NEWS



RAPPORT DE DIAGNOSTIC DE ZHPDIAG
~ ZHPDiag v2019.6.29.91 Par Nicolas Coolman (2019/06/29)

~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\thier\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\thier\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate

Windows 10 Home, 64-bit (Build 18362) =>.Microsoft Corporation
---\ NAVIGATEURS INTERNET (5) - 0s
~ GCIE: Google Chrome v75.0.3770.100
~ MFIE: Mozilla Thunderbird 60.7.1 (x86 en-US)
~ MFIE: Opera 60.0.3255.170
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.175.18362.0

---\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s
~ Windows Server License Manager Script : OK

~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : P9XQR
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\ LOGICIELS DE PROTECTION (5) - 2s
Windows Defender W10 (Activate) (Protection)
Bitdefender Total Security v23.0.16.72 (Protection)
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 1/30

Bitdefender Agent v23.0.8.115 (Protection)
Bitdefender Home Scanner v1.0.6.146 (Protection)
Malwarebytes version 3.7.1.2839 v3.7.1.2839 (Protection)

---\ LOGICIELS DE PROTECTION SUPERFLUS (1) - 2s
~ Spybot - Search & Destroy v2.7.64.0 (Superflu)

---\ SURVEILLANCE LOGICIEL (1) - 2s
~ Adobe Flash Player 32 PPAPI (Surveillance)

---\ LOGICIELS D'OPTIMISATION (1) - 2s
~ CCleaner v5.57 (Optimisation)


~ Operating System: Intel64 Family 6 Model 158 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 16625.38 MB (70% free) : OK =>.RAM Value

System drive C: has 30 GB (%) free of 120 GB : OK =>.Disk Space


~ Computer Name: DESKTOP-F33S8PQ
~ User Name: thier
~ Logged in as Administrator


~ Drive C: has 30 GB free of 120 GB (System)
~ Drive D: has GB free of 0 GB
~ Drive F: has 811 GB free of 953 GB


[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK


[MD5.9C111E2764F4F0C03EBE0A0BD5EDA46D] - 29/06/2019 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4552336] =>.Microso


[MD5.238CC08C94EC6EF57957C8B129390599] - 19/06/2019 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5
[MD5.0DAE4B9FB1E2043C18B7A7E7CBA5964B] - 19/03/2019 - (.Microsoft Corporation - Application d ouverture de session Windows.) -- C:\WINDOWS\System32\Wi

[MD5.2B1627A5E6EFAA1C100A1CD87E37F7DA] - 19/03/2019 - (.Microsoft Corporation - DNS DLL de l API Client.) -- C:\WINDOWS\System32\dnsapi.dll [818888]
[MD5.23E73E7D3B304E661DC14F8D7217872C] - 19/03/2019 - (.Microsoft Corporation - DNS DLL de l API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [588256]
[MD5.4BB305AEED92BB280760B127548E1DC2] - 19/03/2019 - (.Microsoft Corporation - DLL client de l API uilisateur de Windows m.) -- C:\WINDOWS\System32\f
[MD5.DE2CAA60B963E5103B3543C0DE45D25D] - 19/03/2019 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drive
[MD5.6CB8D419AD7A2D7D5373A7DDE2664D5C] - 19/03/2019 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys
[MD5.0F35318F3AB72D2BBEE26B247D372C70] - 19/03/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [1
[MD5.81E3779064C04790E30F25770F0AEADD] - 19/03/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173056]
[MD5.D974C10E19DDC10622E30904AEE16FA3] - 19/03/2019 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys
[MD5.7F2568836476437410BC7E9E003CFD74] - 19/03/2019 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAu
[MD5.B475892255B02D33CF29B24FBD4AFDC9] - 19/03/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [11
[MD5.5E05C0FEA671B910FEBC634E796C38B5] - 19/03/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.s
[MD5.70FBA82E3B3BC9E053BEEC5C3B57E340] - 19/03/2019 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [56
[MD5.729ED379D3A960CFBE02C7634651AC63] - 19/06/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [33740


[MD5.555E33527CC3C34620E49F5F86C8F7B0] - 19/03/2019 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\driver

[MD5.9AF99FB2DA176C88C68D886046C56B01] - 19/03/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [13261




O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\

O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll =>
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST
O23 - Service: Bitdefender Auxiliary Service (BDAuxSrv) . (.Bitdefender - bdservicehost.) - C:\Program Files\Bitdefender\Bitdefender Security\bdservic
O23 - Service: Bitdefender Protected Service (BDProtSrv) . (.Bitdefender - bdservicehost.) - C:\Program Files\Bitdefender\Bitdefender Security\bdservi
O23 - Service: Bitdefender RedLine Service (bdredline) . (.Bitdefender - Bitdefender redline update.) - C:\Program Files\Common Files\Bitdefender\Setu
O23 - Service: Service Bitdefender VPN (BdVpnService) . (.Bitdefender - Bitdefender Vpn Service.) - C:\Program Files\Bitdefender\Bitdefender VPN\bdvpn
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll =>.Microsoft

O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\Sys
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\Sys


O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\S
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) - C:\Windows\Sys
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll =

O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Micros
O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System
O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WIN


O23 - Service: Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) - C:\Program Fi
O23 - Service: ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\WINDOWS\System32\Inte

O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\
O23 - Service: C:\WINDOWS\System32\fhsvc.dll (fhsvc) . (.Microsoft Corporation - Service d historique des fichiers.) - C:\WINDOWS\System32\fhsvc.dll
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\Fnt

O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update
O23 - Service: HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V. - HitmanPro Scheduler.) - C:\Program Files\HitmanPro\hmpsched.exe =>.SurfR
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc. - HP Support Solutions Framework Service.) - C
O23 - Service: Bitdefender Home Scanner (hvasrv) . (.Bitdefender - HVA Service.) - C:\Program Files\Bitdefender Home Scanner\hvasrv.exe =>.Bitdefende
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 2/30

O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid St
O23 - Service: Intel Bluetooth Service (ibtsiva) . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) - C:\WINDOWS\System32\ibtsiva.e
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System3
O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll =>.Microsoft Corp
O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) -
O23 - Service: Service Internet Security (InternetSecurity) . (.Internet Security Corporation - Internet Security Service.) - C:\Users\thier\AppData\L

O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Ho
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll =>
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System3
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Prog
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll

O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc


O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corp
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvT
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService

O23 - Service: PDF Architect 7 Creator (PDF Architect 7 Creator) . (.pdfforge GmbH - PDF Architect 7.) - C:\Program Files\PDF Architect 7\creator\comm
O23 - Service: PDF Architect 7 Update Service (PDF Architect 7 Update Service) . (.pdfforge GmbH - PDF Architect 7.) - C:\Program Files\PDF Architect
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d alimentation en mode utilisateur.) - C:\WINDOWS\System32\ump
O23 - Service: ProductAgentService (ProductAgentService) . (.Bitdefender - Bitdefender Agent.) - C:\Program Files\Bitdefender Agent\ProductAgentServic
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll =>.Microsoft Corpora

O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll =>.Microsoft Corpora
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAud

O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) - C:\Program Files (x86)\Spy
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) . (.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) - C:\Program Files
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) . (.Safer-Networking Ltd. - Windows Security Center integration..) - C:\Program Fil

O23 - Service: Bitdefender Device Management Service (ServiceDevMgmt) . (.Bitdefender - Bitdefender Device Management Service.) - C:\Program Files\Bit

O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\sh

O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\Sys

O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\S



O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefende
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll =>.Microsoft Cor

O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender Security\
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\Progra
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll =>.Microsoft Cor
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System

O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\


O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\Syste





SS - Demand [12/06/2019] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\Windows\SysWOW64\Macromed\Flash\Fl


SR - Demand [15/06/2018] [ 48624] AnchorFree TAP-Windows Adapt (aftap0901) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\aftap0901.sys =
SS - Demand [25/03/2019] [ 322432] AfVpnService (AfVpnService) . (.AnchorFree Inc..) - C:\Program Files\Bitdefender\Bitdefender VPN\vpnservice.exe
SR - Demand [19/03/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys =
SR - Demand [19/03/2019] [ 37888] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys =



SR - Auto [29/04/2019] [ 96056] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\
SR - Boot [19/03/2019] [ 132112] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft


SR - Demand [29/06/2019] [ 263224] aswbidsdriver (aswbidsdriver) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsdriver.sys =>.AVAST Soft


SR - Boot [29/06/2019] [ 15488] aswElam (aswElam) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswElam.sys =>.Microsoft Windows Early Laun










SR - Auto [29/06/2019] [ 414976] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>
SS - Demand [29/06/2019] [ 57504] (AvastWscReporter) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe =>.AVAST Software
SR - Boot [19/03/2019] [ 534032] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Micros
SR - Demand [19/03/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys =>.Broadcom Corporation
SR - Auto [03/06/2019] [ 783816] Bitdefender Auxiliary Service (BDAuxSrv) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender Security\bd
SR - Boot [09/04/2019] [ 22960] bdelam (bdelam) . (.Bitdefender.) - C:\WINDOWS\System32\drivers\bdelam.sys =>.Microsoft Windows Early Launch Ant

SR - Auto [03/06/2019] [ 783816] Bitdefender Protected Service (BDProtSrv) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender Security\b
SR - Auto [22/03/2018] [ 2195320] Bitdefender RedLine Service (bdredline) . (.Bitdefender.) - C:\Program Files\Common Files\Bitdefender\SetupInform

SR - Auto [11/04/2019] [ 96568] Service Bitdefender VPN (BdVpnService) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnserv
SR - Demand [02/05/2019] [ 313112] BlueStacks Hypervisor (BlueStacksDrv) . (.Bluestack System Inc..) - C:\Program Files\BlueStacks\BstkDrv.sys =>.B

file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 3/30


SR - Demand [19/03/2019] [ 1866768] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>
SS - Demand [15/01/2018] [ 485928] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRep
SR - Auto [15/01/2018] [ 469032] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\Fil

SR - Auto [22/10/2018] [ 40080] Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\Program Files (x86)\EaseUS\
SR - Boot [19/03/2019] [ 3419176] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Micro
SR - System [00/00/0000] [ 0] epp (epp) . (...) - C:\Program Files\Emsisoft Anti-Malware\epp.sys (.not file.)
SR - Auto [13/08/2016] [ 2215168] ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe =>.I

SR - Boot [08/10/2018] [ 73448] EUBAKUP (EUBAKUP) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\System32\drivers\eubakup.sys =>.Micr
SR - Boot [08/10/2018] [ 53504] EUBKMON (EUBKMON) . (...) - C:\WINDOWS\System32\drivers\EUBKMON.sys =>.Microsoft Windows Hardware Compatibility
SR - System [08/10/2018] [ 22784] EUDSKACS (EUDSKACS) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\system32\drivers\eudskacs.sys =>.M
SR - System [08/10/2018] [ 341760] EUFDDISK (EUFDDISK) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\WINDOWS\system32\drivers\EuFdDisk.sys =>.M
SR - Auto [05/09/2018] [ 670816] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.e
SR - Boot [01/03/2019] [ 374632] Gemma (Gemma) . (.BitDefender S.R.L. Bucharest, ROMANIA.) - C:\WINDOWS\System32\DRIVERS\Gemma.sys =>.Bitdefender
SS - Demand [18/06/2019] [ 1098224] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\C
SR - System [02/10/2018] [ 28936] GUBootStartup (GUBootStartup) . (.Glarysoft Ltd.) - C:\Windows\System32\drivers\GUBootStartup.sys =>.Glarysoft L
SR - Auto [07/12/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.e
SS - Demand [07/12/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate

SR - Auto [29/06/2019] [ 139504] HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe =>.SurfR

SS - Demand [03/06/2016] [ 1031704] HP CASL Framework Service (hpqcaslwmiex) . (.HP.) - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe =>.Hewlett-Pac

SR - Auto [06/12/2018] [ 347512] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc..) - C:\Program Files (x86
SR - Auto [11/04/2019] [ 585496] Bitdefender Home Scanner (hvasrv) . (.Bitdefender.) - C:\Program Files\Bitdefender Home Scanner\hvasrv.exe =>.Bi
SR - Demand [19/03/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys =>.I
SR - Demand [19/03/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys =>.I
SR - Demand [19/03/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys =>.Intel Co
SR - Demand [19/03/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys =>.Inte
SR - Demand [19/03/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys =>.Inte
SR - Demand [19/03/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys =>.Inte
SR - Demand [19/03/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys =>.Intel Co
SR - Demand [19/03/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys =>.Inte
SR - Demand [19/03/2019] [ 180736] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys =>.Inte
SR - Demand [19/03/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys =>.Inte
SR - Demand [19/03/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Inte
SR - Demand [19/03/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys =>.Inte
SR - Demand [20/09/2016] [ 795640] iaStorA (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel(R) Rapid Storage Te
SR - Boot [26/09/2018] [ 1092112] Intel(R) Chipset SATA/PCIe (iaStorAC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAC.sys =>.Inte
SR - Boot [19/03/2019] [ 885048] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Micros
SR - Auto [26/09/2018] [ 17440] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Ra
SR - Boot [19/03/2019] [ 411960] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsof

SR - Auto [00/00/0000] [ 0] Intel Bluetooth Service (ibtsiva) . (...) - C:\WINDOWS\System32\ibtsiva (.not file.) =>.Intel Corporation
SR - Demand [06/12/2017] [ 136128] Intel(R) Wireless Bluetooth (ibtusb) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\ibtusb.sys =>.Intel(R
SR - Demand [15/01/2018] [13422528] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_694219dc1ebc9
SR - Auto [15/01/2018] [ 398376] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\
SR - Demand [01/12/2016] [ 5523456] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\

SS - Demand [02/03/2018] [ 758552] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface)
SR - Auto [02/03/2018] [ 719640] Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation.) - C:\Program Fil
SR - Auto [25/06/2019] [ 58368] Service Internet Security (InternetSecurity) . (.Internet Security Corporation.) - C:\Users\thier\AppData\Local\P


SR - Auto [03/12/2017] [ 205968] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Fil
SR - Auto [03/12/2017] [ 419984] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86




SR - Auto [29/06/2019] [ 199768] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Malwarebytes
SR - Boot [01/02/2019] [ 20936] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft Windows Early Lau
SS - Demand [01/02/2019] [ 6562472] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.ex




SR - Demand [28/11/2017] [ 206488] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64
SR - Demand [19/03/2019] [ 1150480] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft Window
SS - Demand [19/06/2019] [ 238624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Mainte

SS - Demand [05/09/2018] [ 310880] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>

SR - Demand [30/04/2019] [ 8719864] ___ Pilote de carte Intel(R) Wireless pour Windows 10 64 bi (Netwtw04) . (.Intel Corporation.) - C:\WINDOWS\Syste
SS - Demand [27/02/2019] [ 782136] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporat
SS - Demand [27/02/2019] [ 782136] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Co
SR - Auto [22/05/2019] [ 782136] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA C
SR - Demand [23/05/2019] [21836032] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_72385c1434b


SR - Demand [10/05/2019] [ 30336] NVIDIA KMS (NvStreamKms) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.s
SR - Auto [22/05/2019] [ 782136] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\
SR - Demand [17/04/2019] [ 69840] NVIDIA Virtual Au (nvvad_WaveExtensible) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvvad64v.sys =>
SR - Demand [17/04/2019] [ 75600] NVVHCI Enumerator Service (nvvhci) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvvhci.sys =>.NVIDIA C
SS - Demand [01/04/2019] [ 2579192] PDF Architect 7 (PDF Architect 7) . (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\ws.exe =>.pdfforge GmbH
SR - Auto [01/04/2019] [ 836856] PDF Architect 7 Creator (PDF Architect 7 Creator) . (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\creator\
SR - Auto [01/04/2019] [ 1825016] PDF Architect 7 Update Service (PDF Architect 7 Update Service) . (.pdfforge GmbH.) - C:\Program Files\PDF Archit


SR - Auto [14/05/2019] [ 1294448] ProductAgentService (ProductAgentService) . (.Bitdefender.) - C:\Program Files\Bitdefender Agent\ProductAgentServ
SR - Auto [05/09/2018] [ 170592] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\In

SR - Demand [19/05/2019] [ 1141536] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semicondu
SR - Auto [01/12/2016] [ 322560] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudio
SR - Demand [30/12/2016] [ 787968] Realtek PCIE Card Reader - PER (RTSPER) . (.Realsil Semiconductor Corporation.) - C:\WINDOWS\System32\DRIVERS\Rts
SR - Auto [20/04/2018] [ 3892256] Spybot-S&D 2 Scanner Service (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Sea
SR - Auto [20/04/2018] [ 3943664] Spybot-S&D 2 Updating Service (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Sea
SR - Auto [06/02/2018] [ 233712] Spybot-S&D 2 Security Center Service (SDWSCService) . (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot -
SR - Auto [28/03/2019] [ 95520] Bitdefender Device Management Service (ServiceDevMgmt) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefend
SR - Boot [19/03/2019] [ 45072] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft Windo


file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 4/30

SR - Demand [05/03/2018] [ 55304] (SmbDrvI) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorpor


SR - Demand [05/03/2018] [ 764424] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synapt
SR - Auto [05/03/2018] [ 360456] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEn


SR - Auto [03/06/2019] [ 119944] Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender Secur

SR - Auto [03/06/2019] [ 805232] Bitdefender Virus Shield (VSSERV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender Security\vsserv.ex
SR - Boot [19/03/2019] [ 305672] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microso


SR - Demand [16/05/2019] [ 35392] HP Wireless Button Driver Service (WirelessButtonDriver64) . (.HP.) - C:\WINDOWS\System32\drivers\WirelessButtonD



O38 - TASK: {0B98D863-3AD1-4CEF-9929-0BCE75154667} [64Bits][\Avast Software\Overseer] - (.AVAST Software - Avast Overseer.) -- C:\Program Files\Common
O38 - TASK: {1AB12B04-851C-4550-88DC-016E69103E1B} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C


O38 - TASK: {31E2B86C-E6DC-4732-9477-90535569C586} [64Bits][\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA no
O38 - TASK: {45BB9891-A940-4390-94A0-FCDDBBD41091} [64Bits][\Opera scheduled Autoupdate 1538487847] - (.Opera Software - Opera Internet Browser.) -- C
O38 - TASK: {4E25E6DC-B425-4747-BD6B-9BD8B8D62FA6} [64Bits][\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864] - (.Bitdefender - Bitdefende
O38 - TASK: {6BA9E3FB-A486-47E3-B6E3-A4085BEDC32B} [64Bits][\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVI
O38 - TASK: {6FEB4620-2024-468D-A7B8-6B9AED44195E} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\P
O38 - TASK: {826B3B2C-F979-4018-B3DA-C4D5C78648C4} [64Bits][\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) -- C:\Program Files
O38 - TASK: {8D55C5E1-591D-4EEE-B80A-BE091A33B086} [64Bits][\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation -
O38 - TASK: {9DBC2FB8-EE69-4BBE-8998-0A8100943806} [64Bits][\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA C
O38 - TASK: {B98831CD-9332-4FD5-8281-593D072F057B} [64Bits][\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation
O38 - TASK: {C2D8D4BF-5F55-4C4C-952F-E5426C66509B} [64Bits][\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files (
O38 - TASK: {C32B36B8-57A3-4511-B0CF-D252A2622F2C} [64Bits][\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVI
O38 - TASK: {C5CEE614-E247-4544-8FEB-F1F3B08006DD} [64Bits][\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C] - (.Bitdefender - Bitdefender age
O38 - TASK: {C9A3BB99-E821-4EA3-AAA2-7A2F6828FDA7} [64Bits][\Bitdefender AgentTask_6F2980EE6088481484E6D8285516CD07] - (.Bitdefender - Bitdefender Hom
O38 - TASK: {CF263069-0513-4652-9439-3BE3E062AC38} [64Bits][\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVI
O38 - TASK: {CF5D7E28-6FC0-4318-AFB7-07B5915D66EE} [64Bits][\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NV
O38 - TASK: {D4650475-3D29-43BF-ACF9-056E503071A9} [64Bits][\CCleanerSkipUAC] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCle
O38 - TASK: {E1AECB5F-9467-4D05-A7E4-27A33058A14A} [64Bits][\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVI
O38 - TASK: {E1F25981-59A8-4964-926D-3056F4DC0AD6} [64Bits][\CCleaner Update] - (.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program F
O38 - TASK: {EBC008DC-9FCE-4D96-940D-AC6A63760AE8} [64Bits][\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation -
C:\WINDOWS\System32\Tasks\Avast Software\Overseer - (.AVAST Software.) -- C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [/from_s
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc
C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_pepper.exe [-che
C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe
C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\
C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1538487847 - (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [--scheduledautoupdate .-
C:\WINDOWS\System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 - (.Bitdefender.) -- C:\Program Files\Bitdefender Agent\WatchDog
C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google
C:\WINDOWS\System32\Tasks\Avast Emergency Update - (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [] =>.AVAST Software
C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporat
C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVI
C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corpor
C:\WINDOWS\System32\Tasks\Apple\AppleSoftwareUpdate - (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [-task] =>
C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\
C:\WINDOWS\System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C - (.Bitdefender.) -- C:\Program Files\Bitdefender\Bitdefender Securit
C:\WINDOWS\System32\Tasks\Bitdefender AgentTask_6F2980EE6088481484E6D8285516CD07 - (.Bitdefender.) -- C:\Program Files\Bitdefender Home Scanner\hvaag
C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\
C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporati


O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe


O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r
O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe
O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.ex
O4 - HKCU\..\Run: [Lync] . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Micros

O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software L
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microso
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microso
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Cor
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Cor
O4 - HKLM\..\Wow6432Node\Run: [SDTray] . (.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files (x86)\Spybot - Search &
O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 =>.SUP.Orphan
O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 =>.SUP.Orphan
O4 - HKUS\S-1-5-21-1028830518-859416871-2898031174-1001\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Fi
O4 - HKUS\S-1-5-21-1028830518-859416871-2898031174-1001\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common F
O4 - HKUS\S-1-5-21-1028830518-859416871-2898031174-1001\..\Run: [Lync] . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Micr
O4 - HKUS\S-1-5-21-1028830518-859416871-2898031174-1001\..\Run: [Mailbird] . (.Mailbird - Mailbird.) -- C:\Program Files\Mailbird\Mailbird.exe =>.Mai
O4 - HKUS\S-1-5-21-1028830518-859416871-2898031174-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\C


[MD5.71C86D54F90BDAAEAAC0BB58376531C3] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender Security\vsserv.ex
[MD5.08F828CB2228CDF555A39ABBE32AC232] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDispla
[MD5.BC5DAC87DA3A8E54A23F55FE13E99CAF] - (.Bitdefender - Bitdefender Vpn Service.) -- C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [9
[MD5.1CCC2DECE77FA814D46E01852D0C7177] - (.Bitdefender - Bitdefender Device Management Service.) -- C:\Program Files\Bitdefender\Bitdefender Device Ma
[MD5.3357ECFFFD0EC558EB5311238ADA3415] - (.Bitdefender - bdservicehost.) -- C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [78381
[MD5.08F828CB2228CDF555A39ABBE32AC232] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDispla
[MD5.2F18DA2179EEF0F7F24E2F019CFF1194] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_
[MD5.E10E27980C71ABB5B196E298459701F5] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
[MD5.ABBAD4156F45CFEF3B43CF0249D7DAB4] - (.SurfRight B.V. - HitmanPro Scheduler.) -- C:\Program Files\HitmanPro\hmpsched.exe [139504] [PID.3752] =>.S
[MD5.E733DAC84E1BE4C787844F4ECDBF15E7] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [14
[MD5.753E19618B36F88E30BB8FB50723EBAC] - (.AVAST Software - Avast Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [414976] [PID.4136]
[MD5.EEB443EC220283D531E9D5D1A74D4329] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobile
[MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.4808] =>.Apple
[MD5.B7D7E160ECCDFD5E6CED42DADFCE7F9B] - (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) -- C:\Windows\System32\DriverStore\FileRepos
[MD5.860191F475BE3CF1569758B2A6CDA75E] - (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) -- C:\Program Files (x86)\E
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 5/30

[MD5.C96E9EC577BEB9F73D4F39F28336C4F1] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\system32\Intel\DPTF\esif_uf
[MD5.F70A099BC16564F178EDA982377911D5] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtE
[MD5.21B0E5A690C3EE3F57FE5D8CF3BB4675] - (.Bitdefender - HVA Service.) -- C:\Program Files\Bitdefender Home Scanner\hvasrv.exe [585496] [PID.5076] =>
[MD5.B7406573975FA697A6E262F27AED0649] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\WINDOWS\System32\ibtsiva.exe [52991
[MD5.E8FFA4ABF3BF3C283A88F0D0E48F572B] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryConta
[MD5.36DF87F23D6493F25BB2040189934ECF] - (.pdfforge GmbH - PDF Architect 7.) -- C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe [836856
[MD5.3B2DC6A467A492741F3AD47C1B883D41] - (.pdfforge GmbH - PDF Architect 7.) -- C:\Program Files\PDF Architect 7\updater-ws.exe [1825016] [PID.4572]
[MD5.F3C63E19167F34F42BA3C77E02FB9C77] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender Agent\ProductAgentService.exe [1294448]
[MD5.9E6EBE24A42B70C753027EB7BB2D29F5] - (.Internet Security Corporation - Internet Security Service.) -- C:\Users\thier\AppData\Local\Programs\Presta
[MD5.0402ED31C7EF3D5A5BAA110AC3A141D8] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\W
[MD5.12F69E16F318A07F594F4EBCB890884F] - (.Safer-Networking Ltd. - Spybot-S&D 2 Scanner Service.) -- C:\Program Files (x86)\Spybot - Search & Destroy
[MD5.D3D9ABBFA7126667AC8705B6BA6BF80B] - (.Safer-Networking Ltd. - Spybot-S&D 2 Background update service.) -- C:\Program Files (x86)\Spybot - Search
[MD5.0B62617AA9D202C82665866A07439D35] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\Sy
[MD5.DDD9F723C1DEB0545DD7F82384133647] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.e

[MD5.EDEAFE9F5E1616E1CEC641A97BBFEB42] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\ki126176
[MD5.F55393115C4FC202C0B522D4E2F5EE27] - (.Safer-Networking Ltd. - Windows Security Center integration..) -- C:\Program Files (x86)\Spybot - Search &
[MD5.982543BE01CA2B0115C368B5615C7E98] - (.pdfforge GmbH - PDF Architect 7.) -- C:\Program Files\PDF Architect 7\ws.exe [2579192] [PID.7088] =>.pdffo
[MD5.036FBD9C27697109506D827AAAAF6925] - (...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe [270480] [PID.4996] =>.CHENGDU
[MD5.3D17CFE22FC5DAA8CC4AFB5B86FDDE43] - (.AVAST Software - Antivirus engine server.) -- C:\Program Files\AVAST Software\Avast\aswEngSrv.exe [550280]
[MD5.C990FD590B950CEF3080A0B312E7A609] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\Temp\DPTF\esif_assist_64.ex
[MD5.C220F63C2741A38B5C7DE27AF356E6AB] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTP
[MD5.9565D2B17A12412486B1FC274C009A1C] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_69
[MD5.3ABB7A748B03CF5AB87F28DAE38425B9] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER
[MD5.6AFF12D8D6DEE5CEE7A75740BBB60F72] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHos
[MD5.AE6124D99BC82D523126B78069AFB69D] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.48.51.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.ex
[MD5.F8B0A2F92DE4D3A5E3E3B9B2A5A4F2B9] - (.Bitdefender - Bitdefender Vpn App.) -- C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [95024] [P
[MD5.FAC2DF498D38583F1AA48300EB3FCB57] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [302904] [PID.12420] =>.Apple Inc
[MD5.DB10C87D949A88CFA0045DB4698B46C4] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
[MD5.1DC6726AC5B00BF75C4C87D1A82975FC] - (.AVAST Software - Avast Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [12060040] [PID.126
[MD5.C0341250ABC9B9F9F90A7D80FD14C0DF] - (.Apple Inc. - iPod Service.) -- C:\Program Files\iPod\bin\iPodService.exe [658232] [PID.12860] =>.Apple Inc
[MD5.D29CB32B0E60636DB366F1879CF3F504] - (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudService
[MD5.C45B8138E98E23C0F14DC6B12DFA14DC] - (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon
[MD5.DCBBFBEBE2E9E77730F4FF084FC6BAE6] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [22588760] [PID.13780] =>.P
[MD5.07474DFC64E0C93C10EB3D9B25CC443F] - (.IO3O LLC - mywifi4.) -- C:\Program Files (x86)\IO3O LLC\Who Is On My Wifi\mywifi.exe [618312] [PID.13960]
[MD5.06B43CB00B61BE55B6D100B15EDFBC39] - (.Safer-Networking Ltd. - Spybot - Search & Destroy tray access.) -- C:\Program Files (x86)\Spybot - Search &
[MD5.51D6BF69B2DAB467B9227CAD99FC4B69] - (...) -- C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19061.410.0_x64__8wekyb3d8bbwe\YourPhone.exe [100
[MD5.AD0B2D5DF94DF7C8D4D50357B61989DE] - (.Bitdefender - Bitdefender Home Vulnerability Assesment Ag.) -- C:\Program Files\Bitdefender Home Scanner\hv
[MD5.CEFC7534C1AE4539658D5B954B2E4E06] - (.Bitdefender - Bitdefender agent.) -- C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [429536]
[MD5.E5D507E7857E4728F84181C2BE82F493] - (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe
[MD5.7638DFC266AFB6DD2D58C864BD031F5D] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe

[MD5.43CC4761BCB743C01FC05C5A9975EC82] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R)
[MD5.73A861FC02BF20CEC6F32477F727EEAF] - (.Bitdefender - Bitdefender redline update.) -- C:\Program Files\Common Files\Bitdefender\SetupInformation\Bi
[MD5.035D75C6B75FADB4B2F22376D50A9248] - (.HP Inc. - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Sol
[MD5.5D05D86E5CE4A5923CA936B60A8AA648] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataM
[MD5.1ED6E48252C137E23674AE8FBBE75882] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management
[MD5.19EA84C55AECB25E2C26EF4A4A0F22F0] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service TCP I.) -- C:\Program Files\Intel\Intel(R) Man
[MD5.05A3560692E07DA21998703DB8D4A873] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1903.1006.0_x64__8wekyb3d8bbwe\Time.exe [424
[MD5.FFA7ED1C1C6DAC83A5B63E0CCC1D41CD] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1905.28.0_x64__8wekyb3d8bbwe\Calculator
[MD5.A55F8E415CE0A5A5499232CA3537B5D8] - (.Apple Inc. - iCloud Photo Stream.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhot
[MD5.9BB0199560CC12E519D5DD1F3376642A] - (.Foxit Software Inc. - Foxit Reader 9.5.) -- C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\FOXITREADER
[MD5.3EBD95A0C02FBFA11FEC93B5E0AF0BAB] - (.Nicolas Coolman - ZHPCleaner.) -- C:\Users\thier\AppData\Roaming\ZHP\ZHPCleaner.exe [3147648] [PID.17800]
[MD5.E553D2132E2B84673366BCBE5993FCB7] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\thier\AppData\Roaming\ZHP\ZHPDiag3.exe [3040640] [PID.6352] =>.Nic
[MD5.ABD6BB31B15C583B01E2826E982EE26A] - (.Farbar - Farbar Recovery Scan Tool.) -- C:\Users\thier\Downloads\FRST64-2.1 (1).exe [2419200] [PID.18284]


G2 - GCE: Preference [thier][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [jfofijpkapingknllefalncmbiienkab] Emsisoft Browser Security
G2 - GCE: Preference [thier][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [thier][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [thier][User Data\Default\Local Extension Settings] [bkbeeeffjjeopflfhgeknacdieedcoml]
G2 - GCE: Preference [thier][User Data\Default\Local Extension Settings] [emnoomldgleagdjapdeckpmebokijail]
G2 - GCE: Preference [thier][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [thier][User Data\Default\Local Extension Settings] [gngocbkfmikdgphklgmmehbjjlfgdemm]
G2 - GCE: Preference [thier][User Data\Default\Local Extension Settings] [jfofijpkapingknllefalncmbiienkab]
G2 - GCE: Preference [thier][User Data\Default\Local Extension Settings] [lelehponoadknmgbnmgkcniabpopckme]
G2 - GCE: Preference [thier][User Data\Default\Sync Extension Settings] [cfkpefbllpconnkfpdgagkifmflckkdp] =>.SUP.CookiesControl =>.SUP.CookiesCont
G2 - GCE: Preference [thier][User Data\Default\Sync Extension Settings] [dceidjjhomnclmfgflmjaomohekdgdgb]
G2 - GCE: Preference [thier][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}


P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\bookmarkbackups =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\crashes =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\datareporting =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\extensions =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\features =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\gmp =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\minidumps =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\sessionstore-backups =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\storage =>Mozilla Corporation
C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\weave =>Mozilla Corporation


R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.18362.236 (WinBu

---\ INTERNET EXPLORER, Site de confiance et site sensible (94) - 3s
~ IE Restricted Site Potentially Unwanted: 007guard.com
~ IE Restricted Site Potentially Unwanted: 008i.com
~ IE Restricted Site Potentially Unwanted: 008k.com
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 6/30

~ IE Restricted Site Potentially Unwanted: 00hq.com
~ IE Restricted Site Potentially Unwanted: 010402.com
~ IE Restricted Site Potentially Unwanted: 032439.com
~ IE Restricted Site Potentially Unwanted: 0scan.com
~ IE Restricted Site Potentially Unwanted: 1-2005-search.com
~ IE Restricted Site Potentially Unwanted: 1-domains-registrations.com
~ IE Restricted Site Potentially Unwanted: 1000gratisproben.com
~ IE Restricted Site Potentially Unwanted: 1001namen.com
~ IE Restricted Site Potentially Unwanted: 100888290cs.com
~ IE Restricted Site Potentially Unwanted: 100sexlinks.com
~ IE Restricted Site Potentially Unwanted: 10sek.com
~ IE Restricted Site Potentially Unwanted: 123fporn.info
~ IE Restricted Site Potentially Unwanted: 123haustiereundmehr.com
~ IE Restricted Site Potentially Unwanted: 123moviedownload.com
~ IE Restricted Site Potentially Unwanted: 123simsen.com
~ IE Restricted Site Potentially Unwanted: 123topsearch.com
~ IE Restricted Site Potentially Unwanted: 125sms.co.uk
~ IE Restricted Site Potentially Unwanted: 125sms.com
~ IE Restricted Site Potentially Unwanted: 132.com
~ IE Restricted Site Potentially Unwanted: 1337-crew.to
~ IE Restricted Site Potentially Unwanted: 1337crew.info
~ IE Restricted Site Potentially Unwanted: 136136.net
~ IE Restricted Site Potentially Unwanted: 150freesms.de
~ IE Restricted Site Potentially Unwanted: 163ns.com
~ IE Restricted Site Potentially Unwanted: 17-plus.com
~ IE Restricted Site Potentially Unwanted: 171203.com
~ IE Restricted Site Potentially Unwanted: 17concepts.info
~ IE Restricted Site Potentially Unwanted: 1800searchonline.com
~ IE Restricted Site Potentially Unwanted: 180searchassistant.com
~ IE Restricted Site Potentially Unwanted: 180solutions.com
~ IE Restricted Site Potentially Unwanted: 1987324.com
~ IE Restricted Site Potentially Unwanted: 1ghporn.info
~ IE Restricted Site Potentially Unwanted: 1importantiamreal.com
~ IE Restricted Site Potentially Unwanted: 1mybigdreamnowreal.com
~ IE Restricted Site Potentially Unwanted: 1sexparty.com
~ IE Restricted Site Potentially Unwanted: 1sms.de
~ IE Restricted Site Potentially Unwanted: 1spybot.com
~ IE Restricted Site Potentially Unwanted: 1stantivirus.com
~ IE Restricted Site Potentially Unwanted: 1stpagehere.com
~ IE Restricted Site Potentially Unwanted: 1stsearchportal.com
~ IE Restricted Site Potentially Unwanted: 2-2005-search.com
~ IE Restricted Site Potentially Unwanted: 2006ooo.com
~ IE Restricted Site Potentially Unwanted: 2007-download.com
~ IE Restricted Site Potentially Unwanted: 2008-search-destroy.com
~ IE Restricted Site Potentially Unwanted: 2008-viewer.com
~ IE Restricted Site Potentially Unwanted: 2008firefox.com
~ IE Restricted Site Potentially Unwanted: 2008search-destroy.com
~ IE Restricted Site Potentially Unwanted: 2009--access.com
~ IE Restricted Site Potentially Unwanted: 2009-edition.com
~ IE Restricted Site Potentially Unwanted: 2009-phone.com
~ IE Restricted Site Potentially Unwanted: 2009-version.info
~ IE Restricted Site Potentially Unwanted: 2009antivirpro.com
~ IE Restricted Site Potentially Unwanted: 2009search-destroy.com
~ IE Restricted Site Potentially Unwanted: 2011-kilos-verlieren.eu
~ IE Restricted Site Potentially Unwanted: 2020search.com
~ IE Restricted Site Potentially Unwanted: 20x2p.com
~ IE Restricted Site Potentially Unwanted: 21dice.net
~ IE Restricted Site Potentially Unwanted: 24-7pharmacy.info
~ IE Restricted Site Potentially Unwanted: 24-7searching-and-more.com
~ IE Restricted Site Potentially Unwanted: 247fxxx.info
~ IE Restricted Site Potentially Unwanted: 24teen.com
~ IE Restricted Site Potentially Unwanted: 2ndpower.com
~ IE Restricted Site Potentially Unwanted: 2rfsex.info
~ IE Restricted Site Potentially Unwanted: 2search.com
~ IE Restricted Site Potentially Unwanted: 2search.org
~ IE Restricted Site Potentially Unwanted: 2squared.com
~ IE Restricted Site Potentially Unwanted: 2vgporn.info
~ IE Restricted Site Potentially Unwanted: 3-2005-search.com
~ IE Restricted Site Potentially Unwanted: 30horasdesexoonline.com
~ IE Restricted Site Potentially Unwanted: 31columns.com
~ IE Restricted Site Potentially Unwanted: 321-gratis-sms.com
~ IE Restricted Site Potentially Unwanted: 3322.org
~ IE Restricted Site Potentially Unwanted: 365fporn.info
~ IE Restricted Site Potentially Unwanted: 365sites.info
~ IE Restricted Site Potentially Unwanted: 365soft.info
~ IE Restricted Site Potentially Unwanted: 36site.com
~ IE Restricted Site Potentially Unwanted: 3721.com
~ IE Restricted Site Potentially Unwanted: 39-93.com
~ IE Restricted Site Potentially Unwanted: 3bay.it
~ IE Restricted Site Potentially Unwanted: 3dgsex.info
~ IE Restricted Site Potentially Unwanted: 3mates.com
~ IE Restricted Site Potentially Unwanted: 3wgporn.info
~ IE Restricted Site Potentially Unwanted: 3x-festival.com
~ IE Restricted Site Potentially Unwanted: 3x-galls.com
~ IE Restricted Site Potentially Unwanted: 3xclipsonline.com
~ IE Restricted Site Potentially Unwanted: 3xcurves.com
~ IE Restricted Site Potentially Unwanted: 3xfestival.com
~ IE Restricted Site Potentially Unwanted: 3xmiracle.com
~ IE Restricted Site Potentially Unwanted: 3xmoviesblog.com
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 7879(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 7879(Bad)

---\ INTERNET EXPLORER,Proxy Management (16) - 1s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1; =>.Default.Value
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:48080;https=127.0.0.1:48080 =>Hijacker.Proxy
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings,ProxySettingsPerUser = 0 =>.SUP.ProxyRestriction
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [1http=127.0.0.1:48080;https=127.0.0.1:48080]
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 7/30

R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1; =>.Default.Value
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:48080;https=127.0.0.1:48080 =>Hijacker
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows\CurrentVersion\Internet Settings,ProxySettingsPerUser = 0 =>.SUP.ProxyRestriction

---\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=




---\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s
O2 - BHO: Bitdefender Trackers Blocking [64Bits] - {159ff5d5-55f1-4d2f-b706-767a55f77abb} . (.Bitdefender - IE Tracker Plugin.) -- C:\Program Files\Bi
O2 - BHO: Bitdefender Wallet [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\P
O2 - BHO: PDF Architect 7 Helper [64Bits] - {2B035CAB-1F3D-4DE6-A32D-39B9E5F456D0} . (.pdfforge GmbH - PDF Architect 7.) -- C:\Program Files\PDF Archi
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program File

---\ RACCOURCIS GLOBAL STARTUP (155) - 25s
O4 - GS\Desktop [Administrateur]: Bravoloto.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_ur

O4 - GS\Desktop [Administrateur]: Joko.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url\':
O4 - GS\Desktop [Administrateur]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\thier\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon
O4 - GS\Desktop [Administrateur]: PE-PC217.lnk . (...) C:\Program Files (x86)\PE-PC217\OemDrv.exe
O4 - GS\Desktop [Administrateur]: Peggle Blast.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon
O4 - GS\Desktop [Administrateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.Phot


O4 - GS\Desktop [Administrateur]: Vova.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url\':
O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\thier\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Co
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\thier\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.5.) C:\Program Files (x86)\Foxit Software\Foxit Reader
O4 - GS\Quicklaunch [Administrateur]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrato
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O4 - GS\Quicklaunch [Administrateur]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files (x86)\ImgBurn\ImgBurn.ex
O4 - GS\Quicklaunch [Administrateur]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Light
O4 - GS\Quicklaunch [Administrateur]: PDF Architect 7.lnk . (.pdfforge GmbH - PDF Architect 7.) C:\Program Files\PDF Architect 7\architect.exe =>.p
O4 - GS\Quicklaunch [Administrateur]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstal

O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo


O4 - GS\TaskBar [Administrateur]: Kodi.lnk . (.XBMC Foundation - Kodi.) C:\Program Files (x86)\Kodi\kodi.exe =>.XBMC Foundation
O4 - GS\TaskBar [Administrateur]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\TaskBar [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\OneDri

O4 - GS\TaskBar [Administrateur]: ZHPDiag.lnk . (...) C:\Users\thier\Downloads\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Programs [Administrateur]: OneDrive (2).lnk . (...) C:\Users\thier\OneDrive
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\OneDr
O4 - GS\Desktop [thier]: Bravoloto.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url\': \'\

O4 - GS\Desktop [thier]: Joko.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url\': \'\', \'a
O4 - GS\Desktop [thier]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\thier\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services
O4 - GS\Desktop [thier]: PE-PC217.lnk . (...) C:\Program Files (x86)\PE-PC217\OemDrv.exe
O4 - GS\Desktop [thier]: Peggle Blast.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url\': \
O4 - GS\Desktop [thier]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre


O4 - GS\Desktop [thier]: Vova.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url\': \'\', \'a
O4 - GS\Desktop [thier]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\thier\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [thier]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\thier\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [thier]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.5.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitRea
O4 - GS\Quicklaunch [thier]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
O4 - GS\Quicklaunch [thier]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Goog
O4 - GS\Quicklaunch [thier]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files (x86)\ImgBurn\ImgBurn.exe =>.L
O4 - GS\Quicklaunch [thier]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Light Image Res
O4 - GS\Quicklaunch [thier]: PDF Architect 7.lnk . (.pdfforge GmbH - PDF Architect 7.) C:\Program Files\PDF Architect 7\architect.exe =>.pdfforge G
O4 - GS\Quicklaunch [thier]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\R

O4 - GS\sendTo [thier]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Micros


O4 - GS\TaskBar [thier]: Kodi.lnk . (.XBMC Foundation - Kodi.) C:\Program Files (x86)\Kodi\kodi.exe =>.XBMC Foundation
O4 - GS\TaskBar [thier]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\TaskBar [thier]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\OneDrive.exe

O4 - GS\TaskBar [thier]: ZHPDiag.lnk . (...) C:\Users\thier\Downloads\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Programs [thier]: OneDrive (2).lnk . (...) C:\Users\thier\OneDrive
O4 - GS\Programs [thier]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Bravoloto.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_ico

O4 - GS\Desktop [WDAGUtilityAccount]: Joko.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url
O4 - GS\Desktop [WDAGUtilityAccount]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\thier\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Ama
O4 - GS\Desktop [WDAGUtilityAccount]: PE-PC217.lnk . (...) C:\Program Files (x86)\PE-PC217\OemDrv.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Peggle Blast.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_
O4 - GS\Desktop [WDAGUtilityAccount]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>


O4 - GS\Desktop [WDAGUtilityAccount]: Vova.lnk . (.BlueStack Systems, Inc. - .) C:\Program Files (x86)\BlueStacks\HD-RunApp.exe -json '{\'app_icon_url
O4 - GS\Desktop [WDAGUtilityAccount]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\thier\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicola
O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\thier\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolma
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.5.) C:\Program Files (x86)\Foxit Software\Foxit Re
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integ
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.e
O4 - GS\Quicklaunch [WDAGUtilityAccount]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files (x86)\ImgBurn\ImgBur
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Li
O4 - GS\Quicklaunch [WDAGUtilityAccount]: PDF Architect 7.lnk . (.pdfforge GmbH - PDF Architect 7.) C:\Program Files\PDF Architect 7\architect.exe
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Unin

O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendT


file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 8/30

O4 - GS\TaskBar [WDAGUtilityAccount]: Kodi.lnk . (.XBMC Foundation - Kodi.) C:\Program Files (x86)\Kodi\kodi.exe =>.XBMC Foundation
O4 - GS\TaskBar [WDAGUtilityAccount]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\TaskBar [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\On

O4 - GS\TaskBar [WDAGUtilityAccount]: ZHPDiag.lnk . (...) C:\Users\thier\Downloads\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive (2).lnk . (...) C:\Users\thier\OneDrive
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\O
O4 - GS\CommonDesktop [Public]: Achat de consommables - HP OfficeJet 3830 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP OfficeJet 3830 seri
O4 - GS\CommonDesktop [Public]: Bitdefender Home Scanner.lnk . (.Bitdefender - Bitdefender Home Scanner.) C:\Program Files (x86)\Bitdefender Home Scan
O4 - GS\CommonDesktop [Public]: Bitdefender VPN.lnk . (.Bitdefender - Bitdefender VPN.) C:\Program Files (x86)\Bitdefender\Bitdefender VPN\bdvpnuiapp
O4 - GS\CommonDesktop [Public]: Bitdefender.lnk . (.Bitdefender - Bitdefender Security.) C:\Program Files (x86)\Bitdefender\Bitdefender Security\secce
O4 - GS\CommonDesktop [Public]: BlueStacks Multi-Instance Manager.lnk . (.BlueStack Systems, Inc. - BlueStacks Multi-Instance Mana.) C:\Program Files
O4 - GS\CommonDesktop [Public]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks 4.) C:\ProgramData\BlueStacks\Client\Bluestacks.exe =>.Blue
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software L


O4 - GS\CommonDesktop [Public]: EaseUS Todo Backup Home 11.5.lnk . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) C:\Prog
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.5.) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit
O4 - GS\CommonDesktop [Public]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.G

O4 - GS\CommonDesktop [Public]: HP OfficeJet 3830 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP OfficeJet 3830 series\Bin\HP OfficeJet 3830
O4 - GS\CommonDesktop [Public]: HP Photo Creations.lnk . (.Visan / RocketLife - PhotoProduct.exe.) C:\Program Files (x86)\HP Photo Creations\PhotoProd

O4 - GS\CommonDesktop [Public]: HP Support Assistant.lnk . (.HP Inc. - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framew
O4 - GS\CommonDesktop [Public]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files (x86)\ImgBurn\ImgBurn.exe =
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: Light Image Resizer 5.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Light Image
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwareby

O4 - GS\CommonDesktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird
O4 - GS\CommonDesktop [Public]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\CommonDesktop [Public]: OpenOffice 4.1.5.lnk . (.Apache Software Foundation - OpenOffice 4.1.5.) C:\Program Files (x86)\OpenOffice 4\program\s
O4 - GS\CommonDesktop [Public]: PDF Architect 7.lnk . (.pdfforge GmbH - PDF Architect 7.) C:\Program Files\PDF Architect 7\architect.exe =>.pdfforg

O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pr
O4 - GS\CommonDesktop [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) C:\Program Files (x86)\Spybot - Search & Destro
O4 - GS\CommonDesktop [Public]: SSDlife Pro.lnk . (.Binarysense - SSDLife.) C:\Program Files (x86)\BinarySense\SSDlife\ssdlife.exe =>.BinarySense I
O4 - GS\Programs [Public]: OneDrive (2).lnk . (...) C:\Users\thier\OneDrive
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thier\AppData\Local\Microsoft\OneDrive\OneDrive.exe
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation

O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporat


O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corp
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\word

O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACC
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{A30EA700-5515-48F0-88B0-9E99DC356B88}\AppleSoftwareUpdateIco
O4 - GS\ProgramsCommon [Public]: B&O Play Audio Control.lnk . (.Realtek Semiconductor - B&O Play Audio Control.) C:\Program Files (x86)\Realtek\Audio\
O4 - GS\ProgramsCommon [Public]: BlueStacks Multi-Instance Manager.lnk . (.BlueStack Systems, Inc. - BlueStacks Multi-Instance Mana.) C:\Program Files
O4 - GS\ProgramsCommon [Public]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks 4.) C:\ProgramData\BlueStacks\Client\Bluestacks.exe =>.Blu
O4 - GS\ProgramsCommon [Public]: Debitest.lnk . (...) C:\WINDOWS\Installer\{FDC24E90-726E-4ACE-8690-8FA42AC5C729}\_E2639EA00DAF8C8C2CC4B5.exe
O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.E
O4 - GS\ProgramsCommon [Public]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>
O4 - GS\ProgramsCommon [Public]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files (x86)\ImgBurn\ImgBurn.exe
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>
O4 - GS\ProgramsCommon [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbir
O4 - GS\ProgramsCommon [Public]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUT
O4 - GS\ProgramsCommon [Public]: PDF Architect 7.lnk . (.pdfforge GmbH - .) C:\Program Files (x86)\PDF Architect 7\architect.exe =>.pdfforge GmbH
O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office
O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16
O4 - GS\ProgramsCommon [Public]: Skype Entreprise.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Of
O4 - GS\ProgramsCommon [Public]: Spybot-S&D Start Center.lnk . (.Safer-Networking Ltd. - Start Center.) C:\Program Files (x86)\Spybot - Search & Destr
O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.E

---\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{51c33195-6e23-4fba-b81a-f81cfaddc6e8}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress

---\ PROTOCOLE ADDITIONNEL (23) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\Syst
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\

O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System3

O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System3
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\Sys
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\u

O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\t

O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\S
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\Sy
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Eng
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program

---\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft C
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 9/30



[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CryptoTab Browser
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CryptoTab Update
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.GlarySoft
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:iCloudServices =>.Apple Inc.
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP OfficeJet 3830 series (NET)
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GoogleChromeAutoLaunch_5AA0792167F8B9CBFDA6B9FCF75FAE7B =>PUP.Optional
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Lync =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:mc_plusHealthcheck
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:mc_plus
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Mailbird
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SUPERAntiSpyware =>.SUPERAntiSpyware
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CryptoTab Browser
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CryptoTab Update
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GUDelayStartup =>.G
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:iCloudServices =>.A
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP OfficeJet 3830 se
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GoogleChromeAutoLaun
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Lync =>.Microsoft C
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:mc_plusHealthcheck
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:mc_plus
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Mailbird
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Clean
[HKEY_USERS\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SUPERAntiSpyware =>
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:iTunesHelper =>.Apple Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IAStorIcon =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:BdVpnApp
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RTHDVCPL =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastUI.exe =>.Avast Software s.r.o
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Emsisoft Anti-Malware
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SDTray =>.Microsoft Corporation


[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Who Is On My Wifi.lnk


O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d installation du
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Ext
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d installation du
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'In
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Wi
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Googl



O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU][64Bits] -- Amazon Kindle =>.Amazon
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {C1BCFECF-6EC2-4750-9072-5E2489423F8F} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B202C7F5-7DE3-4FBF-B259-E70E625F56FC} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {B5A46811-3612-4DA5-8A5A-E6DED5D7C523} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {A30EA700-5515-48F0-88B0-9E99DC356B88} =>.Apple Inc.






O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.

O42 - Logiciel: CPUID HWMonitor 1.39 - (.CPUID, Inc..) [HKLM][64Bits] -- CPUID HWMonitor_is1 =>.CPUID, Inc.
O42 - Logiciel: Debitest - (.Prestafind.) [HKLM][64Bits] -- {FDC24E90-726E-4ACE-8690-8FA42AC5C729} =>.Prestafind
O42 - Logiciel: EaseUS Todo Backup Home 11.5 Trial - (.CHENGDU YIWO Tech Development Co., Ltd.) [HKLM][64Bits] -- EaseUS Todo Backup_is1 =>.CHENGDU Y
O42 - Logiciel: EasySMX Gaming Mouse Software 1.0 - (.EasySMX Gaming Mouse Software.) [HKLM][64Bits] -- EasySMX Gaming Mouse Software





O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google LLC (Hidden)

O42 - Logiciel: HP Customer Experience Enhancements - (.HP Inc..) [HKLM][64Bits] -- {9720A595-3D2D-440E-9523-0B6F970745DD} =>.HP Inc. (Hidden)
O42 - Logiciel: HP Dropbox Plugin - (.HP.) [HKLM][64Bits] -- {6401399A-F5DA-4C04-87AA-E8107DF00751} =>.HP
O42 - Logiciel: HP Google Drive Plugin - (.HP.) [HKLM][64Bits] -- {63BCC696-0FB4-4E9C-8144-2DA4F248FC17} =>.HP
O42 - Logiciel: HP OfficeJet 3830 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {558AAE02-517F-43F5-A56B-83C2FA49084D} =>.Hewlett Packard

O42 - Logiciel: HP Support Solutions Framework - (.HP Inc..) [HKLM][64Bits] -- {1E7FD6C6-0112-4BDA-A488-C6245E105BFB} =>.HP Inc.
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {DA6D808E-3629-4933-8FB3-583F9BCB0DEF} =>.Apple Inc.
O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM][64Bits] -- ImgBurn =>.LIGHTNING UK!
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {3AAD3A73-0D6A-4EFE-93FC-7719DC6C89E4} =>.Intel Corporatio
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel(R) Em
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {90291EBF-187A-4C7E-A9AD-DCCB6C946536} =>.Intel Corpo
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {FBDA24D3-1A19-4D75-B3F1-F2A1FB6B61BF} =>.Intel Corpo
O42 - Logiciel: Intel(R) Management Engine Driver - (.Intel Corporation.) [HKLM][64Bits] -- {8DEA4234-C97D-41BE-B2BC-313A196BCD09} =>.Intel Corporati
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {E9B9A1A5-6398-4C99-8FDE-10794F6505C5} =>.Intel Corporation (Hi
O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {8fb9abdb-d154-4df3-bd67-8817a4550027} =>.Intel Corporation (H

O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {0CA45F79-D594-4C3F-9ED3-1C8DB989B5F5} =>.Intel Corporati
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporati

O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {FBC819D6-78B6-49AB-931E-3D127D43BE64} =>.Intel Corporation (Hidden)
O42 - Logiciel: Intel(R) Trusted Connect Service Client x64 - (.Intel Corporation.) [HKLM][64Bits] -- {C9552825-7BF2-4344-BA91-D3CD46F4C442} =>.Intel
O42 - Logiciel: Intel(R) Trusted Connect Service Client x86 - (.Intel Corporation.) [HKLM][64Bits] -- {C9552825-7BF2-4344-BA91-D3CD46F4C441} =>.Intel
O42 - Logiciel: Intel(R) Trusted Connect Services Client - (.Intel Corporation.) [HKLM][64Bits] -- {df682aff-4294-4ad1-aaa7-276931d5781f} =>.Intel Co


O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {C61D1957-6534-4B61-AB35-1F115D41CFD5} =>.Apple Inc.
O42 - Logiciel: Kodi - (.XBMC Foundation.) [HKCU][64Bits] -- Kodi =>.XBMC Foundation




O42 - Logiciel: Mailbird - (.Mailbird.) [HKLM][64Bits] -- {7831EF79-68DF-4D0C-A155-E10BD465DAC9} =>.Mailbird
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 10/30

O42 - Logiciel: Malwarebytes version 3.7.1.2839 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corpo
O42 - Logiciel: Microsoft Office 365 ProPlus - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- O365ProPlusRetail - fr-fr =>.Microsoft Corporation

O42 - Logiciel: Microsoft VC++ redistributables repacked. - (.Intel Corporation.) [HKLM][64Bits] -- {200969CA-4114-4553-832D-4286C5ACBB98} =>.Intel C
O42 - Logiciel: Microsoft VC++ redistributables repacked. - (.Intel Corporation.) [HKLM][64Bits] -- {BD2E4F7B-30B0-46A7-8E5C-D99D21C52336} =>.Intel C
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} =>.Mic
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40649 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5d0723d3-cff7-4e07-8d0b-ad
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40649 - (.Microsoft Corporation.) [HKLM][64Bits] -- {35b83883-40fa-423c-ae73-2a
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40649 - (.Microsoft Corporation.) [HKLM][64Bits] -- {20C1086D-C843-36B1-B678-9
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40649 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ABB19BB4-838D-3082-BDA4-87C6
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40649 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A8589745-51BC-3963-B4E9-2
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40649 - (.Microsoft Corporation.) [HKLM][64Bits] -- {DEA7F8E3-B7B9-3C3C-945B-7F8C
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7474cd6e-76cc-4257-837e-5
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {67f67547-9693-4937-aa13-5
O42 - Logiciel: Microsoft Visual C++ 2017 x64 Additional Runtime - 14.13.26020 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C5ECDB9A-D9B0-3107-BA85-
O42 - Logiciel: Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.13.26020 - (.Microsoft Corporation.) [HKLM][64Bits] -- {221D6DB4-46E2-333C-B09B-5F4
O42 - Logiciel: Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {DD6BC8D7-4582-4677-BAAC-
O42 - Logiciel: Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7B77DE7F-5219-435E-9CE1-FC7

O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla

O42 - Logiciel: NVAPI Monitor plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Nva
O42 - Logiciel: NVIDIA ABHub - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvAbHub =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation (Hid
O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVID
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>
O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionCon
O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchd
O42 - Logiciel: NVIDIA GeForce Experience 3.19.0.94 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperi
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corp
O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem

O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Messa
O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkS
O42 - Logiciel: NVIDIA NodeJS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation (Hidde
O42 - Logiciel: NVIDIA Optimus Update 37.0.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.N
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.38.16 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =
O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVI
O42 - Logiciel: NVIDIA ShadowPlay 3.19.0.94 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Co
O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>
O42 - Logiciel: NVIDIA SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirel
O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corpo
O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>
O42 - Logiciel: NVIDIA TelemetryApi helper for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContain
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporatio
O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Co
O42 - Logiciel: NVIDIA Virtual Audio 4.13.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =
O42 - Logiciel: NVIDIA Virtual Host Controller - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvVHCI =>.NVIDIA Cor
O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watc
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Mi
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>
O42 - Logiciel: OpenOffice 4.1.5 - (.Apache Software Foundation.) [HKLM][64Bits] -- {155C4F2E-7381-4B80-B258-FD0600C9C46B} =>.Apache Software Foundat


O42 - Logiciel: Panneau de configuration NVIDIA 430.86 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Contr

O42 - Logiciel: PDF Architect 7 Create Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {92B93B1C-433D-4271-875C-B13AF5F714D7} =>.pdfforge GmbH (Hidden)
O42 - Logiciel: PDF Architect 7 Edit Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {E3032061-5B97-47A6-BEDA-A025BD37B07F} =>.pdfforge GmbH (Hidden)
O42 - Logiciel: PDF Architect 7 View Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {FBD5D60A-B8C5-4626-A68F-6100E9BDB156} =>.pdfforge GmbH (Hidden)
O42 - Logiciel: PDFCreator - (.pdfforge GmbH.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge GmbH
O42 - Logiciel: PE-PC217 - (.PTX.) [HKLM][64Bits] -- {5AE06ADD-5EDC-425A-9DE6-52CC045DFB24}_is1

O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 =>.Antonio Da Cruz
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Co
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Re
O42 - Logiciel: Revo Uninstaller Pro 4.1.0 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, L
O42 - Logiciel: SpeedFan (remove only) - (.Almico Software.) [HKLM][64Bits] -- SpeedFan =>.Almico Software
O42 - Logiciel: Spybot - Search & Destroy - (.Safer-Networking Ltd..) [HKLM][64Bits] -- {B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 =>.Safer-Networkin
O42 - Logiciel: SSDlife Pro - (.BinarySense Inc..) [HKLM][64Bits] -- {6F104B6D-535A-4D27-9A11-8525368AEB1F} =>.BinarySense Inc.



O42 - Logiciel: Vulkan Run Time Libraries 1.0.54.1 - (.Intel Corporation Inc..) [HKLM][64Bits] -- VulkanRT1.0.54.1 =>.Intel Corporation Inc. (Hidden)
O42 - Logiciel: Vulkan Run Time Libraries 1.0.54.1 - (.Intel Corporation Inc..) [HKLM][64Bits] -- VulkanRT1.0.54.1-2 =>.Intel Corporation Inc.




HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\AVC3 =>.Bitdefender
HKLM\SOFTWARE\BitDefender =>.Bitdefender
HKLM\SOFTWARE\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\Bitdefender Device Management =>.Bitdefender
HKLM\SOFTWARE\Bitdefender Home Scanner =>.Bitdefender
HKLM\SOFTWARE\Bitdefender VPN =>.Bitdefender
HKLM\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\BlueStacksInstaller
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\CPUID =>.CPUID Inc
HKLM\SOFTWARE\CVSM
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Emsisoft =>.Emsisoft
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\HitmanPro =>.EIDOS hitman Game
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 11/30

HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\Ignis =>.Legitimate
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\PDF Architect 7 =>.pdfforge GmbH
HKLM\SOFTWARE\pdfforge =>.pdfforge
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\SoundResearch =>.Sound Research
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\BinarySense =>.BinarySense
HKLM\SOFTWARE\WOW6432Node\Bitdefender =>.Bitdefender
HKLM\SOFTWARE\WOW6432Node\Bitdefender Agent =>.Bitdefender
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\EaseUS =>.EaseUS Software
HKLM\SOFTWARE\WOW6432Node\EaseUS Todo Backup =>.EaseUS Software
HKLM\SOFTWARE\WOW6432Node\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\WOW6432Node\GlarySoft =>.GlarySoft
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\HP =>.HP
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\ImgBurn =>.Lightning UK
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\IO3O =>.IO3O LLC
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\LogMeInRescueCallingCard =>.LogMeIn Entreprise
HKLM\SOFTWARE\WOW6432Node\LogMeInRescueCallingCards =>.LogMeIn Entreprise
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Mailbird =>.Mailbird
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ObviousIdea =>.ObviousIdea
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge
HKLM\SOFTWARE\WOW6432Node\PDF Architect 7 =>.pdfforge GmbH
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\RocketLife =>.RocketLife
HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited
HKLM\SOFTWARE\WOW6432Node\Silicon Laboratories, Inc. =>.Silicon Laboratories, Inc.
HKLM\SOFTWARE\WOW6432Node\SpeedFan =>.Almico Software
HKLM\SOFTWARE\WOW6432Node\Visan =>.Visan Software
HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKCU\SOFTWARE\Amazon =>.Amazon
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Avast Software =>.AVAST Software
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\BinarySense =>.BinarySense
HKCU\SOFTWARE\Bitdefender =>.Bitdefender
HKCU\SOFTWARE\Bitdefender VPN =>.Bitdefender
HKCU\SOFTWARE\BlueStacksInstaller
HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKCU\SOFTWARE\Caphyon =>.Caphyon
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\FinalWire =>.FinalWire
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Glarysoft =>.GlarySoft
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\ImgBurn =>.Lightning UK
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Intel Corporation =>.Intel Corporation
HKCU\SOFTWARE\JSMediaProd =>.JsMediaProd
HKCU\SOFTWARE\Kodi =>.XBMC Foundation
HKCU\SOFTWARE\LANGAGENT =>.LangAgent
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mirage =>.Mirage Game
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\ObviousIdea =>.ObviousIdea
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\OpenOffice =>.SourceForge
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 12/30

HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\PC SOFT =>.PC SOFT
HKCU\SOFTWARE\PDF Architect 7 =>.pdfforge GmbH
HKCU\SOFTWARE\pdfforge =>.pdfforge
HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\Prestafind =>.Prestafind
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKCU\SOFTWARE\SpeedFan =>.Almico Software
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wintertree =>.Wintertree Software
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\.DEFAULT\SOFTWARE\Foxit Software =>.Foxit Software
HKU\.DEFAULT\SOFTWARE\Intel =>.Intel
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla
HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\.DEFAULT\SOFTWARE\Opera Software =>.Opera Software
HKU\.DEFAULT\SOFTWARE\PDF Architect 7 =>.pdfforge GmbH
HKU\.DEFAULT\SOFTWARE\PDF Tools AG =>.PDF Tools AG
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Sub_ID_com.bitdefender.cl =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Sub_ID_com.bitdefender.devicemanagement =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Sub_ID_com.bitdefender.hva =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Sub_ID_com.bitdefender.vpn =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\.DEFAULT\SOFTWARE\~BDSChedulerTemp
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Amazon =>.Amazon
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Avast Software =>.AVAST Software
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\BinarySense =>.BinarySense
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Bitdefender =>.Bitdefender
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Bitdefender VPN =>.Bitdefender
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\BlueStacksInstaller
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Caphyon =>.Caphyon
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\ej-technologies =>.ej-technologies
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\FinalWire =>.FinalWire
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Foxit Software =>.Foxit Software
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Glarysoft =>.GlarySoft
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\HP =>.HP
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\ImgBurn =>.Lightning UK
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Intel Corporation =>.Intel Corporation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\JSMediaProd =>.JsMediaProd
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Kodi =>.XBMC Foundation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\LANGAGENT =>.LangAgent
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Licenses =>.Microsoft Corporation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Mirage =>.Mirage Game
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\ObviousIdea =>.ObviousIdea
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\OpenOffice =>.SourceForge
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\PC SOFT =>.PC SOFT
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\PDF Architect 7 =>.pdfforge GmbH
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\pdfforge =>.pdfforge
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Prestafind =>.Prestafind
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\SpeedFan =>.Almico Software
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Synaptics =>.Synaptics
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Wintertree =>.Wintertree Software
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-1028830518-859416871-2898031174-1001\SOFTWARE\ZHP =>.Nicolas Coolman

---\ CONTENU DES DOSSIERS PROGRAMMES (308) - 19s

O43 - CFD: 09/05/2019 - [] D -- C:\Program Files\Bitdefender =>.Bitdefender
O43 - CFD: 20/06/2019 - [] D -- C:\Program Files\Bitdefender Agent =>.Bitdefender
O43 - CFD: 09/05/2019 - [] D -- C:\Program Files\Bitdefender Home Scanner =>.Bitdefender
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 13/30

O43 - CFD: 14/06/2019 - [] D -- C:\Program Files\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 02/10/2018 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 13/03/2019 - [] D -- C:\Program Files\CPUID =>.CPUID Inc
O43 - CFD: 02/10/2018 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files\HitmanPro =>.EIDOS hitman Game
O43 - CFD: 09/11/2018 - [] D -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation

O43 - CFD: 29/05/2019 - [] D -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\Mailbird =>.Mailbird
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 10/10/2018 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 09/05/2019 - [] D -- C:\Program Files\Npcap =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 17/06/2019 - [] D -- C:\Program Files\Opera =>.Opera Software
O43 - CFD: 01/05/2019 - [] D -- C:\Program Files\PDF Architect 7 =>.pdfforge GmbH
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files\PDFCreator =>.Philip Chinery
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation

O43 - CFD: 02/10/2018 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 07/05/2019 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 01/07/2019 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation

O43 - CFD: 02/10/2018 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.

O43 - CFD: 02/10/2018 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 11/10/2018 - [] D -- C:\Program Files (x86)\e-Carte Bleue =>.Legitimate
O43 - CFD: 07/11/2018 - [] D -- C:\Program Files (x86)\EaseUS =>.EaseUS Software
O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\EasySMX Gaming Mouse Software
O43 - CFD: 27/01/2019 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software
O43 - CFD: 30/06/2019 - [] D -- C:\Program Files (x86)\Glary Utilities 5 =>.GlarySoft

O43 - CFD: 09/11/2018 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 07/06/2019 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard

O43 - CFD: 07/05/2019 - [] D -- C:\Program Files (x86)\ImgBurn =>.Lightning UK
O43 - CFD: 14/06/2019 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 14/06/2019 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 11/02/2019 - [] D -- C:\Program Files (x86)\Intel Corporation =>.Intel Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation


O43 - CFD: 23/02/2019 - [] D -- C:\Program Files (x86)\Kodi =>.XBMC Foundation
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes
O43 - CFD: 01/07/2019 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/06/2019 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\ObviousIdea =>.ObviousIdea
O43 - CFD: 03/10/2018 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org
O43 - CFD: 01/05/2019 - [] D -- C:\Program Files (x86)\PDF Architect 7 =>.pdfforge GmbH
O43 - CFD: 14/06/2019 - [] D -- C:\Program Files (x86)\PE-PC217
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 14/06/2019 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\SpeedFan =>.Almico Software
O43 - CFD: 01/07/2019 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2 =>.SaferNetworking
O43 - CFD: 09/11/2018 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Home Scanner =>.Bitdefender
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Security =>.Bitdefender
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender VPN =>.Bitdefender
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc

O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 11.5 =>.EaseUS Software
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 =>.GlarySoft
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro =>.EIDOS hitman Game
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support =>.Hewlett-Packard
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc.
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn =>.Lightning UK
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 14/30

O43 - CFD: 19/06/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kodi =>.XBMC Foundation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mailbird =>.Mailbird
O43 - CFD: 19/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea =>.ObviousIdea
O43 - CFD: 19/06/2019 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5 =>.SourceForge
O43 - CFD: 01/07/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 7 =>.pdfforge GmbH
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator =>.Philip Chinery
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PE-PC217
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo d'identite Facile
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 =>.SaferNetworking
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SSDlife
O43 - CFD: 19/06/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Who Is On My Wifi
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 27/03/2019 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 31/10/2018 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 19/06/2019 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 26/02/2019 - [] D -- C:\ProgramData\Atc
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 24/05/2019 - [] D -- C:\ProgramData\bdch =>.Softwin
O43 - CFD: 24/02/2019 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender
O43 - CFD: 14/05/2019 - [] D -- C:\ProgramData\Binarysense =>.BinarySense
O43 - CFD: 23/02/2019 - [] D -- C:\ProgramData\Bitdefender =>.Bitdefender
O43 - CFD: 20/06/2019 - [] D -- C:\ProgramData\Bitdefender Agent =>.Bitdefender
O43 - CFD: 26/02/2019 - [] D -- C:\ProgramData\Bitdefender Device Management =>.Bitdefender
O43 - CFD: 16/03/2019 - [] D -- C:\ProgramData\Bitdefender Home Scanner =>.Bitdefender
O43 - CFD: 13/03/2019 - [] D -- C:\ProgramData\Bitdefender VPN =>.Bitdefender
O43 - CFD: 14/06/2019 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 02/10/2018 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 30/06/2019 - [] D -- C:\ProgramData\Emsisoft =>.Emsisoft
O43 - CFD: 01/07/2019 - [] D -- C:\ProgramData\EnigmaSoft Limited =>.Enigma Software Group, LLC
O43 - CFD: 02/10/2018 - [] D -- C:\ProgramData\Foxit ContentPlatform =>.Foxit Corporation
O43 - CFD: 09/05/2019 - [] D -- C:\ProgramData\Foxit Software =>.Foxit Software
O43 - CFD: 26/02/2019 - [] D -- C:\ProgramData\Gemma
O43 - CFD: 23/02/2019 - [] D -- C:\ProgramData\GlarySoft =>.GlarySoft
O43 - CFD: 15/11/2018 - [] D -- C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 30/06/2019 - [] D -- C:\ProgramData\HitmanPro =>.EIDOS hitman Game
O43 - CFD: 07/06/2019 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 09/11/2018 - [] D -- C:\ProgramData\HP Photo Creations =>.HP Photo Creations
O43 - CFD: 26/02/2019 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 14/05/2019 - [] D -- C:\ProgramData\Licenses =>.Microsoft Corporation
O43 - CFD: 14/05/2019 - [] D -- C:\ProgramData\Logs =>.ABBYY Software
O43 - CFD: 13/10/2018 - [] D -- C:\ProgramData\Mailbird =>.Mailbird
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes

O43 - CFD: 29/06/2019 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation

O43 - CFD: 14/02/2019 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 01/07/2019 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 14/06/2019 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 01/05/2019 - [] D -- C:\ProgramData\PDF Architect 7 =>.pdfforge GmbH
O43 - CFD: 01/07/2019 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 26/02/2019 - [] D -- C:\ProgramData\Roaming =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Spybot - Search & Destroy =>.SaferNetworking
O43 - CFD: 04/10/2018 - [] D -- C:\ProgramData\SRS Labs =>.SRS Labs
O43 - CFD: 01/01/2019 - [] D -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 02/10/2018 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 07/11/2018 - [] D -- C:\ProgramData\SystemAcCrux
O43 - CFD: 14/05/2019 - [] D -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 09/11/2018 - [] D -- C:\ProgramData\Visan =>.Visan Industries
O43 - CFD: 01/01/2019 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group
O43 - CFD: 19/03/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 22/10/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 19/06/2019 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 27/06/2019 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 09/11/2018 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 02/10/2018 - [] D -- C:\Users\thier\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 29/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 26/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Bitdefender =>.Bitdefender
O43 - CFD: 28/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Debitest
O43 - CFD: 02/10/2018 - [] D -- C:\Users\thier\AppData\Roaming\Foxit AgentInformation =>.Foxit Corporation
O43 - CFD: 09/05/2019 - [] D -- C:\Users\thier\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 02/10/2018 - [] D -- C:\Users\thier\AppData\Roaming\GlarySoft =>.GlarySoft
O43 - CFD: 26/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Google =>.Google
O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 09/11/2018 - [] D -- C:\Users\thier\AppData\Roaming\HPPSDr
O43 - CFD: 09/11/2018 - [] D -- C:\Users\thier\AppData\Roaming\hpqLog =>.Hewlett-Packard
O43 - CFD: 07/05/2019 - [] D -- C:\Users\thier\AppData\Roaming\ImgBurn =>.Lightning UK
O43 - CFD: 09/11/2018 - [] D -- C:\Users\thier\AppData\Roaming\Intel =>.Intel Corporation
O43 - CFD: 25/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Intel Corporation =>.Intel Corporation
O43 - CFD: 03/03/2019 - [] D -- C:\Users\thier\AppData\Roaming\JsMediaProd =>.JsMediaProd
O43 - CFD: 17/05/2019 - [] D -- C:\Users\thier\AppData\Roaming\Jsoft.fr =>.Jsoft.fr
O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Kodi =>.XBMC Foundation
O43 - CFD: 07/12/2018 - [] D -- C:\Users\thier\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 26/04/2019 - [] D -- C:\Users\thier\AppData\Roaming\Mailbird =>.Mailbird
O43 - CFD: 19/06/2019 - [] SD -- C:\Users\thier\AppData\Roaming\Microsoft =>.Microsoft Corporation
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 15/30

O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 17/05/2019 - [] D -- C:\Users\thier\AppData\Roaming\ObviousIdea =>.ObviousIdea
O43 - CFD: 03/10/2018 - [] D -- C:\Users\thier\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 02/10/2018 - [] D -- C:\Users\thier\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 14/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\PDF Architect 7 =>.pdfforge GmbH
O43 - CFD: 17/05/2019 - [] D -- C:\Users\thier\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 02/10/2018 - [] D -- C:\Users\thier\AppData\Roaming\Skype =>.Skype
O43 - CFD: 26/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Synaptics =>.Synaptics
O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Roaming\Thunderbird =>.Thunderbird
O43 - CFD: 01/01/2019 - [] D -- C:\Users\thier\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 01/07/2019 - [] D -- C:\Users\thier\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 08/02/2019 - [] D -- C:\Users\thier\AppData\Local\Amazon =>.Amazon
O43 - CFD: 27/02/2019 - [] D -- C:\Users\thier\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 26/02/2019 - [] D -- C:\Users\thier\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\thier\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 07/05/2019 - [] D -- C:\Users\thier\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 14/06/2019 - [] D -- C:\Users\thier\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 14/06/2019 - [] D -- C:\Users\thier\AppData\Local\BlueStacksSetup =>.BlueStack Systems, Inc.
O43 - CFD: 14/06/2019 - [] D -- C:\Users\thier\AppData\Local\BY-COMBO2
O43 - CFD: 25/06/2019 - [] D -- C:\Users\thier\AppData\Local\Caphyon =>.Caphyon
O43 - CFD: 18/01/2019 - [] D -- C:\Users\thier\AppData\Local\CEF =>.CEF
O43 - CFD: 26/04/2019 - [] D -- C:\Users\thier\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 12/01/2019 - [] D -- C:\Users\thier\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 01/07/2019 - [] D -- C:\Users\thier\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 14/06/2019 - [] D -- C:\Users\thier\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 03/03/2019 - [] D -- C:\Users\thier\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 17/06/2019 - [] D -- C:\Users\thier\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\Users\thier\AppData\Local\Google =>.Google
O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Local\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\thier\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 29/05/2019 - [] D -- C:\Users\thier\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 09/11/2018 - [] D -- C:\Users\thier\AppData\Local\HP_Inc =>.Hewlett-Packard
O43 - CFD: 23/05/2019 - [] D -- C:\Users\thier\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 13/10/2018 - [] D -- C:\Users\thier\AppData\Local\Mailbird =>.Mailbird
O43 - CFD: 30/12/2018 - [] D -- C:\Users\thier\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 30/12/2018 - [] D -- C:\Users\thier\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 02/04/2019 - [] D -- C:\Users\thier\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 23/02/2019 - [] D -- C:\Users\thier\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 15/06/2019 - [] D -- C:\Users\thier\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 26/02/2019 - [] D -- C:\Users\thier\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 15/11/2018 - [] D -- C:\Users\thier\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 30/06/2019 - [] D -- C:\Users\thier\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 01/07/2019 - [] D -- C:\Users\thier\AppData\Local\PackageStaging =>.Apcera
O43 - CFD: 15/06/2019 - [] D -- C:\Users\thier\AppData\Local\PDFCreator =>.Philip Chinery
O43 - CFD: 30/06/2019 - [] D -- C:\Users\thier\AppData\Local\pdfforge =>.pdfforge
O43 - CFD: 30/06/2019 - [] D -- C:\Users\thier\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 28/06/2019 - [] D -- C:\Users\thier\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 01/03/2019 - [] D -- C:\Users\thier\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 12/11/2018 - [] D -- C:\Users\thier\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 30/06/2019 - [] D -- C:\Users\thier\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\thier\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 15/11/2018 - [] D -- C:\Users\thier\AppData\Local\Thunderbird =>.Thunderbird
O43 - CFD: 29/06/2019 - [] D -- C:\Users\thier\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 01/01/2019 - [] D -- C:\Users\thier\AppData\Local\VS Revo Group =>.VS Revo Group
O43 - CFD: 30/06/2019 - [] D -- C:\Users\thier\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 23/02/2019 - [0] D -- C:\Users\thier\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 28/06/2019 - [] D -- C:\Users\thier\AppData\Local\Programs\Prestafind =>.Prestafind
O43 - CFD: 06/11/2018 - [] SD -- C:\Users\thier\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [0] D -- C:\Users\thier\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 09/10/2018 - [] D -- C:\Users\thier\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 04/12/2015 - [] D -- C:\Users\thier\Desktop\crack
O43 - CFD: 25/06/2019 - [] D -- C:\Users\thier\Desktop\EDF =>.EDF

O43 - CFD: 11/05/2019 - [0] D -- C:\Users\thier\Desktop\Gui w
O43 - CFD: 25/06/2019 - [] D -- C:\Users\thier\Desktop\Nouveau dossier
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\Desktop\pro btp
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] RD -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon =>.Amazon
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EasySMX Gaming Mouse Software
O43 - CFD: 19/03/2019 - [] D -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation

O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan =>.Almico Software
O43 - CFD: 19/06/2019 - [] RD -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] RD -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [] D -- C:\Users\thier\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 02/10/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 02/10/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 19/03/2019 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 19/06/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 20/06/2019 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/06/2019 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 22/06/2019 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\hpqLog =>.Hewlett-Packard

---\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\as
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d extension d environnement de stockage.)

---\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (44) - 4s
O108 - CMH1: Foxit_ConvertToPDF_Reader [64Bits] - {A94757A0-0226-426F-B4F1-4DF381C630D3} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\
O108 - CMH1: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files (x86)\Gl
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 16/30


O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\Syst
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) --
O108 - CMH1: PDFArchitect7_ManagerExt [64Bits] - {21989F59-B260-4302-90C3-E51740E03639} . (.pdfforge GmbH - PDF Architect 7.) -- C:\Program Files\PDF
O108 - CMH1: PhotoStreamsExt [64Bits] - {89D984B3-813B-406A-8298-118AFA3A22AE} . (.Apple Inc. - ShellStreams.) -- C:\Program Files\Common Files\Apple\
O108 - CMH1: SDECon32 [64Bits] - {44176360-2BBF-4EC1-93CE-384B8681A0BC} . (.Safer-Networking Ltd. - Windows Explorer context menu integration.) -- C:\
O108 - CMH1: SDECon64 [64Bits] - {44176360-2BBF-4EC1-93CE-384B8681A0BC} . (.Safer-Networking Ltd. - Windows Explorer context menu integration.) -- C:\

O108 - CMH1: SimpleShlExt [64Bits] - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarEx
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d environnement de Dossiers de tr.) -
O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) --
O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\n
O108 - CMH2: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS
O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarEx
O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System3
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows

O108 - CMH4: SimpleShlExt [64Bits] - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d environnement de Dossiers de tr.) -
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\System32\DriverStore\F
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\s
O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WIN

O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d environnement de Dossiers de tr.) -
O108 - CMH6: Foxit_ConvertToPDF_Reader [64Bits] - {A94757A0-0226-426F-B4F1-4DF381C630D3} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\
O108 - CMH6: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files (x86)\Gl
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windo

O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS
O108 - CMH6: SDECon32 [64Bits] - {44176360-2BBF-4EC1-93CE-384B8681A0BC} . (.Safer-Networking Ltd. - Windows Explorer context menu integration.) -- C:\
O108 - CMH6: SDECon64 [64Bits] - {44176360-2BBF-4EC1-93CE-384B8681A0BC} . (.Safer-Networking Ltd. - Windows Explorer context menu integration.) -- C:\
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarEx
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d extension d environnement de sto
O108 - CMH7: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files (x86)\Gl

O108 - CMH7: SimpleShlExt [64Bits] - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application

---\ IMAGE FILE EXECUTION OPTIONS (IFEO) (8) - 1s
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Mic
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d installation sans assistance d IE 7.) [MitigationOptions\\256] =>.Micr
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corpora
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Co

O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corp
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporatio


O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [264704] =>.Microsoft


O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [804880] =>.Microsoft Win
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [20992] =>.Microsoft C
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [136712] =>.Microsoft Windows
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [1
O58 - SDL:2019/03/19 06:43:38 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [16896] =>.Micr
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [13824] =>.Microsoft Corp
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [337920] =>.Mi
O58 - SDL:2019/03/19 06:43:39 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135632]
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [662032
O58 - SDL:2018/06/15 10:26:10 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\aftap0901.sys
O58 - SDL:2019/03/19 06:45:00 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [40960] =>.Microsof
O58 - SDL:2019/06/29 14:55:16 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys
O58 - SDL:2019/03/19 06:44:53 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [291840] =
O58 - SDL:2019/03/19 06:43:33 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432]
O58 - SDL:2019/03/19 06:43:33 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [37888] =>
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [199688] =>.Microsof
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [201256] =>.Microso
O58 - SDL:2019/03/19 06:43:39 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83464] =>.Microso
O58 - SDL:2019/03/19 06:43:39 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27176] =>.Microsof

O58 - SDL:2019/03/19 06:44:28 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] =>.Microsof
O58 - SDL:2019/03/19 06:43:39 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132112] =>.Microso
O58 - SDL:2019/06/29 15:00:12 A . (.AVAST Software - Avast anti rootkit disk filter.) -- C:\WINDOWS\System32\drivers\aswArDisk.sys [37320] =>.AVAST
O58 - SDL:2019/06/29 15:00:12 A . (.AVAST Software - Avast anti rootkit.) -- C:\WINDOWS\System32\drivers\aswArPot.sys [209256] =>.AVAST Software s
O58 - SDL:2019/06/29 15:00:11 A . (.AVAST Software - IDS Application Activity Monitor Driver..) -- C:\WINDOWS\System32\drivers\aswbidsdriver.sys [26
O58 - SDL:2019/06/29 15:00:11 A . (.AVAST Software - Application Activity Monitor Helper Driver.) -- C:\WINDOWS\System32\drivers\aswbidsh.sys [20605
O58 - SDL:2019/06/29 15:00:11 A . (.AVAST Software - Universal Driver.) -- C:\WINDOWS\System32\drivers\aswbuniv.sys [61688] =>.AVAST Software s.r.o
O58 - SDL:2019/06/29 15:00:14 A . (.AVAST Software - Avast ELAM Driver.) -- C:\WINDOWS\System32\drivers\aswElam.sys [15488] =>.Microsoft Windows Ea
O58 - SDL:2019/06/29 15:00:14 A . (.AVAST Software - Home Network Security.) -- C:\WINDOWS\System32\drivers\aswHdsKe.sys [279336] =>.AVAST Software
O58 - SDL:2019/06/29 15:00:14 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [42504] =>.AVAST Soft
O58 - SDL:2019/06/29 15:00:14 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [169
O58 - SDL:2019/06/29 15:00:14 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [112520] =>.AVAST Softw

O58 - SDL:2019/06/29 15:00:12 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1030992] =>.AVAST Sof
O58 - SDL:2019/06/29 15:00:14 A . (.AVAST Software - Avast self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [477288] =>.AVAST Soft

O58 - SDL:2019/06/29 15:00:15 A . (.AVAST Software - Avast VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [387392] =>.AVAST Software s.r.o
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30224] =>.Microso
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [222728] =>.Microso
O58 - SDL:2019/06/03 09:28:05 A . (.BitDefender S.R.L. Bucharest, ROMANIA - BitDefender Active Threat Control Filesyste.) -- C:\WINDOWS\System32\drive
O58 - SDL:2018/04/17 11:27:12 A . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\System32\drivers\avc3.sys [1723552] =>.Bitdefe
O58 - SDL:2019/03/19 06:44:01 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [70456] =>.Microsoft Windows
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41784] =>.Microsoft Wi
O58 - SDL:2019/03/19 06:43:34 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation

file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 17/30

O58 - SDL:2019/04/09 14:19:02 A . (.Bitdefender - Bitdefender Early Launch Anti-Malware Drive.) -- C:\WINDOWS\System32\drivers\bdelam.sys [22960] =


O58 - SDL:2019/03/19 06:44:32 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] =>.Microsoft Corporation
O58 - SDL:2019/06/29 14:55:08 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [117048] =>.Mic
O58 - SDL:2019/03/19 06:43:53 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117
O58 - SDL:2019/03/19 06:45:38 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] =>.Microsoft Cor
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [232448] =>.Microsof
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [114688] =>.Mic
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76288] =
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1422848] =>.Micro
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [98304] =>.Mic
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [42808] =>.Microsoft
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [43008] =>
O58 - SDL:2019/03/19 06:43:38 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [534032] =>.Micros
O58 - SDL:2019/03/19 06:43:34 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [64312] =>.Microsoft
O58 - SDL:2019/03/19 06:45:38 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100352] =>.Microso
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [173056] =>.Microsoft Cor
O58 - SDL:2019/03/19 06:44:01 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [82448]
O58 - SDL:2019/03/19 06:43:40 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [142864]
O58 - SDL:2019/03/19 06:43:40 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319528]


O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [51200]
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [416272] =>.Microso
O58 - SDL:2019/06/19 12:45:54 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [456192] =>
O58 - SDL:2019/06/19 12:46:00 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [401416] =>.Mic
O58 - SDL:2019/03/19 06:44:06 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1029944] =>.Microsoft Windows
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] =>.Mi
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys
O58 - SDL:2019/06/19 12:45:58 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [751256]
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys
O58 - SDL:2019/03/19 06:44:16 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [58896] =>.Microsoft Windows
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [98104] =>.Microsoft Wi
O58 - SDL:2019/03/19 06:44:00 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [100152] =>.Microsoft Window
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104]
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [151040] =>.Micro

O58 - SDL:2019/03/19 06:44:45 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [37928] =>.Microso
O58 - SDL:2019/03/19 06:44:45 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] =>.Mi

O58 - SDL:2016/08/13 00:40:00 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_cpu.sys [66624] =>.Intel Cor
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [98304] =>.Mi
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16344] =>
O58 - SDL:2019/03/19 06:44:28 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [36904] =>.Microsoft Win
O58 - SDL:2019/06/29 14:55:41 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys
O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [193848] =>.Micros
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys
O58 - SDL:2019/03/19 06:44:45 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [34616] =>.Micro
O58 - SDL:2019/06/29 14:54:59 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3590968] =>.Micro
O58 - SDL:2019/06/29 14:54:59 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [441144] =>.Microsoft
O58 - SDL:2019/06/29 14:54:59 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [876856] =>.Microsoft
O58 - SDL:2019/03/19 06:45:38 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.s
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [14336] =>.Microsoft Co
O58 - SDL:2016/08/13 00:40:30 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\WINDOWS\System32\drivers\esif_lf.sys [350272] =>.Intel Corporati
O58 - SDL:2018/10/08 18:17:30 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\eubakup.sys [73448]

O58 - SDL:2018/10/08 18:17:30 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\eudskacs.sys [22784
O58 - SDL:2018/10/08 18:17:30 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\WINDOWS\System32\drivers\EuFdDis
O58 - SDL:2019/03/19 06:43:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419176] =>.Microsoft Windo
O58 - SDL:2019/03/19 06:43:45 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [404480]
O58 - SDL:2019/03/19 06:43:45 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [422712] =>.Mi
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [35328] =>.Micro
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys
O58 - SDL:2019/03/19 06:44:28 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94520] =>.Microso
O58 - SDL:2019/03/19 06:44:28 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40960] =>.Micr
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28160] =>.Microsoft Corpor

O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [34320] =>.Mi
O58 - SDL:2019/06/29 14:55:41 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [801592]
O58 - SDL:2019/06/29 14:55:11 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [477496] =>.Mic
O58 - SDL:2019/03/01 13:22:36 A . (.BitDefender S.R.L. Bucharest, ROMANIA - BitDefender Generic Exploit Mitigation for.) -- C:\WINDOWS\System32\driver
O58 - SDL:2019/03/19 06:43:45 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] =>.Mi
O58 - SDL:2018/10/02 15:44:32 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\WINDOWS\System32\drivers\GUBootStartup.sys [2893
O58 - SDL:2019/06/03 09:28:05 A . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\WINDOWS\System32\drivers\gzflt.sys [188384] =>
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [114688]
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [4254
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39736] =>.Microsoft Wi


O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [54784] =>.Microsof
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [5356
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [4
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] =>.Microsoft
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [62976] =>.Microsof
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [45568

O58 - SDL:2019/03/19 06:43:39 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1301000] =>.Microsoft
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [32568] =>.Microsoft Win
O58 - SDL:2019/06/29 14:55:22 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [84280] =>.Micros
O58 - SDL:2019/03/19 06:45:54 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [145208]
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [29704] =>.Microso
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sy
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [119296] =>.Microsof
O58 - SDL:2019/03/19 06:43:34 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36
O58 - SDL:2019/03/19 06:43:34 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] =>.Inte
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 18/30

O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [1
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [9
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520]
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [17
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [1807
O58 - SDL:2019/03/19 06:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [1776
O58 - SDL:2019/03/19 06:43:38 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
O58 - SDL:2019/03/19 06:43:37 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [1
O58 - SDL:2016/09/20 12:04:30 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [795
O58 - SDL:2018/09/26 00:31:12 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorAC.sys [10
O58 - SDL:2019/03/19 06:43:41 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys
O58 - SDL:2019/03/19 06:43:41 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [4119
O58 - SDL:2019/03/19 06:43:41 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [566800] =>.Microsoft Window
O58 - SDL:2017/12/06 19:15:02 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) -- C:\WINDOWS\System32\drivers\ibtusb.sys [136

O58 - SDL:2019/03/19 06:44:16 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.s
O58 - SDL:2018/01/15 02:31:10 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [831008] =>
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [20008] =>.Microsoft
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [274128] =>.Mic
O58 - SDL:2019/03/19 06:43:34 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [28672] =>.Micr
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [223248] =>.Micro

O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90624] =>.Microsoft Cor
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [110904] =>.Microsoft Windo
O58 - SDL:2019/03/19 06:44:16 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [224768] =>.Mi

O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [23352] =>.Microsoft
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [148520]
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [70968] =>.Mi
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] =>.Mic
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [3
O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [3
O58 - SDL:2019/06/29 14:55:16 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [455680] =>.Microsoft Corpor
O58 - SDL:2019/06/19 12:45:59 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys
O58 - SDL:2019/06/19 12:45:58 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys
O58 - SDL:2019/03/19 06:44:52 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29184]
O58 - SDL:2019/03/19 06:44:48 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72192
O58 - SDL:2019/03/19 06:43:39 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109064] =>
O58 - SDL:2019/03/19 06:43:39 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124448] =>.Mic
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128528] =
O58 - SDL:2019/03/19 06:43:39 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82960] =>
O58 - SDL:2019/06/19 12:46:01 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [535864] =
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [62264] =>.Microsoft Wind
O58 - SDL:2019/06/29 15:25:20 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [153328] =>.Malwarebytes C
O58 - SDL:2019/06/29 15:25:24 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [199768] =>.Malwarebyt
O58 - SDL:2019/02/01 11:20:22 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [20936]
O58 - SDL:2019/06/19 12:45:43 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [358
O58 - SDL:2019/03/19 06:44:33 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [24576] =>.Microso
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys
O58 - SDL:2019/03/19 06:43:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [576016]
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Blu
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Le

O58 - SDL:2019/03/19 06:43:47 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53760] =>.Microsoft Corporatio

O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [69632] =>.Microsoft Corpor
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [66872] =>.Mic
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35840] =>.Micr
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [113680
O58 - SDL:2019/03/19 06:44:15 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80384]
O58 - SDL:2019/03/19 06:45:56 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [158208] =>.Micro
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [561464] =>.Microsof
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [261432] =>.M
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [34816] =>.Microsoft Corporat
O58 - SDL:2019/06/29 14:55:00 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [182072] =>
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [54072] =>.Microsof
O58 - SDL:2019/03/19 06:44:16 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12
O58 - SDL:2019/03/19 06:44:16 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys

O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [292880]
O58 - SDL:2019/06/29 14:55:16 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] =>.Microsoft Corporat
O58 - SDL:2019/03/19 06:45:00 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys
O58 - SDL:2019/03/19 06:44:52 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] =>.Microsoft Corpo
O58 - SDL:2019/03/19 06:44:52 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] =>.Microsof
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [372752
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [48440] =>
O58 - SDL:2019/03/19 06:44:52 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12800
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [16384] =
O58 - SDL:2019/06/29 14:55:11 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [129848] =
O58 - SDL:2019/03/19 06:43:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [64016
O58 - SDL:2019/03/19 06:43:41 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [153616] =>.Microsof
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1
O58 - SDL:2019/03/19 06:45:50 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys
O58 - SDL:2019/03/19 06:45:00 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672]
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - Pilote d E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [7065

O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys
O58 - SDL:2019/03/19 06:45:50 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [63488] =>.Microsoft Co
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [243200] =>.Microsoft Corporati
O58 - SDL:2019/03/19 06:45:32 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [13
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys
O58 - SDL:2019/03/19 06:44:58 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64824] =>.Micros
O58 - SDL:2019/06/19 12:46:04 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [337408] =>.Microsoft C
O58 - SDL:2019/06/29 14:55:11 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [586552] =>.Microsoft
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [246072] =>.Microsoft

O58 - SDL:2017/06/13 00:11:42 A . (.Insecure.Com LLC. - npcap.sys (NT6 AMD64) Kernel Filter Driver.) -- C:\WINDOWS\System32\drivers\npcap.sys [81192
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [78336] =>.Microsoft Corporation
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 19/30

O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27136] =>.M
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48128] =>.Microsoft Corporatio

O58 - SDL:2019/03/19 06:44:53 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20496] =>.Micr
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] =>.Microsoft Corporation

O58 - SDL:2019/05/23 18:22:12 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [2


O58 - SDL:2019/04/17 09:42:48 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [69840] =>.NVIDI
O58 - SDL:2019/04/17 06:44:20 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\WINDOWS\System32\drivers\nvvhci.sys [75600] =>
O58 - SDL:2019/03/19 06:43:55 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [701952] =>.Mi
O58 - SDL:2019/03/19 06:44:15 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [160784] =>.Mic

O58 - SDL:2019/06/19 12:45:59 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [178192] =>.Microsoft Win

O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16936] =>.Micro
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56848] =>.Mi
O58 - SDL:2019/03/19 06:43:34 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127504] =>.Microsoft
O58 - SDL:2019/03/19 06:44:33 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [58384]
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [180240] =
O58 - SDL:2019/03/19 06:43:53 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys
O58 - SDL:2019/03/19 06:45:50 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [96056] =>.Mi


O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys
O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [208184] =>.Micro
O58 - SDL:2019/03/19 06:44:15 A . (.Microsoft Corporation - Process Launch Monitor driver.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [36248]
O58 - SDL:2019/03/19 06:45:00 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [41784] =>.Microsoft Windo
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [19968] =>
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [112
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [8
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [103424] =
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [85504] =>

O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] =>

O58 - SDL:2019/03/19 06:45:47 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys
O58 - SDL:2019/03/19 06:45:56 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [294928] =>.Microsoft W


O58 - SDL:2016/12/21 14:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\WINDOWS\System32\drivers\revoflt.sys [40240] =>.VS Revo Gro
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [211456] =>.Microso
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Transport d ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys
O58 - SDL:2019/03/19 06:43:38 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [113152] =>.Micro
O58 - SDL:2019/03/19 06:45:43 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [159232] =>.Mi
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] =>.Microsoft
O58 - SDL:2019/03/19 06:45:53 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824]
O58 - SDL:2019/03/19 06:44:48 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys
O58 - SDL:2019/05/19 17:03:00 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1141536] =
O58 - SDL:2019/03/19 06:43:49 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [57856] =>.Real
O58 - SDL:2016/12/01 08:06:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD6
O58 - SDL:2016/12/30 02:04:12 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [787968]
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [117288] =>.Microso


O58 - SDL:2019/03/19 06:44:33 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [187408] =>.Microsoft Wi


O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105784] =>
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [103736] =>
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [84792] =>.Microsoft
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [170808] =>.Micro
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] =>.Microsof


O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] =>.Microsoft Co
O58 - SDL:2019/03/19 06:45:32 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81936]
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Mic
O58 - SDL:2019/03/19 06:43:39 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sy
O58 - SDL:2018/03/05 05:23:02 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [5376
O58 - SDL:2018/03/05 05:23:06 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [55304] =
O58 - SDL:2018/03/05 05:23:06 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [55304
O58 - SDL:2019/03/19 06:44:30 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] =>.Micros
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [204816] =>.M
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [657208] =>.Micros
O58 - SDL:2019/03/19 14:02:50 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [85816] =>.Microsoft Win
O58 - SDL:2019/06/29 14:55:11 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [771584] =>.Microso
O58 - SDL:2019/06/29 14:55:11 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [309760] =>.Microsoft
O58 - SDL:2019/03/19 06:43:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.s
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [174392]
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [639288] =>

O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [55608] =>
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [42296] =>.Microsoft Wi
O58 - SDL:2019/03/19 06:44:33 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] =
O58 - SDL:2018/03/05 05:23:28 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [67080] =>.Syn

O58 - SDL:2018/03/05 05:23:38 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [764424] =>
O58 - SDL:2019/03/19 06:44:33 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] =>.Microsoft C
O58 - SDL:2019/03/19 06:43:54 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [29496]
O58 - SDL:2019/06/29 14:55:11 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2990608] =>.Microsoft Windows
O58 - SDL:2019/03/19 06:44:58 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [5478

O58 - SDL:2019/03/19 06:45:32 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [132616] =>.Microsoft W
O58 - SDL:2017/11/28 05:27:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [20
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 20/30

O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41488] =>.M
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [141864] =>.M



O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [35328]
O58 - SDL:2019/03/19 06:44:58 A . (.Microsoft Corporation - Pilote d interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [1285
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79160] =>.Microsof
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [1
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [186368]
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [3481
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [111104] =
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [244024] =>.Micr
O58 - SDL:2019/03/19 06:43:49 A . (.Microsoft Corporation - 'udecx.DRIVER'.) -- C:\WINDOWS\System32\drivers\Udecx.sys [51200] =>.Microsoft Corporat
O58 - SDL:2019/03/19 06:45:53 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [342528] =>.Microsoft
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [31109
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [181048] =>
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [13312] =>.Micr
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [74552]
O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24576] =>.Microsof
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [198656] =>.Micros
O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [257
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [39936]
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [183
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107008] =
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33592] =>.Micros
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [100664] =>.Micr

O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [618296] =>.M
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] =>.Micros
O58 - SDL:2019/03/19 06:44:18 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [50688] =>.Microsoft Corporation
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [475144] =>.M
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [34304] =>.Microsoft C
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [79360] =>.Microsoft Corp
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39936] =>.Micros
O58 - SDL:2019/03/19 06:43:38 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [306192] =>.Micros
O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [531976] =>.Microsoft Wind
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [60216] =>

O58 - SDL:2019/06/19 12:45:42 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [804880] =>.Microsoft Wi
O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [39936] =>
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [55
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] =>.Microsoft Co
O58 - SDL:2019/03/19 06:45:54 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [99128] =>.Microsoft Wi
O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36152] =>.M
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [22
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [17
O58 - SDL:2019/03/19 06:43:44 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [5253
O58 - SDL:2019/03/19 06:43:39 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90120] =
O58 - SDL:2019/03/19 06:45:38 A . (.Microsoft Corporation - Pilote d extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys



O58 - SDL:2019/03/19 06:43:40 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166928]
O58 - SDL:2019/03/19 06:43:40 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305672] =>.Mi
O58 - SDL:2019/03/19 06:43:55 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [27648] =>.Mi
O58 - SDL:2019/03/19 06:43:55 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77312] =>.Mic
O58 - SDL:2019/03/19 06:43:55 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50176] =>.Mi

O58 - SDL:2019/03/19 06:45:02 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [926
O58 - SDL:2019/03/19 06:44:06 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [66048] =>.Microsoft Corp
O58 - SDL:2019/06/19 12:45:52 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys
O58 - SDL:2019/03/19 06:44:16 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys
O58 - SDL:2019/03/19 06:43:57 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46472] =
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - Runtime de l infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys
O58 - SDL:2019/03/19 06:43:57 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [58896]
O58 - SDL:2019/03/19 06:43:55 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [931840] =>.Mi
O58 - SDL:2019/03/19 06:44:21 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [21816] =>
O58 - SDL:2019/03/19 06:43:57 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [62
O58 - SDL:2019/03/19 06:44:35 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [50
O58 - SDL:2019/06/29 14:55:08 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [18
O58 - SDL:2019/03/19 06:44:30 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [37176] =>.Microso
O58 - SDL:2019/03/19 06:44:18 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTruste
O58 - SDL:2019/03/19 06:45:54 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32568]
O58 - SDL:2019/06/19 12:46:11 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [84

O58 - SDL:2019/06/29 14:54:56 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [250880] =>.Microsoft Co
O58 - SDL:2019/06/19 12:45:58 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\winquic.sys [205112] =>.Microsoft
O58 - SDL:2019/06/19 13:03:51 A . (.Microsoft Corporation - SetupPlatform NEO Mini-Filter.) -- C:\WINDOWS\System32\drivers\WinSetupBoot.sys [66064]
O58 - SDL:2019/03/19 06:43:43 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [105472] =>.Mic


O58 - SDL:2019/03/19 06:43:41 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [1945
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [20496] =>.M
O58 - SDL:2019/03/19 06:44:30 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [225080] =>.Mi
O58 - SDL:2019/03/19 14:02:52 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys
O58 - SDL:2019/03/19 06:44:36 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [39976] =>.Microsof
O58 - SDL:2019/03/19 06:44:38 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] =>.Microsoft C
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [24576]
O58 - SDL:2019/03/19 06:43:37 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\WINDOWS\System32\drivers\WSDScan.sys [26112
O58 - SDL:2019/03/19 06:44:53 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys
O58 - SDL:2019/03/19 06:44:53 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [324608] =>.Mic
O58 - SDL:2019/03/19 06:43:33 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [48128] =>
O58 - SDL:2019/06/29 14:55:08 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [550400] =>.Mi
O58 - SDL:2019/06/29 14:54:59 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2725376] =>.Micros
O58 - SDL:2019/06/29 14:55:08 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3725312] =>
O58 - SDL:2019/03/19 06:44:15 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] =>.Microsoft Co
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 21/30


O58 - SDL:2019/06/29 14:55:20 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [324096] =>.Mi
O58 - SDL:2019/06/29 14:55:20 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2799616] =>


O61 - LFC: 2019/07/01 12:22:42 A . (..) -- C:\Users\thier\AppData\Local\Microsoft\Windows\FileHistory\Data\3464\C\Users\thier\Downloads\OJ3830_Full_We
O61 - LFC: 2019/07/01 14:33:46 A . (..) -- C:\Users\thier\AppData\Local\Microsoft\Windows\FileHistory\Data\3465\C\Users\thier\Downloads\OJ3830_Full_We
O61 - LFC: 2019/07/01 15:34:00 A . (..) -- C:\Users\thier\AppData\Local\Microsoft\Windows\FileHistory\Data\3466\C\Users\thier\Downloads\mb3-setup-cons
O61 - LFC: 2019/06/25 16:12:58 A . (..) -- C:\Users\thier\AppData\Local\Programs\Prestafind\Debitest\Debitest.Installer.CustomActions.dll [8192]
O61 - LFC: 2019/06/25 16:12:58 A . (.Jynx.) -- C:\Users\thier\AppData\Local\Programs\Prestafind\Debitest\Jynx.dll [283648]
O61 - LFC: 2019/06/25 16:12:58 A . (.Jynx.Rules.) -- C:\Users\thier\AppData\Local\Programs\Prestafind\Debitest\Jynx.Rules.dll [192000]
O61 - LFC: 2019/06/25 16:12:58 A . (.StreamExtended.) -- C:\Users\thier\AppData\Local\Programs\Prestafind\Debitest\StreamExtended.dll [90112]
O61 - LFC: 2019/06/25 14:29:35 RA . (..) -- C:\Users\thier\AppData\Roaming\Microsoft\Installer\{BA3CF118-924B-49D3-94FD-63F79DCC0EBB}\app_icon.exe

---\ ASSOCIATION Shell Spawning (9) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Micros
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eve
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- 'C:\WINDOWS\System32\WScript.exe' '%1' %* =>.Default.Value

O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- '%1' /S =>.Default.Value


O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chr
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Appli
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launch
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Appli
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launch
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Appli
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launch

---\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (3) - 11s
O69 - SBI: SearchScopes [HKCU] [64Bits]{012E1000-F331-11DB-8314-0800200C9A66} - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.c


O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\Syste
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\Syste
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [2

O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1042944] =>.Microsoft

O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d ouverture de session secon.) -- C:\Windows\System32\se

O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110080]

O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [231424] =>.Microsoft Cor
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [491520] =>.Microsoft Cor


O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [2
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\Mitigatio
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\Langua
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.Accou
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\W

O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Man




O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d interface dynamique.) -- C:\Windows\System32\mpr





O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll



O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNet

O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1282048] =>.Micr


O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll

O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d application.) -- C:\Windows\System32\appinfo.dll
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthMana
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d authentification naturelle.) -- C:\
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [491520] =>.Microsoft Co

---\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (32) - 4s
O87 - FAEL: '{EEE13CC9-C996-4753-A0A7-9C1ECA0E1386}' [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\60.0.32
O87 - FAEL: '{D10EC35B-2556-48AF-B872-11D12FDC36FA}' [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files
O87 - FAEL: '{B8CD5F77-BCEE-410F-A110-72455B3E4305}' [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\
O87 - FAEL: '{D8DB44F9-4CD5-448A-9EEC-B8D3085E9374}' [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporat
O87 - FAEL: '{8888576F-66B1-437D-AD34-B01F7C36A66E}' [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporat
O87 - FAEL: '{FFAC7367-929B-4B77-8D69-BF6CC000C55C}' [In-None-P17-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporat
O87 - FAEL: '{E5750230-937D-4E05-BE74-A8B3E5D96528}' [In-None-P6-TRUE] .(.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporati
O87 - FAEL: '{07D68EA6-B924-4023-AF8C-FD285A0383C2}' [In-None-P6-TRUE] .(.BlueStack Systems, Inc. - BlueStacks Android Host.) -- C:\Program Files\Blue
O87 - FAEL: '{CD8A5F3B-D0D0-498E-97A4-495190FB5496}' [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\60.0.32
O87 - FAEL: '{141968AF-C5D9-4F40-9F4D-3D4DD00C99BC}' [In-None-P17-TRUE] .(.HP Inc. - HPNetworkCommunicatorCom.) -- C:\Program Files\HP\HP OfficeJet 38
O87 - FAEL: '{80195E44-EF70-40B7-B0CD-F64728A755D5}' [In-None-P17-TRUE] .(.HP Inc. - DeviceSetup.exe.) -- C:\Program Files\HP\HP OfficeJet 3830 series
O87 - FAEL: '{93E46AA6-712D-43E1-965A-1B13AEE88B5D}' [In-None-P17-TRUE] .(.HP Inc. - FaxPrinterUtility.) -- C:\Program Files\HP\HP OfficeJet 3830 seri
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 22/30

O87 - FAEL: '{2186913B-450D-4155-B255-2ED3B0AADDAF}' [In-None-P17-TRUE] .(.HP Inc. - SendAFax.) -- C:\Program Files\HP\HP OfficeJet 3830 series\bin\Se
O87 - FAEL: '{471F3562-4AA0-48CD-9A29-6D4C02FBA823}' [In-None-P17-TRUE] .(.HP Inc. - DigitalWizards.) -- C:\Program Files\HP\HP OfficeJet 3830 series\
O87 - FAEL: '{2FE2EE7B-4287-4AED-BFC2-0223D9F2573C}' [In-None-P17-TRUE] .(.HP Inc. - FaxApplications.) -- C:\Program Files\HP\HP OfficeJet 3830 series

O87 - FAEL: '{36EE006D-E55E-4696-82ED-405326539494}' [In-None-P6-TRUE] .(.by Achal Dhir - Wireless PAN DHCP and DNS Server.) -- C:\Program Files\Intel
O87 - FAEL: '{6843120B-C31B-498D-B05E-C7BB5F7B5660}' [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
O87 - FAEL: '{F2B9BD43-1329-4601-B9D9-19A14A0FBD2C}' [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
O87 - FAEL: '{DD78A1B8-8636-4EAB-8BBD-87201A34A450}' [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
O87 - FAEL: '{AC6F0569-68E2-4E12-B356-36EF09F1573A}' [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
O87 - FAEL: '{AAC5F7D0-02F8-43F3-8E65-FF38997B15A4}' [In-None-P17-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -
O87 - FAEL: '{BEB46A86-5A86-43BD-9DA9-0029E5928781}' [In-None-P6-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) --
O87 - FAEL: '{49A82238-5017-4304-A7DB-20EA8EFDAD62}' [In-None-P17-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -
O87 - FAEL: '{79C2B8A5-BD1C-478B-8939-28C114388B72}' [In-None-P6-TRUE] .(.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) --
O87 - FAEL: '{D02B6AF2-517D-4254-A0F3-A1A9B4DC0336}' [In-None-P6-TRUE] .(.Bitdefender - HVA Service.) -- C:\Program Files\Bitdefender Home Scanner\hva
O87 - FAEL: '{C56818EB-FDF0-4AE2-BF97-FF49E3318238}' [In-None-P17-TRUE] .(.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Appl
O87 - FAEL: '{FC9ABA96-4A97-428B-9533-7A764063754A}' [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe
O87 - FAEL: '{1F1104B1-4127-4436-BFBB-EC97BC3A0C90}' [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.ex
O87 - FAEL: '{9DD54B75-9767-48F3-B68C-8CBB601547E9}' [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSRespond
O87 - FAEL: '{88F8EFAB-ED90-44FB-ACC3-4EA8275146E1}' [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSRespon
O87 - FAEL: '{DD2DE392-CA5D-426B-BF90-D3A5B5920A8A}' [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Applic

---\ CODES PRODUITS LOGICIELS (56) - 3s
O90 - PUC: '00006109C80000000000000000F01FEC' [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation
O90 - PUC: '00006109C800C0400000000000F01FEC' [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: '00006109DD0000000100000000F01FEC' [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporatio
O90 - PUC: '00006109F80000000100000000F01FEC' [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation
O90 - PUC: '007AE03A51550F84880BE999CD53B688' [HKLM] . (.Apple Software Update.) -- C:\Windows\Installer\{A30EA700-5515-48F0-88B0-9E99DC356B88}\Instal
O90 - PUC: '09E42CDFE627ECA46809F84AA25C7C92' [HKLM] . (.Debitest.) -- C:\WINDOWS\Installer\{FDC24E90-726E-4ACE-8690-8FA42AC5C729}\_853F67D554F0544943
O90 - PUC: '11864A5B21635AD4A8A56EED5D7D5C32' [HKLM] . (.Apple Mobile Device Support.) -- C:\WINDOWS\Installer\{B5A46811-3612-4DA5-8A5A-E6DED5D7C523}\
O90 - PUC: '1602303E79B56A74EBAD0A52DB730BF7' [HKLM] . (.PDF Architect 7 Edit Module.) -- C:\WINDOWS\Installer\{E3032061-5B97-47A6-BEDA-A025BD37B07F}\
O90 - PUC: '20EAA855F7155F345AB6382CAF9480D4' [HKLM] . (.HP OfficeJet 3830 series Aide.) -- C:\WINDOWS\Installer\{558AAE02-517F-43F5-A56B-83C2FA49084D
O90 - PUC: '37A3DAA3A6D0EFE439CF7791CDC6984E' [HKLM] . (.Intel(R) Chipset Device Software.) =>.Intel Corporation
O90 - PUC: '3D42ADBF91A157D43B1F2F1ABFB616FB' [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation
O90 - PUC: '3e43b73803c7c394f8a6b2f0402e19c2' [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: '3E8F7AED9B7BC3C349B5F7C89E407184' [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40649.) =>.Microsoft Corporation
O90 - PUC: '4324AED8D79CEB142BCB13A391B6DC90' [HKLM] . (.Intel(R) Management Engine Driver.) =>.Intel Corporation
O90 - PUC: '4BB91BBAD8382803DB4A786C0614182A' [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40649.) =>.Microsoft Corporation
O90 - PUC: '4BD6D1222E64C3330BB9F59453D19008' [HKLM] . (.Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.13.26020.) =>.Microsoft Corporation
O90 - PUC: '5282559C2FB74434AB193DDC644F4C14' [HKLM] . (.Intel(R) Trusted Connect Service Client x86.) =>.Intel Corporation
O90 - PUC: '5282559C2FB74434AB193DDC644F4C24' [HKLM] . (.Intel(R) Trusted Connect Service Client x64.) =>.Intel Corporation
O90 - PUC: '5479858ACB1536934B9E02C18F965383' [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40649.) =>.Microsoft Corporation
O90 - PUC: '595A0279D2D3E0445932B0F6797054DD' [HKLM] . (.HP Customer Experience Enhancements.) -- C:\WINDOWS\Installer\{9720A595-3D2D-440E-9523-0B6F97

O90 - PUC: '5A1A9B9E893699C4F8ED0197F456505C' [HKLM] . (.Intel(R) ME UninstallLegacy.) =>.Intel Corporation
O90 - PUC: '5F7C202B3ED7FBF42B957EE026F565CF' [HKLM] . (.Apple Application Support (64 bits).) -- C:\WINDOWS\Installer\{B202C7F5-7DE3-4FBF-B259-E70E62

O90 - PUC: '644B223F751B75244BF4F4224DF1E8BD' [HKLM] . (.HP Support Assistant.) -- C:\WINDOWS\Installer\{F322B446-B157-4257-B44F-4F22D41F8EDB}\ARPPROD
O90 - PUC: '67D6ECF5CD5FBA732B8B22BAC8DE1B4D' [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: '696CCB364BF0C9E41844D24A2F84CF71' [HKLM] . (.HP Google Drive Plugin.) -- C:\WINDOWS\Installer\{63BCC696-0FB4-4E9C-8144-2DA4F248FC17}\HPSca
O90 - PUC: '6C6DF7E12110ADB44A886C42E501B5BF' [HKLM] . (.HP Support Solutions Framework.) -- C:\WINDOWS\Installer\{1E7FD6C6-0112-4BDA-A488-C6245E105BF
O90 - PUC: '6D918CBF6B87BA9439E1D321D734EB46' [HKLM] . (.Intel(R) Serial IO.) =>.Intel Corporation
O90 - PUC: '6E815EB96CCE9A53884E7857C57002F0' [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: '7591D16C435616B4BA53F111D514FC5D' [HKLM] . (.iTunes.) -- C:\WINDOWS\Installer\{C61D1957-6534-4B61-AB35-1F115D41CFD5}\Installer.ico =>.App
O90 - PUC: '7D8CB6DD28547764ABCAA49B336E3C51' [HKLM] . (.Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27012.) =>.Microsoft Corporation
O90 - PUC: '8BFDDD6597F70844985D521E5FA22BF8' [HKLM] . (.Bonjour.) -- C:\Windows\Installer\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}\Bonjour.ico =>.Micr
O90 - PUC: '97F54AC0495DF3C4E93DC1D89B985B5F' [HKLM] . (.Intel(R) Rapid Storage Technology.) =>.Intel Corporation
O90 - PUC: '97FE1387FD86C0D41A551EB04D56AD9C' [HKLM] . (.Mailbird.) -- C:\WINDOWS\Installer\{7831EF79-68DF-4D0C-A155-E10BD465DAC9}\MailIcon_1.exe
O90 - PUC: 'A06D5DBF5C8B62646AF816009EDB1B65' [HKLM] . (.PDF Architect 7 View Module.) -- C:\WINDOWS\Installer\{FBD5D60A-B8C5-4626-A68F-6100E9BDB156}\
O90 - PUC: 'A089CE062ADB6BC44A720BA745894BAC' [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: 'A9931046AD5F40C478AA8E01D70F7015' [HKLM] . (.HP Dropbox Plugin.) -- C:\WINDOWS\Installer\{6401399A-F5DA-4C04-87AA-E8107DF00751}\HPScan.ico
O90 - PUC: 'A9BDCE5C0B9D7013AB58219699A8B5E3' [HKLM] . (.Microsoft Visual C++ 2017 x64 Additional Runtime - 14.13.26020.) =>.Microsoft Corporation
O90 - PUC: 'AC9690024114355438D224685CCABB89' [HKLM] . (.Microsoft VC++ redistributables repacked..) =>.bl.org
O90 - PUC: 'B7F4E2DB0B037A64E8C59DD9125C3263' [HKLM] . (.Microsoft VC++ redistributables repacked..) =>.bl.org
O90 - PUC: 'BDBA9BF8451D3FD4DB7688714A550072' [HKLM] . (.Intel(R) PRO/Wireless Driver.) -- C:\WINDOWS\Installer\{8FB9ABDB-D154-4DF3-BD67-8817A4550027}

O90 - PUC: 'C1B39B29D334172478C51BA35F7F417D' [HKLM] . (.PDF Architect 7 Create Module.) -- C:\WINDOWS\Installer\{92B93B1C-433D-4271-875C-B13AF5F714D7

O90 - PUC: 'D6801C02348C1B636B879900981DDB44' [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40649.) =>.Microsoft Corporation
O90 - PUC: 'D6B401F6A53572D4A911585263A8BEF1' [HKLM] . (.SSDlife Pro.) -- C:\WINDOWS\Installer\{6F104B6D-535A-4D27-9A11-8525368AEB1F}\SSDlifeIcon2k.ex
O90 - PUC: 'E2F4C551183708B42B85DF60009C4CB6' [HKLM] . (.OpenOffice 4.1.5.) -- C:\Windows\Installer\{155C4F2E-7381-4B80-B258-FD0600C9C46B}\soffice.ico
O90 - PUC: 'E808D6AD92633394F83B85F3B9BCD0FE' [HKLM] . (.iCloud.) -- C:\WINDOWS\Installer\{DA6D808E-3629-4933-8FB3-583F9BCB0DEF}\ARP.ico =>.Apple Inc
O90 - PUC: 'F7ED77B79125E534C91ECF771F4DCCDA' [HKLM] . (.Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27012.) =>.Microsoft Corporation
O90 - PUC: 'FBE19209A781E7C49ADACDBCC6495663' [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation
O90 - PUC: 'FCEFCB1C2CE605740927E5429824F3F8' [HKLM] . (.Apple Application Support (32 bits).) -- C:\WINDOWS\Installer\{C1BCFECF-6EC2-4750-9072-5E2489





---\ PACKAGES WINDOWS INSTALLER (38) - 8s
[MD5.202B7EC9D41CDA7ECC9A5DB38301AB9F] [WIS][2019/06/29 17:38:03] (.Google LLC - Google Update Helper.) -- C:\WINDOWS\Installer\14e0be.msi [40960] =
[MD5.9533027BEC08871FC5BC944FEDCE98B6] [WIS][2019/05/29 13:37:02] (.Apple Inc. - Apple Application Support Installer.) -- C:\WINDOWS\Installer\18d9569
[MD5.DD0C70B696624F48D0FCA0D04A792F02] [WIS][2019/05/29 13:37:20] (.Apple Inc. - Apple Application Support Installer.) -- C:\WINDOWS\Installer\18d9573
[MD5.2B9A7ABA8ADE5553C90C60C299FA92D3] [WIS][2019/05/29 13:38:27] (.Apple Inc. - iCloud for Windows installer.) -- C:\WINDOWS\Installer\18d957c1.msi
[MD5.4CC414EEFEA45EDE82C667877157E318] [WIS][2019/05/29 13:38:50] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\WINDOWS\Installer\18d95
[MD5.695AAE6B7CB05E2B4F01CC33BA02F545] [WIS][2019/05/29 13:39:39] (.Apple Inc. - iTunes Installer.) -- C:\WINDOWS\Installer\18d969f0.msi [165150720]

[MD5.6FA579F5626CAAC50A2DB74C0BBD63C7] [WIS][2019/06/28 10:12:26] (.Prestafind.) -- C:\WINDOWS\Installer\296fba27.msi [76356608] =>.Prestafind
[MD5.EF7DD3E79EFB6E7D600EF6A7C0E4D8BB] [WIS][2019/04/13 19:35:05] (.Mailbird - Mailbird.) -- C:\WINDOWS\Installer\2a36fb8.msi [2543616] =>.Mailbird
[MD5.0EE58941B17E5EA100B778A9188C2E76] [WIS][2018/09/26 00:33:44] (.Intel Corporation - Intel(R) Rapid Storage Technology.) -- C:\WINDOWS\Installer\2c
[MD5.30FA2B554541E28E83A7DC062FD77807] [WIS][2017/11/09 09:00:50] (.Intel Corporation - Intel(R) Serial IO.) -- C:\WINDOWS\Installer\2ca70aa.msi [134



[MD5.5ED28C20AB6633098B5687B93D1B2B5D] [WIS][2017/12/12 05:24:08] (.OpenOffice - OpenOffice 4.1.5.) -- C:\WINDOWS\Installer\4e647fe.msi [2314240] =>
[MD5.4AFA4F8FD5270383E0C0169796AE8AB2] [WIS][2019/05/01 15:58:44] (.pdfforge GmbH - PDF Architect 7 View Module.) -- C:\WINDOWS\Installer\6521c1b9.msi
[MD5.23A635D2CCEB552931D97DFF05C34C38] [WIS][2019/05/01 15:59:12] (.pdfforge GmbH - PDF Architect 7 Edit Module.) -- C:\WINDOWS\Installer\6521c1be.msi
[MD5.12C467C551A8C349C45C82F8BD555B19] [WIS][2019/05/01 15:59:33] (.pdfforge GmbH - PDF Architect 7 Create Module.) -- C:\WINDOWS\Installer\6521c1c3.m
[MD5.C808BC10796FC2EA458B669BE0C41357] [WIS][2017/03/28 02:21:13] (.HP - HP Scan Dropbox destination plugin.) -- C:\WINDOWS\Installer\a4bb9c5.msi [15
[MD5.814B82A67D62D2756C94801AB31E75D7] [WIS][2017/03/28 02:21:14] (.HP - HP Scan Google Drive destination plugin.) -- C:\WINDOWS\Installer\a4bb9cb.msi
[MD5.7624884AE3FB5B9E5535008528E2EF43] [WIS][2017/03/28 02:21:15] (.Hewlett Packard - HP OfficeJet 3830 series Get product specif.) -- C:\WINDOWS\Inst
[MD5.F9FC4B5D8F9E8A772A0595D61B75381E] [WIS][2017/03/28 02:21:12] (.HP Inc. - Product Improvement Study for HP OfficeJet .) -- C:\WINDOWS\Installer\a4
[MD5.862678D0789E7355B19CF0A574627818] [WIS][2018/11/09 15:18:23] (.HP Inc. - HP Support Solutions Framework.) -- C:\WINDOWS\Installer\a6774b1.msi [9
[MD5.75205826A6661C0B3B0090BAF04D3154] [WIS][2018/11/09 15:19:21] (.HP Inc. - HP Support Assistant.) -- C:\WINDOWS\Installer\a6774b4.msi [17170432]
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 23/30

[MD5.613165B952AB31F900C66009E080F168] [WIS][2018/11/09 15:19:47] (.HP Inc..) -- C:\WINDOWS\Installer\a6774ba.msi [736256] =>.HP Inc.
[MD5.A8A5E8E5D65F9D03647384BD6B1973CD] [WIS][2016/10/01 03:04:50] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\a8d
[MD5.0BB59749B49DB6A921C709C3C935A22E] [WIS][2018/02/12 11:20:22] (.Intel Corporation - Intel(R) ME UninstallLegacy.) -- C:\WINDOWS\Installer\a989128
[MD5.E22AE5C548B39D554B643EBA58FDC3AD] [WIS][2018/03/15 17:06:08] (.Intel Corporation - Intel(R) Management Engine Driver.) -- C:\WINDOWS\Installer\a9
[MD5.CF91CA8448E27B27E612034555CB1DBE] [WIS][2018/03/15 17:04:48] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installe
[MD5.FE90C64EA7AE9634E7E70DF2C77DEF19] [WIS][2018/03/15 17:05:14] (.Intel Corporation - Microsoft VC++ redistributables repacked..) -- C:\WINDOWS\Inst
[MD5.A44B304D91D159CAB0F5C64631CA75C2] [WIS][2018/03/15 17:05:22] (.Intel Corporation - Microsoft VC++ redistributables repacked..) -- C:\WINDOWS\Inst
[MD5.8E25F5E1D396FAD09F9567698FD1D71F] [WIS][2018/03/15 17:05:52] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installe
[MD5.DAF1C0F27B49EADDA9508679169668C8] [WIS][2018/03/02 13:37:34] (.Intel Corporation - Intel(R) Trusted Connect Service Client x64.) -- C:\WINDOWS\In
[MD5.DCA638460F442142B0C11870328E5440] [WIS][2018/03/02 13:30:50] (.Intel Corporation - Intel(R) Trusted Connect Service Client x86.) -- C:\WINDOWS\In
[MD5.86E2B390629665FBC20E06DFBF01A48F] [WIS][2018/03/01 14:02:42] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\bbadd4.msi [273203
[MD5.0D54B7E528B43CAFA7860F6752745234] [WIS][2018/07/30 03:48:04] (.Apple Inc. - Apple Software Update Installer.) -- C:\WINDOWS\Installer\bbadd9.msi
[MD5.88C1703584C189CB86D8727AE011DF79] [WIS][2017/03/28 02:21:07] (.HP Inc. - HP OfficeJet 3830 series Basic Device Softw.) -- C:\WINDOWS\Installer\e0
[MD5.C79454DCF2EFF98C92FB5F81C5F62B31] [WIS][2019/05/14 14:38:57] (.BinarySense Inc. - SSDlife Pro Installer.) -- C:\WINDOWS\Installer\ed0020.msi [48

---\ FEATURE CONTROLE. (203) - 1s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:TBConsoleUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HPWarrantyChecker.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.L
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimat
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimat
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.L
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 24/30

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 25/30

[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate

---\ SCAN ADDITIONNEL (26) - 11s
C:\Users\thier\AppData\Local\Google\Chrome\User Data\Default\Sync Extension Settings\cfkpefbllpconnkfpdgagkifmflckkdp =>.SUP.CookiesControl
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
C:\Users\thier\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\thier\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\Cremix.exe =>.SUP.Orphan.Co
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\Aglae.exe =>.SUP.Orphan.Com
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\mb3-setup-consumer-3.8.3.296
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\ChromeSetup.exe =>.SUP.Orph
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\ChromeSetup(1).exe =>.SUP.O
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Desktop\mbam-full-setup-2.2.0.1024.exe
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Desktop\ccsetup557.exe =>.SUP.Orphan
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\adwcleaner_7.3.exe =>.SUP.O
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\ZHPCleaner.exe =>.SUP.Orpha
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\ChromeSetup (1).exe =>.SUP
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\HitmanPro_x64.exe =>.SUP.Or
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\ChromeSetup (2).exe =>.SUP
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\ZHPDiag3.exe =>.SUP.Orphan
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\578b4cuk-10.0.exe =>.SUP.Or
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Users\thier\Downloads\SpyHunter-Installer.exe =>
[HKCU\SOFTWARE\MICROSOFT\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]:C:\Program Files\RogueKiller\unins000.exe =>.SUP.Orp
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\thier\Downloads\ZHPDiag3.exe.FriendlyAppName =>.SUP.Orphan
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\thier\Downloads\ZHPDiag3.exe.ApplicationCompany =>.SUP.Orph
[HKU\S-1-5-21-1028830518-859416871-2898031174-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\thier\Downloads
[HKU\S-1-5-21-1028830518-859416871-2898031174-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\thier\Downloads


https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.CookiesControl
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.ProxyRestriction
https://nicolascoolman.eu/2017/11/01/adware-mybrowser/ =>PUP.Optional.MyBrowser
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Orphan.Compatibility
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Orphan.MUICache

~ Unselected Options: O82,
~ End of the scan, 11038 items in 05mn58s (2582)(0)


.SUP.Orphan Hijacker.Proxy .SUP.ProxyRestriction PUP.Optional.MyBrowser .SUP.Temporary.Chrome

LOGICIELS DE PROTECTION
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 26/30


LOGICIELS DE PROTECTION SUPERFLUS

[00A35439027E9E754C5D6D067E8E606EDF] [13/04/2019] (.Mailbird, Inc..) - C:\Program Files\Mailbird\Mailbird.exe
[00A35439027E9E754C5D6D067E8E606EDF] [14/06/2019] (.Mailbird, Inc..) - C:\Users\thier\Downloads\Mailbird_v2.5.45.0 (1).exe
[00A35439027E9E754C5D6D067E8E606EDF] [14/06/2019] (.Mailbird, Inc..) - C:\Users\thier\Downloads\Mailbird_v2.5.45.0 (2).exe
[00A35439027E9E754C5D6D067E8E606EDF] [14/06/2019] (.Mailbird, Inc..) - C:\Users\thier\Downloads\Mailbird_v2.5.45.0.exe
[00A35439027E9E754C5D6D067E8E606EDF] [19/06/2019] (.Mailbird, Inc..) - C:\Users\thier\Downloads\Mailbird_v2.5.45.0 (3).exe
[00B485854EEFD900E4A2562111ED792257] [02/08/2018] (.IO3O LLC.) - C:\Program Files (x86)\IO3O LLC\Who Is On My Wifi\mywifi.exe
[00B485854EEFD900E4A2562111ED792257] [07/03/2019] (.IO3O LLC.) - C:\Program Files (x86)\IO3O LLC\Who Is On My Wifi\unins000.exe
[00C6F74DBCBB1908D453D975055162EDD2] [14/06/2019] (.Intel Corporation.) - C:\Program Files (x86)\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA2
[00C6F74DBCBB1908D453D975055162EDD2] [14/06/2019] (.Intel Corporation.) - C:\Users\thier\Downloads\SetupRST.exe
[01738D40BC79777D20399E29BBC914E0] [31/08/2018] (.HP Inc..) - C:\WINDOWS\System32\drivers\Accelerometer.sys
[01738D40BC79777D20399E29BBC914E0] [31/08/2018] (.HP Inc..) - C:\WINDOWS\System32\drivers\hpdskflt.sys
[0179B1E53056E28D2089AD60A29585C9] [15/06/2018] (.AnchorFree Inc.) - C:\WINDOWS\System32\drivers\aftap0901.sys
[01C0507A9AFE9769EC3E66D9B23686DF] [01/07/2019] (.Intel Corporation.) - C:\Windows\Temp\DPTF\esif_assist_64.exe
[01C0507A9AFE9769EC3E66D9B23686DF] [13/08/2016] (.Intel Corporation.) - C:\WINDOWS\System32\drivers\dptf_cpu.sys
[01C0507A9AFE9769EC3E66D9B23686DF] [13/08/2016] (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\esif_lf.sys
[01C0507A9AFE9769EC3E66D9B23686DF] [13/08/2016] (.Intel Corporation.) - C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe
[01E93999F3871D1091DC1E8D58B8D405] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashQuick.exe
[01E93999F3871D1091DC1E8D58B8D405] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashShell.dll
[01E93999F3871D1091DC1E8D58B8D405] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
[01E93999F3871D1091DC1E8D58B8D405] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastUI.exe
[01E93999F3871D1091DC1E8D58B8D405] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvLaunch.exe
[031F5FB3066EE4A457B30AA6CE9A5566] [01/03/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\DRIVERS\Gemma.sys
[031F5FB3066EE4A457B30AA6CE9A5566] [01/03/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\DRIVERS\trufos.sys
[031F5FB3066EE4A457B30AA6CE9A5566] [03/06/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\DRIVERS\bdprivmon.sys
[031F5FB3066EE4A457B30AA6CE9A5566] [03/06/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\DRIVERS\gzflt.sys
[031F5FB3066EE4A457B30AA6CE9A5566] [09/04/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\drivers\ignis.sys
[031F5FB3066EE4A457B30AA6CE9A5566] [17/04/2018] (.Bitdefender SRL.) - C:\WINDOWS\System32\drivers\avc3.sys
[031F5FB3066EE4A457B30AA6CE9A5566] [27/04/2018] (.Bitdefender SRL.) - C:\WINDOWS\System32\DRIVERS\bdvedisk.sys
[0320BE3EB866526927F999B97B04346E] [01/12/2016] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
[0320BE3EB866526927F999B97B04346E] [01/12/2016] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
[0320BE3EB866526927F999B97B04346E] [01/12/2016] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
[0320BE3EB866526927F999B97B04346E] [01/12/2016] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe
[0320BE3EB866526927F999B97B04346E] [01/12/2016] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys
[0320BE3EB866526927F999B97B04346E] [30/12/2016] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\DRIVERS\RtsPer.sys
[03330D8CEF025A5623983A51CE0EB969] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Common Files\Bitdefender\SetupInformation\CL-23-05988C35-B615-4
[03330D8CEF025A5623983A51CE0EB969] [04/03/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Agent\installer\installer.exe
[03330D8CEF025A5623983A51CE0EB969] [14/05/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Agent\ProductAgentService.exe
[03330D8CEF025A5623983A51CE0EB969] [26/03/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Device Management\installer\installer.e
[03574AC3E8A3001F70F9AEC1E7034AD1] [22/09/2012] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe
[03B471CD4D7FFEC29A3B20B2CB0F5F54] [25/02/2017] (.LunarG, Inc..) - C:\Program Files (x86)\VulkanRT\1.0.42.0\UninstallVulkanRT.exe
[03DA4C26C76E1255DC8279AA9A751ACC] [10/08/2017] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{8833F
[044E3BF58976880FFD074448A8F7A058] [01/02/2019] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
[044E3BF58976880FFD074448A8F7A058] [29/06/2019] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
[044E3BF58976880FFD074448A8F7A058] [29/06/2019] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\unins000.exe
[044E3BF58976880FFD074448A8F7A058] [29/06/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\mbae64.sys
[044E3BF58976880FFD074448A8F7A058] [29/06/2019] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys
[04B721A4AFC491AD590D58D3D9FC0028] [11/04/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Home Scanner\hvaag.exe
[04B721A4AFC491AD590D58D3D9FC0028] [11/04/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Home Scanner\hvasrv.exe
[04B721A4AFC491AD590D58D3D9FC0028] [11/04/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe
[04B721A4AFC491AD590D58D3D9FC0028] [11/04/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe
[04B721A4AFC491AD590D58D3D9FC0028] [21/02/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender Home Scanner\installer\installer.exe
[04B721A4AFC491AD590D58D3D9FC0028] [21/02/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender VPN\installer\installer.exe
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\bdwtxag.exe
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
[04C9F3234AE26886276026F0D42D140B] [03/06/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Security\vsserv.exe
[04C9F3234AE26886276026F0D42D140B] [28/03/2019] (.Bitdefender SRL.) - C:\Program Files\Bitdefender\Bitdefender Device Management\DevMgmtService.exe
[0523409B9FB5C3B8C0C463A318723FF9] [09/05/2019] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner64.exe
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 27/30

[0523409B9FB5C3B8C0C463A318723FF9] [09/05/2019] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe
[05FA56539456871559D29EE4082B71F8] [16/05/2019] (.HP Inc..) - C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys
[063D0C011B143C57893FE839779AFCD0] [19/05/2019] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys
[06E284CD38EE15623095DCBD38E65F9B] [30/06/2019] (.Adlice.) - C:\Windows\System32\drivers\truesight.sys
[070912803CC1894465874F1AF12263CB] [22/03/2018] (.Bitdefender SRL.) - C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\b
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArDisk.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArPot.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsdriver.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsh.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbuniv.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswHdsKe.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswKbd.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswMonFlt.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRdr2.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRvrt.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSnx.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSP.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswStm.sys
[07C70F7CAB145BC1ED385FBE69FA3130] [29/06/2019] (.AVAST Software s.r.o..) - C:\WINDOWS\System32\drivers\aswVmm.sys
[09C52C2531CDAEC35C5EDC2E95758767] [06/12/2018] (.HP Inc..) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkS
[09C52C2531CDAEC35C5EDC2E95758767] [10/12/2018] (.HP Inc..) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe
[0B1F8CD59E64746BEAE153ECCA21066B] [12/06/2019] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
[0B1F8CD59E64746BEAE153ECCA21066B] [12/06/2019] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe
[0B1F8CD59E64746BEAE153ECCA21066B] [14/06/2019] (.Mozilla Corporation.) - C:\Users\thier\Downloads\Mozilla_Firefox_(64bit)_v67.0.2.exe
[0B1F8CD59E64746BEAE153ECCA21066B] [19/06/2019] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
[0B1F8CD59E64746BEAE153ECCA21066B] [19/06/2019] (.Mozilla Corporation.) - C:\Users\thier\Downloads\Firefox Installer.exe
[0B1F8CD59E64746BEAE153ECCA21066B] [19/06/2019] (.Mozilla Corporation.) - C:\Users\thier\Downloads\Mozilla_Thunderbird_v60.7.1.exe
[0B3FD32E39B247B09C8040571D6AD2F3] [06/02/2018] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
[0B3FD32E39B247B09C8040571D6AD2F3] [15/08/2018] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe
[0B3FD32E39B247B09C8040571D6AD2F3] [20/04/2018] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
[0B3FD32E39B247B09C8040571D6AD2F3] [20/04/2018] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
[0B3FD32E39B247B09C8040571D6AD2F3] [20/04/2018] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
[0B3FD32E39B247B09C8040571D6AD2F3] [23/03/2018] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDECon64.dll
[0B3FD32E39B247B09C8040571D6AD2F3] [29/06/2019] (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe
[0B5F1FE22EBB8DA62103D67AEAC7669D] [13/06/2017] (.Insecure.Com LLC.) - C:\WINDOWS\System32\drivers\npcap.sys
[0BD39CC5426087EEF42DA30710885D8A] [07/06/2019] (.HP Inc..) - C:\Users\thier\Downloads\HPPSdr.exe
[0C15BE4A15BB0903C901B1D6C265302F] [05/06/2019] (.Google LLC.) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\software
[0C15BE4A15BB0903C901B1D6C265302F] [18/06/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\elevation_service.exe
[0C15BE4A15BB0903C901B1D6C265302F] [18/06/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
[0C15BE4A15BB0903C901B1D6C265302F] [29/06/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\Installer\chrmstp.exe
[0C15BE4A15BB0903C901B1D6C265302F] [29/06/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\Installer\setup.exe
[0C527B9C76F9808F1471F3B7BBFADB8A] [07/06/2019] (.HP Inc..) - C:\Program Files (x86)\HP\Diagnostics\PSDR\HPPSDr.exe
[0C5396DCB2949C70FAC48AB08A07338E] [14/06/2019] (.Mozilla Corporation.) - C:\Users\thier\Downloads\Mozilla_Thunderbird_v60.7.0.exe
[0C5396DCB2949C70FAC48AB08A07338E] [19/06/2019] (.Mozilla Corporation.) - C:\Users\thier\AppData\Roaming\Mozilla\Firefox\Profiles\difegdu9.default\gmp
[0D2CACCD3E9EEC06738410BA31BF6595] [12/06/2019] (.Adobe Inc..) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
[0D2CACCD3E9EEC06738410BA31BF6595] [12/06/2019] (.Adobe Inc..) - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_pepper.exe
[0D3E15F326CFAA9525CA67DCB0A420F6] [29/06/2019] (.SurfRight B.V..) - C:\Program Files\HitmanPro\HitmanPro.exe
[0D3E15F326CFAA9525CA67DCB0A420F6] [29/06/2019] (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe
[0D49BC0D5D7C3038B5E765280AD01BD8] [01/02/2019] (.CPUID S.A.R.L.U..) - C:\Program Files\CPUID\HWMonitor\HWMonitor.exe
[0D539CE22C8990BD091F22AEA32A5123] [03/06/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\DRIVERS\atc.sys
[0D539CE22C8990BD091F22AEA32A5123] [03/06/2019] (.Bitdefender SRL.) - C:\WINDOWS\System32\drivers\bddci.sys
[0D7AAE3B360869A3BA28BD7D1FD0B8F6] [17/04/2019] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe
[0D7AAE3B360869A3BA28BD7D1FD0B8F6] [29/03/2019] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll
[0D8D9F1C0DDD81F61DE313F01ADA7B97] [02/05/2019] (.Bluestack Systems, Inc..) - C:\Program Files\BlueStacks\BstkDrv.sys
[0F58F98CC525F6A9965FCAB605AC27D7] [09/05/2019] (.FOXIT SOFTWARE INC..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\unins000.exe
[0F58F98CC525F6A9965FCAB605AC27D7] [13/04/2019] (.FOXIT SOFTWARE INC..) - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\FOXITREADER.EXE
[0F58F98CC525F6A9965FCAB605AC27D7] [13/04/2019] (.FOXIT SOFTWARE INC..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShell
[0FDE84F0D55D8D3368325DC0CDC4A979] [08/06/2019] (.Opera Software AS.) - C:\Program Files\Opera\60.0.3255.151\opera.exe
[0FDE84F0D55D8D3368325DC0CDC4A979] [14/06/2019] (.Opera Software AS.) - C:\Program Files\Opera\launcher.exe
[0FDE84F0D55D8D3368325DC0CDC4A979] [17/06/2019] (.Opera Software AS.) - C:\Program Files\Opera\60.0.3255.170\opera.exe
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/06/2019] (.ESET, spol. s r.o..) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [29/06/2019] (.ESET, spol. s r.o..) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\
[112195D7AA105E2FFC7B0E33F36DA1636E74] [29/12/2012] (.SOKNO S.R.L..) - C:\Windows\SysWOW64\speedfan.sys
[1121DC26D9A7456B96B33BE622115C02D394] [29/06/2016] (.SOKNO S.R.L..) - C:\Program Files (x86)\SpeedFan\speedfan.exe
[14781BC862E8DC503A559346F5DCC518] [10/05/2019] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
[14F8FDD167F92402B1570B5DC495C815] [07/12/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
[17AED194A417BC79B175CAE316DF75BA] [24/01/2015] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\uninst.exe
[18A9744E95AB6770D0C9CCCBC851D573] [17/04/2019] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvvhci.sys
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\InstNT.exe
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynISDLL.dll
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys
[19FE2B7721886C7BCAC1364C90CD7FA9] [05/03/2018] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys
[1B0FD9717C2F577F47D64A15458EEFE2] [21/12/2016] (.VS Revo Group.) - C:\WINDOWS\System32\DRIVERS\revoflt.sys

[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 7\creator\plugins\IEAddin\creator-ie-plugin.d
[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\architect.exe
[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\context-menu.dll
[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\creator\common\creator-ws.exe
[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\creator\plugins\IEAddin\creator-ie-helper.dll
[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\updater-ws.exe
[24362DF66CF02295B2DCB1CB2A134B50] [01/04/2019] (.pdfforge GmbH.) - C:\Program Files\PDF Architect 7\ws.exe
[24362DF66CF02295B2DCB1CB2A134B50] [02/04/2019] (.pdfforge GmbH.) - C:\ProgramData\PDF Architect 7\Installation\PDF_Architect_7_Installer.exe
[2B20EB3380792AB011F662C064FDB473] [12/08/2015] (.Apple Inc..) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
[2B20EB3380792AB011F662C064FDB473] [12/08/2015] (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
[2F6C404969D511652B6B865B02FFC3CD] [05/09/2018] (.Intel Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
[2F6C404969D511652B6B865B02FFC3CD] [05/09/2018] (.Intel Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
[2F6C404969D511652B6B865B02FFC3CD] [05/09/2018] (.Intel Corporation.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
[2F6C404969D511652B6B865B02FFC3CD] [05/09/2018] (.Intel Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
[31B1B08C8899CA883CE1B0F17D56403B] [03/05/2019] (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
[31B1B08C8899CA883CE1B0F17D56403B] [07/05/2019] (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
[31B1B08C8899CA883CE1B0F17D56403B] [07/05/2019] (.Apple Inc..) - C:\Program Files\iTunes\iTunes.exe
[31B1B08C8899CA883CE1B0F17D56403B] [07/05/2019] (.Apple Inc..) - C:\Program Files\iTunes\iTunesHelper.exe
[31B1B08C8899CA883CE1B0F17D56403B] [08/05/2019] (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
[31B1B08C8899CA883CE1B0F17D56403B] [08/05/2019] (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
[31B1B08C8899CA883CE1B0F17D56403B] [08/05/2019] (.Apple Inc..) - C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll
[31B1B08C8899CA883CE1B0F17D56403B] [29/04/2019] (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.ex
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 28/30

[330000B31EB304F8BF60CF07D900020000B31E] [19/03/2019] (.Intel Corporation - Client Components Group.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
[330000B97FAEF583F53CC47FCD00020000B97F] [20/09/2016] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\drivers\iaStorA.sys
[330000BB0B8823E10D1669124600020000BB0B] [15/01/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_694219dc1e
[330000BBD8C011D30F92827BED00020000BBD8] [06/12/2017] (.Intel(R) Wireless Connectivity Solutions.) - C:\WINDOWS\System32\DRIVERS\ibtusb.sys
[330000C1099D64BE0C43EAE20500020000C109] [15/01/2018] (.Intel(R) pGFX.) - C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\igxpin.ex
[330000C1099D64BE0C43EAE20500020000C109] [15/01/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_694219dc1e
[330000C1099D64BE0C43EAE20500020000C109] [15/01/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_694219dc1e
[330000C1099D64BE0C43EAE20500020000C109] [15/01/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_694219dc1e
[330000C1099D64BE0C43EAE20500020000C109] [15/01/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\ki126176.inf_amd64_694219dc1e
[342FD143108EB1FC25187EF47E448827] [03/06/2016] (.Hewlett-Packard Company.) - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
[374BA1D99C479178F804B0300834EAF6] [10/06/2019] (.Glarysoft LTD.) - C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
[374BA1D99C479178F804B0300834EAF6] [10/06/2019] (.Glarysoft LTD.) - C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe
[374BA1D99C479178F804B0300834EAF6] [10/06/2019] (.Glarysoft LTD.) - C:\Program Files (x86)\Glary Utilities 5\uninst.exe
[374BA1D99C479178F804B0300834EAF6] [14/06/2019] (.Glarysoft LTD.) - C:\Users\thier\Downloads\Glary_Utilities_Pro_v5.121.0.146.exe
[374BA1D99C479178F804B0300834EAF6] [23/01/2019] (.Glarysoft LTD.) - C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll
[376EFB51F179572CF4CC42998CAE2CE5] [01/07/2019] (.EnigmaSoft Limited.) - C:\ProgramData\EnigmaSoft Limited\sh5_installer.exe
[394F2C2262CC2DB92BFEAE20593BF174] [01/12/2018] (.Amazon Services LLC.) - C:\Users\thier\AppData\Local\Amazon\Kindle\application\Kindle.exe
[3A79076615E059D7B081FA060B68D1B2] [14/10/2017] (.Emjysoft.) - C:\Program Files (x86)\Jsoft.fr\Photo\photo.exe
[41AA37FEEE331D909FC53AD09F2CE320] [02/09/2014] (.BinarySense Inc.) - C:\Program Files (x86)\BinarySense\SSDlife\ssdlife.exe
[446A06966CEE0738C8F1A374883AEF88] [02/05/2019] (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\BlueStacksUninstaller.exe
[446A06966CEE0738C8F1A374883AEF88] [02/05/2019] (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-Player.exe
[446A06966CEE0738C8F1A374883AEF88] [02/05/2019] (.BlueStack Systems, Inc..) - C:\ProgramData\BlueStacks\Client\Bluestacks.exe
[446A06966CEE0738C8F1A374883AEF88] [14/06/2019] (.BlueStack Systems, Inc..) - C:\Users\thier\AppData\Local\BlueStacksSetup\BlueStacks_App_Player_v4.70
[446A06966CEE0738C8F1A374883AEF88] [14/06/2019] (.BlueStack Systems, Inc..) - C:\Users\thier\Downloads\BlueStacks_App_Player_v4.70.0.2106.exe
[4513E8E5C8BBB6D79305E44A01921076] [14/06/2019] (.Tous Les Drivers.) - C:\Users\thier\Downloads\Mes_Drivers_3.0.4.exe
[4D19649B2AACD25FA57D88B4] [28/06/2019] (.Apollo Team SASU.) - C:\Users\thier\Downloads\debitest.exe
[4FBE0A02426EBD20C26244B5ECA652A3] [10/05/2019] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
[4FBE0A02426EBD20C26244B5ECA652A3] [14/06/2019] (.NVIDIA Corporation.) - C:\Users\thier\Downloads\430.86-desktop-win10-64bit-international-whql.exe
[4FBE0A02426EBD20C26244B5ECA652A3] [17/04/2019] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvvad64v.sys
[4FBE0A02426EBD20C26244B5ECA652A3] [22/05/2019] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.e
[4FBE0A02426EBD20C26244B5ECA652A3] [22/05/2019] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
[4FBE0A02426EBD20C26244B5ECA652A3] [23/05/2019] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvlddmkm.sys
[4FBE0A02426EBD20C26244B5ECA652A3] [23/05/2019] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_72385c1434bf7e
[4FBE0A02426EBD20C26244B5ECA652A3] [27/02/2019] (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
[529E3F9FCF7D58D520D607AB74395002] [27/04/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe
[529E3F9FCF7D58D520D607AB74395002] [27/04/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll
[529E3F9FCF7D58D520D607AB74395002] [27/04/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe
[540111A74550BE599425CA3EA7643599] [17/05/2019] (.Emjysoft.) - C:\Program Files (x86)\Jsoft.fr\Photo\unins000.exe
[56000001475EA46CCAEF0B7481000000000147] [02/03/2018] (.Intel(R) Trust Services.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\
[56000001475EA46CCAEF0B7481000000000147] [02/03/2018] (.Intel(R) Trust Services.) - C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\
[56000001757376CD78AD000C9A000000000175] [03/12/2017] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Program Files (x86)\Intel\Intel(R) Man
[56000001757376CD78AD000C9A000000000175] [03/12/2017] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Program Files (x86)\Intel\Intel(R) Man
[56000001757376CD78AD000C9A000000000175] [15/03/2018] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\ProgramData\Intel\Package Cache\{1CEAC
[56000001757376CD78AD000C9A000000000175] [28/11/2017] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x6
[56000001C94B6CFC278E455D830000000001C9] [15/01/2018] (.Intel(R) OWR.) - C:\WINDOWS\System32\drivers\IntcDAud.sys
[56000001EE3BA2C54562F3593C0000000001EE] [26/09/2018] (.Intel(R) Rapid Storage Technology.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology
[56000001EE3BA2C54562F3593C0000000001EE] [26/09/2018] (.Intel(R) Rapid Storage Technology.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology
[56000001EE3BA2C54562F3593C0000000001EE] [26/09/2018] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\drivers\iaStorAC.sys
[56000002630B69CF9D33644CF0000000000263] [08/11/2017] (.Intel(R) Serial IO.) - C:\ProgramData\Intel\Package Cache\{9FD91C5C-44AE-4D9D-85BE-AE52816B029
[560000037C1DAF2EE3AE9519E600000000037C] [28/11/2018] (.Intel(R) Software Development Products.) - C:\Windows\System32\DriverStore\FileRepository\sgx_
[56000005DAB0988313DA8AB3E10000000005DA] [14/06/2019] (.Intel(R) pGFX.) - C:\Users\thier\Downloads\igfx_win10_100.6890.exe
[56000007EDBBB42CBFA1FF1CBA0000000007ED] [07/02/2019] (.Intel(R) Processor Identification Utility.) - C:\Program Files (x86)\Intel Corporation\Intel P
[56000007EDBBB42CBFA1FF1CBA0000000007ED] [25/06/2019] (.Intel(R) Processor Identification Utility.) - C:\Users\thier\Downloads\Intel(R) Processor Iden
[560000089D2953A788A5B8886900000000089D] [14/06/2019] (.Intel(R) Wireless Connectivity Solutions.) - C:\Users\thier\Downloads\WiFi_21.10.1_Driver64_Wi
[560000089D2953A788A5B8886900000000089D] [14/06/2019] (.Intel(R) Wireless Connectivity Solutions.) - C:\Users\thier\Downloads\WiFi_21.10.1_Driver64_Wi
[560000089D2953A788A5B8886900000000089D] [30/04/2019] (.Intel(R) Wireless Connectivity Solutions.) - C:\WINDOWS\System32\drivers\Netwtw04.sys
[67F153B20AD3399C7EDDCE2C6CAFD766] [25/03/2019] (.AnchorFree Inc.) - C:\Program Files\Bitdefender\Bitdefender VPN\vpnservice.exe
[6D9B7FD9A35FF6D4A9BAEDA62F24BBFE] [02/10/2018] (.Glarysoft LTD.) - C:\Windows\System32\drivers\GUBootStartup.sys
[6E42EA611E0363CF23373C698D0C928A] [29/06/2019] (.ESET, spol. s r.o..) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\
[6E42EA611E0363CF23373C698D0C928A] [29/06/2019] (.ESET, spol. s r.o..) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\
[6E42EA611E0363CF23373C698D0C928A] [29/06/2019] (.ESET, spol. s r.o..) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\
[6E42EA611E0363CF23373C698D0C928A] [29/06/2019] (.ESET, spol. s r.o..) - C:\Users\thier\AppData\Local\Google\Chrome\User Data\SwReporter\42.206.200.3\
[720500F0177858D2E78E8C0ADD3D2D54] [17/05/2019] (.ObviousIdea.) - C:\Program Files (x86)\ObviousIdea\Light Image Resizer 5\unins000.exe
[738E0B963A4DB08231F49F664AF83E5B] [07/06/2019] (.Hewlett Packard.) - C:\Users\thier\Downloads\OJ3830_Full_WebPack_1119 (1).exe
[738E0B963A4DB08231F49F664AF83E5B] [07/06/2019] (.Hewlett Packard.) - C:\Users\thier\Downloads\OJ3830_Full_WebPack_1119 (2).exe
[738E0B963A4DB08231F49F664AF83E5B] [27/03/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP OfficeJet 3830 series\Bin\DeviceSetup.exe
[738E0B963A4DB08231F49F664AF83E5B] [27/03/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP OfficeJet 3830 series\bin\DigitalWizards.exe
[738E0B963A4DB08231F49F664AF83E5B] [27/03/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP OfficeJet 3830 series\bin\FaxApplications.exe
[738E0B963A4DB08231F49F664AF83E5B] [27/03/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP OfficeJet 3830 series\bin\FaxPrinterUtility.exe
[738E0B963A4DB08231F49F664AF83E5B] [27/03/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP OfficeJet 3830 series\Bin\HPNetworkCommunicatorCom.exe
[738E0B963A4DB08231F49F664AF83E5B] [27/03/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP OfficeJet 3830 series\bin\SendAFax.exe
[7399F06F7CABE50A5CEC17E5E28FDC74] [14/06/2019] (.pdfforge GmbH.) - C:\Users\thier\Downloads\PDFCreator_v3.5.0.exe
[7399F06F7CABE50A5CEC17E5E28FDC74] [27/05/2019] (.pdfforge GmbH.) - C:\Program Files\PDFCreator\PDFCreator.exe
[73AB6F42D137AA7A291DF22FD16A3430] [20/02/2019] (.ObviousIdea SARLU.) - C:\Program Files (x86)\ObviousIdea\Light Image Resizer 5\Resize.exe
[73CCB86B36F6C0236FEA22D15300AD19] [07/11/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\unins000.exe
[73CCB86B36F6C0236FEA22D15300AD19] [22/10/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
[73CCB86B36F6C0236FEA22D15300AD19] [22/10/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Loader.exe
[73CCB86B36F6C0236FEA22D15300AD19] [22/10/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleU
[73CCB86B36F6C0236FEA22D15300AD19] [22/10/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService
[73CCB86B36F6C0236FEA22D15300AD19] [22/10/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackup
[73CCB86B36F6C0236FEA22D15300AD19] [22/10/2018] (.CHENGDU YIWO Tech Development Co., Ltd..) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageS

INFORMATIONS SUR LES MODULES ZHPDIAG

O3 Internet Explorer Toolbars
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 29/30

O43 Contenu des dossiers Programes O46 ShellExecuteHooks

FIN DE RAPPORT ZHPDIAG
file:///C:/Users/thier/AppData/Roaming/ZHP/ZHPDiag.html 30/30