~ ZHPDiag v2024.5.26.17 Par Nicolas Coolman (2024/05/26) ~ Démarre par anton (Administrator) (2024/05/29 13:34:52) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\anton\OneDrive\Bureau\ZHPDiag.txt ~ Rapport: C:\Users\anton\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Demarrage du système: Normal (Normal boot) Windows 11, 64-bit (Build 22631) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (4) - 0s ~ GCIE: Google Chrome v125.0.6422.112 ~ MFIE: Mozilla Firefox 126.0 (x64 fr) ~ MSIE: Internet Explorer v11.1.22621.0 ~ OBIE: Microsoft Edge v125.0.2535.67 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : BKMWW Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (1) - 1s Windows Defender W11 (Activate) (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (18) - 1s ~ Operating System: AMD64 Family 23 Model 160 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 433 GB (88%) free of 487 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 2 ~ Slots Utilisés (Used Slots) : 2 ~ Slots Disponibles (Free Slots) : 0 ~ Type de barrette (FormFactor): 1 ~ Taille (Size) : 4 Go ~ Vitesse (Speed) : 5500 ~ Charge mémoire (Memory Usage) : 52% ~ RAM physique Total (Total Physical) : 7 Go : OK ~ RAM physique Disponible (Available Physical) : 3 Go ~ Total virtuelle (Total Virtual) : 9.86 Go ~ Disponible virtuelle (Available Virtual): 4.99 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: LAURENCEAU ~ User Name: anton ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (5) - 1s ~ Drive C: has 433 GB free of 487 GB (System) ---\\ ETAT DE LA COMMANDE TRIM ~ La commande TRIM est active (NTFS) ~ La commande TRIM est active (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (1) - 0s ~ La technologie SMART n'est pas active sur le disque système ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 3s [MD5.7BE03DCC9E6EEE0F811F680C66CA05E0] - 12/04/2024 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5381288] =>.Microsoft® [MD5.57A6B4BDF247C1A6CA08AC09A8F9B742] - 07/05/2022 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [73728] [Unsigned] =>.Microsoft Corporation [MD5.E72284A1301EC8A119AE863ADD26D0AA] - 01/01/2024 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [579952] [Unsigned] =>.Microsoft Corporation [MD5.3D5D8865385E0DC224394AE1A289D2CE] - 17/11/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5232544] =>.Microsoft® [MD5.B547D076A6A62634918B8B762B50B734] - 12/04/2024 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [933888] [Unsigned] =>.Microsoft Corporation [MD5.6B75A00870646432692FAD2A71023198] - 17/11/2023 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [356352] [Unsigned] =>.Microsoft Corporation [MD5.35EA42BFE8AB49496C142901664390F6] - 16/02/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [1034544] =>.Microsoft® [MD5.271A609513721E394A9E22D12B2BDC58] - 16/02/2024 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [770128] =>.Microsoft® [MD5.EDC31339D9DFB4765E9362261EECBD5C] - 29/01/2024 - (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\System32\wuaueng.dll [130528] [Unsigned] =>.Microsoft Corporation [MD5.54DB796A38084C3DDC564713528E8FBD] - 05/07/2022 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.372D0A6214152903FACE466F0C637B1C] - 17/11/2023 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [697840] [Unsigned] =>.Microsoft Corporation [MD5.BE55BB568AB319140B1DD89358AF9EFB] - 17/11/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [62832] [Unsigned] =>.Microsoft Corporation [MD5.9374900DC6DA12E0393269889D12F249] - 17/11/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [131072] [Unsigned] =>.Microsoft Corporation [MD5.BD94BB6159F87B6D4D3E10CDC20C069A] - 07/05/2022 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [204800] [Unsigned] =>.Microsoft Corporation [MD5.E6EFDDE7D2DDF2A3254C86C40C5CD84F] - 17/11/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [184320] [Unsigned] =>.Microsoft Corporation [MD5.E4B9C6E6594D173A8D60DDAAB3A4B807] - 01/01/2024 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [192512] [Unsigned] =>.Microsoft Corporation [MD5.566132924EBEEAE1A41FB521B56E0AAA] - 07/05/2022 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [159744] [Unsigned] =>.Microsoft Corporation [MD5.9425DF210EABB5AC6E7EAF5705D1B4AA] - 17/11/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [258048] [Unsigned] =>.Microsoft Corporation [MD5.FC4568E41AB72F197BEAA8BE42452B2D] - 12/04/2024 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [677352] [Unsigned] =>.Microsoft Corporation [MD5.74C676120EC95C8372515D13FC086AF8] - 17/11/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [327680] [Unsigned] =>.Microsoft Corporation [MD5.16F0C8930716A437AD9CC441372BDCB2] - 12/04/2024 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [3331552] [Unsigned] =>.Microsoft Corporation [MD5.3A4E501001979A77B7F2C353944699A9] - 07/05/2022 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [135168] [Unsigned] =>.Microsoft Corporation [MD5.DA916CE0B61CFE789F526DCE21383CD4] - 29/01/2024 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [139264] [Unsigned] =>.Microsoft Corporation [MD5.9327D2D9AEA1C64BC6993E48849232E9] - 07/05/2022 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [196608] [Unsigned] =>.Microsoft Corporation [MD5.C8ECEAE641D734CFBDDCCC7B50F2EDC4] - 17/11/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [157056] [Unsigned] =>.Microsoft Corporation [MD5.26E1B735BA5879B42B324F1D3163FC68] - 17/11/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [468352] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (8) - 3s O23 - Service: ACC Service (ACCSvc) . (.Acer Incorporated - ACCSvc.) - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe =>.Acer Incorporated® O23 - Service: (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) - C:\WINDOWS\System32\amdfendrsr.exe [Unsigned] =>.Advanced Micro Devices, Inc. O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\atiesrxx.exe =>.Advanced Micro Devices Inc.® O23 - Service: EpsonCustomerResearchParticipation (EpsonCustomerResearchParticipation) . (.SEIKO EPSON CORPORATION - Epson Customer Research Participation.) - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe =>.SEIKO EPSON CORPORATION® O23 - Service: GoogleUpdater InternalService 127.0.6490.0 (GoogleUpdaterIn (GoogleUpdaterInternalService127.0.6490.0) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe =>.Google LLC® O23 - Service: GoogleUpdater Service 127.0.6490.0 (GoogleUpdaterService127 (GoogleUpdaterService127.0.6490.0) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe =>.Google LLC® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - GoogleUpdater (x86).) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (85) - 15s SR - Boot [07/05/2022] [ 108376] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [20/05/2022] [ 259216] ACC Service (ACCSvc) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe =>.Acer Incorporated® SR - Demand [02/06/2022] [ 36800] Acer Airplane Mode Controller (AcerAirplaneModeController) . (.Acer Incorporated.) - C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys {6AF4BAAF8194734783103D09}. =>.Acer Incorporated SR - Boot [07/05/2022] [ 1136472] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [31/05/2022] [ 603672] (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\amdfendrsr.exe =>.Advanced Micro Devices Inc.® SR - Auto [05/01/2024] [ 640136] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\atiesrxx.exe =>.Advanced Micro Devices Inc.® SR - Demand [07/10/2022] [ 5986232] Audio Coprocessr Driver for (amdacpbus) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_b80a2a11ce47b65c\amdacpbus.sys =>.Advanced Micro Devices Inc.® SR - Demand [30/12/2022] [ 429984] AMD Audio Service (AMDAfdAudioService) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_f8b7b9ff8b9e6bf2\amdacpafd.sys =>.Advanced Micro Devices Inc.® SR - Demand [31/05/2022] [ 175648] AMD Crash Defender Driver (amdfendr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdfendr.sys =>.Advanced Micro Devices Inc.® SR - Demand [31/05/2022] [ 35360] AMD Crash Defender Manager (amdfendrmgr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys =>.Advanced Micro Devices Inc.® SR - Demand [15/09/2022] [ 56024] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC.® SR - Demand [20/04/2023] [ 80968] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys =>.Advanced Micro Devices Inc.® SR - Boot [06/02/2023] [ 302520] AMD Micro PEP Device (AmdMicroPEP) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\AmdMicroPEP.sys =>.Advanced Micro Devices Inc.® SR - Boot [07/05/2022] [ 84312] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/05/2022] [ 260440] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Demand [05/01/2024] [94458400] (amdwddmg) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\amdkmdag.sys =>.Advanced Micro Devices Inc.® SR - Boot [07/05/2022] [ 28008] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [07/05/2022] [ 113496] Apple Solid State Drive Device (AppleSSD) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleSSD.sys =>.Microsoft® SR - Boot [07/05/2022] [ 132968] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [21/07/2022] [ 247240] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft® SR - Boot [07/05/2022] [ 534872] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/05/2022] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Boot [07/05/2022] [ 320880] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/05/2022] [ 1854832] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Demand [30/09/2022] [ 167440] SAMSUNG Mobile USB Com (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD.® SR - Boot [07/05/2022] [ 3441512] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.Marvell Semiconductor Inc..) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [07/05/2022] [ 3424104] QLogic Legacy Ethernet Adapte (ebdrv0) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbd0a.sys =>.Microsoft® SR - Auto [11/06/2018] [ 678328] EpsonCustomerResearchParticipation (EpsonCustomerResearchParticipation) . (.SEIKO EPSON CORPORATION.) - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe =>.SEIKO EPSON CORPORATION® SS - Demand [22/05/2024] [ 1781536] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\125.0.6422.112\elevation_service.exe =>.Google LLC® SR - Auto [20/05/2024] [ 4785440] GoogleUpdater InternalService 127.0.6490.0 (GoogleUpdaterIn (GoogleUpdaterInternalService127.0.6490.0) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe =>.Google LLC® SR - Auto [20/05/2024] [ 4785440] GoogleUpdater Service 127.0.6490.0 (GoogleUpdaterService127 (GoogleUpdaterService127.0.6490.0) . (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe =>.Google LLC® SR - Auto [20/05/2024] [ 4785440] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SS - Demand [20/05/2024] [ 4785440] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC® SR - Boot [07/05/2022] [ 65360] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/05/2022] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/05/2022] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/05/2022] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/05/2022] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/05/2022] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/05/2022] [ 885584] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/05/2022] [ 413008] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/05/2022] [ 559976] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [11/05/2023] [ 6470488] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Boot [07/05/2022] [ 187224] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 109920] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/05/2022] [ 125280] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 138600] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 81752] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 101224] (megasas35i) . (.Broadcom Inc.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 576856] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [07/05/2022] [ 1132392] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [07/05/2022] [ 90472] (mpi3drvi) . (.Broadcom Limited.) - C:\WINDOWS\System32\drivers\mpi3drvi.sys =>.Microsoft® SR - Demand [10/01/2023] [ 371144] MTK BT Filter Driver (MTKBTFilterX64) . (.MediaTek Inc..) - C:\WINDOWS\System32\drivers\mtkbtfilterx.sys =>.Microsoft® SR - Demand [03/11/2022] [ 1614792] Mediatek PCI LE Exten (mtkwlex) . (.MediaTek Inc..) - C:\WINDOWS\System32\drivers\mtkwl6ex.sys =>.Microsoft® SR - Boot [07/05/2022] [ 64872] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/05/2022] [ 147304] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [07/05/2022] [ 83288] NDKPerf Driver (NDKPerf) . (.Microsoft.) - C:\WINDOWS\System32\drivers\NDKPerf.sys =>.Microsoft® SR - Boot [07/05/2022] [ 151392] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/05/2022] [ 167256] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/05/2022] [ 59752] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 69464] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Boot [07/05/2022] [ 45408] pvscsi Storage Controller Dr (pvscsi) . (.VMware, Inc..) - C:\WINDOWS\System32\drivers\pvscsii.sys =>.Microsoft® SS - Demand [24/05/2022] [ 469992] Quick Access Local Service (QALSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Quick Access Service\QALSvc.exe {6AF4BAAF8194734783103D09}. =>.Acer Incorporated SS - Demand [24/05/2022] [ 508392] Quick Access Service (QASvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Quick Access Service\QASvc.exe {6AF4BAAF8194734783103D09}. =>.Acer Incorporated SR - Demand [17/11/2023] [ 98304] Microsoft Route Poli (RoutePolicy) . (...) - C:\WINDOWS\System32\drivers\RoutePolicy.sys [Unsigned] SR - Auto [11/05/2023] [ 1673008] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® SR - Boot [07/05/2022] [ 45920] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/05/2022] [ 82784] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/05/2022] [ 210784] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [30/09/2022] [ 174112] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD.® SR - Boot [07/05/2022] [ 32080] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [22/08/2021] [ 55824] Synaptics HID Service (SynRMIHID) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\SynRMIHID.sys =>.Synaptics Incorporated® SS - Demand [01/06/2022] [ 334992] User Experience Improvement Program (UEIPSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe =>.Acer Incorporated® SR - Demand [17/11/2023] [ 94208] (vmbusproxy) . (...) - C:\WINDOWS\System32\drivers\vmbusproxy.sys [Unsigned] SR - Boot [07/05/2022] [ 167784] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/05/2022] [ 306512] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/05/2022] [ 37224] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/05/2022] [ 74096] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (28) - 10s O38 - TASK: {313A8A70-B970-49B3-94D9-43C79C215F47} [64Bits][\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem127.0.6490.0{0931950A-6DFD-43DA-8FE8-973D9D882B32}] - (.Google LLC - GoogleUpdater (x86).) -- C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe [4785440] =>.Google LLC O38 - TASK: {5FA20006-6DD4-4F89-9BC5-463AAF4CB204} [64Bits][\Oem\AcerJumpstartTask] - (.Acer - Hermes.) -- C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [70792] =>.Acer O38 - TASK: {6B00A040-6A9F-4735-A73C-ED70D566C6D4} [64Bits][\ACCAgent] - (.Acer Inc. - LiveUpdate Agent.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41616] Acer Inc. =>Acer Inc. O38 - TASK: {6DABBFFA-DF18-41B5-A296-30FB81C22898} [64Bits][\AMDLinkUpdate] - (.Advanced Micro Devices, Inc. - AMD Install Manager.) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [954816] =>.Advanced Micro Devices, Inc. O38 - TASK: {728EA85C-6C05-4BEF-BBA2-6788DBA0C96B} [64Bits][\ACCBackgroundApplication] - (.Acer Inc. - ACCStd.) -- C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4836496] Acer Inc. =>Acer Inc. O38 - TASK: {7300A9A3-183D-4658-A386-B58DE5DF50C4} [64Bits][\Quick Access] - (.Acer Incorporated - QALauncher.) -- C:\Program Files\Acer\Quick Access Service\QALauncher.exe [450536] =>.Acer Incorporated O38 - TASK: {73D868A8-0D21-467F-9012-E404994A14D4} [64Bits][\Mozilla\Firefox Background Update S-1-5-21-428499685-2534697496-1257434464-1001 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [673184] =>.Mozilla Corporation O38 - TASK: {8E7CFCED-AE04-406A-988C-18CE5F15FF1F} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [673184] =>.Mozilla Corporation O38 - TASK: {A6FEE66A-29C2-4B36-A822-377B2F7A65B3} [64Bits][\Software Update Application] - (.Acer Incorporated - ListCheck.) -- C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [461472] =>.Acer Incorporated O38 - TASK: {C4475ED5-DFB3-4190-A1A4-ECAA6C43F84E} [64Bits][\AcerCMUpdateTask2.5.22250] - (.Acer - AWC.) -- C:\Program Files (x86)\Acer\Amundsen\2.5.22250\awc.exe [96904] =>.Acer O38 - TASK: {D18F665F-1128-4751-8C97-97395D57B208} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - La tâche Agent de navigateur par défaut eff.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33696] =>.Mozilla Foundation O38 - TASK: {D2AD568C-BCF9-438D-A447-7D0819D424E8} [64Bits][\UbtFrameworkService] - (.Acer Incorporated - TriggerFramework.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\TriggerFramework.exe [342672] =>.Acer Incorporated O38 - TASK: {D823FD2A-F610-457E-9F1E-B7BD4A13E2C5} [64Bits][\ACC] - (.ASUSTeK - LiveUpdate Checker.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2971792] =>.ASUSTeK O38 - TASK: {F4F20379-70D0-4290-AEFE-6AE25DB5B483} [64Bits][\UEIPInvitation] - (.Acer Incorporated - UEIPOOBECheck.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UEIPOOBECheck.exe [2211560] =>.Acer Incorporated C:\WINDOWS\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem127.0.6490.0{0931950A-6DFD-43DA-8FE8-973D9D882B32} - (.Google LLC.) -- C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe [--wake --system.--wake] =>.Google LLC C:\WINDOWS\System32\Tasks\Oem\AcerJumpstartTask - (.Acer.) -- C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [/default] =>.Acer C:\WINDOWS\System32\Tasks\ACCAgent - (.Acer Inc..) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [] Acer Inc. =>Acer Inc. C:\WINDOWS\System32\Tasks\AMDLinkUpdate - (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [-AMDLinkUpdate] =>.Advanced Micro Devices, Inc. C:\WINDOWS\System32\Tasks\ACCBackgroundApplication - (.Acer Inc..) -- C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [] Acer Inc. =>Acer Inc. C:\WINDOWS\System32\Tasks\Quick Access - (.Acer Incorporated.) -- C:\Program Files\Acer\Quick Access Service\QALauncher.exe [] =>.Acer Incorporated C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-428499685-2534697496-1257434464-1001 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\Software Update Application - (.Acer Incorporated.) -- C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [] =>.Acer Incorporated C:\WINDOWS\System32\Tasks\AcerCMUpdateTask2.5.22250 - (.Acer.) -- C:\Program Files (x86)\Acer\Amundsen\2.5.22250\awc.exe [/task] =>.Acer C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\UbtFrameworkService - (.Acer Incorporated.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\TriggerFramework.exe [] =>.Acer Incorporated C:\WINDOWS\System32\Tasks\ACC - (.ASUSTeK.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [-auto] =>.ASUSTeK C:\WINDOWS\System32\Tasks\UEIPInvitation - (.Acer Incorporated.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UEIPOOBECheck.exe [] =>.Acer Incorporated ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (16) - 0s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\anton\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKCU\..\Run: [Spotify] . (. - .) -- --minimized. O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_27C358CB5E42F7E1A720AA41BA227239] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKCU\..\Run: [EPSDNMON] . (.Seiko Epson Corporation - Epson Software Updater.) -- C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE =>.SEIKO EPSON CORPORATION® O4 - HKCU\..\Run: [Mozilla-Firefox-308046B0AF4A39CB] . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (64 bit) Setup.) -- C:\Windows\System32\OneDriveSetup.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-21-428499685-2534697496-1257434464-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\anton\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - HKUS\S-1-5-21-428499685-2534697496-1257434464-1001\..\Run: [Spotify] . (. - .) -- --minimized. O4 - HKUS\S-1-5-21-428499685-2534697496-1257434464-1001\..\Run: [MicrosoftEdgeAutoLaunch_27C358CB5E42F7E1A720AA41BA227239] . (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - HKUS\S-1-5-21-428499685-2534697496-1257434464-1001\..\Run: [EPSDNMON] . (.Seiko Epson Corporation - Epson Software Updater.) -- C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE =>.SEIKO EPSON CORPORATION® O4 - HKUS\S-1-5-21-428499685-2534697496-1257434464-1001\..\Run: [Mozilla-Firefox-308046B0AF4A39CB] . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ PROCESSUS LANCES (30) - 21s [MD5.4A2096CDE2A0AD9A4517797C79BE0BFD] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\atiesrxx.exe [640136] [PID.2748] =>.Advanced Micro Devices Inc.® [MD5.B4201C13B4644069EFBE568EE87969CA] - (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) -- C:\Windows\System32\amdfendrsr.exe [603672] [PID.2780] [Unsigned] =>.Advanced Micro Devices, Inc. [MD5.2F02599FE6359720D3A91B0948B57992] - (.Acer Incorporated - ACCSvc.) -- C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [259216] [PID.4224] =>.Acer Incorporated® [MD5.0AFF38E9FAF06F3112F11B6B2F04F71E] - (.SEIKO EPSON CORPORATION - Epson Customer Research Participation.) -- C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe [678328] [PID.4280] =>.SEIKO EPSON CORPORATION® [MD5.C59A3DEA0D75F3AF969AA8991DADE58E] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe [1673008] [PID.4504] =>.Realtek Semiconductor Corp.® [MD5.AFBFE5589DEC4D484DA3B6C7AA97266D] - (.Acer Incorporated - QASvc.) -- C:\Program Files\Acer\Quick Access Service\QASvc.exe [508392] [PID.13640] {6AF4BAAF8194734783103D09}. =>.Acer Incorporated [MD5.A4DCF668565908E921845709005D6CE0] - (.Acer Incorporated - UEIPSvc.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe [334992] [PID.7484] =>.Acer Incorporated® [MD5.98B6B254752BF0A283E7B6CD33D60164] - (. - CamUsage.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\CamUsage.exe [54928] [PID.9060] =>.Acer Incorporated® [MD5.2FB2FF6FE303BD2DF9F635B01475839B] - (. - MicUsage.) -- C:\Program Files\Acer\User Experience Improvement Program Service\Framework\MicUsage.exe [48784] [PID.4916] =>.Acer Incorporated® [MD5.900682FF79992FC0043BD9D6320D19CD] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\atieclxx.exe [938016] [PID.8648] =>.Advanced Micro Devices Inc.® [MD5.C59A3DEA0D75F3AF969AA8991DADE58E] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe [1673008] [PID.14392] =>.Realtek Semiconductor Corp.® [MD5.C59A3DEA0D75F3AF969AA8991DADE58E] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe [1673008] [PID.10096] =>.Realtek Semiconductor Corp.® [MD5.6C55B811C6D48C0602097CDA54BF3C3F] - (.Spotify Ltd - Spotify.) -- C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe [34615112] [PID.10112] =>.Spotify AB® [MD5.6C55B811C6D48C0602097CDA54BF3C3F] - (.Spotify Ltd - Spotify.) -- C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe [34615112] [PID.12384] =>.Spotify AB® [MD5.6C55B811C6D48C0602097CDA54BF3C3F] - (.Spotify Ltd - Spotify.) -- C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe [34615112] [PID.10024] =>.Spotify AB® [MD5.6C55B811C6D48C0602097CDA54BF3C3F] - (.Spotify Ltd - Spotify.) -- C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe [34615112] [PID.13844] =>.Spotify AB® [MD5.6C55B811C6D48C0602097CDA54BF3C3F] - (.Spotify Ltd - Spotify.) -- C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe [34615112] [PID.3232] =>.Spotify AB® [MD5.6C55B811C6D48C0602097CDA54BF3C3F] - (.Spotify Ltd - Spotify.) -- C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe [34615112] [PID.3100] =>.Spotify AB® [MD5.6807191DD67EC8F6A9174590194EC1E6] - (.Advanced Micro Devices, Inc. - AMD Software: Host Application.) -- C:\Program Files\WindowsApps\advancedmicrodevicesinc-2.amdradeonsoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe [28798904] [PID.5796] =>.Advanced Micro Devices Inc.® [MD5.98C6E63AFC987623F9978E10501FD79B] - (.Advanced Micro Devices, Inc. - AMD Software Command Line Interface.) -- C:\Program Files\WindowsApps\advancedmicrodevicesinc-2.amdradeonsoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe [56760] [PID.3112] =>.Advanced Micro Devices Inc.® [MD5.22CFB82F1FAE902FE3B2D75D582438A4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141121568] [PID.9580] =>.Skype Software Sarl® [MD5.22CFB82F1FAE902FE3B2D75D582438A4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141121568] [PID.10552] =>.Skype Software Sarl® [MD5.22CFB82F1FAE902FE3B2D75D582438A4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141121568] [PID.5652] =>.Skype Software Sarl® [MD5.22CFB82F1FAE902FE3B2D75D582438A4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141121568] [PID.11520] =>.Skype Software Sarl® [MD5.22CFB82F1FAE902FE3B2D75D582438A4] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe [141121568] [PID.5572] =>.Skype Software Sarl® [MD5.FB8A46AF77C8B295E4722F37106915E7] - (.Acer Incorporated - QAAgent.) -- C:\Program Files\Acer\Quick Access Service\QAAgent.exe [487400] [PID.8976] {6AF4BAAF8194734783103D09}. =>.Acer Incorporated [MD5.37F835FC242C1B5BE9B2E9C620D4976F] - (.Acer Incorporated - QAAdminAgent.) -- C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe [711656] [PID.9996] {6AF4BAAF8194734783103D09}. =>.Acer Incorporated [MD5.B8CCDEDF326D762799D5BBA169996E6D] - (. - ACCStd.) -- C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4836496] [PID.3808] =>.Acer Incorporated® [MD5.AA900638F47BD663FCFDAAD7B41C75D3] - (.Microsoft - StorPSCTL.) -- C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe [153640] [PID.14948] =>.Acer Incorporated® [MD5.0C414F3A31869BC6D61B31EB8DF3B8C6] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\anton\OneDrive\Bureau\ZHPSuite.exe [3539104] [PID.3820] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (3) - 0s G2 - GCE: Preference [anton][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [anton][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [anton][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (21) - 1s M0 - MFSP: prefs.js [anton - mtr8tk46.default-release] http://www.20minutes.fr/ P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\crashes =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\datareporting =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\extension-store =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\gmp =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\minidumps =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\security_state =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\settings =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\shader-cache =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\storage =>Mozilla Corporation C:\Users\anton\AppData\Roaming\Mozilla\Firefox\Profiles\mtr8tk46.default-release\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msn.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.22621.2860 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (3) - 0s E2 - GCE: Preference [anton][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [anton][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [anton][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.67\BHO\ie_to_edge_bho_64.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (33) - 3s O4 - GS\Desktop [anton]: CrystalDiskInfo.lnk . (.Crystal Dew World - CrystalDiskInfo.) C:\Program Files\CrystalDiskInfo\DiskInfo64.exe {2A4005F10B2E576809A7D1C286602845}. =>.Crystal Dew World O4 - GS\Desktop [anton]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\anton\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [anton]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\anton\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [anton]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\Quicklaunch [anton]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\sendTo [anton]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [anton]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [anton]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [anton]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Programs [anton]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation O4 - GS\Programs [anton]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\anton\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [anton]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Programs [anton]: UCheck_portable64.lnk . (...) C:\Users\anton\OneDrive\Bureau\UCheck_portable64.exe [Unsigned] O4 - GS\Programs [Public]: Administrative Tools.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\system32\control.exe /name Microsoft.AdministrativeTools =>.Microsoft Corporation O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\anton\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB® O4 - GS\Programs [Public]: UCheck_portable64.lnk . (...) C:\Users\anton\OneDrive\Bureau\UCheck_portable64.exe [Unsigned] O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player Legacy.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Créez rapidement une applicati.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Explorez, visualisez et partag.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: OneNote.lnk . (.Microsoft Corporation - Prenez des notes et ayez-les s.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Gérez votre courrier, vos plan.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Concevez et livrez facilement .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Créez des publications profess.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Créez de magnifiques documents.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{27b9c369-9f58-4585-8860-765740fb280b}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{27b9c369-9f58-4585-8860-765740fb280b}: DhcpDomain = lan =>.Local Domain ---\\ PROTOCOLE ADDITIONNEL (27) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (6) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur multim.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\125.0.6422.112\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\125.0.2535.67\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (20) - 13s O42 - Logiciel: Acer Configuration Manager - (.Acer.) [HKLM][64Bits] -- {8CB1A03C-9849-4744-AD56-341A18F9E3E2} [Unsigned] =>.Acer O42 - Logiciel: Acer Jumpstart - (.Acer.) [HKLM][64Bits] -- {0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C} [Unsigned] =>.Acer O42 - Logiciel: Avast Update Helper - (.AVAST Software.) [HKLM][64Bits] -- {19C3AB22-3718-4E4D-B203-242F5001565B} [Unsigned] =>.AVAST Software (Hidden) O42 - Logiciel: Care Center Service - (.Acer Incorporated.) [HKLM][64Bits] -- {AFB52E98-7597-4484-9202-58F0FD3512ED} [Unsigned] =>.Acer Incorporated O42 - Logiciel: CrystalDiskInfo 9.2.3 - (.Crystal Dew World.) [HKLM][64Bits] -- CrystalDiskInfo_is1 {2A4005F10B2E576809A7D1C286602845}. =>.Crystal Dew World O42 - Logiciel: DriverSetupUtility - (.Acer Incorporated.) [HKLM][64Bits] -- {2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6} [Unsigned] =>.Acer Incorporated O42 - Logiciel: Epson Customer Research Participation - (.Seiko Epson Corporation.) [HKLM][64Bits] -- {B26449A6-6007-4460-B4FE-C4776115BCEA} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: Epson Software Updater - (.Seiko Epson Corporation.) [HKLM][64Bits] -- {2A369D40-CE23-421A-8173-3C303A0A8355} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- {96ED1D58-440C-4345-8FEE-C4781366C67F} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: Guide Epson WF-M5194 version 1.0 - (.Epson/Seico.) [HKLM][64Bits] -- UsersGuideGuide Epson WF-M5194_is1 [Unsigned] =>.Epson/Seico O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 126.0 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: OpenOffice 4.1.15 - (.Apache Software Foundation.) [HKLM][64Bits] -- {DC8B4E0E-87B2-46D7-9FBA-B55470DC3B9A} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: PDFCreator - (.Avanquest pdfforge GmbH.) [HKLM][64Bits] -- {A49C62ED-8F89-45EC-910B-C3F985203F45} [Unsigned] O42 - Logiciel: Quick Access Service - (.Acer Incorporated.) [HKLM][64Bits] -- {AB25551C-74EF-4BAB-9989-891517FCF9FF} [Unsigned] =>.Acer Incorporated O42 - Logiciel: Realtek Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB® O42 - Logiciel: Telegram Desktop - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC O42 - Logiciel: User Experience Improvement Program Service - (.Acer Incorporated.) [HKLM][64Bits] -- {323EA05D-046D-449D-9D7C-89243C957CCE} [Unsigned] =>.Acer Incorporated O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (118) - 13s HKLM\SOFTWARE\1D0EC6DE-4A80-4CC3-A335-E6E41C951198 HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AIX INSTALLER HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\AMDLOG HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Avast Software =>.AVAST Software HKLM\SOFTWARE\COMPAL =>.Compal HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\EpsonNet =>.Epson/Seico HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\INextUUID =>.Hewlett-Packard HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\LDIAG HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PDF Architect 9 =>.pdfforge GmbH HKLM\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKLM\SOFTWARE\pdfforge =>.pdfforge HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Setup =>.Unknown HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD HKLM\SOFTWARE\WOW6432Node\Any Video Converter HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\WOW6432Node\EpsonNet =>.Epson/Seico HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\LDIAG HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OEM =>.OEM HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\PDF Architect 9 =>.pdfforge GmbH HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Acer =>.Acer HKCU\SOFTWARE\Adlice Software =>.Adlice Software HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\appdatalow =>.Microsoft Corporation HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\ChangeTracker =>.Legitimate HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\LDIAG HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OEM =>.OEM HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\PDF Architect 9 =>.pdfforge GmbH HKCU\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKCU\SOFTWARE\pdfforge =>.pdfforge HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Seiko Epson Corporation =>.Epson/Seico HKCU\SOFTWARE\Spotify =>.Spotify HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKCU\SOFTWARE\WixSharp =>.Legitimate HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Acer =>.Acer HKU\.DEFAULT\SOFTWARE\AMD =>.AMD HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\AVAST Software =>.AVAST Software HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\PDF Architect 9 =>.pdfforge GmbH HKU\.DEFAULT\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKU\.DEFAULT\SOFTWARE\pdfforge =>.pdfforge HKU\.DEFAULT\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Acer =>.Acer HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Adlice Software =>.Adlice Software HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\AMD =>.AMD HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\appdatalow =>.Microsoft Corporation HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\AVAST Software =>.AVAST Software HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\ChangeTracker =>.Legitimate HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\LDIAG HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\OEM =>.OEM HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\PDF Architect 9 =>.pdfforge GmbH HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\pdfforge =>.pdfforge HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Seiko Epson Corporation =>.Epson/Seico HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Spotify =>.Spotify HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\WixSharp =>.Legitimate HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-428499685-2534697496-1257434464-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (23) - 0s C:\Program Files (x86)\WindowsApps\1527c705-839a-4832-9118-54d4Bd6a0c89_10.0.19640.1000_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:AppxManifest_DisplayName] C:\Program Files (x86)\WindowsApps\26720RandomSaladGamesLLC.3899848563C1F_1.0.137.0_x64__kx24dqmazqk8j - (.Random Salad Games LLC.) [][ms-resource:gameName] =>Random Salad Games LLC C:\Program Files (x86)\WindowsApps\26720RandomSaladGamesLLC.HeartsDeluxe_6.13.112.0_x64__kx24dqmazqk8j - (.Random Salad Games LLC.) [][ms-resource:GameTitle] =>Random Salad Games LLC C:\Program Files (x86)\WindowsApps\26720RandomSaladGamesLLC.Spades_6.1.121.0_x64__kx24dqmazqk8j - (.Random Salad Games LLC.) [][Spades] =>Random Salad Games LLC C:\Program Files (x86)\WindowsApps\AcerIncorporated.AcerCareCenterS_4.0.3046.0_x64__48frkmn4z8aw4 - (.Acer Inc..) [][Care Center S] =>Acer Inc. C:\Program Files (x86)\WindowsApps\AcerIncorporated.AcerPurifiedVoiceConsoleR_2.0.4.0_x64__48frkmn4z8aw4 - (.Acer Incorporated.) [][Acer Purified Voice Console (R)] =>Acer Incorporated C:\Program Files (x86)\WindowsApps\AcerIncorporated.AcerRegistration_2.0.3044.0_x64__48frkmn4z8aw4 - (.Acer Inc..) [][Acer Product Registration] =>Acer Inc. C:\Program Files (x86)\WindowsApps\AcerIncorporated.QuickAccess_3.0.3044.0_x64__48frkmn4z8aw4 - (.Acer Inc..) [][QuickAccess] =>Acer Inc. C:\Program Files (x86)\WindowsApps\AcerIncorporated.UserExperienceImprovementProgramV_5.0.3016.0_x64__48frkmn4z8aw4 - (.Acer Inc..) [][User Experience Improvement Program V5] =>Acer Inc. C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.22.20073.0_x64__0a9344xs7nr4m - (..) [][AMD Radeon Software] C:\Program Files (x86)\WindowsApps\C27EB4BA.DropboxOEM_23.4.23.0_x64__xbfy0k16fey96 - (.Dropbox Inc..) [][ms-resource:OEMAppName] =>Dropbox Inc. C:\Program Files (x86)\WindowsApps\c5e2524a-ea46-4f67-841f-6a9465d9d515_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:AppxManifest_DisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\Clipchamp.Clipchamp_3.1.10220.0_neutral__yxz26nhyzhsrt - (.Legitimate.) [][ms-resource:Clipchamp/AppName] C:\Program Files (x86)\WindowsApps\E2A4F912-2574-4A75-9BB0-0D023378592B_10.0.19640.1000_neutral_neutral_cw5n1h2txyewy - (..) [][ms-resource:AppxManifest_DisplayName] C:\Program Files (x86)\WindowsApps\F46D4000-FD22-4DB4-AC8E-4E1DDDE828FE_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:AppxManifest_DisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.30.0_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][ms-resource://MicrosoftCorporationII.QuickAssist/resources/APP_WINDOW_NAME] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftTeams_24102.2309.2851.4917_x64__8wekyb3d8bbwe - (.Microsoft Corporation.) [][Microsoft Teams (personal)] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_1000.22688.1000.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][ms-resource:ProductPkgDisplayName] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.WebExperience_524.13200.10.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Web Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.CrossDevice_1.24042.39.0_x64__cw5n1h2txyewy - (..) [][ms-resource://MicrosoftWindows.CrossDevice/CrossDevice.Core/Resources/PackageName] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.22621.1_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.22621.1.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.41.294.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][Realtek Audio Control] =>Realtek Semiconductor Corp ---\\ CONTENU DES DOSSIERS PROGRAMMES (94) - 6s O43 - CFD: 01/08/2023 - [] D -- C:\Program Files\Acer =>.Acer Incorporated® O43 - CFD: 23/08/2023 - [] D -- C:\Program Files\Adobe =>.Adobe O43 - CFD: 01/08/2023 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices Inc.® O43 - CFD: 16/03/2024 - [0] D -- C:\Program Files\Anvsoft =>.AnvSoft Inc O43 - CFD: 15/09/2023 - [] D -- C:\Program Files\Avast Software =>.Avast Software s.r.o.® O43 - CFD: 28/05/2024 - [] D -- C:\Program Files\CrystalDiskInfo =>.Crystal Dew World O43 - CFD: 01/08/2023 - [] D -- C:\Program Files\DriverSetupUtility =>.Acer Incorporated® O43 - CFD: 21/09/2023 - [] D -- C:\Program Files\EPSON =>.SEIKO EPSON CORPORATION® O43 - CFD: 21/09/2023 - [] D -- C:\Program Files\EpsonNet =>.Epson/Seico O43 - CFD: 21/08/2023 - [] D -- C:\Program Files\Google =>.Google LLC® O43 - CFD: 28/05/2024 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 24/05/2024 - [] D -- C:\Program Files\PDFCreator =>.Philip Chinery O43 - CFD: 28/08/2023 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 15/09/2023 - [] D -- C:\Program Files (x86)\Acer =>.Acer Incorporated® O43 - CFD: 01/08/2023 - [] D -- C:\Program Files (x86)\AMD =>.Advanced Micro Devices Inc.® O43 - CFD: 21/09/2023 - [] D -- C:\Program Files (x86)\Epson [Unsigned] =>.EPSON O43 - CFD: 21/09/2023 - [] D -- C:\Program Files (x86)\EPSON Software =>.Epson/Seico O43 - CFD: 01/05/2024 - [] D -- C:\Program Files (x86)\Google =>.Google LLC® O43 - CFD: 01/08/2023 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 28/05/2024 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 06/01/2024 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 01/08/2023 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 01/08/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer =>.Acer O43 - CFD: 02/08/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 28/05/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo =>.Crystal Dew World O43 - CFD: 21/09/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson =>.EPSON O43 - CFD: 21/09/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software =>.Epson/Seico O43 - CFD: 06/01/2024 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.15 =>.SourceForge O43 - CFD: 24/05/2024 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator =>.Philip Chinery O43 - CFD: 28/08/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 26/08/2023 - [] D -- C:\ProgramData\Acer =>.Acer O43 - CFD: 26/08/2023 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 20/08/2023 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 16/09/2023 - [] D -- C:\ProgramData\Avast Software =>.AVAST Software O43 - CFD: 27/05/2024 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 01/08/2023 - [] D -- C:\ProgramData\DriverSetupUtility O43 - CFD: 21/09/2023 - [] D -- C:\ProgramData\EPSON =>.EPSON O43 - CFD: 14/10/2023 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 29/05/2024 - [] AD -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 15/03/2024 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 20/08/2023 - [] D -- C:\ProgramData\OEM =>.OEM O43 - CFD: 20/08/2023 - [] D -- C:\ProgramData\Propagation O43 - CFD: 14/12/2023 - [] D -- C:\ProgramData\UCheck =>.Adlice Software O43 - CFD: 26/08/2023 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 26/08/2023 - [] D -- C:\Users\anton\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 16/03/2024 - [] D -- C:\Users\anton\AppData\Roaming\Any Video Converter O43 - CFD: 16/09/2023 - [] D -- C:\Users\anton\AppData\Roaming\Avast Software =>.AVAST Software O43 - CFD: 26/08/2023 - [] D -- C:\Users\anton\AppData\Roaming\com.adobe.dunamis =>.Adobe Inc. O43 - CFD: 12/09/2023 - [] D -- C:\Users\anton\AppData\Roaming\McAfee =>.McAfee O43 - CFD: 19/08/2023 - [] D -- C:\Users\anton\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 21/08/2023 - [] D -- C:\Users\anton\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 24/05/2024 - [] D -- C:\Users\anton\AppData\Roaming\PDF Architect 9 =>.pdfforge GmbH O43 - CFD: 29/05/2024 - [] AD -- C:\Users\anton\AppData\Roaming\Spotify =>.Spotify O43 - CFD: 11/05/2024 - [] D -- C:\Users\anton\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 28/08/2023 - [] D -- C:\Users\anton\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 29/05/2024 - [] D -- C:\Users\anton\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 26/08/2023 - [] D -- C:\Users\anton\AppData\Local\Adobe =>.Adobe O43 - CFD: 20/08/2023 - [] D -- C:\Users\anton\AppData\Local\AMD =>.AMD O43 - CFD: 16/09/2023 - [] D -- C:\Users\anton\AppData\Local\Avast Software =>.AVAST Software O43 - CFD: 17/10/2023 - [] D -- C:\Users\anton\AppData\Local\Backup =>.Symantec O43 - CFD: 29/10/2023 - [] D -- C:\Users\anton\AppData\Local\cache =>.Legitimate O43 - CFD: 19/08/2023 - [] D -- C:\Users\anton\AppData\Local\CareCenter =>.Acer Inc. O43 - CFD: 12/09/2023 - [] D -- C:\Users\anton\AppData\Local\CEF =>.CEF O43 - CFD: 28/05/2024 - [] AD -- C:\Users\anton\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 21/08/2023 - [] D -- C:\Users\anton\AppData\Local\Google =>.Google O43 - CFD: 20/08/2023 - [] D -- C:\Users\anton\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 14/09/2023 - [] D -- C:\Users\anton\AppData\Local\McAfee =>.McAfee O43 - CFD: 19/08/2023 - [] D -- C:\Users\anton\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 15/09/2023 - [] D -- C:\Users\anton\AppData\Local\OEM =>.OEM O43 - CFD: 26/08/2023 - [] D -- C:\Users\anton\AppData\Local\pdfforge =>.pdfforge O43 - CFD: 26/08/2023 - [] D -- C:\Users\anton\AppData\Local\SolidDocuments =>.SolidDocuments O43 - CFD: 29/05/2024 - [] AD -- C:\Users\anton\AppData\Local\Spotify =>.Spotify O43 - CFD: 23/08/2023 - [] D -- C:\Users\anton\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 21/08/2023 - [] D -- C:\Users\anton\AppData\Local\ToastNotificationManagerCompat O43 - CFD: 28/05/2024 - [] D -- C:\Users\anton\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 26/08/2023 - [] D -- C:\Users\anton\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 28/05/2024 - [] D -- C:\Users\anton\AppData\LocalLow\AMD =>.AMD O43 - CFD: 23/04/2024 - [] AD -- C:\Users\anton\OneDrive\Bureau\Candidatures O43 - CFD: 27/05/2024 - [] AD -- C:\Users\anton\OneDrive\Bureau\CV O43 - CFD: 13/09/2023 - [] D -- C:\Users\anton\OneDrive\Bureau\Demande de stage O43 - CFD: 28/08/2023 - [] AD -- C:\Users\anton\OneDrive\Bureau\Diplômes O43 - CFD: 21/08/2023 - [] AD -- C:\Users\anton\OneDrive\Bureau\FEE O43 - CFD: 02/03/2024 - [] AD -- C:\Users\anton\OneDrive\Bureau\GTE O43 - CFD: 28/08/2023 - [] AD -- C:\Users\anton\OneDrive\Bureau\mps me O43 - CFD: 26/05/2024 - [] AD -- C:\Users\anton\OneDrive\Bureau\UCheck =>.Adlice Software O43 - CFD: 19/08/2023 - [] RD -- C:\Users\anton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 16/03/2024 - [0] D -- C:\Users\anton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anvsoft =>.AnvSoft Inc O43 - CFD: 11/05/2024 - [] D -- C:\Users\anton\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 19/08/2023 - [] D -- C:\Users\Default\AppData\Local\OEM =>.OEM O43 - CFD: 19/08/2023 - [] D -- C:\Users\Default User\AppData\Local\OEM =>.OEM O43 - CFD: 26/08/2023 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 20/03/2024 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\AMD =>.AMD O43 - CFD: 20/03/2024 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 19/08/2023 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\OEM =>.OEM ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (22) - 2s O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Orphan.) [Unsigned] O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (12) - 0s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\LSASS.exe - (.Microsoft Corporation - Local Security Authority Process.) [AuditLevel\\8] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\notepad.exe - (.Microsoft Corporation - Bloc-notes.) [UseFilter\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTEME (73) - 21s O58 - SDL:2022/05/07 07:19:03 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108376] =>.Microsoft® O58 - SDL:2022/06/02 00:53:50 A . (.Acer Incorporated - AcerAirplaneModeController.) -- C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [36800] {6AF4BAAF8194734783103D09}. =>.Acer Incorporated O58 - SDL:2022/05/07 07:19:03 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1136472] =>.Microsoft® O58 - SDL:2022/05/31 22:52:32 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender.) -- C:\WINDOWS\System32\drivers\amdfendr.sys [175648] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/05/31 22:52:34 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender Manager Driver.) -- C:\WINDOWS\System32\drivers\amdfendrmgr.sys [35360] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/09/15 04:05:24 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [56024] =>.Advanced Micro Devices INC.® O58 - SDL:2023/04/20 04:14:26 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [80968] =>.Advanced Micro Devices Inc.® O58 - SDL:2023/02/06 07:41:28 A . (.Advanced Micro Devices, Inc. - AMD Micro PEP driver.) -- C:\WINDOWS\System32\drivers\AmdMicroPEP.sys [302520] =>.Advanced Micro Devices Inc.® O58 - SDL:2023/05/14 21:53:56 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [52120] =>.Advanced Micro Devices Inc.® O58 - SDL:2022/05/07 07:19:03 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [84312] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [260440] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [28008] =>.Microsoft® O58 - SDL:2022/05/07 07:19:00 A . (.Apple Inc. - Apple Solid State Drive Device.) -- C:\WINDOWS\System32\drivers\AppleSSD.sys [113496] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132968] =>.Microsoft® O58 - SDL:2022/07/21 14:31:42 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [247240] =>.Microsoft® O58 - SDL:2022/05/07 07:19:00 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2022/05/07 07:19:02 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [534872] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [145256] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [320880] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2022/05/07 07:19:04 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1854832] =>.Microsoft® O58 - SDL:2022/05/07 07:19:02 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbd0a.sys [3424104] =>.Microsoft® O58 - SDL:2022/05/07 07:19:02 A . (.Marvell Semiconductor Inc. - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3441512] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [65360] =>.Microsoft® O58 - SDL:2022/05/07 07:19:00 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:00 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:02 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2022/05/07 07:19:01 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2022/05/07 07:19:04 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885584] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [413008] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [559976] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [187224] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109920] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [125280] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [138600] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Avago Technologies - MEGASAS2i RAID Controller Driver for Window.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81752] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Broadcom Inc - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [101224] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [576856] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1132392] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Broadcom Limited - Broadcom MPI 3.0 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\mpi3drvi.sys [90472] =>.Microsoft® O58 - SDL:2023/01/10 23:56:14 A . (.MediaTek Inc. - MTK Filter driver.) -- C:\WINDOWS\System32\drivers\mtkbtfilterx.sys [371144] =>.Microsoft® O58 - SDL:2022/11/03 20:21:40 A . (.MediaTek Inc. - MediaTek 802.11AX Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\mtkwl6ex.sys [1614792] =>.Microsoft® O58 - SDL:2022/05/07 07:19:03 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [64872] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [147304] =>.Microsoft® O58 - SDL:2022/05/07 07:20:14 A . (...) -- C:\WINDOWS\System32\drivers\NDKPerf.sys [83288] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [151392] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [167256] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [59752] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [69464] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.VMware, Inc. - VMware PVSCSI StorPort driver (64-bit).) -- C:\WINDOWS\System32\drivers\pvscsii.sys [45408] =>.Microsoft® O58 - SDL:2023/11/17 15:57:24 A . (...) -- C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304] [Unsigned] O58 - SDL:2023/11/17 15:53:49 A . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [86016] [Unsigned] =>.Realtek O58 - SDL:2023/05/11 01:12:06 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6470488] =>.Realtek Semiconductor Corp.® O58 - SDL:2022/05/07 07:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [45920] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [82784] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [210784] =>.Microsoft® O58 - SDL:2022/09/30 05:23:56 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [167440] =>.Samsung Electronics CO., LTD.® O58 - SDL:2022/09/30 05:24:08 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [174112] =>.Samsung Electronics CO., LTD.® O58 - SDL:2022/05/07 07:19:04 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [32080] =>.Microsoft® O58 - SDL:2021/08/22 22:39:08 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID.sys [55824] =>.Synaptics Incorporated® O58 - SDL:2023/11/17 15:58:21 A . (...) -- C:\WINDOWS\System32\drivers\vmbusproxy.sys [94208] [Unsigned] O58 - SDL:2022/05/07 07:19:04 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [167784] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [306512] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [37224] =>.Microsoft® O58 - SDL:2022/05/07 07:19:04 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [74096] =>.Microsoft® ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 1s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 18s O69 - SBI: SearchScopes [HKLM] [64Bits]{0DAF621A-5215-4B42-981F-ACAF1FA6A2BB} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{21EE4425-077A-479F-9718-ED62A631D82B} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (51) - 3s O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [385024] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1368064] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1531904] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [843776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [53248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [180224] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [122880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [811008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [245760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [598016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [102400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2064384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1662976] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [434176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [114688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1044480] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1187840] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1040384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1826816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [86016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [241664] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [135168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1101824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [512000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [98304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [683312] =>.Microsoft® O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [339968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [130528] =>.Microsoft® O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1388544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [270336] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [143360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [1113040] =>.Microsoft® O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [1523712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [266240] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1392640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [102400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [643072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [315392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2924544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [618496] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [544768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [311296] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [946176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [188416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [315392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [131072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [438272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hns (hns) . (.Microsoft Corporation - Service de réseau hôte.) -- C:\Windows\System32\HostNetSvc.dll [4272128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: nvagent (nvagent) . (.Microsoft Corporation - Agent de virtualisation de réseau..) -- C:\Windows\System32\NvAgent.dll [66912] =>.Microsoft® ---\\ CODES PRODUITS LOGICIELS (4) - 1s O90 - PUC: "5117a84f892659f4d94e3254d3458afe" [HKLM] . (.AMD_Chipset_Drivers.) -- C:\Windows\Installer\{f48a7115-6298-4f95-9de4-23453d54a8ef}\ARPPRODUCTICON.exe O90 - PUC: "A52DE5C01D8B17E4FBBCB673A0E41AC9" [HKLM] . (.Acer Jumpstart.) -- C:\WINDOWS\Installer\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}\hermes.ico O90 - PUC: "D50AE323D640D944D9C79842C359C7EC" [HKLM] . (.User Experience Improvement Program Service.) -- C:\Windows\Installer\{323EA05D-046D-449D-9D7C-89243C957CCE}\ProductIconIco O90 - PUC: "DE26C94A98F8CE5419B03C9F5802F354" [HKLM] . (.PDFCreator.) -- C:\WINDOWS\Installer\{A49C62ED-8F89-45EC-910B-C3F985203F45}\app_icon.ico ---\\ PACKAGES WINDOWS INSTALLER (19) - 2s [MD5.DF575245B6F352ED71254B40DF226BA9] [WIS][2023/01/15 14:02:01] (.Advanced Micro Devices, Inc. - AMD_Chipset_Drivers.) -- C:\WINDOWS\Installer\117af.msi [7172608] =>.Advanced Micro Devices, Inc. [MD5.B48DEBDA91ED89D6717021A0519C7EAC] [WIS][2022/08/04 01:29:54] (.Advanced Micro Devices, Inc. - AMD GPIO2 Driver.) -- C:\WINDOWS\Installer\117b3.msi [2950656] =>.Advanced Micro Devices, Inc. [MD5.9EBAE74A1EB5C668FB3E7B42C5626E84] [WIS][2022/08/04 04:59:06] (.Advanced Micro Devices, Inc. - AMD I2C Driver.) -- C:\WINDOWS\Installer\117b7.msi [2950656] =>.Advanced Micro Devices, Inc. [MD5.2E5978505C8041CD65C78C2523FE8A26] [WIS][2022/08/04 02:11:22] (.Advanced Micro Devices, Inc. - AMD SBxxx SMBus Driver.) -- C:\WINDOWS\Installer\117bb.msi [2949120] =>.Advanced Micro Devices, Inc. [MD5.2D8A6D647183BBD956B522EF610B2678] [WIS][2022/08/04 01:58:12] (.Advanced Micro Devices, Inc. - AMD PSP Driver.) -- C:\WINDOWS\Installer\117bf.msi [2961920] =>.Advanced Micro Devices, Inc. [MD5.CDA55B5D72BCA05AD8F63BB947A04905] [WIS][2022/06/29 05:05:06] (.Advanced Micro Devices, Inc. - AMD Ryzen Balanced Driver.) -- C:\WINDOWS\Installer\117c3.msi [1346560] =>.Advanced Micro Devices, Inc. [MD5.2C85D8BC732E1D1DAAB3CF4B201B67FA] [WIS][2022/08/04 05:04:32] (.Advanced Micro Devices, Inc. - AMD MicroPEP Driver.) -- C:\WINDOWS\Installer\117c7.msi [2027008] =>.Advanced Micro Devices, Inc. [MD5.785FFFE87D2102CDAAEBD0B075B9F427] [WIS][2023/11/21 02:21:30] (.OpenOffice - OpenOffice 4.1.15.) -- C:\WINDOWS\Installer\195b61be.msi [2473984] =>.OpenOffice [MD5.65A78973BA24FF57A1AB41ED72AD6D3D] [WIS][2017/12/04 12:08:02] (.Acer Incorporated - DriverSetupUtility.) -- C:\WINDOWS\Installer\30841.msi [2576384] =>.Acer Incorporated [MD5.56649782AFCEAA6EDFDB7F6A81C379A6] [WIS][2022/09/25 13:29:00] (.Acer - Acer Configuration Manager.) -- C:\WINDOWS\Installer\3fd10.msi [356352] =>.Acer [MD5.AE11F4D552A69B7A4616A4F66D2ACC3D] [WIS][2022/08/15 10:47:00] (.Acer - Acer Jumpstart.) -- C:\WINDOWS\Installer\3fd14.msi [794624] =>.Acer [MD5.FCE533292C786DBE35035DFE8F0F0331] [WIS][2022/05/23 14:42:14] (.Acer Incorporated - Care Center Service.) -- C:\WINDOWS\Installer\a720.msi [15638528] =>.Acer Incorporated [MD5.D67DC220D4DF595DE8035A4878AAEB96] [WIS][2022/06/01 07:28:06] (.Acer Incorporated - User Experience Improvement Program.) -- C:\WINDOWS\Installer\a748.msi [9908224] =>.Acer Incorporated [MD5.D4E7626CBDE9C04FE13ADAF8FD34F0AB] [WIS][2022/05/24 09:32:48] (.Acer Incorporated - Quick Access.) -- C:\WINDOWS\Installer\a74c.msi [8011776] =>.Acer Incorporated [MD5.774BC43C74632B08827BCDC462871A04] [WIS][2024/05/16 19:25:09] (.Avanquest pdfforge GmbH - PDFCreator.) -- C:\WINDOWS\Installer\d81ac9f5.msi [98390016] [MD5.7C621A25857E6D66B36DEE9B4892091E] [WIS][2016/09/14 14:43:32] (.SEIKO EPSON Corporation - EpsonNet Print.) -- C:\WINDOWS\Installer\dc324.msi [5709824] =>.SEIKO EPSON Corporation [MD5.93344DD50F02F1AD652F0066AD079E28] [WIS][2023/06/04 04:06:06] (.Seiko Epson Corporation - Epson Software Updater.) -- C:\WINDOWS\Installer\dc328.msi [5435392] =>.Seiko Epson Corporation [MD5.E1AA07F49BBA015F49ABEF37B75E4E09] [WIS][2018/06/21 07:47:22] (.Seiko Epson Corporation - Epson Customer Research Participation.) -- C:\WINDOWS\Installer\dc32c.msi [2568192] =>.Seiko Epson Corporation [MD5.4DE5C70CD5D53F483EAA6B9854E6101F] [WIS][2023/08/26 15:02:18] (.AVAST Software - Avast Update Helper.) -- C:\WINDOWS\Installer\f7268fd.msi [32768] =>.AVAST Software ---\\ OBSERVATEURS des évènements (97) - 55s Application.Error: Application Error (232) ~Numéro: 14997 ~Date: 05/29/2024 01:17:06 PM ~ID: 1000 ~Description: Nom de l’application défaillante AcerRegistrationBackGroundTask.exe, version : 1.0.0.0, horodatage : 0x64375ffb Nom du module défaillant : KERNELBASE.dll, version : 10.0.22621.3447, horodatage : 0x67ef8931 Code d’exception : 0xc000041d Décalage d’err ~Suggestion: Réparer ou réinstaller l'application. Application.Error: .NET Runtime (100) ~Numéro: 14994 ~Date: 05/29/2024 01:17:04 PM ~ID: 1026 ~Description: Application : AcerRegistrationBackGroundTask.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : code d'exception c0020001, adresse d'exception 762598B2Pile : ~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif Application.Error: Firefox Default Browser Agent (8) ~Numéro: 14987 ~Date: 05/29/2024 12:29:30 PM ~ID: 1155 ~Description: 0x80070483 in GetDefaultPdf:80 ~Suggestion: Aucune Application.Warning: Microsoft-Windows-RestartManager (13) ~Numéro: 14838 ~Date: 05/27/2024 02:11:36 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.13200.10.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe » (pid 12960) - 1. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Error: Application Hang (1) ~Numéro: 14750 ~Date: 05/26/2024 02:23:31 PM ~ID: 1002 ~Description: Le programme PhoneExperienceHost.exe version 1.24032.123.0 a cessé d'interagir avec Windows et a été fermé. Pour savoir si vous disposez de plus d'informations sur le problème, consultez l'historique des problèmes dans le panneau de configuration Séc ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: Windows Search Service (15) ~Numéro: 14347 ~Date: 05/13/2024 02:47:53 PM ~ID: 3036 ~Description: Impossible de terminer l’analyse dans la source de contenu .Contexte : Application , Catalogue SystemIndexDétails : 0x%08x (0x80072ee4 - Une erreur interne s’est produite dans les Services ~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/ Application.Warning: Wlclntfy (1) ~Numéro: 12913 ~Date: 04/12/2024 02:59:00 PM ~ID: 6004 ~Description: Échec de l’abonné aux notifications Winlogon lors d’un événement de notification critique. Application.Warning: Microsoft-Windows-WMI (6) ~Numéro: 12904 ~Date: 04/12/2024 02:57:58 PM ~ID: 63 ~Description: Un fournisseur, DMWmiBridgeProv1, a été inscrit dans l’espace de noms Windows Management Instrumentation root\cimv2\mdm\dmmap, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Error: VSS (7) ~Numéro: 12889 ~Date: 04/12/2024 02:57:18 PM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . ~Suggestion: Utiliser la procédure de reconstruction du VSS System.Warning: DCOM (203) ~Numéro: 21036 ~Date: 05/29/2024 12:23:59 PM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}LaurenceauantonS-1-5-21-428499685-2534697496-1257434464-1001LocalHost (avec LRPC)Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5cNon ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Microsoft-Windows-WindowsUpdateClient (15) ~Numéro: 20973 ~Date: 05/28/2024 02:55:01 PM ~ID: 20 ~Description: 0x80073d029NMPJ99VJBWV-Microsoft.YourPhone{79a170b0-fb9a-45d0-b82c-5166451b2391}1{855e8a7c-ecb4-4ca3-b045-1dfa50104289} ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Error: Service Control Manager (10) ~Numéro: 20954 ~Date: 05/28/2024 02:39:36 PM ~ID: 7000 ~Description: Le service Service Google Update (gupdate) n’a pas pu démarrer en raison de l’erreur : %Service Google Update (gupdate)053 System.Warning: LsaSrv (60) ~Numéro: 20897 ~Date: 05/28/2024 02:37:33 PM ~ID: 6155 ~Description: Le package LSA n’est pas signé comme prévu. Cela peut provoquer un comportement inattendu avec Credential Guard. PackageName: msv1_0 System.Warning: Microsoft-Windows-WLAN-AutoConfig (15) ~Numéro: 20833 ~Date: 05/28/2024 02:37:06 PM ~ID: 10002 ~Description: Le module d’extensibilité WLAN s’est arrêté. Chemin d’accès du module : C:\WINDOWS\system32\mtkihvx.dll ~Suggestion: 1)Désactivez/Réactiver la connexion réseau sans fil. ou 2) Redémarrer le service WLAN AutoConfig System.Warning: Microsoft-Windows-Time-Service (8) ~Numéro: 20791 ~Date: 05/28/2024 01:58:10 PM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "time.windows.com,0x9". NtpClient réessaiera dans 15 minutes, puis doublera l'intervalle d'attente pour les tentatives suiva ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Warning: Win32k (158) ~Numéro: 20725 ~Date: 05/27/2024 01:52:05 PM ~ID: 701 ~Description: Le Gestionnaire d’alimentation n’a pas demandé la suppression de toutes les entrées (INPUT_SUPPRESS_REQUEST=0) System.Error: EventLog (1) ~Numéro: 16742 ~Date: 03/27/2024 03:20:50 PM ~ID: 6008 ~Description: L’arrêt système précédant à 14:04:25 le ‎27/‎03/‎2024 n’était pas prévu. ---\\ SCAN ADDITIONNEL (27) - 12s HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ACE =>.SUP.Orphan HKLM\Software\Wow6432Node\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000} =>.SUP.Orphan C:\Users\anton\AppData\Local\Temp\mat-debug-10916.log =>.SUP.Temporary.Microsoft C:\Users\anton\AppData\Local\Temp\mat-debug-14016.log =>.SUP.Temporary.Microsoft C:\Users\anton\AppData\Local\Temp\mat-debug-14044.log =>.SUP.Temporary.Microsoft C:\Users\anton\AppData\Local\Temp\mat-debug-15228.log =>.SUP.Temporary.Microsoft C:\Users\anton\AppData\Local\Temp\mat-debug-1536.log =>.SUP.Temporary.Microsoft C:\Users\anton\AppData\Local\Temp\mat-debug-2364.log =>.SUP.Temporary.Microsoft C:\Users\anton\AppData\Local\Temp\mat-debug-6312.log =>.SUP.Temporary.Microsoft [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\AppData\Local\OEM\Hermes\classes\acer.oobe.dbx.7\adunit.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\MSTeamsSetup_c_l_.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\UCheck_portable64.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\UCheck_portable64.exe.ApplicationCompany =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\vlc-3.0.18-win64.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\OneDrive\Bureau\UCheck_portable64(2).exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\OneDrive\Bureau\UCheck_portable64(2).exe.ApplicationCompany =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\AppData\Local\OEM\Hermes\classes\acer.gpg.1\adunit.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\AppData\Local\OEM\Hermes\classes\acer.oobe.dbx.7\adunit.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\MSTeamsSetup_c_l_.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\UCheck_portable64.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\UCheck_portable64.exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\Downloads\vlc-3.0.18-win64.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\OneDrive\Bureau\UCheck_portable64(2).exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\OneDrive\Bureau\UCheck_portable64(2).exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\AppData\Local\OEM\Hermes\classes\acer.gpg.1\adunit.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-428499685-2534697496-1257434464-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\anton\AppData\Local\Temp\~nsuA.tmp\Un_A.exe.FriendlyAppName =>.SUP.Orphan.MUICache ---\\ RECAPITULATIF DES ELEMENTS TROUVES (5) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [0339022CF98DDA042A02961EE062E49C] [11/05/2023] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [0339022CF98DDA042A02961EE062E49C] [11/05/2023] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe =>.Realtek Semiconductor Corp. [05101D15D8F858EE5327DC9BF4B5E60B] [22/11/2021] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe =>.Realtek Semiconductor Corp. [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics CO., LTD. [06680CEE465B856F613A3BDD20482E71] [30/09/2022] (.Samsung Electronics CO., LTD..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics CO., LTD. [0722C0EF31AC742857A3DAE1ADFDE267] [13/09/2023] (.LICIEL Environnement SAS.) - C:\LICIEL_Programmes\LICIEL Diagnostics\Liciel_Ordre_de_Mission.exe =>.Not verified [0722C0EF31AC742857A3DAE1ADFDE267] [20/05/2023] (.LICIEL Environnement SAS.) - C:\LICIEL_Programmes\LICIEL Diagnostics\LICIEL_Retouche_Images.exe =>.Not verified [0722C0EF31AC742857A3DAE1ADFDE267] [22/11/2023] (.LICIEL Environnement SAS.) - C:\LICIEL_Programmes\LICIEL Diagnostics\Liciel_Diagnostics.exe =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [22/08/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\SynRMIHID.sys =>.Synaptics Incorporated [0902B36B3251C328083F777CA08428FF] [15/09/2023] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\Avast\ashQuick.exe =>.Avast Software s.r.o. [0A3D2CBD474F5896B50A276B46EA7127] [22/07/2022] (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE =>.SEIKO EPSON CORPORATION [0C1CD3EEA47EDDA7A032573B014D0AFD] [17/05/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [17/05/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [17/05/2024] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0E4418E2DEDE36DD2974C3443AFB5CE5] [20/05/2024] (.Google LLC.) - C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [20/05/2024] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [22/05/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\125.0.6422.112\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [22/05/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [29/05/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\125.0.6422.112\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [29/05/2024] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\125.0.6422.112\Installer\setup.exe =>.Google LLC [0F9D0FAC514F24E11BF34F7F83F16315] [08/05/2024] (.pdfforge GmbH.) - C:\Program Files\PDFCreator\PDFCreator.exe =>.Not verified [0F9D0FAC514F24E11BF34F7F83F16315] [17/03/2024] (.pdfforge GmbH.) - C:\Users\anton\Downloads\PDFCreator-5_2_1-Setup.exe =>.Not verified [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\chrome_elf.dll =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\d3dcompiler_47.dll =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\libcef.dll =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\libEGL.dll =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\libGLESv2.dll =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\vk_swiftshader.dll =>.Spotify AB [0FAB670A61BF4B7DAFD559356B5BCCFF] [27/05/2024] (.Spotify AB.) - C:\Users\anton\AppData\Roaming\Spotify\vulkan-1.dll =>.Spotify AB [1885B7E188D8FAFD38A43D48967D7488] [15/09/2022] (.Advanced Micro Devices INC..) - C:\WINDOWS\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC. [19A7124A8EA70E2AF207584C] [29/03/2021] (.Acer Incorporated.) - C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [01/06/2022] (.Acer Incorporated.) - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\CamUsage.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [01/06/2022] (.Acer Incorporated.) - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\MicUsage.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [01/06/2022] (.Acer Incorporated.) - C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [01/06/2022] (.Acer Incorporated.) - C:\Program Files\Acer\User Experience Improvement Program Service\Plugin\AppMonitor\AppMonitorPlugIn.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [20/05/2022] (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Care Center\ACCAppLauncher.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [20/05/2022] (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Care Center\ACCStd.exe =>.Acer Incorporated [1CA1247CCA4C07CD3F3751E8] [20/05/2022] (.Acer Incorporated.) - C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe =>.Acer Incorporated [1E388DBA2B045017B841348959D24AD5] [21/09/2023] (.Epson America, Inc..) - C:\Users\anton\Downloads\WFM5194_Lite_NA.exe =>.Not verified [2A4005F10B2E576809A7D1C286602845] [16/02/2024] (.Open Source Developer, Noriyuki Miyazaki.) - C:\Program Files\CrystalDiskInfo\DiskInfo64.exe =>.Not verified [2A4005F10B2E576809A7D1C286602845] [28/05/2024] (.Open Source Developer, Noriyuki Miyazaki.) - C:\Program Files\CrystalDiskInfo\unins000.exe =>.Not verified [330000038BF0FCEC2C8F35652C00000000038B] [16/05/2024] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [535091E6CAB13AF393B51EAD0825F627] [02/09/2022] (.Advanced Micro Devices Inc..) - C:\Program Files (x86)\AMD\Chipset_Software\AMD_Chipset_Drivers.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [05/01/2024] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\amdkmdag.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [05/01/2024] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\atieclxx.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [05/01/2024] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0399259.inf_amd64_91ce8c34032dc40f\B399013\atiesrxx.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [06/02/2023] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\AmdMicroPEP.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [07/10/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_b80a2a11ce47b65c\amdacpbus.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [14/05/2023] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdpsp.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [20/04/2023] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdi2c.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [28/08/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CIM\Bin64\7z.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [28/08/2022] (.Advanced Micro Devices Inc..) - C:\Program Files\AMD\CIM\Bin64\AMDSoftwareInstaller.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [30/12/2022] (.Advanced Micro Devices Inc..) - C:\Windows\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_f8b7b9ff8b9e6bf2\amdacpafd.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [31/05/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\amdfendrsr.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [31/05/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdfendr.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [31/05/2022] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdfendrmgr.sys =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [31/07/2023] (.Advanced Micro Devices Inc..) - C:\Program Files\WindowsApps\advancedmicrodevicesinc-2.amdradeonsoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe =>.Advanced Micro Devices Inc. [535091E6CAB13AF393B51EAD0825F627] [31/07/2023] (.Advanced Micro Devices Inc..) - C:\Program Files\WindowsApps\advancedmicrodevicesinc-2.amdradeonsoftware_10.22.20073.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe =>.Advanced Micro Devices Inc. [63F07348D0F35040ADB2EC28] [27/11/2017] (.Acer Incorporated.) - C:\Program Files\DriverSetupUtility\FUB\FUB.exe =>.Acer Incorporated [6AF4BAAF8194734783103D09] [02/06/2022] (.Acer Incorporated.) - C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys =>.Not verified [6AF4BAAF8194734783103D09] [24/05/2022] (.Acer Incorporated.) - C:\Program Files\Acer\Quick Access Service\QAAdminAgent.exe =>.Not verified [6AF4BAAF8194734783103D09] [24/05/2022] (.Acer Incorporated.) - C:\Program Files\Acer\Quick Access Service\QAAgent.exe =>.Not verified [6AF4BAAF8194734783103D09] [24/05/2022] (.Acer Incorporated.) - C:\Program Files\Acer\Quick Access Service\QALSvc.exe =>.Not verified [6AF4BAAF8194734783103D09] [24/05/2022] (.Acer Incorporated.) - C:\Program Files\Acer\Quick Access Service\QASvc.exe =>.Not verified [76101A6757EFD8186742057C6A6ACAA4] [11/06/2018] (.SEIKO EPSON CORPORATION.) - C:\Program Files\EPSON\EpsonCustomerResearchParticipation\EPCP.exe =>.SEIKO EPSON CORPORATION [77415130B35E275D02F366414E0E9D1B] [26/10/2023] (.LICIEL Environnement SAS.) - C:\LICIEL_Programmes\LICIEL Diagnostics\Liciel_Terrain.exe =>.Not verified [7AE2B5021371F092A904B6FA] [04/05/2024] (.Telegram FZ-LLC.) - C:\Users\anton\AppData\Roaming\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC [7AE2B5021371F092A904B6FA] [04/05/2024] (.Telegram FZ-LLC.) - C:\Users\anton\AppData\Roaming\Telegram Desktop\Updater.exe =>.Telegram FZ-LLC ~ Unselected Options: NF, ~ End of the scan, 7601 items in 04mn06s (1152)(0)