~ ZHPDiag v2021.6.4.300 Par Nicolas Coolman (2021/06/04) ~ Démarré par nunuche (Administrator) (2021/06/09 11:03:07) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\nunuche\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\nunuche\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 19042) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (1) - 0s ~ MSIE: Internet Explorer v11.789.19041.0 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 5s Windows Defender W10 (Deactivate) (Protection) Malwarebytes version 4.4.0.117 v4.4.0.117 (Protection) ---\\ SURVEILLANCE LOGICIEL (1) - 5s ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: AMD64 Family 21 Model 19 Stepping 1, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 16736.684 MB (78% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 850 GB (89%) free of 953 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: BRUCE ~ User Name: nunuche ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 1s ~ Drive C: has 850 GB free of 953 GB (System) ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 12s [MD5.F5883F210AF1795C1868AE570FCB7185] - 14/05/2021 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4826160] =>.Microsoft® [MD5.EF3179D498793BF4234F708D3BE28633] - 22/02/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.9EF51C8AD595C5E2A123C06AD39FCCD7] - 22/02/2021 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [419432] [Unsigned] =>.Microsoft Corporation [MD5.4F92A55AE6FC6FBFDA966624BF7C0FA8] - 15/03/2021 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5070336] [Unsigned] =>.Microsoft Corporation [MD5.EE86712DDF0C59E6921D548B5548FF9C] - 16/04/2021 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [907776] [Unsigned] =>.Microsoft Corporation [MD5.3F910E7BB716BCD9B4C06EE6CF20304A] - 19/11/2020 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.145C2F1180736E3B23410C17C966749B] - 16/04/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [829496] =>.Microsoft® [MD5.277A7A6DBD6078F25AA2EFB2C3E88F4A] - 16/04/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [588312] =>.Microsoft® [MD5.9C7065E8738C87A3026F72795BDBF0C3] - 16/04/2021 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3394048] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.6F082A5EB40F9BFD6873F3796F10F866] - 19/11/2020 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [647480] [Unsigned] =>.Microsoft Corporation [MD5.EB97D643FAC7A8EB66A53E87D85E8C64] - 16/04/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30008] [Unsigned] =>.Microsoft Corporation [MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.26255C953A69CCD32EF4491411737904] - 07/12/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] [Unsigned] =>.Microsoft Corporation [MD5.3D3CCAFC76E02403E2963A2CB45D61F7] - 15/03/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.4BFD517F80F247590AB6C03E3FF55E1A] - 07/12/2019 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [132608] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation [MD5.9D0A38D9C9D55617114FCD2017175811] - 14/05/2021 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [577848] [Unsigned] =>.Microsoft Corporation [MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 19/11/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.71D1E60F1CA832751584F2DA6B207702] - 14/05/2021 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2852680] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.40CBDB4B80284451536C8CA49561E5CD] - 19/11/2020 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation [MD5.64991B36F0BD38026F7589572C98E3D6] - 16/04/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.9C4C6E0C590F789CECB7A6D437E5A284] - 07/12/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] [Unsigned] =>.Microsoft Corporation [MD5.988A7A685BB51BAC62F4E176BE5432AC] - 19/11/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (61) - 24s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\ABService.exe =>.AOMEI International Network Limited® O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_6841e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - DLL du service CSC.) - C:\WINDOWS\System32\cscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\fhsvc.dll (fhsvc) . (.Microsoft Corporation - Service d’historique des fichiers.) - C:\WINDOWS\System32\fhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 342.0.) - C:\WINDOWS\system32\nvvsvc.exe [Unsigned] =>.NVIDIA Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Hôte de synchronisation_6841e (OneSyncSvc_6841e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation® O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service utilisateur de notifications Push Windows_6841e (WpnUserService_6841e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (81) - 54s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [25/01/2021] [ 169672] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Boot [14/05/2019] [ 51120] ambakdrv (ambakdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Auto [21/12/2016] [ 171952] ammntdrv (ammntdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.® SR - Auto [08/06/2021] [ 32176] amwrtdrv (amwrtdrv) . (. {2F568997EDD3D061460493FE}..) - C:\Windows\system32\amwrtdrv.sys {2F568997EDD3D061460493FE}. SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Auto [14/05/2021] [ 1024448] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\ABService.exe =>.AOMEI International Network Limited® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Demand [11/11/2020] [ 159600] SAMSUNG Mobile USB Comp (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics Co., Ltd.® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Demand [16/04/2020] [ 26760] epmntdrv (epmntdrv) . (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\epmntdrv.sys =>.CHENGDU YIWO Tech Development Co., Ltd.® SR - Boot [16/04/2020] [ 21128] EPMVolFl (EPMVolFl) . (.Windows (R) Codename Longhorn DDK provider.) - C:\WINDOWS\System32\drivers\EPMVolFl.sys =>.CHENGDU YIWO Tech Development Co., Ltd.® SR - System [30/05/2021] [ 199128] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Inc® SR - Boot [16/04/2020] [ 75912] EUDCPEPM (EUDCPEPM) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\System32\drivers\EUDCPEPM.sys =>.CHENGDU YIWO Tech Development Co., Ltd.® SR - System [16/04/2020] [ 24200] EUEDKEPM (EUEDKEPM) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\System32\drivers\EUEDKEPM.sys =>.CHENGDU YIWO Tech Development Co., Ltd.® SR - Demand [16/04/2020] [ 14472] EuGdiDrv (EuGdiDrv) . (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\EuGdiDrv.sys =>.CHENGDU YIWO Tech Development Co., Ltd.® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Auto [08/06/2021] [ 220752] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Inc® SR - Boot [30/05/2021] [ 19912] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Demand [08/06/2021] [ 198888] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Inc® SR - Demand [08/06/2021] [ 77496] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Malwarebytes Inc® SR - Auto [30/05/2021] [ 7391408] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® SR - Demand [30/05/2021] [ 248992] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc® SR - Demand [08/06/2021] [ 157944] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SS - Demand [02/06/2021] [ 220600] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [07/12/2019] [ 2224128] RT2870 USB Extensi (netr28ux) . (.MediaTek Inc..) - C:\WINDOWS\System32\drivers\netr28ux.sys [Unsigned] =>.MediaTek Inc. SR - Demand [09/12/2016] [12914360] (nvlddmkm) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\DRIVERS\nvlddmkm.sys =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Auto [14/11/2016] [ 932728] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Demand [14/10/2020] [ 38400] Revoflt (Revoflt) . (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys =>.Microsoft® SR - Demand [07/12/2019] [ 694272] Realtek RT640 NT Dri (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys [Unsigned] =>.Realtek SR - Demand [07/12/2019] [ 3814400] Rea (RtlWlanu_OldIC) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\rtwlanu_oldIC.sys [Unsigned] =>.Realtek Semiconductor Corporation SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [11/11/2020] [ 167280] SAMSUNG Mobile USB Modem Dri (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.® SR - Auto [14/11/2016] [ 426040] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (10) - 21s O38 - TASK: {3408CEB1-D804-40EC-858F-D587DDEEC397} [64Bits][\TR_Updater] - (.Simply Super Software - TR Updater.) -- C:\Program Files (x86)\Trojan Remover\trupd.exe [6480784] =>.Simply Super Software O38 - TASK: {47232C07-38FE-4D3F-9686-D59C49358364} [64Bits][\TR_FastScan_Daily_nunuche] - (.Simply Super Software - Trojan Remover FastScan.) -- C:\Program Files (x86)\Trojan Remover\Trjscan.exe [6499736] =>.Simply Super Software O38 - TASK: {65938B4E-9896-4E14-8D8C-C614F22419C2} [64Bits][\Mozilla\Firefox Default Browser Agent E7CF176E110C211B] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [636856] =>.Mozilla Foundation O38 - TASK: {BE565C3C-B52D-41EC-94BD-96EFA3628F1A} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200] =>.Adobe Inc. O38 - TASK: {E5022F6C-DC72-4E7C-95A3-EC560828C3A4} [64Bits][\TR_FastScan_AtLogon] - (.Simply Super Software - Trojan Remover FastScan.) -- C:\Program Files (x86)\Trojan Remover\Trjscan.exe [6499736] =>.Simply Super Software C:\WINDOWS\System32\Tasks\TR_Updater - (.Simply Super Software.) -- C:\Program Files (x86)\Trojan Remover\trupd.exe [/silent] =>.Simply Super Software C:\WINDOWS\System32\Tasks\TR_FastScan_Daily_nunuche - (.Simply Super Software.) -- C:\Program Files (x86)\Trojan Remover\Trjscan.exe [/silent] =>.Simply Super Software C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B - (.Mozilla Foundation.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [do-task "E7CF176E110C211B.do-task] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\WINDOWS\System32\Tasks\TR_FastScan_AtLogon - (.Simply Super Software.) -- C:\Program Files (x86)\Trojan Remover\Trjscan.exe [/Boot] =>.Simply Super Software ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (7) - 5s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [Unsigned] =>.IvoSoft O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe =>.Microsoft® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-3137422517-1548693181-341252407-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe =>.Microsoft® ---\\ PROCESSUS LANCÉS (24) - 12s [MD5.FFADB2E34CE378F059F57161AD555DBF] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 342.0.) -- C:\Windows\System32\nvvsvc.exe [932728] [PID.1988] [Unsigned] =>.NVIDIA Corporation [MD5.843F16D234D03756B9EB6054B5C62FAA] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [426040] [PID.2024] =>.NVIDIA Corporation® [MD5.C66BCE13DB7C119824839C63FEA226FA] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1208256] [PID.2224] =>.NVIDIA Corporation® [MD5.FFADB2E34CE378F059F57161AD555DBF] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 342.0.) -- C:\WINDOWS\system32\nvvsvc.exe [932728] [PID.2240] [Unsigned] =>.NVIDIA Corporation [MD5.431B9F2E0D4145164D572671395B4B31] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672] [PID.3496] =>.Adobe Inc.® [MD5.466421751E991A7BD39446DB6DD478EF] - (.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\ABService.exe [1024448] [PID.3760] =>.AOMEI International Network Limited® [MD5.9D9B0C772D127F480330E152DB673573] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7391408] [PID.4024] =>.Malwarebytes Inc® [MD5.2EDBCFD497891D49C17B5158DE698021] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2453952] [PID.4104] =>.NVIDIA Corporation® [MD5.1F63032F6CF6817735BB2FC815EC06C2] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [6589240] [PID.1748] =>.Malwarebytes Inc® [MD5.F3C8882DC5151B81CB444E7E93320A61] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640] [PID.6492] [Unsigned] =>.IvoSoft [MD5.66B1C09A03323BC0142B62769ACB195E] - (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1796056] [PID.6652] =>.NVIDIA Corporation® [MD5.6AECA53F405206CAD08032B2FE2423D7] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.7128] =>.Microsoft® [MD5.B2BF675D6F8BA980A55A315B81C371E4] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20120.4004.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [481280] [PID.168] [Unsigned] =>.Microsoft Corporation [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.4676] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.8944] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.856] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.7448] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.2376] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.6336] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.3096] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.4608] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.8124] =>.Mozilla Corporation® [MD5.B60E66235D28B19FB3BB2B8EA78FE3B0] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [522680] [PID.2372] =>.Mozilla Corporation® [MD5.E6C762873E507CFFEE3D493592E26A4A] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\nunuche\AppData\Roaming\ZHP\ZHPSuite.exe [3471512] [PID.4436] [Unsigned] =>.Nicolas Coolman ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (15) - 9s P2 - EXT FILE: (.Google Inc..) -- C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [Unsigned] =>.Google Inc. C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\bookmarkbackups =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\crashes =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\datareporting =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\extensions =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\gmp =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\gmp-widevinecdm =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\minidumps =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\saved-telemetry-pings =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\security_state =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\sessionstore-backups =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\shader-cache =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\storage =>Mozilla Corporation C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.985 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (1) - 4s E2 - GCE: Preference [nunuche][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes ---\\ INTERNET EXPLORER,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (23) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (2) - 1s O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll [Unsigned] =>.IvoSoft O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [Unsigned] =>.IvoSoft ---\\ RACCOURCIS GLOBAL STARTUP (34) - 19s O4 - GS\Desktop [nunuche]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files (x86)\CrystalDiskInfo\DiskInfo64.exe [Unsigned] =>.Crystal Dew World O4 - GS\Desktop [nunuche]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\nunuche\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [nunuche]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\nunuche\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [nunuche]: Allavsoft.lnk . (.Allavsoft Corporation - video downloader converter.) C:\Program Files (x86)\Allavsoft\Video Downloader Converter\videodownloader.exe [Unsigned] =>.Allavsoft Corporation O4 - GS\Quicklaunch [nunuche]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\sendTo [nunuche]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [nunuche]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [nunuche]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [nunuche]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Allavsoft.lnk . (.Allavsoft Corporation - video downloader converter.) C:\Program Files (x86)\Allavsoft\Video Downloader Converter\videodownloader.exe [Unsigned] =>.Allavsoft Corporation O4 - GS\CommonDesktop [Public]: AOMEI Backupper.lnk . (.AOMEI International Network Limited - ABLaucher Application.) C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\ABLaucher.exe =>.AOMEI International Network Limited® O4 - GS\CommonDesktop [Public]: Defraggler.lnk . (.Piriform Ltd - Defraggler.) C:\Program Files\Defraggler\Defraggler64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: EaseUS Partition Master 14.0.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files (x86)\EaseUS\EaseUS Partition Master\bin\epm0.exe [Unsigned] =>.EaseUS O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: MozBackup.lnk . (...) C:\Program Files (x86)\MozBackup\MozBackup.exe [Unsigned] O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd.® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe =>.Microsoft® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{1A0582DB-51B5-40A9-B9B5-414100884B51}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{90B6D4DD-B05A-499B-92BD-F51F277DD4B9}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (19) - 7s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (8) - 0s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SUPERAntiSpyware =>.SUPERAntiSpyware [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SUPERAntiSpyware =>.SUPERAntiSpyware [HKEY_USERS\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Classic Start Menu =>.IvoSoft [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WindowsDefender =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:NvBackend =>.nVidia Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (4) - 5s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (35) - 35s O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-000182442176} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Allavsoft 3.23.5.7787 - (.Allavsoft Corporation.) [HKLM][64Bits] -- {6EBED4D8-13D9-4370-8D44-B57DDB7A787C}_is1 [Unsigned] =>.Allavsoft Corporation O42 - Logiciel: AOMEI Backupper - (.AOMEI International Network Limited..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1 [Unsigned] =>.AOMEI International Network Limited. O42 - Logiciel: Bigasoft Video Downloader Pro 3.22.4.7420 - (.Bigasoft Corporation.) [HKLM][64Bits] -- {C7056BA6-D954-43A2-ABBA-AB2E8E777730}_is1 [Unsigned] =>.Bigasoft Corporation O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {CABCE573-0A86-42FA-A52A-C7EA61D5BE08} [Unsigned] =>.IvoSoft O42 - Logiciel: CrystalDiskInfo 8.8.5 - (.Crystal Dew World.) [HKLM][64Bits] -- CrystalDiskInfo_is1 [Unsigned] =>.Crystal Dew World O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler =>.Piriform Ltd® O42 - Logiciel: EaseUS Partition Master 14.0 - (.EaseUS.) [HKLM][64Bits] -- EaseUS Partition Master Trial Edition_is1 =>.CHENGDU YIWO Tech Development Co., Ltd.® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>.Google Inc. (Hidden) O42 - Logiciel: Malwarebytes version 4.4.0.117 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc® O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKLM][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {A0E1B43D-5F4A-46AF-9925-ABA3423325DC} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {e2803110-78b3-4664-a479-3611a381656a} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {69BCE4AC-9572-3271-A2FB-9423BDA36A43} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BBF2AC74-720C-3CB3-8291-5E34039232FA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mises à jour NVIDIA 10.4.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: MozBackup 1.5.1 - (.Pavel Cvrcek.) [HKLM][64Bits] -- MozBackup [Unsigned] =>.Pavel Cvrcek O42 - Logiciel: Mozilla Firefox 89.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 89.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: NVIDIA Pilote 3D Vision 342.01 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote graphique 342.01 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo =>.NVIDIA Corporation® (Hidden) O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: Panneau de configuration NVIDIA 342.01 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel [Unsigned] =>.NVIDIA Corporation (Hidden) O42 - Logiciel: PDF-XChange Editor 8.0.339.0 - (.lrepacks.ru.) [HKLM][64Bits] -- PDF-XChange Editor_is1 [Unsigned] =>.lrepacks.ru O42 - Logiciel: Revo Uninstaller Pro 4.4.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 [Unsigned] =>.VS Revo Group, Ltd. O42 - Logiciel: Trojan Remover - (.Simply Super Software.) [HKLM][64Bits] -- Trojan Remover_is1 =>.Simply Super Software® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WinRAR 5.90 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (135) - 37s HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\AVS4YOU =>.AVS4YOU HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\IvoSoft =>.IvoSoft HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\O&O =>.O&O Software GmbH HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\SUPERAntiSpyware.com =>.SUPERAntiSpyware.com HKLM\SOFTWARE\Tracker Software =>.Tracker Software HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Allavsoft =>.Allavsoft HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD HKLM\SOFTWARE\WOW6432Node\AVS4YOU =>.AVS4YOU HKLM\SOFTWARE\WOW6432Node\Bigasoft =>.Bigasoft Corporation HKLM\SOFTWARE\WOW6432Node\EASEUS =>.EaseUS Software HKLM\SOFTWARE\WOW6432Node\EUClone HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nero =>.Ahead Corporation HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Simply Super Software =>.Simply Super Software HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adlice Software =>.Adlice Software HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Allavsoft =>.Allavsoft HKCU\SOFTWARE\Anvsoft =>.AnvSoft Inc HKCU\SOFTWARE\AOMEI =>.AOMEI Tech Co HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU HKCU\SOFTWARE\Bigasoft =>.Bigasoft Corporation HKCU\SOFTWARE\Brother =>.Brother HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\EaseUS =>.EaseUS Software HKCU\SOFTWARE\GetData =>.GetData HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\IvoSoft =>.IvoSoft HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mine =>.Microsoft Corporation HKCU\SOFTWARE\Mirage =>.Mirage Game HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Mozilla Backup =>.Mozilla Corporation HKCU\SOFTWARE\MyMusicTeacher =>.MyMusicTeacher HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\O&O =>.O&O Software GmbH HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\screen-capture-recorder =>.GitHub HKCU\SOFTWARE\Simply Super Software =>.Simply Super Software HKCU\SOFTWARE\SUPERAntiSpyware.com =>.SUPERAntiSpyware.com HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKCU\SOFTWARE\Tracker Software =>.Tracker Software HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\virtual_audio_capture HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Tracker Software =>.Tracker Software HKU\.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Adlice Software =>.Adlice Software HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Allavsoft =>.Allavsoft HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Anvsoft =>.AnvSoft Inc HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\AOMEI =>.AOMEI Tech Co HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\AVS4YOU =>.AVS4YOU HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Bigasoft =>.Bigasoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Brother =>.Brother HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\EaseUS =>.EaseUS Software HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\GetData =>.GetData HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\IvoSoft =>.IvoSoft HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Licenses =>.Microsoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Mine =>.Microsoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Mirage =>.Mirage Game HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Mozilla Backup =>.Mozilla Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\MyMusicTeacher =>.MyMusicTeacher HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\O&O =>.O&O Software GmbH HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\screen-capture-recorder =>.GitHub HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Simply Super Software =>.Simply Super Software HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\SUPERAntiSpyware.com =>.SUPERAntiSpyware.com HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Tracker Software =>.Tracker Software HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Trolltech =>.Trolltech HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Unity =>.Unity HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\virtual_audio_capture HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3137422517-1548693181-341252407-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (4) - 1s C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.2020.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Feature Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.551.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Feature Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.964_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.964.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft ---\\ CONTENU DES DOSSIERS PROGRAMMES (184) - 49s O43 - CFD: 26/05/2020 - [] D -- C:\Program Files\Classic Shell =>.Ivo Beltchev O43 - CFD: 22/02/2021 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 06/02/2021 - [] D -- C:\Program Files\CrystalDiskInfo =>.Crystal Dew World O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd O43 - CFD: 26/05/2020 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 29/10/2020 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 29/04/2021 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 13/05/2021 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 10/06/2020 - [] D -- C:\Program Files\Tracker Software =>.Tracker Software O43 - CFD: 19/11/2020 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 24/10/2020 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 16/11/2020 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 11/03/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/05/2021 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 02/06/2020 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 29/05/2020 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.® O43 - CFD: 20/04/2021 - [] D -- C:\Program Files (x86)\Allavsoft [Unsigned] =>.Allavsoft O43 - CFD: 29/05/2020 - [0] D -- C:\Program Files (x86)\Anvsoft =>.AnvSoft Inc O43 - CFD: 08/06/2021 - [] D -- C:\Program Files (x86)\AOMEI =>.AOMEI Tech Co O43 - CFD: 08/05/2021 - [0] D -- C:\Program Files (x86)\AVS4YOU =>.AVS4YOU O43 - CFD: 29/05/2020 - [] D -- C:\Program Files (x86)\Bigasoft =>.Bigasoft Corporation O43 - CFD: 08/05/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 11/06/2020 - [] D -- C:\Program Files (x86)\EaseUS =>.EaseUS Software O43 - CFD: 08/06/2020 - [] D -- C:\Program Files (x86)\Google =>.Google O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\Program Files (x86)\MozBackup =>.Mozilla O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 13/05/2021 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 20/05/2021 - [] D -- C:\Program Files (x86)\Trojan Remover =>.Simply Super Software® O43 - CFD: 06/02/2021 - [0] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 22/02/2021 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 14/05/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 16/04/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 08/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper =>.AOMEI Tech Co O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell =>.Ivo Beltchev O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo =>.Crystal Dew World O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform Ltd O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 14.0 =>.EaseUS Software O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup =>.Mozilla O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 05/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 15/03/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software =>.Tracker Software O43 - CFD: 23/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 29/05/2020 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 10/06/2020 - [] D -- C:\ProgramData\Aomei =>.AOMEI Tech Co O43 - CFD: 08/06/2021 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology O43 - CFD: 22/02/2021 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 29/10/2020 - [] D -- C:\ProgramData\Licenses =>.Microsoft Corporation O43 - CFD: 20/05/2021 - [] D -- C:\ProgramData\Logs =>.ABBYY Software O43 - CFD: 30/05/2021 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 26/05/2020 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 19/11/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 09/06/2021 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 09/06/2021 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 26/05/2020 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 10/06/2020 - [] D -- C:\ProgramData\OO Software =>.O&O Software GmbH O43 - CFD: 08/05/2021 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 23/02/2021 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 09/06/2021 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 20/05/2021 - [] D -- C:\ProgramData\Simply Super Software =>.Simply Super Software O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 19/11/2020 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 11/06/2020 - [] D -- C:\ProgramData\SystemAcCrux O43 - CFD: 20/05/2021 - [] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 16/11/2020 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 29/05/2020 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 08/05/2021 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia =>.AVSMedia O43 - CFD: 22/02/2021 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 29/05/2020 - [] D -- C:\Users\nunuche\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 18/05/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\Allavsoft =>.Allavsoft O43 - CFD: 29/05/2020 - [] D -- C:\Users\nunuche\AppData\Roaming\Anvsoft =>.AnvSoft Inc O43 - CFD: 20/04/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\Bigasoft Video Downloader Pro =>.Bigasoft Corporation O43 - CFD: 04/04/2021 - [] RD -- C:\Users\nunuche\AppData\Roaming\Brother =>.Brother O43 - CFD: 22/02/2021 - [] SD -- C:\Users\nunuche\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [] D -- C:\Users\nunuche\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 16/11/2020 - [] D -- C:\Users\nunuche\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 10/06/2020 - [] D -- C:\Users\nunuche\AppData\Roaming\Tracker Software =>.Tracker Software O43 - CFD: 08/06/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 02/06/2020 - [] D -- C:\Users\nunuche\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 08/12/2020 - [] D -- C:\Users\nunuche\AppData\Local\Adobe =>.Adobe O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\nunuche\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\AppData\Local\ClassicShell =>.SourceForge O43 - CFD: 22/02/2021 - [] D -- C:\Users\nunuche\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 23/02/2021 - [] D -- C:\Users\nunuche\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\Users\nunuche\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 20/04/2021 - [] D -- C:\Users\nunuche\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 13/12/2020 - [0] D -- C:\Users\nunuche\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [] SHD -- C:\Users\nunuche\AppData\Local\EmieBrowserModeList =>.ATTENTION O43 - CFD: 08/06/2020 - [0] SHD -- C:\Users\nunuche\AppData\Local\EmieSiteList =>.ATTENTION O43 - CFD: 08/06/2020 - [0] SHD -- C:\Users\nunuche\AppData\Local\EmieUserList =>.ATTENTION O43 - CFD: 08/06/2020 - [] D -- C:\Users\nunuche\AppData\Local\Google =>.Google O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\nunuche\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 29/10/2020 - [] D -- C:\Users\nunuche\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 18/05/2021 - [] D -- C:\Users\nunuche\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [] D -- C:\Users\nunuche\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 28/05/2020 - [] D -- C:\Users\nunuche\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 23/02/2021 - [] D -- C:\Users\nunuche\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\Users\nunuche\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 23/02/2021 - [0] D -- C:\Users\nunuche\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 16/05/2021 - [] D -- C:\Users\nunuche\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [] D -- C:\Users\nunuche\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Users\nunuche\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 08/05/2021 - [] D -- C:\Users\nunuche\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\nunuche\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 08/05/2021 - [0] D -- C:\Users\nunuche\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 16/11/2020 - [] D -- C:\Users\nunuche\AppData\Local\VS Revo Group =>.VS Revo Group O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 26/05/2020 - [0] D -- C:\Users\nunuche\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 29/05/2020 - [] D -- C:\Users\nunuche\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\AppData\LocalLow\IGDump O43 - CFD: 18/05/2021 - [] SD -- C:\Users\nunuche\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 28/05/2020 - [] D -- C:\Users\nunuche\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 30/05/2021 - [] D -- C:\Users\nunuche\Desktop\audio O43 - CFD: 09/06/2021 - [] D -- C:\Users\nunuche\Desktop\FRST-OlderVersion O43 - CFD: 14/05/2021 - [0] D -- C:\Users\nunuche\Desktop\marque pages O43 - CFD: 08/05/2021 - [] D -- C:\Users\nunuche\Desktop\Nouveau dossier O43 - CFD: 04/05/2021 - [] D -- C:\Users\nunuche\Desktop\peinture O43 - CFD: 21/04/2021 - [] D -- C:\Users\nunuche\Desktop\photo video sophie O43 - CFD: 22/02/2021 - [] RD -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] RD -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] RD -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 20/04/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allavsoft =>.Allavsoft O43 - CFD: 22/02/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bigasoft =>.Bigasoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] RD -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] RD -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] D -- C:\Users\nunuche\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 26/05/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 22/02/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/02/2021 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 26/02/2021 - [] SD -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 3s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: UpToDateCloudOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: UpToDatePinnedOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: ReadOnlyOverlayHandler Class [ OneDrive6] - {9AA2F32D-362A-42D9-9328-24A483E2CCC3}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: UpToDateUnpinnedOverlayHandler Class [ OneDrive7] - {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll [Unsigned] =>.IvoSoft ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (43) - 16s O108 - CMH1: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O108 - CMH1: DefragglerShellExtension [64Bits] - {4380C993-0C43-4E02-9A7A-0D40B6EA7590} . (.Piriform Ltd - DefragglerShell.) -- C:\Program Files\Defraggler\DefragglerShell64.dll =>.Piriform Ltd® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: ShellConverter [64Bits] - {30A4E07E-068A-4d91-8F05-691283A1336B} . (...) -- C:\Program Files (x86)\Common Files\AVSMedia\ActiveX\AVSShellConverter64.dll (.not file.) O108 - CMH1: Trojan Remover [64Bits] - {52B87208-9CCF-42C9-B88E-069281105805} . (.Simply Super Software - Trojan Remover Shell Extension (64bit).) -- C:\Program Files (x86)\Trojan Remover\Trshlex64.dll =>.Simply Super Software® O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.® O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\WINDOWS\System32\StartMenuHelper64.dll [Unsigned] =>.IvoSoft O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: FileSyncEx [64Bits] - {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} . (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Program Files (x86)\Microsoft OneDrive\21.083.0425.0003\amd64\FileSyncShell64.dll =>.Microsoft® O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll [Unsigned] =>.NVIDIA Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: DefragglerShellExtension [64Bits] - {4380C993-0C43-4E02-9A7A-0D40B6EA7590} . (.Piriform Ltd - DefragglerShell.) -- C:\Program Files\Defraggler\DefragglerShell64.dll =>.Piriform Ltd® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd.® O108 - CMH6: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\WINDOWS\System32\StartMenuHelper64.dll [Unsigned] =>.IvoSoft O108 - CMH6: Trojan Remover [64Bits] - {52B87208-9CCF-42C9-B88E-069281105805} . (.Simply Super Software - Trojan Remover Shell Extension (64bit).) -- C:\Program Files (x86)\Trojan Remover\Trshlex64.dll =>.Simply Super Software® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Trojan Remover [64Bits] - {52B87208-9CCF-42C9-B88E-069281105805} . (.Simply Super Software - Trojan Remover Shell Extension (64bit).) -- C:\Program Files (x86)\Trojan Remover\Trshlex64.dll =>.Simply Super Software® ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (17) - 5s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft® O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (443) - 144s O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2021/05/14 11:44:30 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [415232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2020/11/19 04:50:01 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [647480] =>.Microsoft® O58 - SDL:2020/11/19 04:50:08 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [41984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:46:42 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:11:54 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft® O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2020/11/19 04:49:57 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [208696] =>.Microsoft® O58 - SDL:2020/11/19 04:49:57 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:15:06 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [138056] =>.Microsoft® O58 - SDL:2021/04/16 18:15:05 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [174392] =>.Microsoft® O58 - SDL:2021/04/16 18:15:06 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [154952] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30008] =>.Microsoft® O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [223032] =>.Microsoft® O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:45:24 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [148816] =>.Microsoft® O58 - SDL:2021/02/22 19:02:13 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:23 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [284672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:44:30 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) -- C:\WINDOWS\System32\drivers\BthHfAud.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [144896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:44:30 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [133632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:44:31 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1560064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:44:31 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft® O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [174080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:10:01 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [79688] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2021/03/15 17:55:53 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [91136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:04:42 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417088] =>.Microsoft® O58 - SDL:2021/05/14 11:46:02 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [495616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:11:42 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [411472] =>.Microsoft® O58 - SDL:2021/05/14 11:45:16 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1090360] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:55 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft® O58 - SDL:2021/02/22 19:04:42 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [733984] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft® O58 - SDL:2021/04/16 18:10:06 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57160] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft® O58 - SDL:2020/11/19 04:50:49 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [580608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97080] =>.Microsoft® O58 - SDL:2021/03/15 17:54:50 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:57:10 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft® O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft® O58 - SDL:2021/02/22 19:01:40 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:01:40 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft® O58 - SDL:2021/02/22 19:11:23 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [93112] =>.Microsoft® O58 - SDL:2021/04/16 18:08:32 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [195408] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft® O58 - SDL:2021/05/14 11:45:16 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3785040] =>.Microsoft® O58 - SDL:2021/05/14 11:45:16 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [454968] =>.Microsoft® O58 - SDL:2021/05/14 11:45:16 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [904528] =>.Microsoft® O58 - SDL:2021/05/14 11:47:40 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft® O58 - SDL:2020/04/16 17:34:28 A . (.Windows (R) Codename Longhorn DDK provider - Disk Performance Driver.) -- C:\WINDOWS\System32\drivers\EPMVolFl.sys [21128] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/04/16 17:31:26 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\EUDCPEPM.sys [75912] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2020/04/16 17:31:26 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\EUEDKEPM.sys [24200] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [415032] =>.Microsoft® O58 - SDL:2021/06/08 16:31:55 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [198888] =>.Malwarebytes Inc® O58 - SDL:2020/11/19 04:49:22 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [425272] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:01 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [430392] =>.Microsoft® O58 - SDL:2021/04/16 18:08:55 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft® O58 - SDL:2021/02/22 19:11:23 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [800064] =>.Microsoft® O58 - SDL:2021/05/14 11:46:10 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502600] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [132608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft® O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:31 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:31 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:31 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2021/05/14 11:46:05 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1575744] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft® O58 - SDL:2021/05/14 11:47:24 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95056] =>.Microsoft® O58 - SDL:2021/04/16 18:14:12 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft® O58 - SDL:2020/11/19 04:50:01 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2020/11/19 04:49:51 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19776] =>.Microsoft® O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft® O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57360] =>.Microsoft® O58 - SDL:2021/05/14 11:46:41 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117560] =>.Microsoft® O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22840] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 18:01:04 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [29000] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft® O58 - SDL:2021/02/22 19:01:46 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:05 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:11:14 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [147280] =>.Microsoft® O58 - SDL:2021/04/16 18:11:06 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180040] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2021/03/15 17:58:00 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft® O58 - SDL:2021/05/30 09:36:29 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [199128] =>.Malwarebytes Inc® O58 - SDL:2021/06/08 16:32:35 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [77496] =>.Malwarebytes Inc® O58 - SDL:2021/06/08 16:31:43 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [220752] =>.Malwarebytes Inc® O58 - SDL:2021/05/30 09:35:53 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [19912] =>.Microsoft® O58 - SDL:2021/05/30 10:19:33 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248992] =>.Malwarebytes Inc® O58 - SDL:2020/11/19 04:49:22 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [386048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2020/11/19 04:49:23 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:09:05 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft® O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:54 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [157696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:46:12 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [577848] =>.Microsoft® O58 - SDL:2021/04/16 18:11:42 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [264008] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft® O58 - SDL:2020/11/19 04:49:34 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft® O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [292672] =>.Microsoft® O58 - SDL:2020/11/19 04:50:05 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:59 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft® O58 - SDL:2021/04/16 18:11:15 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [382792] =>.Microsoft® O58 - SDL:2021/04/16 18:08:46 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [296264] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:57:10 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2021/06/08 16:31:52 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [157944] =>.Malwarebytes Inc® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2021/05/14 11:46:09 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1475904] =>.Microsoft® O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:08 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [206848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft® O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:04:44 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [207360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft® O58 - SDL:2020/11/19 04:50:08 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:46:09 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [603464] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28ux.sys [2224128] [Unsigned] =>.MediaTek Inc. O58 - SDL:2021/04/16 18:08:36 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [250192] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87568] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:01 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:46:08 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2852680] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft® O58 - SDL:2016/12/09 11:45:46 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [12914360] =>.NVIDIA Corporation® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2021/03/15 17:55:08 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [740864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:50 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:04:43 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182592] =>.Microsoft® O58 - SDL:2021/05/14 11:44:30 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [469304] =>.Microsoft® O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16712] =>.Microsoft® O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56648] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft® O58 - SDL:2020/11/19 04:49:24 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159048] =>.Microsoft® O58 - SDL:2020/11/19 04:49:25 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [822784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2021/04/16 18:14:08 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [129872] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:01:40 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft® O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft® O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft® O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:11:42 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [455480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:14:08 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:14:05 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [31544] =>.Microsoft® O58 - SDL:2019/12/07 11:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft® O58 - SDL:2021/05/14 11:45:59 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2004304] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990008] =>.Microsoft® O58 - SDL:2020/10/14 04:07:46 A . (.VS Revo Group - Revo Uninstaller Pro Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [38400] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:38 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [694272] [Unsigned] =>.Realtek O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2019/12/07 11:07:47 A . (.Realtek Semiconductor Corporation - Realtek WLAN USB NDIS Driver 28199.) -- C:\WINDOWS\System32\drivers\rtwlanu_oldIC.sys [3814400] [Unsigned] =>.Realtek Semiconductor Corporation O58 - SDL:2021/05/14 11:44:30 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [116552] =>.Microsoft® O58 - SDL:2021/03/15 17:58:20 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158736] =>.Microsoft® O58 - SDL:2021/05/14 11:46:40 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [187704] =>.Microsoft® O58 - SDL:2021/04/16 18:08:32 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [305472] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft® O58 - SDL:2021/05/14 11:44:31 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [103736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2019/12/07 16:53:43 A . (.Microsoft Corporation - Pilote réseau SMB Direct.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [172544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:54:51 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215888] =>.Microsoft® O58 - SDL:2019/12/07 11:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:54:51 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [677712] =>.Microsoft® O58 - SDL:2019/12/07 16:53:40 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft® O58 - SDL:2021/05/14 11:46:12 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [787968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:03 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/11 04:54:36 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [159600] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2020/11/11 04:54:38 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [167280] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186168] =>.Microsoft® O58 - SDL:2021/03/15 17:54:51 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [155960] =>.Microsoft® O58 - SDL:2021/05/14 11:44:38 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [713544] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft® O58 - SDL:2021/05/14 11:44:30 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [60728] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft® O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:38 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:09:09 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft® O58 - SDL:2021/05/14 11:46:10 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2990400] =>.Microsoft® O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft® O58 - SDL:2021/04/16 18:11:42 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [141128] =>.Microsoft® O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:15 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [134656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79376] =>.Microsoft® O58 - SDL:2021/04/16 18:10:07 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [166400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:51 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 16:53:41 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41488] =>.Microsoft® O58 - SDL:2021/02/22 19:03:34 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [321856] =>.Microsoft® O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft® O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:44:29 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [210432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft® O58 - SDL:2021/05/14 11:44:31 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [653136] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:49:14 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\WINDOWS\System32\drivers\usbscan.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [88064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:44:31 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [135480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [602440] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft® O58 - SDL:2021/04/16 18:08:29 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [820560] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [639800] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114488] =>.Microsoft® O58 - SDL:2021/02/22 19:01:41 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft® O58 - SDL:2021/05/14 11:44:32 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft® O58 - SDL:2021/04/16 18:08:28 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft® O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft® O58 - SDL:2020/11/19 04:49:29 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 04:50:09 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 18:09:38 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:55:53 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202544] =>.Microsoft® O58 - SDL:2021/03/15 17:55:53 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft® O58 - SDL:2021/04/16 18:11:12 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [832848] =>.Microsoft® O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft® O58 - SDL:2021/04/16 18:11:12 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft® O58 - SDL:2021/03/15 17:55:08 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [958976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft® O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft® O58 - SDL:2021/05/14 11:45:23 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180024] =>.Microsoft® O58 - SDL:2021/05/14 11:46:03 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft® O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft® O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2021/03/15 17:55:03 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [259584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft® O58 - SDL:2021/04/16 18:10:54 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft® O58 - SDL:2019/12/07 16:53:42 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:54:50 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [329216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/15 17:54:50 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/05/14 11:28:20 A . (...) -- C:\WINDOWS\System32\ambakdrv.sys [51120] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2016/12/21 22:52:42 A . (...) -- C:\WINDOWS\System32\ammntdrv.sys [171952] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2021/06/08 15:31:08 A . (...) -- C:\WINDOWS\System32\amwrtdrv.sys [32176] {2F568997EDD3D061460493FE}. =>.AOMEI Tech Co O58 - SDL:2020/04/16 17:34:28 A . (...) -- C:\WINDOWS\System32\epmntdrv.sys [26760] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2020/04/16 17:34:28 A . (.Windows (R) Codename Longhorn DDK provider - Disk Performance Driver.) -- C:\WINDOWS\System32\EPMVolFl.sys [21128] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2020/04/16 17:34:28 A . (...) -- C:\WINDOWS\System32\EuGdiDrv.sys [14472] =>.CHENGDU YIWO Tech Development Co., Ltd.® O58 - SDL:2021/05/14 11:45:23 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:45:18 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2916864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:45:24 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3815936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:46:54 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 11:46:54 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2750976] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (8) - 2s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 9s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (51) - 13s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1335296] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1051136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [814592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [489472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [127488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2434560] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [281088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [418816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1020416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [941056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1485312] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [309760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2242048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [967168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [520192] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3394048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [938952] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [214528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [161096] =>.Microsoft® ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (22) - 44s O87 - FAEL: "{240C4023-509E-4EE3-A352-821D0D8D12F3}" [In-None-P17-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe =>.AOMEI International Network Limited® O87 - FAEL: "{722E2FFD-8AF3-470F-83C2-320472486A35}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe =>.AOMEI International Network Limited® O87 - FAEL: "{AA43967C-A099-4BBC-B6D2-9EE379FD1347}" [In-None-P17-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe =>.AOMEI International Network Limited® O87 - FAEL: "{E67052EB-1368-4EC2-BF3F-F8E82A61BB6A}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe =>.AOMEI International Network Limited® O87 - FAEL: "UDP Query User{5CB4E5E2-074F-476E-AEFE-E50AA0E5642A}C:\program files\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "TCP Query User{81A27236-805C-4327-B3F7-69A0C7E608F0}C:\program files\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "{685B9255-998C-4A45-8229-E34D9962F3D1}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{382EE003-9D4D-44CA-9755-7DBCCB0CDC3B}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{EB2B12C7-C25C-4674-99C0-F0844B826832}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{4EEE6EE4-3D86-42B2-9455-340194BBADFD}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{73BF031C-A26A-47BD-B37E-6FC0D1E76461}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{838DE1AD-7048-4EBF-A0CC-B98C0D626659}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{8BBB2D2C-17DA-4985-A293-1DB20E0438AA}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{45835C16-A9FB-44FC-809D-A0CA6F2B8D9A}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{7D8C2494-0B78-4C9B-BCCA-5FF30B6750B0}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{9D1E3741-C9A5-46C5-9487-09D98AB18828}" [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{848A8585-1374-4E86-8858-B5C28BDE6F90}" [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{EF8CD0A7-D9B8-4D26-82A7-3813407B6FA3}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{9E43000D-9AE2-489D-9EE3-E2546109AC51}" [Out-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{E10F4A3A-D418-4119-8B39-E32AC8EBF749}" [Out-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{38C78120-583D-4E34-973F-78BA502B1BD6}" [In-None-P6-TRUE] .(.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\ABService.exe =>.AOMEI International Network Limited® O87 - FAEL: "{F3AF6FFB-4634-488B-82CE-735E6FD078D7}" [In-None-P17-TRUE] .(.AOMEI International Network Limited - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\ABService.exe =>.AOMEI International Network Limited® ---\\ CODES PRODUITS LOGICIELS (11) - 0s O90 - PUC: "1af2a8da7e60d0b429d7e6453b3d0182" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org O90 - PUC: "375ECBAC68A0AF245AA27CAE165DEB80" [HKLM] . (.Classic Shell.) -- C:\Windows\Installer\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}\icon.ico =>.Legitimate O90 - PUC: "47CA2FBBC0273BC32819E543302923AF" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "68AB67CA408033019195001028441267" [HKLM] . (.Adobe Refresh Manager.) -- C:\Windows\Installer\{AC76BA86-0804-1033-1959-000182442176}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc. O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" [HKLM] . (.Google Update Helper.) =>.Google Inc. O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "CA4ECB96275917232ABF4932DB3AA634" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation O90 - PUC: "D34B1E0AA4F5FA649952BA3A243352CD" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation ---\\ PACKAGES WINDOWS INSTALLER (20) - 14s [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 10:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\395cbaa.msi [2805760] =>.Adobe Systems Incorporated [MD5.72BF0B7142646F1CD0FA7C872DB106D6] [WIS][2020/06/08 12:14:16] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\5b29f8b.msi [26112] =>.Google Inc. [MD5.FEB3EE1D61146165678928CBB36160BA] [WIS][2020/05/26 14:22:56] (.IvoSoft - Classic Shell.) -- C:\WINDOWS\Installer\9f514.msi [5361664] =>.IvoSoft [MD5.EEA67CBFC242AF7172521757388B33D2] [WIS][2021/02/09 16:58:54] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\e1351cc.msi [1056768] =>.Adobe Systems Incorporated [MD5.4CC38A296648BA222D1B10DD2D6F1783] [WIS][2021/02/25 15:40:17] (.Adobe Inc..) -- C:\WINDOWS\Installer\1005cf11.msp [3309568] =>.Adobe Inc. [MD5.72D73CF2AC0E8F8D176CFB7E3210BFE7] [WIS][2021/02/08 08:04:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\12d019a5.msp [68669440] =>.Adobe Inc. [MD5.F9EE3201972364B9A3B1E1AE6A783CEC] [WIS][2021/04/22 16:15:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\148112b7.msp [23986176] =>.Adobe Inc. [MD5.42DBEE9FDB61E243EB3D2374E6C1B119] [WIS][2021/02/15 16:11:27] (.Adobe Inc..) -- C:\WINDOWS\Installer\15596e87.msp [23928832] =>.Adobe Inc. [MD5.EB046342024F6ED2530146520803942D] [WIS][2021/02/22 14:32:23] (.Adobe Inc..) -- C:\WINDOWS\Installer\15fdd7.msp [3342336] =>.Adobe Inc. [MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 12:11:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\1608b233.msp [6557696] =>.Adobe Inc. [MD5.8660A406E59E2FF3CF744021722921B4] [WIS][2021/03/10 15:12:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\1b03fa25.msp [6430720] =>.Adobe Inc. [MD5.7EC737BD443A0AA00C6C332831C11099] [WIS][2020/05/04 04:32:13] (.Adobe Inc..) -- C:\WINDOWS\Installer\395cbab.msp [244387840] =>.Adobe Inc. [MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 18:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\39e2727.msp [1392640] =>.Adobe Inc. [MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 08:52:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\3c0929b.msp [20647936] =>.Adobe Inc. [MD5.BC546F5B6982C6159BF159426F96C2F1] [WIS][2021/05/10 09:24:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\653d8.msp [3588096] =>.Adobe Inc. [MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 13:35:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\791245.msp [3039232] =>.Adobe Inc. [MD5.49072BB228E642F3F83F8EA14942DC69] [WIS][2020/09/11 20:46:11] (.Adobe Inc..) -- C:\WINDOWS\Installer\7ea5063.msp [245866496] =>.Adobe Inc. [MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 14:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\92835ad.msp [3026944] =>.Adobe Inc. [MD5.BA664EAE92AA1371BA66F43C703AF5D1] [WIS][2021/04/16 16:01:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\a5f694c.msp [24084480] =>.Adobe Inc. [MD5.0134C922FC332FAF02CA6DD8AC1B1504] [WIS][2021/06/07 08:41:33] (.Adobe Inc..) -- C:\WINDOWS\Installer\f0d826.msp [39587840] =>.Adobe Inc. ---\\ FEATURE CONTROL. (129) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Main.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:OneDrive.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (165) - 109s Application.Error: Application Hang (14) ~Numéro: 10190 ~Date: 06/09/2021 10:44:17 AM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: ESENT (63) ~Numéro: 10188 ~Date: 06/09/2021 10:22:34 AM ~ID: 507 ~Description: %1 (%2) %3Une demande de lecture du fichier « %4 » à l’adresse relative %5 pour %6 octets a réussi, mais a duré anormalement longtemps (%7 secondes) pour être traitée par le système d’exploitation. Ce problème est probablement dû à du matériel défect ~Suggestion: Aucune Application.Error: SecurityCenter (40) ~Numéro: 10155 ~Date: 06/09/2021 09:30:03 AM ~ID: 17 ~Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Application.Error: Windows Search Service (12) ~Numéro: 10083 ~Date: 06/08/2021 08:44:53 PM ~ID: 3079 ~Description: Les notifications ne sont pas actives pour le volume %2. Contexte : Application WindowsDétails : Le journal de modification du volume n’est pas actif. (HRESULT : 0x8007049b) (0x8007049b) Application.Error: VSS (24) ~Numéro: 10073 ~Date: 06/08/2021 07:16:05 PM ~ID: 8194 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = %1. Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opéra ~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s'exécutent du service réseau au système local. Ajuster les autorisations d'activation du service COM par défaut Application.Error: SPP (6) ~Numéro: 10062 ~Date: 06/08/2021 06:56:07 PM ~ID: 16389 ~Description: L’enregistreur %1 a rencontré une erreur récupérable lors de la création du cliché instantané. Nouvelle tentative en cours... Plus d’infos : %2. Application.Warning: Dwminit (3) ~Numéro: 9593 ~Date: 06/05/2021 06:41:25 PM ~ID: 0 ~Description: Le processus Gestionnaire de fenêtrage a été quitté. (Code de sortie du processus : %1, nombre de redémarrages : %2, ID de périphérique d’affichage principal : %3) ~Suggestion: Exécuter l'utilitaire de résolution des problèmes des applications Windows. Application.Error: Application Error (13) ~Numéro: 9582 ~Date: 06/05/2021 06:18:11 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0xc4bd4430 Nom du module défaillant : %4, version : %5, horodatage : 0xc4bd4430 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000005d01c ID du processus défaillant : 0x21e0 H ~Suggestion: Réparer ou réinstaller l'application. Application.Error: Firefox Default Browser Agent (4) ~Numéro: 9562 ~Date: 06/05/2021 05:12:59 PM ~ID: 12030 ~Description: 0x80072EFE in IsAgentRemoteDisabledInternal:68 Application.Error: Microsoft-Windows-Defrag (6) ~Numéro: 9377 ~Date: 06/01/2021 11:02:22 PM ~ID: 264 ~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) ~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation. Application.Error: Microsoft-Windows-LoadPerf (2) ~Numéro: 8420 ~Date: 05/20/2021 03:34:23 PM ~ID: 3011 ~Description: Le déchargement des chaînes de compteurs de performances pour le service %1 (%2) a échoué. Le premier DWORD de la section Data contient le code d’erreur. Application.Error: Microsoft-Windows-Perflib (1) ~Numéro: 8418 ~Description: L'accès aux données des performances a été refusé à l'utilisateur « %1 » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « %2 » (valeur de GetModuleFileName () pour le binaire qui a émis la requêt Application.Warning: Wlclntfy (11) ~Numéro: 7945 ~Date: 05/14/2021 03:26:51 PM ~ID: 6006 ~Description: Le traitement de l’événement de notification (%3) par l’abonné aux notifications Winlogon <%1> a duré %2 secondes. ~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System Application.Warning: Microsoft-Windows-System-Restore (3) ~Numéro: 6280 ~Date: 04/21/2021 11:38:13 AM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy %1 with error %2. ~Suggestion: Exécuter la commande chkdsk / f Application.Warning: Microsoft-Windows-WMI (6) ~Numéro: 5669 ~Date: 04/17/2021 11:26:21 AM ~ID: 63 ~Description: Un fournisseur, %1, a été inscrit dans l’espace de noms Windows Management Instrumentation %2, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de sécurité s’il ne représente pas ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. System.Warning: DCOM (1222) ~Numéro: 18304 ~Date: 06/09/2021 10:59:56 AM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}brucenunucheS-1-5-21-3137422517-1548693181-341252407-1001LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: BTHUSB (129) ~Numéro: 18255 ~Date: 06/09/2021 09:20:21 AM ~ID: 28 ~Description: La carte locale ne prend pas en charge Bluetooth Low Energy. System.Error: EventLog (9) ~Numéro: 18228 ~Date: 06/09/2021 09:21:01 AM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Warning: storahci (2) ~Numéro: 18223 ~Date: 06/09/2021 01:41:06 AM ~ID: 129 ~Description: Une réinitialisation au périphérique, %1, a été émise. System.Warning: disk (407) ~Numéro: 18222 ~Date: 06/09/2021 01:40:31 AM ~ID: 52 ~Description: Le pilote a détecté que le périphérique %1 a prédit une défaillance. Faites immédiatement une sauvegarde de vos données et remplacez votre disque dur. Une panne est certainement imminente. System.Error: Service Control Manager (19) ~Numéro: 18176 ~Date: 06/08/2021 10:17:56 PM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%1053 System.Error: Virtual Disk Service (1) ~Numéro: 18167 ~Date: 06/08/2021 10:07:13 PM ~ID: 9 ~Description: Échec inattendu du fournisseur. Le redémarrage du service pourrait résoudre le problème. Code d’erreur : 80004005@02000014 System.Error: Microsoft-Windows-Ntfs (44) ~Numéro: 18148 ~Date: 06/08/2021 08:44:19 PM ~ID: 98 ~Description: J:\Device\HarddiskVolume133 System.Warning: Microsoft-Windows-DNS-Client (60) ~Numéro: 18145 ~Date: 06/08/2021 08:38:48 PM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: Ntfs (308) ~Numéro: 18124 ~Date: 06/08/2021 07:37:14 PM ~ID: 50 ~Description: {L'écriture différée a échoué} Windows n'a pas pu enregistrer les données du fichier %2. Les données ont été perdues. Cette erreur peut être due à une panne de votre matériel ou de votre connexion réseau. Essayez d'enregistrer ce fichier à un autre e System.Error: BugCheck (1) ~Numéro: 17957 ~Date: 06/08/2021 04:35:49 PM ~ID: 1001 ~Description: 0x0000003b (0x00000000c0000005, 0xfffff80030b185a8, 0xffff8081edd16c80, 0x0000000000000000)C:\WINDOWS\MEMORY.DMP86f9775c-71d9-470a-b583-9277034b474c System.Error: Microsoft-Windows-Kernel-Boot (4) ~Numéro: 17506 ~Date: 06/07/2021 11:36:42 AM ~ID: 29 ~Description: 3221225684Une erreur irrécupérable s’est produite pendant le traitement des données de restauration. System.Error: volsnap (5) ~Numéro: 17233 ~Date: 06/06/2021 06:33:26 PM ~ID: 23 ~Description: Espace insuffisant sur le volume %3 pour créer le cliché instantané du volume %2. Échec de la création du stockage du cliché instantané. System.Warning: Microsoft-Windows-WLAN-AutoConfig (25) ~Numéro: 16827 ~Date: 06/03/2021 03:52:10 PM ~ID: 4003 ~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 7 Famille IP : 0 ~Suggestion: Vérifier les paramètres d'économie d'énergie System.Error: Microsoft-Windows-FilterManager (56) ~Numéro: 13583 ~Date: 05/16/2021 05:19:38 PM ~ID: 3 ~Description: Le gestionnaire de filtres n’a pas réussi à s’attacher au volume « %3 ». Ce volume ne sera pas disponible pour le filtrage avant un redémarrage. L’état final était %1. System.Warning: Microsoft-Windows-Kernel-PnP (1) ~Numéro: 13329 ~Date: 05/15/2021 09:57:03 PM ~ID: 225 ~Description: L’application %3 avec l’ID de processus %1 a arrêté le retrait ou l’éjection pour le périphérique %5. ---\\ SCAN ADDITIONNEL (9) - 29s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellConverter =>.SUP.Orphan HKLM\Software\Wow6432Node\Classes\CLSID\{30A4E07E-068A-4d91-8F05-691283A1336B} =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\nunuche\AppData\Local\Temp\mat-debug-2440.log =>.SUP.Temporary.Microsoft C:\Users\nunuche\AppData\Local\Temp\mat-debug-5136.log =>.SUP.Temporary.Microsoft C:\Users\nunuche\AppData\Local\Temp\mat-debug-6788.log =>.SUP.Temporary.Microsoft ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (4) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft ---\\ NUMEROS DE SÉRIE [011F39A2261A993DD15176DA6FE4FBEA] [25/01/2021] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [28/05/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroBroker.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [28/05/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc. [0407ABB64E9990180789EACB81F5F914] [04/01/2021] (.VideoLAN.) - C:\program files\videolan\vlc\vlc.exe =>.VideoLAN [044E3BF58976880FFD074448A8F7A058] [30/05/2021] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation [0686ED403EC1BF441C8F335C841EEA00] [11/06/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\EaseUS Partition Master\unins000.exe =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [16/04/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\drivers\EPMVolFl.sys =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [16/04/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\drivers\EUDCPEPM.sys =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [16/04/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\drivers\EUEDKEPM.sys =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [16/04/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\epmntdrv.sys =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [16/04/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\EPMVolFl.sys =>.CHENGDU YIWO Tech Development Co., Ltd. [0686ED403EC1BF441C8F335C841EEA00] [16/04/2020] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\WINDOWS\System32\EuGdiDrv.sys =>.CHENGDU YIWO Tech Development Co., Ltd. [08A2EC4E78A09E174B192E5535984B59] [08/06/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [08/06/2021] (.Malwarebytes Inc.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [08/06/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [08/06/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\dbclsupdate\staging\ig.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\dbclsupdate\staging\MBAMCoreV4.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\dbclsupdate\staging\sample.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\Users\nunuche\AppData\LocalLow\IGDump\kkpdpijlsaxomzkpfydzheduudfgkdbj\ig.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [13/05/2021] (.Malwarebytes Inc.) - C:\Users\nunuche\AppData\LocalLow\IGDump\kkpdpijlsaxomzkpfydzheduudfgkdbj\sample.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [26/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\mbam_scanresults_r03_drawer.2.0.0.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [29/05/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\dbclsupdate\staging\ActionsV4.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\dbclsupdate\staging\BrowserSDKDLLV4.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.EXPT-179-Test-A-CU34.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.EXPT-179-Test-Control-CU34.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/05/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc [0C15BE4A15BB0903C901B1D6C265302F] [04/06/2021] (.Google LLC.) - C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\gmp-widevinecdm\4.10.2209.1\widevinecdm.dll =>.Google LLC [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/06/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/06/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/06/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [04/06/2021] (.Mozilla Corporation.) - C:\Users\nunuche\AppData\Roaming\Mozilla\Firefox\Profiles\ltmywrx8.default-release-1622801404406\gmp-gmpopenh264\1.8.1.1\gmpopenh264.dll =>.Mozilla Corporation [0D7AAE3B360869A3BA28BD7D1FD0B8F6] [05/06/2021] (.VS Revo Group Ltd..) - C:\Users\nunuche\AppData\Local\Temp\VSUSetup.exe =>.VS Revo Group Ltd. [0D7AAE3B360869A3BA28BD7D1FD0B8F6] [25/05/2021] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group Ltd. [0D7AAE3B360869A3BA28BD7D1FD0B8F6] [28/09/2020] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group Ltd. [0F4D8F268EE80DC8859E7CC11874E40C] [22/05/2021] (.Spotify AB.) - C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.159.714.0_x86__zpdnekdrzrea0\Spotify.exe =>.Spotify AB [14781BC862E8DC503A559346F5DCC518] [09/12/2016] (.NVIDIA Corporation.) - C:\WINDOWS\System32\DRIVERS\nvlddmkm.sys =>.NVIDIA Corporation [14781BC862E8DC503A559346F5DCC518] [14/11/2016] (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation [14781BC862E8DC503A559346F5DCC518] [14/11/2016] (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe =>.NVIDIA Corporation [14781BC862E8DC503A559346F5DCC518] [14/11/2016] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display\nvtray.exe =>.NVIDIA Corporation [14781BC862E8DC503A559346F5DCC518] [14/11/2016] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe =>.NVIDIA Corporation [28736D0D296789512BAC66CCE86C4A00] [14/05/2019] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [28736D0D296789512BAC66CCE86C4A00] [21/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [2F568997EDD3D061460493FE] [08/06/2021] (.AOMEI International Network Limited.) - C:\Windows\system32\amwrtdrv.sys =>.Not verified [33000001C5CE6E1B72871D1C550000000001C5] [23/02/2021] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [3B7CED025F774B82483E9A6427AB4EEA] [20/05/2021] (.Simply Super Software.) - C:\Program Files (x86)\Trojan Remover\unins000.exe =>.Simply Super Software [3B7CED025F774B82483E9A6427AB4EEA] [20/05/2021] (.Simply Super Software.) - C:\Users\nunuche\Downloads\trjsetup695.exe =>.Simply Super Software [3B7CED025F774B82483E9A6427AB4EEA] [25/10/2018] (.Simply Super Software.) - C:\Program Files (x86)\Trojan Remover\Trshlex64.dll =>.Simply Super Software [3B7CED025F774B82483E9A6427AB4EEA] [27/02/2021] (.Simply Super Software.) - C:\Program Files (x86)\Trojan Remover\Rmvtrjan.exe =>.Simply Super Software [415D8D481D99C6E4657864D0515EE54A] [18/04/2020] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe =>.AOMEI International Network Limited [43BB437D609866286DD839E1D00309F5] [19/08/2014] (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation [529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [62E745E92165213C971F5C490AEA12A5] [19/05/2021] (.NVIDIA Corporation.) - C:\Users\nunuche\AppData\Local\NVIDIA\NvBackend\Packages\00010b11\DRS update.18761999.exe =>.NVIDIA Corporation [67B83A5B6CB6CD7D1908979D] [14/05/2021] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\ABService.exe =>.AOMEI International Network Limited [67B83A5B6CB6CD7D1908979D] [14/05/2021] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\6.5.1\Backupper.exe =>.AOMEI International Network Limited [67B83A5B6CB6CD7D1908979D] [14/05/2021] (.AOMEI International Network Limited.) - C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.5.1\AOMEI Backupper\ABLaucher.exe =>.AOMEI International Network Limited [75B5499C96D676A5FAE2656B351E1FD6] [11/11/2020] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics Co., Ltd. [75B5499C96D676A5FAE2656B351E1FD6] [11/11/2020] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd. [785AF6D521F67E132D53385742CE9B35] [11/03/2015] (.Piriform Ltd.) - C:\Program Files\Defraggler\Defraggler64.exe =>.Piriform Ltd [785AF6D521F67E132D53385742CE9B35] [11/03/2015] (.Piriform Ltd.) - C:\Program Files\Defraggler\DefragglerShell64.dll =>.Piriform Ltd [785AF6D521F67E132D53385742CE9B35] [11/03/2015] (.Piriform Ltd.) - C:\Program Files\Defraggler\uninst.exe =>.Piriform Ltd [7BC15AF21367D0758BEDDCCA118642DE] [14/11/2016] (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation ~ Unselected Options: ~ End of the scan, 7233 items in 12mn23s (1864)(0)