WIS][2025/01/10 12:03:58] (.Nextcloud GmbH - Nextcloud 3.15.3 (build 20250107) (Git revi.) -- C:\WINDOWS\Installer\19218f0a.msi [161038336] =>.Nextcloud GmbH [MD5.89D263E81DE7FCDD56D080EC913F97EE] [WIS][2025/02/13 11:54:17] (.The Document Foundation - LibreOffice 25.2.) -- C:\WINDOWS\Installer\405b2cd.msi [364236800] =>.The Document Foundation [MD5.6E16842A86041EDBD5506C757268260D] [WIS][2025/03/05 10:56:50] (.The Document Foundation - LibreOffice 25.2.) -- C:\WINDOWS\Installer\54f22d7.msi [365469696] =>.The Document Foundation [MD5.6E16842A86041EDBD5506C757268260D] [WIS][2025/03/05 10:56:50] (.The Document Foundation - LibreOffice 25.2.) -- C:\WINDOWS\Installer\54f5661.msi [365469696] =>.The Document Foundation [MD5.04B8C83FF79FBF97F94C4CBEC39C41F8] [WIS][2024/10/31 11:42:55] (.Skype Technologies S.A. - Skype 8.131.) -- C:\WINDOWS\Installer\5a2a405.msi [91828224] =>.Skype Technologies S.A. [MD5.E7B40366E01F072BB5DE899B708C9919] [WIS][2024/12/21 18:46:05] (.The Document Foundation - LibreOffice 24.8.) -- C:\WINDOWS\Installer\a647c1b.msi [363819008] =>.The Document Foundation [MD5.ADCEA7F61AB497327F41BB018667FBFE] [WIS][2024/05/31 14:30:25] (.CoderBag LLC - Quick CPU x64.) -- C:\WINDOWS\Installer\e23fe58.msi [35676160] [MD5.5BBDEF21CAACFE6E18544D78244489F9] [WIS][2023/03/25 11:44:12] (.CoderBag - Quick CPU.) -- C:\WINDOWS\Installer\ecdeb1f.msi [35024896] ---\\ OBSERVATEURS des évènements (112) - 19s Application.Warning: AutoEnrollment (83) ~Numéro: 10583 ~Date: 03/13/2025 09:20:24 AM ~ID: 64 ~Description: Système localdb 7f 56 92 ef 18 f6 75 f4 a1 16 1f 09 4c d7 b1 d3 97 48 8b ~Suggestion: Installer le Kit de développement logiciel (SDK). Application.Error: Microsoft-Windows-CAPI2 (68) ~Numéro: 10473 ~Date: 03/12/2025 10:33:35 AM ~ID: 513 ~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.Details:AddWin32ServiceFiles: Unable to back up image of service Avast Tools since QueryServiceConfig API failedSystem Error:Le fichier spéci ~Suggestion: Aucune Application.Error: VSS (5) ~Numéro: 10454 ~Date: 03/12/2025 10:27:22 AM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécutionContexte : État actuel: DoSnapsho ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Error: AbtPaaS (4) ~Numéro: 10238 ~Date: 03/12/2025 10:16:35 AM ~ID: 0 ~Description: AbtPaaSStartRpcnet - RPCNET service is not running Application.Warning: Microsoft-Windows-System-Restore (9) ~Numéro: 8916 ~Date: 03/02/2025 08:58:57 AM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy \\?\GLOBALROOT\Device\HarddiskVolumeShadowCopy9 with error 0x80070057. ~Suggestion: Exécuter la commande chkdsk / f Application.Error: Application Hang (13) ~Numéro: 8811 ~Date: 02/28/2025 08:13:27 PM ~ID: 1002 ~Description: Le programme vlc.exe version 3.0.21.0 a cessé d'interagir avec Windows et a été fermé. Pour savoir si vous disposez de plus d'informations sur le problème, consultez l'historique des problèmes dans le panneau de configuration Sécurité et maintenance. ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: Application Error (4) ~Numéro: 8535 ~Date: 02/26/2025 06:24:25 PM ~ID: 1000 ~Description: Nom de l'application défaillante : GameInputSvc.exe, version : 0.2309.26100.3037, horodatage : 0x676739cb Nom du module défaillant : combase.DLL, version : 10.0.26100.3037, horodatage : 0xb13e0a5c Exception code: 0xc0000005 Fault offset: 0x0000000000 ~Suggestion: Réparer ou réinstaller l'application. Application.Error: Microsoft-Windows-Perflib (2) ~Numéro: 7572 ~Date: 02/15/2025 08:22:59 PM ~ID: 1023 ~Description: Windows ne peut pas charger la DLL de compteur extensible « C:\WINDOWS\system32\sysmain.dll » (code d'erreur Win32 126). ~Suggestion: Accorder l’autorisation lecture et exécution pour le compte de Service réseau sur la DLL de compteur de performances pour SQL Server Analysis Services. Application.Warning: WindowsAppRuntime Installer (8) ~Numéro: 5912 ~Date: 01/30/2025 10:17:32 AM ~ID: 15601 ~Description: Error 0x80073CF1: Windows App Runtime Installer (Activity ID: {2b8ff26d-72f7-0006-0159-902bf772db01}) failed in Provisioning Package Microsoft.WinAppRuntime.DDLM.5001.311.2039.0-x8_5001.311.2039.0_x86__8wekyb3d8bbwe (Activity Id:{2b8ff26d-72f7-0006-0 System.Warning: DCOM (15) ~Numéro: 13288 ~Date: 03/13/2025 09:22:11 AM ~ID: 10016 ~Description: propres à l’applicationLocalExécutionWindows.SecurityCenter.WscDataProtectionNon disponibleAUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Service Control Manager (145) ~Numéro: 13280 ~Date: 03/13/2025 09:20:14 AM ~ID: 7034 ~Description: Le service GameInput Service s’est terminé de façon inattendue pour la 6ème fois. System.Error: Application Popup (12) ~Numéro: 13185 ~Date: 03/13/2025 09:20:01 AM ~ID: 56 ~Description: ACPI2 System.Warning: Microsoft-Windows-WLAN-AutoConfig (8) ~Numéro: 13165 ~Date: 03/12/2025 11:52:34 PM ~ID: 10002 ~Description: Le module d’extensibilité WLAN s’est arrêté. Chemin d’accès du module : C:\WINDOWS\System32\bcmihvsrv64.dll ~Suggestion: 1)Désactivez/Réactiver la connexion réseau sans fil. ou 2) Redémarrer le service WLAN AutoConfig System.Warning: Microsoft-Windows-DNS-Client (1) ~Numéro: 13105 ~Date: 03/12/2025 11:15:28 AM ~ID: 1014 ~Description: La résolution de noms pour le nom v10.events.data.microsoft.com expirée après qu’aucun des serveurs DNS configurés n’a répondu. PID client 6064. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Error: Microsoft-Windows-DeviceAssociationService (11) ~Numéro: 12938 ~Date: 03/12/2025 09:59:35 AM ~ID: 3503 ~Description: Device Association Service a détecté un échec de découverte de point de terminaison. System.Warning: Microsoft-Windows-Time-Service (25) ~Numéro: 12909 ~Date: 03/12/2025 09:42:00 AM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "time.windows.com,0x9". NtpClient réessaiera dans 15 minutes, puis doublera l'intervalle d'attente pour les tentatives suiva ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Error: EventLog (4) ~Numéro: 12441 ~Date: 03/09/2025 12:03:54 PM ~ID: 6008 ~Description: L’arrêt système précédant à 20:31:58 le ‎08/‎03/‎2025 n’était pas prévu. System.Error: Microsoft-Windows-Kernel-Boot (1) ~Numéro: 12429 ~Date: 03/09/2025 12:03:43 PM ~ID: 29 ~Description: 3221225595A fatal error occurred processing the restoration data. System.Error: Microsoft-Windows-WindowsUpdateClient (3) ~Numéro: 11629 ~Date: 03/04/2025 10:19:13 AM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80073d02 : 9NBLGGH4NNS1-Microsoft.DesktopAppInstaller. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: Microsoft-Windows-Bits-Client (1) ~Numéro: 9076 ~Date: 02/12/2025 12:15:55 PM ~ID: 16385 ~Description: Lors de l’annulation de la tâche « MozillaUpdate 308046B0AF4A39CB », le service BITS n’a pas pu supprimer certains fichiers temporaires. Pour récupérer de l’espace disque, supprimez les fichiers listés ci-dessous. L’ID de tâche était {0252bc1c-6714-4 ---\\ SCAN ADDITIONNEL (48) - 3s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFCreator.ShellContextMenu =>.SUP.Orphan HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\RomStation\RomStation.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Program Files\CPUID\CPU-Z\cpuz.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Program Files\CPUID\CPU-Z\cpuz.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\CrucialFRScan.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Downloads\double-driver\Double Driver\dd.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Downloads\double-driver\Double Driver\dd.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\AppData\Local\Temp\MCConfigNsis\mcsetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\AppData\Local\Temp\MCConfigNsis\mcsetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\UCheck_setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\UCheck_setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBUpdateDlg.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBUpdateDlg.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner(1).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner(1).exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\FRST.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\FRST.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\RomStation\RomStation.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Program Files\CPUID\CPU-Z\cpuz.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Program Files\CPUID\CPU-Z\cpuz.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\CrucialFRScan.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Downloads\double-driver\Double Driver\dd.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Downloads\double-driver\Double Driver\dd.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\AppData\Local\Temp\MCConfigNsis\mcsetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\AppData\Local\Temp\MCConfigNsis\mcsetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\UCheck_setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\UCheck_setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBUpdateDlg.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBUpdateDlg.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner(1).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner(1).exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\FRST.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\Desktop\FRST.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2715982157-3697937772-1319394629-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\lstco\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache ---\\ RECAPITULATIF DES ELEMENTS TROUVES (5) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.FirefoxRestriction https://nicolascoolman.eu/forum/Topic/2024/08/26/muicache-cle-de-registre/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [00A657F778B31AE523D667131718D16EB2] [01/11/2024] (.Malwarebytes Inc..) - C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mb5uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [03/12/2024] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [10/03/2025] (.Malwarebytes Inc..) - C:\Users\lstco\Desktop\Logiciel utiles\adwcleaner .exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [11/03/2025] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [11/03/2025] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [18/12/2024] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [24/02/2025] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [24/02/2025] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [24/02/2025] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [24/02/2025] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [30/07/2024] (.Malwarebytes Inc..) - C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbambgnativemsg.exe =>.Malwarebytes Inc. [00BF5A991AFB9ACA79C3329007B9AA620A] [07/01/2025] (.Nextcloud GmbH.) - C:\Program Files\Nextcloud\NCContextMenu.dll =>.Not verified [00BF5A991AFB9ACA79C3329007B9AA620A] [07/01/2025] (.Nextcloud GmbH.) - C:\Program Files\Nextcloud\NCOverlays.dll =>.Not verified [00BF5A991AFB9ACA79C3329007B9AA620A] [07/01/2025] (.Nextcloud GmbH.) - C:\Program Files\Nextcloud\nextcloud.exe =>.Not verified [00C8A79ACFA20CA41509245C1F7F64FFC4] [12/11/2024] (.Krzysztof Kowalczyk.) - C:\Users\lstco\AppData\Local\SumatraPDF\SumatraPDF.exe =>.Krzysztof Kowalczyk [02857652FABCDAB1C8BC80B491CF9472] [21/02/2023] (.Valve Corp..) - C:\WINDOWS\System32\drivers\steamxbox.sys =>.Valve Corp. [04C7F0B4A058C867A8174952557CFA2F] [03/05/2024] (.Jernej Simončič.) - C:\Program Files\GIMP 2\bin\gimp-2.10.exe =>.Not verified [04C7F0B4A058C867A8174952557CFA2F] [11/10/2024] (.Jernej Simončič.) - C:\Program Files\GIMP 2\uninst\unins000.exe =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ig.exe =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\MBAMCore.dll =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\MBAMCore_b.dll =>.Not verified [062C3C468163EB513E02E999226743D6] [07/03/2025] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\sample.dll =>.Not verified [063D0C011B143C57893FE839779AFCD0] [20/11/2019] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp. [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD. [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD. [068033EE736CDDF17B241B41E65EF935] [14/05/2024] (.Piriform Software Ltd.) - C:\Program Files\Speccy\uninst.exe =>.Piriform Software Ltd [0689B3BCEB4409890A32D71976B132A4] [20/05/2024] (.Valve Corp..) - D:\Program Files (x86)\Steam\uninstall.exe =>.Valve Corp. [06FB83D0BA7C64B957849B76A8C1DE72] [02/12/2024] (.Valve Corp..) - C:\Program Files (x86)\Common Files\Steam\steamservice.exe =>.Not verified [06FB83D0BA7C64B957849B76A8C1DE72] [02/12/2024] (.Valve Corp..) - D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Not verified [06FB83D0BA7C64B957849B76A8C1DE72] [02/12/2024] (.Valve Corp..) - D:\Program Files (x86)\Steam\steam.exe =>.Not verified [0737B0D0DCDCAB8D78D2F40CB122F93F] [27/02/2025] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0737B0D0DCDCAB8D78D2F40CB122F93F] [27/02/2025] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation [0737B0D0DCDCAB8D78D2F40CB122F93F] [27/02/2025] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0847C0D333578DAFA9934DA5A3788807] [17/11/2019] (.Canneverbe Limited.) - D:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited [087FBAAF351173C37EB07F0A65CD0A8A] [27/02/2025] (.Spotify AB.) - C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe =>.Not verified [09D08EBDA06BE07C815EA7AF25EF6875] [08/06/2024] (.VideoLAN.) - D:\VLC\vlc.exe =>.Not verified [0BA1CCC11A40C754CA631EA6] [01/12/2024] (.DENUVO GmbH.) - C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-crash-report.exe =>.Not verified [0BA1CCC11A40C754CA631EA6] [01/12/2024] (.DENUVO GmbH.) - C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe =>.Not verified [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [17/02/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [17/02/2021] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe =>.Realtek Semiconductor Corp. [0F91AC8781452E9478FDB90D5A52336C] [08/01/2024] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe =>.Not verified [0F91AC8781452E9478FDB90D5A52336C] [18/12/2024] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_af6aa5163f8d80cc\rt68cx21x64.sys =>.Not verified [0FAE00141B9F1625F78019F259FFFCDF] [21/12/2024] (.VS REVO GROUP OOD.) - D:\Program Files\VS Revo Group\Revo Uninstaller\unins000.exe =>.Not verified [1121F7C4F04F79EA2F0DD8725F116C3AED65] [28/09/2015] (.Sysprogs OU.) - C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys =>.Sysprogs OU [115BBE9E1C286827AF66E7A01390C206] [11/02/2025] (.TechPowerUp LLC.) - C:\Users\lstco\Desktop\Logiciel utiles\GPU-Z.2.62.0.exe =>.TechPowerUp LLC [115BBE9E1C286827AF66E7A01390C206] [11/02/2025] (.TechPowerUp LLC.) - D:\Program Files (x86)\GPU-Z\GPU-Z.exe =>.TechPowerUp LLC [15C98A3198BD4CBAEEC5A7E74A14A8F6] [23/08/2010] (.Canon Inc..) - C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSU.exe =>.Canon Inc. [15C98A3198BD4CBAEEC5A7E74A14A8F6] [23/08/2010] (.Canon Inc..) - C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe =>.Canon Inc. [17DF1E696D347A2530B48532] [07/02/2023] (.AVB Disc Soft, SIA.) - C:\WINDOWS\System32\drivers\dtlitescsibus.sys =>.AVB Disc Soft, SIA [197125ACD31C9C82FF88F388] [08/09/2018] (.QFX Software Corporation.) - C:\WINDOWS\System32\drivers\keyscrambler.sys =>.QFX Software Corporation [1D07300F56003F4AFFA9D6BC55EA6725] [30/06/2020] (.aerosoft gmbH Luftfahrt-Datentechnik.) - C:\Program Files (x86)\InstallShield Installation Information\{0EE844B4-4833-46AB-B307-75DBF52FC226}\setup.exe =>.Not verified [1DE909DE446485F9C6F4B405E24F687D] [24/09/2017] (.Broadcom Corporation.) - C:\WINDOWS\System32\bcmwl63a.sys =>.Broadcom Corporation [1DE909DE446485F9C6F4B405E24F687D] [24/09/2017] (.Broadcom Corporation.) - C:\WINDOWS\System32\DRIVERS\bcmwl63a.sys =>.Broadcom Corporation [248393CEB4B89604268EB5AABA48C5E8] [16/05/2024] (.CoderBag LLC.) - C:\Program Files\QuickCPU\QuickCPU.exe =>.Not verified [248393CEB4B89604268EB5AABA48C5E8] [20/02/2023] (.CoderBag LLC.) - C:\Program Files (x86)\QuickCPU\QuickCPU.exe =>.Not verified [2C080F32A1DD349FC080CB0FABBE6290] [23/01/2025] (.OpenShot Studios, LLC.) - D:\Program Files\OpenShot Video Editor\unins000.exe =>.OpenShot Studios, LLC [33000003183E18830F1770AD20000000000318] [02/02/2023] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [33000003DDA34EC21B604513590000000003DD] [06/03/2025] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\unins000.exe =>.Not verified [33000003DDA34EC21B604513590000000003DD] [24/02/2025] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Not verified [33000003DE6C778D9215F2E1960000000003DE] [13/03/2025] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.138.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified [535091E6CAB13AF393B51EAD0825F627] [28/01/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [28/01/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\amdkmdag.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [28/01/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atieclxx.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [28/01/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0376209.inf_amd64_b3bdffadea4def3f\B374968\atiesrxx.exe =>.Advanced Micro Devices Inc. [5600000C970A207F2C4F00043D000000000C97] [10/01/2021] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_a54e540558404ee5\x64\TeeDriverW10x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [5FFBE1BC422D8BC2DAB2B379D64BEA1D] [24/02/2025] (.The Document Foundation.) - C:\Program Files\LibreOffice\program\update_service.exe =>.Not verified [71AC882230039EBD4BE273E53DB4F6A3] [08/02/2008] (.Protection Technology, Ltd..) - C:\WINDOWS\System32\drivers\pe3akt6c.sys =>.Protection Technology, Ltd. [71AC882230039EBD4BE273E53DB4F6A3] [08/02/2008] (.Protection Technology, Ltd..) - C:\WINDOWS\System32\drivers\pf2akt6c.sys =>.Protection Technology, Ltd. [71AC882230039EBD4BE273E53DB4F6A3] [08/02/2008] (.Protection Technology, Ltd..) - C:\WINDOWS\System32\drivers\ps7akt6c.sys =>.Protection Technology, Ltd. [71AC882230039EBD4BE273E53DB4F6A3] [08/02/2008] (.Protection Technology, Ltd..) - C:\WINDOWS\System32\pr2akt6c.exe =>.Protection Technology, Ltd. [71AC882230039EBD4BE273E53DB4F6A3] [08/02/2008] (.Protection Technology, Ltd..) - D:\program files (x86)\cyanide\pro cycling manager 2007\pcm.exe =>.Protection Technology, Ltd. [72ACD79546C6E0B523B123D763EFE617] [14/06/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\Canon IJ Network Tool\CNMNPUT.EXE =>.Canon Inc. [72ACD79546C6E0B523B123D763EFE617] [14/06/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\Canon IJ Network Tool\CNMNUU.exe =>.Canon Inc. [76CEA6897FE1FB6E06DF03619025CC50] [07/02/2023] (.AVB Disc Soft, SIA.) - C:\WINDOWS\System32\drivers\dtliteusbbus.sys =>.Not verified [7AF1E5B8826150A78A17269C] [07/01/2023] (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\keyscrambler.exe =>.QFX Software Corporation [7AF1E5B8826150A78A17269C] [07/01/2023] (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\x64\KeyScrambler.exe =>.QFX Software Corporation [7AF1E5B8826150A78A17269C] [14/08/2023] (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\x64\QFXUpdateService.exe =>.QFX Software Corporation [7FA7B4F0E07AAA123C346A3057584358] [22/04/2024] (.Pegasun LLC.) - C:\Program Files (x86)\Pegasun\SystemUtilities\SystemUtilities.exe =>.Not verified ~ Unselected Options: NF, ~ End of the scan, 12427 items in 01mn59s (1365)(0)