~ ZHPDiag v2023.12.5.60 Par Nicolas Coolman (2023/12/05) ~ Démarré par eminc (Administrator) (2023/12/23 22:32:01) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\eminc\OneDrive\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\eminc\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 11 =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (5) - 0s ~ GCIE: Google Chrome v120.0.6099.129 ~ MFIE: Mozilla Firefox 121.0 (x64 fr) ~ OPIE: Opera GX 105.0.4970.63 ~ MSIE: Internet Explorer v11.1.22621.0 ~ OBIE: Microsoft Edge v120.0.2210.91 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : RX848 Windows License : OK ~ Windows Remaining Initializations Number : 998 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 1s Windows Defender W11 (Activate) (Protection) Malwarebytes version 4.6.7.301 v4.6.7.301 (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (19) - 1s ~ Operating System: AMD64 Family 23 Model 104 Stepping 1, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 346 GB (71%) free of 487 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 2 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 0 ~ Type de barrette (FormFactor): SO-DIMM ~ Taille (Size) : 8 Go ~ Vitesse (Speed) : 3200 ~ Charge mémoire (Memory Usage) : 46% ~ RAM physique Total (Total Physical) : 15 Go : OK ~ RAM physique Disponible (Available Physical) : 8 Go ~ Total virtuelle (Total Virtual) : 20.33 Go ~ Disponible virtuelle (Available Virtual): 10.4 Go ~ Disponible virtuelle (Available Virtual): 10.4 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: RADEON ~ User Name: eminc ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (5) - 2s ~ Drive C: has 346 GB free of 487 GB (System) ---\\ ÉTAT DE LA COMMANDE TRIM ~ La commande TRIM est activée (NTFS) ~ La commande TRIM est activée (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (1) - 1s ~ La technologie SMART n'est pas active sur le disque système ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 1s [MD5.0833E505DCC2203D6375CAB9FFF4F480] - 15/12/2023 - (.Microsoft Corporation - Explorateur Windows.) -- C:\windows\Explorer.exe [5298768] =>.Microsoft® [MD5.57A6B4BDF247C1A6CA08AC09A8F9B742] - 07/05/2022 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\windows\System32\rundll32.exe [73728] [Unsigned] =>.Microsoft Corporation [MD5.E72284A1301EC8A119AE863ADD26D0AA] - 15/12/2023 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\windows\System32\Wininit.exe [579952] [Unsigned] =>.Microsoft Corporation [MD5.3D5D8865385E0DC224394AE1A289D2CE] - 15/12/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\windows\System32\wininet.dll [5232544] =>.Microsoft® [MD5.CCEAB8B5A7DED689747C9E5B124CAE7E] - 15/12/2023 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\windows\System32\Winlogon.exe [909312] [Unsigned] =>.Microsoft Corporation [MD5.6B75A00870646432692FAD2A71023198] - 15/12/2023 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\windows\System32\sppcomapi.dll [356352] [Unsigned] =>.Microsoft Corporation [MD5.02C77411C2E4DEFEF1A00DCB7A3442D8] - 15/12/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\System32\dnsapi.dll [1034528] =>.Microsoft® [MD5.EF1D97BBFC518F3896657FD495E3A782] - 15/12/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\Syswow64\dnsapi.dll [768544] =>.Microsoft® [MD5.5ABA8DD165AF2D7BD49E307B42229083] - 15/12/2023 - (.Microsoft Corporation - Windows Update Agent.) -- C:\windows\System32\wuaueng.dll [130528] [Unsigned] =>.Microsoft Corporation [MD5.54DB796A38084C3DDC564713528E8FBD] - 28/04/2023 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\windows\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.372D0A6214152903FACE466F0C637B1C] - 15/12/2023 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\windows\System32\drivers\AFD.sys [697840] [Unsigned] =>.Microsoft Corporation [MD5.BE55BB568AB319140B1DD89358AF9EFB] - 15/12/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [62832] [Unsigned] =>.Microsoft Corporation [MD5.9374900DC6DA12E0393269889D12F249] - 15/12/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\Cdfs.sys [131072] [Unsigned] =>.Microsoft Corporation [MD5.BD94BB6159F87B6D4D3E10CDC20C069A] - 07/05/2022 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\Cdrom.sys [204800] [Unsigned] =>.Microsoft Corporation [MD5.E6EFDDE7D2DDF2A3254C86C40C5CD84F] - 15/12/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\DfsC.sys [184320] [Unsigned] =>.Microsoft Corporation [MD5.E4B9C6E6594D173A8D60DDAAB3A4B807] - 15/12/2023 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\HDAudBus.sys [192512] [Unsigned] =>.Microsoft Corporation [MD5.566132924EBEEAE1A41FB521B56E0AAA] - 07/05/2022 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\windows\System32\drivers\i8042prt.sys [159744] [Unsigned] =>.Microsoft Corporation [MD5.9425DF210EABB5AC6E7EAF5705D1B4AA] - 15/12/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\IpNat.sys [258048] [Unsigned] =>.Microsoft Corporation [MD5.204854A3124E39A53A83FC45B99C444C] - 15/12/2023 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\windows\System32\drivers\MRxSmb.sys [660864] [Unsigned] =>.Microsoft Corporation [MD5.74C676120EC95C8372515D13FC086AF8] - 15/12/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netBT.sys [327680] [Unsigned] =>.Microsoft Corporation [MD5.423FFF6192BA3F10315E6F4A4DED8FD7] - 15/12/2023 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\windows\System32\drivers\ntfs.sys [3335656] [Unsigned] =>.Microsoft Corporation [MD5.3A4E501001979A77B7F2C353944699A9] - 07/05/2022 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\windows\System32\drivers\Parport.sys [135168] [Unsigned] =>.Microsoft Corporation [MD5.298389F510DED6B76606D40BB37EC87D] - 15/12/2023 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\Rasl2tp.sys [151552] [Unsigned] =>.Microsoft Corporation [MD5.9327D2D9AEA1C64BC6993E48849232E9] - 07/05/2022 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\windows\System32\drivers\rdpdr.sys [196608] [Unsigned] =>.Microsoft Corporation [MD5.C8ECEAE641D734CFBDDCCC7B50F2EDC4] - 15/12/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [157056] [Unsigned] =>.Microsoft Corporation [MD5.26E1B735BA5879B42B324F1D3163FC68] - 15/12/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\windows\System32\drivers\volsnap.sys [468352] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (82) - 3s O23 - Service: (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) - C:\windows\System32\amdfendrsr.exe [Unsigned] =>.Advanced Micro Devices, Inc. O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\atiesrxx.exe =>.Advanced Micro Devices Inc.® O23 - Service: C:\windows\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\windows\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\windows\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\cbdhsvc.dll (cbdhsvc) . (.Microsoft Corporation - Historique du Presse-papiers Microsoft (R).) - C:\windows\System32\cbdhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service utilisateur du Presse-papiers_e0467 (cbdhsvc_e0467) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\windows\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\windows\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_e0467) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Microsoft Office Click-to-Run Service (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: C:\windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: DCIService (DCIService) . (...) - C:\Program Files (x86)\Lavasoft\Web Companion\Service\x64\DCIService.exe (.not file.) O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft® O23 - Service: C:\windows\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\windows\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\windows\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\windows\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\windows\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Microsoft Edge Update Service (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: ELAN Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\windows\System32\ETDService.exe [Unsigned] =>.ELAN Microelectronics Corp. O23 - Service: C:\windows\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\windows\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: ExpressVPN Service (ExpressVPNService) . (.ExpressVPN - Service Manager.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN O23 - Service: C:\windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: GameInput Service (GameInput Service) . (.Microsoft Corporation - GameInput Host Service.) - C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe =>.Microsoft® O23 - Service: Gaming Services (GamingServices) . (.Microsoft Corporation - GamingServices.) - C:\Program Files\WindowsApps\Microsoft.GamingServices_17.84.7001.0_x64__8wekyb3d8bbwe\GamingServices.exe =>.Microsoft® O23 - Service: Gaming Services (GamingServicesNet) . (.Microsoft Corporation - GamingServices.) - C:\Program Files\WindowsApps\Microsoft.GamingServices_17.84.7001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe =>.Microsoft® O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® O23 - Service: HP Comm Recovery (HP Comm Recover) . (.HP Inc. - CommRecovery.) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe {06FD09A7228EC7DF1BC3582CFAD4BFF3}. =>.HP Inc. O23 - Service: HP App Helper HSA Service (HPAppHelperCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\AppHelperCap.exe =>.HP Inc.® O23 - Service: HP Diagnostics HSA Service (HPDiagsCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\DiagsCap.exe =>.HP Inc.® O23 - Service: HP Network HSA Service (HPNetworkCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\NetworkCap.exe =>.HP Inc.® O23 - Service: HP System Info HSA Service (HPSysInfoCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\SysInfoCap.exe =>.HP Inc.® O23 - Service: HP Analytics service (HpTouchpointAnalyticsService) . (.HP Inc. - HP Touchpoint Analytics Client Service.) - C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_2f779d0a8fdf496c\x64\TouchpointAnalyticsClientService.exe =>.HP Inc.® O23 - Service: C:\windows\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\windows\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\windows\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\windows\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\windows\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Hôte de synchronisation_e0467 (OneSyncSvc_e0467) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\windows\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor O23 - Service: Realtek Bluetooth Device Manager Service (RtkBtManServ) . (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) - C:\Windows\RtkBtManServ.exe =>.Microsoft® O23 - Service: Realtek Wireless Manager Service (RtkWiFiManServ) . (.Realtek Semiconductor Corp. - Realtek WiFi Device Manager Service Applica.) - C:\Windows\RtkWiFiManServ.exe =>.Realtek Semiconductor Corp.® O23 - Service: C:\windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Sound Research SECOMN Service (SECOMNService) . (.Sound Research, Corp. - SECOMNService.exe.) - C:\windows\System32\SECOMN64.exe [Unsigned] =>.Sound Research, Corp. O23 - Service: C:\windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\windows\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\windows.staterepository.dll (StateRepository) . (.Microsoft Corporation - Serveur d'API Windows StateRepository.) - C:\Windows\System32\windows.staterepository.dll =>.Microsoft® O23 - Service: C:\windows\System32\wiaservc.dll (StiSvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\windows\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\windows\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\TabSvc.dll (TextInputManagementService) . (.Microsoft Corporation - Service de gestion des entrées de texte Mic.) - C:\windows\System32\TabSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\windows\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\windows\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\windows\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\webthreatdefusersvc.dll (webthreatdefusersvc) . (.Microsoft Corporation - Service d’utilisateur Web Threat Defense.) - C:\windows\System32\webthreatdefusersvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service d’utilisateur Web Threat Defense_e0467 (webthreatdefusersvc_e0467) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe =>.Microsoft® O23 - Service: C:\windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\windows\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\windows\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service utilisateur de notifications Push Windows_e0467 (WpnUserService_e0467) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\windows\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (114) - 11s SR - Boot [07/05/2022] [ 108376] (3ware) . (.LSI.) - C:\windows\System32\drivers\3ware.sys =>.Microsoft® SR - Boot [07/05/2022] [ 1136472] (ADP80XX) . (.PMC-Sierra.) - C:\windows\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [20/04/2023] [ 603664] (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc..) - C:\windows\System32\amdfendrsr.exe =>.Advanced Micro Devices Inc.® SR - Auto [20/04/2023] [ 642432] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\atiesrxx.exe =>.Advanced Micro Devices Inc.® SR - Demand [20/04/2023] [ 6028168] Audio Coprocessr Driver for (amdacpbus) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_91fe049d7e49fc33\amdacpbus.sys =>.Advanced Micro Devices Inc.® SR - Demand [20/04/2023] [ 435136] AMD Audio Service (AMDAfdAudioService) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_dea03ff0fb4183f1\amdacpafd.sys =>.Advanced Micro Devices Inc.® SR - Demand [20/04/2023] [ 175632] AMD Crash Defender Driver (amdfendr) . (.Advanced Micro Devices, Inc..) - C:\windows\System32\drivers\amdfendr.sys =>.Advanced Micro Devices Inc.® SR - Demand [20/04/2023] [ 35344] AMD Crash Defender Manage (amdfendrmgr) . (.Advanced Micro Devices, Inc..) - C:\windows\System32\drivers\amdfendrmgr.sys =>.Advanced Micro Devices Inc.® SR - Demand [20/04/2023] [ 56024] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\windows\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC.® SR - Demand [20/04/2023] [ 79456] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\windows\System32\drivers\amdi2c.sys =>.Advanced Micro Devices Inc.® SR - Boot [20/04/2023] [ 302520] AMD Micro PEP Device (AmdMicroPEP) . (.Advanced Micro Devices, Inc..) - C:\windows\System32\drivers\AmdMicroPEP.sys =>.Advanced Micro Devices Inc.® SR - Boot [07/05/2022] [ 84312] (amdsata) . (.Advanced Micro Devices.) - C:\windows\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/05/2022] [ 260440] (amdsbs) . (.AMD Technologies Inc..) - C:\windows\System32\drivers\amdsbs.sys =>.Microsoft® SR - Demand [20/04/2023] [94633328] (amdwddmg) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\amdkmdag.sys =>.Advanced Micro Devices Inc.® SR - Boot [07/05/2022] [ 28008] (amdxata) . (.Advanced Micro Devices.) - C:\windows\System32\drivers\amdxata.sys =>.Microsoft® SR - Demand [28/07/2022] [ 144816] Al USB Stroage Driver (AmUStor) . (.Copyright(C) 2017.) - C:\windows\System32\drivers\AmUStorU.sys =>.Alcorlink Corp.® SR - Boot [07/05/2022] [ 113496] Apple Solid State Drive Device (AppleSSD) . (.Apple Inc..) - C:\windows\System32\drivers\AppleSSD.sys =>.Microsoft® SR - Boot [07/05/2022] [ 132968] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\windows\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [20/04/2023] [ 247232] AMD Function Driver (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\windows\System32\drivers\AtihdWT6.sys =>.Microsoft® SR - Boot [07/05/2022] [ 534872] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\windows\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/05/2022] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\windows\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Auto [13/12/2023] [ 800672] BdDci Service (BdDci) . (.Bitdefender.) - C:\windows\System32\DRIVERS\bddci.sys =>.Microsoft® SR - Boot [07/05/2022] [ 320880] (cht4iscsi) . (.Chelsio Communications.) - C:\windows\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/05/2022] [ 1854832] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\windows\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Auto [00/00/0000] [ 0] DCIService (DCIService) . (...) - C:\Program Files (x86)\Lavasoft\Web Companion\Service\x64\DCIService.exe (.not file.) [Unsigned] SS - Demand [17/12/2023] [ 4974416] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft FZE LLC.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe {73098091AB520B92B7825CB8493B55DC}. SR - Demand [17/12/2023] [ 42256] DAEMON Tools Lite Virtual SCSI Bus (dtlitescsibus) . (.Disc Soft Ltd.) - C:\windows\System32\drivers\dtlitescsibus.sys =>.AVB Disc Soft, SIA® SR - Demand [17/12/2023] [ 63696] DAEMON Tools Lite Virtual USB Bus (dtliteusbbus) . (.Disc Soft Ltd.) - C:\windows\System32\drivers\dtliteusbbus.sys {76CEA6897FE1FB6E06DF03619025CC50}. =>.Disc Soft Ltd SS - Demand [08/12/2023] [11385960] EABackgroundService (EABackgroundService) . (.Electronic Arts.) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe =>.Electronic Arts, Inc.® SR - Boot [07/05/2022] [ 3441512] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.Marvell Semiconductor Inc..) - C:\windows\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [07/05/2022] [ 3424104] QLogic Legacy Ethernet Adapte (ebdrv0) . (.QLogic Corporation.) - C:\windows\System32\drivers\evbd0a.sys =>.Microsoft® SS - Demand [03/03/2022] [ 934368] Epic Online Services (EpicOnlineServices) . (.Epic Games, Inc..) - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe =>.Epic Games Inc.® SR - System [19/12/2023] [ 158640] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\windows\system32\drivers\mbae64.sys =>.Microsoft® SR - Demand [18/10/2022] [ 589424] ELAN Input Device (ETD) . (.ELAN Microelectronics Corp..) - C:\windows\System32\drivers\ETD.sys {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronics Corp. SR - Demand [18/10/2022] [ 33392] ELAN HID Class Filter Service (ETDHCF) . (.ELAN Microelectronics Corp..) - C:\windows\System32\drivers\ETDHCF.sys {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronics Corp. SR - Auto [18/10/2022] [ 199280] ELAN Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\windows\System32\ETDService.exe {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronics Corp. SR - Auto [16/08/2022] [ 439664] ExpressVPN Service (ExpressVPNService) . (.ExpressVPN.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN SR - Demand [16/08/2022] [ 56552] ExpressVPNTun (expressvpntun) . (.ExpressVPN.) - C:\windows\System32\drivers\expressvpn-tun.sys =>.Express VPN International Ltd.® SS - Demand [17/02/2022] [ 204848] GamesAppService (GamesAppService) . (.WildTangent Inc.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc® SS - Demand [19/12/2023] [ 1772832] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.129\elevation_service.exe =>.Google LLC® SR - Auto [10/12/2023] [ 162080] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SS - Demand [10/12/2023] [ 162080] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SR - Auto [15/08/2022] [ 893984] HP Comm Recovery (HP Comm Recover) . (.HP Inc..) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe {06FD09A7228EC7DF1BC3582CFAD4BFF3}. =>.HP Inc. SR - Auto [25/10/2023] [ 887856] HP App Helper HSA Service (HPAppHelperCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\AppHelperCap.exe =>.HP Inc.® SR - Demand [24/06/2022] [ 26648] HP Application Driver (HPCustomCapDriver) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys =>.HP Inc.® SR - Auto [25/10/2023] [ 886720] HP Diagnostics HSA Service (HPDiagsCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\DiagsCap.exe =>.HP Inc.® SR - Auto [25/10/2023] [ 882728] HP Network HSA Service (HPNetworkCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\NetworkCap.exe =>.HP Inc.® SR - Boot [07/05/2022] [ 65360] (HpSAMD) . (.Hewlett-Packard Company.) - C:\windows\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Auto [25/10/2023] [ 886832] HP System Info HSA Service (HPSysInfoCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\SysInfoCap.exe =>.HP Inc.® SR - Auto [23/10/2023] [ 491648] HP Analytics service (HpTouchpointAnalyticsService) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_2f779d0a8fdf496c\x64\TouchpointAnalyticsClientService.exe =>.HP Inc.® SR - Demand [07/05/2022] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\windows\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/05/2022] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\windows\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/05/2022] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/05/2022] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\windows\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/05/2022] [ 885584] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\windows\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/05/2022] [ 413008] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\windows\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/05/2022] [ 559976] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\windows\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [08/03/2023] [ 6446952] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\windows\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Boot [07/05/2022] [ 187224] (ItSas35i) . (.Avago Technologies.) - C:\windows\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 109920] (LSI_SAS) . (.LSI Corporation.) - C:\windows\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/05/2022] [ 125280] (LSI_SAS2i) . (.LSI Corporation.) - C:\windows\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 138600] (LSI_SAS3i) . (.Avago Technologies.) - C:\windows\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Auto [19/12/2023] [ 222784] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\windows\System32\Drivers\MbamChameleon.sys =>.Microsoft® SR - Boot [19/12/2023] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\windows\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Demand [23/12/2023] [ 233704] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\windows\System32\DRIVERS\farflt11.sys =>.Malwarebytes Inc.® SR - Demand [23/12/2023] [ 78400] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\windows\system32\DRIVERS\mbam.sys =>.Microsoft® SR - Auto [19/12/2023] [ 9405400] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® SR - Demand [19/12/2023] [ 239576] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\windows\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SR - Demand [23/12/2023] [ 188008] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\windows\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc.® SR - Boot [07/05/2022] [ 81752] (megasas2i) . (.Avago Technologies.) - C:\windows\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 101224] (megasas35i) . (.Broadcom Inc.) - C:\windows\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 576856] (megasr) . (.LSI Corporation, Inc..) - C:\windows\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [07/05/2022] [ 1132392] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\windows\System32\drivers\mlx4_bus.sys =>.Microsoft® SS - Demand [23/12/2023] [ 239520] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [07/05/2022] [ 90472] (mpi3drvi) . (.Broadcom Limited.) - C:\windows\System32\drivers\mpi3drvi.sys =>.Microsoft® SR - Boot [07/05/2022] [ 64872] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\windows\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/05/2022] [ 147304] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\windows\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [07/05/2022] [ 83288] NDKPerf Driver (NDKPerf) . (.Microsoft.) - C:\windows\System32\drivers\NDKPerf.sys =>.Microsoft® SR - Boot [07/05/2022] [ 151392] (nvraid) . (.NVIDIA Corporation.) - C:\windows\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/05/2022] [ 167256] (nvstor) . (.NVIDIA Corporation.) - C:\windows\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/05/2022] [ 59752] (percsas2i) . (.Avago Technologies.) - C:\windows\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 69464] (percsas3i) . (.Avago Technologies.) - C:\windows\System32\drivers\percsas3i.sys =>.Microsoft® SR - Demand [18/10/2022] [ 52336] PTP Customization Component (PTPFilter) . (.ELAN Microelectronic Corp..) - C:\windows\System32\drivers\PTPFilter.sys {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronic Corp. SR - Boot [07/05/2022] [ 45408] pvscsi Storage Controller Dr (pvscsi) . (.VMware, Inc..) - C:\windows\System32\drivers\pvscsii.sys =>.Microsoft® SS - Demand [00/00/0000] [ 0] Rockstar Game Library Service (Rockstar Service) . (...) - C:\Program Files\Rockstar Games\Launcher\RockstarService.exe (.not file.) [Unsigned] SR - Demand [15/12/2023] [ 98304] Microsoft Route Poli (RoutePolicy) . (...) - C:\windows\System32\drivers\RoutePolicy.sys [Unsigned] SR - Auto [06/09/2023] [ 1923384] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor SR - Demand [17/02/2023] [ 822640] Realtek Bluetooth Filter Driver (RtkBtFilter) . (.Realtek Semiconductor Corporation.) - C:\windows\System32\drivers\RtkBtfilter.sys =>.Realtek Semiconductor Corp.® SR - Auto [17/02/2023] [ 621544] Realtek Bluetooth Device (RtkBtManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Microsoft® SR - Auto [31/01/2023] [ 822624] Realtek Wireless Manager Service (RtkWiFiManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkWiFiManServ.exe =>.Realtek Semiconductor Corp.® SR - Demand [27/03/2023] [ 842592] Realtek USB Card Reader - UER (RTSUER) . (.Realsil Semiconductor Corporation.) - C:\windows\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp.® SR - Demand [07/05/2022] [ 683520] Realtek USB (rtux64w10) . (.Realtek Corporation.) - C:\Windows\System32\DriverStore\FileRepository\rtux64w10.inf_amd64_03831aeaaa2c730e\rtux64w10.sys [Unsigned] =>.Realtek Corporation SR - Demand [31/01/2023] [11808616] Realtek Wireless (RTWlanE) . (.Realtek Semiconductor Corporation.) - C:\windows\System32\drivers\rtwlane.sys =>.Realtek Semiconductor Corp.® SR - Auto [08/03/2023] [ 768064] Sound Research SECOMN Service (SECOMNService) . (.Sound Research, Corp..) - C:\windows\System32\SECOMN64.exe {02E6500C3011D7A51438A87A50E35E9A}. =>.Sound Research, Corp. SR - Boot [07/05/2022] [ 45920] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\windows\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/05/2022] [ 82784] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\windows\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/05/2022] [ 210784] (SmartSAMD) . (.Microsemi Corportation.) - C:\windows\System32\drivers\SmartSAMD.sys =>.Microsoft® SS - Demand [08/12/2023] [ 2662760] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\steamservice.exe =>.Valve Corp.® SR - Boot [07/05/2022] [ 32080] (stexstor) . (.Promise Technology, Inc..) - C:\windows\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [15/12/2023] [ 94208] (vmbusproxy) . (...) - C:\windows\System32\drivers\vmbusproxy.sys [Unsigned] SR - Demand [20/06/2023] [ 73616] VoiceAIDriver (VoiceAIDriver) . (. {0D2F2A7563F6DBDF988EDB03FE575933}..) - C:\Windows\System32\DriverStore\FileRepository\voiceaidriver.inf_amd64_214d6aacf9c41414\voiceaidriver.sys {0D2F2A7563F6DBDF988EDB03FE575933}. SR - Boot [07/05/2022] [ 167784] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\windows\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/05/2022] [ 306512] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\windows\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/05/2022] [ 37224] WinMad Service (WinMad) . (.Mellanox.) - C:\windows\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/05/2022] [ 74096] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\windows\System32\drivers\winverbs.sys =>.Microsoft® SR - Demand [18/06/2022] [ 40104] HP Wireless Button Driver Service (WirelessButtonDriver64) . (.HP.) - C:\windows\System32\drivers\WirelessButtonDriver64.sys =>.HP Inc.® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (12) - 5s O38 - TASK: {13F2EEE0-4B36-4787-8CF3-3188299FFDDE} [64Bits][\GoogleUpdateTaskMachineCore{37BF1D12-9C12-414C-8F1D-D2BC215C2BFB}] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080] =>.Google LLC O38 - TASK: {1593B660-EDD9-4857-846F-412930D5A088} [64Bits][\Opera GX scheduled assistant Autoupdate 1703078561] - (.Opera Software - Opera GX Internet Browser.) -- C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe [2296224] =>.Opera Software O38 - TASK: {34A1ED9C-A774-4BC5-9F86-ACF7DBCA05B7} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [674720] =>.Mozilla Corporation O38 - TASK: {5D1D810D-F059-4C73-B620-9259FB56C7AF} [64Bits][\GoogleUpdateTaskMachineUA{E151AB78-FA6B-4B72-A276-276F3A74E0F8}] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080] =>.Google LLC O38 - TASK: {A4B9FFBC-0FA9-4B78-9F17-5745BDBB3A43} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - La tâche Agent de navigateur par défaut eff.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [35232] =>.Mozilla Foundation O38 - TASK: {DFF6E993-90AF-4A3A-B8DD-5217A851779C} [64Bits][\Opera GX scheduled Autoupdate 1702380642] - (.Opera Software - Opera GX Internet Browser.) -- C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe [2296224] =>.Opera Software C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore{37BF1D12-9C12-414C-8F1D-D2BC215C2BFB} - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google LLC C:\windows\System32\Tasks\Opera GX scheduled assistant Autoupdate 1703078561 - (.Opera Software.) -- C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe [--scheduledautoupdate --component-name=assistant --component-path="C:\Users\eminc\AppData\Local\Prog] =>.Opera Software C:\windows\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA{E151AB78-FA6B-4B72-A276-276F3A74E0F8} - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google LLC C:\windows\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation C:\windows\System32\Tasks\Opera GX scheduled Autoupdate 1702380642 - (.Opera Software.) -- C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe [--scheduledautoupdate .--scheduledautoupdate] =>.Opera Software ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (21) - 1s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\windows\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor O4 - HKCU\..\Run: [HPSEU_Host_Launcher] . (.HP Inc. - HpseuHostLauncher.) -- C:\System.sav\Util\HPSEU\HpseuHostLauncher.exe =>.HP Inc.® O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_B280CF94E73C12270811E84DFC5A735E] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\eminc\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKCU\..\Run: [Opera GX Stable] . (.Opera Software - Opera GX Internet Browser.) -- C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\steam.exe =>.Valve Corp.® O4 - HKCU\..\Run: [EpicGamesLauncher] . (.Epic Games, Inc. - EpicGamesLauncher.) -- C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe =>.Epic Games Inc.® O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft FZE LLC - DAEMON Tools Lite Agent.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe {73098091AB520B92B7825CB8493B55DC}. O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [ExpressVPNNotificationService] . (.ExpressVPN - ExpressVPN.NotificationServiceStarter.) -- C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [HPSEU_Host_Launcher] . (.HP Inc. - HpseuHostLauncher.) -- C:\System.sav\Util\HPSEU\HpseuHostLauncher.exe =>.HP Inc.® O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [MicrosoftEdgeAutoLaunch_B280CF94E73C12270811E84DFC5A735E] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\eminc\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [Opera GX Stable] . (.Opera Software - Opera GX Internet Browser.) -- C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [Steam] . (.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\steam.exe =>.Valve Corp.® O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [EpicGamesLauncher] . (.Epic Games, Inc. - EpicGamesLauncher.) -- C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe =>.Epic Games Inc.® O4 - HKUS\S-1-5-21-1781959742-1069508540-1406885361-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft FZE LLC - DAEMON Tools Lite Agent.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe {73098091AB520B92B7825CB8493B55DC}. ---\\ PROCESSUS LANCES (51) - 10s [MD5.57F2542016EF9B900EAAF29E8629A879] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\AppHelperCap.exe [887856] [PID.3216] =>.HP Inc.® [MD5.A20ED8426F423011FCB30E1570E8D185] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\NetworkCap.exe [882728] [PID.3224] =>.HP Inc.® [MD5.FE43022192B9431F59FA3571BCE750F0] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\SysInfoCap.exe [886832] [PID.3232] =>.HP Inc.® [MD5.655087D47EBB007E5FD517B491AA6189] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\DiagsCap.exe [886720] [PID.3240] =>.HP Inc.® [MD5.AEC6A288DE6CD0993E0BEE5E76076057] - (.HP Inc. - HP Touchpoint Analytics Client Service.) -- C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_2f779d0a8fdf496c\x64\TouchpointAnalyticsClientService.exe [491648] [PID.3356] =>.HP Inc.® [MD5.9502710F37C3F9461BF7997D430F4965] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\atiesrxx.exe [642432] [PID.3716] =>.Advanced Micro Devices Inc.® [MD5.6D7C09CB02A4EF6C14929FB1CF20CB31] - (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) -- C:\windows\System32\amdfendrsr.exe [603664] [PID.3724] [Unsigned] =>.Advanced Micro Devices, Inc. [MD5.ACEF04356419D39ACA18C8A07E5A8312] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\atieclxx.exe [940416] [PID.4092] =>.Advanced Micro Devices Inc.® [MD5.2F1B2D45F50CA40612A8E1E8304D69B6] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Windows\System32\ETDService.exe [199280] [PID.5652] [Unsigned] =>.ELAN Microelectronics Corp. [MD5.4225994AD1C06E34336BC0BC5567B9EE] - (.HP Inc. - CommRecovery.) -- C:\Program Files\HPCommRecovery\HPCommRecovery.exe [893984] [PID.5676] {06FD09A7228EC7DF1BC3582CFAD4BFF3}. =>.HP Inc. [MD5.B718556A7457715B8A3E88E7FC2A980A] - (.ExpressVPN - Service Manager.) -- C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [439664] [PID.5684] {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN [MD5.78B516DEF256797311E53D3EF012E951] - (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Windows\RtkBtManServ.exe [621544] [PID.5692] =>.Microsoft® [MD5.93FEE0DCB60B028A772B53E7C685806C] - (.Sound Research, Corp. - SECOMNService.exe.) -- C:\Windows\System32\SECOMN64.exe [768064] [PID.5712] [Unsigned] =>.Sound Research, Corp. [MD5.20181415D63DCFFA5498667FCF63D863] - (.Realtek Semiconductor Corp. - Realtek WiFi Device Manager Service Applica.) -- C:\Windows\RtkWiFiManServ.exe [822624] [PID.5716] =>.Realtek Semiconductor Corp.® [MD5.E8944A664210FE91231F526BEF74155C] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe [1923384] [PID.5736] {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor [MD5.531C0EA7B143062E310D1441B45A01A0] - (.ExpressVPN - ExpressVPN Service.) -- C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe [11500912] [PID.6084] {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN [MD5.A3605BAC4FE22B16CB02D04A0355D537] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Windows\System32\ETDCtrl.exe [1244272] [PID.2160] [Unsigned] =>.ELAN Microelectronics Corp. [MD5.7E0A7ED621BBEB382CE4A8261E84C9BE] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [9188416] [PID.3168] =>.Malwarebytes Inc.® [MD5.5FAAA3E358333522A8C2FEF340D73E33] - (.Sound Research, Corp. - SECOCL.exe.) -- C:\Windows\System32\SECOCL64.exe [1435696] [PID.9536] [Unsigned] =>.Sound Research, Corp. [MD5.8EB5A3BCA26ACB6688A0CD7B35CFDAD9] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe [301856] [PID.9476] =>.Google LLC® [MD5.15C1CADD3729AE6A4C1F8FA08D61BDC6] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe [402208] [PID.8188] =>.Google LLC® [MD5.E8944A664210FE91231F526BEF74155C] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe [1923384] [PID.10808] {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor [MD5.BDFD47E484834334561322A0FDDB599C] - (...) -- C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.30700.0.0_x64__cw5n1h2txyewy\Dashboard\widgetservice.exe [207264] [PID.13004] =>.Microsoft® [MD5.E8944A664210FE91231F526BEF74155C] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe [1923384] [PID.7132] {0F91AC8781452E9478FDB90D5A52336C}. =>.Realtek Semiconductor [MD5.6807191DD67EC8F6A9174590194EC1E6] - (.Advanced Micro Devices, Inc. - AMD Software: Host Application.) -- C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe [28798904] [PID.11236] =>.Advanced Micro Devices Inc.® [MD5.8446E5F734ADDDFEFB40BCF921C6BF03] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141124016] [PID.11260] =>.Skype Software Sarl® [MD5.98C6E63AFC987623F9978E10501FD79B] - (.Advanced Micro Devices, Inc. - AMD Software Command Line Interface.) -- C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe [56760] [PID.5328] =>.Advanced Micro Devices Inc.® [MD5.8A5C89960DDDB8E74AA77AA933390F8C] - (.Advanced Micro Devices, Inc. - Radeon Settings: Host Service.) -- C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe [2280888] [PID.12828] =>.Advanced Micro Devices Inc.® [MD5.8446E5F734ADDDFEFB40BCF921C6BF03] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141124016] [PID.12644] =>.Skype Software Sarl® [MD5.8446E5F734ADDDFEFB40BCF921C6BF03] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141124016] [PID.11716] =>.Skype Software Sarl® [MD5.8446E5F734ADDDFEFB40BCF921C6BF03] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141124016] [PID.12404] =>.Skype Software Sarl® [MD5.8446E5F734ADDDFEFB40BCF921C6BF03] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141124016] [PID.2248] =>.Skype Software Sarl® [MD5.3874BEAE654D2800A227E16B2714E434] - (.Electronic Arts - EA Background Service.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11385960] [PID.12116] =>.Electronic Arts, Inc.® [MD5.BF39AB463374BBB999C2066CBE875C30] - (. - DesktopExtension.) -- C:\Program Files\WindowsApps\AD2F1837.myHP_28.52349.1300.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe [33312] [PID.8628] =>.HP Inc.® [MD5.EF14105920584FBB8EB18D10C991DB52] - (. - HP.myHP.) -- C:\Program Files\WindowsApps\AD2F1837.myHP_28.52349.1300.0_x64__v10z8vjag6ke6\HP.myHP.exe [42016] [PID.13308] =>.HP Inc.® [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.13868] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.8446E5F734ADDDFEFB40BCF921C6BF03] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141124016] [PID.13416] =>.Skype Software Sarl® [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.13536] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.9656] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.12656] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.11876] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.14060] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.14220] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.3B1038D2840EC76771A5C59DFDB7DC54] - (.HP Inc. - HPSystemEventUtilityHost.) -- C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.39.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe [1394224] [PID.14996] =>.HP Inc.® [MD5.93F59C9428C3E105E1D02118FA1B8AA2] - (.2023 Voice.ai - Voice.ai - Voice Changer.) -- C:\Program Files\Voice.ai\VoiceAI.exe [3939184] [PID.14748] {0D2F2A7563F6DBDF988EDB03FE575933}. [MD5.04EF2F92AB6A28772E9882231354AEA2] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2310.13.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe [1208320] [PID.10768] [Unsigned] [MD5.04EF2F92AB6A28772E9882231354AEA2] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2310.13.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe [1208320] [PID.11068] [Unsigned] [MD5.E5FDC451BCCA908B163205127A5E4496] - (...) -- C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2349.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe [293376] [PID.2644] [Unsigned] [MD5.04EF2F92AB6A28772E9882231354AEA2] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2310.13.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe [1208320] [PID.10420] [Unsigned] [MD5.29F7DEAF6AAFC022B42E1F30724D5880] - (.Advanced Micro Devices, Inc. - Radeon Settings: Source Extension.) -- C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe [628152] [PID.12368] =>.Advanced Micro Devices Inc.® [MD5.4A50FA402D384B591D07C8D5FA88932C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\eminc\AppData\Roaming\ZHP\ZHPDiag3.exe [3368608] [PID.17932] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (5) - 1s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://? G2 - GCE: Preference [eminc][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [eminc][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [eminc][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [eminc][User Data\Default\Local Extension Settings] [lipdlpopdphdnlgmcbfkmldfiiihfbpd] ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (18) - 0s P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\crashes =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\datareporting =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\extension-store =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\minidumps =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\security_state =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\settings =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\shader-cache =>Mozilla Corporation C:\Users\eminc\AppData\Roaming\Mozilla\Firefox\Profiles\3u4on5i3.default-release\storage =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.22621.2792 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ IE Restricted Site Good: localhost ~ Microsoft Internet Explorer Restricted Site(s) Domains: 1(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (7) - 0s E2 - GCE: Preference [eminc][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [eminc][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [eminc][User Data\Default\Extensions] [mmioliijnhnoblpgimnlajmefafdfilb] E2 - GCE: Preference [eminc][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [eminc][User Data\Default\Local Extension Settings] [lipdlpopdphdnlgmcbfkmldfiiihfbpd] E2 - GCE: Preference [eminc][User Data\Default\Local Extension Settings] [mmioliijnhnoblpgimnlajmefafdfilb] E2 - GCE: Preference [eminc][User Data\Default\Sync Extension Settings] [mmioliijnhnoblpgimnlajmefafdfilb] ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (2) - 1s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.91\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.HP Inc. - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll =>.HP Inc.® ---\\ RACCOURCIS GLOBAL STARTUP (48) - 2s O4 - GS\Desktop [eminc]: Chrome.lnk . (.Google LLC - .) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Desktop [eminc]: Discord.lnk . (.GitHub - Update.) C:\Users\eminc\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.SUP.Discord O4 - GS\Desktop [eminc]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Desktop [eminc]: Navigateur Opera GX.lnk . (.Opera Software - Opera GX Internet Browser.) C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O4 - GS\Desktop [eminc]: Snapchat.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe --profile-directory=Default --app-id=abdndmcckigaeepaljhpcngbfdkbiggb --app-url=http://web.snapchat.com/ =>.Microsoft Corporation O4 - GS\Quicklaunch [eminc]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Quicklaunch [eminc]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\sendTo [eminc]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [eminc]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [eminc]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [eminc]: Navigateur Opera GX.lnk . (.Opera Software - Opera GX Internet Browser.) C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O4 - GS\TaskBar [eminc]: Snapchat.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe --profile-directory=Default --app-id=abdndmcckigaeepaljhpcngbfdkbiggb --app-url=http://web.snapchat.com/ =>.Microsoft Corporation O4 - GS\Startup [eminc]: Voice.ai - Voice Changer.lnk . (...) C:\Program Files (x86)\Voice.ai\VoiceAI.exe startup [Unsigned] O4 - GS\Programs [eminc]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\windows\system32\control.exe /name Microsoft.AdministrativeTools [Unsigned] =>.Microsoft Corporation O4 - GS\Programs [eminc]: Navigateur Opera GX.lnk . (.Opera Software - Opera GX Internet Browser.) C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O4 - GS\Programs [eminc]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\eminc\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: EA.lnk . (.Electronic Arts - EA.) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe =>.Electronic Arts, Inc.® O4 - GS\CommonDesktop [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UnrealEngineLauncherProxy.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc.® O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Les Sims 4.lnk . (.Electronic Arts Inc. - .) C:\Program Files (x86)\EA Games\The Sims 4\Game\Bin\TS4_x64.exe [Unsigned] =>.Electronic Arts Inc. O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp.® O4 - GS\Programs [Public]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\windows\system32\control.exe /name Microsoft.AdministrativeTools [Unsigned] =>.Microsoft Corporation O4 - GS\Programs [Public]: Navigateur Opera GX.lnk . (.Opera Software - Opera GX Internet Browser.) C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\eminc\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\windows\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\windows\system32\psr.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player Legacy.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\windows\system32\xpsrchvw.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\windows\system32\charmap.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Build a professional app quick.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UnrealEngineLauncherProxy.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc.® O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Easily discover, visualise and.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: ExpressVPN.lnk . (.ExpressVPN - ExpressVPN.) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\ProgramsCommon [Public]: HP Documentation.lnk . (...) C:\Program Files (x86)\HP\Documentation\platform_guides\languages\index.html /Arguments:Shortcut [Unsigned] O4 - GS\ProgramsCommon [Public]: LastPass.lnk . (...) C:\Program Files (x86)\Online Services\LastPass\WizLink.exe http://js.redirect.hp.com/ O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Offres Adobe.lnk . (...) C:\Program Files (x86)\Online Services\Adobe\WizLink.exe http://js.redirect.hp.com/ O4 - GS\ProgramsCommon [Public]: OneNote.lnk . (.Microsoft Corporation - Take notes and have them when .) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Manage your email, schedules, .) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Design and deliver beautiful p.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Create professional-grade publ.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: WildTangent Games.lnk . (.gamigo, Inc. - GamesAppFirstRun.) C:\Program Files (x86)\WildTangent Games\Touchpoints\wildgames\GamesAppFirstRun.exe /Launch /LaunchParams "/dp hpnb22c2" =>.WildTangent Inc® O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Create beautiful documents, ea.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE [Unsigned] =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{98b76462-673e-46a9-a5b2-6bfc08cdc2a1}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (24) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (6) - 0s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur multim.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\120.0.6099.129\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.91\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (58) - 10s O42 - Logiciel: Counter-Strike 2 - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.Valve Corp.® O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite {73098091AB520B92B7825CB8493B55DC}. =>.Disc Soft Ltd O42 - Logiciel: EA app - (.Electronic Arts.) [HKLM][64Bits] -- {20a8704d-f282-4d39-b57c-177ec90557be} =>.Electronic Arts, Inc.® O42 - Logiciel: EA app - (.Electronic Arts.) [HKLM][64Bits] -- {C2622085-ABD2-49E5-8AB9-D3D6A642C091} [Unsigned] =>.Electronic Arts (Hidden) O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {25A199C2-78B4-4D70-AE0D-71BD2E70FAF8} [Unsigned] =>.Epic Games, Inc. O42 - Logiciel: Epic Games Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {F9C5C994-F6B9-4D75-B3E7-AD01B84073E9} [Unsigned] =>.Epic Games, Inc. (Hidden) O42 - Logiciel: Epic Online Services - (.Epic Games, Inc..) [HKLM][64Bits] -- {758842D2-1538-4008-A8E3-66F65A061C52} [Unsigned] =>.Epic Games, Inc. O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {0ebb04c1-1fe8-4092-98b8-60acd20c184b} {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {E5B9C3E5-889C-4F22-A959-F4B8779D7841} [Unsigned] =>.ExpressVPN (Hidden) O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: HP Connection Optimizer - (.HP Inc.) [HKLM][64Bits] -- {6468C4A5-E47E-405F-B675-A70A70983EA6} {06FD09A7228EC7DF1BC3582CFAD4BFF3}. =>.HP Inc O42 - Logiciel: HP Documentation - (.HP Inc..) [HKLM][64Bits] -- HP_Documentation [Unsigned] =>.HP Inc. O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent, Inc.® O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {43a03b9c-4770-409c-a999-587b60700b63} =>.Epic Games Inc.® (Hidden) O42 - Logiciel: Les Sims™ 4 - (.Electronic Arts Inc..) [HKLM][64Bits] -- {48EBEBBF-B9F8-4520-A3CF-89A730721917} =>.Electronic Arts, Inc.® O42 - Logiciel: Malwarebytes version 4.6.7.301 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Microsoft 365 - en-gb - (.Microsoft Corporation.) [HKLM][64Bits] -- O365HomePremRetail - en-gb =>.Microsoft® O42 - Logiciel: Microsoft 365 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- O365HomePremRetail - fr-fr =>.Microsoft® O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft® O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Edge WebView2 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft EdgeWebView =>.Microsoft® O42 - Logiciel: Microsoft GameInput - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F2B6AF3-C260-8666-5950-E3FEDBC851D6} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft OneNote - en-gb - (.Microsoft Corporation.) [HKLM][64Bits] -- OneNoteFreeRetail - en-gb =>.Microsoft® O42 - Logiciel: Microsoft OneNote - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- OneNoteFreeRetail - fr-fr =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {C6FD611E-7EFE-488C-A0E0-974C09EF6473} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {042d26ef-3dbe-4c25-95d3-4c1b11b235a7} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9dff3540-fc85-4ed5-ac84-9e3c7fd8bece} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {010792BA-551A-3AC0-A7EF-0FAB4156C382} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {53CF6934-A98D-3D84-9146-FC4EDF3D5641} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D401961D-3A20-3AC7-943B-6139D5BD490A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8122DAB1-ED4D-3676-BB0A-CA368196543E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8bdfe669-9705-4184-9368-db9ce581e0e7} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 - (.Microsoft Corporation.) [HKLM][64Bits] -- {410c0ee1-00bb-41b6-9772-e12c2828b02f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0025DD72-A959-45B5-A0A3-7EFEB15A8050} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5D19E2F-7189-42FE-8103-92CD1FA457C2} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C2C59CAB-8766-4ABD-A8EF-1151A36C41E5} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 - (.Microsoft Corporation.) [HKLM][64Bits] -- {73F77E4E-5A17-46E5-A5FC-8A061047725F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 121.0 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-007E-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Opera GX Stable 105.0.4970.63 - (.Opera Software.) [HKCU][64Bits] -- Opera GX 105.0.4970.63 {0A3021E0CF305985C1566618DB212BD7}. =>.Opera Software O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve Corp.® O42 - Logiciel: Update Installer for WildTangent Games App - (.gamigo, Inc..) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc® (Hidden) O42 - Logiciel: uTorrent Web - (.Rainberry, Inc..) [HKCU][64Bits] -- utweb {09B56EF42C8C343391AA2D2CE38550E3}. O42 - Logiciel: Vacation Adventures: Park Ranger 11 Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-9b5c8d71-13c0-411e-a8ae-8d65075f9924 =>.WildTangent Inc® (Hidden) O42 - Logiciel: Voice.ai - Voice Changer - (.Voice.ai.) [HKLM][64Bits] -- Voice.ai {0D2F2A7563F6DBDF988EDB03FE575933}. O42 - Logiciel: WildTangent ShortcutProvider - (.WildTangent.) [HKLM][64Bits] -- {80831F60-19D7-43B3-A60C-5CAF8C478DF6} =>.WildTangent Inc® (Hidden) O42 - Logiciel: WinRAR 6.24 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver {048B08399EC703623C72CD2077AD65D9}. =>.win.rar GmbH ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (128) - 10s HKLM\SOFTWARE\AE Protection =>.Legitimate HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\AMDLOG HKLM\SOFTWARE\Artificius Browser Solutions HKLM\SOFTWARE\Avast Software =>.AVAST Software HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Disc Soft =>.Disc Soft HKLM\SOFTWARE\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\HP =>.HP HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Maxis =>.Maxis HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Setup =>.Unknown HKLM\SOFTWARE\SoundResearch =>.Sound Research HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Amazon =>.Amazon HKLM\SOFTWARE\WOW6432Node\Artificius Browser Solutions HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\DragonBoss HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\WOW6432Node\Epic Games =>.Epic Games HKLM\SOFTWARE\WOW6432Node\EpicGames =>.Epic Games HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\HP =>.HP HKLM\SOFTWARE\WOW6432Node\HP Inc =>.HP Inc HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Maxis =>.Maxis HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Origin =>.Electronic Arts, Inc. HKLM\SOFTWARE\WOW6432Node\Origin Games =>.Electronic Arts, Inc. HKLM\SOFTWARE\WOW6432Node\Rockstar Games =>.Rockstar Games HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\appdatalow =>.Microsoft Corporation HKCU\SOFTWARE\Artificius HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Caphyon =>.Caphyon HKCU\SOFTWARE\ChangeTracker =>.Legitimate HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Disc Soft =>.Disc Soft HKCU\SOFTWARE\DragonBoss HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts HKCU\SOFTWARE\Epic Games =>.Epic Games HKCU\SOFTWARE\ExpressVPN =>.ExpressVPN HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\Khronos =>.Khronos HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\ModManager HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\SYNCJM =>.SYNCJM HKCU\SOFTWARE\Ubisoft =>.Ubisoft HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\AMD =>.AMD HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Epic Games =>.Epic Games HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU\.DEFAULT\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\AMD =>.AMD HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\appdatalow =>.Microsoft Corporation HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Artificius HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Caphyon =>.Caphyon HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\ChangeTracker =>.Legitimate HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Disc Soft =>.Disc Soft HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\DragonBoss HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Elantech =>.Elantech Inc. HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Electronic Arts =>.Electronic Arts HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Epic Games =>.Epic Games HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\ExpressVPN =>.ExpressVPN HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\HP =>.HP HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Khronos =>.Khronos HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\ModManager HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\SYNCJM =>.SYNCJM HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Ubisoft =>.Ubisoft HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (42) - 1s C:\Program Files (x86)\WindowsApps\1527c705-839a-4832-9118-54d4Bd6a0c89_10.0.19640.1000_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:AppxManifest_DisplayName] C:\Program Files (x86)\WindowsApps\26720RandomSaladGamesLLC.3899848563C1F_1.0.137.0_x64__kx24dqmazqk8j - (.Random Salad Games LLC.) [][ms-resource:gameName] =>Random Salad Games LLC C:\Program Files (x86)\WindowsApps\5319275A.WhatsAppDesktop_2.2349.2.0_x64__cv1g1gvanyjgm - (.WhatsApp Inc..) [][WhatsApp] C:\Program Files (x86)\WindowsApps\AD2F1837.HPAudioCenter_1.44.301.0_x64__v10z8vjag6ke6 - (.HP Inc..) [][HP Audio Center] =>HP Inc. C:\Program Files (x86)\WindowsApps\AD2F1837.HPInc.EnergyStar_1.2.0.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][Energy Star] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_2.4.0.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP PC Hardware Diagnostics Windows] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrinterControl_150.1.1140.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP Smart] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrivacySettings_1.3.7.0_x64__v10z8vjag6ke6 - (.HP Inc..) [][HP Privacy Settings] =>HP Inc. C:\Program Files (x86)\WindowsApps\AD2F1837.HPQuickDrop_2.5.10921.0_x64__v10z8vjag6ke6 - (.HP Inc..) [][HP QuickDrop] =>HP Inc. C:\Program Files (x86)\WindowsApps\AD2F1837.HPSupportAssistant_9.31.22.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP Support Assistant] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.39.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP System Event Utility] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\AD2F1837.myHP_28.52349.1300.0_x64__v10z8vjag6ke6 - (.HP Inc..) [][myHP] =>HP Inc. C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m - (..) [][AMD Radeon Software] C:\Program Files (x86)\WindowsApps\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:AppxManifest_DisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\Clipchamp.Clipchamp_2.8.3.0_neutral__yxz26nhyzhsrt - (.Legitimate.) [][ms-resource:Clipchamp/AppName] C:\Program Files (x86)\WindowsApps\DesktopView_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:DisplayName] C:\Program Files (x86)\WindowsApps\E2A4F912-2574-4A75-9BB0-0D023378592B_10.0.19640.1000_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:AppxManifest_DisplayName] C:\Program Files (x86)\WindowsApps\EnvironmentsApp_10.0.22621.1_neutral__cw5n1h2txyewy - (..) [][ms-resource:DisplayName] C:\Program Files (x86)\WindowsApps\F46D4000-FD22-4DB4-AC8E-4E1DDDE828FE_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:AppxManifest_DisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\HoloCamera_10.0.22621.1_neutral__cw5n1h2txyewy - (.StackExchange.) [][ms-resource:DisplayName] =>StackExchange C:\Program Files (x86)\WindowsApps\HoloItemPlayerApp_10.0.22621.1_neutral__cw5n1h2txyewy - (.StackExchange.) [][ms-resource:DisplayName] =>StackExchange C:\Program Files (x86)\WindowsApps\HoloShell_10.0.22621.1_neutral__cw5n1h2txyewy - (..) [][ms-resource:DisplayName] C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][Microsoft Family] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.22.0_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][ms-resource://MicrosoftCorporationII.QuickAssist/resources/APP_WINDOW_NAME] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.2_2000.802.31.0_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][WinAppRuntime.Main.1.2] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.4_4000.1049.117.0_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][WinAppRuntime.Main.1.4] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_4000.1049.117.0_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][WinAppRuntime.Singleton] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftTeams_23306.3316.2574.4550_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][Microsoft Teams] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_1000.22681.1000.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:ProductPkgDisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.WebExperience_423.30700.0.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Web Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MixedRealityLearning_10.0.22621.1_neutral__cw5n1h2txyewy - (..) [][ms-resource:DisplayName] C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.22621.1.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\Passthrough_10.0.22621.1_neutral__cw5n1h2txyewy - (.Dell Inc..) [][Passthrough] =>Dell Inc. C:\Program Files (x86)\WindowsApps\RoomAdjustment_10.0.22621.1_neutral__cw5n1h2txyewy - (..) [][ms-resource:RoomAdjustmentDisplayName] C:\Program Files (x86)\WindowsApps\SnapInc.Snapchat_2.0.1.0_neutral__k1zn018256b8e - (..) [][Snapchat] C:\Program Files (x86)\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0 - (.Spotify.) [][Spotify Music] =>Spotify C:\Program Files (x86)\WindowsApps\WebAuthBridgeInternetSso_10.0.22621.1_neutral__cw5n1h2txyewy - (.Microsoft Corporation.) [][Sign In] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\WebAuthBridgeInternet_10.0.22621.1_neutral__cw5n1h2txyewy - (.Microsoft Corporation.) [][Sign In] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\WebAuthBridgeIntranetSso_10.0.22621.1_neutral__cw5n1h2txyewy - (.Microsoft Corporation.) [][Sign In] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\WhatsNew_10.0.22621.1_neutral__cw5n1h2txyewy - (..) [][ms-resource:DisplayName] C:\Program Files (x86)\WindowsApps\WinRAR.ShellExtension_1.0.0.2_x64__d9ma7nkbkv4rp - (..) [][WinRAR] ---\\ CONTENU DES DOSSIERS PROGRAMMES (197) - 4s O43 - CFD: 09/08/2023 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 23/12/2023 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\Program Files\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 23/12/2023 - [] D -- C:\Program Files\EA Games =>.Electronic Arts, Inc.® O43 - CFD: 23/12/2023 - [] D -- C:\Program Files\Electronic Arts =>.Microsoft® O43 - CFD: 13/12/2023 - [] D -- C:\Program Files\Epic Games =>.Epic Games O43 - CFD: 10/12/2023 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [] D -- C:\Program Files\Google =>.Google LLC® O43 - CFD: 09/08/2023 - [] D -- C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 28/04/2023 - [] D -- C:\Program Files\HPCommRecovery {06FD09A7228EC7DF1BC3582CFAD4BFF3}. O43 - CFD: 18/12/2023 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 19/12/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 03/11/2022 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation O43 - CFD: 15/12/2023 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 28/04/2023 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] AD -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 09/08/2023 - [] RD -- C:\Program Files\Online Services =>.Hewlett-Packard O43 - CFD: 11/12/2023 - [0] D -- C:\Program Files\Rockstar Games =>.Rockstar Games O43 - CFD: 03/11/2022 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 16/12/2023 - [] D -- C:\Program Files\Voice.ai {0D2F2A7563F6DBDF988EDB03FE575933}. O43 - CFD: 18/12/2023 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 18/12/2023 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 18/12/2023 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Program Files\WinRAR {048B08399EC703623C72CD2077AD65D9}. =>.WinRAR O43 - CFD: 14/12/2023 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Program Files (x86)\Epic Games =>.Epic Games O43 - CFD: 09/08/2023 - [] D -- C:\Program Files (x86)\ExpressVPN =>.ExprsVPN LLC® O43 - CFD: 23/12/2023 - [] D -- C:\Program Files (x86)\Google =>.Google LLC® O43 - CFD: 09/08/2023 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard O43 - CFD: 28/04/2023 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 18/12/2023 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 15/12/2023 - [] D -- C:\Program Files (x86)\Microsoft GameInput =>.Microsoft Corporation O43 - CFD: 28/04/2023 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 09/08/2023 - [] RD -- C:\Program Files (x86)\Online Services =>.Hewlett-Packard O43 - CFD: 09/08/2023 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 16/12/2023 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games O43 - CFD: 09/08/2023 - [] D -- C:\Program Files (x86)\WildGames =>.WildTangent, Inc.® O43 - CFD: 09/08/2023 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games O43 - CFD: 18/12/2023 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 15/12/2023 - [] D -- C:\Program Files (x86)\Windows Kits =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 18/12/2023 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 18/12/2023 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 23/12/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA =>.Electronic Arts, Inc. O43 - CFD: 09/08/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 28/04/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 11/12/2023 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 10/12/2023 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\ProgramData\Artificius Browser Solutions O43 - CFD: 10/12/2023 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\ProgramData\Disc-Soft O43 - CFD: 10/12/2023 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] D -- C:\ProgramData\EA Desktop O43 - CFD: 23/12/2023 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts O43 - CFD: 13/12/2023 - [] D -- C:\ProgramData\Epic =>.Epic O43 - CFD: 09/08/2023 - [] D -- C:\ProgramData\ExpressVPN =>.ExpressVPN O43 - CFD: 12/12/2023 - [] D -- C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 10/12/2023 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 19/12/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 10/12/2023 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 03/11/2022 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 22/12/2023 - [] AD -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 23/12/2023 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 23/12/2023 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 19/12/2023 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 11/12/2023 - [] D -- C:\ProgramData\Propagation O43 - CFD: 09/08/2023 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 23/12/2023 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 11/12/2023 - [0] D -- C:\ProgramData\Rockstar Games =>.Rockstar Games O43 - CFD: 07/05/2022 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 09/08/2023 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 07/05/2022 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\ProgramData\WPSInstallerTemp1 O43 - CFD: 23/12/2023 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 16/12/2023 - [] AD -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 18/12/2023 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 17/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 17/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Disc-Soft O43 - CFD: 14/12/2023 - [] AD -- C:\Users\eminc\AppData\Roaming\discord O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Godot O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\HP =>.Hewlett-Packard O43 - CFD: 23/12/2023 - [] SD -- C:\Users\eminc\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 23/12/2023 - [0] D -- C:\Users\eminc\AppData\Roaming\ReasonLabs O43 - CFD: 19/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\uTorrent Web O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 11/12/2023 - [] D -- C:\Users\eminc\AppData\Local\AMD =>.AMD O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\eminc\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 17/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Artificius O43 - CFD: 17/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Backup =>.Symantec O43 - CFD: 19/12/2023 - [] D -- C:\Users\eminc\AppData\Local\BitTorrentHelper O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\cache =>.Legitimate O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\Local\CEF =>.CEF O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 19/12/2023 - [0] D -- C:\Users\eminc\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] AD -- C:\Users\eminc\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 14/12/2023 - [] AD -- C:\Users\eminc\AppData\Local\Discord O43 - CFD: 17/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Disc_Soft_FZE_LLC O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\EAConnect_microsoft =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\EADesktop O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\EALaunchHelper O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Electronic Arts =>.Electronic Arts O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Epic Games =>.Epic Games O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\EpicGamesLauncher =>.Epic Games O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Local\ExpressVPN =>.ExpressVPN O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Godot O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Google =>.Google O43 - CFD: 19/12/2023 - [] D -- C:\Users\eminc\AppData\Local\GUI O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\eminc\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 15/12/2023 - [] D -- C:\Users\eminc\AppData\Local\INetHistory O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Malwarebytes =>.Malwarebytes O43 - CFD: 19/12/2023 - [] D -- C:\Users\eminc\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Origin =>.Electronic Arts, Inc. O43 - CFD: 20/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 20/12/2023 - [] D -- C:\Users\eminc\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 11/12/2023 - [0] D -- C:\Users\eminc\AppData\Local\Rockstar Games =>.Rockstar Games O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\Local\SoundResearch =>.Sound Research O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Steam =>.Steam Games O43 - CFD: 23/12/2023 - [] AD -- C:\Users\eminc\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\eminc\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\UnrealEngine =>.Unreal Software O43 - CFD: 13/12/2023 - [] D -- C:\Users\eminc\AppData\Local\UnrealEngineLauncher =>.Unreal Software O43 - CFD: 10/12/2023 - [0] D -- C:\Users\eminc\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 16/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Voice.ai O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 13/12/2023 - [0] D -- C:\Users\eminc\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 22/12/2023 - [] D -- C:\Users\eminc\AppData\Local\Programs\Opera GX O43 - CFD: 10/12/2023 - [] D -- C:\Users\eminc\AppData\LocalLow\AMD =>.AMD O43 - CFD: 10/12/2023 - [] SD -- C:\Users\eminc\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 23/12/2023 - [] D -- C:\Users\eminc\OneDrive\Desktop\Autres O43 - CFD: 07/05/2022 - [] RD -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [] RD -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 07/05/2022 - [] D -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 11/12/2023 - [0] D -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games =>.Rockstar Games O43 - CFD: 16/12/2023 - [] RD -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] RD -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 16/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Voice ai O43 - CFD: 07/05/2022 - [] D -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 12/12/2023 - [] D -- C:\Users\eminc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 09/08/2023 - [] D -- C:\Users\Default\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 09/08/2023 - [] D -- C:\Users\Default User\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 07/05/2022 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 10/12/2023 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 13/12/2023 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\Lavasoft =>.Lavasoft O43 - CFD: 19/12/2023 - [] D -- C:\windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 19/12/2023 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\SecurityService O43 - CFD: 23/12/2023 - [] SD -- C:\windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 09/08/2023 - [] -- C:\windows\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (22) - 1s O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: DaemonShellExtImageLite [64Bits] - {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} . (.Disc Soft FZE LLC - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTShl64.dll {73098091AB520B92B7825CB8493B55DC}. O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH3: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH7: DaemonShellExtDriveLite [64Bits] - {C06369D6-E77D-4626-9656-1256312BD576} . (.Disc Soft FZE LLC - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTShl64.dll {73098091AB520B92B7825CB8493B55DC}. O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (12) - 1s O50 - IFEO:C:\windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\LSASS.exe - (.Microsoft Corporation - Local Security Authority Process.) [AuditLevel\\8] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\notepad.exe - (.Microsoft Corporation - Bloc-notes.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTEME (461) - 14s O58 - SDL:2023/12/15 19:00:38 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\windows\System32\drivers\1394ohci.sys [299008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\windows\System32\drivers\3ware.sys [108376] =>.Microsoft® O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\windows\System32\drivers\acpi.sys [755160] =>.Microsoft® O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\windows\System32\drivers\AcpiDev.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\windows\System32\drivers\acpiex.sys [169448] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\windows\System32\drivers\acpipagr.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:02 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\windows\System32\drivers\acpipmi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\windows\System32\drivers\acpitime.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:36 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\windows\System32\drivers\Acx01000.sys [733184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\windows\System32\drivers\adp80xx.sys [1136472] =>.Microsoft® O58 - SDL:2023/12/15 19:01:50 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\windows\System32\drivers\afd.sys [697840] =>.Microsoft® O58 - SDL:2022/05/07 06:19:42 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\windows\System32\drivers\afunix.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\windows\System32\drivers\agilevpn.sys [147456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:24 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\windows\System32\drivers\ahcache.sys [376832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/04/20 07:00:31 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender.) -- C:\windows\System32\drivers\amdfendr.sys [175632] =>.Advanced Micro Devices Inc.® O58 - SDL:2023/04/20 07:00:32 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender Manager Driver.) -- C:\windows\System32\drivers\amdfendrmgr.sys [35344] =>.Advanced Micro Devices Inc.® O58 - SDL:2023/04/20 07:04:27 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\windows\System32\drivers\amdgpio2.sys [56024] =>.Advanced Micro Devices INC.® O58 - SDL:2023/04/20 07:04:25 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\windows\System32\drivers\amdi2c.sys [79456] =>.Advanced Micro Devices Inc.® O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\windows\System32\drivers\amdk8.sys [259456] =>.Microsoft® O58 - SDL:2023/04/20 07:04:34 A . (.Advanced Micro Devices, Inc. - AMD Micro PEP driver.) -- C:\windows\System32\drivers\AmdMicroPEP.sys [302520] =>.Advanced Micro Devices Inc.® O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\windows\System32\drivers\amdppm.sys [267632] =>.Microsoft® O58 - SDL:2023/04/20 07:04:29 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\windows\System32\drivers\amdpsp.sys [52128] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/05/07 06:19:03 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [84312] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [260440] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [28008] =>.Microsoft® O58 - SDL:2022/07/28 23:40:24 A . (.Copyright(C) 2017 - USB Mass Storage Universal Driver.) -- C:\windows\System32\drivers\AmUStorU.sys [144816] =>.Alcorlink Corp.® O58 - SDL:2023/12/15 19:02:00 A . (.Microsoft Corporation - AppID Driver.) -- C:\windows\System32\drivers\appid.sys [247264] =>.Microsoft® O58 - SDL:2022/05/07 06:19:00 A . (.Apple Inc. - Apple Solid State Drive Device.) -- C:\windows\System32\drivers\AppleSSD.sys [113496] =>.Microsoft® O58 - SDL:2023/12/15 19:02:00 A . (.Microsoft Corporation - Applocker Filter.) -- C:\windows\System32\drivers\applockerfltr.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [132968] =>.Microsoft® O58 - SDL:2022/05/07 06:19:43 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\windows\System32\drivers\asyncmac.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [62832] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\windows\System32\drivers\ataport.sys [259552] =>.Microsoft® O58 - SDL:2023/04/20 07:04:24 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\windows\System32\drivers\AtihdWT6.sys [247232] =>.Microsoft® O58 - SDL:2022/05/07 06:19:29 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\windows\System32\drivers\bam.sys [116056] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\windows\System32\drivers\battc.sys [107880] =>.Microsoft® O58 - SDL:2022/05/07 06:19:00 A . (. - BCM Function 2 Device Driver.) -- C:\windows\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2023/12/13 19:22:46 A . (.Bitdefender - BDDCI filter driver.) -- C:\windows\System32\drivers\bddci.sys [800672] =>.Microsoft® O58 - SDL:2022/05/07 06:19:45 A . (.Microsoft Corporation - BEEP Driver.) -- C:\windows\System32\drivers\beep.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:32 A . (.Microsoft Corporation - Pilote de filtre Bfs.) -- C:\windows\System32\drivers\bfs.sys [91520] =>.Microsoft® O58 - SDL:2023/12/15 19:01:26 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\windows\System32\drivers\bindflt.sys [173544] =>.Microsoft® O58 - SDL:2022/05/07 06:19:10 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\windows\System32\drivers\bowser.sys [155648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:03:56 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\windows\System32\drivers\bridge.sys [159744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\windows\System32\drivers\BtaMPM.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/04/28 17:16:11 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\windows\System32\drivers\BthA2dp.sys [532480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\windows\System32\drivers\bthenum.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/04/28 17:16:11 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\windows\System32\drivers\BthHfEnum.sys [184320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\windows\System32\drivers\BthMini.SYS [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/04/28 17:16:11 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\windows\System32\drivers\bthmodem.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\windows\System32\drivers\bthpan.sys [159744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\windows\System32\drivers\bthport.sys [2101248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\windows\System32\drivers\BTHUSB.SYS [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:05 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\windows\System32\drivers\bttflt.sys [79184] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\windows\System32\drivers\buttonconverter.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:02 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\windows\System32\drivers\bxvbda.sys [534872] =>.Microsoft® O58 - SDL:2022/05/07 06:19:01 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\windows\System32\drivers\CAD.sys [99672] =>.Microsoft® O58 - SDL:2023/12/15 19:03:53 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\cdfs.sys [131072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\cdrom.sys [204800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:20 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\windows\System32\drivers\CEA.sys [107880] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\windows\System32\drivers\cht4dx64.sys [145256] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\windows\System32\drivers\cht4sx64.sys [320880] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\windows\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2022/05/07 06:19:04 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\windows\System32\drivers\cht4vx64.sys [1854832] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - CimFS driver.) -- C:\windows\System32\drivers\cimfs.sys [173424] =>.Microsoft® O58 - SDL:2022/05/07 06:19:01 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\windows\System32\drivers\circlass.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:46 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\windows\System32\drivers\Classpnp.sys [488816] =>.Microsoft® O58 - SDL:2023/12/15 19:02:04 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\windows\System32\drivers\cldflt.sys [569344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:09 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\windows\System32\drivers\clfs.sys [456176] =>.Microsoft® O58 - SDL:2023/12/15 19:01:03 A . (.Microsoft Corporation - CLIP Service.) -- C:\windows\System32\drivers\ClipSp.sys [1140192] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\windows\System32\drivers\CmBatt.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\windows\System32\drivers\cmimcext.sys [71024] =>.Microsoft® O58 - SDL:2023/12/15 19:01:46 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\windows\System32\drivers\cng.sys [782384] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\windows\System32\drivers\cnghwassist.sys [75088] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Console Driver.) -- C:\windows\System32\drivers\condrv.sys [87376] =>.Microsoft® O58 - SDL:2023/12/15 19:02:09 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\windows\System32\drivers\crashdmp.sys [157168] =>.Microsoft® O58 - SDL:2023/12/15 19:02:17 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\windows\System32\drivers\dam.sys [140784] =>.Microsoft® O58 - SDL:2023/12/15 19:00:33 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\windows\System32\drivers\devauthe.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\dfsc.sys [184320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\windows\System32\drivers\disk.sys [140784] =>.Microsoft® O58 - SDL:2022/05/07 06:19:35 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\windows\System32\drivers\Diskdump.sys [79200] =>.Microsoft® O58 - SDL:2022/05/07 06:19:35 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\windows\System32\drivers\Dmpusbstor.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\windows\System32\drivers\dmvsc.sys [99664] =>.Microsoft® O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\windows\System32\drivers\drmk.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\windows\System32\drivers\drmkaud.sys [51008] =>.Microsoft® O58 - SDL:2023/12/17 18:25:12 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\windows\System32\drivers\dtlitescsibus.sys [42256] =>.AVB Disc Soft, SIA® O58 - SDL:2023/12/17 18:25:13 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\windows\System32\drivers\dtliteusbbus.sys [63696] {76CEA6897FE1FB6E06DF03619025CC50}. =>.Disc Soft Ltd O58 - SDL:2022/05/07 06:19:33 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\windows\System32\drivers\Dumpata.sys [79216] =>.Microsoft® O58 - SDL:2023/12/15 19:04:32 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\windows\System32\drivers\dumpfve.sys [133656] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\windows\System32\drivers\dumpsd.sys [230744] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\windows\System32\drivers\dumpsdport.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:35 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\windows\System32\drivers\Dumpstorport.sys [79184] =>.Microsoft® O58 - SDL:2023/12/15 19:01:04 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\windows\System32\drivers\dxgkrnl.sys [4703616] =>.Microsoft® O58 - SDL:2023/12/15 19:01:04 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\windows\System32\drivers\dxgmms1.sys [566656] =>.Microsoft® O58 - SDL:2023/12/15 19:01:04 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\windows\System32\drivers\dxgmms2.sys [1148392] =>.Microsoft® O58 - SDL:2022/05/07 06:20:05 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\windows\System32\drivers\EhStorClass.sys [152944] =>.Microsoft® O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\windows\System32\drivers\EhStorTcgDrv.sys [165344] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Error Device Driver.) -- C:\windows\System32\drivers\errdev.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/10/18 22:09:26 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\windows\System32\drivers\ETD.sys [589424] {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronics Corp. O58 - SDL:2022/10/18 22:09:37 A . (.ELAN Microelectronics Corp. - ETD Kernel Center (HIDClass Filter).) -- C:\windows\System32\drivers\ETDHCF.sys [33392] {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronics Corp. O58 - SDL:2022/05/07 06:19:02 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\windows\System32\drivers\evbd0a.sys [3424104] =>.Microsoft® O58 - SDL:2022/05/07 06:19:02 A . (.Marvell Semiconductor Inc. - QLogic 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3441512] =>.Microsoft® O58 - SDL:2023/12/15 19:01:55 A . (.Microsoft Corporation - CPU Scheduler for High Performance I/O.) -- C:\windows\System32\drivers\ExecutionContext.sys [75136] =>.Microsoft® O58 - SDL:2023/12/15 19:00:28 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\windows\System32\drivers\exfat.sys [452080] =>.Microsoft® O58 - SDL:2022/08/16 03:11:12 A . (.ExpressVPN - ExpressVPN Wintun Driver.) -- C:\windows\System32\drivers\expressvpn-tun.sys [56552] =>.Express VPN International Ltd.® O58 - SDL:2023/12/23 22:20:49 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\windows\System32\drivers\farflt11.sys [233704] =>.Malwarebytes Inc.® O58 - SDL:2023/12/15 19:00:28 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\windows\System32\drivers\fastfat.sys [456048] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\windows\System32\drivers\fdc.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:02 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\windows\System32\drivers\filecrypt.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:33 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\windows\System32\drivers\fileinfo.sys [124240] =>.Microsoft® O58 - SDL:2022/05/07 06:19:33 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\windows\System32\drivers\filetrace.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Floppy Driver.) -- C:\windows\System32\drivers\flpydisk.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:46 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\windows\System32\drivers\fltMgr.sys [505320] =>.Microsoft® O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\windows\System32\drivers\fsdepends.sys [103808] =>.Microsoft® O58 - SDL:2023/12/15 19:04:18 A . (.Microsoft Corporation - Flow Steering Engine Driver.) -- C:\windows\System32\drivers\fse.sys [218592] =>.Microsoft® O58 - SDL:2022/05/07 06:19:30 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\windows\System32\drivers\fs_rec.sys [71008] =>.Microsoft® O58 - SDL:2023/12/15 19:04:32 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\windows\System32\drivers\fvevol.sys [882032] =>.Microsoft® O58 - SDL:2023/12/15 19:01:55 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\windows\System32\drivers\FWPKCLNT.SYS [546160] =>.Microsoft® O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\hdaudbus.sys [192512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\windows\System32\drivers\HdAudio.sys [528384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\windows\System32\drivers\hidbatt.sys [71016] =>.Microsoft® O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\windows\System32\drivers\hidbth.sys [151552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - Bibliothèque de classes Hid.) -- C:\windows\System32\drivers\hidclass.sys [278528] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\windows\System32\drivers\hidi2c.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\windows\System32\drivers\hidinterrupt.sys [91472] =>.Microsoft® O58 - SDL:2022/05/07 06:19:01 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\windows\System32\drivers\hidir.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\windows\System32\drivers\hidparse.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\windows\System32\drivers\hidspi.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - HidSpi KMDF Class Extension.) -- C:\windows\System32\drivers\HidSpiCx.sys [126976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\windows\System32\drivers\hidusb.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/08/09 09:06:45 A . (.Microsoft Corporation - Network driver for proxying traffic.) -- C:\windows\System32\drivers\hnswfpdriver.sys [58704] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [65360] =>.Microsoft® O58 - SDL:2022/05/07 06:19:08 A . (.Microsoft Corporation - HSP Device Driver.) -- C:\windows\System32\drivers\Hsp.sys [124264] =>.Microsoft® O58 - SDL:2023/12/15 19:01:45 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\windows\System32\drivers\http.sys [1721728] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\windows\System32\drivers\hvcrash.sys [75112] =>.Microsoft® O58 - SDL:2023/12/15 19:03:35 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\windows\System32\drivers\hvservice.sys [91624] =>.Microsoft® O58 - SDL:2023/12/15 19:04:14 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\windows\System32\drivers\hvsocket.sys [181632] =>.Microsoft® O58 - SDL:2023/12/15 19:04:16 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider Control D.) -- C:\windows\System32\drivers\hvsocketcontrol.sys [66928] =>.Microsoft® O58 - SDL:2022/05/07 06:19:30 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\windows\System32\drivers\hwpolicy.sys [79200] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\windows\System32\drivers\hyperkbd.sys [62800] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\windows\System32\drivers\HyperVideo.sys [79200] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\windows\System32\drivers\i8042prt.sys [159744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\windows\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\windows\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\windows\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:02 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\windows\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2022/05/07 06:19:01 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\windows\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\windows\System32\drivers\iaStorAVC.sys [885584] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [413008] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\windows\System32\drivers\ibbus.sys [559976] =>.Microsoft® O58 - SDL:2023/12/15 19:01:26 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\windows\System32\drivers\IndirectKmd.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\windows\System32\drivers\intelide.sys [58736] =>.Microsoft® O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\windows\System32\drivers\intelpep.sys [558728] =>.Microsoft® O58 - SDL:2022/05/07 06:19:00 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\windows\System32\drivers\intelpmax.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Intel Platform Monitoring Driver.) -- C:\windows\System32\drivers\IntelPMT.sys [91784] =>.Microsoft® O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\windows\System32\drivers\intelppm.sys [296320] =>.Microsoft® O58 - SDL:2022/05/07 06:18:58 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\windows\System32\drivers\iorate.sys [87392] =>.Microsoft® O58 - SDL:2022/05/07 06:19:43 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\windows\System32\drivers\ipfltdrv.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\windows\System32\drivers\IPMIDrv.sys [148864] =>.Microsoft® O58 - SDL:2023/12/15 19:01:26 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\ipnat.sys [258048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:00 A . (.Microsoft Corporation - IPT Driver.) -- C:\windows\System32\drivers\ipt.sys [99688] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\windows\System32\drivers\isapnp.sys [54624] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\windows\System32\drivers\ItSas35i.sys [187224] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\windows\System32\drivers\kbdclass.sys [95576] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\windows\System32\drivers\kbdhid.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:31 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\windows\System32\drivers\kdnic.sys [70992] =>.Microsoft® O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - Kernel Mode Power Dependency Coordinator.) -- C:\windows\System32\drivers\kmpdc.sys [71024] =>.Microsoft® O58 - SDL:2023/12/15 19:00:28 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\windows\System32\drivers\KNetPwrDepBroker.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:22 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\windows\System32\drivers\ks.sys [544768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:48 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\windows\System32\drivers\ksecdd.sys [189808] =>.Microsoft® O58 - SDL:2023/12/15 19:01:53 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\windows\System32\drivers\ksecpkg.sys [218584] =>.Microsoft® O58 - SDL:2022/05/07 06:19:38 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\windows\System32\drivers\ksthunk.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:04:18 A . (.Microsoft Corporation - Network driver for bridging packets between.) -- C:\windows\System32\drivers\l2bridge.sys [87520] =>.Microsoft® O58 - SDL:2023/12/15 19:02:16 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\windows\System32\drivers\lltdio.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [109920] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2i.sys [125280] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas3i.sys [138600] =>.Microsoft® O58 - SDL:2023/12/15 19:02:23 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\windows\System32\drivers\luafv.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\windows\System32\drivers\mausbhost.sys [566632] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\windows\System32\drivers\mausbip.sys [99664] =>.Microsoft® O58 - SDL:2023/12/19 20:02:07 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\windows\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2023/12/23 22:20:50 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\windows\System32\drivers\mbam.sys [78400] =>.Microsoft® O58 - SDL:2023/12/19 20:02:19 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\windows\System32\drivers\MbamChameleon.sys [222784] =>.Microsoft® O58 - SDL:2023/12/19 20:02:02 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\windows\System32\drivers\MbamElam.sys [21480] =>.Microsoft® O58 - SDL:2023/12/19 20:02:18 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\windows\System32\drivers\mbamswissarmy.sys [239576] =>.Microsoft® O58 - SDL:2023/12/15 19:00:28 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\windows\System32\drivers\MbbCx.sys [454656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:45 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\windows\System32\drivers\mcd.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.Avago Technologies - MEGASAS2i RAID Controller Driver for Window.) -- C:\windows\System32\drivers\MegaSas2i.sys [81752] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Broadcom Inc - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas35i.sys [101224] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\megasr.sys [576856] =>.Microsoft® O58 - SDL:2023/12/15 19:00:32 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\windows\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\windows\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Mellanox - MLX4 Bus Driver.) -- C:\windows\System32\drivers\mlx4_bus.sys [1132392] =>.Microsoft® O58 - SDL:2023/12/15 19:00:31 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\windows\System32\drivers\mmcss.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:04:12 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\windows\System32\drivers\modem.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:36 A . (.Microsoft Corporation - Monitor Driver.) -- C:\windows\System32\drivers\monitor.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\windows\System32\drivers\mouclass.sys [95592] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\windows\System32\drivers\mouhid.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:47 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\windows\System32\drivers\mountmgr.sys [136688] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Broadcom Limited - Broadcom MPI 3.0 Driver (StorPort).) -- C:\windows\System32\drivers\mpi3drvi.sys [90472] =>.Microsoft® O58 - SDL:2023/12/15 19:00:59 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\windows\System32\drivers\mpsdrv.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\windows\System32\drivers\mrxdav.sys [196608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\windows\System32\drivers\mrxsmb.sys [660864] =>.Microsoft® O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\windows\System32\drivers\mrxsmb20.sys [329104] =>.Microsoft® O58 - SDL:2023/12/15 19:01:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\windows\System32\drivers\msfs.sys [79216] =>.Microsoft® O58 - SDL:2023/12/15 19:01:05 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\windows\System32\drivers\msgpioclx.sys [218480] =>.Microsoft® O58 - SDL:2023/12/15 19:02:21 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\windows\System32\drivers\msgpiowin32.sys [95728] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\windows\System32\drivers\mshidkmdf.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:13 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\windows\System32\drivers\mshidumdf.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\windows\System32\drivers\mshwnclx.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - ISA Driver.) -- C:\windows\System32\drivers\msisadrv.sys [54608] =>.Microsoft® O58 - SDL:2023/12/15 19:00:38 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\windows\System32\drivers\msiscsi.sys [333288] =>.Microsoft® O58 - SDL:2023/12/15 19:02:22 A . (.Microsoft Corporation - MS KS Server.) -- C:\windows\System32\drivers\mskssrv.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:36 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\windows\System32\drivers\mslldp.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:38 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\windows\System32\drivers\mspclock.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:38 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\windows\System32\drivers\mspqm.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:50 A . (.Microsoft Corporation - Microsoft® QUIC Library.) -- C:\windows\System32\drivers\msquic.sys [420208] =>.Microsoft® O58 - SDL:2023/12/15 19:01:48 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\windows\System32\drivers\msrpc.sys [415200] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\windows\System32\drivers\mssmbios.sys [79216] =>.Microsoft® O58 - SDL:2022/05/07 06:19:38 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\windows\System32\drivers\mstee.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\windows\System32\drivers\MTConfig.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\windows\System32\drivers\mup.sys [169328] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\windows\System32\drivers\mvumis.sys [64872] =>.Microsoft® O58 - SDL:2023/12/23 22:20:48 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\windows\System32\drivers\mwac.sys [188008] =>.Malwarebytes Inc.® O58 - SDL:2022/05/07 06:19:04 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\windows\System32\drivers\ndfltr.sys [147304] =>.Microsoft® O58 - SDL:2023/12/15 19:01:49 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\windows\System32\drivers\ndis.sys [1631616] =>.Microsoft® O58 - SDL:2022/05/07 06:20:14 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\windows\System32\drivers\ndiscap.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:35 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\windows\System32\drivers\NdisImPlatform.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\windows\System32\drivers\ndistapi.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:31 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\windows\System32\drivers\ndisuio.sys [102400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:42 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\windows\System32\drivers\NdisVirtualBus.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\windows\System32\drivers\ndiswan.sys [237568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:20:14 A . (...) -- C:\windows\System32\drivers\NDKPerf.sys [83288] =>.Microsoft® O58 - SDL:2022/05/07 06:20:14 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\windows\System32\drivers\NDKPing.sys [107872] =>.Microsoft® O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\windows\System32\drivers\ndproxy.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:03:34 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\windows\System32\drivers\Ndu.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:55 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\windows\System32\drivers\NetAdapterCx.sys [398720] =>.Microsoft® O58 - SDL:2023/12/15 19:02:34 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\windows\System32\drivers\netbios.sys [95728] =>.Microsoft® O58 - SDL:2023/12/15 19:02:35 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netbt.sys [327680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:49 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\windows\System32\drivers\netio.sys [664960] =>.Microsoft® O58 - SDL:2023/12/15 19:04:14 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\windows\System32\drivers\netvsc.sys [329072] =>.Microsoft® O58 - SDL:2023/12/15 19:01:48 A . (.Microsoft Corporation - NPFS Driver.) -- C:\windows\System32\drivers\npfs.sys [120176] =>.Microsoft® O58 - SDL:2022/05/07 06:19:32 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\windows\System32\drivers\npsvctrig.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:31 A . (.Microsoft Corporation - NSI Proxy.) -- C:\windows\System32\drivers\nsiproxy.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:47 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\windows\System32\drivers\ntfs.sys [3335656] =>.Microsoft® O58 - SDL:2022/05/07 06:19:39 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\windows\System32\drivers\ntosext.sys [58704] =>.Microsoft® O58 - SDL:2022/05/07 06:19:30 A . (.Microsoft Corporation - NULL Driver.) -- C:\windows\System32\drivers\null.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:05 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\windows\System32\drivers\nvdimm.sys [206160] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Microsoft Corporation - Nvme Disk Driver.) -- C:\windows\System32\drivers\nvmedisk.sys [91496] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [151392] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [167256] =>.Microsoft® O58 - SDL:2023/12/15 19:00:49 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\windows\System32\drivers\nwifi.sys [757760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:20:18 A . (.Microsoft Corporation - Plan 9 redirector.) -- C:\windows\System32\drivers\p9rdr.sys [148816] =>.Microsoft® O58 - SDL:2023/12/15 19:01:17 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\windows\System32\drivers\pacer.sys [185840] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\windows\System32\drivers\parport.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:48 A . (.Microsoft Corporation - Partition driver.) -- C:\windows\System32\drivers\partmgr.sys [218608] =>.Microsoft® O58 - SDL:2023/08/09 09:06:46 A . (.Microsoft Corporation - Pass thru parser.) -- C:\windows\System32\drivers\passthruparser.sys [75104] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\windows\System32\drivers\pci.sys [579056] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\pciide.sys [54640] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\windows\System32\drivers\pciidex.sys [91520] =>.Microsoft® O58 - SDL:2022/05/07 06:19:01 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\windows\System32\drivers\pcmcia.sys [157016] =>.Microsoft® O58 - SDL:2023/12/15 19:01:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\windows\System32\drivers\pcw.sys [99712] =>.Microsoft® O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\windows\System32\drivers\pdc.sys [202112] =>.Microsoft® O58 - SDL:2023/12/15 19:00:43 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\windows\System32\drivers\PEAuth.sys [856064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\percsas2i.sys [59752] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\percsas3i.sys [69464] =>.Microsoft® O58 - SDL:2023/12/15 19:04:10 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\windows\System32\drivers\PktMon.sys [177520] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\windows\System32\drivers\pmem.sys [181616] =>.Microsoft® O58 - SDL:2022/05/07 06:19:02 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\windows\System32\drivers\pnpmem.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\windows\System32\drivers\portcfg.sys [61440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\windows\System32\drivers\portcls.sys [471040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:37 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\windows\System32\drivers\processr.sys [271744] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\windows\System32\drivers\ProcLaunchMon.sys [79896] =>.Microsoft® O58 - SDL:2022/10/18 22:09:43 A . (.ELAN Microelectronic Corp. - ELAN PTPFilter Driver.) -- C:\windows\System32\drivers\PTPFilter.sys [52336] {0F69513944CE3B7B8FC11928322A7D99}. =>.ELAN Microelectronic Corp. O58 - SDL:2023/08/09 09:06:44 A . (.Microsoft Corporation - Analyseur de disque dur virtuel de proxy.) -- C:\windows\System32\drivers\pvhdparser.sys [95584] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.VMware, Inc. - VMware PVSCSI StorPort driver (64-bit).) -- C:\windows\System32\drivers\pvscsii.sys [45408] =>.Microsoft® O58 - SDL:2023/12/15 19:02:36 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\windows\System32\drivers\qwavedrv.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:02 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\windows\System32\drivers\ramdisk.sys [75104] =>.Microsoft® O58 - SDL:2022/05/07 06:19:43 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\windows\System32\drivers\rasacd.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\rasl2tp.sys [151552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\windows\System32\drivers\raspppoe.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\windows\System32\drivers\raspptp.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\windows\System32\drivers\rassstp.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\windows\System32\drivers\rdbss.sys [497024] =>.Microsoft® O58 - SDL:2023/12/15 19:04:10 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\windows\System32\drivers\rdpbus.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:20:14 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\windows\System32\drivers\rdpdr.sys [196608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:04:08 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\windows\System32\drivers\rdpvideominiport.sys [66928] =>.Microsoft® O58 - SDL:2023/12/15 19:04:15 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\windows\System32\drivers\rdyboost.sys [329088] =>.Microsoft® O58 - SDL:2023/12/15 19:02:02 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\windows\System32\drivers\refs.sys [2950616] =>.Microsoft® O58 - SDL:2023/12/15 19:02:02 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\windows\System32\drivers\refsv1.sys [1000832] =>.Microsoft® O58 - SDL:2023/12/15 19:01:29 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\windows\System32\drivers\rfcomm.sys [249856] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:36 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\windows\System32\drivers\rhproxy.sys [147456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:04:04 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\windows\System32\drivers\rmcast.sys [192512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:43 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\windows\System32\drivers\RNDISMP.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:20:15 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\windows\System32\drivers\rootmdm.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:03:35 A . (...) -- C:\windows\System32\drivers\RoutePolicy.sys [98304] [Unsigned] O58 - SDL:2023/12/15 19:02:16 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\windows\System32\drivers\rspndr.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:33 A . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\windows\System32\drivers\rteth.sys [86016] [Unsigned] =>.Realtek O58 - SDL:2023/02/17 01:35:42 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\windows\System32\drivers\RtkBtfilter.sys [822640] =>.Realtek Semiconductor Corp.® O58 - SDL:2023/03/08 12:37:42 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [6446952] =>.Realtek Semiconductor Corp.® O58 - SDL:2023/03/27 18:28:11 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\windows\System32\drivers\RtsUer.sys [842592] =>.Realtek Semiconductor Corp.® O58 - SDL:2023/01/31 23:26:22 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 28199 28199.) -- C:\windows\System32\drivers\rtwlane.sys [11808616] =>.Realtek Semiconductor Corp.® O58 - SDL:2023/12/15 19:00:38 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\windows\System32\drivers\sbp2port.sys [148848] =>.Microsoft® O58 - SDL:2023/12/15 19:02:45 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\windows\System32\drivers\scfilter.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\windows\System32\drivers\scmbus.sys [222592] =>.Microsoft® O58 - SDL:2022/05/07 06:19:45 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\windows\System32\drivers\scsiport.sys [226656] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\windows\System32\drivers\sdbus.sys [341336] =>.Microsoft® O58 - SDL:2022/05/07 06:19:02 A . (.Microsoft Corporation - SDF Reflector.) -- C:\windows\System32\drivers\SDFRd.sys [71016] =>.Microsoft® O58 - SDL:2023/12/15 19:00:36 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\windows\System32\drivers\sdport.sys [140776] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\windows\System32\drivers\sdstor.sys [132480] =>.Microsoft® O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\windows\System32\drivers\SerCx.sys [120144] =>.Microsoft® O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\windows\System32\drivers\SerCx2.sys [202096] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\windows\System32\drivers\serenum.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\windows\System32\drivers\serial.sys [122880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\windows\System32\drivers\sermouse.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\windows\System32\drivers\sfloppy.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:03:34 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\windows\System32\drivers\SgrmAgent.sys [124272] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [45920] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [82784] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\windows\System32\drivers\SmartSAMD.sys [210784] =>.Microsoft® O58 - SDL:2022/05/07 06:19:44 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\windows\System32\drivers\smclib.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:38 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\windows\System32\drivers\spacedump.sys [284136] =>.Microsoft® O58 - SDL:2022/05/07 06:20:02 A . (.Microsoft Corporation - Storage Spaces Parser driver.) -- C:\windows\System32\drivers\spaceparser.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:38 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\windows\System32\drivers\spaceport.sys [935392] =>.Microsoft® O58 - SDL:2022/05/07 07:10:24 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\windows\System32\drivers\SpatialGraphFilter.sys [132448] =>.Microsoft® O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\windows\System32\drivers\SpbCx.sys [124392] =>.Microsoft® O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\windows\System32\drivers\srv2.sys [868352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:10 A . (.Microsoft Corporation - Server Network driver.) -- C:\windows\System32\drivers\srvnet.sys [368640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\windows\System32\drivers\stexstor.sys [32080] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\windows\System32\drivers\storahci.sys [214400] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\windows\System32\drivers\stornvme.sys [251360] =>.Microsoft® O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\windows\System32\drivers\storport.sys [1164656] =>.Microsoft® O58 - SDL:2023/12/15 19:01:28 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\windows\System32\drivers\storqosflt.sys [120176] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\windows\System32\drivers\storufs.sys [112088] =>.Microsoft® O58 - SDL:2023/12/15 19:04:14 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\windows\System32\drivers\storvsc.sys [87424] =>.Microsoft® O58 - SDL:2023/12/15 19:04:17 A . (.Microsoft Corporation - Pilote du fournisseur de services de virtua.) -- C:\windows\System32\drivers\storvsp.sys [271728] =>.Microsoft® O58 - SDL:2022/05/07 06:19:45 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\windows\System32\drivers\stream.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:45 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\windows\System32\drivers\tape.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:47 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\windows\System32\drivers\tbs.sys [75120] =>.Microsoft® O58 - SDL:2023/12/15 19:01:55 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\windows\System32\drivers\tcpip.sys [3311064] =>.Microsoft® O58 - SDL:2023/12/15 19:01:55 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\windows\System32\drivers\tcpipreg.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:31 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\windows\System32\drivers\tdi.sys [79184] =>.Microsoft® O58 - SDL:2023/12/15 19:03:34 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [157056] =>.Microsoft® O58 - SDL:2022/05/07 06:20:12 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\windows\System32\drivers\terminpt.sys [75104] =>.Microsoft® O58 - SDL:2023/12/15 19:02:09 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\windows\System32\drivers\tm.sys [177536] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\windows\System32\drivers\tpm.sys [366064] =>.Microsoft® O58 - SDL:2022/05/07 06:19:02 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\windows\System32\drivers\TsUsbFlt.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\windows\System32\drivers\TsUsbGD.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:34 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\windows\System32\drivers\tunnel.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\windows\System32\drivers\uaspstor.sys [116096] =>.Microsoft® O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\windows\System32\drivers\UcmCx.sys [212992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\windows\System32\drivers\UcmTcpciCx.sys [217088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\windows\System32\drivers\UcmUcsiAcpiClient.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\windows\System32\drivers\UcmUcsiCx.sys [200704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:33 A . (.Microsoft Corporation - User Choice Protection Driver.) -- C:\windows\System32\drivers\UCPD.sys [33792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\windows\System32\drivers\Ucx01000.sys [296416] =>.Microsoft® O58 - SDL:2022/05/07 06:19:05 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\windows\System32\drivers\Udecx.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:04:12 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\windows\System32\drivers\udfs.sys [393216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\windows\System32\drivers\ufx01000.sys [361952] =>.Microsoft® O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\windows\System32\drivers\ufxsynopsys.sys [198128] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\windows\System32\drivers\umpass.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:27 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\windows\System32\drivers\urscx01000.sys [112000] =>.Microsoft® O58 - SDL:2022/05/07 06:19:43 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\windows\System32\drivers\usb8023.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:34 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\windows\System32\drivers\USBAUDIO.sys [282624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:01 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\windows\System32\drivers\usbaudio2.sys [397312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:29 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\windows\System32\drivers\USBCAMD2.sys [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\windows\System32\drivers\usbccgp.sys [226672] =>.Microsoft® O58 - SDL:2022/05/07 06:19:01 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\windows\System32\drivers\usbcir.sys [143360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\windows\System32\drivers\usbd.sys [71024] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\windows\System32\drivers\usbehci.sys [120176] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\windows\System32\drivers\usbhub.sys [558576] =>.Microsoft® O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\windows\System32\drivers\USBHUB3.SYS [726504] =>.Microsoft® O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\windows\System32\drivers\usbohci.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - USB Policy Manager Kernel-Mode Library.) -- C:\windows\System32\drivers\UsbPmApi.sys [94208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:30 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\windows\System32\drivers\usbport.sys [505320] =>.Microsoft® O58 - SDL:2023/12/15 19:00:36 A . (.Microsoft Corporation - USB Printer driver.) -- C:\windows\System32\drivers\usbprint.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\windows\System32\drivers\usbser.sys [131072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\windows\System32\drivers\USBSTOR.SYS [173392] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\windows\System32\drivers\usbuhci.sys [73728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:36 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\windows\System32\drivers\usbvideo.sys [382320] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\windows\System32\drivers\USBXHCI.SYS [677232] =>.Microsoft® O58 - SDL:2022/05/07 06:19:05 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\windows\System32\drivers\vdrvroot.sys [124248] =>.Microsoft® O58 - SDL:2023/12/15 19:01:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\windows\System32\drivers\VerifierExt.sys [247280] =>.Microsoft® O58 - SDL:2023/12/15 19:04:15 A . (.Microsoft Corporation - Microsoft Azure VFP Extension.) -- C:\windows\System32\drivers\vfpext.sys [1630208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:40 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\windows\System32\drivers\vhdmp.sys [1021312] =>.Microsoft® O58 - SDL:2023/12/15 19:04:17 A . (.Microsoft Corporation - Native VHD parser.) -- C:\windows\System32\drivers\vhdparser.sys [87408] =>.Microsoft® O58 - SDL:2023/12/15 19:00:39 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\windows\System32\drivers\vhf.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:03:33 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\windows\System32\drivers\Vid.sys [828896] =>.Microsoft® O58 - SDL:2022/05/07 06:19:35 A . (.Microsoft Corporation - Video Port Driver.) -- C:\windows\System32\drivers\videoprt.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:04:13 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\windows\System32\drivers\vmbkmcl.sys [169328] =>.Microsoft® O58 - SDL:2023/12/15 19:04:16 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\windows\System32\drivers\vmbkmclr.sys [185728] =>.Microsoft® O58 - SDL:2023/12/15 19:04:14 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\windows\System32\drivers\vmbus.sys [206304] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\windows\System32\drivers\VMBusHID.sys [71000] =>.Microsoft® O58 - SDL:2023/12/15 19:04:16 A . (...) -- C:\windows\System32\drivers\vmbusproxy.sys [94208] [Unsigned] O58 - SDL:2023/12/15 19:04:16 A . (.Microsoft Corporation - Pilote racine de bus VMBus sous Microsoft H.) -- C:\windows\System32\drivers\vmbusr.sys [296416] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\windows\System32\drivers\vmgencounter.sys [58720] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\windows\System32\drivers\vmgid.sys [58720] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\windows\System32\drivers\vms3cap.sys [54616] =>.Microsoft® O58 - SDL:2023/12/15 19:04:18 A . (.Microsoft Corporation - VMSWITCH Proxy Driver.) -- C:\windows\System32\drivers\VmsProxy.sys [71040] =>.Microsoft® O58 - SDL:2023/12/15 19:04:18 A . (.Microsoft Corporation - VmSwitch NIC Proxy Driver.) -- C:\windows\System32\drivers\VmsProxyHNic.sys [75120] =>.Microsoft® O58 - SDL:2022/05/07 06:20:16 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\windows\System32\drivers\vmstorfl.sys [87376] =>.Microsoft® O58 - SDL:2023/12/15 19:04:17 A . (.Microsoft Corporation - Hyper-V Secure Virtualization Component mod.) -- C:\windows\System32\drivers\vmsvcext.sys [234864] =>.Microsoft® O58 - SDL:2023/12/15 19:04:18 A . (.Microsoft Corporation - Fournisseur de services de virtualisation d.) -- C:\windows\System32\drivers\vmswitch.sys [2684384] =>.Microsoft® O58 - SDL:2023/12/15 19:00:38 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\windows\System32\drivers\volmgr.sys [124384] =>.Microsoft® O58 - SDL:2022/05/07 06:20:03 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\windows\System32\drivers\volmgrx.sys [419168] =>.Microsoft® O58 - SDL:2023/12/15 19:02:25 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\windows\System32\drivers\volsnap.sys [468352] =>.Microsoft® O58 - SDL:2022/05/07 06:19:03 A . (.Microsoft Corporation - Volume driver.) -- C:\windows\System32\drivers\volume.sys [54640] =>.Microsoft® O58 - SDL:2023/12/15 19:04:14 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\windows\System32\drivers\vpci.sys [120176] =>.Microsoft® O58 - SDL:2023/08/09 09:06:44 A . (.Microsoft Corporation - Virtual PCI VSP Driver.) -- C:\windows\System32\drivers\vpcivsp.sys [243048] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [167784] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\windows\System32\drivers\VSTXRAID.SYS [306512] =>.Microsoft® O58 - SDL:2022/05/07 06:19:11 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\windows\System32\drivers\vwifibus.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:11 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\windows\System32\drivers\vwififlt.sys [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:11 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\windows\System32\drivers\vwifimp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:03 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\windows\System32\drivers\wacompen.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:41 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\windows\System32\drivers\wanarp.sys [126976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:04 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\windows\System32\drivers\watchdog.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:26 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\windows\System32\drivers\wcifs.sys [251352] =>.Microsoft® O58 - SDL:2022/05/07 06:19:08 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\windows\System32\drivers\WdBoot.sys [48536] =>.Microsoft® O58 - SDL:2022/05/07 06:19:08 A . (.Microsoft Corporation - Microsoft antimalware device filter driver.) -- C:\windows\System32\drivers\WdDevFlt.sys [169232] =>.Microsoft® O58 - SDL:2023/12/15 19:01:48 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\windows\System32\drivers\Wdf01000.sys [820704] =>.Microsoft® O58 - SDL:2022/05/07 06:19:08 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\windows\System32\drivers\WdFilter.sys [438544] =>.Microsoft® O58 - SDL:2023/12/15 19:01:48 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\windows\System32\drivers\WdfLdr.sys [103912] =>.Microsoft® O58 - SDL:2023/12/15 19:00:49 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\windows\System32\drivers\WdiWiFi.sys [1073152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:26 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\windows\System32\drivers\WdmCompanionFilter.sys [62800] =>.Microsoft® O58 - SDL:2022/05/07 06:19:08 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\windows\System32\drivers\WdNisDrv.sys [90384] =>.Microsoft® O58 - SDL:2023/12/15 19:01:55 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\windows\System32\drivers\werkernel.sys [99696] =>.Microsoft® O58 - SDL:2023/12/15 19:01:17 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\windows\System32\drivers\wfplwfs.sys [210392] =>.Microsoft® O58 - SDL:2023/12/15 19:00:50 A . (.Microsoft Corporation - Windows Wifi Class Extension.) -- C:\windows\System32\drivers\WifiCx.sys [835584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:02:05 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\windows\System32\drivers\wimmount.sys [71136] =>.Microsoft® O58 - SDL:2023/12/15 19:01:28 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\windows\System32\drivers\WindowsTrustedRT.sys [108064] =>.Microsoft® O58 - SDL:2022/05/07 06:19:25 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\windows\System32\drivers\WindowsTrustedRTProxy.sys [54784] =>.Microsoft® O58 - SDL:2023/12/15 19:04:13 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\windows\System32\drivers\winhv.sys [75120] =>.Microsoft® O58 - SDL:2023/12/15 19:03:35 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\windows\System32\drivers\winhvr.sys [144864] =>.Microsoft® O58 - SDL:2022/05/07 06:19:04 A . (.Mellanox - Kernel WinMad.) -- C:\windows\System32\drivers\winmad.sys [37224] =>.Microsoft® O58 - SDL:2023/12/15 19:00:30 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\windows\System32\drivers\winnat.sys [303056] =>.Microsoft® O58 - SDL:2023/12/15 19:01:31 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\windows\System32\drivers\winusb.sys [139264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:04 A . (.Mellanox - Kernel WinVerbs.) -- C:\windows\System32\drivers\winverbs.sys [74096] =>.Microsoft® O58 - SDL:2022/06/18 06:33:52 A . (.HP - HP Wireless Button Driver.) -- C:\windows\System32\drivers\WirelessButtonDriver64.sys [40104] =>.HP Inc.® O58 - SDL:2022/05/07 06:19:05 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\windows\System32\drivers\wmiacpi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:30 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\windows\System32\drivers\wmilib.sys [58704] =>.Microsoft® O58 - SDL:2023/12/15 19:02:04 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\windows\System32\drivers\wof.sys [284128] =>.Microsoft® O58 - SDL:2022/05/07 07:10:26 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\windows\System32\drivers\WpdUpFltr.sys [71000] =>.Microsoft® O58 - SDL:2022/05/07 06:19:30 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\windows\System32\drivers\WppRecorder.sys [87384] =>.Microsoft® O58 - SDL:2022/05/07 06:19:29 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\windows\System32\drivers\ws2ifsl.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:03:36 A . (.Microsoft Corporation - WTD Driver.) -- C:\windows\System32\drivers\wtd.sys [128496] =>.Microsoft® O58 - SDL:2023/12/15 19:01:49 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\windows\System32\drivers\WUDFPf.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:49 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\windows\System32\drivers\WUDFRd.sys [352256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:33 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\windows\System32\drivers\xboxgip.sys [401408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:00:33 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\windows\System32\drivers\xinputhid.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:25 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\windows\System32\win32k.sys [692224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:21 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\windows\System32\win32kbase.sys [3198976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:25 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\windows\System32\win32kfull.sys [3817472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/05/07 06:19:23 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\windows\System32\win32kns.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2023/12/15 19:01:25 A . (.Microsoft Corporation - Win32k temporary session global driver.) -- C:\windows\System32\win32ksgd.sys [49152] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\windows\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\windows\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 7s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (51) - 2s O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\windows\System32\srvsvc.dll [344064] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1376256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1531904] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [843776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [53248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [180224] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [122880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [811008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [245760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [598016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [102400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2064384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1662976] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [434176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [114688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1044480] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1191936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1040384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1826816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [86016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [241664] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [135168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1097728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [512000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [98304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [720504] =>.Microsoft® O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [339968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [130528] =>.Microsoft® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1388544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [270336] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [143360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1067480] =>.Microsoft® O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [1253376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [266240] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1392640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [102400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [315392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2908160] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [618496] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [536576] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [315392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [913408] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [188416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [315392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [131072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [425984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [241664] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [241664] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [643072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hns (hns) . (.Microsoft Corporation - Service de réseau hôte.) -- C:\Windows\System32\HostNetSvc.dll [4263936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: nvagent (nvagent) . (.Microsoft Corporation - Agent de virtualisation de réseau..) -- C:\Windows\System32\NvAgent.dll [66912] =>.Microsoft® ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (48) - 4s O87 - FAEL: "{7872ADAB-0BEF-4209-B4C0-782590CB2CCF}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{B72E77A2-4C78-4435-AFDB-8B1CBFDBA1EC}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{27EE342E-35AD-4147-807E-972D1A15780F}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{33327D00-7124-4335-9BC9-F685672F2377}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{E6803BBA-DF64-4451-8857-6A95271AC4DB}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{29B5A7E6-62C0-4E37-8399-CF4E56820FB3}" [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{132A50C4-29E1-48E4-8488-2F56F0B9DC85}" [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{E53052C0-7918-474F-9FAD-F886AC091459}" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{AF844F66-0323-4A39-A580-6CCDE52BBFD1}" [Out-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{B71FD687-8E2D-4833-9485-C19E9AE2D8C7}" [Out-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB® O87 - FAEL: "{AF686F3F-E234-4A8A-B4F0-C8FB52EAE7A8}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{8B4264AD-CCE1-4EA2-8677-E3E18F5528AB}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{0C9EA1C3-5B82-4F7B-BE23-EA221F0C87B1}" [In-None-P6-TRUE] .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp.® O87 - FAEL: "{02B3224E-53E5-4549-884A-55D6BA9E6856}" [In-None-P17-TRUE] .(.Valve Corporation - Steam.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp.® O87 - FAEL: "{CE684B81-4A9D-47DB-9A75-13F9893A95EC}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve Corp.® O87 - FAEL: "{C22B2F0E-0759-4C8A-AF63-C099191CCBDC}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve Corp.® O87 - FAEL: "{76F1C4EB-BEF9-4900-B9FA-EA39D0F183B6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe =>.Valve Corp.® O87 - FAEL: "{D8EDA515-FE8E-474A-89BC-BC9FB898AD66}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe =>.Valve Corp.® O87 - FAEL: "TCP Query User{10178430-A937-4A9A-9B34-270F92264C42}C:\users\eminc\desktop\helloneighbor-alpha 2\helloneighbor_alpha2\helloneighborreborn\binaries\win64\helloneighborreborn.exe" [In-None-P6-TRUE] .(...) -- C:\users\eminc\desktop\helloneighbor-alpha 2\helloneighbor_alpha2\helloneighborreborn\binaries\win64\helloneighborreborn.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{5A3A1BAB-DD12-47C7-A1FB-08DFA2C3D166}C:\users\eminc\desktop\helloneighbor-alpha 2\helloneighbor_alpha2\helloneighborreborn\binaries\win64\helloneighborreborn.exe" [In-None-P17-TRUE] .(...) -- C:\users\eminc\desktop\helloneighbor-alpha 2\helloneighbor_alpha2\helloneighborreborn\binaries\win64\helloneighborreborn.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{8C2483E1-56A9-42BB-8641-ECB9A42D1F65}" [In-None-P17-TRUE] .(...) -- C:\users\eminc\desktop\helloneighbor-alpha 2\helloneighbor_alpha2\helloneighborreborn\binaries\win64\helloneighborreborn.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{989B7CF7-A546-4A39-AB5E-9620B9839664}" [In-None-P6-TRUE] .(...) -- C:\users\eminc\desktop\helloneighbor-alpha 2\helloneighbor_alpha2\helloneighborreborn\binaries\win64\helloneighborreborn.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{8985A1EA-E8B8-492D-8C10-BD43F9F4BD92}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{E626D416-E864-41D9-B27B-0AB27E0FAF73}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{B6BF042A-0B0A-4E01-8AD4-CC637A044DDF}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{121AE43C-CB1C-4868-B590-B4F6AE31AF6F}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "TCP Query User{0EE17AE4-B265-4D4E-813E-F60103E3A468}C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe" [In-None-P6-TRUE] .(...) -- C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{7D015811-37BB-41A8-B1A5-A55C7B494F57}C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe" [In-None-P17-TRUE] .(...) -- C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{DA15141E-558E-403A-AB01-9C7B8C06F357}C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe" [In-None-P6-TRUE] .(...) -- C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{0D43443D-DEAF-49AC-9D03-E0B99320F128}C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe" [In-None-P17-TRUE] .(...) -- C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{79E26000-4A1F-423D-BCA7-BE9B6916D402}" [In-None-P6-TRUE] .(...) -- C:\Users\eminc\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{52F768DE-44A5-457A-B495-3836BD65003C}" [In-None-P17-TRUE] .(...) -- C:\Users\eminc\AppData\Roaming\uTorrent Web\utweb.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0E178224-8E27-41E4-A9E9-FB0D9B6AF99C}" [In-None-P17-TRUE] .(.Disc Soft FZE LLC - Disc Soft Bus Service Lite.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe {73098091AB520B92B7825CB8493B55DC}. O87 - FAEL: "{3384EB0A-919A-4979-8424-40B4720AEF39}" [Out-None-P17-TRUE] .(.Disc Soft FZE LLC - Disc Soft Bus Service Lite.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe {73098091AB520B92B7825CB8493B55DC}. O87 - FAEL: "{044C058A-B08B-405A-B9CE-BD57F8749E3D}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O87 - FAEL: "{CD519744-EAA3-4512-9B9F-C2EB1E9466FC}" [In-None-P17-TRUE] .(.Electronic Arts - EA Background Service.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{A6B37DD8-57B4-427B-9276-FEF8C4ACE4DE}" [Out-None-P17-TRUE] .(.Electronic Arts - EA Background Service.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{1B64C400-A56A-45D8-9D28-B2229BDD1BC8}" [In-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{0FDB9DFF-3313-48E0-B1B0-43FB3EC5480B}" [Out-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{0E10670D-1358-4BE3-8A32-BF82A00712D2}" [In-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{4998DC23-A1C3-4AF1-AF8E-5941E76B53F6}" [Out-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{1FECDB31-14A1-4196-99FD-D002DC297FF7}" [In-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{275AB20A-3218-43D1-984B-D41F786609F3}" [Out-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{FDEFF1C7-E3DB-4241-A2E5-63B23DA43FD1}" [In-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{6F56485A-ACD7-4B84-B8E3-FABECD4F57C1}" [Out-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{F0EC063D-D65E-42BF-B127-D95965C3B484}" [Out-None-P17-TRUE] .(.Electronic Arts - EA.) -- C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{C5534BD1-6B62-4668-A30F-3EAF9B8EFE31}" [In-None-P6-TRUE] .(.Electronic Arts Inc. - The Sims™ 4.) -- C:\Program Files\EA Games\The Sims 4\Game\Bin\TS4_x64.exe =>.Electronic Arts, Inc.® O87 - FAEL: "{B135B2AE-2155-4BB9-AAC2-5EEF2387E8B6}" [In-None-P17-TRUE] .(.Electronic Arts Inc. - The Sims™ 4.) -- C:\Program Files\EA Games\The Sims 4\Game\Bin\TS4_x64.exe =>.Electronic Arts, Inc.® ---\\ CODES PRODUITS LOGICIELS (22) - 1s O90 - PUC: "00006109C80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: "00006109C800C0400100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00006109E70000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1BAD2218D4DE6763BBA0AC63186945E3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "27DD5200959A5B540A3AE7EF1BA50805" [HKLM] . (.Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532.) =>.Microsoft Corporation O90 - PUC: "2C991A524B8707D4EAD017DBE207AF8F" [HKLM] . (.Epic Games Launcher.) -- C:\windows\Installer\{25A199C2-78B4-4D70-AE0D-71BD2E70FAF8}\Installer.ico =>.Epic Games O90 - PUC: "2D248857835180048A3E666FA560C125" [HKLM] . (.Epic Online Services.) -- C:\windows\Installer\{758842D2-1538-4008-A8E3-66F65A061C52}\Installer.ico O90 - PUC: "3FA6B2F1062C666895053EEFBD8C156D" [HKLM] . (.Microsoft GameInput.) =>.Microsoft Corporation O90 - PUC: "4396FC35D89A48D31964CFE4FDD36514" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "499C5C9F9B6F57D43B7EDA108B04379E" [HKLM] . (.Epic Games Launcher Prerequisites (x64).) -- C:\windows\Installer\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}\UnrealEngineLauncher.ico =>.Legitimate O90 - PUC: "5802262C2DBA5E94A89B3D6D6A240C19" [HKLM] . (.EA app.) -- C:\windows\Installer\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}\ProductIcon.ico O90 - PUC: "5E3C9B5EC98822F49A954F8B77D98714" [HKLM] . (.ExpressVPN.) -- C:\windows\Installer\{E5B9C3E5-889C-4F22-A959-F4B8779D7841}\app_icon.ico =>.ExpressVPN O90 - PUC: "AB297010A1550CA37AFEF0BA14653C28" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "BAC95C2C6678DBA48AFE11153AC6145E" [HKLM] . (.Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532.) =>.Microsoft Corporation O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "D169104D02A37CA349B316935DDB94A0" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664.) =>.Microsoft Corporation O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "E116DF6CEFE7C8840A0E79C490FE4637" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: "E4E77F3771A55E645ACFA860017427F5" [HKLM] . (.Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532.) =>.Microsoft Corporation O90 - PUC: "F2E91D5D9817EF24183029DCF14A752C" [HKLM] . (.Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532.) =>.Microsoft Corporation ---\\ PACKAGES WINDOWS INSTALLER (5) - 2s [MD5.1B247E43C03F4A38C71D2E99C2BD1A21] [WIS][2022/08/16 03:29:12] (.ExpressVPN - ExpressVPN.) -- C:\windows\Installer\230a4.msi [29872128] =>.ExpressVPN [MD5.E8FB1C5C164CCFAF4B11712EC75F0314] [WIS][2023/12/13 12:38:16] (.Epic Games, Inc. - Epic Games Launcher.) -- C:\windows\Installer\39a19c.msi [158863360] =>.Epic Games, Inc. [MD5.F088A1FFF8C5F4087D3EFCF6FB9AE66A] [WIS][2022/03/16 12:33:20] (.Epic Games, Inc. - Epic Online Services.) -- C:\windows\Installer\39a1a0.msi [114073600] =>.Epic Games, Inc. [MD5.4D5C9A709F332236559D3BCB27BB81B1] [WIS][2020/06/18 11:28:42] (.Epic Games, Inc. - Epic Games Launcher Prerequisites (x64).) -- C:\windows\Installer\39a1a4.msi [11530240] =>.Epic Games, Inc. [MD5.0E71C9FAF93B073FAF5F9F9C50ED1EEA] [WIS][2023/12/23 13:24:09] (.Electronic Arts - EA app.) -- C:\windows\Installer\9ab1f0.msi [262533120] =>.Electronic Arts ---\\ FEATURE CONTROL. (142) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:WCTestSimulator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HPWarrantyChecker.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (180) - 27s Application.Error: CertEnroll (25) ~Numéro: 2617 ~Date: 12/23/2023 10:20:50 PM ~ID: 86 ~Description: WORKGROUP\RADEON$https://AMD-KeyId-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net/templates/Aik/scepGetCACapsGetCACaps: Not Found{"Message":"The authority \"amd-keyid-52fb59e29aa83a962fb9eef0fe5b4811de6b751e.microsoftaik.azure.net\" ~Suggestion: Aucune Application.Error: Application Hang (4) ~Numéro: 2547 ~Date: 12/23/2023 02:22:54 PM ~ID: 1002 ~Description: Le programme TS4_x64.exe version 1.103.315.1020 a cessé d'interagir avec Windows et a été fermé. Pour savoir si vous disposez de plus d'informations sur le problème, consultez l'historique des problèmes dans le panneau de configuration Sécurité et ma ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: Firefox Default Browser Agent (1) ~Numéro: 2512 ~Date: 12/23/2023 01:26:40 PM ~ID: 2 ~Description: 0x80070002 in RegistryDeleteValue:323 Application.Error: Microsoft-Windows-AppModel-State (23) ~Numéro: 2242 ~Date: 12/19/2023 08:59:02 PM ~ID: 13 ~Description: C:\Users\eminc\AppData\Local\Publishers\8wekyb3d8bbwe\TeamsSharedConfigMicrosoftTeams_8wekyb3d8bbwe-2147024894 Application.Warning: Microsoft-Windows-Perflib (6) ~Numéro: 2077 ~Date: 12/18/2023 10:41:50 PM ~ID: 1008 ~Description: La procédure d'ouverture pour le service « WmiApRpl » dans la DLL « C:\windows\system32\wbem\wmiaprpl.dll » a échoué avec le code d'erreur 21. Les données de performances pour ce service ne sont pas disponibles. ~Suggestion: Rechercher le concerné et décocher «Compteurs de performances activés». Application.Error: Application Error (8) ~Numéro: 2048 ~Date: 12/18/2023 07:31:18 PM ~ID: 1000 ~Description: Nom de l’application défaillante EpicGamesLauncher.exe, version : 15.19.0.0, horodatage : 0x657719d8 Nom du module défaillant : ntdll.dll, version : 10.0.22621.2506, horodatage : 0xbced4b82 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ~Suggestion: Réparer ou réinstaller l'application. Application.Error: MsiInstaller (1) ~Numéro: 1847 ~Date: 12/17/2023 08:20:29 PM ~ID: 11406 ~Description: Product: Avast Update Helper -- Error 1406. Could not write value MsiStubRun to key \SOFTWARE\AVAST Software\Browser\Update. System error . Verify that you have sufficient access to that key, or contact your support personnel. Application.Error: Microsoft-Windows-User Profiles Service (2) ~Numéro: 1842 ~Date: 12/17/2023 08:20:23 PM ~ID: 1502 ~Description: Windows ne peut pas charger le profil stocké localement. Les causes possibles de cette erreur incluent des droits de sécurité insuffisants ou un profil local endommagé. DÉTAIL - Le processus ne peut pas accéder au fichier car ce fichier est utilis Application.Warning: Wlclntfy (1) ~Numéro: 1666 ~Date: 12/17/2023 01:56:49 PM ~ID: 6004 ~Description: Échec de l’abonné aux notifications Winlogon lors d’un événement de notification critique. Application.Warning: Microsoft-Windows-WMI (6) ~Numéro: 1493 ~Date: 12/17/2023 01:55:15 PM ~ID: 63 ~Description: Un fournisseur, DMWmiBridgeProv1, a été inscrit dans l’espace de noms Windows Management Instrumentation root\cimv2\mdm\dmmap, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Warning: EventSystem (3) ~Numéro: 1389 ~Date: 12/16/2023 08:15:24 PM ~ID: 4627 ~Description: 800705b4DisplayLock{D5978630-5B9F-11D1-8DD2-00AA004ABD5E}SENS Logon Subscription180 Application.Error: .NET Runtime (1) ~Numéro: 966 ~Date: 12/13/2023 07:23:26 PM ~ID: 1026 ~Description: Application : rsVPNSvc.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : System.NullReferenceException à Reason.rsEngine.VPN+d_ ~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif Application.Warning: Microsoft-Windows-RestartManager (17) ~Numéro: 918 ~Date: 12/13/2023 06:28:14 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationService.exe » (pid 29716) - 1. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Warning: Steam Client Service (1) ~Numéro: 611 ~Date: 12/12/2023 12:49:50 PM ~Description: Warning: Updated file "SteamService.exe" from version 0x0007000f00030048 to version 0x000800380026003f. Application.Error: Microsoft Office 16 (4) ~Numéro: 583 ~Date: 12/11/2023 07:46:18 PM ~ID: 2011 ~Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {7AC91F56-D46A-4031-949D-202716925621} Application.Error: VSS (6) ~Numéro: 90 ~Date: 12/10/2023 09:47:04 PM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Error: Software Protection Platform Service (5) ~Numéro: 37 ~Date: 12/10/2023 07:45:29 PM ~ID: 8198 ~Description: Échec de l’activation des licences (slui.exe) avec le code d’erreur suivant : hr=0x80072EE7 Arguments de la ligne de commande : RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=1d873132- Application.Warning: Windows Search Service (1) ~Numéro: 9 ~Date: 12/10/2023 07:39:24 PM ~Description: Le service Windows Search démarre et tente de supprimer l’ancien index de recherche {Raison : Réinitialisation totale de l’index}. System.Warning: DCOM (312) ~Numéro: 5005 ~Date: 12/23/2023 10:23:50 PM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}RadeonemincS-1-5-21-1781959742-1069508540-1406885361-1001LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Service Control Manager (135) ~Numéro: 4990 ~Date: 12/23/2023 10:20:51 PM ~ID: 7034 ~Description: Le service GameInput Service s’est terminé de façon inattendue pour la 6ème fois. System.Warning: LsaSrv (150) ~Numéro: 4933 ~Date: 12/23/2023 10:20:43 PM ~ID: 6155 ~Description: Le package LSA n’est pas signé comme prévu. Cela peut provoquer un comportement inattendu avec Credential Guard. PackageName: msv1_0 System.Warning: Microsoft-Windows-DNS-Client (11) ~Numéro: 4843 ~Date: 12/23/2023 10:01:56 PM ~ID: 1014 ~Description: La résolution de noms pour le nom catalog.gamepass.com expirée après qu’aucun des serveurs DNS configurés n’a répondu. PID client 6420. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: Win32k (209) ~Numéro: 4842 ~Date: 12/23/2023 10:00:12 PM ~ID: 701 ~Description: Le Gestionnaire d’alimentation n’a pas demandé la suppression de toutes les entrées (INPUT_SUPPRESS_REQUEST=0) System.Warning: User32 (1) ~Numéro: 4734 ~Date: 12/23/2023 02:55:53 PM ~ID: 1073 ~Description: La tentative par l’utilisateur RADEON\eminc de redémarrer/arrêter l’ordinateur RADEON a échoué System.Warning: Microsoft-Windows-FilterManager (17) ~Numéro: 3599 ~Date: 12/18/2023 07:18:07 PM ~ID: 11 ~Description: Le filtre de système de fichiers 'rsKernelEngine' (version 10.0, 2021-03-25T15:45:54.0000000Z) ne prend pas en charge le contournement d’E/S. Fonctionnalités prises en charge : 0x7. System.Error: volsnap (1) ~Numéro: 3552 ~Date: 12/18/2023 07:13:40 PM ~ID: 36 ~Description: Les clichés instantanés du volume C: ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. System.Warning: Microsoft-Windows-Time-Service (4) ~Numéro: 3417 ~Date: 12/18/2023 12:06:17 PM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "time.windows.com,0x9". NtpClient réessaiera dans 15 minutes, puis doublera l'intervalle d'attente pour les tentatives suiva ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Error: Microsoft-Windows-WindowsUpdateClient (8) ~Numéro: 3131 ~Date: 12/17/2023 02:07:52 PM ~ID: 20 ~Description: 0x8024200bRealtek Semiconductor Corp. - Extension - 6.0.9567.1{d84e6147-558c-40ed-9b62-9c58daefd163}1{8b24b027-1dee-babb-9a95-3517dfb9c552} ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: Microsoft-Windows-Kernel-PnP (1) ~Numéro: 3121 ~Date: 12/17/2023 02:07:43 PM ~ID: 225 ~Description: L’application \Device\HarddiskVolume3\Windows\System32\svchost.exe avec l’ID de processus 3104 arrêté la suppression ou l’éjection pour l’appareil HDAUDIO\FUNC_01&VEN_10EC&DEV_0236&SUBSYS_103C887A&REV_1000\5&714627c&0&0001. Ligne de commande processu System.Error: EventLog (1) ~Numéro: 1187 ~Date: 12/13/2023 11:35:33 AM ~ID: 6008 ~Description: L’arrêt système précédant à 20:48:11 le ‎12/‎12/‎2023 n’était pas prévu. System.Error: Microsoft-Windows-Kernel-Boot (1) ~Numéro: 1172 ~Date: 12/13/2023 11:35:20 AM ~ID: 29 ~Description: 3221225684Une erreur irrécupérable s’est produite pendant le traitement des données de restauration. System.Warning: BTHUSB (6) ~Numéro: 905 ~Date: 12/12/2023 05:11:30 PM ~ID: 34 ~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est 0x2491f7fffff, a reçu 0xffffffff. La fonctionnalité du rôle périph System.Warning: Microsoft-Windows-Bits-Client (1) ~Numéro: 147 ~Date: 12/10/2023 07:40:36 PM ~ID: 16385 ~Description: Lors de l’annulation de la tâche « PreSignInSettingsConfigJSON », le service BITS n’a pas pu supprimer certains fichiers temporaires. Pour récupérer de l’espace disque, supprimez les fichiers listés ci-dessous. L’ID de tâche était {02c5b1bd-5267-4940 System.Error: volmgr (1) ~Numéro: 33 ~Date: 12/10/2023 07:38:33 PM ~ID: 46 ~Description: L'initialisation de l'image mémoire après incident a échoué. ---\\ SCAN ADDITIONNEL (155) - 11s ADS Présent [:MBAM.Zone.Identifier] C:\Users\eminc\Downloads\adwcleaner_8.4.0.exe:MBAM.Zone.Identifier =>.SUP.FileADS ADS Présent [:MBAM.Zone.Identifier] C:\Users\eminc\Downloads\EAappInstaller.exe:MBAM.Zone.Identifier =>.SUP.FileADS ADS Présent [:MBAM.Zone.Identifier] C:\Users\eminc\Downloads\ZHPDiag3.exe:MBAM.Zone.Identifier =>.SUP.FileADS ADS Présent [:MBAM.Zone.Identifier] C:\Users\eminc\Downloads\ZHPSuite.exe:MBAM.Zone.Identifier =>.SUP.FileADS [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\Rockstar-Games-Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\Rockstar-Games-Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Rockstar Games\Launcher\Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Rockstar Games\Launcher\Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\135576-gta-sa-exe-1-0-us-original-version\135576-gta-sa-exe-1-0-us-original-version.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\135576-gta-sa-exe-1-0-us-original-version\135576-gta-sa-exe-1-0-us-original-version.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\7zSC4D299F6\setup-stub.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\7zSC4D299F6\setup-stub.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WebAdvisor\uihost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WebAdvisor\uihost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\gta_sa.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\Rar$EXa12208.4640\pcsx2-qt.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\Rar$EXa19660.14588\pcsx2-qt.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\GTA San Andreas - (Www.ApunKaGames.Com).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\GTA San Andreas - (Www.ApunKaGames.Com).exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\GTA San Andreas - (Www.ApunKaGames.Com)\Game\uha.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\gtasanandreas\GTASanAndreas (1)\gta_sa.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\39357-crack-for-gta-4\RUS_GTAIV_EFLC.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\39357-crack-for-gta-4\RUS_GTAIV_EFLC.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\SquirrelTemp\Update.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\SquirrelTemp\Update.exe.ApplicationCompany =>.SUP.Orphan.MUICache C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\Discord.exe =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\Discord.exe.FriendlyAppName =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\Discord.exe.ApplicationCompany =>.SUP.Discord [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\HelloNeighbor-Alpha 2\HelloNeighbor_Alpha2\HelloNeighborReborn\Binaries\Win64\HelloNeighborReborn.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\HelloNeighbor-Alpha 2\HelloNeighbor_Alpha2\HelloNeighborReborn\Binaries\Win64\HelloNeighborReborn.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\grand-theft-auto-iv\GTAIV_Patch.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\Hello Neighbor.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\Godot_v4.2.1-stable_win64.exe\Godot_v4.2.1-stable_win64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\Godot_v4.2.1-stable_win64.exe\Godot_v4.2.1-stable_win64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\ReasonLabs\Common\Client\v1.2.0\rsAppUI.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\ReasonLabs\Common\Client\v1.2.0\rsAppUI.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\BSLauncher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\Voice.ai-Downloader-alphaver-9add6df5e30c449d81c63a5585fb1edc.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Voice.ai\VoiceAI-Installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\IXP000.TMP\UniversalInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\IXP000.TMP\UniversalInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\TeraBox_sl_b_1.26.0.2.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\TeraBox_sl_b_1.26.0.2.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\DT_INSTALL_TMP\DTInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\DT_INSTALL_TMP\DTInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Avast\setup\instup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Avast\setup\instup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Browser\AvastBrowserUninstall.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Roaming\uTorrent Web\utweb.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Roaming\uTorrent Web\utweb.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\mc-inst-uihost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\mc-inst-uihost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\extnhost\mc-extn-browserhost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\extnhost\mc-extn-browserhost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\vpn\Bins\x64\tapinstall.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\vpn\Bins\x64\tapinstall.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsuA090.tmp\RAVEndPointProtection-installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsuA090.tmp\RAVEndPointProtection-installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\TotalAV_Setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\MBSetup-090357.090357.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\MBSetup-090357.090357.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{61779528-CBD3-48D8-882E-2E6D627C00CA}\CCSetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{61779528-CBD3-48D8-882E-2E6D627C00CA}\CCSetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\OneDrive\Desktop\ZHPCleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\OneDrive\Desktop\ZHPCleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsn7247.tmp\RAVVPN-installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsn7247.tmp\RAVVPN-installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsg9D22.tmp\SaferWeb-installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsg9D22.tmp\SaferWeb-installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{80DD1B88-8FFA-4FAA-91DA-2594DEDC4CE0}\.cr\EAappInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{80DD1B88-8FFA-4FAA-91DA-2594DEDC4CE0}\.cr\EAappInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\HP\HP Support Framework\Modules\HPDeviceCheck\HPDeviceCheck.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\Rockstar-Games-Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\Rockstar-Games-Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Rockstar Games\Launcher\Launcher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Rockstar Games\Launcher\Launcher.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\135576-gta-sa-exe-1-0-us-original-version\135576-gta-sa-exe-1-0-us-original-version.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\135576-gta-sa-exe-1-0-us-original-version\135576-gta-sa-exe-1-0-us-original-version.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\7zSC4D299F6\setup-stub.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\7zSC4D299F6\setup-stub.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WebAdvisor\uihost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WebAdvisor\uihost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\gta_sa.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\Rar$EXa12208.4640\pcsx2-qt.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\Rar$EXa19660.14588\pcsx2-qt.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\GTA San Andreas - (Www.ApunKaGames.Com).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\GTA San Andreas - (Www.ApunKaGames.Com).exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\GTA San Andreas - (Www.ApunKaGames.Com)\Game\uha.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\gtasanandreas\GTASanAndreas (1)\gta_sa.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\39357-crack-for-gta-4\RUS_GTAIV_EFLC.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\39357-crack-for-gta-4\RUS_GTAIV_EFLC.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\SquirrelTemp\Update.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\SquirrelTemp\Update.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\Discord.exe.FriendlyAppName =>.SUP.Discord [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\Discord.exe.ApplicationCompany =>.SUP.Discord [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\HelloNeighbor-Alpha 2\HelloNeighbor_Alpha2\HelloNeighborReborn\Binaries\Win64\HelloNeighborReborn.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\HelloNeighbor-Alpha 2\HelloNeighbor_Alpha2\HelloNeighborReborn\Binaries\Win64\HelloNeighborReborn.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\grand-theft-auto-iv\GTAIV_Patch.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\Hello Neighbor.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\Godot_v4.2.1-stable_win64.exe\Godot_v4.2.1-stable_win64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Desktop\Godot_v4.2.1-stable_win64.exe\Godot_v4.2.1-stable_win64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\ReasonLabs\Common\Client\v1.2.0\rsAppUI.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\ReasonLabs\Common\Client\v1.2.0\rsAppUI.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\BSLauncher.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\Voice.ai-Downloader-alphaver-9add6df5e30c449d81c63a5585fb1edc.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Voice.ai\VoiceAI-Installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\IXP000.TMP\UniversalInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\IXP000.TMP\UniversalInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\TeraBox_sl_b_1.26.0.2.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\TeraBox_sl_b_1.26.0.2.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxrender.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\users\eminc\appdata\roaming\terabox\teraboxhost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\DT_INSTALL_TMP\DTInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\DT_INSTALL_TMP\DTInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Avast\setup\instup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Avast\setup\instup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Browser\AvastBrowserUninstall.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Roaming\uTorrent Web\utweb.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Roaming\uTorrent Web\utweb.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\autorun.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\mc-inst-uihost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\mc-inst-uihost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\extnhost\mc-extn-browserhost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\extnhost\mc-extn-browserhost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\vpn\Bins\x64\tapinstall.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\McAfee\WPS\1.13.209.1\vpn\Bins\x64\tapinstall.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsuA090.tmp\RAVEndPointProtection-installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsuA090.tmp\RAVEndPointProtection-installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\TotalAV_Setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\MBSetup-090357.090357.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\Downloads\MBSetup-090357.090357.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{61779528-CBD3-48D8-882E-2E6D627C00CA}\CCSetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{61779528-CBD3-48D8-882E-2E6D627C00CA}\CCSetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\OneDrive\Desktop\ZHPCleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\OneDrive\Desktop\ZHPCleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsn7247.tmp\RAVVPN-installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsn7247.tmp\RAVVPN-installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsg9D22.tmp\SaferWeb-installer.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\nsg9D22.tmp\SaferWeb-installer.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{80DD1B88-8FFA-4FAA-91DA-2594DEDC4CE0}\.cr\EAappInstaller.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\eminc\AppData\Local\Temp\{80DD1B88-8FFA-4FAA-91DA-2594DEDC4CE0}\.cr\EAappInstaller.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-1781959742-1069508540-1406885361-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\HP\HP Support Framework\Modules\HPDeviceCheck\HPDeviceCheck.exe.FriendlyAppName =>.Unsigned ---\\ RECAPITULATIF DES ELEMENTS TROUVES (6) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/2018/01/04/ads-alternate-data-stream/ =>.SUP.FileADS https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord ---\\ NUMEROS DE SÉRIE [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_scanresults.2.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [19/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_ELXR82.1.0.12.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_fr.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_ge.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_expt-58_sp.1.0.14.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_drawer.2.0.12.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/12/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_popup.2.0.13.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [23/12/2023] (.Malwarebytes Inc..) - C:\windows\System32\DRIVERS\farflt11.sys =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [23/12/2023] (.Malwarebytes Inc..) - C:\windows\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc. [01993E38970DE6088DE6B6CB39BBEE24] [06/12/2023] (.Cisco WebEx LLC.) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_voice-1\discord_voice\openh264-2.2.0-win32.dll =>.Cisco WebEx LLC [028AA6E7B516C0D155F15D6290A430E3] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_modules-1\discord_modules\23a77dbfc4854e\2\discord_game_sdk_x64.dll =>.SUP.Discord [028AA6E7B516C0D155F15D6290A430E3] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_modules-1\discord_modules\23a77dbfc4854e\2\discord_game_sdk_x86.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\Discord.exe =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\ffmpeg.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\libEGL.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\libGLESv2.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_modules-1\discord_modules\23a77dbfc4854e\discord_aegis_x64.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_modules-1\discord_modules\23a77dbfc4854e\discord_aegis_x86.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_voice-1\discord_voice\capture_helper.exe =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_voice-1\discord_voice\gpu_encoder_helper.exe =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\modules\discord_voice-1\discord_voice\mediapipe.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\vk_swiftshader.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\app-1.0.9027\vulkan-1.dll =>.SUP.Discord [02D6AAEAB3924859805EBB529E314DE0] [12/12/2023] (.Discord Inc..) - C:\Users\eminc\AppData\Local\Discord\Update.exe =>.SUP.Discord [02E6500C3011D7A51438A87A50E35E9A] [08/03/2023] (.Sound Research Corporation.) - C:\windows\System32\SECOMN64.exe =>.Not verified [0339022CF98DDA042A02961EE062E49C] [08/03/2023] (.Realtek Semiconductor Corp..) - C:\windows\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [0339022CF98DDA042A02961EE062E49C] [27/03/2023] (.Realtek Semiconductor Corp..) - C:\windows\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp. [0339022CF98DDA042A02961EE062E49C] [31/01/2023] (.Realtek Semiconductor Corp..) - C:\Windows\RtkWiFiManServ.exe =>.Realtek Semiconductor Corp. [0339022CF98DDA042A02961EE062E49C] [31/01/2023] (.Realtek Semiconductor Corp..) - C:\windows\System32\drivers\rtwlane.sys =>.Realtek Semiconductor Corp. [040869E6A2246A3AF31F1F85ADDF274F] [13/12/2023] (.HP Inc..) - C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.39.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe =>.HP Inc. [040869E6A2246A3AF31F1F85ADDF274F] [13/12/2023] (.HP Inc..) - C:\System.sav\Util\HPSEU\HpseuHostLauncher.exe =>.HP Inc. [047B4EA7D4E99243AE4DD041C7308866] [24/06/2022] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys =>.HP Inc. [048B08399EC703623C72CD2077AD65D9] [03/10/2023] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.Not verified [048B08399EC703623C72CD2077AD65D9] [03/10/2023] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.Not verified [04B90E0D856DC8DD88A2357AD15D0FAF] [09/08/2023] (.WildTangent, Inc..) - C:\Program Files (x86)\WildGames\Uninstall.exe =>.WildTangent, Inc. [058215015685093C3720A5A9504414DF] [23/12/2023] (.HP Inc..) - C:\Program Files\WindowsApps\AD2F1837.myHP_28.52349.1300.0_x64__v10z8vjag6ke6\HP.myHP.exe =>.HP Inc. [058215015685093C3720A5A9504414DF] [23/12/2023] (.HP Inc..) - C:\Program Files\WindowsApps\AD2F1837.myHP_28.52349.1300.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe =>.HP Inc. [058215015685093C3720A5A9504414DF] [25/10/2023] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\AppHelperCap.exe =>.HP Inc. [058215015685093C3720A5A9504414DF] [25/10/2023] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\DiagsCap.exe =>.HP Inc. [058215015685093C3720A5A9504414DF] [25/10/2023] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\NetworkCap.exe =>.HP Inc. [058215015685093C3720A5A9504414DF] [25/10/2023] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_30f448e100bbebf7\x64\SysInfoCap.exe =>.HP Inc. [063E35B9A5D6657C9DFC296AA452AA5B] [16/08/2022] (.Express VPN International Ltd..) - C:\windows\System32\drivers\expressvpn-tun.sys =>.Express VPN International Ltd. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [08/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe =>.Electronic Arts, Inc. [0671352DC4C103B70AE725E954486374] [23/12/2023] (.Electronic Arts, Inc..) - C:\ProgramData\Package Cache\{20a8704d-f282-4d39-b57c-177ec90557be}\EAappInstaller.exe =>.Electronic Arts, Inc. [0689B3BCEB4409890A32D71976B132A4] [08/12/2023] (.Valve Corp..) - C:\Program Files (x86)\Common Files\Steam\steamservice.exe =>.Valve Corp. [0689B3BCEB4409890A32D71976B132A4] [08/12/2023] (.Valve Corp..) - C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve Corp. [0689B3BCEB4409890A32D71976B132A4] [08/12/2023] (.Valve Corp..) - C:\Program Files (x86)\Steam\steam.exe =>.Valve Corp. [0689B3BCEB4409890A32D71976B132A4] [15/12/2023] (.Valve Corp..) - C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\game\bin\win64\cs2.exe =>.Valve Corp. [0689B3BCEB4409890A32D71976B132A4] [22/03/2022] (.Valve Corp..) - C:\Program Files (x86)\Steam\uninstall.exe =>.Valve Corp. [06FD09A7228EC7DF1BC3582CFAD4BFF3] [15/08/2022] (.HP Inc..) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe =>.Not verified [06FD09A7228EC7DF1BC3582CFAD4BFF3] [16/08/2022] (.HP Inc..) - C:\Program Files (x86)\InstallShield Installation Information\{6468C4A5-E47E-405F-B675-A70A70983EA6}\setup.exe =>.Not verified [077C2D20443D4B34CFB3B739A08B3B33] [19/12/2023] (.RCS LT, UAB.) - C:\Users\eminc\Downloads\CCSetup.exe =>.Not verified [07A0ED6DDF2FFED5914CCF4CAB68B414] [16/08/2022] (.ExprsVPN LLC.) - C:\Program Files (x86)\ExpressVPN\tap\tapinstall\amd64\tapinstall.exe =>.ExprsVPN LLC [09B56EF42C8C343391AA2D2CE38550E3] [11/10/2023] (.Rainberry Inc.) - C:\Users\eminc\AppData\Roaming\uTorrent Web\Uninstall.exe =>.Not verified [0A3021E0CF305985C1566618DB212BD7] [21/12/2023] (.Opera Norway AS.) - C:\Users\eminc\AppData\Local\Programs\Opera GX\launcher.exe =>.Not verified [0B8F52FAF64C421EABB2275AE148C519] [17/02/2023] (.Realtek Semiconductor Corp..) - C:\windows\System32\drivers\RtkBtfilter.sys =>.Realtek Semiconductor Corp. [0C1CD3EEA47EDDA7A032573B014D0AFD] [23/12/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [23/12/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [23/12/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [23/12/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0C834A23A8F6DA243E24A688741CCB0F] [30/10/2023] (.HP Inc..) - C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll =>.HP Inc. [0D2F2A7563F6DBDF988EDB03FE575933] [07/08/2023] (.Voice AI LLC.) - C:\Program Files\Voice.ai\BsSndRpt.exe =>.Not verified [0D2F2A7563F6DBDF988EDB03FE575933] [16/12/2023] (.Voice AI LLC.) - C:\Program Files\Voice.ai\uninstall.exe =>.Not verified [0D2F2A7563F6DBDF988EDB03FE575933] [20/06/2023] (.Voice AI LLC.) - C:\Windows\System32\DriverStore\FileRepository\voiceaidriver.inf_amd64_214d6aacf9c41414\voiceaidriver.sys =>.Not verified [0D2F2A7563F6DBDF988EDB03FE575933] [27/11/2023] (.Voice AI LLC.) - C:\Program Files\Voice.ai\VoiceAI.exe =>.Not verified [0DD250D6FFC947A3B80CBE85FE014673] [23/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\EA Games\The Sims 4\Game\Bin\TS4_x64.exe =>.Electronic Arts, Inc. [0DFE7BA482F076DB90BCC22B2C487CBD] [03/03/2022] (.Epic Games Inc..) - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe =>.Epic Games Inc. [0DFE7BA482F076DB90BCC22B2C487CBD] [13/12/2023] (.Epic Games Inc..) - C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc. [0DFE7BA482F076DB90BCC22B2C487CBD] [13/12/2023] (.Epic Games Inc..) - C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe =>.Epic Games Inc. [0E4418E2DEDE36DD2974C3443AFB5CE5] [10/12/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [10/12/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [10/12/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [19/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.129\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [19/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [22/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.129\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [22/12/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\120.0.6099.129\Installer\setup.exe =>.Google LLC [0EC67729A8C3327B1B23804CE24719BD] [18/06/2022] (.HP Inc..) - C:\windows\System32\drivers\WirelessButtonDriver64.sys =>.HP Inc. [0EC67729A8C3327B1B23804CE24719BD] [23/10/2023] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_2f779d0a8fdf496c\x64\TouchpointAnalyticsClientService.exe =>.HP Inc. [0F69513944CE3B7B8FC11928322A7D99] [18/10/2022] (.ELAN MICROELECTRONICS CORPORATION.) - C:\windows\System32\drivers\ETD.sys =>.Not verified [0F69513944CE3B7B8FC11928322A7D99] [18/10/2022] (.ELAN MICROELECTRONICS CORPORATION.) - C:\windows\System32\drivers\ETDHCF.sys =>.Not verified [0F69513944CE3B7B8FC11928322A7D99] [18/10/2022] (.ELAN MICROELECTRONICS CORPORATION.) - C:\windows\System32\drivers\PTPFilter.sys =>.Not verified [0F69513944CE3B7B8FC11928322A7D99] [18/10/2022] (.ELAN MICROELECTRONICS CORPORATION.) - C:\windows\System32\ETDService.exe =>.Not verified [0F91AC8781452E9478FDB90D5A52336C] [06/09/2023] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_0c755fff65745edd\RtkAudUService64.exe =>.Not verified [0FAB670A61BF4B7DAFD559356B5BCCFF] [10/12/2023] (.Spotify AB.) - C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.226.1187.0_x64__zpdnekdrzrea0\Spotify.exe =>.Spotify AB [10C205FB5267A56A114A2158845A0EBF] [28/07/2022] (.Alcorlink Corp..) - C:\windows\System32\drivers\AmUStorU.sys =>.Alcorlink Corp. [17DF1E696D347A2530B48532] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\windows\System32\drivers\dtlitescsibus.sys =>.AVB Disc Soft, SIA [1885B7E188D8FAFD38A43D48967D7488] [20/04/2023] (.Advanced Micro Devices INC..) - C:\windows\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC. [330000038BF0FCEC2C8F35652C00000000038B] [16/12/2023] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [4034F5C0880036DE88FD5DEF726BF594] [23/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\Common Files\EAInstaller\The Sims 4\Cleanup.exe =>.Electronic Arts, Inc. [4034F5C0880036DE88FD5DEF726BF594] [23/12/2023] (.Electronic Arts, Inc..) - C:\Program Files\EA Games\The Sims 4\__Installer\Cleanup.exe =>.Electronic Arts, Inc. [51029B3B9CB48FA076FA2DA87A91DB42] [13/12/2023] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{43a03b9c-4770-409c-a999-587b60700b63}\LauncherPrereqSetup_x64.exe =>.Epic Games Inc. [5316116217B3747570841A6E24464284] [09/08/2023] (.WildTangent Inc.) - C:\Program Files (x86)\WildGames\Vacation Adventures Park Ranger 11 Collectors Edition\uninstall\uninstaller.exe =>.WildTangent Inc [5316116217B3747570841A6E24464284] [09/08/2023] (.WildTangent Inc.) - C:\Program Files (x86)\WildTangent Games\App\Uninstall.exe =>.WildTangent Inc [5316116217B3747570841A6E24464284] [09/08/2023] (.WildTangent Inc.) - C:\Program Files (x86)\WildTangent Games\ShortcutProvider\uninstaller.exe =>.WildTangent Inc [5316116217B3747570841A6E24464284] [17/02/2022] (.WildTangent Inc.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc [5316116217B3747570841A6E24464284] [23/03/2022] (.WildTangent Inc.) - C:\Program Files (x86)\WildTangent Games\Touchpoints\wildgames\GamesAppFirstRun.exe =>.WildTangent Inc [535091E6CAB13AF393B51EAD0825F627] [10/12/2023] (.Advanced Micro Devices Inc..) - C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [10/12/2023] (.Advanced Micro Devices Inc..) - C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [10/12/2023] (.Advanced Micro Devices Inc..) - C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [10/12/2023] (.Advanced Micro Devices Inc..) - C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\windows\System32\amdfendrsr.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\windows\System32\drivers\amdfendr.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\windows\System32\drivers\amdfendrmgr.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\windows\System32\drivers\amdi2c.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\windows\System32\drivers\AmdMicroPEP.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\windows\System32\drivers\amdpsp.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_dea03ff0fb4183f1\amdacpafd.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_91fe049d7e49fc33\amdacpbus.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\amdkmdag.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\atieclxx.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0387389.inf_amd64_995be970e30b8c79\B385477\atiesrxx.exe =>.Advanced Micro Devices Inc. [5F2EB491801E284312FAC1CD67F32AED] [09/08/2023] (.EXPRSVPN LLC.) - C:\ProgramData\Package Cache\{0ebb04c1-1fe8-4092-98b8-60acd20c184b}\ExpressVPN_10.29.0.16.exe =>.Not verified [5F2EB491801E284312FAC1CD67F32AED] [16/08/2022] (.EXPRSVPN LLC.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe =>.Not verified [5F2EB491801E284312FAC1CD67F32AED] [16/08/2022] (.EXPRSVPN LLC.) - C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe =>.Not verified [5F2EB491801E284312FAC1CD67F32AED] [16/08/2022] (.EXPRSVPN LLC.) - C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe =>.Not verified [5F2EB491801E284312FAC1CD67F32AED] [16/08/2022] (.EXPRSVPN LLC.) - C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe =>.Not verified [73098091AB520B92B7825CB8493B55DC] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.Not verified [73098091AB520B92B7825CB8493B55DC] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Not verified [73098091AB520B92B7825CB8493B55DC] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\Program Files\DAEMON Tools Lite\DTLite.exe =>.Not verified [73098091AB520B92B7825CB8493B55DC] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\Program Files\DAEMON Tools Lite\DTShl64.dll =>.Not verified [73098091AB520B92B7825CB8493B55DC] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\Program Files\DAEMON Tools Lite\uninst.exe =>.Not verified [73098091AB520B92B7825CB8493B55DC] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\Users\eminc\Downloads\DTLite1200-2126.exe =>.Not verified [76CEA6897FE1FB6E06DF03619025CC50] [17/12/2023] (.AVB Disc Soft, SIA.) - C:\windows\System32\drivers\dtliteusbbus.sys =>.Not verified ~ Unselected Options: WR, ~ End of the scan, 8214 items in 02mn33s (2335)(0)