~ ZHPDiag v2023.10.18.48 Par Nicolas Coolman (2023/10/18)
~ Démarre par utilisateur (Administrator) (2023/10/23 03:35:33)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\utilisateur\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Demarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 19045) =>.Microsoft Corporation
---\\ NAVIGATEURS INTERNET (5) - 0s
~ GCIE: Google Chrome v118.0.5993.89
~ MFIE: Mozilla Firefox 116.0.2 (x64 fr)
~ OPIE: Opera 103.0.4928.34
~ MSIE: Internet Explorer v11.3570.19041.0
~ OBIE: Microsoft Edge v118.0.2088.61
---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : RX8VF
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK
---\\ LOGICIELS DE PROTECTION (2) - 2s
Windows Defender W10 (Activate) (Protection)
Malwarebytes version 4.6.5.293 v4.6.5.293 (Protection)
---\\ INFORMATIONS SUR LE SYSTEME (18) - 1s
~ Operating System: AMD64 Family 23 Model 24 Stepping 1, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
System Restore: Activé (Enable)
System drive C: has 138 GB (28%) free of 487 GB : OK =>.Disk Space
---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS)
~ Slots Total (Total Slots) : 1
~ Slots Utilisés (Used Slots) : 1
~ Slots Disponibles (Free Slots) : 0
~ Type de barrette (FormFactor): SO-DIMM
~ Taille (Size) : 16 Go
~ Vitesse (Speed) : 2400
~ Charge mémoire (Memory Usage) : 45%
~ RAM physique Total (Total Physical) : 14 Go : OK
~ RAM physique Disponible (Available Physical) : 8 Go
~ Total virtuelle (Total Virtual) : 16 Go
~ Disponible virtuelle (Available Virtual): 8.3 Go
---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s
~ Computer Name: LAPTOP-V92LUBGB
~ User Name: utilisateur
~ Logged in as Administrator
---\\ ENUMERATION DES UNITES DE STOCKAGE (5) - 0s
~ Drive C: has 138 GB free of 487 GB (System)
---\\ ETAT DE LA COMMANDE TRIM
~ La commande TRIM est active (NTFS)
~ La commande TRIM est active (ReFS)
---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (1) - 1s
~ La technologie SMART n'est pas active sur le disque système
---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 2s
[MD5.8C667C6F7196BD7F81621824368D8321] - 11/10/2023 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5329808] =>.Microsoft®
[MD5.A52BFA4A96F97C368312028DBD7C8461] - 11/10/2023 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation
[MD5.448A99080ED73B916D13F9EC2E29AE98] - 11/10/2023 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [420608] [Unsigned] =>.Microsoft Corporation
[MD5.C67AFBDFCB5F782B44E21B8B8AC05F9D] - 11/10/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5039616] [Unsigned] =>.Microsoft Corporation
[MD5.203DB9EE2E43A8D40D87FC2857EF4E02] - 11/10/2023 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [905216] [Unsigned] =>.Microsoft Corporation
[MD5.1C294F805D1FB7A0D4922D815AA5FB03] - 11/10/2023 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation
[MD5.7BEF8087D6D14A3BDA536E9BC36E95E2] - 11/10/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821392] =>.Microsoft®
[MD5.41D3F37C3101D7ACD14BCDA8DB1FC6A6] - 11/10/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583152] =>.Microsoft®
[MD5.C8DC00685F50001CF67A32A97A997C9A] - 11/10/2023 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3447296] [Unsigned] =>.Microsoft Corporation
[MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.55ED0A572978BEFA7DD04597F9962FD0] - 11/10/2023 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [651736] [Unsigned] =>.Microsoft Corporation
[MD5.313860F0188E4DF23896451225EA3F19] - 11/10/2023 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31104] [Unsigned] =>.Microsoft Corporation
[MD5.44EDC69011C8C7C4802D320DCAA2DD85] - 11/10/2023 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
[MD5.050804442DAD3428C6E7F02EB86DBEF4] - 11/10/2023 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
[MD5.C4BB07F3246B853D6473BDF468EB6A10] - 11/10/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation
[MD5.7F5C73825606DF98AC670979ECF3D928] - 11/10/2023 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138240] [Unsigned] =>.Microsoft Corporation
[MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.5BAFE7E7FBD95B5FE36F4E0AFF26D6A3] - 11/10/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [227840] [Unsigned] =>.Microsoft Corporation
[MD5.D2693248895A7BF0D3230D9E97F82150] - 11/10/2023 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [584152] [Unsigned] =>.Microsoft Corporation
[MD5.FFE0E3844802DFC4C783FB745DF34DC9] - 11/10/2023 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation
[MD5.3C31E4C2BFBDEF9A412F59F788E5B3DF] - 11/10/2023 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2844016] [Unsigned] =>.Microsoft Corporation
[MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation
[MD5.4D437E9763F74517E7799B0569A5E17F] - 11/10/2023 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.FE64EC423603644DCFB39CE9539A046E] - 11/10/2023 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
[MD5.ACA4E52E500D39B5F24EAEAB441AEC59] - 11/10/2023 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118744] [Unsigned] =>.Microsoft Corporation
[MD5.0CB8B8D76F858E23339F1EA16B820F19] - 11/10/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [431080] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES SERVICES (Non désactivés) (3) - 4s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atiesrxx.exe =>.Advanced Micro Devices, Inc.®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.®
O23 - Service: Wondershare Native Push Service (NativePushService) . (.Wondershare - NativePushService.) - C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe =>.Wondershare Technology Group Co.,Ltd®
---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (130) - 17s
SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SR - Demand [31/08/2022] [ 48896] Lenovo Virtual Power Controlle (ACPIVPC) . (.Lenovo Group Ltd..) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo®
SR - Disabl [20/09/2023] [ 173040] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.®
SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Auto [22/04/2020] [ 532704] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atiesrxx.exe =>.Advanced Micro Devices, Inc.®
SR - Demand [16/09/2020] [ 7198128] Audio Coprocessr Driver for (amdacpbus) . (.Advanced Micro Devices.) - C:\Windows\System32\DriverStore\FileRepository\amdacpbus.inf_amd64_d6bd50421f1ddd7b\amdacpbus.sys =>.Microsoft®
SR - Demand [10/09/2019] [ 351536] Service for AMD KSL Filter Driver (amdacpksl) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdacpksl.sys =>.Advanced Micro Devices, Inc.®
SR - Demand [18/06/2021] [ 54984] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC.®
SR - Demand [18/06/2021] [ 76456] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys =>.Advanced Micro Devices INC.®
SR - Demand [22/04/2020] [66050584] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atikmdag.sys =>.Advanced Micro Devices, Inc.®
SR - Demand [22/04/2020] [ 598760] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atikmpag.sys =>.Advanced Micro Devices, Inc.®
SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Demand [09/10/2020] [ 35976] Apple Lower Filter (AppleLowerFilter) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,132303256403278908®
SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Disabl [23/08/2020] [ 384416] AtherosSvc (AtherosSvc) . (.Microsoft.) - C:\WINDOWS\System32\drivers\AdminService.exe =>.Microsoft®
SR - Demand [09/06/2020] [ 107936] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Disabl [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Demand [23/08/2020] [ 99576] BtFilter (BtFilter) . (.Qualcomm.) - C:\WINDOWS\System32\drivers\btfilter.sys =>.Qualcomm Atheros®
SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft®
SR - Demand [08/10/2021] [ 160376] SAMSUNG Mobile USB Com (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics Co., Ltd.®
SR - Disabl [22/12/2020] [ 2205144] Dolby DAX API Service (DolbyDAXAPI) . (.Dolby Laboratories.) - C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_925ded1d9428eaee\DAX3API.exe =>.Dolby Laboratories, Inc.®
SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - System [23/10/2023] [ 158640] Malwarebytes Anti-Exploit (ESProtectionDriver) . (.Malwarebytes.) - C:\WINDOWS\system32\drivers\mbae64.sys =>.Microsoft®
SR - Demand [29/03/2020] [ 743872] ELAN PS/2 Port Input Device (ETD) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\drivers\ETD.sys =>.ELAN MICROELECTRONICS CORPORATION®
SR - Demand [29/03/2020] [ 30144] ELAN HID Class Filter Service (ETDHCF) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\drivers\ETDHCF.sys =>.ELAN MICROELECTRONICS CORPORATION®
SR - Disabl [29/03/2020] [ 254912] ELAN Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\ETDService.exe =>.ELAN MICROELECTRONICS CORPORATION®
SR - Disabl [28/06/2021] [ 437160] ExpressVPN Service (ExpressVPNService) . (.ExpressVPN.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN
SR - Demand [28/06/2021] [ 37024] expressvpnsplittunnel (expressvpnsplittunnel) . (.ExpressVPN.) - C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys =>.ExprsVPN LLC®
SR - Demand [27/11/2020] [ 38224] Wintun (expressvpnwintun) . (.ExpressVPN.) - C:\WINDOWS\System32\drivers\expressvpn-wintun.sys =>.Express VPN International Ltd.®
SR - Disabl [20/12/2020] [ 334728] Fortemedia APO Control Service (FMAPOService) . (.Fortemedia.) - C:\WINDOWS\System32\FMService64.exe =>.Microsoft®
SS - Demand [16/10/2023] [ 1803552] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files\Google\Chrome\Application\118.0.5993.89\elevation_service.exe =>.Google LLC®
SR - Disabl [23/03/2021] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
SS - Demand [23/03/2021] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
SR - Auto [02/11/2018] [ 84752] VMware hcmon (hcmon) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\hcmon.sys =>.VMware, Inc.®
SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft®
SR - Disabl [00/00/0000] [ 0] System Interface Foundation S (ImControllerService) . (...) - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (.not file.) [Unsigned] =>.Lenovo Group Limited
SR - Demand [24/12/2020] [ 6005344] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.®
SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Disabl [26/09/2008] [ 265216] JumpStart Push-Button Service (jswpbapi) . (.Atheros Communications, Inc..) - C:\Program Files (x86)\Jumpstart\jswpbapi.exe [Unsigned] =>.Atheros Communications, Inc.
SS - Demand [26/09/2008] [ 954368] JumpStart Wi-Fi Protected Setup (jswpsapi) . (.Atheros Communications, Inc..) - C:\Program Files (x86)\Jumpstart\jswpsapi.exe [Unsigned] =>.Atheros Communications, Inc.
SR - System [15/05/2008] [ 26624] JumpStart Wireless Filter Driver (JSWPSLWF) . (.Atheros Communications, Inc..) - C:\WINDOWS\System32\DRIVERS\jswpslwfx.sys [Unsigned] =>.Atheros Communications, Inc.
SR - Demand [14/06/2022] [ 47888] LenovoBoost (LenovoBoost) . (.Lenovo Group Ltd..) - C:\WINDOWS\System32\DRIVERS\vanboost.sys =>.Lenovo®
SR - Disabl [14/07/2023] [ 34176] LenovoVantageService (LenovoVantageService) . (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe {0D2ABA553D54DB0A1B7D316C23A0616C}. =>.Lenovo
SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Auto [23/10/2023] [ 222800] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft®
SR - Boot [23/10/2023] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft®
SR - Demand [23/10/2023] [ 200104] MBAMFarflt (MBAMFarflt) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\farflt.sys =>.Microsoft®
SR - Demand [23/10/2023] [ 78400] MBAMProtection (MBAMProtection) . (.Malwarebytes.) - C:\WINDOWS\system32\DRIVERS\mbam.sys =>.Microsoft®
SR - Auto [23/10/2023] [ 9341488] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.®
SR - Demand [23/10/2023] [ 239544] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft®
SR - Demand [23/10/2023] [ 188016] MBAMWebProtection (MBAMWebProtection) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc.®
SS - Demand [28/07/2020] [ 1295000] McSecDashboardService (McSecDashboardService) . (.McAfee, LLC.) - C:\Program Files\McAfeeDashboard\McSecDashboardService.exe =>.McAfee, LLC®
SR - Disabl [04/12/2014] [ 405136] MediatekRegistryWriter (MediatekRegistryWriter) . (.Mediatek Inc..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry.exe =>.MEDIATEK INC.®
SR - Disabl [04/12/2014] [ 454288] MediatekRegistryWriter64 (MediatekRegistryWriter64) . (.Mediatek Inc..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry64.exe =>.MEDIATEK INC.®
SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft®
SS - Demand [14/08/2023] [ 241056] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Auto [17/09/2022] [ 755600] Wondershare Native Push Service (NativePushService) . (.Wondershare.) - C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe =>.Wondershare Technology Group Co.,Ltd®
SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Demand [19/11/2015] [ 2244952] RT2870 USB Extensible (netr28ux) . (.MediaTek Inc..) - C:\WINDOWS\System32\drivers\netr28ux.sys =>.MEDIATEK INC.®
SR - System [00/00/0000] [ 0] Npcap Packet Driver (NPCAP) (npcap) . (...) - C:\WINDOWS\System32\DRIVERS\npcap.sys (.not file.) [Unsigned]
SR - Disabl [00/00/0000] [ 0] Npcap Packet Driver (NPCAP) (Wi- (npcap_wifi) . (...) - C:\WINDOWS\System32\DRIVERS\npcap.sys (.not file.) [Unsigned]
SR - Auto [01/03/2013] [ 36600] NetGroup Packet Filter Driver (NPF) . (.Riverbed Technology, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.Riverbed Technology, Inc.®
SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SR - System [15/01/2013] [ 129184] Oracle VDC USB Monitor Driver (OVDCUSBMon) . (.Oracle Corporation.) - C:\WINDOWS\System32\DRIVERS\OVDCUSBMon.sys =>.Oracle America, Inc.®
SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft®
SR - Demand [08/07/2020] [ 2439944] Qualcomm Atheros Extensi (Qcamain10x64) . (.Qualcomm Atheros, Inc..) - C:\WINDOWS\System32\drivers\Qcamain10x64.sys =>.Qualcomm Atheros®
SR - Disabl [08/07/2020] [ 191752] Qualcomm Atheros WLAN Driver Service (QcomWlanSrv) . (.Qualcomm Technologies Inc..) - C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe =>.Qualcomm Atheros®
SR - Disabl [06/04/2022] [ 48856] RealtekWlanU (RealtekWlanU) . (.Realtek.) - C:\Program Files (x86)\Tenda\TeWlanCuRt\RtlService.exe =>.Realtek Semiconductor Corp®
SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.®
SR - Demand [03/11/2020] [ 1155080] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.®
SR - Disabl [24/12/2020] [ 1219312] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_74518f403e753586\RtkAudUService64.exe =>.Realtek Semiconductor Corp.®
SR - Disabl [06/04/2022] [ 262360] Realtek DHCP Service (RTLDHCPService) . (.Realtek.) - C:\Program Files (x86)\Tenda\TeWlanCuRt\RTLDHCP.exe =>.Realtek Semiconductor Corp®
SR - Demand [01/09/2022] [ 7978296] Realtek Wireless (RtlWlanu) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\rtwlanu.sys =>.Realtek Semiconductor Corp.®
SR - Disabl [01/09/2022] [ 44760] RunSwUSB (RunSwUSB) . (.Realtek Semiconductor Corp.) - C:\Windows\runSW.exe =>.Realtek Semiconductor Corp®
SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft®
SR - Demand [08/10/2021] [ 167544] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.®
SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Demand [20/08/2020] [ 52904] ExpressVPN TAP Adapter (tapexpressvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapexpressvpn.sys =>.ExprsVPN LLC®
SR - Demand [28/05/2021] [ 49024] TAP-ProtonVPN Windows Adapte (tapprotonvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapprotonvpn.sys =>.Microsoft®
SR - Demand [18/01/2022] [ 37288] TDKLIB (TDKLIB) . (. {411882032859087BEA5FDD62C591749A}..) - c:\Windows\TempInst\TdkLib64.sys {411882032859087BEA5FDD62C591749A}.
SR - Disabl [05/05/2019] [ 100784] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
SR - Boot [27/04/2019] [ 105488] VMware VMCI Bus Dri (vmci) . (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmci.sys =>.VMware, Inc.®
SR - Demand [05/05/2019] [ 46096] VMware Virtual Et (VMnetAdapter) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetadapter.sys =>.VMware, Inc.®
SR - Auto [05/05/2019] [ 66576] VMware Bridge Protocol (VMnetBridge) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetbridge.sys =>.VMware, Inc.®
SR - Disabl [05/05/2019] [ 374192] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
SR - Auto [05/05/2019] [ 44048] VMware Virtual Ethernet Userif for VMnet (VMnetuserif) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetuserif.sys =>.VMware, Inc.®
SR - Disabl [02/11/2018] [ 929712] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
SR - Disabl [05/05/2019] [ 396208] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
SR - Disabl [05/05/2019] [15446448] VMware Workstation Server (VMwareHostd) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
SR - Auto [05/05/2019] [ 99136] VMware vmx86 (vmx86) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmx86.sys =>.VMware, Inc.®
SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [27/04/2019] [ 92040] vSockets Virtual Machine Communication Interface Sockets dr (vsock) . (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vsock.sys =>.VMware, Inc.®
SR - Auto [28/02/2018] [ 52576] Vstor2 MntApi 2.0 Driver (shared) (vstor2-mntapi20-shared) . (.VMware, Inc..) - C:\Windows\SysWOW64\drivers\vstor2-x64.sys =>.VMware, Inc.®
SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [26/02/2018] [ 35584] WD SCSI Pass Thru driver (WDC_SAM) . (.Western Digital Technologies, Inc..) - C:\WINDOWS\System32\drivers\wdcsam64.sys =>.WDKTestCert wdclab,130885612892544312®
SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft®
SR - Demand [09/01/2022] [ 489368] WireGuard (WireGuard) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wireguard.sys =>.Microsoft®
---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (42) - 14s
O38 - TASK: {0DDE10E3-44A8-45FC-AA94-9B9A4A8A0C2D} [64Bits][\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {15540689-68DA-4908-9A10-BAD78C1DAB0E} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200] =>.Adobe Inc.
O38 - TASK: {3A7ECCA2-4BFC-40F6-A286-11DC593A88F1} [64Bits][\PrivaZer_SkipUAC] - (.Goversoft LLC - PrivaZer.) -- C:\Program Files (x86)\PrivaZer\PrivaZer.exe [21973472] =>.Goversoft LLC
O38 - TASK: {41A554BA-9EE9-4824-9EC2-F5BA8705D422} [64Bits][\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {425D606B-F46C-4744-860C-EBA8BA3B8F22} [64Bits][\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {4680091E-B12B-4225-821F-A8C6E9786B41} [64Bits][\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {4E3E612F-4CF3-4752-B582-59789725B685} [64Bits][\Lenovo\Vantage\Schedule\GenericMessagingAddin] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {51C81DA5-8A1E-41ED-A00B-278FA8E2BBA2} [64Bits][\Opera scheduled assistant Autoupdate 1664461026] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe [2820000] =>.Opera Software
O38 - TASK: {78DBFFB1-55CB-46C9-AB5C-1FEE8EED1FE5} [64Bits][\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {88D9E8E1-BE5E-4166-AF20-B37CB90A1B79} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [733088] =>.Mozilla Foundation
O38 - TASK: {91BCB7B7-5DBF-48F7-818B-BF8CDAE92449} [64Bits][\Lenovo\Vantage\Schedule\DailyTelemetryTransmission] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {99F7600F-2052-439B-9B00-DF0DD2205337} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [686496] =>.Mozilla Corporation
O38 - TASK: {9C64020D-0FEB-4638-B30A-C21910E477EA} [64Bits][\Opera scheduled Autoupdate 1664461015] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe [2820000] =>.Opera Software
O38 - TASK: {A6A684C0-4E3E-40DF-A31A-D2D3A70AEBAB} [64Bits][\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {A91EFA54-EC4F-4B82-ABE3-CBCE23DF36E0} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] =>.Google LLC
O38 - TASK: {AAFF8360-22FB-46BA-B4FD-C57CE004ADD7} [64Bits][\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {BD6B8039-1E81-4B02-BC4D-0ED4A70F6F3F} [64Bits][\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {BED9939F-284B-4F49-A78C-0EF441BD7F08} [64Bits][\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.SScan] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
O38 - TASK: {E010190D-8333-4559-B745-8B50A2CD0077} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] =>.Google LLC
O38 - TASK: {E5A0169E-C37D-4137-9D8A-DFAD256B4F8E} [64Bits][\HPCustParticipation HP Deskjet 2540 series] - (.Hewlett-Packard Development Company, LP - HP Customer Participation..) -- C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe [5744800] =>.Hewlett-Packard Development Company, LP
O38 - TASK: {F8ADCF9C-0237-46A0-B29F-949F7FFBFF5B} [64Bits][\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent] - (.Lenovo - ScheduleEventAction.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040] =>.Lenovo
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [Lenovo.Vantage.SmartPerformance.MonthlyReport] =>.Lenovo
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc.
C:\WINDOWS\System32\Tasks\PrivaZer_SkipUAC - (.Goversoft LLC.) -- C:\Program Files (x86)\PrivaZer\PrivaZer.exe [$(Arg0)] =>.Goversoft LLC
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [BatteryGaugeAddinDailyScheduleTask] =>.Lenovo
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [VantageCoreAddinWeekScheduleTask] =>.Lenovo
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [SmartPerformance.ExpireReminder] =>.Lenovo
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [GenericMessagingAddin] =>.Lenovo
C:\WINDOWS\System32\Tasks\Opera scheduled assistant Autoupdate 1664461026 - (.Opera Software.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe [--scheduledautoupdate --component-name=assistant --component-path="C:\Users\utilisateur\AppData\Loca] =>.Opera Software
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [LenovoCompanionAppAddinDailyScheduleTask] =>.Lenovo
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [DailyTelemetryTransmission] =>.Lenovo
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation
C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1664461015 - (.Opera Software.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe [--scheduledautoupdate .--scheduledautoupdate] =>.Opera Software
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [HeartbeatAddinDailyScheduleTask] =>.Lenovo
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google LLC
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [SettingsWidgetAddinDailyScheduleTask] =>.Lenovo
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [LenovoSystemUpdateAddin_WeeklyTask] =>.Lenovo
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.SScan - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [Lenovo.Vantage.SmartPerformance.SScan] =>.Lenovo
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google LLC
C:\WINDOWS\System32\Tasks\HPCustParticipation HP Deskjet 2540 series - (.Hewlett-Packard Development Company, LP.) -- C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe [/UA 13.6] =>.Hewlett-Packard Development Company, LP
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent - (.Lenovo.) -- C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [IdeaNotebookAddinDailyEvent] =>.Lenovo
---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (7) - 0s
O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_74518f403e753586\RtkAudUService64.exe =>.Realtek Semiconductor Corp.®
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_6B534BD567A4A5CA4AE9CB856A0A8850] . (...) -- . [Unsigned]
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000
O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000
O4 - HKUS\S-1-5-21-3928260950-946043761-2991698823-1001\..\Run: [MicrosoftEdgeAutoLaunch_6B534BD567A4A5CA4AE9CB856A0A8850] . (...) -- . [Unsigned]
---\\ PROCESSUS LANCES (48) - 20s
[MD5.5E7168689FFF3693E71DD60002E72B56] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atiesrxx.exe [532704] [PID.2540] =>.Advanced Micro Devices, Inc.®
[MD5.EAFF3C0AD1D940C848679BC443349F5A] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atieclxx.exe [769288] [PID.2680] =>.Advanced Micro Devices, Inc.®
[MD5.E8C41129B6610679723D6FA104DD6F4F] - (.Wondershare - NativePushService.) -- C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe [755600] [PID.4124] =>.Wondershare Technology Group Co.,Ltd®
[MD5.F6E78A428F37C131B052B8B2AD66B3A9] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [806872] [PID.6512] =>.Microsoft®
[MD5.090E6CD78C20DB3E7305AED4235B6DF3] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [9248256] [PID.4876] =>.Malwarebytes Inc.®
[MD5.C404092A3C6A27BA64082FF9BA662D88] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_74518f403e753586\RtkAudUService64.exe [1219312] [PID.9180] =>.Realtek Semiconductor Corp.®
[MD5.AB506613CB217E09396F03D0B601824A] - (.Realtek Semiconductor - Realtek Audio Console.) -- C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj\RtkUWP.exe [466608] [PID.8540] =>.Realtek Semiconductor Corp.®
[MD5.180DF7A8FE9E1D98C1A8882BFB652CE5] - (.Lenovo - Lenovo Hotkeys.) -- C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.4.60.0_x64__5grkq8ppsgwt4\LaunchUtility\utility.exe [2989592] [PID.10052] {0239535707D7316104745908469035F8}. =>.Lenovo
[MD5.185D7FDF981E41F62B9F32F61D24DB18] - (...) -- C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2341.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe [293376] [PID.10156] [Unsigned]
[MD5.A11CE10AC47F5F83B9BC980567331A1B] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe [301856] [PID.11104] =>.Google LLC®
[MD5.B659663611A4C2216DFF5AB1B60DD089] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe [402208] [PID.11168] =>.Google LLC®
[MD5.A9CCD5974308C40CBE6946B5E53D2DE9] - (.VS Revo Group - Revo Uninstaller.) -- C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe [15111408] [PID.9564] =>.VS Revo Group Ltd.®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.5388] =>.Opera Norway AS®
[MD5.61E843BBCB798AEB32610E4AEA15C9C7] - (.Opera Software - Opera crash-reporter.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera_crashreporter.exe [2484640] [PID.1228] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.5468] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.2644] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.2156] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.6292] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.10624] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.8312] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.4256] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.11116] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.1432] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.5620] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.7484] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.6296] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.8288] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.9124] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.6312] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.3172] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.9964] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.6372] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.10428] =>.Opera Norway AS®
[MD5.B32CE8DC420289061B40435FAD1837A2] - (.Wondershare - ToastNotification.) -- C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe [2317712] [PID.12388] =>.Wondershare Technology Group Co.,Ltd®
[MD5.03742FA1B9AF4C042FB8031601C3DDFD] - (.Adobe Systems Incorporated - Acrobat Collaboration Synchronizer 23.6.) -- C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11516888] [PID.12648] =>.Adobe Inc.®
[MD5.03742FA1B9AF4C042FB8031601C3DDFD] - (.Adobe Systems Incorporated - Acrobat Collaboration Synchronizer 23.6.) -- C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11516888] [PID.10540] =>.Adobe Inc.®
[MD5.56D0881DF1E6AA6518BBC0C347D0E73C] - (...) -- C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe [436744] [PID.9040] =>.Adobe Systems, Incorporated®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.12728] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.12304] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.10716] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.3744] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.2628] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.6388] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.728] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.6756] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.9088] =>.Opera Norway AS®
[MD5.12E6A24E3CBCE3646035537E2B44D484] - (.Opera Software - Opera Internet Browser.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe [1573792] [PID.12612] =>.Opera Norway AS®
[MD5.48471955F53AB152E141582654DF4841] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\utilisateur\AppData\Roaming\ZHP\ZHPSuite.exe [3512480] [PID.5848] [Unsigned] =>.Nicolas Coolman
---\\ CHROME, Démarrage, Recherche, Extensions (7) - 1s
G2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [caljgklbbfbcjjanaijlacgncafpegll] Avira Password Manager =>.Avira Software
G2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Operations GmbH & Co. KG =>.Avira Software
G2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [utilisateur][User Data\Default\Local Extension Settings] [caljgklbbfbcjjanaijlacgncafpegll] =>.Avira Software
G2 - GCE: Preference [utilisateur][User Data\Default\Local Extension Settings] [flliilndjeohchalpbbcdekjklbdgfkk] =>.avira.com {Protection Web Avira}
G2 - GCE: Preference [utilisateur][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (26) - 4s
P2 - EXT FILE: (...) -- C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\extensions\antitrack@avg.com.xpi [Unsigned]
P2 - EXT FILE: (...) -- C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\extensions\browsec@browsec.com.xpi [Unsigned]
P2 - EXT FILE: (.uBlock Origin.) -- C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\extensions\uBlock0@raymondhill.net.xpi [Unsigned] =>.uBlock Origin
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla
P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\bookmarkbackups =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\browser-extension-data =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\crashes =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\datareporting =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\extensions =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\features =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\gmp =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\gmp-widevinecdm =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\minidumps =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\personality-provider =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\saved-telemetry-pings =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\security_state =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\settings =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\shader-cache =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\storage =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\weave =>Mozilla Corporation
C:\Users\utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\0438yx0s.default-release-1610082843701\browser-extension-data\reset-search-defaults@mozilla.com =>Mozilla Corporation
---\\ OPERA, Démarrage,Recherche,Plugins (5) - 0s
B2 - EXT: [Opera Software AS] C:\Users\utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk =>.Opera Software AS
B2 - EXT: [Opera Norway AS] C:\Users\utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk =>.Opera Norway AS
B2 - EXT: [Opera Norway AS] C:\Users\utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm =>.Opera Norway AS
B2 - EXT: [Opera Software AS] C:\Users\utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk =>.Opera Software AS
B2 - EXT: [Opera] C:\Users\utilisateur\AppData\Roaming\Opera Software\Opera Stable\Extensions\ompjkhnkeoicimmaehlcmgmpghobbjoj
---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.3570 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation
---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (6) - 1s
E2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [emgfgdclgfeldebanedpihppahgngnle] Avira Password Manager =>.Avira Software
E2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
E2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate
E2 - GCE: Preference [utilisateur][User Data\Default\Extensions] [kclpjmhngbacampgcdojmiedamjbgjjm] Connective signing extension
E2 - GCE: Preference [utilisateur][User Data\Default\Local Extension Settings] [emgfgdclgfeldebanedpihppahgngnle] =>.Avira Software
E2 - GCE: Preference [utilisateur][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
---\\ INTERNET EXPLORER,Proxy Management (4) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft
---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=
---\\ ETUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (40)
---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.61\BHO\ie_to_edge_bho_64.dll =>.Microsoft®
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll =>.Sun Microsystems, Inc.®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll =>.Sun Microsystems, Inc.®
---\\ RACCOURCIS GLOBAL STARTUP (83) - 13s
O4 - GS\Desktop [utilisateur]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft®
O4 - GS\Desktop [utilisateur]: Coinbase.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe --profile-directory=Default --app-id=nooamfkkjnpfcggbmginhieempgenhhe --app-url=http://www.coinbase.com/ =>.Microsoft Corporation
O4 - GS\Desktop [utilisateur]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse®
O4 - GS\Desktop [utilisateur]: Mediatek Wireless Utility (2).lnk . (.Mediatek Inc. - Mediatek Wireless LAN Card Utility.) C:\Program Files (x86)\MediatekWiFi\Common\RaUI.exe -s [Unsigned] =>.MediaTek Inc.
O4 - GS\Desktop [utilisateur]: Mediatek Wireless Utility.lnk . (.Mediatek Inc. - Mediatek Wireless LAN Card Utility.) C:\Program Files (x86)\MediatekWiFi\Common\RaUI.exe -s [Unsigned] =>.MediaTek Inc.
O4 - GS\Desktop [utilisateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe =>.Opera Norway AS®
O4 - GS\Desktop [utilisateur]: OpenOffice 4.1.11.lnk . (.Apache Software Foundation - OpenOffice 4.1.11.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe [Unsigned] =>.Apache Software Foundation
O4 - GS\Desktop [utilisateur]: Prevent Restore.lnk . (.PrivacyRoot IFG - Prevent Restore.) C:\Program Files (x86)\Prevent Restore\PreventRestore.exe =>.Yury Saprykin®
O4 - GS\Desktop [utilisateur]: PrivaZer_free (1).exe - Raccourci.lnk . (.Goversoft LLC - PrivaZer setup.) C:\Users\utilisateur\Downloads\PrivaZer_free (1).exe =>.Goversoft LLC®
O4 - GS\Desktop [utilisateur]: Signal.lnk . (.Signal Messenger, LLC - Signal.) C:\Users\utilisateur\AppData\Local\Programs\signal-desktop\Signal.exe =>.Signal Messenger, LLC®
O4 - GS\Desktop [utilisateur]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) C:\Users\utilisateur\AppData\Roaming\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC®
O4 - GS\Desktop [utilisateur]: Thorium.lnk . (.EDRLab - Thorium.) C:\Users\utilisateur\AppData\Local\Programs\EDRLab.ThoriumReader\Thorium.exe [Unsigned]
O4 - GS\Desktop [utilisateur]: WhatsApp.lnk . (.WhatsApp - WhatsApp (Outdated).) C:\Users\utilisateur\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp LLC®
O4 - GS\Desktop [utilisateur]: WickrMe.lnk . (...) C:\Users\utilisateur\AppData\Local\Programs\Wickr Inc\WickrMe\WickrMe.exe {057039B86A2400AA490CE510289684C1}.
O4 - GS\Desktop [utilisateur]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\utilisateur\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [utilisateur]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC
O4 - GS\Quicklaunch [utilisateur]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\Quicklaunch [utilisateur]: PokerStars.be.lnk . (.Rational Intellectual Holdings Ltd. - PokerStars Updater Client Software.) C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe {0FEA4E387D3DCF704C4418D181951DB5}.
O4 - GS\Quicklaunch [utilisateur]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe {009C91D8D991C56342F031B82DA330CCAF}. =>.Goversoft LLC
O4 - GS\Quicklaunch [utilisateur]: WickrMe.lnk . (...) C:\Users\utilisateur\AppData\Local\Programs\Wickr Inc\WickrMe\WickrMe.exe {057039B86A2400AA490CE510289684C1}.
O4 - GS\Quicklaunch [utilisateur]: WinPT.lnk . (. 2001, 2002, 2003 Timo Schulz - Windows Privacy Tray (WinPT).) C:\Program Files (x86)\Windows Privacy Tools\WinPT\WinPT.exe [Unsigned]
O4 - GS\sendTo [utilisateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [utilisateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [utilisateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [utilisateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe =>.Opera Norway AS®
O4 - GS\TaskBar [utilisateur]: WhatsApp.lnk . (.WhatsApp - WhatsApp (Outdated).) C:\Users\utilisateur\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp LLC®
O4 - GS\Programs [utilisateur]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\utilisateur\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft®
O4 - GS\Programs [utilisateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe =>.Opera Norway AS®
O4 - GS\Programs [utilisateur]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Navigation privée de Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe [Unsigned] =>.Mozilla Corporation
O4 - GS\Programs [utilisateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\utilisateur\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [utilisateur]: Signal.lnk . (.Signal Messenger, LLC - Signal.) C:\Users\utilisateur\AppData\Local\Programs\signal-desktop\Signal.exe =>.Signal Messenger, LLC®
O4 - GS\Programs [utilisateur]: Thorium.lnk . (.EDRLab - Thorium.) C:\Users\utilisateur\AppData\Local\Programs\EDRLab.ThoriumReader\Thorium.exe [Unsigned]
O4 - GS\Programs [utilisateur]: WickrMe.lnk . (...) C:\Users\utilisateur\AppData\Local\Programs\Wickr Inc\WickrMe\WickrMe.exe {057039B86A2400AA490CE510289684C1}.
O4 - GS\CommonDesktop [Public]: Achat de consommables - HP Deskjet 2540 series.lnk . (.Hewlett-Packard Development Company, LP - .) C:\Program Files (x86)\HP\HP Deskjet 2540 series\Bin\hpqDTSS.exe [Unsigned] =>.Hewlett-Packard Development Company, LP
O4 - GS\CommonDesktop [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\CommonDesktop [Public]: ExpressVPN.lnk . (.ExpressVPN - ExpressVPN.) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC
O4 - GS\CommonDesktop [Public]: HP Deskjet 2540 series.lnk . (.Hewlett-Packard Development Company, LP - .) C:\Program Files (x86)\HP\HP Deskjet 2540 series\Bin\HP Deskjet 2540 series.exe -Start UDCDevicePage [Unsigned] =>.Hewlett-Packard Development Company, LP
O4 - GS\CommonDesktop [Public]: HP Print and Scan Doctor.lnk . (...) C:\Program Files (x86)\HP\Diagnostics\PSDR\HPPSDr.exe =>.HP Inc.®
O4 - GS\CommonDesktop [Public]: Jumpstart.lnk . (.Atheros Communications, Inc. - Jumpstart for Wireless.) C:\Program Files (x86)\Jumpstart\jswscapp.exe [Unsigned] =>.Atheros Communications, Inc.
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes
O4 - GS\CommonDesktop [Public]: Mexc.exe.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{B3EBC84E-C577-4BE7-B065-AEDD1740B47D}\MexcBrowser.exe1_8A0B1D9A95654289BE40C0238E290846.exe [Unsigned] =>.Flexera Software LLC
O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GPL) source code editor.) C:\Program Files\Notepad++\notepad++.exe =>.Notepad++®
O4 - GS\CommonDesktop [Public]: OBS Studio.lnk . (.OBS - OBS Studio.) C:\Program Files\obs-studio\bin\64bit\obs64.exe =>.Hugh Bailey®
O4 - GS\CommonDesktop [Public]: Oracle Virtual Desktop Client.lnk . (.Oracle Corporation - Oracle Virtual Desktop Client.) C:\Program Files (x86)\Oracle\Virtual Desktop Client\ovdc.exe [Unsigned] =>.Oracle Corporation
O4 - GS\CommonDesktop [Public]: PokerStars.be.lnk . (.Rational Intellectual Holdings Ltd. - PokerStars Updater Client Software.) C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe {0FEA4E387D3DCF704C4418D181951DB5}.
O4 - GS\CommonDesktop [Public]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.®
O4 - GS\CommonDesktop [Public]: Tenda Wireless Utility.lnk . (...) C:\Program Files (x86)\Tenda\TeWlanCuRt\TeWlanCuRt.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\CommonDesktop [Public]: Wondershare Filmora 12.lnk . (.Wondershare - Wondershare Filmora 12.) C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare Filmora (FR) (CPC)\Wondershare Filmora Launcher.exe {02F93506DFD71C8A5A615270291C7525}. =>.Wondershare
O4 - GS\Programs [Public]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\utilisateur\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft®
O4 - GS\Programs [Public]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe =>.Opera Norway AS®
O4 - GS\Programs [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Navigation privée de Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe [Unsigned] =>.Mozilla Corporation
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\utilisateur\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Programs [Public]: Signal.lnk . (.Signal Messenger, LLC - Signal.) C:\Users\utilisateur\AppData\Local\Programs\signal-desktop\Signal.exe =>.Signal Messenger, LLC®
O4 - GS\Programs [Public]: Thorium.lnk . (.EDRLab - Thorium.) C:\Users\utilisateur\AppData\Local\Programs\EDRLab.ThoriumReader\Thorium.exe [Unsigned]
O4 - GS\Programs [Public]: WickrMe.lnk . (...) C:\Users\utilisateur\AppData\Local\Programs\Wickr Inc\WickrMe\WickrMe.exe {057039B86A2400AA490CE510289684C1}.
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: ExpressVPN.lnk . (.ExpressVPN - ExpressVPN.) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Accéder à Internet.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] =>.Google LLC
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GPL) source code editor.) C:\Program Files\Notepad++\notepad++.exe =>.Notepad++®
O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe {009C91D8D991C56342F031B82DA330CCAF}. =>.Goversoft LLC
---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (7) - 1s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.128.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{cd675a8a-473a-4736-8ca9-c0434cf7ac19}: NameServer = 10.86.0.1 =>.Private IP
O17 - HKLM\System\CCS\Services\Tcpip\..\{00856999-2115-4db2-b44f-5210bde58cf5}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{275ac895-4633-4e7c-a786-504925c89654}: DhcpNameServer = 192.168.128.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{83924740-c3ba-4cda-b404-e56e5c236254}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{cb91471a-a703-44b2-be0d-a2c2cfe98220}: DhcpNameServer = 192.168.207.132 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{ead0ce0b-6880-401e-a160-e92ecc97238a}: DhcpNameServer = 192.168.128.1 =>.Local IP Adress
---\\ PROTOCOLE ADDITIONNEL (22) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\windows\system32\userinit.exe =>.Microsoft Corporation
---\\ CLE DE REGISTRE EXPLORER StartupApproved (43) - 2s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ares
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ExpressVPN4
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:565CB0C96E1507BEB688F23736795B40E0C04766._service_run
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:com.squirrel.Teams.Teams
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Adobe Reader Synchronizer =>.Adobe Inc.
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Prevent Restore Updates
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_6B534BD567A4A5CA4AE9CB856A0A8850
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:com.squirrel.WhatsApp.WhatsApp
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Opera Browser Assistant =>.Opera Software
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ares
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ExpressVPN4
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:565CB0C96E1507BEB688F23736795B40E0C04766._service_run
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:com.squirrel.Teams.Teams
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Adobe Reader Synchronizer =>.Adobe Inc.
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Prevent Restore Updates
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_6B534BD567A4A5CA4AE9CB856A0A8850
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:com.squirrel.WhatsApp.WhatsApp
[HKEY_USERS\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Opera Browser Assistant =>.Opera Software
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtkAudUService =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AVGUI.exe =>.AVG Software
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Eraser =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:ExpressVPNNotificationService
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Eraser =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:TeamsMachineInstaller
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:CCEnhancer
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:vmware-tray.exe =>.VMware
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:jswtrayutil
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:TeWlanCuRt
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Mediatek Wireless Utility.lnk
---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (7) - 1s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files\Google\Chrome\Application\118.0.5993.89\Installer\chrmstp.exe =>.Google LLC®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\118.0.2088.61\Installer\setup.exe =>.Microsoft®
---\\ LOGICIELS INSTALLES (48) - 34s
O42 - Logiciel: 7-Zip 21.07 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip [Unsigned] =>.Igor Pavlov
O42 - Logiciel: Adobe Acrobat (64-bit) - (.Adobe.) [HKLM][64Bits] -- {AC76BA86-1036-1033-7760-BC15014EA700} [Unsigned] =>.Adobe
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-018244601053} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Belgium e-ID viewer (x86) 5.1.2 (build 5886) - (.Belgian Government.) [HKLM][64Bits] -- {F3DC7F06-92FF-4C98-87F5-72C0B7865886} [Unsigned] =>.Belgian Government
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} [Unsigned] =>.Apple Inc.
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} [Unsigned] =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} [Unsigned] =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} [Unsigned] =>.Cisco Systems, Inc.
O42 - Logiciel: Étude pour l'amélioration du produit HP Deskjet 2540 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {2DA517DD-934C-4A1F-A8D9-B7B92E8E0C5E} [Unsigned] =>.Hewlett-Packard Co.
O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {336616d6-abef-4ff8-9afd-43ceb249ff9a} {5F2EB491801E284312FAC1CD67F32AED}. =>.ExpressVPN
O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {E5B9C3E5-889C-4F22-A959-F4B8760D8833} [Unsigned] =>.ExpressVPN (Hidden)
O42 - Logiciel: FileZilla Client 3.57.0 - (.Tim Kosse.) [HKCU][64Bits] -- FileZilla Client [Unsigned] =>.Tim Kosse
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: HP Deskjet 2540 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {2FAD0F16-4309-4D22-AE73-F4CCA737D013} [Unsigned] =>.Hewlett Packard
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} [Unsigned] =>.Hewlett-Packard
O42 - Logiciel: Java(TM) 6 Update 35 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416035FF} [Unsigned] =>.Oracle
O42 - Logiciel: Jumpstart Installation Program - (.Atheros.) [HKLM][64Bits] -- {B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13} [Unsigned] =>.Atheros
O42 - Logiciel: Lenovo Vantage Service - (.Lenovo Group Ltd..) [HKLM][64Bits] -- VantageSRV_is1 {0D2ABA553D54DB0A1B7D316C23A0616C}. =>.Lenovo Group Ltd.
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 2540 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {5C64382D-43ED-42FB-8753-995B6917CD91} [Unsigned] =>.Hewlett-Packard Co.
O42 - Logiciel: Malwarebytes version 4.6.5.293 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.®
O42 - Logiciel: Mediatek RT2870 Wireless LAN Card - (.MediatekWiFi.) [HKLM][64Bits] -- {28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D} [Unsigned] =>.MediatekWiFi
O42 - Logiciel: MexcBrowser - (.mexc.) [HKLM][64Bits] -- {B3EBC84E-C577-4BE7-B065-AEDD1740B47D} [Unsigned]
O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 116.0.2 (x64 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla
O42 - Logiciel: Notepad++ (64-bit x64) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ [Unsigned] =>.Notepad++ Team
O42 - Logiciel: OBS Studio - (.OBS Project.) [HKLM][64Bits] -- OBS Studio [Unsigned] =>.OBS Project
O42 - Logiciel: OpenAL - (.Open Audio Library.) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc®
O42 - Logiciel: OpenOffice 4.1.11 - (.Apache Software Foundation.) [HKLM][64Bits] -- {89DCB28E-BB7B-41AA-8E58-F710C6C4F234} [Unsigned] =>.Apache Software Foundation
O42 - Logiciel: Opera Stable 103.0.4928.34 - (.Opera Software.) [HKCU][64Bits] -- Opera 103.0.4928.34 =>.Opera Norway AS®
O42 - Logiciel: Oracle Virtual Desktop Client - (.Oracle.) [HKLM][64Bits] -- {12C2BF22-366F-4FC1-BB69-A438BB5EBDBD} [Unsigned] =>.Oracle
O42 - Logiciel: PokerStars.be - (.PokerStars.be.) [HKLM][64Bits] -- PokerStars.be [Unsigned] =>.PokerStars.be
O42 - Logiciel: Prevent Restore version 2107.00 - (.PrivacyRoot IFG.) [HKLM][64Bits] -- Prevent Restore_is1 =>.Yury Saprykin®
O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM][64Bits] -- PrivaZer =>.Goversoft LLC®
O42 - Logiciel: Realtek USB Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- InstallShield_{DBCC4C27-F949-482b-B786-7B3B67587CD2} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Revo Uninstaller 2.4.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 =>.VS Revo Group Ltd.®
O42 - Logiciel: Signal 6.20.0 - (.Signal Messenger, LLC.) [HKCU][64Bits] -- 7d96caee-06e6-597c-9f2f-c7bb2e0948b4 =>.Signal Messenger, LLC®
O42 - Logiciel: Telegram Desktop - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC
O42 - Logiciel: Tenda Wireless Utility - (.Tenda.) [HKLM][64Bits] -- {198CC6BB-29D8-43DB-AF60-CEEF9DDF9F18} [Unsigned] =>.Tenda
O42 - Logiciel: Thorium 2.0.0 - (.EDRLab.) [HKCU][64Bits] -- 13998dff-ad91-57f4-b530-aa7ad6d4fea5 [Unsigned]
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {2B5DAA91-E0C9-4307-90B7-5688E910C894} [Unsigned] =>.VMware, Inc.
O42 - Logiciel: WhatsApp (Outdated) - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp =>.WhatsApp LLC®
O42 - Logiciel: WickrMe - (.Wickr Inc..) [HKLM][64Bits] -- {A92D6408-CCDC-4FCA-ADA7-52BB7C6251D8} [Unsigned]
O42 - Logiciel: Windows Privacy Tools - (.Windows Privacy Tools Team.) [HKLM][64Bits] -- Windows Privacy Tools [Unsigned]
O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst [Unsigned] =>.Riverbed Technology, Inc.
O42 - Logiciel: Wondershare Filmora 12(Build 12.0.9.1382) - (.Wondershare Software.) [HKCU][64Bits] -- Wondershare Filmora 12_is1 [Unsigned] =>.Wondershare Software
O42 - Logiciel: Wondershare Helper Compact 2.6.0 - (.Wondershare.) [HKLM][64Bits] -- {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 [Unsigned] =>.Wondershare
O42 - Logiciel: Wondershare NativePush(Build 1.0.0.7) - (..) [HKCU][64Bits] -- Wondershare NativePush_is1 [Unsigned]
---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (229) - 34s
HKLM\SOFTWARE\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AMD =>.AMD
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\AVG =>.AVG Software
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Dolby =>.Dolby
HKLM\SOFTWARE\DRWNewFree =>.EaseUS Software
HKLM\SOFTWARE\EASEUS =>.EaseUS Software
HKLM\SOFTWARE\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\Fortemedia =>.Lugert Europe
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\McAfeeDashboard =>.McAfee Inc.
HKLM\SOFTWARE\McAfeeMcUnInstShim =>.McAfee Inc.
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Notepad++ =>.Don Ho
HKLM\SOFTWARE\OBS Studio =>.OBS Studio
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\Applogon =>.Unknown
HKLM\SOFTWARE\WOW6432Node\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\WOW6432Node\AVG =>.AVG Software
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\HP =>.HP
HKLM\SOFTWARE\WOW6432Node\iMyfone =>.iMyFone
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo
HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Mediatek =>.Mediatek Corporation
HKLM\SOFTWARE\WOW6432Node\MediatekWiFi =>.Mediatek Corporation
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\OBS Studio =>.OBS Studio
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OldTimer Tools =>.OldTimer Tools
HKLM\SOFTWARE\WOW6432Node\OpenAL =>.Open Audio Library
HKLM\SOFTWARE\WOW6432Node\Proton Technologies AG =>.Proton Technologies AG
HKLM\SOFTWARE\WOW6432Node\REALTEK Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\RtWLan =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\SwUSB =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\TdkDrv
HKLM\SOFTWARE\WOW6432Node\TdkTool
HKLM\SOFTWARE\WOW6432Node\Tenda =>.Tenda
HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\13998dff-ad91-57f4-b530-aa7ad6d4fea5 =>Adware.CrossRider
HKCU\SOFTWARE\4kdownload.com =>.4kdownload.com
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\7d96caee-06e6-597c-9f2f-c7bb2e0948b4 =>Adware.CrossRider
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Aiseesoft Studio =>.Aiseesoft Studio
HKCU\SOFTWARE\AMD =>.AMD
HKCU\SOFTWARE\AnonymousVPN
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Atheros =>.Qualcomm Atheros
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\Aura
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\BEID =>.BEID
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\Bytefusion
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Discord =>.SUP.Discord
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\Elantech =>.Elantech Inc.
HKCU\SOFTWARE\Eraser =>.Sami Tolvanen
HKCU\SOFTWARE\ExpressVPN =>.ExpressVPN
HKCU\SOFTWARE\FileZilla Client =>.Tim Kosse
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Glarysoft =>.GlarySoft
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\GnuPG
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GSettings =>.Legitimate
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Imagination Technologies =>.Imagination Technologies
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Lenovo =>.Lenovo
HKCU\SOFTWARE\Looping
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\OpenOffice =>.SourceForge
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\PCurVersion =>.Unknown
HKCU\SOFTWARE\PopcornTime =>.SUP.PopcornTime
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SimonTatham =>.Simon Tatham
HKCU\SOFTWARE\Soda PDF Desktop 11 =>.Lulu Software
HKCU\SOFTWARE\soft Xpansion =>.soft Xpansion
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\SYNCJM =>.SYNCJM
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\Wickr, LLC
HKCU\SOFTWARE\WickrMe
HKCU\SOFTWARE\WinPT
HKCU\SOFTWARE\WixSharp =>.Legitimate
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Adobe =>.Adobe
HKU\.DEFAULT\SOFTWARE\AMD =>.AMD
HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\.DEFAULT\SOFTWARE\ATI =>.ATI
HKU\.DEFAULT\SOFTWARE\ExpressVPN =>.ExpressVPN
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\Lenovo =>.Lenovo
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape
HKU\.DEFAULT\SOFTWARE\PDF Tools AG =>.PDF Tools AG
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\13998dff-ad91-57f4-b530-aa7ad6d4fea5 =>Adware.CrossRider
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\4kdownload.com =>.4kdownload.com
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\7d96caee-06e6-597c-9f2f-c7bb2e0948b4 =>Adware.CrossRider
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Aiseesoft Studio =>.Aiseesoft Studio
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\AMD =>.AMD
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\AnonymousVPN
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Atheros =>.Qualcomm Atheros
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\ATI =>.ATI
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Aura
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\BEID =>.BEID
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Bytefusion
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Discord =>.SUP.Discord
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\ej-technologies =>.ej-technologies
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Elantech =>.Elantech Inc.
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Eraser =>.Sami Tolvanen
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\ExpressVPN =>.ExpressVPN
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\FileZilla Client =>.Tim Kosse
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Foxit Software =>.Foxit Software
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Glarysoft =>.GlarySoft
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\GNU =>.GNU
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\GnuPG
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\GSettings =>.Legitimate
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\HP =>.HP
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Imagination Technologies =>.Imagination Technologies
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\JavaSoft =>.JavaSoft
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Lenovo =>.Lenovo
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Looping
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\OpenOffice =>.SourceForge
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\PCurVersion =>.Unknown
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\PopcornTime =>.SUP.PopcornTime
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\SimonTatham =>.Simon Tatham
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Soda PDF Desktop 11 =>.Lulu Software
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\soft Xpansion =>.soft Xpansion
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\SYNCJM =>.SYNCJM
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Sysinternals =>.Sysinternals
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Wickr, LLC
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\WickrMe
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\WinPT
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\WixSharp =>.Legitimate
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Wondershare =>.Wondershare
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3928260950-946043761-2991698823-1001\SOFTWARE\ZHP =>.Nicolas Coolman
---\\ PACKAGES (22) - 1s
C:\Program Files (x86)\WindowsApps\28619Prajakta-Patil.VIDMATEDownloaderTUBE_1.1.1.0_x64__kxnpj9d1cxdgg - (.Prajakta-Patil.) [][All Video Downloader - TekTok, Fbook]
C:\Program Files (x86)\WindowsApps\28619Prajakta-Patil.VidmateTube-VideoDownloader_1.2.12.0_x64__kxnpj9d1cxdgg - (.Prajakta-Patil.) [][Vidmate Tube - Video Downloader]
C:\Program Files (x86)\WindowsApps\37309CoolLeGetInc.NPDFConverterPDFtoWordPDFtoSpree_2.3.21.0_neutral__g0y9d13zmhd68 - (..) [][PDF Converter Pro - Free]
C:\Program Files (x86)\WindowsApps\5259FreeSoftwareApps.ConvertDoctoPDF_1.1.8.0_x64__nzrphq7phantj - (.Free Software Apps.) [][Convert Doc to PDF]
C:\Program Files (x86)\WindowsApps\5319275A.WhatsAppDesktop_2.2341.3.0_x64__cv1g1gvanyjgm - (.WhatsApp Inc..) [][WhatsApp]
C:\Program Files (x86)\WindowsApps\58337MediaAppsDev.PDFOfficePDFEditorReaderMergerCr_1.0.78.0_x64__fwxdebw7hh1dt - (.Media Apps Dev.) [][PDF Office : PDF Editor PDF Reader]
C:\Program Files (x86)\WindowsApps\AdobeAcrobatReaderCoreApp_23.0.0.0_x64__pc75e8sa7ep4e - (..) [][Adobe Acrobat Reader]
C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.59462344778C5_10.19.40016.0_x64__0a9344xs7nr4m - (..) [][AMD Radeon™ Settings Lite]
C:\Program Files (x86)\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m - (..) [][AMD Radeon Software]
C:\Program Files (x86)\WindowsApps\AmazonVideo.PrimeVideo_1.0.148.0_x64__pwbj9vvecjh7j - (.Amazon Development Centre (London) Ltd.) [][Prime Video for Windows]
C:\Program Files (x86)\WindowsApps\AnywaySoftInc.AnyWordtoPDF_1.2.8.0_x64__0qkrc2qacwvfm - (.AnywaySoft, Inc..) [][Any Word to PDF]
C:\Program Files (x86)\WindowsApps\AnywaySoftInc.PDFConverter_2.0.9.0_x64__0qkrc2qacwvfm - (.AnywaySoft, Inc..) [][PDF Converter]
C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAudio_3.20800.804.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Audio] =>Dolby Laboratories
C:\Program Files (x86)\WindowsApps\E046963F.LenovoCompanion_10.2308.29.0_x64__k1h2ywk1493x8 - (.Lenovo Group Limited.) [][Lenovo Companion] =>Lenovo Group Limited
C:\Program Files (x86)\WindowsApps\E0469640.LenovoUtility_4.4.60.0_x64__5grkq8ppsgwt4 - (.Lenovo Group Limited.) [][Lenovo Hotkeys] =>Lenovo Group Limited
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.3570_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.3570.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r - (.Adobe Systems Incorporated.) [][Reader Notification Client] =>Adobe Systems Incorporated
C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][Realtek Audio Control] =>Realtek Semiconductor Corp
C:\Program Files (x86)\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0 - (.Spotify.) [][Spotify Music] =>Spotify
C:\Program Files (x86)\WindowsApps\www.coinbase.com-56A9286B_1.0.0.1_neutral__5apjyq3wses3m - (..) [][Coinbase]
C:\Program Files (x86)\WindowsApps\www.coinbase.com-7D93952_1.0.0.2_neutral__5apjyq3wses3m - (..) [][Coinbase]
---\\ CONTENU DES DOSSIERS PROGRAMMES (255) - 29s
O43 - CFD: 17/09/2020 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 08/07/2022 - [] D -- C:\Program Files\Adobe =>.Adobe Inc.®
O43 - CFD: 27/08/2022 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 15/01/2022 - [] D -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 12/01/2022 - [] D -- C:\Program Files\Google =>.Google LLC®
O43 - CFD: 27/10/2021 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 15/01/2022 - [] D -- C:\Program Files\Lenovo =>.Lenovo
O43 - CFD: 23/10/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 27/10/2021 - [] D -- C:\Program Files\McAfeeDashboard =>.McAfee Inc.
O43 - CFD: 16/08/2023 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 15/01/2022 - [] D -- C:\Program Files\Notepad++ =>.Don Ho
O43 - CFD: 05/10/2021 - [] D -- C:\Program Files\obs-studio =>.OBS-Studio
O43 - CFD: 17/09/2020 - [] D -- C:\Program Files\Oracle =>.Oracle
O43 - CFD: 12/10/2023 - [] D -- C:\Program Files\RUXIM =>.Microsoft®
O43 - CFD: 27/10/2021 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb
O43 - CFD: 01/09/2020 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 16/12/2020 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 14/11/2021 - [] D -- C:\Program Files (x86)\4KDownload =>.Open Media LLC®
O43 - CFD: 22/12/2020 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.®
O43 - CFD: 27/08/2022 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 01/09/2022 - [] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc.
O43 - CFD: 03/08/2021 - [] D -- C:\Program Files (x86)\ExpressVPN =>.ExprsVPN LLC®
O43 - CFD: 18/09/2020 - [] D -- C:\Program Files (x86)\GNU [Unsigned] =>.GNU
O43 - CFD: 23/10/2023 - [] D -- C:\Program Files (x86)\Google =>.Google LLC®
O43 - CFD: 08/01/2021 - [] D -- C:\Program Files (x86)\imyfone_down =>.iMyFone
O43 - CFD: 23/10/2023 - [] D -- C:\Program Files (x86)\Index.dat Suite
O43 - CFD: 23/09/2022 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 08/09/2022 - [] D -- C:\Program Files (x86)\Jumpstart =>.Jumpstart Inc
O43 - CFD: 12/01/2022 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo
O43 - CFD: 01/09/2022 - [] D -- C:\Program Files (x86)\MediatekWiFi =>.Mediatek Corporation
O43 - CFD: 18/10/2023 - [0] D -- C:\Program Files (x86)\MexcBrowser
O43 - CFD: 16/08/2023 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 18/10/2023 - [] D -- C:\Program Files (x86)\MxcBrowser [Unsigned]
O43 - CFD: 10/11/2021 - [] D -- C:\Program Files (x86)\OpenAL =>.Open Audio Library
O43 - CFD: 07/04/2022 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org
O43 - CFD: 16/05/2023 - [] D -- C:\Program Files (x86)\PokerStars.BE {0FEA4E387D3DCF704C4418D181951DB5}. =>.PokerStars.be
O43 - CFD: 29/01/2022 - [] D -- C:\Program Files (x86)\Prevent Restore =>.Yury Saprykin®
O43 - CFD: 16/10/2023 - [] D -- C:\Program Files (x86)\PrivaZer =>.Goversoft LLC
O43 - CFD: 01/09/2022 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 30/10/2021 - [] D -- C:\Program Files (x86)\RegCleaner =>.Jouni Vuorio
O43 - CFD: 31/08/2022 - [] D -- C:\Program Files (x86)\Tenda [Unsigned] =>.Tenda
O43 - CFD: 03/11/2021 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.®
O43 - CFD: 18/09/2020 - [] D -- C:\Program Files (x86)\Windows Privacy Tools [Unsigned]
O43 - CFD: 23/08/2022 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology
O43 - CFD: 17/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 12/10/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 23/08/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros =>.Qualcomm Atheros
O43 - CFD: 18/05/2023 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID =>.eID Belgium
O43 - CFD: 04/11/2022 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks =>.CodeBlocks Team
O43 - CFD: 27/08/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie =>.iMobie Inc
O43 - CFD: 01/09/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mediatek Wireless =>.Mediatek Corporation
O43 - CFD: 29/08/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mexc
O43 - CFD: 05/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio
O43 - CFD: 17/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle Virtual Desktop Client
O43 - CFD: 07/11/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.be =>.PokerStars.be
O43 - CFD: 19/06/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group
O43 - CFD: 31/08/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tenda =>.Tenda
O43 - CFD: 17/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 04/11/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware =>.VMware
O43 - CFD: 23/08/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology
O43 - CFD: 27/02/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare
O43 - CFD: 15/01/2022 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 27/08/2022 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 01/09/2022 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 23/08/2022 - [] D -- C:\ProgramData\Atheros =>.Qualcomm Atheros
O43 - CFD: 13/02/2023 - [] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 13/02/2023 - [0] D -- C:\ProgramData\Belgium Identity Card =>.Belgium Identity Card
O43 - CFD: 10/11/2021 - [0] D -- C:\ProgramData\dbg =>.DBG
O43 - CFD: 23/07/2020 - [] D -- C:\ProgramData\Dolby =>.Dolby
O43 - CFD: 15/01/2022 - [] D -- C:\ProgramData\ExpressVPN =>.ExpressVPN
O43 - CFD: 27/10/2021 - [0] D -- C:\ProgramData\Foxit Software =>.Foxit Software
O43 - CFD: 15/01/2022 - [] D -- C:\ProgramData\Glarysoft =>.GlarySoft
O43 - CFD: 20/04/2021 - [] RASHD -- C:\ProgramData\Key-Base =>.Unknown
O43 - CFD: 23/10/2023 - [] D -- C:\ProgramData\Lenovo =>.Lenovo
O43 - CFD: 23/10/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 01/09/2020 - [] D -- C:\ProgramData\McAfeeMcUnInstShim =>.McAfee Inc.
O43 - CFD: 18/12/2022 - [] D -- C:\ProgramData\Mediatek =>.Mediatek Corporation
O43 - CFD: 01/09/2022 - [] D -- C:\ProgramData\Mediatek Driver =>.Mediatek Corporation
O43 - CFD: 29/07/2022 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 16/08/2023 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation
O43 - CFD: 05/10/2021 - [] D -- C:\ProgramData\obs-studio-hook
O43 - CFD: 25/09/2020 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 03/11/2021 - [] D -- C:\ProgramData\privazer =>.Goversoft LLC
O43 - CFD: 12/01/2021 - [] D -- C:\ProgramData\SystemAcCrux
O43 - CFD: 27/08/2022 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network
O43 - CFD: 15/01/2022 - [] D -- C:\ProgramData\UpdShl
O43 - CFD: 05/11/2022 - [] D -- C:\ProgramData\VMware =>.VMware
O43 - CFD: 27/02/2023 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 27/02/2023 - [] D -- C:\ProgramData\Wondershare Filmora =>.Wondershare
O43 - CFD: 20/04/2021 - [0] D -- C:\ProgramData\{2643B6A6-D08D-99EE-438C-CA1B5AEE8FFD}
O43 - CFD: 08/07/2022 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 27/10/2021 - [] D -- C:\Program Files (x86)\Common Files\McAfee =>.McAfee
O43 - CFD: 03/11/2021 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint
O43 - CFD: 03/11/2021 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware
O43 - CFD: 27/02/2023 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare
O43 - CFD: 30/10/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\4kdownload.com =>.4kdownload.com
O43 - CFD: 08/07/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 27/08/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 13/11/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\BleachBit =>.BleachBit
O43 - CFD: 22/11/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\bwinbe
O43 - CFD: 23/09/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\cef3-cache-3359
O43 - CFD: 08/11/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\CodeBlocks =>.CodeBlocks Team
O43 - CFD: 25/11/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\com.adobe.dunamis =>.Adobe Inc.
O43 - CFD: 12/04/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Daedalus Mainnet
O43 - CFD: 27/04/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\discord
O43 - CFD: 27/05/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\EDRLab.ThoriumReader
O43 - CFD: 23/08/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\Electrum =>.Electrum
O43 - CFD: 08/10/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 05/01/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 04/11/2022 - [0] D -- C:\Users\utilisateur\AppData\Roaming\GlarySoft =>.GlarySoft
O43 - CFD: 27/10/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\GnuPG =>.GNU PG
O43 - CFD: 02/03/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\HPPSDr
O43 - CFD: 15/12/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\Icecream =>.Icecream
O43 - CFD: 27/08/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\iMobie =>.iMobie Inc
O43 - CFD: 23/08/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 21/12/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\kleopatra
O43 - CFD: 01/09/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 25/05/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Musigy
O43 - CFD: 16/10/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 06/02/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\obs-studio =>.OBS-Studio
O43 - CFD: 06/04/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 29/09/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 17/09/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\OVDC
O43 - CFD: 23/09/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Party
O43 - CFD: 27/08/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\PhoneRescue
O43 - CFD: 11/02/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Prevent Restore =>.Prevent Restore
O43 - CFD: 01/09/2022 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Proton Technologies AG =>.Proton Technologies AG
O43 - CFD: 01/12/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\safe-watch
O43 - CFD: 10/11/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\ShootersPool
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\Signal
O43 - CFD: 07/08/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\Skype =>.Skype
O43 - CFD: 07/10/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\Soda PDF Desktop 11 =>.Lulu Software
O43 - CFD: 03/12/2020 - [] D -- C:\Users\utilisateur\AppData\Roaming\Teams
O43 - CFD: 01/09/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP
O43 - CFD: 04/07/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\tor =>.Tor
O43 - CFD: 05/11/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\TubeMate Software
O43 - CFD: 01/11/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\vantage-widget-host
O43 - CFD: 01/12/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 04/11/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\VMware =>.VMware
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\VS Revo Group =>.VS Revo Group
O43 - CFD: 15/10/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\wfds2021
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\WhatsApp =>.WhatsApp
O43 - CFD: 01/09/2020 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Wickr, LLC
O43 - CFD: 27/02/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\Wondershare =>.Wondershare
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 30/10/2021 - [] D -- C:\Users\utilisateur\AppData\Local\4kdownload.com =>.4kdownload.com
O43 - CFD: 12/01/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Adobe =>.Adobe
O43 - CFD: 27/08/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Aiseesoft Studio =>.Aiseesoft Studio
O43 - CFD: 01/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\AMD =>.AMD
O43 - CFD: 08/01/2021 - [] D -- C:\Users\utilisateur\AppData\Local\AnyRecover
O43 - CFD: 27/08/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 30/09/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Avira =>.Avira Software
O43 - CFD: 01/09/2023 - [] D -- C:\Users\utilisateur\AppData\Local\cache =>.Legitimate
O43 - CFD: 07/08/2020 - [] D -- C:\Users\utilisateur\AppData\Local\CEF =>.CEF
O43 - CFD: 15/12/2020 - [] D -- C:\Users\utilisateur\AppData\Local\CrashRpt
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 27/04/2023 - [] D -- C:\Users\utilisateur\AppData\Local\Discord
O43 - CFD: 10/11/2021 - [] D -- C:\Users\utilisateur\AppData\Local\drmingw
O43 - CFD: 08/07/2022 - [] D -- C:\Users\utilisateur\AppData\Local\edrlab.thoriumreader-updater
O43 - CFD: 17/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\Eraser 6 =>.Sami Tolvanen
O43 - CFD: 01/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\ExpressVPN =>.ExpressVPN
O43 - CFD: 21/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\FileZilla =>.FileZilla
O43 - CFD: 27/10/2021 - [] D -- C:\Users\utilisateur\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 23/03/2021 - [] D -- C:\Users\utilisateur\AppData\Local\Google =>.Google
O43 - CFD: 27/10/2021 - [0] D -- C:\Users\utilisateur\AppData\Local\gtk-3.0 =>.GTK Project
O43 - CFD: 15/12/2020 - [] D -- C:\Users\utilisateur\AppData\Local\Icecream =>.Icecream
O43 - CFD: 27/08/2022 - [] D -- C:\Users\utilisateur\AppData\Local\iMobie_Inc =>.iMobie Inc
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Local\Lenovo =>.Lenovo
O43 - CFD: 29/10/2021 - [] D -- C:\Users\utilisateur\AppData\Local\LenovoServiceBridge
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Local\Malwarebytes =>.Malwarebytes
O43 - CFD: 06/12/2022 - [] D -- C:\Users\utilisateur\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 01/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 06/11/2020 - [] D -- C:\Users\utilisateur\AppData\Local\mymonero-updater
O43 - CFD: 29/09/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 08/01/2021 - [0] D -- C:\Users\utilisateur\AppData\Local\paint.net =>.Rick Brewster
O43 - CFD: 23/08/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Patcher
O43 - CFD: 30/08/2023 - [] D -- C:\Users\utilisateur\AppData\Local\PokerStars.BE =>.PokerStars.be
O43 - CFD: 16/10/2023 - [] D -- C:\Users\utilisateur\AppData\Local\PrivaZer =>.Goversoft LLC
O43 - CFD: 04/11/2020 - [] D -- C:\Users\utilisateur\AppData\Local\safe-watch-updater
O43 - CFD: 10/11/2021 - [] D -- C:\Users\utilisateur\AppData\Local\ShootersPool
O43 - CFD: 01/06/2023 - [] D -- C:\Users\utilisateur\AppData\Local\signal-desktop-updater
O43 - CFD: 08/07/2022 - [] D -- C:\Users\utilisateur\AppData\Local\SolidDocuments =>.SolidDocuments
O43 - CFD: 23/04/2023 - [] D -- C:\Users\utilisateur\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 09/01/2022 - [] D -- C:\Users\utilisateur\AppData\Local\ToastNotificationManagerCompat
O43 - CFD: 05/10/2021 - [] D -- C:\Users\utilisateur\AppData\Local\vdownloader =>.Vitzo
O43 - CFD: 04/11/2022 - [] D -- C:\Users\utilisateur\AppData\Local\VMware =>.VMware
O43 - CFD: 22/06/2023 - [] D -- C:\Users\utilisateur\AppData\Local\WhatsApp =>.WhatsApp
O43 - CFD: 01/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\Wickr, LLC
O43 - CFD: 27/02/2023 - [] D -- C:\Users\utilisateur\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 08/07/2022 - [] D -- C:\Users\utilisateur\AppData\Local\Programs\EDRLab.ThoriumReader
O43 - CFD: 29/12/2021 - [0] D -- C:\Users\utilisateur\AppData\Local\Programs\Lenovo =>.Lenovo
O43 - CFD: 17/10/2023 - [] D -- C:\Users\utilisateur\AppData\Local\Programs\Opera =>.Opera Software
O43 - CFD: 01/06/2023 - [] D -- C:\Users\utilisateur\AppData\Local\Programs\signal-desktop
O43 - CFD: 01/09/2020 - [] D -- C:\Users\utilisateur\AppData\Local\Programs\Wickr Inc
O43 - CFD: 22/12/2020 - [] D -- C:\Users\utilisateur\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 18/01/2021 - [] D -- C:\Users\utilisateur\AppData\LocalLow\AMD =>.AMD
O43 - CFD: 23/10/2023 - [] D -- C:\Users\utilisateur\AppData\LocalLow\IGDump
O43 - CFD: 02/09/2020 - [] D -- C:\Users\utilisateur\AppData\LocalLow\Lenovo =>.Lenovo
O43 - CFD: 31/05/2023 - [] D -- C:\Users\utilisateur\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 10/01/2022 - [] D -- C:\Users\utilisateur\AppData\LocalLow\OnLineTV Toolbar
O43 - CFD: 17/09/2020 - [] D -- C:\Users\utilisateur\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 08/09/2022 - [] D -- C:\Users\utilisateur\AppData\LocalLow\webviewdata
O43 - CFD: 30/11/2021 - [] D -- C:\Users\utilisateur\Desktop\ANALYSE DE DONNES
O43 - CFD: 28/02/2023 - [] D -- C:\Users\utilisateur\Desktop\attestations diverses
O43 - CFD: 18/09/2022 - [] D -- C:\Users\utilisateur\Desktop\betfirst
O43 - CFD: 20/10/2023 - [] D -- C:\Users\utilisateur\Desktop\C++
O43 - CFD: 24/02/2023 - [] D -- C:\Users\utilisateur\Desktop\carte identité
O43 - CFD: 17/12/2020 - [] D -- C:\Users\utilisateur\Desktop\chansons
O43 - CFD: 27/03/2023 - [] D -- C:\Users\utilisateur\Desktop\cv
O43 - CFD: 27/10/2021 - [] D -- C:\Users\utilisateur\Desktop\Datas
O43 - CFD: 04/06/2022 - [] D -- C:\Users\utilisateur\Desktop\document bureau
O43 - CFD: 15/01/2022 - [] D -- C:\Users\utilisateur\Desktop\documenthepl
O43 - CFD: 30/10/2020 - [] D -- C:\Users\utilisateur\Desktop\film dernière sd
O43 - CFD: 12/01/2022 - [] D -- C:\Users\utilisateur\Desktop\film français
O43 - CFD: 30/08/2023 - [] D -- C:\Users\utilisateur\Desktop\ghizlaine
O43 - CFD: 30/03/2023 - [] D -- C:\Users\utilisateur\Desktop\livresàlire
O43 - CFD: 17/12/2020 - [] D -- C:\Users\utilisateur\Desktop\Mallorca-boat-trip
O43 - CFD: 15/01/2022 - [] D -- C:\Users\utilisateur\Desktop\mes cours première
O43 - CFD: 27/08/2023 - [] D -- C:\Users\utilisateur\Desktop\mexc
O43 - CFD: 15/01/2022 - [] D -- C:\Users\utilisateur\Desktop\movie
O43 - CFD: 18/09/2022 - [] D -- C:\Users\utilisateur\Desktop\naturalex
O43 - CFD: 02/02/2022 - [] D -- C:\Users\utilisateur\Desktop\Nouveau dossier
O43 - CFD: 22/09/2023 - [] D -- C:\Users\utilisateur\Desktop\Nouveau dossier (2)
O43 - CFD: 14/03/2022 - [] D -- C:\Users\utilisateur\Desktop\Nouveau dossier (5)
O43 - CFD: 14/03/2022 - [] D -- C:\Users\utilisateur\Desktop\Nouveau dossier (6)
O43 - CFD: 03/04/2022 - [] D -- C:\Users\utilisateur\Desktop\OpenOffice 4.1.11 (fr) Installation Files =>.SourceForge
O43 - CFD: 14/08/2023 - [] D -- C:\Users\utilisateur\Desktop\permanence sociale seraing
O43 - CFD: 17/12/2020 - [] D -- C:\Users\utilisateur\Desktop\photos bulgarie
O43 - CFD: 05/08/2023 - [0] D -- C:\Users\utilisateur\Desktop\photosfacegook
O43 - CFD: 03/06/2022 - [] D -- C:\Users\utilisateur\Desktop\REPHOTOS
O43 - CFD: 11/02/2023 - [] D -- C:\Users\utilisateur\Desktop\Router Scan v2.60
O43 - CFD: 01/10/2020 - [] D -- C:\Users\utilisateur\Desktop\SGBD
O43 - CFD: 04/11/2022 - [] D -- C:\Users\utilisateur\Desktop\Solaris 11 DM
O43 - CFD: 04/11/2022 - [] D -- C:\Users\utilisateur\Desktop\Solaris11
O43 - CFD: 06/12/2022 - [] D -- C:\Users\utilisateur\Desktop\UNIX
O43 - CFD: 30/07/2022 - [] D -- C:\Users\utilisateur\Desktop\vacances2022
O43 - CFD: 27/10/2021 - [] D -- C:\Users\utilisateur\Desktop\vacancesphotos
O43 - CFD: 17/12/2020 - [] D -- C:\Users\utilisateur\Desktop\[ www.CpasBien.cm ] Jul - Emotions (2016)
O43 - CFD: 17/01/2021 - [] RD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 27/10/2021 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\bwinbe Poker
O43 - CFD: 27/10/2021 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Daedalus Mainnet
O43 - CFD: 15/01/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 17/01/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GNU Privacy Guard
O43 - CFD: 17/01/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Horaire
O43 - CFD: 12/01/2022 - [0] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo
O43 - CFD: 03/04/2022 - [] SD -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11 =>.SourceForge
O43 - CFD: 17/01/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prevent Restore =>.Prevent Restore
O43 - CFD: 17/01/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivaZer =>.Goversoft LLC
O43 - CFD: 03/04/2023 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP
O43 - CFD: 03/11/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp =>.WhatsApp
O43 - CFD: 06/07/2022 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WickrMe
O43 - CFD: 17/01/2021 - [] D -- C:\Users\utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Privacy Tools
O43 - CFD: 06/09/2021 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe
O43 - CFD: 05/11/2022 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware
---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (38) - 3s
O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov
O108 - CMH1: ANotepad++64 [64Bits] - {B298D29A-A6ED-11DE-BA8C-A68E55D89593} . (. - ShellHandler for Notepad++ (64 bit).) -- C:\Program Files\Notepad++\NppShell_06.dll =>.Notepad++®
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Orphan.) [Unsigned]
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.®
O108 - CMH3: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov
O108 - CMH6: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Orphan.) [Unsigned]
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Orphan.) [Unsigned]
O108 - CMH7: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: VMDiskMenuHandler [64Bits] - {271DC252-6FE1-4D59-9053-E4CF50AB99DE} . (.Orphan.) [Unsigned]
O108 - CMH7: VMDiskMenuHandler64 [64Bits] - {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} . (.VMware, Inc. - VMware Workstation.) -- C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll =>.VMware, Inc.®
---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 1s
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®
---\\ LISTE DES PILOTES DU SYSTEME (108) - 30s
O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft®
O58 - SDL:2022/08/31 20:15:02 A . (.Lenovo Group Ltd. - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [48896] =>.Lenovo®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft®
O58 - SDL:2020/05/19 00:55:02 A . (.Advanced Micro Devices - AMD Audio CoProcessor.) -- C:\WINDOWS\System32\drivers\amdacpbus.sys [6170528] =>.Microsoft®
O58 - SDL:2019/09/10 18:57:58 A . (.Advanced Micro Devices - AMD KSL Filter Driver.) -- C:\WINDOWS\System32\drivers\amdacpksl.sys [351536] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2021/06/18 18:58:10 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [54984] =>.Advanced Micro Devices INC.®
O58 - SDL:2021/06/18 18:58:14 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [76456] =>.Advanced Micro Devices INC.®
O58 - SDL:2020/03/24 22:41:18 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [135184] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft®
O58 - SDL:2020/10/09 14:53:32 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976] =>.WDKTestCert build,132303256403278908®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft®
O58 - SDL:2020/06/09 08:27:28 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [107936] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2020/08/23 22:03:48 A . (.Qualcomm - BT Filter.) -- C:\WINDOWS\System32\drivers\btfilter.sys [99576] =>.Qualcomm Atheros®
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2023/10/11 15:09:00 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/29 23:48:44 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [743872] =>.ELAN MICROELECTRONICS CORPORATION®
O58 - SDL:2020/03/29 23:48:50 A . (.ELAN Microelectronics Corp. - ETD Kernel Center (HIDClass Filter).) -- C:\WINDOWS\System32\drivers\ETDHCF.sys [30144] =>.ELAN MICROELECTRONICS CORPORATION®
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft®
O58 - SDL:2020/11/27 05:53:44 A . (.ExpressVPN - ExpressVPN Wintun Driver.) -- C:\WINDOWS\System32\drivers\expressvpn-wintun.sys [38224] =>.Express VPN International Ltd.®
O58 - SDL:2023/10/23 02:16:52 A . (.AO Kaspersky Lab - Kaspersky Lab Removal Tool Helper Driver.) -- C:\WINDOWS\System32\drivers\f2b37f00.sys [377392] =>.Microsoft®
O58 - SDL:2023/10/23 02:13:01 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [200104] =>.Microsoft®
O58 - SDL:2021/10/27 02:56:39 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\WINDOWS\System32\drivers\GUBootStartup.sys [30720] =>.Microsoft®
O58 - SDL:2018/11/02 06:21:58 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [84752] =>.VMware, Inc.®
O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft®
O58 - SDL:2008/05/15 03:28:52 A . (.Atheros Communications, Inc. - Atheros Security NDIS 6.0 Filter Driver.) -- C:\WINDOWS\System32\drivers\jswpslwfx.sys [26624] [Unsigned] =>.Atheros Communications, Inc.
O58 - SDL:2023/10/23 02:17:09 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit.) -- C:\WINDOWS\System32\drivers\klupd_f2b37f00a_klark.sys [354640] =>.Microsoft®
O58 - SDL:2023/10/23 02:17:10 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Memory Driver.) -- C:\WINDOWS\System32\drivers\klupd_f2b37f00a_mark.sys [262712] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft®
O58 - SDL:2023/10/23 01:57:35 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft®
O58 - SDL:2023/10/23 02:13:09 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [78400] =>.Microsoft®
O58 - SDL:2023/10/23 01:57:57 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [222800] =>.Microsoft®
O58 - SDL:2023/10/23 01:57:26 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft®
O58 - SDL:2023/10/23 01:57:56 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239544] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft®
O58 - SDL:2020/06/09 10:51:28 A . (.McAfee, LLC - McAfee Arbitrary Access Control Driver.) -- C:\WINDOWS\System32\drivers\mfeaack.sys [529848] =>.McAfee, Inc.®
O58 - SDL:2020/06/09 10:51:28 A . (.McAfee, LLC - Anti-Virus File System Filter Driver.) -- C:\WINDOWS\System32\drivers\mfeavfk.sys [382392] =>.McAfee, Inc.®
O58 - SDL:2020/06/07 23:58:40 A . (.McAfee LLC. - Event Driver.) -- C:\WINDOWS\System32\drivers\mfencbdc.sys [595896] =>.McAfee, Inc.®
O58 - SDL:2020/06/09 10:51:26 A . (.McAfee, LLC - AAC Protected Launch Plugin Driver.) -- C:\WINDOWS\System32\drivers\mfeplk.sys [116664] =>.McAfee, Inc.®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft®
O58 - SDL:2023/10/23 02:13:01 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [188016] =>.Malwarebytes Inc.®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft®
O58 - SDL:2015/11/19 19:40:18 A . (.MediaTek Inc. - MediaTek 802.11n Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28ux.sys [2244952] =>.MEDIATEK INC.®
O58 - SDL:2013/03/01 03:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft®
O58 - SDL:2013/01/15 15:31:24 A . (.Oracle Corporation - Oracle VDC USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\OVDCUSBMon.sys [129184] =>.Oracle America, Inc.®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft®
O58 - SDL:2022/11/30 00:58:30 A . (.Sysinternals - www.sysinternals.com - Process Explorer.) -- C:\WINDOWS\System32\drivers\PROCEXP152.SYS [37288] =>.Microsoft®
O58 - SDL:2020/07/08 22:44:36 A . (.Qualcomm Atheros, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2439944] =>.Qualcomm Atheros®
O58 - SDL:2020/11/03 01:22:20 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1155080] =>.Realtek Semiconductor Corp.®
O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek
O58 - SDL:2020/12/24 01:31:22 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6005344] =>.Realtek Semiconductor Corp.®
O58 - SDL:2022/09/01 08:24:51 A . (.Realtek Semiconductor Corporation - Realtek WLAN USB NDIS Driver 60477.) -- C:\WINDOWS\System32\drivers\rtwlanu.sys [7978296] =>.Realtek Semiconductor Corp.®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft®
O58 - SDL:2021/10/08 11:00:36 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [160376] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2021/10/08 11:00:42 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [167544] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2020/08/20 04:36:34 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapexpressvpn.sys [52904] =>.ExprsVPN LLC®
O58 - SDL:2021/05/28 12:42:20 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/06/14 19:48:34 A . (.Lenovo Group Ltd. - boost Driver.) -- C:\WINDOWS\System32\drivers\vanboost.sys [47888] =>.Lenovo®
O58 - SDL:2019/04/27 02:16:44 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [105488] =>.VMware, Inc.®
O58 - SDL:2019/05/05 00:29:20 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [46096] =>.VMware, Inc.®
O58 - SDL:2019/05/05 00:29:20 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [46096] =>.VMware, Inc.®
O58 - SDL:2019/05/05 00:29:26 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [66576] =>.VMware, Inc.®
O58 - SDL:2019/05/05 00:29:20 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [44048] =>.VMware, Inc.®
O58 - SDL:2019/05/05 00:22:16 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [99136] =>.VMware, Inc.®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2019/04/27 02:16:48 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [92040] =>.VMware, Inc.®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft®
O58 - SDL:2018/02/26 18:33:16 A . (.Western Digital Technologies, Inc. - Western Digital SCSI Architecture Model (SA.) -- C:\WINDOWS\System32\drivers\wdcsam64.sys [35584] =>.WDKTestCert wdclab,130885612892544312®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2022/01/09 06:51:50 A . (.WireGuard LLC - Wintun Driver.) -- C:\WINDOWS\System32\drivers\wintun.sys [29680] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft®
O58 - SDL:2022/01/09 07:12:38 A . (.WireGuard LLC - WireGuard Driver.) -- C:\WINDOWS\System32\drivers\wireguard.sys [489368] =>.Microsoft®
---\\ DERNIERS FICHIERS MODIFIES OU CREES (Utilisateur) (1) - 13s
O61 - LFC: 2023/10/06 16:30:22 A . (.Opera Norway AS.) -- C:\Users\utilisateur\AppData\Local\Programs\Opera\assistant\mojo_core.dll [1321888] {0A3021E0CF305985C1566618DB212BD7}.
---\\ ASSOCIATION Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
---\\ MENU DE DÉMARRAGE INTERNET (16) - 1s
O68 - StartMenuInternet: <Firefox-308046B0AF4A39CB> <Mozilla Firefox> [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: <Firefox-308046B0AF4A39CB> <Mozilla Firefox> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Firefox-308046B0AF4A39CB> <Mozilla Firefox> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Firefox-308046B0AF4A39CB> <Mozilla Firefox> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (1) - 15s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (50) - 3s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [304128] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342464] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1054208] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [161280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [813056] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488448] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [542720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [134656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2465280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [333824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [489472] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1131008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [855040] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1483776] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2247680] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522176] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1009152] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [317952] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3447296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283136] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [941696] =>.Microsoft®
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [570368] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [287744] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [788480] [Unsigned] =>.Microsoft Corporation
---\\ CODES PRODUITS LOGICIELS (3) - 2s
O90 - PUC: "E48CBE3B775C7EB40B56EADD71044BD7" [HKLM] . (.MexcBrowser.) -- C:\WINDOWS\Installer\{B3EBC84E-C577-4BE7-B065-AEDD1740B47D}\ARPPRODUCTICON.exe
O90 - PUC: "8046D29ACDCCACF4DA7A25BBC726158D" [HKCU] . (.WickrMe.) -- %APPDATA%\Microsoft\Installer\{A92D6408-CCDC-4FCA-ADA7-52BB7C6251D8}\WickrMe.exe
O90 - PUC: "8046D29ACDCCACF4DA7A25BBC726158D" [HKU] . (.WickrMe.) -- %APPDATA%\Microsoft\Installer\{A92D6408-CCDC-4FCA-ADA7-52BB7C6251D8}\WickrMe.exe
---\\ PACKAGES WINDOWS INSTALLER (32) - 54s
[MD5.F3393D3FF18B824864B806E0B86F0A67] [WIS][2022/09/01 08:24:49] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\1663a6.msi [1559552] =>.Cisco Systems, Inc.
[MD5.626978BF496BABC1E6F1464D697B707D] [WIS][2022/09/01 08:24:49] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\1663aa.msi [1304064] =>.Cisco Systems, Inc.
[MD5.3FC36EF669376540BB082615F9ECADB2] [WIS][2022/09/01 08:24:49] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\1663ae.msi [836608] =>.Cisco Systems, Inc.
[MD5.6E1A2FE5D61B35A6D9B75BA7529F1713] [WIS][2013/01/23 19:04:36] (.Oracle - Oracle Virtual Desktop Client.) -- C:\WINDOWS\Installer\1aaab7cc.msi [23481344] =>.Oracle
[MD5.844011F3CD14EB9AE8CD5A9FE3D91852] [WIS][2020/09/17 08:50:55] (.Oracle - Java(TM) SE Runtime Environment 6.0.) -- C:\WINDOWS\Installer\1aaab7d0.msi [908800] =>.Oracle
[MD5.03B28B0D30754F25F57980405D2CE0EA] [WIS][2021/11/29 11:02:06] (.Belgian Government - Belgium e-ID viewer (x86) 5.1.2 (build 5886.) -- C:\WINDOWS\Installer\1bd92f7b.msi [1179648] =>.Belgian Government
[MD5.B41412A0B6691203CB3D068A99EB50D5] [WIS][2022/06/05 05:28:10] (.Adobe - Installers.) -- C:\WINDOWS\Installer\21b32ec.msi [11638272] =>.Adobe
[MD5.AB338C0582E92EB727C0B82D9E2AC91C] [WIS][2021/11/03 17:49:07] (.VMware, Inc. - VMware Workstation.) -- C:\WINDOWS\Installer\28c980.msi [506712064] =>.VMware, Inc.
[MD5.AD0376BC99575C74B24A3A853D2B2108] [WIS][2021/06/28 08:02:34] (.ExpressVPN - ExpressVPN.) -- C:\WINDOWS\Installer\2bd121a.msi [38473728] =>.ExpressVPN
[MD5.9F6D2D3004C8A57FBA42C76409B4615D] [WIS][2022/07/06 01:49:52] (.Wickr Inc. - WickrMe.) -- C:\WINDOWS\Installer\2e353bc.msi [243638272]
[MD5.B688324433B5156DF650ADA7C45599BF] [WIS][2021/12/02 03:53:27] (.Hewlett-Packard Co. - HP Deskjet 2540 series Basic Device Softwar.) -- C:\WINDOWS\Installer\36d945a.msi [4775936] =>.Hewlett-Packard Co.
[MD5.5F0AD93183100D23D8EB46F0E46A04F5] [WIS][2021/12/02 03:55:41] (.Hewlett-Packard Co. - Product Improvement Study for HP Deskjet 25.) -- C:\WINDOWS\Installer\36d945f.msi [245760] =>.Hewlett-Packard Co.
[MD5.17288E7BFB2934587FDDF157AEF6749B] [WIS][2021/12/02 03:56:51] (.Hewlett-Packard - HP Update.) -- C:\WINDOWS\Installer\36d9464.msi [967168] =>.Hewlett-Packard
[MD5.170E39C172C4F6D68A6A01AA3A743F61] [WIS][2021/12/02 03:57:55] (.Hewlett Packard - HP Deskjet 2540 series Get product specific.) -- C:\WINDOWS\Installer\36d9469.msi [151552] =>.Hewlett Packard
[MD5.576F6CE0D4618301A2757911C32CCF76] [WIS][2021/09/21 20:11:14] (.OpenOffice - OpenOffice 4.1.11.) -- C:\WINDOWS\Installer\6513b5.msi [2469888] =>.OpenOffice
[MD5.AB69C49C8D15FB8CFBACE8DF5BF86720] [WIS][2023/10/17 13:49:35] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\ddc75c.msi [1060352] =>.Adobe Systems Incorporated
[MD5.3C6AC5DCB44CD5E9A19208EB560E56B5] [WIS][2023/08/29 20:47:01] (.mexc - MexcBrowser.) -- C:\WINDOWS\Installer\e6f2d18.msi [73698304]
[MD5.86E2B390629665FBC20E06DFBF01A48F] [WIS][2022/04/04 17:11:10] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\e77252.msi [2732032] =>.Apple Inc.
[MD5.DB373473B96BD661649BCCD6C1E8C064] [WIS][2023/08/19 10:46:54] (.Adobe Inc..) -- C:\WINDOWS\Installer\1064d5.msp [70483968] =>.Adobe Inc.
[MD5.AC57B0CD6401F4C717B52D403CB6892E] [WIS][2023/01/21 10:08:41] (.Adobe Inc..) -- C:\WINDOWS\Installer\11d4833.msp [69443584] =>.Adobe Inc.
[MD5.9D655F34CE959E02D9DB7A5983B98956] [WIS][2022/12/24 09:46:24] (.Adobe Inc..) -- C:\WINDOWS\Installer\1b92d4c.msp [256380928] =>.Adobe Inc.
[MD5.8C76CC67931590E408EB3C1F81F5D480] [WIS][2023/05/05 02:23:28] (.Adobe Inc..) -- C:\WINDOWS\Installer\1e41962.msp [77373440] =>.Adobe Inc.
[MD5.2D381752E996238291B0064D1DF6D6BE] [WIS][2022/06/05 05:28:40] (.Adobe Inc..) -- C:\WINDOWS\Installer\21b32ed.msp [280649728] =>.Adobe Inc.
[MD5.C933AB8A40A086E0A8180FDFF9754945] [WIS][2023/07/03 09:29:00] (.Adobe Inc..) -- C:\WINDOWS\Installer\24fe33c.msp [113807360] =>.Adobe Inc.
[MD5.0175539DFC1B00BC87D609AA6897FDFF] [WIS][2023/02/14 05:06:21] (.Adobe Inc..) -- C:\WINDOWS\Installer\27ffcc.msp [66363392] =>.Adobe Inc.
[MD5.323C2BEF57D6462C558B5D14B1A24F06] [WIS][2022/11/15 00:09:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\47e905.msp [378015744] =>.Adobe Inc.
[MD5.EF5A7C9D86F8E236E07314519DC7A5C4] [WIS][2023/03/21 08:30:04] (.Adobe Inc..) -- C:\WINDOWS\Installer\531524c.msp [319053824] =>.Adobe Inc.
[MD5.A11A971CBDC0F252F3BF5199D8B28D0C] [WIS][2023/06/15 02:11:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\55218ac.msp [324608000] =>.Adobe Inc.
[MD5.161497598857B7D5B35D530BE747FB09] [WIS][2023/04/04 23:51:19] (.Adobe Inc..) -- C:\WINDOWS\Installer\5b02ac.msp [104329216] =>.Adobe Inc.
[MD5.4E6720890196EBAE963EAE9E81792F7F] [WIS][2023/08/01 10:51:05] (.Adobe Inc..) -- C:\WINDOWS\Installer\7973b6d.msp [79806464] =>.Adobe Inc.
[MD5.2C1B23C637E1F8314D5F855DC828A5C8] [WIS][2023/09/07 04:57:43] (.Adobe Inc..) -- C:\WINDOWS\Installer\83013.msp [153894912] =>.Adobe Inc.
[MD5.E340B1CDFDF1797F4F05DD993CDC6D70] [WIS][2023/10/10 01:10:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\ddc813.msp [130416640] =>.Adobe Inc.
---\\ FEATURE CONTROL. (6) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Activation.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:FoxitPhantomPDF.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrodist.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroLicApp.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrobat.exe
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AASIapp.exe
---\\ OBSERVATEURS des évènements (64) - 25s
Application.Error: Application Hang (1)
~Numéro: 555782
~Date: 10/23/2023 02:50:05 AM
~ID: 1002
~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.
Application.Error: Bonjour Service (7)
~Numéro: 555481
~Date: 10/19/2023 12:04:15 PM
~ID: 100
~Description: Local Hostname LAPTOP-V92LUBGB.local already in use; will try LAPTOP-V92LUBGB-2.local instead
~Suggestion: Supprimer la tâche planifiée correspondante ou le service 'Bonjour Service'
Application.Warning: MsiInstaller (2)
~Numéro: 555376
~Date: 10/18/2023 06:01:46 PM
~ID: 1001
~Description: Échec de détection du produit ‘%1’, fonctionnalité ‘%2’ lors de la demande du composant ‘%3’
~Suggestion: Aucune
Application.Error: Application Error (1)
~Numéro: 555101
~Date: 10/16/2023 03:32:34 AM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5fe1a8bd Nom du module défaillant : %4, version : %5, horodatage : 0x3be1c500 Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000ff279 ID du processus défaillant : 0x26f4 H
~Suggestion: Réparer ou réinstaller l'application.
System.Warning: DCOM (734)
~Numéro: 242614
~Date: 10/23/2023 03:45:33 AM
~ID: 10016
~Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}LAPTOP-V92LUBGButilisateurS-1-5-21-3928260950-946043761-2991698823-1001LocalHost (avec LRPC)Microsoft.Windows.ShellExperienceHost_10.
~Suggestion: Vérifier les autorisations pour l'accès DCOM
System.Error: Service Control Manager (31)
~Numéro: 242580
~Date: 10/23/2023 02:14:57 AM
~ID: 7001
~Description: Le service %1 dépend du service %2 qui n’a pas pu démarrer en raison de l’erreur : %%1058
System.Warning: Microsoft-Windows-Kernel-PnP (8)
~Numéro: 242532
~Date: 10/23/2023 02:12:45 AM
~ID: 219
~Description: Le chargement du pilote %5 a échoué pour le périphérique %2.
~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système
System.Error: Schannel (64)
~Numéro: 242330
~Date: 10/22/2023 11:41:32 AM
~ID: 4103
~Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification %1 pour TLS. État d'erreur interne : %2.
System.Warning: Microsoft-Windows-DNS-Client (6)
~Numéro: 242187
~Date: 10/22/2023 12:13:59 AM
~ID: 1014
~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx
System.Error: Microsoft-Windows-WindowsUpdateClient (1)
~Numéro: 241804
~Date: 10/19/2023 03:27:02 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp
System.Warning: Microsoft-Windows-WLAN-AutoConfig (2)
~Numéro: 240884
~Date: 10/16/2023 09:55:10 AM
~ID: 4003
~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 2 Famille IP : 0
~Suggestion: Vérifier les paramètres d'économie d'énergie
---\\ SCAN ADDITIONNEL (12) - 5s
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Glary Utilities =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} =>.SUP.Orphan
C:\Users\UTILIS~1\AppData\Local\Temp\mat-debug-16400.log =>.SUP.Temporary.Microsoft
ADS Présent [:MBAM.Zone.Identifier] C:\Users\utilisateur\Desktop\FRST64.exe:MBAM.Zone.Identifier =>.SUP.FileADS
ADS Présent [:MBAM.Zone.Identifier] C:\Users\utilisateur\Desktop\ZHPSuite (2).exe:MBAM.Zone.Identifier =>.SUP.FileADS
ADS Présent [:MBAM.Zone.Identifier] C:\Users\utilisateur\Desktop\ZHPSuite.exe:MBAM.Zone.Identifier =>.SUP.FileADS
ADS Présent [:MBAM.Zone.Identifier] C:\Users\utilisateur\Downloads\KVRT.exe:MBAM.Zone.Identifier =>.SUP.FileADS
ADS Présent [:MBAM.Zone.Identifier] C:\Users\utilisateur\Downloads\OTL.exe:MBAM.Zone.Identifier =>.SUP.FileADS
ADS Présent [:MBAM.Zone.Identifier] C:\Users\utilisateur\Downloads\ZHPSuite (1).exe:MBAM.Zone.Identifier =>.SUP.FileADS
---\\ RECAPITULATIF DES ELEMENTS TROUVES (8) - 0s
https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/02/26/superfluous-popcorntime/ =>.SUP.PopcornTime
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft
https://nicolascoolman.eu/2018/01/04/ads-alternate-data-stream/ =>.SUP.FileADS
---\\ NUMEROS DE SÉRIE
[009C91D8D991C56342F031B82DA330CCAF] [16/10/2023] (.Goversoft LLC.) - C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Not verified
[00A3FBDAE5432EE44D42F26CB268E09319] [05/08/2023] (.Goversoft LLC.) - C:\Users\utilisateur\Downloads\PrivaZer_free (1).exe =>.Goversoft LLC
[00A3FBDAE5432EE44D42F26CB268E09319] [16/10/2023] (.Goversoft LLC.) - C:\Program Files (x86)\PrivaZer\PrivaMenu6.dll =>.Goversoft LLC
[00A3FBDAE5432EE44D42F26CB268E09319] [16/10/2023] (.Goversoft LLC.) - C:\Program Files (x86)\PrivaZer\privazer_remover.exe =>.Goversoft LLC
[00A657F778B31AE523D667131718D16EB2] [23/10/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mb4uns.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [23/10/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [23/10/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [23/10/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [23/10/2023] (.Malwarebytes Inc..) - C:\WINDOWS\System32\DRIVERS\mwac.sys =>.Malwarebytes Inc.
[00CD802F7BB8E43E4CE297152EA3BF92F6] [16/10/2023] (.Goversoft LLC.) - C:\Users\utilisateur\AppData\Local\PrivaZer\leveldb-viewer.exe =>.Goversoft LLC
[00E6C23C4ABB24AA59CF1A1FCE458856E3] [13/12/2021] (.Yury Saprykin.) - C:\Program Files (x86)\Prevent Restore\PreventRestore.exe =>.Yury Saprykin
[00E6C23C4ABB24AA59CF1A1FCE458856E3] [29/01/2022] (.Yury Saprykin.) - C:\Program Files (x86)\Prevent Restore\unins000.exe =>.Yury Saprykin
[011F39A2261A993DD15176DA6FE4FBEA] [05/06/2022] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\acrocef_1\RdrCEF.exe =>.Adobe Inc.
[01342592A0010CB1109C11C0519CFD24] [31/12/2021] (.Notepad++.) - C:\Program Files\Notepad++\notepad++.exe =>.Notepad++
[01342592A0010CB1109C11C0519CFD24] [31/12/2021] (.Notepad++.) - C:\Program Files\Notepad++\NppShell_06.dll =>.Notepad++
[019BB53DD06F10B3DBA82E8D3FAF6588] [22/12/2020] (.Dolby Laboratories, Inc..) - C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_925ded1d9428eaee\DAX3API.exe =>.Dolby Laboratories, Inc.
[0239535707D7316104745908469035F8] [24/09/2023] (.Lenovo.) - C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.4.60.0_x64__5grkq8ppsgwt4\LaunchUtility\utility.exe =>.Not verified
[02F93506DFD71C8A5A615270291C7525] [11/12/2022] (.Wondershare Technology Group Co.,Ltd.) - C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare Filmora (FR) (CPC)\Wondershare Filmora Launcher.exe =>.Not verified
[0320BE3EB866526927F999B97B04346E] [01/09/2022] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{DBCC4C27-F949-482b-B786-7B3B67587CD2}\Setup.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [01/09/2022] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rtwlanu.sys =>.Realtek Semiconductor Corp.
[0407ABB64E9990180789EACB81F5F914] [18/06/2021] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
[041E10CC0F2075CF8446114A3DDC2CFC] [14/06/2022] (.Lenovo.) - C:\WINDOWS\System32\DRIVERS\vanboost.sys =>.Lenovo
[041E10CC0F2075CF8446114A3DDC2CFC] [31/08/2022] (.Lenovo.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\installer.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\installer_helper_64.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\libEGL.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\libGLESv2.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\notification_helper.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera_autoupdate.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera_browser.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera_crashreporter.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera_elf.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\opera_gx_splash.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\vk_swiftshader.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\vulkan-1.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\win10_share_handler.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\103.0.4928.34\win8_importing.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\launcher.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [16/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\opera.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\installer.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\installer_helper_64.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\libEGL.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\libGLESv2.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\notification_helper.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\opera.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\opera_autoupdate.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\opera_browser.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\opera_crashreporter.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\opera_elf.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\opera_gx_splash.exe =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\vk_swiftshader.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\vulkan-1.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\win10_share_handler.dll =>.Opera Norway AS
[044E790095459B33A82402A442191951] [28/09/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\102.0.4880.78\win8_importing.dll =>.Opera Norway AS
[045296F8FCD829A75DC94294F5A415A4] [09/10/2023] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Inc.
[045296F8FCD829A75DC94294F5A415A4] [09/10/2023] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe =>.Adobe Inc.
[045296F8FCD829A75DC94294F5A415A4] [20/09/2023] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.
[045296F8FCD829A75DC94294F5A415A4] [25/09/2023] (.Adobe Inc..) - C:\ProgramData\Adobe\ARM\{291AA914-A987-4CE9-BD63-0C0A92D435E5}\RdrServicesUpdater2.exe =>.Adobe Inc.
[04DF4D56733AE38D598EA004DD2D9C51] [03/11/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.
[051F7A0F0A951C6F905F61CCF5966447] [02/03/2023] (.HP Inc..) - C:\Program Files (x86)\HP\Diagnostics\PSDR\HPPSDr.exe =>.HP Inc.
[055958F8A90B14FA25436B89FB307660] [24/12/2020] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_74518f403e753586\RtkAudUService64.exe =>.Realtek Semiconductor Corp.
[057039B86A2400AA490CE510289684C1] [10/06/2022] (.Wickr LLC.) - C:\Users\utilisateur\AppData\Local\Programs\Wickr Inc\WickrMe\WickrMe.exe =>.Not verified
[0594A3F9DB53FB3C3CE14B4A68BCFDA2] [17/09/2022] (.Wondershare Technology Group Co.,Ltd.) - C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe =>.Wondershare Technology Group Co.,Ltd
[0594A3F9DB53FB3C3CE14B4A68BCFDA2] [17/09/2022] (.Wondershare Technology Group Co.,Ltd.) - C:\Users\utilisateur\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe =>.Wondershare Technology Group Co.,Ltd
[063E35B9A5D6657C9DFC296AA452AA5B] [27/11/2020] (.Express VPN International Ltd..) - C:\WINDOWS\System32\drivers\expressvpn-wintun.sys =>.Express VPN International Ltd.
[068983642C953E46F7BDCE4143F133C1] [02/01/2021] (.Adobe Systems, Incorporated.) - C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe =>.Adobe Systems, Incorporated
[06AEA76BAC46A9E8CFE6D29E45AAF033] [23/03/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC
[06D41A66692153FFBE5DEFE873ADFF6A] [04/10/2021] (.Hugh Bailey.) - C:\Program Files\obs-studio\bin\64bit\obs64.exe =>.Hugh Bailey
[07A0ED6DDF2FFED5914CCF4CAB68B414] [20/08/2020] (.ExprsVPN LLC.) - C:\WINDOWS\System32\drivers\tapexpressvpn.sys =>.ExprsVPN LLC
[07A0ED6DDF2FFED5914CCF4CAB68B414] [28/06/2021] (.ExprsVPN LLC.) - C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys =>.ExprsVPN LLC
[07A0ED6DDF2FFED5914CCF4CAB68B414] [28/06/2021] (.ExprsVPN LLC.) - C:\Program Files (x86)\ExpressVPN\tap\tapinstall\amd64\tapinstall.exe =>.ExprsVPN LLC
[07EC0CF3D333673B2602D410FE0C4D21] [22/04/2020] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atieclxx.exe =>.Advanced Micro Devices, Inc.
[07EC0CF3D333673B2602D410FE0C4D21] [22/04/2020] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atiesrxx.exe =>.Advanced Micro Devices, Inc.
[07EC0CF3D333673B2602D410FE0C4D21] [22/04/2020] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atikmdag.sys =>.Advanced Micro Devices, Inc.
[07EC0CF3D333673B2602D410FE0C4D21] [22/04/2020] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0354259.inf_amd64_9c1fcd1df26ce806\B354183\atikmpag.sys =>.Advanced Micro Devices, Inc.
[07EC0CF3D333673B2602D410FE0C4D21] [24/03/2020] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdpsp.sys =>.Advanced Micro Devices, Inc.
[07ED134B1ECF561A9EB5B05388BFF047] [06/06/2023] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.
[07ED134B1ECF561A9EB5B05388BFF047] [19/06/2023] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller\unins000.exe =>.VS Revo Group Ltd.
[0A3021E0CF305985C1566618DB212BD7] [06/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\assistant\assistant_installer.exe =>.Not verified
[0A3021E0CF305985C1566618DB212BD7] [06/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\assistant\browser_assistant.exe =>.Not verified
[0A3021E0CF305985C1566618DB212BD7] [06/10/2023] (.Opera Norway AS.) - C:\Users\utilisateur\AppData\Local\Programs\Opera\assistant\mojo_core.dll =>.Not verified
[0BFCFAC08E216A1C1FDAA6B77BB2D66E] [22/01/2021] (.Realtek Semiconductor Corp..) - C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj\RtkUWP.exe =>.Realtek Semiconductor Corp.
[0BFCFAC08E216A1C1FDAA6B77BB2D66E] [24/12/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.
[0C16D074311A3365FAE8200C7E160C54] [22/06/2023] (.WhatsApp LLC.) - C:\Users\utilisateur\AppData\Local\WhatsApp\Update.exe =>.WhatsApp LLC
[0C16D074311A3365FAE8200C7E160C54] [22/06/2023] (.WhatsApp LLC.) - C:\Users\utilisateur\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp LLC
[0C1CD3EEA47EDDA7A032573B014D0AFD] [14/08/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [14/08/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [14/08/2023] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
[0CC20BD5086B2B2EFFF2DA7CD35BEF35] [24/07/2022] (.Open Media LLC.) - C:\Program Files (x86)\4KDownload\4kvideodownloader\crashpad_handler.exe =>.Open Media LLC
[0D2ABA553D54DB0A1B7D316C23A0616C] [14/07/2023] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe =>.Not verified
[0D2ABA553D54DB0A1B7D316C23A0616C] [14/07/2023] (.Lenovo.) - C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\Uninstall.exe =>.Not verified
[0E4418E2DEDE36DD2974C3443AFB5CE5] [16/10/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\118.0.5993.89\elevation_service.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [16/10/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [18/09/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [18/09/2023] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [19/10/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\118.0.5993.89\Installer\chrmstp.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [19/10/2023] (.Google LLC.) - C:\Program Files\Google\Chrome\Application\118.0.5993.89\Installer\setup.exe =>.Google LLC
[0FEA4E387D3DCF704C4418D181951DB5] [16/05/2023] (.TSG INTERACTIVE SERVICES LIMITED.) - C:\Program Files (x86)\PokerStars.BE\PokerStarsUpdate.exe =>.Not verified
[0FEA4E387D3DCF704C4418D181951DB5] [30/08/2023] (.TSG INTERACTIVE SERVICES LIMITED.) - C:\Program Files (x86)\PokerStars.BE\gameutil1.exe =>.Not verified
[13222A5DCCF716DF5AF9C87084412DD9] [01/09/2022] (.Realtek Semiconductor Corp.) - C:\Windows\runSW.exe =>.Realtek Semiconductor Corp
[13222A5DCCF716DF5AF9C87084412DD9] [06/04/2022] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Tenda\TeWlanCuRt\RTLDHCP.exe =>.Realtek Semiconductor Corp
[13222A5DCCF716DF5AF9C87084412DD9] [06/04/2022] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Tenda\TeWlanCuRt\RtlService.exe =>.Realtek Semiconductor Corp
[1402AEEF0D31BE743E73F6A7A960C4F4] [01/03/2013] (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.
[1402AEEF0D31BE743E73F6A7A960C4F4] [01/03/2013] (.Riverbed Technology, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.Riverbed Technology, Inc.
[158B53F6910CDB984F848EE6B39269A1] [26/02/2018] (.WDKTestCert wdclab,130885612892544312.) - C:\WINDOWS\System32\drivers\wdcsam64.sys =>.WDKTestCert wdclab,130885612892544312
[1885B7E188D8FAFD38A43D48967D7488] [18/06/2021] (.Advanced Micro Devices INC..) - C:\WINDOWS\System32\drivers\amdgpio2.sys =>.Advanced Micro Devices INC.
[1885B7E188D8FAFD38A43D48967D7488] [18/06/2021] (.Advanced Micro Devices INC..) - C:\WINDOWS\System32\drivers\amdi2c.sys =>.Advanced Micro Devices INC.
[20E5A30797EFEB90994A2C99E9DB4668] [01/06/2023] (.Signal Messenger, LLC.) - C:\Users\utilisateur\AppData\Local\Programs\signal-desktop\Signal.exe =>.Signal Messenger, LLC
[20E5A30797EFEB90994A2C99E9DB4668] [01/06/2023] (.Signal Messenger, LLC.) - C:\Users\utilisateur\AppData\Local\Programs\signal-desktop\Uninstall Signal.exe =>.Signal Messenger, LLC
[2B20EB3380792AB011F662C064FDB473] [12/08/2015] (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.
[3030232482EA69A8E8694BCB] [07/06/2020] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfencbdc.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/06/2020] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfeaack.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/06/2020] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfeavfk.sys =>.McAfee, Inc.
[3030232482EA69A8E8694BCB] [09/06/2020] (.McAfee, Inc..) - C:\WINDOWS\System32\drivers\mfeplk.sys =>.McAfee, Inc.
[36336D836A19E244FF0E52882EB5B1DE] [31/08/2021] (.Creative Labs Inc.) - C:\Program Files (x86)\OpenAL\oalinst.exe =>.Creative Labs Inc
[3DD79449EA86A17D1AED3D553A987DDF] [08/07/2020] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\Qcamain10x64.sys =>.Qualcomm Atheros
[3DD79449EA86A17D1AED3D553A987DDF] [08/07/2020] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe =>.Qualcomm Atheros
[3DD79449EA86A17D1AED3D553A987DDF] [23/08/2020] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\btfilter.sys =>.Qualcomm Atheros
[411882032859087BEA5FDD62C591749A] [18/01/2022] (.Phoenix Technologies Ltd..) - c:\Windows\TempInst\TdkLib64.sys =>.Not verified
[4BBBE0D8257CD9711A1B57E6BB9C660F] [17/09/2020] (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\jp2ssv.dll =>.Sun Microsystems, Inc.
[4BBBE0D8257CD9711A1B57E6BB9C660F] [17/09/2020] (.Sun Microsystems, Inc..) - C:\Program Files\Java\jre6\bin\ssv.dll =>.Sun Microsystems, Inc.
[56F008E69A7C4C3FEB389C66EAF58259] [04/12/2014] (.MEDIATEK INC..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry.exe =>.MEDIATEK INC.
[56F008E69A7C4C3FEB389C66EAF58259] [04/12/2014] (.MEDIATEK INC..) - C:\Program Files (x86)\MediatekWiFi\Common\RaRegistry64.exe =>.MEDIATEK INC.
[59040957F20843302BA52AA1F6ABCEEF] [02/11/2018] (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [02/11/2018] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\hcmon.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\7za.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmnet.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetadapter.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetbridge.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmnetuserif.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vmx86.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [05/05/2019] (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [27/04/2019] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmci.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [27/04/2019] (.VMware, Inc..) - C:\WINDOWS\System32\DRIVERS\vsock.sys =>.VMware, Inc.
[59040957F20843302BA52AA1F6ABCEEF] [28/02/2018] (.VMware, Inc..) - C:\Windows\SysWOW64\drivers\vstor2-x64.sys =>.VMware, Inc.
[5D38D8BD64455068C2D1C74088C5E28A] [10/12/2021] (.Tim Kosse.) - C:\Program Files\FileZilla FTP Client\filezilla.exe =>.Tim Kosse
[5EF1DC1EFB1E46B5DE80EDE1762A55A7] [15/01/2013] (.Oracle America, Inc..) - C:\WINDOWS\System32\DRIVERS\OVDCUSBMon.sys =>.Oracle America, Inc.
[5F2EB491801E284312FAC1CD67F32AED] [03/08/2021] (.EXPRSVPN LLC.) - C:\ProgramData\Package Cache\{336616d6-abef-4ff8-9afd-43ceb249ff9a}\ExpressVPN_10.4.1.2.exe =>.Not verified
[5F2EB491801E284312FAC1CD67F32AED] [28/06/2021] (.EXPRSVPN LLC.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe =>.Not verified
[5F2EB491801E284312FAC1CD67F32AED] [28/06/2021] (.EXPRSVPN LLC.) - C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe =>.Not verified
[635517466B67BD4BBA805BC67AC3328C] [19/11/2015] (.MEDIATEK INC..) - C:\WINDOWS\System32\drivers\netr28ux.sys =>.MEDIATEK INC.
[72DCD35B1DBBF28F0F9848EC766A1BDF] [10/09/2019] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdacpksl.sys =>.Advanced Micro Devices, Inc.
[72F0C9305FD97A974DC024A6980E6886] [09/10/2020] (.WDKTestCert build,132303256403278908.) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,132303256403278908
[737BE9572E71E147EB7F035C287710BD] [29/03/2020] (.ELAN MICROELECTRONICS CORPORATION.) - C:\WINDOWS\System32\drivers\ETD.sys =>.ELAN MICROELECTRONICS CORPORATION
[737BE9572E71E147EB7F035C287710BD] [29/03/2020] (.ELAN MICROELECTRONICS CORPORATION.) - C:\WINDOWS\System32\drivers\ETDHCF.sys =>.ELAN MICROELECTRONICS CORPORATION
[737BE9572E71E147EB7F035C287710BD] [29/03/2020] (.ELAN MICROELECTRONICS CORPORATION.) - C:\WINDOWS\System32\ETDService.exe =>.ELAN MICROELECTRONICS CORPORATION
[75B5499C96D676A5FAE2656B351E1FD6] [08/10/2021] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics Co., Ltd.
[75B5499C96D676A5FAE2656B351E1FD6] [08/10/2021] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.
[76A3C3D3AB0C3E9536C506AE] [28/07/2020] (.McAfee, LLC.) - C:\Program Files\McAfeeDashboard\McSecDashboardService.exe =>.McAfee, LLC
[7AE2B5021371F092A904B6FA] [01/09/2023] (.Telegram FZ-LLC.) - C:\Users\utilisateur\AppData\Roaming\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC
~ Unselected Options: NF,
~ End of the scan, 14693 items in 12mn10s (1762)(0)