cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.12.6.179 Par Nicolas Coolman (2015/12/06)
~ Démarré par Bertrand (Administrator) (2015/12/06 21:34:20)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Bertrand\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Bertrand\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v47.0.2526.73
MSIE: Internet Explorer v11.11.10586.0

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 27s
Kaspersky Internet Security v14.0.0.4651
Windows Defender (Activate)

---\\ Surveillance de Logiciels (1) - 27s
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4083.992 MB (23% free)
System Restore: Activé (Enable)
System drive C: has 142 GB () free of 460 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: NB-BERTRAND
~ User Name: Bertrand
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 142 GB free of 460 GB (System)
~ Drive D: has 1 GB free of 15 GB

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 7s
[MD5.4572EB3DDBD2DFA10DE7A037A6CC6D53] - 30/10/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4502864] =>.Microsoft Windows®
[MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] ©
[MD5.CAD491DD9EC00BB841EA407D9C498C4A] - 30/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [290856] =>.Microsoft Windows Publisher®
[MD5.AB4C1A9F37C0B8467AC923ED4AD727D6] - 22/11/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2647552] ©
[MD5.46C8E60DEDBDA95C102D1B2E74676578] - 30/10/2015 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [584704] ©
[MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] ©
[MD5.E7B524818100B0FDE2B057C74B0C0DCD] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [686984] =>.Microsoft Windows®
[MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535088] =>.Microsoft Windows®
[MD5.CE50037751671682D1FDBBE7C9B37F4A] - 30/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] ©
[MD5.70148EFA9A562E7185B75BBE7D376BF7] - 01/12/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows®
[MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
[MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] ©
[MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] ©
[MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] ©
[MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] ©
[MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] ©
[MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] ©
[MD5.61F9F27A8C3D7BCD287FE98A440421CE] - 30/10/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows®
[MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279552] ©
[MD5.F6A2D0EC594A1039B0F9D42BB8EC0BD3] - 30/10/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152800] =>.Microsoft Windows®
[MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] ©
[MD5.381B8F2311A0375676B635EA5E7C8AB0] - 30/10/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] ©
[MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 30/10/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] ©
[MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 01/12/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows®
[MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (23) - 11s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe {2F63040F94B330A53B38B5EA6DA2361C} ©
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider - Windows Setup API.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe ©
O23 - Service: Bonjour-service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink - CyberLink Media Server Monitor Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.®
O23 - Service: CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink - CyberLink Media Server Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.®
O23 - Service: Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe {0C89CBE063927780186EC0063F10D323} ©
O23 - Service: Desktop Upload (ginoquci) . (...) - C:\Users\Bertrand\AppData\Local\Temp\nskD052.tmp
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe ©
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe {330000B33510830D6C8A284DCB00020000B335} ©
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe {1701CEEB000100009028} ©
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe {1701CEEB000100009028} ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe {2F9B73E1000100009080} ©
O23 - Service: Add Telephone Line (nyneryxo) . (...) - C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\hnst205E.tmp =>PUP.Optional.CrossRider
O23 - Service: Inkjet Printer Page Number (quhegyfu) . (...) - C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\knsa691.tmp =>PUP.Optional.CrossRider
O23 - Service: Free Up Joystick (roqenufe) . (...) - C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\jnsz9D6.tmp =>PUP.Optional.CrossRider
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe {1D9FF0CFF14FE700963E52F6CDACF575} ©

---\\ Tâches planifiées en automatique (33) - 6s
[MD5.B89A82FB10E98F2FDF51FA82C7366DD3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1067736] =>.Adobe Systems, Incorporated®
[MD5.4E9AF25BA5E8219310E384AEA5B0EED8] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576] =>.CyberLink Corp.®
[MD5.227E138E4A6D8D3A1CC9C3EA0D1874A5] [APT] [CLVDLauncher] (.CyberLink Corp..) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008] =>.CyberLink Corp.®
[MD5.00000000000000000000000000000000] [APT] [CreateChoiceProcessTask] (...) -- C:\Windows\BrowserChoice\browserchoice.exe (.not file.) [0]
[MD5.33BFEC2B102B196B62ABB9947C7D7E23] [APT] [DropboxUpdateTaskMachineCore] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048] {0C89CBE063927780186EC0063F10D323} ©
[MD5.33BFEC2B102B196B62ABB9947C7D7E23] [APT] [DropboxUpdateTaskMachineUA] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048] {0C89CBE063927780186EC0063F10D323} ©
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.16B5B394028D8ED80A569123A38DC4F7] [APT] [IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312] {330000B5A6AA2C6CDD4385D4DE00020000B5A6} ©
[MD5.16B5B394028D8ED80A569123A38DC4F7] [APT] [IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [178312] {330000B5A6AA2C6CDD4385D4DE00020000B5A6} ©
[MD5.732ED03303FEE8003E2922D87ABF9903] [APT] [LuckyBrowse] (...) -- C:\Program Files (x86)\LuckyBrowse\app\luckybrowse.exe [585728] =>PUP.Optional.LuckyBrowse
[MD5.00000000000000000000000000000000] [APT] [SmartWeb Upgrade Trigger Task] (...) -- C:\Users\Bertrand\AppData\Local\SmartWeb\SmartWebHelper.exe (.not file.) [0] =>PUP.Optional.SmartWebSearch
[MD5.00000000000000000000000000000000] [APT] [SwiftSearch Auto Updater 1.10.0.25 Core] (...) -- C:\Program Files (x86)\SwiftSearch_1.10.0.25\Update\SwiftSearchAutoUpdateClient.exe (.not file.) [0] =>PUP.Optional.Generic
[MD5.00000000000000000000000000000000] [APT] [SwiftSearch Auto Updater 1.10.0.25 Pending Update] (...) -- C:\Program Files (x86)\SwiftSearch_1.10.0.25\Update\SwiftSearchAutoUpdateClient.exe (.not file.) [0] =>PUP.Optional.Generic
[MD5.C5F837D6C30A81B7352382B461684D8B] [APT] [{3BAF8FF3-53DD-4486-83C1-E98F8E9512CD}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [741704] =>.Google Inc®
O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job [1210] ©
O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job [1214] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1096] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1100] ©
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [2954] ©
O39 - APT: CLMLSvc_P2G8 - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8 [2352] ©
O39 - APT: CLVDLauncher - (.CyberLink Corp..) -- C:\WINDOWS\System32\Tasks\CLVDLauncher [2352] ©
O39 - APT: CreateChoiceProcessTask - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [2552]
O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore [3522] ©
O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA [3750] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3926] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4158] ©
O39 - APT: IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 [3040] ©
O39 - APT: IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon [2662] ©
O39 - APT: LuckyBrowse - (...) -- C:\WINDOWS\System32\Tasks\LuckyBrowse [3132] =>PUP.Optional.LuckyBrowse
O39 - APT: SmartWeb Upgrade Trigger Task - (...) -- C:\WINDOWS\System32\Tasks\SmartWeb Upgrade Trigger Task [4146] =>PUP.Optional.SmartWebSearch
O39 - APT: SwiftSearch Auto Updater 1.10.0.25 Core - (...) -- C:\WINDOWS\System32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Core [4292] =>PUP.Optional.Generic
O39 - APT: SwiftSearch Auto Updater 1.10.0.25 Pending Update - (...) -- C:\WINDOWS\System32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Pending Update [4322] =>PUP.Optional.Generic

---\\ Processus lancés (63) - 12s
[MD5.75909533EECD0CD9D5974B59474AA6C0] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [330136] [PID.1260] {330000B33510830D6C8A284DCB00020000B335} ©
[MD5.884FFC0F5D925AED8FAEA4118FD9ECB2] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [289496] [PID.1364] =>.Realtek Semiconductor Corp®
[MD5.D8AB6AC4A2D30641C9544021373B47EB] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.1416] =>.Realtek Semiconductor Corp®
[MD5.D8AB6AC4A2D30641C9544021373B47EB] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688] [PID.1440] =>.Realtek Semiconductor Corp®
[MD5.BB812787B838A74943DEF209350C3883] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe [291744] [PID.1836] {330000B33510830D6C8A284DCB00020000B335} ©
[MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.1052] {2F63040F94B330A53B38B5EA6DA2361C} ©
[MD5.5DB2C6B908C50767E2EDAA294A7566B5] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1572] =>.Adobe Systems, Incorporated®
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1684] =>.Apple Inc.®
[MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.2052] ©
[MD5.3EEDF446E29B6B8F7AD5AFA59B84800B] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472] [PID.2096] {1D9FF0CFF14FE700963E52F6CDACF575} ©
[MD5.612CB66D93ED0F2F21BB109840C7D813] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128] [PID.2308] =>.Apple Inc.®
[MD5.35B80E996B55191FBDED274608805F0C] - (.Windows (R) Win 7 DDK provider - Windows Setup API.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448] [PID.2316] ©
[MD5.F5F3F27E5823A4DF0193CC2534029742] - (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160] [PID.2376] =>.Hewlett-Packard Company®
[MD5.F5FDE761873B4B45C4D6AD9CE3F95442] - (...) -- C:\Users\Bertrand\AppData\Local\Temp\nskD052.tmp [222208] [PID.2488]
[MD5.74752ECD1495E4388CCC3B781E637F91] - (...) -- C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\jnsz9D6.tmp [307200] [PID.2524] =>PUP.Optional.CrossRider
[MD5.71678A862FDBACC1B5A15BE31008306E] - (...) -- C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\hnst205E.tmp [134656] [PID.2548] =>PUP.Optional.CrossRider
[MD5.AFC21EDCA4317470E8008C9BBF09AC31] - (...) -- C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\knsa691.tmp [253440] [PID.2556] =>PUP.Optional.CrossRider
[MD5.732ED03303FEE8003E2922D87ABF9903] - (...) -- C:\Program Files (x86)\LuckyBrowse\app\luckybrowse.exe [585728] [PID.2364] =>PUP.Optional.LuckyBrowse
[MD5.84222E8F33BB6080953F130D246BB78B] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] [PID.1456] {1D9FF0CFF14FE700963E52F6CDACF575} ©
[MD5.015BE8DC7A551728CEFD5DD96EE14E80] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.4644] {1D9FF0CFF14FE700963E52F6CDACF575} ©
[MD5.7DC16FAEA44C8D96A1C113305A4059A2] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe [245576] [PID.4792] =>.Google Inc®
[MD5.73F542663FD48B49A798A56DAA18C136] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe [307016] [PID.4880] =>.Google Inc®
[MD5.80A11F070E9EEFCB48B357E9E0E2C7D1] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [541600] [PID.4976] {330000B33510830D6C8A284DCB00020000B335} ©
[MD5.B6C52FADECE225339D02B6923E930B5C] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [258456] [PID.4992] {330000B33510830D6C8A284DCB00020000B335} ©
[MD5.8D2A1935AE10BE1E11A8C58B2F473560] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxTray.exe [395168] [PID.5024] {330000B33510830D6C8A284DCB00020000B335} ©
[MD5.4E9AF25BA5E8219310E384AEA5B0EED8] - (.CyberLink - CyberLink MediaLibrary Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576] [PID.4580] =>.CyberLink Corp.®
[MD5.F2099D2D7B6085D94FB597FA39356D08] - (.CyberLink - CyberLink Media Server Monitor Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576] [PID.5676] =>.CyberLink Corp.®
[MD5.CA27F20A09B6500482AC2F5B3DB488CF] - (.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760] [PID.5808] =>.CyberLink Corp.®
[MD5.572A377D5E5E4EE874B1423BCAACCEAA] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7199448] [PID.5876] =>.Realtek Semiconductor Corp®
[MD5.FF0FAB199882C00D6DC54CA035865C49] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [169768] [PID.5992] =>.Apple Inc.®
[MD5.87F8EDF63C97BF0BF21359A3D8ABF0C7] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [643880] [PID.5364] =>.Apple Inc.®
[MD5.6F8574160EE5D7E22FD8BB4DD1F6EF79] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Bertrand\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2344768] [PID.5352] {01454BE484613B4D151F0C63B3439319} ©
[MD5.33040C4D7902CF7FB7C54311B17FB1F3] - (.CyberLink Corp. - CyberLink YouCam Service.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [267224] [PID.4972] =>.CyberLink Corp.®
[MD5.E2043ABD9E13E1B7BF74B1D05E15AA47] - (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304] [PID.5864] =>.Hewlett-Packard Company®
[MD5.7CEAEBABAA8F8BE09936E2D8C97891F7] - (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [36713096] [PID.5832] =>.Dropbox, Inc®
[MD5.793D7221E5EC69EA615349A13B702B8C] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.6088] =>.Oracle America, Inc.®
[MD5.9C9943220F8F94B917D8C4C9618074CC] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160] [PID.7028] ©
[MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.6420] {1701CEEB000100009028} ©
[MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.2344] {1701CEEB000100009028} ©
[MD5.3DE66F47365AA8CEB18B1EE272F4FEBA] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.4416] {2F9B73E1000100009080} ©
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.5756] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7288] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7616] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7384] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7368] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7360] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7364] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7356] =>.Google Inc®
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7880] =>.Google Inc®
[MD5.63C59CC5FEADFC8C7A49CBDC1A44A409] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.9796]
[MD5.5A5E52A37977DCDCC139C58E5A76C82E] - (.Mark installer - Mark installer.) -- C:\Program Files (x86)\SpaceSondPro_v53.10293\SpaceSondPro_Service.exe [1747952] [PID.5228] {11219EC4C02D1E1878E59FED81CDA1E305F8} =>PUP.Optional.SpaceSoundPro
[MD5.AF353D186D867091A53246449F33859B] - (.Mac installer - Mac installer.) -- C:\Program Files (x86)\SpaceSondPro_v53.10293\ioproduct.exe [917136] [PID.820] {112106B28CB2E4D8370E3EC157B3C5B3FF12} =>PUP.Optional.SpaceSoundPro
[MD5.B5F933F09A44FE1DBB03B6A540D37DB7] - (...) -- C:\Program Files (x86)\rec_en_77\rec_en_77.exe [3976920] [PID.4736] {11219EC4C02D1E1878E59FED81CDA1E305F8} =>PUP.Optional.Tuto4PC
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.7056] =>.Google Inc®
[MD5.922135193860C4FD759DCAEBFE821C77] - (. - Setup/Uninstall.) -- C:\Program Files (x86)\gmsd_be_005010168\unins000.exe [807085] [PID.6828] =>PUP.Optional.CrossRider
[MD5.922135193860C4FD759DCAEBFE821C77] - (. - Setup/Uninstall.) -- C:\Users\Bertrand\AppData\Local\Temp\_iu14D2N.tmp [807085] [PID.6852]
[MD5.FDC1027D5A229AB6A3B4E4EF66F34B06] - (. - AB Setup.) -- C:\Program Files (x86)\gmsd_be_005010168\predm.exe [689528] [PID.7460] {11214E18677190942D49073E30C52D17C351} =>PUP.Optional.Downware
[MD5.119F608C9358BA8E2C821E993A75156C] - (. - Setup/Uninstall.) -- C:\Users\Bertrand\AppData\Local\Temp\is-8NPTG.tmp\predm.tmp [911360] [PID.9044] =>PUP.Optional.Downware
[MD5.B0EA909B2287BDB4B8BAA640F6AB2BF3] - (.unistallprocess - unistallprocess Setup.) -- C:\Users\Bertrand\AppData\Local\Temp\is-KIQ8G.tmp\dm.exe [483602] [PID.9392] =>PUP.Optional.Multiplug
[MD5.28CE6091F98413729C579D2485544DE7] - (. - Setup/Uninstall.) -- C:\Users\Bertrand\AppData\Local\Temp\is-918N7.tmp\dm.tmp [787456] [PID.9200]
[MD5.3A1F39B8F280D98821AD261FF6936490] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Bertrand\Downloads\ZHPDiag3.exe [1994240] [PID.6116] ©
[MD5.8DE440AA38E71B1D257DD50C8F624673] - (. - gentle Setup.) -- C:\Users\Bertrand\AppData\Local\Temp\is-9MHVE.tmp\TUTOBUN.exe [911586] [PID.3492]
[MD5.C6274D9E3A76E180AA1ABBB4C4335645] - (. - Setup/Uninstall.) -- C:\Users\Bertrand\AppData\Local\Temp\is-AS633.tmp\TUTOBUN.tmp [702976] [PID.848]

---\\ Google Chrome, Démarrage,Recherche,Extensions (26) - 1s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.facebook.com
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://ecolevirtuelle.provincedeliege.be
G2 - GCE: Preference [User Data\Default] [aknpkdffaafgjchaibgeefbgmgeghloj] Angry Birds
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blbkdnmdcafmfhinpmnlhhddbepgkeaa] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [dchlnpcodkpfdpacogkljefecpegganj] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [elioihkkcdgakfbahdoddophfngopipi] Photo Zoom for Facebook
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] __MSG_extName__
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock
G2 - GCE: Preference [User Data\Default] [gkddaofiamhgfjmaccfcfpfolpgbeomj] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [hakdifolhalapjijoafobooafbilfakh] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [hekhdfjankbhklfkjmnmnefcacndeoll] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [hghkgaeecgjhjkannahfamoehjmkjail] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [hpoeglfmgdiiphdfekphecmahbcblkef] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [jagncdcchgajhfhijbbhecadmaiegcmh] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [knkapnclbofjjgicpkfoagdjohlfjhpd] Little Alchemy
G2 - GCE: Preference [User Data\Default] [mkndcbhcgphcfkkddanakjiepeknbgle] RelevantKnowledge =>PUP.Optional.RelevantKnowledge
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pfpeapihoiogbcmdmnibeplnikfnhoge] Outlook.com
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjldcfjmnllhmgjclecdnfampinooman] __MSG_ExtensionName__

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (17) - 3s
P2 - FPN: [HKCU] [@acestream.net/acestreamplugin,version=3.0.5] - (.Innovative Digital Technologies.) -- C:\Users\Bertrand\AppData\Roaming\ACEStream\player\npace_plugin.dll
P2 - FPN: [HKCU] [@unity3d.com/UnityPlayer,version=1.0] - (.Unity Technologies ApS.) -- C:\Users\Bertrand\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll ©
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems, Inc..) -- C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll ©
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ©
P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google.) -- C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll ©
P2 - FPN: [HKLM] [@intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5] - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll ©
P2 - FPN: [HKLM] [@intel-webapi.intel.com/Intel WebAPI updater] - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll ©
P2 - FPN: [HKLM] [@java.com/DTPlugin,version=11.66.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_66\bin\dtplugin\npDeployJava1.dll ©
P2 - FPN: [HKLM] [@java.com/JavaPlugin,version=11.66.2] - (.Oracle Corporation.) -- C:\Program Files (x86)\Java\jre1.8.0_66\bin\plugin2\npjp2.dll ©
P2 - FPN: [HKLM] [@microsoft.com/Lync,version=15.0] - (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll ©
P2 - FPN: [HKLM] [@microsoft.com/OfficeAuthz,version=14.0] - (.Microsoft Corporation.) -- C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL ©
P2 - FPN: [HKLM] [@microsoft.com/SharePoint,version=14.0] - (.Microsoft Corporation.) -- C:\Program Files\Microsoft Office 15\root\office15\NPSPWRAP.DLL ©
P2 - FPN: [HKLM] [@microsoft.com/WLPG,version=16.4.3508.0205] - (.Microsoft Corporation.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll ©
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks Inc..) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll ©
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll ©
P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll ©
P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc..) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll ©

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (6) - 1s
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office 15\root\office15\ochelper.dll =>.Microsoft Corporation®
O2 - BHO: Safe Money Plugin [64Bits] - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll =>.Kaspersky Lab®
O2 - BHO: (no name) [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll =>.Hewlett-Packard Company®
O2 - BHO: DVDVideoSoft.WebPageAdjuster [64Bits] - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} . (.DVDVideoSoft Ltd. - DVDVideoSoft IE Extension.) -- C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll {1825ED6422D189492317AAD87B5382C5} ©

---\\ Applications lancées au démarrage du système (20) - 3s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.)
O4 - HKLM\..\Run: [SpaceSoundPro] C:\Program Files\SpaceSoundPro\SpaceSoundPro.exe (.not file.) =>PUP.Optional.SpaceSoundPro
O4 - HKCU\..\Run: [MK LOL] . (...) -- C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe {7F38F0C7294B210E0E6052AA319C3D00}
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Bertrand\AppData\Roaming\Spotify\SpotifyWebHelper.exe {01454BE484613B4D151F0C63B3439319} ©
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKLM\..\Wow6432Node\Run: [YouCam Service] . (.CyberLink Corp. - CyberLink YouCam Service.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe =>.CyberLink Corp.®
O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe =>.Hewlett-Packard Company®
O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe ©
O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [gmsd_be_005010168] . (...) -- C:\Program Files (x86)\gmsd_be_005010168\gmsd_be_005010168.exe {1121659F89D645B84A6361DBAB1CE36D6315} =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [rec_en_77] . (...) -- C:\Program Files (x86)\rec_en_77\rec_en_77.exe {11219EC4C02D1E1878E59FED81CDA1E305F8} =>PUP.Optional.Tuto4PC
O4 - HKLM\..\Wow6432Node\RunOnce: [upgmsd_be_005010168.exe] . (...) -- C:\Users\Bertrand\AppData\Local\gmsd_be_005010168\upgmsd_be_005010168.exe {1121659F89D645B84A6361DBAB1CE36D6315} =>PUP.Optional.CrossRider
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1284184404-1113143142-2675989164-1001\..\Run: [MK LOL] . (...) -- C:\Program Files (x86)\MKJogo\MK IM\Bin\MKIM.exe {7F38F0C7294B210E0E6052AA319C3D00}
O4 - HKUS\S-1-5-21-1284184404-1113143142-2675989164-1001\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Bertrand\AppData\Roaming\Spotify\SpotifyWebHelper.exe {01454BE484613B4D151F0C63B3439319} ©
O4 - HKUS\S-1-5-21-1284184404-1113143142-2675989164-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.197.111.140 109.88.203.3
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 62.197.111.140 109.88.203.3

---\\ Protocole additionnel (26) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll ©
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (116) - 15s
O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} ©
O42 - Logiciel: Ace Stream Media 3.0.5 - (.Ace Stream Media.) [HKCU][64Bits] -- AceStream ©
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} ©
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824161310} ©
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player ©
O42 - Logiciel: Age of Empires III - Complete Collection - (...) [HKLM][64Bits] -- Age of Empires III - Complete Collection_is1
O42 - Logiciel: Airport Simulator 2015 - (...) [HKLM][64Bits] -- Airport Simulator 2015_is1
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {2FE00055-C4F3-4F7A-AEDD-E198D54CF12F} ©
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {28791292-D18D-42FA-AE66-3D3D20AA8618} ©
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {5ED7462B-EF58-4757-B609-53755021EC34} ©
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} ©
O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL ©
O42 - Logiciel: Battle Academy 2 Eastern Front - (...) [HKLM][64Bits] -- Battle Academy 2 Eastern Front_is1
O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} ©
O42 - Logiciel: CopyTrans Control Center désinstallation uniquement - (.WindSolutions.) [HKCU][64Bits] -- CopyTrans Suite ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} ©
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} ©
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} ©
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} ©
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} ©
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} ©
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} ©
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} ©
O42 - Logiciel: DisableMSDefender - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {74FE39A0-FB76-47CD-84BA-91E2BBB17EF2} ©
O42 - Logiciel: Download Total - (.Call Form corp.) [HKCU][64Bits] -- {E7B65379-8761-3E18-A817-DF87E08FC1DD}
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox ©
O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} ©
O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7} ©
O42 - Logiciel: EPSON Logiciel imprimante - (...) [HKLM][64Bits] -- EPSON Printer and Utilities
O42 - Logiciel: FL Studio 12 - (.Image-Line.) [HKLM][64Bits] -- FL Studio 12 ©
O42 - Logiciel: FL Studio ASIO - (.Image-Line.) [HKLM][64Bits] -- FL Studio ASIO ©
O42 - Logiciel: Flash Games 1.0 - (.Free-Soft.) [HKLM][64Bits] -- Flash Games_is1
O42 - Logiciel: Fotogalerie - (.Microsoft Corporation.) [HKLM][64Bits] -- {0FD66C6F-4023-4C74-AF8E-9B8B2053868E} ©
O42 - Logiciel: Free Studio version 2014 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free Studio_is1 ©
O42 - Logiciel: Free YouTube Download version 3.2.58.505 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube Download_is1 ©
O42 - Logiciel: Free YouTube to MP3 Converter version 3.12.59.505 - (.DVDVideoSoft Ltd..) [HKLM][64Bits] -- Free YouTube to MP3 Converter_is1 ©
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3} ©
O42 - Logiciel: GamesDesktop 005.005010168 - (.GAMESDESKTOP.) [HKLM][64Bits] -- gmsd_be_005010168_is1 =>PUP.Optional.GamesDesktop
O42 - Logiciel: GameSpy Arcade - (...) [HKLM][64Bits] -- GameSpy Arcade
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: GSview 5.0 - (.Ghostgum Software Pty Ltd.) [HKLM][64Bits] -- GSview 5.0
O42 - Logiciel: GTA San Andreas - (.Rockstar Games.) [HKLM][64Bits] -- {D417C96A-FCC7-4590-A1BB-FAF73F5BC98E} ©
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} ©
O42 - Logiciel: Hotel Giant 2 - (.Nobilis.) [HKLM][64Bits] -- {6328CF1B-FA83-485C-94F5-B3D1B4B934E2} ©
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} ©
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {CCE5C597-03EA-423E-BA80-6FCD280A8465} ©
O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} ©
O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {FD49537C-C3A6-4F8D-93E6-68C778A1E192} ©
O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C} ©
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {3AF15EEA-8EDF-4393-BB6C-CF8A9986486A} ©
O42 - Logiciel: HP System Event Utility - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {C78E8F51-3EAD-4F0C-83F0-EF371075E0B4} ©
O42 - Logiciel: HP Utility Center - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {7A75E042-0D30-43C2-BD2A-684F4BE38FF7} ©
O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {30B2D1D8-0A07-4B71-9553-0710C5D31E35} ©
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {309768A4-A2BB-4930-A5A2-8169678C9B4C} ©
O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM][64Bits] -- IL Download Manager ©
O42 - Logiciel: ImgBurn - (.LIGHTNING UK!.) [HKLM][64Bits] -- ImgBurn
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {E5FAF48A-145F-4B33-A062-DCFAAFAE5D41} ©
O42 - Logiciel: Intel(R) Update Manager - (.Intel Corporation.) [HKLM][64Bits] -- {B991A1BC-DE0F-41B3-9037-B2F948F706EC} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} ©
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {7B8D4E8A-EA2B-4A71-BFEB-A4AAAB87C5D0} ©
O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} ©
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} ©
O42 - Logiciel: Jitbit Virtual Keyboard - (.JitBit.) [HKLM][64Bits] -- {1D54BDBE-3FC3-49F6-85D0-01705F7E4384}
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {6F6873E3-5C92-4049-B511-231A138DD090} ©
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{6F6873E3-5C92-4049-B511-231A138DD090} ©
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {3E75652D-99B1-417E-B163-BEF33CAD3F16} ©
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.1 ©
O42 - Logiciel: Leawo Total Media Converter Ultimate version 7.3.0.3 - (.Leawo Software.) [HKLM][64Bits] -- {A5F041A4-812A-47C2-AD53-8893A81019FB}_is1 ©
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync ©
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} ©
O42 - Logiciel: MK LOL - (...) [HKCU][64Bits] -- MK LOL
O42 - Logiciel: MKV Player 2.1.17 - (...) [HKLM][64Bits] -- MKV Player_is1
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} ©
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} ©
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} ©
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} ©
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} ©
O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} ©
O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} ©
O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} ©
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} ©
O42 - Logiciel: Qualcomm Atheros Driver Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} ©
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E} ©
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} ©
O42 - Logiciel: Realtek Ethernet Controller All-In-One Windows Driver - (.Realtek.) [HKLM][64Bits] -- {F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: RelevantKnowledge - (.TMRG, Inc..) [HKLM][64Bits] -- {d08d9f98-1c78-4704-87e6-368b0023d831} =>PUP.Optional.RelevantKnowledge
O42 - Logiciel: resident evil 4 - (.CAPCOM.) [HKLM][64Bits] -- {DFFCDB41-C2DA-47D6-96FF-03C05C0BEA22} ©
O42 - Logiciel: Rise of Nations: Extended Edition - (.Microsoft Studios.) [HKLM][64Bits] -- Rise of Nations: Extended Edition_is1
O42 - Logiciel: Safari - (.Apple Inc..) [HKLM][64Bits] -- {C779648B-410E-4BBA-B75B-5815BCEFE71D} ©
O42 - Logiciel: Setup - (...) [HKLM][64Bits] -- {7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
O42 - Logiciel: SHIFT 2 UNLEASHED™ - (.Electronic Arts.) [HKLM][64Bits] -- {E8C37E27-5205-4C8A-BECB-B00533045AAE} ©
O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: SopCast 3.9.2 - (.www.sopcast.com.) [HKLM][64Bits] -- SopCast ©
O42 - Logiciel: SpaceSoundPro Service - (.CSDI.) [HKLM][64Bits] -- zz.10293.ssp =>PUP.Optional.SpaceSoundPro
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify ©
O42 - Logiciel: Stream Torrent 1.0 - (...) [HKLM][64Bits] -- StreamTorrent 1.0
O42 - Logiciel: SVH - (...) [HKLM][64Bits] -- rec_en_77_is1 =>PUP.Optional.Tuto4PC
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} ©
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey ©
O42 - Logiciel: UG-1 - (...) [HKLM][64Bits] -- {954F3C55-54CE-4DED-9F4D-EE0B54A12AAF}
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer ©
O42 - Logiciel: VirtualDJ 8 - (.Atomix Productions.) [HKLM][64Bits] -- {87E2E947-4432-479C-89C5-43B1A7D374FA} ©
O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: WRC 4 FIA World Rally Championship - (...) [HKLM][64Bits] -- V1JDNEZJQVdvcmxkUmFsbHlDaGFtcGlvbnNoaXA=_is1

---\\ HKCU & HKLM Software Keys (140) - 15s
HKLM\SOFTWARE\Wow6432Node\Activision
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\ASIO4ALL
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\C07ft5Y
HKLM\SOFTWARE\Wow6432Node\CAPCOM
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Dropbox
HKLM\SOFTWARE\Wow6432Node\DropboxUpdate
HKLM\SOFTWARE\Wow6432Node\DVDVideoSoft
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\Electronic Arts
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\Ghostgum
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\GTAViceSity.ru
HKLM\SOFTWARE\Wow6432Node\HaaliMkx
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Image-Line
HKLM\SOFTWARE\Wow6432Node\ImgBurn
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JamMate
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\Leawo Software
HKLM\SOFTWARE\Wow6432Node\LuckyBrowse =>PUP.Optional.LuckyBrowse
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nobilis
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Pando Networks
HKLM\SOFTWARE\Wow6432Node\Propellerhead Software
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Reg
HKLM\SOFTWARE\Wow6432Node\Riot Games
HKLM\SOFTWARE\Wow6432Node\Rockstar Games
HKLM\SOFTWARE\Wow6432Node\SimpleFiles =>PUP.Optional.SimpleFiles
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SoftVoice
HKLM\SOFTWARE\Wow6432Node\SopCast
HKLM\SOFTWARE\Wow6432Node\SpaceSondPro =>PUP.Optional.SpaceSoundPro
HKLM\SOFTWARE\Wow6432Node\SVH
HKLM\SOFTWARE\Wow6432Node\SwiftSearch_1.10.0.25 =>PUP.Optional.Generic
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKLM\SOFTWARE\Wow6432Node\VirtualDJ
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Yahoo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\AceStream
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Bugsplat
HKCU\SOFTWARE\Colossal Order
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\Dropbox
HKCU\SOFTWARE\DropboxUpdate
HKCU\SOFTWARE\DVDVideoSoft
HKCU\SOFTWARE\Electronic Arts
HKCU\SOFTWARE\EMU
HKCU\SOFTWARE\Free-Soft
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\GameSpy
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Image-Line
HKCU\SOFTWARE\ImgBurn
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JitBit
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Leawo Software
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LinkSolutions
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Pando Networks
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\Reg
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\SimpleFiles =>PUP.Optional.SimpleFiles
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\SoftVoice
HKCU\SOFTWARE\spacesoundpro =>PUP.Optional.SpaceSoundPro
HKCU\SOFTWARE\Spotify
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\SyncEngines
HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\The Creative Assembly
HKCU\SOFTWARE\TheCreativeAssembly
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\TrustedStart
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VirtualDJ
HKCU\SOFTWARE\weltenbauer. Software Entwicklung
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\BlockAndSurf =>PUP.Optional.BlockAndSurf
HKCU\SOFTWARE\AppDataLow\Software\DVDVideoSoft
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity

---\\ Contenu des dossiers Programmes (302) - 15s
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files (x86)\Apple Software Update
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\ASIO4ALL v2
O43 - CFD: 28/08/2014 - [] D -- C:\Program Files (x86)\Bluetooth Suite
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Bonjour
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90 =>PUP.Optional.CrossRider
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\CAPCOM
O43 - CFD: 02/12/2015 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 08/07/2015 - [] D -- C:\Program Files (x86)\CountDarts
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\CyberLink
O43 - CFD: 10/11/2015 - [] D -- C:\Program Files (x86)\Dropbox
O43 - CFD: 21/05/2015 - [] D -- C:\Program Files (x86)\DVDVideoSoft
O43 - CFD: 02/12/2015 - [] D -- C:\Program Files (x86)\Electronic Arts
O43 - CFD: 01/12/2014 - [] D -- C:\Program Files (x86)\EPSON
O43 - CFD: 21/05/2015 - [] D -- C:\Program Files (x86)\Free Codec Pack
O43 - CFD: 17/04/2015 - [] D -- C:\Program Files (x86)\Free-Soft
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files (x86)\GameSpy Arcade
O43 - CFD: 26/04/2015 - [] D -- C:\Program Files (x86)\Ghostgum
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\gmsd_be_005010168 =>PUP.Optional.CrossRider
O43 - CFD: 13/06/2015 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\Image-Line
O43 - CFD: 02/06/2015 - [] D -- C:\Program Files (x86)\ImgBurn
O43 - CFD: 01/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 30/09/2014 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 06/02/2015 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 23/05/2015 - [] D -- C:\Program Files (x86)\JamMate
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\JitBit
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Kaspersky Lab
O43 - CFD: 02/09/2015 - [] D -- C:\Program Files (x86)\Leawo
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\LuckyBrowse =>PUP.Optional.LuckyBrowse
O43 - CFD: 28/08/2014 - [] D -- C:\Program Files (x86)\McAfee
O43 - CFD: 28/08/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services
O43 - CFD: 28/08/2014 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 07/11/2013 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 02/06/2015 - [] D -- C:\Program Files (x86)\Microsoft Studios
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 31/12/2014 - [] D -- C:\Program Files (x86)\MKJogo
O43 - CFD: 09/11/2014 - [] D -- C:\Program Files (x86)\MKV Player
O43 - CFD: 20/05/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 23/02/2015 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 26/10/2015 - [] D -- C:\Program Files (x86)\Nobilis
O43 - CFD: 02/12/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 28/08/2014 - [] RD -- C:\Program Files (x86)\Online Services
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files (x86)\Pando Networks
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Qualcomm Atheros
O43 - CFD: 28/12/2014 - [] D -- C:\Program Files (x86)\QuickTime
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\rec_en_77 =>PUP.Optional.Tuto4PC
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
O43 - CFD: 19/06/2015 - [] D -- C:\Program Files (x86)\Resident Evil 4
O43 - CFD: 16/11/2015 - [] D -- C:\Program Files (x86)\Rise of Nations
O43 - CFD: 06/11/2014 - [] D -- C:\Program Files (x86)\Rockstar Games
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\Safari
O43 - CFD: 19/06/2015 - [] D -- C:\Program Files (x86)\Sega
O43 - CFD: 28/08/2015 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 11/12/2014 - [] D -- C:\Program Files (x86)\Snowblind Studios
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files (x86)\SopCast
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\SpaceSondPro =>PUP.Optional.SpaceSoundPro
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\SpaceSondPro_v53.10293 =>PUP.Optional.SpaceSoundPro
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files (x86)\StreamTorrent 1.0
O43 - CFD: 29/04/2014 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files (x86)\The Creative Assembly
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\VirtualDJ
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\VstPlugins
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 07/11/2013 - [] D -- C:\Program Files (x86)\Windows Live
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\WRC 4 FIA World Rally Championship
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Airport Simulator 2015
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle Academy 2 Eastern Front
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CAPCOM
O43 - CFD: 01/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash Games
O43 - CFD: 01/06/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 06/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP =>PUP.Optional.GamesDesktop
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ghostgum
O43 - CFD: 06/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 01/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 23/05/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jammate
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Leawo
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Studios
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKV Player
O43 - CFD: 01/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nobilis
O43 - CFD: 01/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 09/11/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rise of Nations Extended Edition
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
O43 - CFD: 01/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
O43 - CFD: 01/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\.mono
O43 - CFD: 28/12/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 23/02/2015 - [] D -- C:\ProgramData\Age of Empires 3
O43 - CFD: 30/08/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 30/08/2014 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 01/12/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 28/08/2014 - [0] SHD -- C:\ProgramData\Bureaublad
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 09/06/2015 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 28/08/2014 - [0] SHD -- C:\ProgramData\Documenten
O43 - CFD: 01/12/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 25/09/2015 - [] D -- C:\ProgramData\Dropbox
O43 - CFD: 06/02/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 29/04/2014 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 29/04/2014 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 01/10/2014 - [] D -- C:\ProgramData\Intel
O43 - CFD: 30/09/2014 - [] D -- C:\ProgramData\Intel(R) Update Manager
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Leawo
O43 - CFD: 06/12/2015 - [] D -- C:\ProgramData\LuckyBrowse =>PUP.Optional.LuckyBrowse
O43 - CFD: 28/08/2014 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 28/08/2014 - [0] SHD -- C:\ProgramData\Menu Start
O43 - CFD: 01/12/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 10/09/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 19/10/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 17/11/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 16/11/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 29/04/2014 - [] D -- C:\ProgramData\Qualcomm Atheros
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 11/12/2014 - [] D -- C:\ProgramData\RELOADED
O43 - CFD: 30/08/2014 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 28/08/2014 - [0] SHD -- C:\ProgramData\Sjablonen
O43 - CFD: 28/08/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 03/12/2015 - [] D -- C:\ProgramData\Solidshield
O43 - CFD: 06/11/2014 - [] D -- C:\ProgramData\Steam
O43 - CFD: 29/04/2014 - [] D -- C:\ProgramData\Synaptics
O43 - CFD: 29/04/2014 - [] D -- C:\ProgramData\Temp
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 03/10/2015 - [] D -- C:\ProgramData\WindSolutions
O43 - CFD: 07/11/2013 - [] D -- C:\ProgramData\{A5CCDB92-FA53-47D1-89E6-32B82D86621A}
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 06/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Common Files\Atheros
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 21/05/2015 - [] D -- C:\Program Files (x86)\Common Files\DVDVideoSoft
O43 - CFD: 19/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Propellerhead Software
O43 - CFD: 29/04/2014 - [] D -- C:\Program Files (x86)\Common Files\QCA_Bluetooth
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 28/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 07/11/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 02/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\.ACEStream
O43 - CFD: 01/11/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\.mono
O43 - CFD: 29/12/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\ACEStream
O43 - CFD: 29/09/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\Adobe
O43 - CFD: 17/11/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Apple Computer
O43 - CFD: 27/05/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Atari
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\BitTorrent
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\Bertrand\AppData\Roaming\cpuminer
O43 - CFD: 26/10/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\CyberLink
O43 - CFD: 25/09/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Dropbox
O43 - CFD: 21/05/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\DVDVideoSoft
O43 - CFD: 28/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\Hewlett-Packard
O43 - CFD: 28/08/2014 - [0] D -- C:\Users\Bertrand\AppData\Roaming\hpqlog
O43 - CFD: 22/11/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Identities
O43 - CFD: 02/11/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Image-Line
O43 - CFD: 02/06/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\ImgBurn
O43 - CFD: 02/09/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Leawo
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\LolClient
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\Macromedia
O43 - CFD: 01/12/2015 - [] SD -- C:\Users\Bertrand\AppData\Roaming\Microsoft
O43 - CFD: 16/11/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft Games
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Milestone
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\Bertrand\AppData\Roaming\Opera Software
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\Riot Games
O43 - CFD: 28/05/2015 - [] RHD -- C:\Users\Bertrand\AppData\Roaming\SecuROM
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\Bertrand\AppData\Roaming\SimpleFiles =>PUP.Optional.SimpleFiles
O43 - CFD: 28/08/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Skype
O43 - CFD: 03/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Spotify
O43 - CFD: 20/04/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Steam
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\StreamTorrent
O43 - CFD: 17/11/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Sun
O43 - CFD: 28/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\Synaptics
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\Bertrand\AppData\Roaming\systweak =>PUP.Optional.Systweak
O43 - CFD: 19/06/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\The Creative Assembly
O43 - CFD: 02/09/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\tiger-k
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\WindSolutions
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Roaming\WinRAR
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\ZHP
O43 - CFD: 01/12/2015 - [0] D -- C:\Users\Bertrand\AppData\Local\ActiveSync
O43 - CFD: 22/11/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Adobe
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Apple
O43 - CFD: 17/11/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Apple Computer
O43 - CFD: 01/12/2015 - [0] SHD -- C:\Users\Bertrand\AppData\Local\Application Data
O43 - CFD: 30/11/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Apps
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\CA4AD23D-1449419766-5D74-3965-C4346B485C90
O43 - CFD: 06/09/2015 - [] D -- C:\Users\Bertrand\AppData\Local\CEF
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Chromium
O43 - CFD: 01/11/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Colossal Order
O43 - CFD: 19/10/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Comms
O43 - CFD: 09/06/2015 - [] D -- C:\Users\Bertrand\AppData\Local\CyberLink
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Diagnostics
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Download Total
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Dropbox
O43 - CFD: 03/07/2015 - [0] D -- C:\Users\Bertrand\AppData\Local\ElevatedDiagnostics
O43 - CFD: 30/11/2014 - [] SHD -- C:\Users\Bertrand\AppData\Local\EmieBrowserModeList
O43 - CFD: 07/11/2015 - [0] SHD -- C:\Users\Bertrand\AppData\Local\EmieSiteList
O43 - CFD: 07/11/2015 - [0] SHD -- C:\Users\Bertrand\AppData\Local\EmieUserList
O43 - CFD: 09/06/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Game Dev Tycoon - Steam
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\gmsd_be_005010168 =>PUP.Optional.CrossRider
O43 - CFD: 29/07/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Google
O43 - CFD: 03/06/2015 - [] D -- C:\Users\Bertrand\AppData\Local\GWX
O43 - CFD: 28/08/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Hewlett-Packard
O43 - CFD: 01/12/2015 - [0] SHD -- C:\Users\Bertrand\AppData\Local\Historique
O43 - CFD: 11/09/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Intel_Corporation
O43 - CFD: 02/09/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Leawo Total Media Converter Ultimate
O43 - CFD: 09/06/2015 - [] D -- C:\Users\Bertrand\AppData\Local\MediaServer
O43 - CFD: 09/06/2015 - [0] D -- C:\Users\Bertrand\AppData\Local\MediaShow
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Mega Limited
O43 - CFD: 30/11/2015 - [] D -- C:\Users\Bertrand\AppData\Local\MEGAsync
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Microsoft
O43 - CFD: 28/08/2014 - [0] D -- C:\Users\Bertrand\AppData\Local\Microsoft Help
O43 - CFD: 02/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\MicrosoftEdge
O43 - CFD: 21/10/2015 - [0] D -- C:\Users\Bertrand\AppData\Local\NetworkTiles
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Oblivion
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\Bertrand\AppData\Local\Opera Software
O43 - CFD: 02/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Packages
O43 - CFD: 28/08/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Power2Go8
O43 - CFD: 31/08/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Programs
O43 - CFD: 19/10/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Publishers
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\rec_en_77 =>PUP.Optional.Tuto4PC
O43 - CFD: 30/08/2014 - [] D -- C:\Users\Bertrand\AppData\Local\Skype
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
O43 - CFD: 03/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Spotify
O43 - CFD: 06/12/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Temp
O43 - CFD: 01/12/2015 - [0] SHD -- C:\Users\Bertrand\AppData\Local\Temporary Internet Files
O43 - CFD: 19/10/2015 - [] D -- C:\Users\Bertrand\AppData\Local\TileDataLayer
O43 - CFD: 08/03/2015 - [] D -- C:\Users\Bertrand\AppData\Local\Unity
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Bertrand\AppData\Local\VirtualStore
O43 - CFD: 11/12/2014 - [] D -- C:\Users\Bertrand\AppData\Local\WB Games
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 01/12/2015 - [] RD -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ace Stream Media
O43 - CFD: 06/12/2015 - [] RD -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jitbit Virtual Keyboard
O43 - CFD: 30/10/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MKJogo
O43 - CFD: 30/08/2014 - [0] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast
O43 - CFD: 06/12/2015 - [] RD -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stream Torrent 1.0
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 01/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 03/12/2015 - [] D -- C:\Users\Bertrand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\www.gtavicecity.ru

---\\ Derniers fichiers créés dans Windows Prefetcher (12) - 37s
O45 - LFCP:[MD5.F80864724EEC784057C7547D38F3BE21] 06/12/2015 A -- C:\WINDOWS\Prefetch\GMSD_BE_005010168.EXE-AFC565A5.pf =>PUP.Optional.CrossRider
O45 - LFCP:[MD5.70076D1A206BF7AE3994F1F837AB786D] 06/12/2015 A -- C:\WINDOWS\Prefetch\PREDM.EXE-A1877244.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.3242AF7C66CDE4A1982B5C32C59F50D1] 06/12/2015 A -- C:\WINDOWS\Prefetch\PREDM.TMP-2E9A47E2.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.DE2179333DA5870BFF870A58C0776A00] 06/12/2015 A -- C:\WINDOWS\Prefetch\PREDM.TMP-623BBCD3.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.437BEAF6D81C690B25CCBC77EF658525] 06/12/2015 A -- C:\WINDOWS\Prefetch\PREDM.TMP-BFFC7151.pf =>PUP.Optional.Downware
O45 - LFCP:[MD5.9E52A74DB0DF86E6F687EFB1632B16F9] 06/12/2015 A -- C:\WINDOWS\Prefetch\REC_EN_77.EXE-424D96BD.pf =>PUP.Optional.Tuto4PC
O45 - LFCP:[MD5.D14C3B91AA617D728D8B66351E0648AE] 06/12/2015 A -- C:\WINDOWS\Prefetch\SIMPLEFILES.EXE-30C1B565.pf =>PUP.Optional.SimpleFiles
O45 - LFCP:[MD5.2B37FC0B6441043887B4A8FCF1478611] 06/12/2015 A -- C:\WINDOWS\Prefetch\SMARTWEBAPP.EXE-B0482966.pf =>PUP.Optional.SmartWebSearch
O45 - LFCP:[MD5.988629451147742184A653A8FB351C03] 06/12/2015 A -- C:\WINDOWS\Prefetch\SMARTWEBHELPER.EXE-DF07BCF1.pf =>PUP.Optional.SmartWebSearch
O45 - LFCP:[MD5.055322B0EDF4BB5FB7A8DA4C03857C03] 06/12/2015 A -- C:\WINDOWS\Prefetch\SPACESONDPRO_SERVICE.EXE-CA1AC777.pf =>PUP.Optional.SpaceSoundPro
O45 - LFCP:[MD5.41D91F1BCC392CEB1782CE601BE9A681] 06/12/2015 A -- C:\WINDOWS\Prefetch\SPACESOUNDPRO.EXE-704BD3C6.pf =>PUP.Optional.SpaceSoundPro
O45 - LFCP:[MD5.161F0F599A9ADB0C98D6826B02C6E38B] 06/12/2015 A -- C:\WINDOWS\Prefetch\UPGMSD_BE_005010168.EXE-17384D6A.pf =>PUP.Optional.CrossRider

---\\ ShellIconOverlayIdentifiers (SIOI) (19) - 6s
O106 - SIOI: DropboxExt1 Class [ DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt2 Class [ DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt5 Class [ DropboxExt3] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt6 Class [ DropboxExt4] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt3 Class [ DropboxExt5] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt7 Class [ DropboxExt6] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt4 Class [ DropboxExt7] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: DropboxExt8 Class [ DropboxExt8] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll {017CA19B5859E83F44D874C1CE506E6D} ©
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Bertrand\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\grooveex.dll =>.Microsoft Corporation®
O106 - SIOI: ###MegaShellExtPending [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Users\Bertrand\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSynced [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Users\Bertrand\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSyncing [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Users\Bertrand\AppData\Local\MEGAsync\ShellExtX32.dll

---\\ Liste des pilotes du système (66) - 25s
O58 - SDL:2015/10/30 08:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] ©
O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] ©
O58 - SDL:2015/10/30 08:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] ©
O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] ©
O58 - SDL:2015/08/28 21:56:32 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw10x.sys [4318760] ©
O58 - SDL:2013/08/23 00:11:12 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwbx.sys [3860480] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] ©
O58 - SDL:2015/11/29 09:39:58 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [627416] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2013/03/05 11:01:42 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [91712] ©
O58 - SDL:2013/03/05 07:22:20 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\WINDOWS\System32\drivers\clwvd.sys [41408] ©
O58 - SDL:2014/09/19 16:24:05 A . (.Connectify - NDISRD helper driver.) -- C:\WINDOWS\System32\drivers\cnnctfy3.sys [42152] ©
O58 - SDL:2015/10/30 08:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] ©
O58 - SDL:2012/08/21 12:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2015/10/30 08:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] ©
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] ©
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] ©
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] ©
O58 - SDL:2013/08/22 10:08:42 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [644968] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] ©
O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] ©
O58 - SDL:2015/10/19 21:51:40 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3797424] ©
O58 - SDL:2015/08/21 10:50:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] ©
O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] ©
O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] ©
O58 - SDL:2013/10/12 05:19:48 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\WINDOWS\System32\drivers\klim6.sys [30304] ©
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] ©
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] ©
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] ©
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] ©
O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] ©
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] ©
O58 - SDL:2013/08/15 23:28:42 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [830680] ©
O58 - SDL:2013/09/03 17:56:56 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3630168] ©
O58 - SDL:2015/06/05 01:12:54 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [310528] ©
O58 - SDL:2013/08/26 23:54:36 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUStor.sys [263896] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2013/09/20 06:10:18 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448] ©
O58 - SDL:2015/10/19 21:54:56 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [42184] ©
O58 - SDL:2015/10/19 21:54:56 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [42696] ©
O58 - SDL:2015/10/19 21:54:56 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [42696] ©
O58 - SDL:2014/01/22 07:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] ©
O58 - SDL:2014/01/22 07:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2015/09/22 22:41:50 A . (.SS - SS WFP Driver x64.) -- C:\WINDOWS\System32\drivers\swsedrvr_vw_1_10_0_25.sys [57720] =>PUP.Optional.Generic
O58 - SDL:2015/10/19 21:55:00 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [614088] ©
O58 - SDL:2013/09/16 22:20:12 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [99288] ©
O58 - SDL:2014/08/15 23:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] ©
O58 - SDL:2015/10/30 08:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] ©
O58 - SDL:2015/10/30 08:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] ©
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] ©
O58 - SDL:2013/07/22 15:45:58 A . (.Hewlett-Packard Development Company, L.P. - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20800] ©

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (80) - 260s
O61 - LFC: 2015/11/30 20:00:40 A . (.MEGA Limited.) -- C:\Users\Bertrand\Downloads\MEGAsyncSetup.exe [10144904] {11212775AC8BD188EC962027044A8529D2BF} ©
O61 - LFC: 2015/12/06 21:33:50 A . (.Copyright (C) 2015 Nicolas Coolman.) -- C:\Users\Bertrand\Downloads\ZHPDiag3.exe [1994240] ©
O61 - LFC: 2015/12/02 18:30:27 RA . (.Electronic Arts Inc..) -- C:\Users\Bertrand\Desktop\Shift 2 - Unleashed\shif22crack\Crack\shift2u.exe [32247296] ©
O61 - LFC: 2015/12/01 22:37:59 N . (..) -- C:\Users\Bertrand\Desktop\GTA SA Mods\68656-bukan-enb\68656-bukan-enb.exe [7357844]
O61 - LFC: 2015/12/02 16:08:50 N . (..) -- C:\Users\Bertrand\Desktop\GTA SA Mods\57726-sniper-scope-mod\57726-sniper-scope-mod.exe [3748636]
O61 - LFC: 2015/12/01 22:37:24 N . (..) -- C:\Users\Bertrand\Desktop\GTA SA Mods\56195-enb-real-for-very-low-pc\56195-enb-real-for-very-low-pc.exe [4268038]
O61 - LFC: 2015/12/01 22:36:48 N . (..) -- C:\Users\Bertrand\Desktop\GTA SA Mods\49109-enbseries-for-low-pc-v30-samp\49109-enbseries-for-low-pc-v30-samp.exe [8100894]
O61 - LFC: 2015/12/01 22:35:21 N . (..) -- C:\Users\Bertrand\Desktop\GTA SA Mods\44072-hd-roads-2014\44072-hd-roads-2014.exe [405536952]
O61 - LFC: 2015/12/01 22:28:58 N . (..) -- C:\Users\Bertrand\Desktop\GTA SA Mods\42931-the-new-map-in-hd\42931-the-new-map-in-hd.exe [21537936]
O61 - LFC: 2015/12/06 21:33:50 A . (.Copyright (C) 2015 Nicolas Coolman.) -- C:\Users\Bertrand\AppData\Roaming\ZHP\ZHPDiag3.exe [1994240] ©
O61 - LFC: 2015/12/05 01:56:38 A . (.BitTorrent Inc..) -- C:\Users\Bertrand\AppData\Roaming\BitTorrent\BitTorrent.exe [1873952] =>.BitTorrent Inc®
O61 - LFC: 2015/12/05 01:56:38 A . (.BitTorrent Inc..) -- C:\Users\Bertrand\AppData\Roaming\BitTorrent\updates\7.9.5_41373.exe [1873952] =>.BitTorrent Inc®
O61 - LFC: 2015/12/05 01:56:58 A . (.BitTorrent Inc..) -- C:\Users\Bertrand\AppData\Roaming\BitTorrent\updates\7.9.5_41373\utorrentie.exe [336896]
O61 - LFC: 2015/12/03 14:55:35 A . (.Spotify Ltd.) -- C:\Users\Bertrand\AppData\Local\Spotify\Update\spotify_installer-1.0.19.106.gb8a7150f-306.exe [47849288] {01454BE484613B4D151F0C63B3439319} ©
O61 - LFC: 2015/12/06 21:12:19 A . (.SoftBrain Technologies Ltd..) -- C:\Users\Bertrand\AppData\Local\SmartWeb\__u.exe [172673] =>PUP.Optional.SmartWebSearch
O61 - LFC: 2015/12/03 17:37:13 A . (..) -- C:\Users\Bertrand\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Data.bin [3203028]
O61 - LFC: 2015/12/06 20:45:05 A . (..) -- C:\Users\Bertrand\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [17128]
O61 - LFC: 2015/12/06 21:26:39 A . (..) -- C:\Users\Bertrand\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2015/12/03 15:06:04 A . (.Copyright © 2013.) -- C:\Users\Bertrand\AppData\Local\Packages\Microsoft.MicrosoftTreasureHunt_8wekyb3d8bbwe\AC\Microsoft\CLR_v4.0_32\NativeImages\CEServices\cf297c65dd579bc4b64e7dcf7b3bfb10\CEServices.ni.dll [211456]
O61 - LFC: 2015/12/06 20:29:02 A . (..) -- C:\Users\Bertrand\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635850229333507771.bin [39380]
O61 - LFC: 2015/12/03 15:06:18 A . (.Microsoft Open Technologies, Inc..) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\System.Reactive.Linq\40830507eb12b23cb83b0ed0c908265a\System.Reactive.Linq.ni.dll [8370176] ©
O61 - LFC: 2015/12/03 15:06:13 A . (.Microsoft Open Technologies, Inc..) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\System.Reactive.Core\e987cf26932333b2deb90a480136926c\System.Reactive.Core.ni.dll [658432] ©
O61 - LFC: 2015/12/03 15:06:21 A . (.Microsoft Open Technologies, Inc..) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\System.Reacc8ae45ea#\d8f63c14412dd99b5350ed358452d583\System.Reactive.PlatformServices.ni.dll [104448] ©
O61 - LFC: 2015/12/03 15:06:13 A . (.Microsoft Open Technologies, Inc..) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\System.Reac207edc4d#\09fc92009815a73ad1bcc20606e7ea32\System.Reactive.Interfaces.ni.dll [36352] ©
O61 - LFC: 2015/12/03 15:06:18 A . (.nVentive.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Umf7be7617#\ef3e48acf70eb2f87ab58097418e9942\nVentive.Umbrella.Patterns.WinRT.ni.dll [397312] © =>PUP.Optional.IMBooster
O61 - LFC: 2015/12/03 15:06:12 A . (.nVentive.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Umbrella\527c4614e6cd31bbfcd8a036a42eb9dc\nVentive.Umbrella.ni.dll [2534912] © =>PUP.Optional.IMBooster
O61 - LFC: 2015/12/03 15:06:27 A . (..) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um9106121c#\9f852478e1a1d5dffd3391473b54f8e6\nVentive.Umbrella.Web.WinRT.ni.dll [1271808] =>PUP.Optional.IMBooster
O61 - LFC: 2015/12/03 15:06:23 A . (.nVentive.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um5a74ce1f#\e5969375c909beca4af003acbff92cad\nVentive.Umbrella.WinRT.Utilities.Core.ni.dll [2310656] © =>PUP.Optional.IMBooster
O61 - LFC: 2015/12/03 15:06:10 A . (.nVentive.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um4791d002#\13275060264642816217a320b08a3df3\nVentive.Umbrella.Services.WinRT.ni.dll [1295872] © =>PUP.Optional.IMBooster
O61 - LFC: 2015/12/03 15:06:10 A . (..) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um114fe9fe#\0d41864f59236e6ed52bd4570e58692e\nVentive.Umbrella.Services.Contract.WinRT.ni.dll [144896] =>PUP.Optional.IMBooster
O61 - LFC: 2015/12/03 15:06:29 A . (.Copyright © 2013.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\Box.V2\a01fa25d7bbfa31e25276afca535ad51\Box.V2.ni.dll [732672]
O61 - LFC: 2015/12/03 15:06:26 A . (.Box.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\Box.Support\cbb65d2dd9d6b5d1330b73292dd381ba\Box.Support.ni.dll [32256] ©
O61 - LFC: 2015/12/03 15:06:28 A . (.Box.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\Box.Entities\e3b5ef97321ecaa09ba6267ea41b9c81\Box.Entities.ni.dll [438272] ©
O61 - LFC: 2015/12/03 15:06:25 A . (.Box.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\Box.Client\6fb74b302e2716cfa35badea45c56a84\Box.Client.ni.dll [754176] ©
O61 - LFC: 2015/12/03 15:06:26 A . (.Box.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\Box.Business\dda9f4094822732136be617ee465dcc2\Box.Business.ni.dll [1048064] ©
O61 - LFC: 2015/12/03 15:06:07 A . (.Copyright © 2012.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\Box.Agent.WinRT\1744d96c825fd3dc8f1a3add6cf6f24a\Box.Agent.WinRT.ni.dll [317952]
O61 - LFC: 2015/12/03 15:06:21 A . (.Box.) -- C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\ApplicationFramework\151fa44fd33d88778b27e284d2784c06\ApplicationFramework.ni.dll [1886208] ©
O61 - LFC: 2015/12/01 01:32:12 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\appsFolderLayout-menu.bin [1317]
O61 - LFC: 2015/12/01 01:32:12 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\appsFolderLayout.bin [1317]
O61 - LFC: 2015/12/06 20:41:32 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]
O61 - LFC: 2015/12/06 16:44:48 A . (.Copyright (C) 2015.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\Bundle[1].exe [246272]
O61 - LFC: 2015/12/06 17:09:30 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\FinalInstaller_dotnet4[1].exe [3030016]
O61 - LFC: 2015/12/06 21:14:11 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\fuEFV9Iz9[1].exe [1756160]
O61 - LFC: 2015/12/06 16:45:58 A . (.Opera Software.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\Opera_NI_stable[1].exe [716920] =>.Opera Software ASA®
O61 - LFC: 2015/12/06 16:36:11 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\runasu[2].exe [94720]
O61 - LFC: 2015/12/06 21:13:35 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\setup_gmsd_be[1].exe [6624896]
O61 - LFC: 2015/12/06 16:34:30 A . (.Copyright © 2014.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\SilentInstaller_dotnet4[1].exe [320512]
O61 - LFC: 2015/12/06 16:36:13 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RZPQNTQA\Update_Notifier[1].exe [424448]
O61 - LFC: 2015/12/06 17:08:17 A . (.Open Source.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\Cdn[1].exe [4300488] {1CAFDF1C4C426FC3DD811D48793D99C9} ©
O61 - LFC: 2015/12/06 16:48:13 A . (.Internet application.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\ClickMeIn_Downloader_v1.0.5.a0.1_48333_044[1].exe [906415]
O61 - LFC: 2015/12/06 21:11:35 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\cmmdWriter[2].exe [54591]
O61 - LFC: 2015/12/06 21:11:47 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\N9HXm9tbp[1].exe [126570]
O61 - LFC: 2015/12/06 16:46:12 A . (.Opera Software.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\Opera_33.0.1990.115_Setup[1].exe [35428072] =>.Opera Software ASA®
O61 - LFC: 2015/12/06 16:47:27 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\setup[1].exe [430336]
O61 - LFC: 2015/12/06 21:13:48 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\setup_362[1].exe [254464]
O61 - LFC: 2015/12/06 21:15:38 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\setup_38a77a[1].exe [10240]
O61 - LFC: 2015/12/06 17:07:24 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\setup_888555[1].exe [9728]
O61 - LFC: 2015/12/06 16:36:14 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\SU_Srv[1].exe [337920]
O61 - LFC: 2015/12/06 16:49:07 A . (.Copyright 2013.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\RMD8I00Y\Validate[1].exe [61981]
O61 - LFC: 2015/12/06 16:47:20 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\BiTool[1].dll [59904]
O61 - LFC: 2015/12/06 16:35:36 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\JOSrv[1].exe [307200]
O61 - LFC: 2015/12/06 21:15:08 A . (.systweak.com.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\rcpsetup_17970[1].exe [4614360] {2E9BD3DBC5333ACCF13A746389196ACF}
O61 - LFC: 2015/12/06 21:12:24 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\SearchUpdater[1].exe [224746]
O61 - LFC: 2015/12/06 21:12:01 A . (.SoftBrain Technologies Ltd..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\SmartWebInstaller[2].exe [759544] {0E056BE2C82AF2FAD3F0D3BD43387AB2} =>PUP.Optional.SmartWebSearch
O61 - LFC: 2015/12/06 21:14:54 A . (.Copyright 2013.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\Validate[1].exe [61981]
O61 - LFC: 2015/12/06 21:14:28 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\VuuPC_VO2_8907[1].exe [232703] =>PUP.Optional.VuuPC
O61 - LFC: 2015/12/06 16:35:43 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\0qcUdUf[1].exe [134656]
O61 - LFC: 2015/12/06 16:34:44 A . (.Copyright 2013.) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\check[1].exe [202653]
O61 - LFC: 2015/12/06 17:08:29 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\oYqB2ZK7[1].exe [222208]
O61 - LFC: 2015/12/06 21:13:59 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\policyname[1].exe [58238]
O61 - LFC: 2015/12/06 16:35:52 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\SFSetup[1].exe [433778]
O61 - LFC: 2015/12/06 21:12:42 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\SpaceSondPro[1].exe [5605193] =>PUP.Optional.SpaceSoundPro
O61 - LFC: 2015/12/01 13:43:20 A . (..) -- C:\Users\Bertrand\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [443065]
O61 - LFC: 2015/12/06 16:34:45 A . (..) -- C:\Users\Bertrand\AppData\Local\Download Total\{DC554939-4491-26DF-41DA-576A3BDC5A16}\DownloadTotal.dll [25600]
O61 - LFC: 2015/12/06 16:34:45 A . (..) -- C:\Users\Bertrand\AppData\Local\Download Total\{DC554939-4491-26DF-41DA-576A3BDC5A16}\ktt.dll [12288]
O61 - LFC: 2015/12/06 16:34:45 A . (..) -- C:\Users\Bertrand\AppData\Local\Download Total\{DC554939-4491-26DF-41DA-576A3BDC5A16}\{C0F0A12A-F2D5-D6C1-3405-173978CE7107}.dll [25600]
O61 - LFC: 2015/12/04 11:07:32 A . (..) -- C:\Users\Bertrand\AppData\Local\CA4AD23D-1449419766-5D74-3965-C4346B485C90\pnszA13A.exe [127077]
O61 - LFC: 2015/12/06 16:36:11 A . (..) -- C:\Users\Bertrand\AppData\Local\CA4AD23D-1449419766-5D74-3965-C4346B485C90\rnszA138.exe [94720]
O61 - LFC: 2015/12/06 16:36:15 A . (..) -- C:\Users\Bertrand\AppData\Local\CA4AD23D-1449419766-5D74-3965-C4346B485C90\Uninstall.exe [51051]
O61 - LFC: 2015/12/02 17:00:48 A . (..) -- C:\Users\Bertrand\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [78926]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Apple Inc. - Safari.) -- C:\Program Files (x86)\Safari\Safari.exe ©

---\\ Recherche d'infection sur les navigateurs (4) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {cf34d395-9ff1-49a0-98a5-8db1636431b1} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/
O69 - SBI: SearchScopes [HKCU] {DE26E057-E472-4644-B381-91EE750B9371} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/

---\\ Enumère les services démarrés par Svchost (41) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [283136] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1338368] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [957952] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [958464] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31232] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [94720] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1012224] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [225280] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134656] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [328192] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [372736] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [96256] ©
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [186880] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2058240] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [168960] ©
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [203776] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392] ©
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [1073152] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [106496] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [696320] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [507904] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [457728] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2280448] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1144320] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [608768] ©
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [360448] ©
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1035776] ©
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [360960] ©
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1130496] ©
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [205824] ©
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [912384] ©
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [948224] ©

---\\ Liste des exceptions du parefeu Windows (29) - 29s
O87 - FAEL: "{FBBDE18E-3D02-41C4-B012-FB4097B4AD0C}" [In-None-P17-TRUE] .(.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc®
O87 - FAEL: "UDP Query User{68323500-F7B2-4520-A105-7E40A12FDF27}C:\program files (x86)\sopcast\sopcast.exe" [In-None-P17-TRUE] .(.www.sopcast.com - SopCast Main Application.) -- C:\program files (x86)\sopcast\sopcast.exe ©
O87 - FAEL: "TCP Query User{9E1A782F-0FC1-48E1-B049-B2E1580E2879}C:\program files (x86)\sopcast\sopcast.exe" [In-None-P6-TRUE] .(.www.sopcast.com - SopCast Main Application.) -- C:\program files (x86)\sopcast\sopcast.exe ©
O87 - FAEL: "UDP Query User{4D3129A4-65B6-41BD-AC09-DFCFF4B3F315}C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "TCP Query User{E1DD7C4C-C781-4002-B086-7C311C08194D}C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "UDP Query User{D1460570-514F-4C3B-97AA-02FE8AADC610}C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "TCP Query User{2392BC11-FA7F-4435-8090-0A7F3A6D3D71}C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\bertrand\appdata\roaming\bittorrent\bittorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "UDP Query User{F4320D35-F8CA-4B03-9CCF-6D973F5ABC02}C:\users\bertrand\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P17-TRUE] .(...) -- C:\users\bertrand\appdata\roaming\acestream\engine\ace_engine.exe
O87 - FAEL: "TCP Query User{361ECEFF-E8B1-4A5E-8869-8D80E04C5CD3}C:\users\bertrand\appdata\roaming\acestream\engine\ace_engine.exe" [In-None-P6-TRUE] .(...) -- C:\users\bertrand\appdata\roaming\acestream\engine\ace_engine.exe
O87 - FAEL: "UDP Query User{75E556A3-1B5F-4A7D-98D9-AE7B9F814C54}C:\users\bertrand\appdata\roaming\spotify\spotify.exe" [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) -- C:\users\bertrand\appdata\roaming\spotify\spotify.exe {01454BE484613B4D151F0C63B3439319} ©
O87 - FAEL: "TCP Query User{6E0EE2EA-B5D6-4067-B049-A2AC15A0926E}C:\users\bertrand\appdata\roaming\spotify\spotify.exe" [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) -- C:\users\bertrand\appdata\roaming\spotify\spotify.exe {01454BE484613B4D151F0C63B3439319} ©
O87 - FAEL: "{3D6018D0-995E-4CC0-B781-8E046A6FB0E9}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{4ED44A03-6672-4315-BEA4-233B48C629BE}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{E817D1F3-CA09-4CCD-81D9-A7CD7C0E8DCD}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{5BB065F7-7B97-4992-A7EC-DA066E172D60}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{922FE62E-0299-4765-82A4-17A4C6B566D7}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe =>.CyberLink Corp.®
O87 - FAEL: "{2950AB7B-ADCC-4B56-AB4D-3DCC6EFA6A55}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.)
O87 - FAEL: "{CD4D4D4F-9454-4A1B-9488-4C475307F23F}" [In-None-P17-TRUE] .(.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.®
O87 - FAEL: "{B7829213-03A3-456B-A908-8B9A3766A4C5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.)
O87 - FAEL: "{4DEE962A-0592-496C-89E9-7D0FA0F06E39}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe =>.CyberLink Corp.®
O87 - FAEL: "{A37D5E15-55B0-49C6-BF1E-64CB8AC938D1}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe =>.CyberLink Corp.®
O87 - FAEL: "{DE590051-42C6-4933-BA9E-08EA025DE40C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.)
O87 - FAEL: "{85C940E9-01C5-4519-B296-F14CC3F8B72E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.)
O87 - FAEL: "TCP Query User{E401D11D-8186-43B7-8BC9-F50D68610EFC}C:\program files (x86)\skype\phone\skype.exe" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\program files (x86)\skype\phone\skype.exe =>.Skype Software Sarl®
O87 - FAEL: "TCP Query User{34B5DD0F-C879-468A-A047-6DF47B273846}C:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" [In-None-P6-TRUE] .(.Milestone S.r.l. - WRC 4.) -- C:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe
O87 - FAEL: "UDP Query User{3524CDAB-099D-45BF-9FDD-E4283C3B7B67}C:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe" [In-None-P17-TRUE] .(.Milestone S.r.l. - WRC 4.) -- C:\program files (x86)\wrc 4 fia world rally championship\wrc4.exe
O87 - FAEL: "TCP Query User{210B81BD-E622-41F3-9E74-731B10456392}C:\program files (x86)\electronic arts\shift 2 unleashed\shift2u.exe" [In-None-P6-TRUE] .(.Electronic Arts Inc. - SHIFT 2 UNLEASHED™.) -- C:\program files (x86)\electronic arts\shift 2 unleashed\shift2u.exe ©
O87 - FAEL: "UDP Query User{FE6C76CE-C08D-4C77-A056-6809D0BB574A}C:\program files (x86)\electronic arts\shift 2 unleashed\shift2u.exe" [In-None-P17-TRUE] .(.Electronic Arts Inc. - SHIFT 2 UNLEASHED™.) -- C:\program files (x86)\electronic arts\shift 2 unleashed\shift2u.exe ©
O87 - FAEL: "{32FCC3E9-D88F-489E-8865-85E79EF74B94}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\LuckyBrowse\app\LuckyBrowse.exe =>PUP.Optional.LuckyBrowse

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (32) - 45s

SR - Auto [28/10/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [17/11/2009] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe {2F63040F94B330A53B38B5EA6DA2361C} ©
SR - Auto [19/01/2015] [ 77128] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [07/08/2013] [ 312448] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe ©
SR - Auto [30/08/2011] [ 462184] Bonjour-service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Demand [19/10/2015] [ 291744] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe {330000B33510830D6C8A284DCB00020000B335} ©
SR - Auto [05/09/2013] [ 77576] CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.®
SR - Auto [05/09/2013] [ 298760] CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.®
SS - Auto [25/09/2015] [ 136048] Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe {0C89CBE063927780186EC0063F10D323} ©
SS - Demand [25/09/2015] [ 136048] Service Mise à jour Dropbox (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe {0C89CBE063927780186EC0063F10D323} ©
SR - Auto [06/12/2015] [ 222208] Desktop Upload (ginoquci) . (...) - C:\Users\Bertrand\AppData\Local\Temp\nskD052.tmp
SS - Auto [29/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [29/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [29/08/2013] [ 92160] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe ©
SS - Demand [13/05/2013] [ 1129760] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company®
SR - Auto [08/10/2013] [ 1039160] HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company®
SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation®
SR - Auto [19/10/2015] [ 330136] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe {330000B33510830D6C8A284DCB00020000B335} ©
SR - Auto [27/08/2013] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe ©
SS - Demand [27/08/2013] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe {1BF18519000100008FE8} ©
SR - Auto [16/09/2013] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe {1701CEEB000100009028} ©
SR - Demand [27/01/2015] [ 643880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SS - Demand [25/09/2015] [ 178312] Intel(R) Update Manager (iumsvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe {330000B5A6AA2C6CDD4385D4DE00020000B5A6} ©
SR - Auto [16/09/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe {1701CEEB000100009028} ©
SR - Auto [16/09/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe {2F9B73E1000100009080} ©
SR - Auto [06/12/2015] [ 134656] Add Telephone Line (nyneryxo) . (...) - C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\hnst205E.tmp =>PUP.Optional.CrossRider
SR - Auto [06/12/2015] [ 253440] Inkjet Printer Page Number (quhegyfu) . (...) - C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\knsa691.tmp =>PUP.Optional.CrossRider
SR - Auto [06/12/2015] [ 307200] Free Up Joystick (roqenufe) . (...) - C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\jnsz9D6.tmp =>PUP.Optional.CrossRider
SR - Auto [23/08/2013] [ 289496] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [19/10/2015] [ 246472] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe {1D9FF0CFF14FE700963E52F6CDACF575} ©

---\\ Scan Additionnel (79) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\nyneryxo =>PUP.Optional.CrossRider
C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\hnst205E.tmp =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\quhegyfu =>PUP.Optional.CrossRider
C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\knsa691.tmp =>PUP.Optional.CrossRider
HKLM\SYSTEM\CurrentControlSet\Services\roqenufe =>PUP.Optional.CrossRider
C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90\jnsz9D6.tmp =>PUP.Optional.CrossRider
C:\Program Files (x86)\LuckyBrowse\app\luckybrowse.exe =>PUP.Optional.LuckyBrowse
C:\WINDOWS\System32\Tasks\LuckyBrowse =>PUP.Optional.LuckyBrowse
C:\WINDOWS\System32\Tasks\SmartWeb Upgrade Trigger Task =>PUP.Optional.SmartWebSearch
C:\WINDOWS\System32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Core =>PUP.Optional.Generic
C:\WINDOWS\System32\Tasks\SwiftSearch Auto Updater 1.10.0.25 Pending Update =>PUP.Optional.Generic
C:\Program Files (x86)\SpaceSondPro_v53.10293\SpaceSondPro_Service.exe =>PUP.Optional.SpaceSoundPro
C:\Program Files (x86)\SpaceSondPro_v53.10293\ioproduct.exe =>PUP.Optional.SpaceSoundPro
C:\Program Files (x86)\rec_en_77\rec_en_77.exe =>PUP.Optional.Tuto4PC
C:\Program Files (x86)\gmsd_be_005010168\unins000.exe =>PUP.Optional.CrossRider
C:\Program Files (x86)\gmsd_be_005010168\predm.exe =>PUP.Optional.Downware
C:\Users\Bertrand\AppData\Local\Temp\is-8NPTG.tmp\predm.tmp =>PUP.Optional.Downware
C:\Users\Bertrand\AppData\Local\Temp\is-KIQ8G.tmp\dm.exe =>PUP.Optional.Multiplug
C:\Users\Bertrand\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkndcbhcgphcfkkddanakjiepeknbgle =>PUP.Optional.RelevantKnowledge
C:\Program Files (x86)\gmsd_be_005010168\gmsd_be_005010168.exe =>PUP.Optional.CrossRider
C:\Users\Bertrand\AppData\Local\gmsd_be_005010168\upgmsd_be_005010168.exe =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_be_005010168_is1 =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\rec_en_77_is1 =>PUP.Optional.Tuto4PC
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\zz.10293.ssp =>PUP.Optional.SpaceSoundPro
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{d08d9f98-1c78-4704-87e6-368b0023d831} =>PUP.Optional.RelevantKnowledge
HKLM\SOFTWARE\Wow6432Node\GAMESDESKTOP =>PUP.Optional.GamesDesktop
HKLM\SOFTWARE\Wow6432Node\LuckyBrowse =>PUP.Optional.LuckyBrowse
HKLM\SOFTWARE\Wow6432Node\SimpleFiles =>PUP.Optional.SimpleFiles
HKLM\SOFTWARE\Wow6432Node\SpaceSondPro =>PUP.Optional.SpaceSoundPro
HKLM\SOFTWARE\Wow6432Node\SwiftSearch_1.10.0.25 =>PUP.Optional.Generic
HKLM\SOFTWARE\Wow6432Node\Systweak =>PUP.Optional.Systweak
HKLM\SOFTWARE\Wow6432Node\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\DailyPcClean =>PUP.Optional.DailyPCClean
HKCU\SOFTWARE\SimpleFiles =>PUP.Optional.SimpleFiles
HKCU\SOFTWARE\Softonic =>PUP.Optional.Softonic
HKCU\SOFTWARE\spacesoundpro =>PUP.Optional.SpaceSoundPro
HKCU\SOFTWARE\systweak =>PUP.Optional.Systweak
HKCU\SOFTWARE\tstamptoken =>PUP.Optional.MaxComputerCleaner
HKCU\SOFTWARE\Tutorials =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\TutoTag =>PUP.Optional.AgenceExclusive
HKCU\SOFTWARE\AppDataLow\Software\BlockAndSurf =>PUP.Optional.BlockAndSurf
C:\Program Files (x86)\CA4AD23D-1449416106-5D74-3965-C4346B485C90 =>PUP.Optional.CrossRider
C:\Program Files (x86)\gmsd_be_005010168 =>PUP.Optional.CrossRider
C:\Program Files (x86)\LuckyBrowse =>PUP.Optional.LuckyBrowse
C:\Program Files (x86)\rec_en_77 =>PUP.Optional.Tuto4PC
C:\Program Files (x86)\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
C:\Program Files (x86)\SpaceSondPro =>PUP.Optional.SpaceSoundPro
C:\Program Files (x86)\SpaceSondPro_v53.10293 =>PUP.Optional.SpaceSoundPro
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP =>PUP.Optional.GamesDesktop
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RelevantKnowledge =>PUP.Optional.RelevantKnowledge
C:\ProgramData\LuckyBrowse =>PUP.Optional.LuckyBrowse
C:\Users\Bertrand\AppData\Roaming\SimpleFiles =>PUP.Optional.SimpleFiles
C:\Users\Bertrand\AppData\Roaming\systweak =>PUP.Optional.Systweak
C:\Users\Bertrand\AppData\Local\gmsd_be_005010168 =>PUP.Optional.CrossRider
C:\Users\Bertrand\AppData\Local\rec_en_77 =>PUP.Optional.Tuto4PC
C:\Users\Bertrand\AppData\Local\SmartWeb =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\GMSD_BE_005010168.EXE-AFC565A5.pf =>PUP.Optional.CrossRider
C:\WINDOWS\Prefetch\PREDM.EXE-A1877244.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\PREDM.TMP-2E9A47E2.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\PREDM.TMP-623BBCD3.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\PREDM.TMP-BFFC7151.pf =>PUP.Optional.Downware
C:\WINDOWS\Prefetch\REC_EN_77.EXE-424D96BD.pf =>PUP.Optional.Tuto4PC
C:\WINDOWS\Prefetch\SIMPLEFILES.EXE-30C1B565.pf =>PUP.Optional.SimpleFiles
C:\WINDOWS\Prefetch\SMARTWEBAPP.EXE-B0482966.pf =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\SMARTWEBHELPER.EXE-DF07BCF1.pf =>PUP.Optional.SmartWebSearch
C:\WINDOWS\Prefetch\SPACESONDPRO_SERVICE.EXE-CA1AC777.pf =>PUP.Optional.SpaceSoundPro
C:\WINDOWS\Prefetch\SPACESOUNDPRO.EXE-704BD3C6.pf =>PUP.Optional.SpaceSoundPro
C:\WINDOWS\Prefetch\UPGMSD_BE_005010168.EXE-17384D6A.pf =>PUP.Optional.CrossRider
C:\WINDOWS\System32\drivers\swsedrvr_vw_1_10_0_25.sys =>PUP.Optional.Generic
C:\Users\Bertrand\AppData\Local\SmartWeb\__u.exe =>PUP.Optional.SmartWebSearch
C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Umf7be7617#\ef3e48acf70eb2f87ab58097418e9942\nVentive.Umbrella.Patterns.WinRT.ni.dll =>PUP.Optional.IMBooster
C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Umbrella\527c4614e6cd31bbfcd8a036a42eb9dc\nVentive.Umbrella.ni.dll =>PUP.Optional.IMBooster
C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um9106121c#\9f852478e1a1d5dffd3391473b54f8e6\nVentive.Umbrella.Web.WinRT.ni.dll =>PUP.Optional.IMBooster
C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um5a74ce1f#\e5969375c909beca4af003acbff92cad\nVentive.Umbrella.WinRT.Utilities.Core.ni.dll =>PUP.Optional.IMBooster
C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um4791d002#\13275060264642816217a320b08a3df3\nVentive.Umbrella.Services.WinRT.ni.dll =>PUP.Optional.IMBooster
C:\Users\Bertrand\AppData\Local\Packages\134D4F5B.Box_2qk4zy5s3qmee\AC\Microsoft\CLR_v4.0\NativeImages\nVentive.Um114fe9fe#\0d41864f59236e6ed52bd4570e58692e\nVentive.Umbrella.Services.Contract.WinRT.ni.dll =>PUP.Optional.IMBooster
C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\SmartWebInstaller[2].exe =>PUP.Optional.SmartWebSearch
C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\H62P98D2\VuuPC_VO2_8907[1].exe =>PUP.Optional.VuuPC
C:\Users\Bertrand\AppData\Local\Microsoft\Windows\INetCache\IE\AX5ZUAMK\SpaceSondPro[1].exe =>PUP.Optional.SpaceSoundPro

---\\ Récapitulatif des éléments trouvés sur votre station (19) - 0s
http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=4635 =>PUP.Optional.LuckyBrowse
http://www.nicolascoolman.fr/?p=29 =>PUP.Optional.SmartWebSearch
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Generic
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SpaceSoundPro
http://www.nicolascoolman.fr/?p=4879 =>PUP.Optional.Tuto4PC
http://www.nicolascoolman.fr/?p=401 =>PUP.Optional.Downware
http://www.nicolascoolman.fr/?p=1402 =>PUP.Optional.Multiplug
http://www.nicolascoolman.fr/?p=1124 =>PUP.Optional.RelevantKnowledge
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.GamesDesktop
http://www.nicolascoolman.fr/?p=4900 =>PUP.Optional.SimpleFiles
http://www.nicolascoolman.fr/?p=2580 =>PUP.Optional.Systweak
http://www.nicolascoolman.fr/?p=122 =>PUP.Optional.AgenceExclusive
http://www.nicolascoolman.fr/?p=4047 =>PUP.Optional.DailyPCClean
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Softonic
http://www.nicolascoolman.fr/?p=2576 =>PUP.Optional.MaxComputerCleaner
http://www.nicolascoolman.fr/?p=1626 =>PUP.Optional.BlockAndSurf
http://www.nicolascoolman.fr/?p=224 =>PUP.Optional.IMBooster
http://www.nicolascoolman.fr/?p=1216 =>PUP.Optional.VuuPC

~ End of the scan, 48457 items in 791 seconds (1291)(0)

Publicité


Signaler le contenu de ce document

Publicité