~ ZHPDiag v2023.4.13.16 Par Nicolas Coolman (2023/04/13) ~ Démarré par sad (Administrator) (2023/04/15 12:02:20) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Users\sad\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\sad\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (2) - 0s ~ GCIE: Google Chrome v109.0.5414.120 ~ MSIE: Internet Explorer v11.0.9600.19810 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ LOGICIELS DE PROTECTION (1) - 1s Malwarebytes version 4.5.26.259 v4.5.26.259 (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (19) - 2s ~ Operating System: Intel64 Family 6 Model 23 Stepping 6, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 28 GB (43%) free of 65 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 2 ~ Slots Utilisés (Used Slots) : ~ Slots Disponibles (Free Slots) : 2 ~ Type de barrette (FormFactor): DIMM ~ Taille (Size) : 1 Go ~ Vitesse (Speed) : ~ Charge mémoire (Memory Usage) : 58% ~ RAM physique Total (Total Physical) : 3 Go : OK ~ RAM physique Disponible (Available Physical) : 1 Go ~ Total virtuelle (Total Virtual) : 6 Go ~ Disponible virtuelle (Available Virtual): 2.92 Go ~ Disponible virtuelle (Available Virtual): 2.92 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: SAD-PC ~ User Name: sad ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (5) - 9s ~ Drive C: has 28 GB free of 65 GB (System) ~ Drive D: has 3 GB free of 6 GB ~ Drive E: has 1 GB free of 53 GB ~ Drive F: has 3 GB free of 129 GB ~ Drive G: has 5 GB free of 49 GB ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (23) - 4s ~ Model: WDC WD3200BPVT-22ZEST0 ATA Device v01.01A01 (65 Gb ) ~ Media Type: HDD Disque Fixe ( Bus: ATA) ---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute] OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [47][200][200] [51][47] OK - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [39][152][128] [21][1391] OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][75][75] [0][25523] OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][200][200] [140][0] OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [46][200][200] [0][0] OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][84][84] [0][12119] OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [50][100][100] [0][0] OK - 0B - Nombre de recalibration (Calibration Retry Count) - [50][100][100] [0][0] OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][86][86] [0][14881] OK - BF - Nombre d'erreurs chargement/déchargement de tête (G-Sense Error Rate) - [50][1][1] [0][33287] OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [50][190][190] [0][7916] OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [50][107][107] [0][19095] OK - C2 - Température interne actuelle (Enclosure Temperature) - [34][109][76] [0][34] OK - C4 - Nombre d'opérations de réallocations (remap) (Reallocation Event Count) - [50][200][200] [0][0] OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [50][200][200] [0][0] OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [48][100][253] [0][0] OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [50][200][196] [0][37993] OK - C8 - Nombre Total d'erreurs d'écriture d'un secteur (Uncorrectable Sector Count) - [8][100][253] [0][0] ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (11) - 1s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoResolveSearch: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (27) - 3s [MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 12/09/2020 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] [Unsigned] =>.Microsoft Corporation [MD5.C36BB659F08F046B139C8D1B980BF1AC] - 12/09/2020 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [46080] [Unsigned] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] [Unsigned] =>.Microsoft Corporation [MD5.05DA6EC51DFF4DEEAFA53E08FC78A8A6] - 12/09/2020 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [4859392] [Unsigned] =>.Microsoft Corporation [MD5.CA0E2DF49879C57652531331EF5AE632] - 12/09/2020 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455680] [Unsigned] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] [Unsigned] =>.Microsoft Corporation [MD5.EDC97F95BC059531D0F9F68029D8E057] - 12/09/2020 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] [Unsigned] =>.Microsoft Corporation [MD5.2628B691C44A99B3BA6CE39D89997F80] - 12/09/2020 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [269824] [Unsigned] =>.Microsoft Corporation [MD5.DDF451BFACC5ABDB4DD21E01DD9906EF] - 12/09/2020 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2653184] [Unsigned] =>.Microsoft Corporation [MD5.6B99B380A87B39F72863356CD188A233] - 12/09/2020 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng2.dll [2653184] [Unsigned] =>.Microsoft Corporation [MD5.744072895AB6B1F0C10E901CC241795B] - 12/09/2020 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [Unsigned] =>.Microsoft Corporation [MD5.D443C1F02DA51C5EEC0DC19F48B3ED5B] - 12/09/2020 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [496128] [Unsigned] =>.Microsoft Corporation [MD5.C8AA50005E6461D5C2C247DBABBF2008] - 12/09/2020 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [23784] [Unsigned] =>.Microsoft Corporation [MD5.B861DF1DC9CA9259934DBAC5E069681B] - 12/09/2020 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92672] [Unsigned] =>.Microsoft Corporation [MD5.7200A15FCDDECA736E97D2815A32A54F] - 12/09/2020 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [150016] [Unsigned] =>.Microsoft Corporation [MD5.63705A08981F7EDD376241D6E0A9C2AC] - 12/09/2020 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [115200] [Unsigned] =>.Microsoft Corporation [MD5.45DAAFD1056B8942C5038EFFD285658D] - 12/09/2020 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [Unsigned] =>.Microsoft Corporation [MD5.55CCD3E5E4DA18FCF0598F42249D47DF] - 12/09/2020 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation [MD5.9774AA4661A30E0ADCEA48B5A1B9F4B7] - 12/09/2020 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] [Unsigned] =>.Microsoft Corporation [MD5.2823C507DD4DA295820E65EA2F4566F3] - 12/09/2020 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [161280] [Unsigned] =>.Microsoft Corporation [MD5.0805034EA6F5273D4CB130D726AA5450] - 12/09/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262656] [Unsigned] =>.Microsoft Corporation [MD5.35577E671CE1DDEAA4879D9A8E188F57] - 12/09/2020 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1683176] [Unsigned] =>.Microsoft Corporation [MD5.0E75370C05A7AB23E3B05840BA9E1935] - 12/09/2020 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] [Unsigned] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation [MD5.951F08D4C2A3F7628E83953D8CEEAE01] - 12/09/2020 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] [Unsigned] =>.Microsoft Corporation [MD5.B52F1F5F55CD773BA89E5739B82E9C34] - 12/09/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [297192] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (44) - 5s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe [Unsigned] =>.AMD O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\audiosrv.dll (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft® O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X64 (clr_optimization_v4.0.30319_64) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe =>.Microsoft® O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\fdrespub.dll (FDResPub) . (.Microsoft Corporation - Service de publication des ressources de dé.) - C:\Windows\System32\fdrespub.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® O23 - Service: HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V. - HitmanPro Scheduler.) - C:\Program Files\HitmanPro\hmpsched.exe {08DDB12146AF9858663408E98629828B}. =>.SurfRight B.V. O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Inc.® O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) - C:\Windows\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com - Wise BootTime Service.) - C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Co., Ltd® O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) - C:\Windows\System32\wuaueng2.dll [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (62) - 22s SR - Demand [14/07/2009] [ 491088] (adp94xx) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adp94xx.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 339536] (adpahci) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpahci.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 182864] (adpu320) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpu320.sys =>.Microsoft Windows® SR - Demand [12/09/2020] [ 15080] (aliide) . (.Acer Laboratories Inc..) - C:\Windows\System32\drivers\aliide.sys =>.Microsoft® SR - Auto [16/03/2023] [ 305176] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [16/03/2023] [21527576] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DRIVERS\atikmdag.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [16/03/2023] [ 493592] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DRIVERS\atikmpag.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [12/09/2020] [ 107752] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft® SR - Demand [14/07/2009] [ 194128] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows® SR - Boot [12/09/2020] [ 26856] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft® SR - Demand [14/07/2009] [ 87632] (arc) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arc.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 97856] (arcsas) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows® SR - Demand [10/06/2009] [ 34304] Pilote de miniport NDIS pour contrôleur Atheros L2 Fast Eth (Atc002) . (.Atheros Communications, Inc..) - C:\Windows\System32\DRIVERS\l260x64.sys [Unsigned] =>.Atheros Communications, Inc. SR - Demand [10/06/2009] [ 468480] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bxvbda.sys [Unsigned] =>.Broadcom Corporation SR - Demand [10/06/2009] [ 270848] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60a) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\b57nd60a.sys [Unsigned] =>.Broadcom Corporation SR - Demand [10/06/2009] [ 18432] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltLo.sys [Unsigned] =>.Brother Industries, Ltd. SR - Demand [10/06/2009] [ 8704] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltUp.sys [Unsigned] =>.Brother Industries, Ltd. SR - Demand [14/07/2009] [ 286720] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\Brserid.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [10/06/2009] [ 47104] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrSerWdm.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [10/06/2009] [ 14976] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbMdm.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [10/06/2009] [ 14720] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbSer.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [12/09/2020] [ 17128] (cmdide) . (.CMD Technology, Inc..) - C:\Windows\System32\drivers\cmdide.sys =>.Microsoft® SR - Demand [10/06/2009] [ 145792] Intel(R) PRO/1000 NDIS 6 Adapter Driver (E1G60) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\E1G6032E.sys [Unsigned] =>.Intel Corporation SR - Demand [10/06/2009] [ 3286016] Broadcom NetXtreme II 10 GigE VBD (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\evbda.sys [Unsigned] =>.Broadcom Corporation SR - Demand [14/07/2009] [ 530496] (elxstor) . (.Emulex.) - C:\Windows\System32\drivers\elxstor.sys =>.Microsoft Windows® SR - System [22/03/2023] [ 158640] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\Windows\system32\drivers\mbae64.sys =>.Microsoft® SS - Demand [24/01/2023] [ 1725720] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\109.0.5414.120\elevation_service.exe =>.Google LLC® SR - Auto [16/03/2023] [ 171480] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SS - Demand [16/03/2023] [ 171480] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SR - Demand [10/06/2009] [ 31232] Hauppauge Consumer Infrared Receiver (hcw85cir) . (.Hauppauge Computer Works, Inc..) - C:\Windows\System32\drivers\hcw85cir.sys [Unsigned] =>.Hauppauge Computer Works, Inc. SR - Auto [13/04/2023] [ 151496] HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe {08DDB12146AF9858663408E98629828B}. =>.SurfRight B.V. SR - Demand [21/11/2010] [ 78720] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows® SR - Demand [12/09/2020] [ 410344] (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft® SR - Auto [20/12/2018] [ 229296] IDMWFP (IDMWFP) . (.Tonec Inc..) - C:\Windows\System32\DRIVERS\idmwfp.sys =>.Tonec Inc.® SR - Demand [10/06/2009] [ 6108416] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys [Unsigned] =>.Intel Corporation SR - Demand [14/07/2009] [ 44112] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\Windows\System32\drivers\iirsp.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 114752] (LSI_FC) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_fc.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 106560] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 65600] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 115776] (LSI_SCSI) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_scsi.sys =>.Microsoft Windows® SR - Auto [13/04/2023] [ 223176] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\Windows\System32\Drivers\MbamChameleon.sys =>.Microsoft® SR - Demand [15/04/2023] [ 198584] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\Windows\System32\DRIVERS\farflt.sys =>.Microsoft® SR - Demand [15/04/2023] [ 77736] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\Windows\system32\DRIVERS\mbam.sys =>.Microsoft® SR - Auto [14/04/2023] [ 9098608] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Inc.® SR - Demand [22/03/2023] [ 239544] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\Windows\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SR - Demand [15/04/2023] [ 149432] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\Windows\System32\DRIVERS\mwac.sys =>.Microsoft® SR - Demand [14/07/2009] [ 35392] (megasas) . (.LSI Corporation.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 284736] (MegaSR) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\MegaSR.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 51264] (nfrd960) . (.IBM Corporation.) - C:\Windows\System32\drivers\nfrd960.sys =>.Microsoft Windows® SR - Demand [12/09/2020] [ 148200] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft® SR - Demand [12/09/2020] [ 166120] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft® SR - Demand [14/07/2009] [ 1524816] (ql2300) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql2300.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 128592] (ql40xx) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql40xx.sys =>.Microsoft Windows® SR - System [12/09/2020] [ 94208] Pilote de port série (Serial) . (.Brother Industries Ltd..) - C:\Windows\System32\DRIVERS\serial.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [14/07/2009] [ 43584] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 80464] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows® SR - Demand [16/03/2023] [ 1202688] (smserial) . (.Motorola Inc..) - C:\Windows\System32\DRIVERS\smserial.sys [Unsigned] =>.Motorola Inc. SR - Demand [14/07/2009] [ 24656] (stexstor) . (.Promise Technology.) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows® SR - Demand [12/09/2020] [ 17128] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft® SR - Demand [14/07/2009] [ 161872] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows® SR - Auto [26/08/2021] [ 658224] Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com.) - C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Co., Ltd® SR - Auto [00/00/0000] [ 0] 楗敳䈠潯⁴獁楳瑳湡t" (楗敳潂瑯獁楳瑳湡tĀ") . (...) - 㩃停潲牧浡䘠汩獥⠠㡸⤶坜獩履楗敳䌠牡⁥㘳尵潂瑯楔敭攮數＀ (.not file.) [Unsigned] ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (8) - 4s O38 - TASK: {222F775E-2DBA-481D-BCC3-9818C2BC1DF0} [64Bits][\GoogleUpdateTaskMachineCore{F3037A22-A5A5-4355-8146-5ED034AC92F5}] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480] =>.Google LLC O38 - TASK: {3863E7DF-89FD-4810-A50E-0FE43DDA51B8} [64Bits][\Reg Organizer] - (.Chemtable Software - Reg Organizer.) -- C:\Program Files\Reg Organizer\RegOrganizer.exe [35933616] =>.Chemtable Software O38 - TASK: {A0156BE7-1F10-42C2-93DF-97A7DFA43754} [64Bits][\klcp_update] - (.KLite Inc - Setup/Uninstall.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024] =>.KLite Inc O38 - TASK: {C65E171B-768F-4216-90BB-94309A53B90A} [64Bits][\GoogleUpdateTaskMachineUA{6DA481E5-BDF1-46E1-B151-43CA810F5940}] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480] =>.Google LLC C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore{F3037A22-A5A5-4355-8146-5ED034AC92F5} - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google LLC C:\Windows\System32\Tasks\Reg Organizer - (.Chemtable Software.) -- C:\Program Files\Reg Organizer\RegOrganizer.exe [-Minimize] =>.Chemtable Software C:\Windows\System32\Tasks\klcp_update - (.KLite Inc.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [/verysilent ./verysilent] =>.KLite Inc C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA{6DA481E5-BDF1-46E1-B151-43CA810F5940} - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google LLC ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (5) - 1s O4 - HKLM\..\Run: [SMSERIAL] . (.Motorola Inc. - SM56 Modem Helper.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [Unsigned] =>.Motorola Inc. O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [Unsigned] =>.Tonec Inc. O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-21-748910347-1086775880-2855516514-1002\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [Unsigned] =>.Tonec Inc. ---\\ PROCESSUS LANCES (26) - 4s [MD5.9A306200F2F54FAEB423CCAAA76260EC] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [305176] [PID.812] [Unsigned] =>.AMD [MD5.01625EB8FA13D3047D7C75F26D97D47E] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [704536] [PID.912] [Unsigned] =>.AMD [MD5.38E147A4C24389664981E1E229F97A79] - (.SurfRight B.V. - HitmanPro Scheduler.) -- C:\Program Files\HitmanPro\hmpsched.exe [151496] [PID.632] {08DDB12146AF9858663408E98629828B}. =>.SurfRight B.V. [MD5.12F448AACC4658884868CCCA6D09ABA1] - (.WiseCleaner.com - Wise BootTime Service.) -- C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe [658224] [PID.1508] =>.Lespeed Technology Co., Ltd® [MD5.DF6A796460B0F70A9A42CB1AB98E7FFD] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [9098608] [PID.1580] =>.Malwarebytes Inc.® [MD5.DFED67AFBA2CA0B855D4E66856505CDB] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler.exe [301336] [PID.2124] =>.Google LLC® [MD5.FF3F776C7BA18ADE8D8169308EE75FBF] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler64.exe [401176] [PID.2136] =>.Google LLC® [MD5.813BCBF7F858077692445D0A3CDB33BA] - (.Motorola Inc. - SM56 Modem Helper.) -- C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [1702400] [PID.2332] [Unsigned] =>.Motorola Inc. [MD5.5F458389C0F55F55B7B9D92BF697752E] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5860864] [PID.2344] [Unsigned] =>.Tonec Inc. [MD5.7631C33878C331D7396679B0C391FCA8] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [384312] [PID.1660] =>.Tonec Inc.® [MD5.60953F46DA2B93C79099BD07729C5BAF] - (.Chemtable Software - Reg Organizer.) -- C:\Program Files\Reg Organizer\RegOrganizer.exe [35933616] [PID.3268] =>.Konstantin Polyakov IP® [MD5.BBC2F701F6397724EC997DEF851785C0] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [8454096] [PID.3648] =>.Malwarebytes Inc.® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4620] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4248] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4816] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4692] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.932] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4256] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4536] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.2800] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.3844] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.4028] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.3768] =>.Google LLC® [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.356] =>.Google LLC® [MD5.D5D786E4F8917D76F9E801FCD64AEAA0] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\sad\Downloads\Programs\ZHPDiag3.exe [3316936] [PID.2756] [Unsigned] =>.Nicolas Coolman [MD5.FFA2B8E17F645BCC20F0E0201FEF83ED] - (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [3151128] [PID.3804] =>.Google LLC® ---\\ CHROME, Démarrage, Recherche, Extensions (9) - 1s G2 - GCE: Preference [sad][User Data\Default\Extensions] [cjpalhdlnbpafiamejdnhcphjbkeiagm] uBlock Origin =>.Raymond Hill G2 - GCE: Preference [sad][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [sad][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes G2 - GCE: Preference [sad][User Data\Default\Extensions] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [sad][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [sad][User Data\Default\Local Extension Settings] [cjpalhdlnbpafiamejdnhcphjbkeiagm] =>.uBlock Origin G2 - GCE: Preference [sad][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [sad][User Data\Default\Local Extension Settings] [ngpampappnmepgilojfohadhhmbhlaek] =>.Legitimate G2 - GCE: Preference [sad][User Data\Default\Managed Extension Settings] [cjpalhdlnbpafiamejdnhcphjbkeiagm] =>.uBlock Origin ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.19811 (winblue_ltsb_escrow.200812-1713)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (25) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.® ---\\ RACCOURCIS GLOBAL STARTUP (58) - 14s O4 - GS\Desktop [sad]: Photoshop.lnk . (.XpucT - Photoshop by XpucT.) C:\Users\sad\Desktop\Portable Adobe Photoshop\Photoshoр.exe [Unsigned] O4 - GS\Desktop [sad]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) C:\Users\sad\AppData\Roaming\Telegram Desktop\Telegram.exe {7AE2B5021371F092A904B6FA}. =>.Telegram FZ-LLC O4 - GS\Desktop [sad]: WNetWatcher - Raccourci.lnk . (.NirSoft - Wireless Network Watcher.) C:\Program Files (x86)\NirSoft\Wireless Network Watcher\WNetWatcher.exe =>.Nir Sofer® O4 - GS\Desktop [sad]: Wondershare Filmora.lnk . (.Wondershare - Wondershare Filmora.) C:\Program Files (x86)\Wondershare\Wondershare Filmora\Wondershare Filmora X.exe [Unsigned] =>.Wondershare O4 - GS\Quicklaunch [sad]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Quicklaunch [sad]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Quicklaunch [sad]: RecoverXData.lnk . (.Suzhou Aunbox Software Co., Ltd - recoverxdata.) C:\Program Files (x86)\Auntec\RecoverXData\RecoverXData.exe {4D7914083DE4FC448564FC0C}. O4 - GS\sendTo [sad]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [sad]: Media Player Classic.lnk . (.MPC-HC Team - MPC-HC (x64).) C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe [Unsigned] =>.MPC-HC Team O4 - GS\sendTo [sad]: MediaInfo.lnk . (...) C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe [Unsigned] O4 - GS\TaskBar [sad]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\TaskBar [sad]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\TaskBar [sad]: RecoverXData.lnk . (.Suzhou Aunbox Software Co., Ltd - recoverxdata.) C:\Program Files (x86)\Auntec\RecoverXData\RecoverXData.exe {4D7914083DE4FC448564FC0C}. O4 - GS\TaskBar [sad]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [sad]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation O4 - GS\Programs [sad]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\CommonDesktop [Public]: HitmanPro.lnk . (.SurfRight B.V. - HitmanPro 3.7 : le véritable c.) C:\Program Files (x86)\HitmanPro\HitmanPro.exe [Unsigned] =>.SurfRight B.V. O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: MyFormatConverter.lnk . (.Engelmann Software - MyFormatConverter.) C:\Program Files (x86)\Engelmann Software\MyFormatConverter\MyFormatConverter.exe {008E0ABCFDDD421F57C9607B238FAFC5CB}. =>.Engelmann Software O4 - GS\CommonDesktop [Public]: RecoverXData.lnk . (.Suzhou Aunbox Software Co., Ltd - recoverxdata.) C:\Program Files (x86)\Auntec\RecoverXData\RecoverXData.exe {4D7914083DE4FC448564FC0C}. O4 - GS\CommonDesktop [Public]: Reg Organizer.lnk . (.Chemtable Software - Reg Organizer.) C:\Program Files\Reg Organizer\RegOrganizer.exe =>.Konstantin Polyakov IP® O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut [Unsigned] =>..Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s [Unsigned] =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe [Unsigned] =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{6F4FED52-5C49-454D-A4D6-656A8453A990}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (20) - 2s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (10) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Enable TLS1.1 and 1.2 [64Bits] - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe =>.Google LLC® ---\\ LOGICIELS INSTALLES (140) - 27s O42 - Logiciel: CutOut 8 - (.Franzis.de.) [HKLM][64Bits] -- CutOut 8_is1 [Unsigned] =>.Franzis.de O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: HitmanPro 3.7 - (.SurfRight B.V..) [HKLM][64Bits] -- HitmanPro38 [Unsigned] =>.SurfRight B.V. O42 - Logiciel: Internet Download Manager - (.Tonec Inc.) [HKLM][64Bits] -- IDM 6.40.8 [Unsigned] =>.Tonec Inc O42 - Logiciel: K-Lite Codec Pack 17.1.0 Full - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 [Unsigned] =>.KLCP O42 - Logiciel: Malwarebytes version 4.5.26.259 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Microsoft .NET Framework 4.8 - (.Microsoft Corporation.) [HKLM][64Bits] -- {16735AF7-1D8D-3681-94A5-C578A61EC832} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.8 (ARA) - (.Microsoft Corporation.) [HKLM][64Bits] -- {87B4DBDA-5268-3152-9781-9E8907990041} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.8 (FRA) - (.Microsoft Corporation.) [HKLM][64Bits] -- {EED6E294-BB0E-32E8-B448-92F2B59EB418} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.8 (Français) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036 =>.Microsoft Corporation® O42 - Logiciel: Microsoft .NET Framework 4.8 (العربية) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1025 =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.42 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.51011 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {aac9fcc4-dd9e-4add-901c-b5496a07ab2e} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.56336 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {071c9b48-7c32-4621-a0ac-3f809523288f} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.57102 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {f0cbd694-71ce-4391-9690-5da93b2f0445} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.58298 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {f45b48a7-f616-4211-b927-17cab6a96613} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.59192 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.4053 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {770657D0-A123-3C07-8E44-1C83EC895118} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {A49F249F-0C91-497F-86DF-B2585E8E76B7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {a0fe116e-9a8a-466f-aee0-625cb7c207e3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.57103 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {d8fea624-4f2c-432d-9a54-6eee9cd1a77e} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {052bac4a-6f79-46d4-a024-1ce1b4f73cd4} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {350AA351-21FA-3270-8B7A-835434E766AD} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.0 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {D04659D1-EB2D-3DE5-A833-837A623CCCF7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.218 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {BBBE35B2-9349-3C48-BD3D-F574B17C7924} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30411 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {D93AC9C8-B6CF-391E-BD2F-48AF4727476C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {4FFA2088-8317-3B14-93CD-4C699DB37843} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.0 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {2DFD8316-9EF1-3210-908C-4CB61961C1AC} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {91415F19-4C22-3609-A105-92ED3522D83C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.0 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {EE936C7A-EA40-31D5-9B65-8E3E089C3828} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.5570 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {8338783A-0968-3B85-AFC7-BAAE0A63DC50} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {DCB46B42-723F-350E-B18A-449BC6C21636} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {5DA8F6CD-C70E-39D8-8430-3D9808D6BD17} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {3C3D696B-0DB7-3C6D-A356-3DB8CE541918} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.0 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {527BBE2F-1FED-3D8B-91CB-4DB0F838E69E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {5B1F2843-B379-3FF2-B0D3-64DD143ED53A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.0 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {86CE85E6-DBAC-3FFD-B977-E4B79F83C909} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 Redistributable - x64 10.0.30319 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 Redistributable - x86 10.0.30319 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {196BB40D-1578-3D01-B289-BEFC77A11A1E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {0f12c81f-93ef-46ec-bc94-d952c1a775d4} =>.Microsoft Corporation® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {15134cb0-b767-4960-a911-f2d16ae54797} =>.Microsoft Corporation® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {35459b22-19a6-44ec-8d34-27eb3131acac} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {6e8f74e0-43bd-4dce-8477-6ff6828acc07} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {dde2682b-961a-41ea-8d44-6005991b7947} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {a1909659-0a08-4554-8af1-2175904903a1} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {a2199617-3609-410f-a8e8-e8806c73545b} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {6c95b50e-cb5a-4a1f-a7b4-8a6004f8dd6a} =>.Microsoft Corporation® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {22154f09-719a-4619-bb71-5b3356999fbf} =>.Microsoft Corporation® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {615bc16d-60f5-482e-91b3-b51d8130963b} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {8e70e4e1-06d7-470b-9f74-a51bef21088e} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {01db25f3-1b76-4d97-88c8-1c90634d88fb} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {95716cce-fc71-413f-8ad5-56c2892d4b3a} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {f0080ca2-80ae-4958-b6eb-e8fa916d744a} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {AC53FC8B-EE18-3F9C-9B59-60937D0B182C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {3C28BFD4-90C7-3138-87EF-418DC16E9598} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {764384C5-BCA9-307C-9AAC-FD443662686A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {A2CB1ACB-94A2-32BA-A15E-7D80319F7589} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {5AF4E09F-5C9B-3AAF-B731-544D3DC821DD} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {FDB30193-FDA0-3DAA-ACCA-A75EEFE53607} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {6C772996-BFF3-3C8C-860B-B3D48FF05D65} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {3D6AD258-61EA-35F5-812C-B7A02152996E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {E7D4E834-93EB-351F-B8FB-82CDAE623003} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {51adbf11-493f-431c-a862-967a0fae2944} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {7f51bdb9-ee21-49ee-94d6-90afc321780e} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {1a63c099-febd-4eaf-83ad-a82ea4fdac49} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {c6870a89-ef30-4f22-bbd1-49cd2516bc56} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {5d0723d3-cff7-4e07-8d0b-ada737deb5e6} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {0513c9cf-7191-45a7-ace9-ecdad03c93a4} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {ef6b00ec-13e1-4c25-9064-b2f383cb8412} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {49e969a1-2990-464d-92b5-25f6f34573c6} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {042d26ef-3dbe-4c25-95d3-4c1b11b235a7} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {2af972c7-13b0-4978-92a8-fee26a4fb4e9} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {ce085a78-074e-4823-8dc1-8a721b94b76d} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {b55f7208-e02b-4828-ac78-59c73ddf5bc7} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40649 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {78142960-066b-4581-b984-0bdcf560c4be} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40649 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {35b83883-40fa-423c-ae73-2aff7e1ea820} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 False - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {10dc8dbf-d3d7-4e23-be07-120fe5c66b78} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {61087a79-ac85-455c-934d-1fa22cc64f36} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 - (.Корпорация Майкрософт.) [HKLM][64Bits] -- {d2c8df0e-f15d-4426-9e51-f13f329f9cb4} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 False Eng - (.Microsoft Corporation.) [HKLM][64Bits] -- {9dff3540-fc85-4ed5-ac84-9e3c7fd8bece} =>.Microsoft® (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40649 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {20C1086D-C843-36B1-B678-990089D1BD44} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {5740BD44-B58D-321A-AFC0-6D3D4556DD6C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {010792BA-551A-3AC0-A7EF-0FAB4156C382} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40649 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {ABB19BB4-838D-3082-BDA4-87C6604181A2} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {CB0836EC-B072-368D-82B2-D3470BF95707} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {53CF6934-A98D-3D84-9146-FC4EDF3D5641} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40649 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {A8589745-51BC-3963-B4E9-201CF8693538} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DAD0258-515C-3DD4-8964-BD714199E0F7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D401961D-3A20-3AC7-943B-6139D5BD490A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40649 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {DEA7F8E3-B7B9-3C3C-945B-7F8CE9041748} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 False - (.Microsoft Corporation.) [HKLM][64Bits] -- {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8122DAB1-ED4D-3676-BB0A-CA368196543E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30031 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4e2bb9a5-0352-435b-ad37-c7e39a30c82d} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.29.30031 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1ed08299-c4da-468f-8879-3979af9adaa7} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30031 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8E892E03-B917-497A-A667-2BA6A2634B5B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30031 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33C38D48-9596-4EA8-A33F-E9ED4859068C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X86 Additional Runtime - 14.29.30031 - (.Microsoft Corporation.) [HKLM][64Bits] -- {224ECFA1-3EFD-4E14-A779-557CA153CF92} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.29.30031 - (.Microsoft Corporation.) [HKLM][64Bits] -- {34FDF8D7-E366-4773-BD4B-EB2705F665EC} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Motorola SM56 Speakerphone Modem - (.Motorola Inc.) [HKLM][64Bits] -- SMSERIAL [Unsigned] =>.Motorola Inc O42 - Logiciel: MyFormatConverter - (.Engelmann Software.) [HKLM][64Bits] -- {0DD9BA08-F991-43F8-913F-309820F0A73F} [Unsigned] =>.Engelmann Software (Hidden) O42 - Logiciel: MyFormatConverter - (.Engelmann Software.) [HKLM][64Bits] -- {ea9134de-012f-4377-ae7d-11d2ba3f3a15} {008E0ABCFDDD421F57C9607B238FAFC5CB}. =>.Engelmann Software O42 - Logiciel: NirSoft Wireless Network Watcher - (.NirSoft.) [HKLM][64Bits] -- NirSoft Wireless Network Watcher [Unsigned] =>.NirSoft O42 - Logiciel: PSD Codec by Ardfry Imaging, LLC (64 bit) - (.Ardfry Imaging, LLC.) [HKLM][64Bits] -- {72383075-FF31-4B87-BD94-8CFC347A1C19} [Unsigned] =>.Ardfry Imaging, LLC (Hidden) O42 - Logiciel: PSD CODEC Version 1.7.0.0 - (.Ardfry Imaging, LLC.) [HKLM][64Bits] -- Ardfry PSD CODEC_is1 =>.Ardfry Imaging, LLC® O42 - Logiciel: RecoverXData - (.Auntec Co., Ltd..) [HKLM][64Bits] -- {148FB686-627F-4859-830C-801D2DED4BA9}_is1 [Unsigned] O42 - Logiciel: Reg Organizer version 8.57 - (.ChemTable Software.) [HKLM][64Bits] -- Reg Organizer_is1 =>.Konstantin Polyakov IP® O42 - Logiciel: Telegram Desktop - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC O42 - Logiciel: Update for Microsoft .NET Framework 4.8 (KB4576487) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4576487 [Unsigned] =>.Microsoft Corporation O42 - Logiciel: WinRAR 6.10 beta 3 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wondershare Filmora 10.1.20.16 - (.LRepacks.) [HKLM][64Bits] -- Wondershare Filmora_is1 [Unsigned] ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (98) - 27s HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\CBSTEST =>.CBS Test HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\HitmanPro =>.EIDOS hitman Game HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Motorola =>.Motorola HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\Stepok =>.Stepok HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\Engelmann Software =>.Engelmann Software HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\WOW6432Node\IObit =>.IObit HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\WOW6432Node\LAV =>.LAV Inc HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\ChemTable Software =>.Chemtable Software HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\Engelmann Software =>.Engelmann Software HKCU\SOFTWARE\Franzis HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\madshi =>.madshi.net HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\Motorola =>.Motorola HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MPC-BE Filters =>.Legitimate HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\QDFV HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\SharewareOnSale =>.SharewareOnSale HKCU\SOFTWARE\Stepok =>.Stepok HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Icaros =>.Icaros HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\MPC-BE Filters =>.Legitimate HKU\.DEFAULT\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\ChemTable Software =>.Chemtable Software HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\DownloadManager =>.DownloadManager HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Engelmann Software =>.Engelmann Software HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Franzis HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Gabest =>.Gabest HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Google =>.Google HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Icaros =>.Icaros HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Licenses =>.Microsoft Corporation HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\madshi =>.madshi.net HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\MediaInfo =>.Jérôme Martinez HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Motorola =>.Motorola HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\MPC-BE Filters =>.Legitimate HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\QDFV HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\SharewareOnSale =>.SharewareOnSale HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Stepok =>.Stepok HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Trolltech =>.Trolltech HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-748910347-1086775880-2855516514-1002\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ CONTENU DES DOSSIERS PROGRAMMES (151) - 6s O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\ArdfryImaging =>.Ardfry Imaging, LLC® O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 16/03/2023 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 03/04/2023 - [] D -- C:\Program Files\Franzis [Unsigned] O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\Google =>.Google LLC® O43 - CFD: 13/04/2023 - [] D -- C:\Program Files\HitmanPro =>.EIDOS hitman Game O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 22/03/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\Motorola =>.Motorola O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\Reg Organizer =>.Konstantin Polyakov IP® O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 18/03/2023 - [] D -- C:\Program Files\Wondershare =>.Wondershare O43 - CFD: 29/03/2023 - [] D -- C:\Program Files (x86)\Auntec {4D7914083DE4FC448564FC0C}. O43 - CFD: 22/03/2023 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Program Files (x86)\Driver Booster =>.IObit O43 - CFD: 17/03/2023 - [] D -- C:\Program Files (x86)\Engelmann Software =>.Engelmann Software GmbH® O43 - CFD: 15/04/2023 - [] D -- C:\Program Files (x86)\Google =>.Google LLC® O43 - CFD: 16/03/2023 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 01/04/2023 - [] D -- C:\Program Files (x86)\NirSoft =>.NirSoft O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/04/2023 - [] D -- C:\Program Files (x86)\Wise =>.Legitimate O43 - CFD: 12/09/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 29/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auntec O43 - CFD: 03/04/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CutOut 8 O43 - CFD: 12/09/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 13/04/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro =>.EIDOS hitman Game O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 07/04/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFormatConverter O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSD Codec by Ardfry Imaging O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reg Organizer O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 18/03/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare Filmora =>.Wondershare O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\Chemtable Software =>.Chemtable Software O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 17/03/2023 - [] D -- C:\ProgramData\Engelmann Software =>.Engelmann Software O43 - CFD: 16/03/2023 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 13/04/2023 - [] D -- C:\ProgramData\HitmanPro =>.EIDOS hitman Game O43 - CFD: 16/03/2023 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 17/03/2023 - [] D -- C:\ProgramData\Licenses =>.Microsoft Corporation O43 - CFD: 22/03/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 16/03/2023 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 21/03/2023 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 17/03/2023 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 02/04/2023 - [0] D -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 11/04/2023 - [] D -- C:\ProgramData\Wondershare Filmora =>.Wondershare O43 - CFD: 17/03/2023 - [] D -- C:\Program Files (x86)\Common Files\HDX4 O43 - CFD: 16/03/2023 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 12/09/2020 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 14/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\ChemTable Software =>.Chemtable Software O43 - CFD: 15/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 17/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\Engelmann Software =>.Engelmann Software O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 11/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\IDM =>.IDM O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\IObit =>.IObit O43 - CFD: 03/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\Light Developer O43 - CFD: 12/04/2011 - [0] D -- C:\Users\sad\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 20/03/2023 - [] SD -- C:\Users\sad\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 18/03/2023 - [0] D -- C:\Users\sad\AppData\Roaming\Microsoft SDK10 =>.Microsoft Corporation O43 - CFD: 11/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 15/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 20/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\uTorrent O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 18/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\Wondershare Filmora =>.Wondershare O43 - CFD: 15/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Local\AMD =>.AMD O43 - CFD: 16/03/2023 - [0] SHD -- C:\Users\sad\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 20/03/2023 - [] D -- C:\Users\sad\AppData\Local\BitTorrentHelper O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Local\ChemTable Software =>.Chemtable Software O43 - CFD: 14/04/2023 - [] D -- C:\Users\sad\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Local\Google =>.Google O43 - CFD: 16/03/2023 - [0] SHD -- C:\Users\sad\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/03/2023 - [] D -- C:\Users\sad\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 22/03/2023 - [] D -- C:\Users\sad\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 15/04/2023 - [] D -- C:\Users\sad\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [0] SHD -- C:\Users\sad\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 28/03/2023 - [] D -- C:\Users\sad\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 15/04/2023 - [] D -- C:\Users\sad\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 16/03/2023 - [0] D -- C:\Users\sad\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\LocalLow\IObit =>.IObit O43 - CFD: 16/03/2023 - [] SD -- C:\Users\sad\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 14/04/2023 - [] D -- C:\Users\sad\Desktop\Nouveau dossier O43 - CFD: 13/04/2023 - [] D -- C:\Users\sad\Desktop\Nouveau dossier (3) O43 - CFD: 14/04/2023 - [] D -- C:\Users\sad\Desktop\Nouveau dossier (4) O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\Desktop\Portable Adobe Photoshop =>.Adobe Inc. O43 - CFD: 14/04/2023 - [] D -- C:\Users\sad\Desktop\psd O43 - CFD: 14/04/2023 - [] D -- C:\Users\sad\Desktop\زوايا ملونة O43 - CFD: 26/04/2016 - [] D -- C:\Users\sad\Desktop\شهادات اطفال مدرسه جرافيك مان 3 O43 - CFD: 14/07/2009 - [] RD -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [] RD -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 14/07/2009 - [] RD -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 01/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher O43 - CFD: 16/03/2023 - [] RD -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 12/04/2023 - [] D -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 16/03/2023 - [] D -- C:\Users\sad\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 16/03/2023 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec FZE - Internet Download Manager Shell Extension.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (24) - 2s O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH2: ChemtableMenu [64Bits] - {E5EF8FA3-2ED8-4EFA-B051-E0A769552ED1} . (. - ShellContextMenu_1.) -- C:\Program Files\Reg Organizer\ShellContextMenu_1.dll =>.Konstantin Polyakov IP® O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (4) - 0s O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTEME (293) - 23s O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [68096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [229888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [334528] =>.Microsoft Windows® O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [496128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [62176] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15080] =>.Microsoft® O58 - SDL:2023/03/16 10:52:23 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [305400] =>.Advanced Micro Devices, Inc.® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\drivers\amdide.sys [15080] =>.Microsoft® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [64512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107752] =>.Microsoft® O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:20:59 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [26856] =>.Microsoft® O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [62464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:10:13 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [23784] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [155368] =>.Microsoft® O58 - SDL:2023/03/16 10:52:28 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [21527576] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2023/03/16 10:52:28 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [493592] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] [Unsigned] =>.Broadcom Corporation O58 - SDL:2009/07/14 03:52:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [28240] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:35:59 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] [Unsigned] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] [Unsigned] =>.Brother Industries, Ltd. O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [95232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 02:06:52 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] [Unsigned] =>.Broadcom Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [150016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:06:34 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [186600] =>.Microsoft® O58 - SDL:2009/07/14 01:31:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [17664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17128] =>.Microsoft® O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [462048] =>.Microsoft® O58 - SDL:2009/07/14 03:52:31 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [21584] =>.Microsoft Windows® O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [38912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [40168] =>.Microsoft® O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [24144] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [115200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [73448] =>.Microsoft® O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27368] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [116736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [28736] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:58 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55016] =>.Microsoft® O58 - SDL:2009/07/14 01:38:28 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [16896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:38:28 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [98816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [988384] =>.Microsoft® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [267488] =>.Microsoft® O58 - SDL:2009/06/10 22:35:09 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\Windows\System32\drivers\E1G6032E.sys [145792] [Unsigned] =>.Intel Corporation O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [9728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] [Unsigned] =>.Broadcom Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [195584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/04/15 10:25:55 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\Windows\System32\drivers\farflt.sys [198584] =>.Microsoft® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [205312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:00:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [70224] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:25:40 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:00:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [288488] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:47:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [55376] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [23272] =>.Microsoft® O58 - SDL:2020/09/12 02:21:58 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [196976] =>.Microsoft® O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [289720] =>.Microsoft® O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65088] =>.Microsoft Windows® O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] [Unsigned] =>.Hauppauge Computer Works, Inc. O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [122368] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [350208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:31:06 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [754176] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:24 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14720] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410344] =>.Microsoft® O58 - SDL:2018/12/20 02:05:20 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [229296] =>.Tonec Inc.® O58 - SDL:2009/06/10 22:37:05 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [6108416] [Unsigned] =>.Intel Corporation O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [16616] =>.Microsoft® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [62464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:27 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [116224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:09:02 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:08:59 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [22240] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [50408] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [243200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [96992] =>.Microsoft® O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [155376] =>.Microsoft® O58 - SDL:2009/07/14 02:00:19 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 22:34:21 A . (.Atheros Communications, Inc. - Atheros L2 Fast Ethernet Controller ndis mi.) -- C:\Windows\System32\drivers\l260x64.sys [34304] [Unsigned] =>.Atheros Communications, Inc. O58 - SDL:2009/07/14 02:08:51 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [114688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/03/22 10:38:38 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\Windows\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2023/04/15 10:26:04 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [77736] =>.Microsoft® O58 - SDL:2023/04/13 01:39:00 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MbamChameleon.sys [223176] =>.Microsoft® O58 - SDL:2023/03/22 10:40:27 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [239544] =>.Microsoft® O58 - SDL:2009/07/14 02:01:06 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:10:49 A . (.Microsoft Corporation - Unimodem CSA Filter.) -- C:\Windows\System32\drivers\MODEMCSA.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:48:27 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [49216] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:00:20 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [94440] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\drivers\mpio.sys [165096] =>.Microsoft® O58 - SDL:2020/09/12 02:25:15 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [77312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [142336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [161280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [291328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [129536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [30952] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\drivers\msdsm.sys [143080] =>.Microsoft® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:06:24 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [16608] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [275176] =>.Microsoft® O58 - SDL:2009/07/14 02:00:18 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [11136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:00:17 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:00:17 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [368864] =>.Microsoft® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [33504] =>.Microsoft® O58 - SDL:2009/07/14 02:00:17 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [8064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:02:08 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:22:00 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiple.) -- C:\Windows\System32\drivers\mup.sys [108776] =>.Microsoft® O58 - SDL:2023/04/15 10:25:38 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [149432] =>.Microsoft® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\drivers\ndis.sys [949472] =>.Microsoft® O58 - SDL:2009/07/14 02:08:13 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [56832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:08 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [164352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [58368] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [262656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [378808] =>.Microsoft® O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [44544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1683176] =>.Microsoft® O58 - SDL:2009/07/14 01:19:38 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [6144] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148200] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166120] =>.Microsoft® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [124128] =>.Microsoft® O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [324608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [72832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [97280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [74984] =>.Microsoft® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [186600] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12520] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48872] =>.Microsoft® O58 - SDL:2009/07/14 03:45:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [220752] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:45 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50768] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [230400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:09:48 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:10:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [14848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:33 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [111104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:10:25 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [83968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [317440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:17:46 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:16:34 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:16:34 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:16:35 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:10:47 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\drivers\rdpwd.sys [212992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [213736] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:05 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [146944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [41472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:10:47 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:08:51 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [103808] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:22:00 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:00 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [171392] =>.Microsoft Windows® O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] [Unsigned] =>.Rovi Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 02:00:20 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [14848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:01:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [16896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:09:09 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:00:35 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/03/16 10:50:19 A . (.Motorola Inc. - Motorola SM56 Modem WDM Driver.) -- C:\Windows\System32\drivers\smserial.sys [1202688] [Unsigned] =>.Motorola Inc. O58 - SDL:2009/06/10 23:01:14 A . (.Motorola Inc. - Motorola SM56 Modem WDM Driver.) -- C:\Windows\System32\drivers\SmSerl64.sys [1227776] [Unsigned] =>.Motorola Inc. O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [19008] =>.Microsoft Windows® O58 - SDL:2009/06/10 22:48:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [426496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Pilote de serveur.) -- C:\Windows\System32\drivers\srv.sys [464384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [406016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\Windows\System32\drivers\stornvme.sys [50408] =>.Microsoft® O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [192232] =>.Microsoft® O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [69888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [13672] =>.Microsoft® O58 - SDL:2009/07/14 02:01:04 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [1894840] =>.Microsoft® O58 - SDL:2020/09/12 02:16:11 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:01 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [64736] =>.Microsoft® O58 - SDL:2020/09/12 02:10:47 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\drivers\terminpt.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:13:07 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [56832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:13:07 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [125440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [64080] =>.Microsoft Windows® O58 - SDL:2012/07/26 08:12:46 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\Windows\System32\drivers\uaspstor.sys [101832] {1121C44616E3C635CF293F8BE9DCAB685E6B}. =>.Microsoft Corporation O58 - SDL:2018/05/02 02:59:22 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\drivers\UCX01000.SYS [216520] {1121C44616E3C635CF293F8BE9DCAB685E6B}. =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [328192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [65768] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:06:52 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [9728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:08 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 05:24:11 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [99840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [7808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/06/29 10:56:48 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd8.sys [26568] {1121C44616E3C635CF293F8BE9DCAB685E6B}. =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Pilote de miniport eUSB EHCI.) -- C:\Windows\System32\drivers\usbehci.sys [56320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/07/24 16:06:10 A . (.Microsoft Corporation - USB3 HUB Driver.) -- C:\Windows\System32\drivers\USBHUB3.SYS [452040] {1121C44616E3C635CF293F8BE9DCAB685E6B}. =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [25600] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [325632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:38:18 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:58 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [31744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/02/13 06:12:26 A . (.Microsoft Corporation - USB XHCI Driver.) -- C:\Windows\System32\drivers\USBXHCI.SYS [342472] {1121C44616E3C635CF293F8BE9DCAB685E6B}. =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\drivers\vdrvroot.sys [37608] =>.Microsoft® O58 - SDL:2009/07/14 01:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [214248] =>.Microsoft® O58 - SDL:2020/09/12 02:20:59 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17128] =>.Microsoft® O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [129536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [70368] =>.Microsoft® O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [363752] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:20:59 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [297192] =>.Microsoft® O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:01 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:01 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:21:01 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:02:07 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [27776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [88576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:37:35 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [42496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [21056] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [785624] =>.Microsoft® O58 - SDL:2020/09/12 02:11:27 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [54376] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:21:07 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [19688] =>.Microsoft® O58 - SDL:2020/09/12 02:25:13 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [23776] =>.Microsoft® O58 - SDL:2020/09/12 02:25:12 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [16464] =>.Microsoft Windows® O58 - SDL:2020/09/12 02:25:16 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:11:35 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [87040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:11:35 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [198656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/12 02:25:17 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [375520] =>.Microsoft® O58 - SDL:2020/09/12 02:25:15 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3236352] [Unsigned] =>.Microsoft Corporation ---\\ DERNIERS FICHIERS MODIFIES OU CREES (Utilisateur) (1) - 55s O61 - LFC: 2023/03/21 21:25:46 A . (..) -- C:\Users\sad\AppData\Roaming\Telegram Desktop\Updater.exe [177552] {7AE2B5021371F092A904B6FA}. ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (8) - 1s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 0s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (32) - 7s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [71680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [806912] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [863232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680960] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344576] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [358912] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [688128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng2.dll [2653184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [854016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [371712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [572416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [128000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [87040] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [226304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (1) - 3s O87 - FAEL: "{4F46746B-7F9D-4438-9E87-A590EC3D666A}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® ---\\ CODES PRODUITS LOGICIELS (84) - 6s O90 - PUC: "0D756077321A70C3E844C138CE981581" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.4053 False.) =>.bl.org O90 - PUC: "1007C6B46D7C017319E3B52CF3EC196E" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 False.) =>.bl.org O90 - PUC: "12B8D03ED28D112328CCF0A0D541598E" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 False.) =>.Microsoft Corporation O90 - PUC: "153AA053AF120723B8A73845437E66DA" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 False.) =>.bl.org O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219.) =>.bl.org O90 - PUC: "1af2a8da7e60d0b429d7e6453b3d0182" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000.) =>.bl.org O90 - PUC: "1AFCE422DFE341E47A9755C71A35FC29" [HKLM] . (.Microsoft Visual C++ 2019 X86 Additional Runtime - 14.29.30031.) =>.Microsoft Corporation O90 - PUC: "1BAD2218D4DE6763BBA0AC63186945E3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219.) =>.bl.org O90 - PUC: "1D95640DD2BE5ED38A3338A726C3CC7F" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.0 False.) =>.bl.org O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 False.) =>.Microsoft Corporation O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 False.) =>.Microsoft Corporation O90 - PUC: "24B64BCDF327E0531BA844B96C2C6163" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.0 False.) =>.bl.org O90 - PUC: "2B53EBBB943984C3DBD35F471BC79742" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.218 False.) =>.bl.org O90 - PUC: "2B7A37F2E05E6A93A9CBFE984E6CE263" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 False.) =>.Microsoft Corporation O90 - PUC: "30E298E8719BA7946A76B26A2A36B4B5" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30031.) =>.Microsoft Corporation O90 - PUC: "3482F1B5973B2FF30B3D46DD41E35DA3" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4048 False.) =>.bl.org O90 - PUC: "39103BDF0ADFAAD3CAAC7AE5FE5E6370" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 False.) =>.Microsoft Corporation O90 - PUC: "3AF2CDE243F15E43095885C8E9DFC16C" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 False.) =>.Microsoft Corporation O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.59193 False.) =>.bl.org O90 - PUC: "3E8F7AED9B7BC3C349B5F7C89E407184" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40649 False.) =>.Microsoft Corporation O90 - PUC: "426aef8dc2f4d234a945e6eec91d7ae7" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.57103 False.) =>.bl.org O90 - PUC: "438E4D7EBE39F1538BBF28DCEA260330" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 False.) =>.Microsoft Corporation O90 - PUC: "4396FC35D89A48D31964CFE4FDD36514" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "44DB0475D85BA123FA0CD6D35465DDC6" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 False.) =>.Microsoft Corporation O90 - PUC: "492E6DEEE0BB8E234B84292F5BE94B81" [HKLM] . (.Microsoft .NET Framework 4.8 (FRA).) =>.Microsoft Corporation O90 - PUC: "496dbc0fec1719346909d59ab3f24054" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.57102 False.) =>.bl.org O90 - PUC: "4BB91BBAD8382803DB4A786C0614182A" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40649 False.) =>.Microsoft Corporation O90 - PUC: "4ccf9caae9dddda409c15b94a670bae2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.51011 False.) =>.bl.org O90 - PUC: "4DFB82C37C09831378FE14D81CE65989" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 False.) =>.Microsoft Corporation O90 - PUC: "5479858ACB1536934B9E02C18F965383" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40649 False.) =>.Microsoft Corporation O90 - PUC: "5703832713FF78B4DB49C8CF43A7C191" [HKLM] . (.PSD Codec by Ardfry Imaging, LLC (64 bit).) O90 - PUC: "5C4834679ACBC703A9CADF44632686A6" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 False.) =>.Microsoft Corporation O90 - PUC: "6138DFD21FE9012309C8C46B91161CCA" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.0 False.) =>.bl.org O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 False.) =>.Microsoft Corporation O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "699277C63FFBC8C368B03B4DF80FD556" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 False.) =>.Microsoft Corporation O90 - PUC: "6E58EC68CABDDFF39B774E7BF9389C90" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.5570 False.) =>.bl.org O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 False.) =>.Microsoft Corporation O90 - PUC: "6F9E66FF7E38E3A3FA41D89E8A906A4A" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 False.) =>.bl.org O90 - PUC: "7a84b54f616f11249b7271ac6b9a6631" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.58298 False.) =>.bl.org O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "7D8FDF43663E3774DBB4BE72506F56CE" [HKLM] . (.Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.29.30031.) =>.Microsoft Corporation O90 - PUC: "7FA53761D8D11863495A5C876AE18C23" [HKLM] . (.Microsoft .NET Framework 4.8.) -- C:\Windows\Installer\{16735AF7-1D8D-3681-94A5-C578A61EC832}\DisplayIcon =>.Microsoft Corporation O90 - PUC: "80AB9DD0199F8F3419F30389020F7AF3" [HKLM] . (.MyFormatConverter.) O90 - PUC: "84b9c17023c712640acaf308593282f8" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.56336 False.) =>.bl.org O90 - PUC: "84D83C3369598AE43AF39EDE849560C8" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30031.) =>.Microsoft Corporation O90 - PUC: "8520DAD7C5154DD39846DB1714990E7F" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 False.) =>.Microsoft Corporation O90 - PUC: "852DA6D3AE165F5318C27B0A122599E6" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 False.) =>.Microsoft Corporation O90 - PUC: "8802AFF4713841B339DCC496D93B8734" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 False.) =>.bl.org O90 - PUC: "8C9CA39DFC6BE193DBF284FA747274C6" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30411 False.) =>.bl.org O90 - PUC: "8E58E8E6B4EC5FF4197F4099C9F9EAA6" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.50727.42 False.) =>.bl.org O90 - PUC: "91F5141922C490631A5029DE53228DC3" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 False.) =>.bl.org O90 - PUC: "9eab5ec6ac3d99b498a1d16c1c815acf" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x64 8.0.59192 False.) =>.bl.org O90 - PUC: "A3878338869058B3FA7CABEAA036CD05" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.5570 False.) =>.bl.org O90 - PUC: "a4cab25097f64d640a42c11e4b7fc34d" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.58299 False.) =>.bl.org O90 - PUC: "A7C639EE04AE5D13B956E8E380C98382" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.0 False.) =>.bl.org O90 - PUC: "AB297010A1550CA37AFEF0BA14653C28" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "ADBD4B78862525137918E99870990014" [HKLM] . (.Microsoft .NET Framework 4.8 (ARA).) =>.Microsoft Corporation O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.56336 False.) =>.bl.org O90 - PUC: "B696D3C37BD0D6C33A65D38BEC459181" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 False.) =>.bl.org O90 - PUC: "B8CF35CA81EEC9F3B9950639D7B081C2" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 False.) =>.Microsoft Corporation O90 - PUC: "BCA1BC2A2A49AB231AE5D70813F95798" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 False.) =>.Microsoft Corporation O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C173E5AD3336A8D3394AF65D2BB0CCE6" [HKLM] . (.Microsoft Visual C++ 2010 Redistributable - x64 10.0.30319 False.) =>.bl.org O90 - PUC: "C18E428E4A08FFD35B9F84249AFFF5F7" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 False.) =>.Microsoft Corporation O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001.) =>.bl.org O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "CE6380BC270BD863282B3D74B09F7570" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 False.) =>.Microsoft Corporation O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 False.) =>.bl.org O90 - PUC: "D04BB691875110D32B98EBCF771AA1E1" [HKLM] . (.Microsoft Visual C++ 2010 Redistributable - x86 10.0.30319 False.) =>.bl.org O90 - PUC: "D169104D02A37CA349B316935DDB94A0" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 False.) =>.bl.org O90 - PUC: "D6801C02348C1B636B879900981DDB44" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40649 False.) =>.Microsoft Corporation O90 - PUC: "DC6F8AD5E07C8D934803D389806DDB71" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 False.) =>.bl.org O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "E5D9D200AB92D6E3B94CD3D7D6CB37C5" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.0 False.) =>.bl.org O90 - PUC: "e611ef0aa8a9f664ea0e26c57b2c703e" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.51011 False.) =>.bl.org O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 False.) =>.bl.org O90 - PUC: "F2EBB725DEF1B8D319BCD40B8F836EE9" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.0 False.) =>.bl.org O90 - PUC: "F90E4FA5B9C5FAA37B1345D4D38C12DD" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 False.) =>.Microsoft Corporation O90 - PUC: "F942F94A19C0F79468FD2B85E5E8677B" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable - x86 8.0.50727.42 False.) =>.bl.org O90 - PUC: "FB4B305EBB7FF5D3B88C6F491BFC9F24" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 False.) =>.bl.org ---\\ PACKAGES WINDOWS INSTALLER (2) - 7s [MD5.3B7EFE6039559D25A643371C8953CD4A] [WIS][2017/04/14 13:49:48] (.Ardfry Imaging, LLC - WIC codec for PSD.) -- C:\Windows\Installer\134182.msi [954368] =>.Ardfry Imaging, LLC [MD5.1F31A0D8DF867278A7D89AFE1621E00B] [WIS][2022/04/25 07:25:36] (.Engelmann Software - MyFormatConverter.) -- C:\Windows\Installer\2ff002.msi [29130752] =>.Engelmann Software ---\\ FEATURE CONTROL. (123) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehexthost32.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (90) - 68s Application.Error: WinMgmt (168) ~Numéro: 5807 ~Date: 04/15/2023 10:26:16 AM ~ID: 10 ~Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ~Suggestion: Aucune Application.Error: Application Hang (7) ~Numéro: 5685 ~Date: 04/14/2023 12:56:32 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 1364 Heure de débu ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: Application Error (1) ~Numéro: 5681 ~Date: 04/14/2023 12:06:55 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5e9021ab Nom du module défaillant : %4, version : %5, horodatage : 0x5e9021ab Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000006ca29dd ID du processus défaillant : 0x490 He ~Suggestion: Réparer ou réinstaller l'application. Application.Warning: Microsoft-Windows-User Profiles Service (4) ~Numéro: 5605 ~Date: 04/13/2023 09:28:05 PM ~ID: 1530 ~Description: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cel Application.Warning: Windows Search Service (30) ~Numéro: 4769 ~Date: 04/07/2023 10:46:14 PM ~ID: 1008 ~Description: Le service Windows Search démarre et tente de supprimer l’ancien index de recherche {Raison : %2}. Application.Error: ESENT (3) ~Numéro: 4758 ~Date: 04/07/2023 10:45:40 PM ~ID: 455 ~Description: %1 (%2) %3L'Erreur %5 s'est produite lors de l'ouverture du fichier journal %4. ~Suggestion: Créer un dossier C:\Windows\system32\config\systemprofile\AppData\Local\TileDataLayer\Database Application.Error: SIB (3) ~Numéro: 2463 ~Date: 03/22/2023 10:31:50 AM ~ID: 1752 ~Description: InstallApp: run: C:\gecici_proje_klasoru\1\1.exe InstallApp: starting script InstallApp: step #1: failed Button 'Tamam' not found InstallApp: waiting for process to complete... InstallApp: completed Application.Warning: ASP.NET 4.0.30319.0 (2) ~Numéro: 1539 ~Date: 03/17/2023 09:15:39 AM ~ID: 1020 ~Description: Les mises à jour de la métabase IIS ont été abandonnées car IIS n'est pas installé ou est désactivé sur cet ordinateur. Pour configurer ASP.NET afin qu'il s'exécute dans IIS, installez ou activez IIS et réinscrivez APS.NET en utilisant aspnet_regiis. Application.Error: System Restore (41) ~Numéro: 1368 ~Date: 03/16/2023 12:21:13 PM ~ID: 8193 ~Description: Échec de la création d’un point de restauration (Processus = %1 ; Description = %2 ; Erreur = %3). Application.Error: VSS (82) ~Numéro: 1367 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2. ~Suggestion: Utiliser la procédure de reconstruction du VSS System.Error: Schannel (142) ~Numéro: 27911 ~Date: 04/15/2023 12:01:16 PM ~ID: 4119 ~Description: L’alerte fatale suivante a été reçue : %1. System.Error: Service Control Manager (36) ~Numéro: 27833 ~Date: 04/15/2023 10:24:41 AM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%2 System.Warning: USER32 (2) ~Numéro: 26956 ~Date: 04/14/2023 12:51:20 PM ~ID: 1073 ~Description: La tentative par l’utilisateur %2 de redémarrer/arrêter l’ordinateur %1 a échoué System.Warning: Microsoft-Windows-DNS-Client (7) ~Numéro: 26754 ~Date: 04/14/2023 01:21:08 AM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Error: EventLog (7) ~Numéro: 26286 ~Date: 04/13/2023 07:55:50 PM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Error: volsnap (1) ~Numéro: 25297 ~Date: 04/12/2023 03:51:11 PM ~ID: 36 ~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. System.Warning: Microsoft-Windows-Kernel-PnP (3) ~Numéro: 25249 ~Date: 04/12/2023 02:18:13 PM ~ID: 219 ~Description: 123WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_IT1167B&PROD_USB_FLASH_DISK&REV_0.00#B1628775E921A0B2&0#322122634114\Driver\WUDFRd0 ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système ---\\ SCAN ADDITIONNEL (9) - 7s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\sad\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\sad\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome C:\Users\sad\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe =>.Unsigned [HKU\S-1-5-21-748910347-1086775880-2855516514-1002\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe =>.Unsigned ---\\ RECAPITULATIF DES ELEMENTS TROUVES (4) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome ---\\ NUMEROS DE SÉRIE [008E0ABCFDDD421F57C9607B238FAFC5CB] [17/03/2023] (.Engelmann Software GmbH.) - C:\ProgramData\Package Cache\{ea9134de-012f-4377-ae7d-11d2ba3f3a15}\Bootstrapper.exe =>.Not verified [008E0ABCFDDD421F57C9607B238FAFC5CB] [25/04/2022] (.Engelmann Software GmbH.) - C:\Program Files (x86)\Engelmann Software\MyFormatConverter\MyFormatConverter.exe =>.Not verified [00A657F778B31AE523D667131718D16EB2] [05/04/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [05/04/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [05/04/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [09/04/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [09/04/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [14/04/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [14/04/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [14/04/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [22/03/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_ELXR82.1.0.12.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [22/03/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_fr.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [22/03/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_ge.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [22/03/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_sp.1.0.14.x64.dll =>.Malwarebytes Inc. [00DEC85951C6FB77B3E9C0DA4D429DE095] [25/11/2017] (.Engelmann Software GmbH.) - C:\Program Files (x86)\Engelmann Software\MyFormatConverter\BugReport.exe =>.Engelmann Software GmbH [00F7A0A730C87D94CD8302E3EA7F661BB7] [12/11/2021] (.Nir Sofer.) - C:\Program Files (x86)\NirSoft\Wireless Network Watcher\WNetWatcher.exe =>.Nir Sofer [05F97D054A9BFCBF9D5E12F8D0ABBE07] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\edls_64.dll =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\em002_64.dll =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\em003_64.dll =>.ESET, spol. s r.o. [06AEA76BAC46A9E8CFE6D29E45AAF033] [16/03/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC [06C5078AA528BBD3B8668AB10B035F94] [03/03/2021] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc. [06C5078AA528BBD3B8668AB10B035F94] [09/11/2021] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc. [06C5078AA528BBD3B8668AB10B035F94] [13/03/2020] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe =>.Tonec Inc. [08DDB12146AF9858663408E98629828B] [13/04/2023] (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe =>.Not verified [0D36AB0805BA9450220F865C58918F52] [22/03/2023] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\instlrupdate\MBSetup.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [22/03/2023] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_elxr-85.1.0.12.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [22/03/2023] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_drawer.2.0.11.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [22/03/2023] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_scanresults.2.0.11.x64.dll =>.Malwarebytes Inc [0E4418E2DEDE36DD2974C3443AFB5CE5] [11/04/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [11/04/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.202\GoogleCrashHandler64.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [16/03/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [16/03/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\setup.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [24/01/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\109.0.5414.120\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [24/01/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC [1044F31AE1F93A0BB95F19AB9FAAC6BB] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\em000_64.dll =>.ESET, spol. s r.o. [1121C44616E3C635CF293F8BE9DCAB685E6B] [02/05/2018] (.Edgard Roberto Viera.) - C:\Windows\System32\drivers\UCX01000.SYS =>.Not verified [1121C44616E3C635CF293F8BE9DCAB685E6B] [13/02/2017] (.Edgard Roberto Viera.) - C:\Windows\System32\drivers\USBXHCI.SYS =>.Not verified [1121C44616E3C635CF293F8BE9DCAB685E6B] [24/07/2014] (.Edgard Roberto Viera.) - C:\Windows\System32\drivers\USBHUB3.SYS =>.Not verified [1121C44616E3C635CF293F8BE9DCAB685E6B] [26/07/2012] (.Edgard Roberto Viera.) - C:\Windows\System32\drivers\uaspstor.sys =>.Not verified [1121C44616E3C635CF293F8BE9DCAB685E6B] [29/06/2013] (.Edgard Roberto Viera.) - C:\Windows\System32\drivers\usbd8.sys =>.Not verified [2E4A279BDE2EB688E8AB30F5904FA875] [07/04/2023] (.Lespeed Technology Co., Ltd.) - C:\Users\sad\Downloads\Programs\WiseCare365_6.5.3.625_winningpc.exe =>.Lespeed Technology Co., Ltd [2E4A279BDE2EB688E8AB30F5904FA875] [26/08/2021] (.Lespeed Technology Co., Ltd.) - C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Co., Ltd [4CD9E755850C1372B48DC182A7308BAB] [16/03/2023] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\drivers\amdacpksd.sys =>.Advanced Micro Devices, Inc. [4D7914083DE4FC448564FC0C] [07/09/2021] (.Suzhou Aunbox Software Co., Ltd..) - C:\Program Files (x86)\Auntec\RecoverXData\Jnz.exe =>.Not verified [4D7914083DE4FC448564FC0C] [07/09/2021] (.Suzhou Aunbox Software Co., Ltd..) - C:\Program Files (x86)\Auntec\RecoverXData\RecoverXData.exe =>.Not verified [58E7E1F41D08C9A33AA0F591606FD449] [16/03/2023] (.Ardfry Imaging, LLC.) - C:\Program Files\ArdfryImaging\PSD Codec\unins000.exe =>.Ardfry Imaging, LLC [58E7E1F41D08C9A33AA0F591606FD449] [22/01/2017] (.Ardfry Imaging, LLC.) - C:\Program Files\ArdfryImaging\PSD Codec\PSDCodecPreferences.exe =>.Ardfry Imaging, LLC [65628C146ACE93037FC58659F14BD35F] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\em001_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\em004_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [13/04/2023] (.ESET, spol. s r.o..) - C:\Users\sad\AppData\Local\Google\Chrome\User Data\SwReporter\107.294.200\em005_64.dll =>.ESET, spol. s r.o. [6988A6079678B1062CD8CEB6F3ADAB5A] [16/03/2023] (.Konstantin Polyakov IP.) - C:\Program Files\Reg Organizer\unins000.exe =>.Konstantin Polyakov IP [6988A6079678B1062CD8CEB6F3ADAB5A] [24/06/2020] (.Konstantin Polyakov IP.) - C:\Program Files\Reg Organizer\ShellContextMenu_1.dll =>.Konstantin Polyakov IP [6988A6079678B1062CD8CEB6F3ADAB5A] [26/11/2020] (.Konstantin Polyakov IP.) - C:\Program Files\Reg Organizer\RegOrganizer.exe =>.Konstantin Polyakov IP [731D40AE3F3A1FB2BC3D8395] [19/12/2021] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [19/12/2021] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [19/12/2021] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [7828C7315808BC8717710E13FA3C0B24] [20/12/2018] (.Tonec Inc..) - C:\Windows\System32\DRIVERS\idmwfp.sys =>.Tonec Inc. [7AE2B5021371F092A904B6FA] [12/04/2023] (.Telegram FZ-LLC.) - C:\Users\sad\Downloads\Programs\tsetup-x64.4.7.1.exe =>.Not verified [7AE2B5021371F092A904B6FA] [21/03/2023] (.Telegram FZ-LLC.) - C:\Users\sad\AppData\Roaming\Telegram Desktop\Telegram.exe =>.Not verified [7AE2B5021371F092A904B6FA] [21/03/2023] (.Telegram FZ-LLC.) - C:\Users\sad\AppData\Roaming\Telegram Desktop\Updater.exe =>.Not verified ~ Unselected Options: WR, O82, ~ End of the scan, 6984 items in 04mn57s (1633)(0)