cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ Rapport de ZHPDiag v2015.3.23.32 - Nicolas Coolman (23/03/2015)
~ Lancé par Loulou (08/12/2015 12:30:51)
~ Facebook : https://www.facebook.com/nicolascoolman1
~ Adresse du Forum http://forum.nicolascoolman.fr
~ Traduit par Nicolas Coolman
~ Etat de la version : Nouvelle version disponible
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by user


---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.18097 (Defaut)
GCIE: Google Chrome v47.0.2526.73

---\\ Informations sur les produits Windows
~ Langage: Français
Windows Server License Manager Script : Absent (Not found)
Windows ID Activation : Inconnue (Unknown)
Windows Licence : Inconnue (Unknown)
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601)

---\\ Logiciels de protection du système
COMODO Firewall v8.1.0.4426
Spybot - Search & Destroy v2.3.39
Windows Defender W7 (Activate)

---\\ Logiciels d'optimisation du système

---\\ Logiciels de partage PeerToPeer
qBittorrent 3.3.1 v3.3.1 =>P2P.BitTorrent

---\\ Surveillance de Logiciels
Adobe Flash Player 19 ActiveX

---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 7873 MB (46% free)
System Restore: Activé (Enable)
System drive C: has 37 GB (48%) free of 78 GB

---\\ Mode de connexion au système
~ Computer Name: LOULOU-PC
~ User Name: Loulou
~ All Users Names: Loulou, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator

---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Loulou\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Loulou\AppData\Roaming\
~ %Desktop% : C:\Users\Loulou\Desktop\
~ %Favorites% : C:\Users\Loulou\Favorites\
~ %LocalAppData% : C:\Users\Loulou\AppData\Local\
~ %StartMenu% : C:\Users\Loulou\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\

---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 37 Go of 78 Go)
F: CD-ROM drive (Not Inserted)
I: Hard drive, Flash drive, Thumb drive (Free 105 Go of 160 Go)
Z: CD-ROM drive (Not Inserted)



---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
~ Security Center: 49 Legitimates Filtered in 00mn 00s



---\\ Recherche particulière de fichiers génériques
[MD5.0FBA43F392832735B2E1902A33B83554] - (.Microsoft Corporation - Explorateur Windows.) (.25/11/2014 - 08:30:57.) -- C:\Windows\Explorer.exe [2870784]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) (.14/07/2009 - 02:39:52.) -- C:\Windows\System32\Wininit.exe [129024]
[MD5.033E70DEEE5FED5E9A3E197A2DB1A618] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.25/11/2015 - 01:12:55.) -- C:\Windows\System32\wininet.dll [2487808]
[MD5.98AA0BFEE089C7E5DADB94190D93456C] - (.Microsoft Corporation - Application d’ouverture de session Windows.) (.25/11/2014 - 08:46:22.) -- C:\Windows\System32\Winlogon.exe [455680]
[MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) (.21/11/2010 - 04:24:16.) -- C:\Windows\System32\sppcomapi.dll [232448]
[MD5.4870E3CEA0BC916B1DF9C70CE57E1821] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.25/11/2015 - 01:11:47.) -- C:\Windows\system32\Drivers\AFD.sys [496128]
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.14/07/2009 - 02:52:21.) -- C:\Windows\system32\Drivers\atapi.sys [24128]
[MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.14/07/2009 - 00:19:47.) -- C:\Windows\system32\Drivers\Cdfs.sys [92160]
[MD5.19D46F7541942E5FC7D99199C53C3689] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.25/11/2014 - 08:48:13.) -- C:\Windows\system32\Drivers\Cdrom.sys [150016]
[MD5.F55E55EE7E21CF2F9028B83C0DCFEA81] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.25/11/2014 - 08:34:50.) -- C:\Windows\system32\Drivers\DfsC.sys [102912]
[MD5.E171A7AD56E79CA021F38AE786653BCD] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.25/11/2014 - 09:27:36.) -- C:\Windows\system32\Drivers\HDAudBus.sys [122368]
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) (.14/07/2009 - 00:19:57.) -- C:\Windows\system32\Drivers\i8042prt.sys [105472]
[MD5.C9A829B22D1F2613E7A3A3E5C0E43EA2] - (.Microsoft Corporation - IP Network Address Translator.) (.25/11/2014 - 08:28:25.) -- C:\Windows\system32\Drivers\IpNat.sys [116224]
[MD5.2ED53F050EBB446794236BB0D5E28F4F] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.25/11/2015 - 01:12:03.) -- C:\Windows\system32\Drivers\MRxSmb.sys [159744]
[MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) (.21/11/2010 - 04:23:51.) -- C:\Windows\system32\Drivers\netBT.sys [261632]
[MD5.2660B0702A056B132A5F52E96C23910C] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.25/11/2014 - 09:23:20.) -- C:\Windows\system32\Drivers\ntfs.sys [1684416]
[MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) (.14/07/2009 - 01:00:41.) -- C:\Windows\system32\Drivers\Parport.sys [97280]
[MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/11/2010 - 04:24:33.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [129536]
[MD5.5A5849E58B81C1853D48DF7516CB9AA2] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.25/11/2014 - 08:22:42.) -- C:\Windows\system32\Drivers\rdpdr.sys [166400]
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) (.14/07/2009 - 01:09:09.) -- C:\Windows\system32\Drivers\smb.sys [93184]
[MD5.37A9CDA299BD9E35E84B03EA2BC5A2CC] - (.Microsoft Corporation - TDI Translation Driver.) (.25/11/2015 - 01:11:47.) -- C:\Windows\system32\Drivers\tdx.sys [117760]
[MD5.35B18F5EBE7459D9CCEFAB6CA5B399FA] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.25/11/2014 - 09:22:10.) -- C:\Windows\system32\Drivers\volsnap.sys [296896]
~ Generic Processes: Scanned in 00mn 00s



---\\ Etat des fichiers cachés (Caché/Total)
~ Mes Favoris (My Favorites) : 1/12
~ Mes Documents (My Documents) : 1/35
~ Mon Bureau (My Desktop) : 1/322
~ Menu demarrer (Programs) : 1/30
~ Hidden Files: Scanned in 00mn 00s



---\\ Processus lancés
[MD5.45533CEBCD6FF78962352C306D76E247] - (.IObit - Performance Monitor.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [1517344] [PID.1172]
[MD5.45042BE9FD94BBA8306D354696CA4E3B] - (.WiseCleaner.com - Wise Care 365 Tray.) -- C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe [2343984] [PID.1300]
[MD5.DF74A1DA7DAB05EF6343F29A0895ACD7] - (...) -- C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1270552] [PID.2116]
[MD5.BCDD2E081A0E91D7E32DF972A95BCE18] - (...) -- C:\Program Files (x86)\ASUS\ROG Game First III\gameFirst3.exe [1545016] [PID.2140]
[MD5.44014463FF4EC1B7C60958E3D7F25565] - (.ASUSTeK Computer Inc. - Pas de description.) -- C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [1818392] [PID.2152]
[MD5.6216BBE9B496194C6C6F0F5F0A9FF007] - (...) -- C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [1430328] [PID.2168]
[MD5.3FA13F4654F96D00EA1F00C83A6FA27A] - (.IObit - Advanced SystemCare 9.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [2010912] [PID.2360]
[MD5.62B255F798045684235DE2FFD5FA555C] - (...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe [15711744] [PID.2372] =>P2P.BitTorrent
[MD5.E4E7B29D050F5480071984FE6543C311] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848] [PID.2704]
[MD5.793D7221E5EC69EA615349A13B702B8C] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.2768]
[MD5.12DDA5DE47461555B28954C6711399B4] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2086240] [PID.2840]
[MD5.73C583DC51E6279EF9DBFE2B75D3BEEF] - (.DivX, LLC - DivX Binary File.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861640] [PID.2920]
[MD5.0C5D0E8CB41D921062D2F82EF48546E0] - (...) -- C:\Program Files (x86)\ASUS\AI Suite III\ASUSMiniBar.exe [947512] [PID.5104]
[MD5.AE8ED86C45C1947E7DB964DA39AE4845] - (.Samsung Electronics. - Samsung Magician Application.) -- C:\Program Files (x86)\Samsung\Samsung Magician\Samsung Magician.exe [4838816] [PID.5768]
[MD5.9777A48B44AD899DED87EB5767AFD516] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592] [PID.6584]
[MD5.149B4A908F0845A4E7BFAC9DE065783B] - (.IObit - IObit Uninstaller 5 UninstallMontior.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [260896] [PID.6764]
[MD5.C5F837D6C30A81B7352382B461684D8B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704] [PID.6876]
[MD5.3B329BAD1597A67D3AA56576AC59D41F] - (.Nicolas Coolman - Zeb Help Process.) -- C:\Program Files (x86)\ZebHelpProcess\ZHP2.exe [4982784] [PID.6964]
[MD5.EF6B4B38332C4EB7B74C0A1CB7094E83] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8188928] [PID.5808]
[MD5.A1936493AC94D7C4350327049ED5B953] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [827680] [PID.1008]
[MD5.85CD5B92052C3D285CC91244C593A1AC] - (.Enigma Software Group USA, LLC. - Service scanner interface.) -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe [770432] [PID.0] =>PUP.EnigmaSoftware
[MD5.E1C70625416E5E544901AD8B947DAAA8] - (.IObit - IObit Malware Fighter Service.) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [882464] [PID.1664]
[MD5.5DB2C6B908C50767E2EDAA294A7566B5] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1868]
[MD5.BBF8F831C7720DD5135D8C4C8325187A] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728] [PID.1960]
[MD5.5F1091FA113607C9C9B2ECF4FBC76F37] - (.ASUSTeK Computer Inc. - Pas de description.) -- C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648] [PID.2412]
[MD5.37F7DD839A711B5706B1264F4D8D4BDC] - (...) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016] [PID.2552]
[MD5.5AEEA1658F5C75D3746952C44D95FCBE] - (.ASUSTeK Computer Inc. - ASUS Motherboard Fan Control Service.) -- C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.01\AsusFanControlService.exe [382776] [PID.2624]
[MD5.BA22066B83527575953ACF57C6002842] - (.ASUSTeK - ROG GameFirst III Service.) -- C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe [334648] [PID.2736]
[MD5.DF2AB11FC1228F2843285CCC94CF1D2D] - (.Comodo - Chromodo.) -- C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe [1984696] [PID.3432]
[MD5.04A83E99978F4BBB063074FF99D9E5D6] - (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [36904] [PID.720]
[MD5.58FBDA10FC403CF9F82ABD0A68129BA3] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576] [PID.3588]
[MD5.FF39CF49451714D901D5E2A865568662] - (.IObit - IObit Malware Fighter.) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5893920] [PID.5060]
[MD5.9ED6DE2467A1731AEF8E1BDCE72B72F7] - (...) -- C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe [249384] [PID.5068]
[MD5.D9A9FFC89F61CAD4AD9EF31FBB17E634] - (.Intel Corporation - Intel(R) Integrated Clock Controller Servic.) -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [171632] [PID.5412]
[MD5.3A9372C77E7440F26BA5E140888482D2] - (.IObit - IObit Malware Fighter Tips.) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe [2065184] [PID.4324]
[MD5.F35FBCEB1B71BC20BBAFA526E203D6A1] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232] [PID.5900]
~ Processes Running: Scanned in 00mn 01s



---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Loulou\AppData\Local\Google\Chrome\User Data\Default\Preferences

---\\ Liste des dossiers d'extension Google Chrome
~ Google Lines Browser: 1 Legitimates Filtered in 00mn 00s



---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s



---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s



---\\ Hosts file redirection (O1)
~ Le fichier hôte est sain (The hosts file is clean) (13661)
~ Hosts File: Scanned in 00mn 02s



---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Wondershare Video Converter Ultimate 7.1.0 [64Bits] - {451C804F-C205-4F03-B48E-537EC94937BF} . (.Wondershare - Browser Helper Object.) -- C:\ProgramData\Wondershare\Video Converter Ultimate\WSBrowserAppMgr.dll
~ BHO: 3 Legitimates Filtered in 00mn 00s



---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: qBittorrent.lnk . (...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe =>P2P.BitTorrent
O4 - GS\Desktop [Loulou]: SpyHunter.lnk . (.Enigma Software Group USA, LLC. - SpyHunter4 application.) -- C:\Program Files (x86)\Enigma Software Group\SpyHunter\SpyHunter4.exe =>PUP.EnigmaSoftware
~ Global Startup: 6 Legitimates Filtered in 00mn 00s



---\\ Applications lancées au démarrage du système (O4)
O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe
O4 - HKLM\..\Run: [COMODO Internet Security] . (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cistray.exe
O4 - HKLM\..\Run: [SamsungRapidApp] . (.Samsung Electronics Co., Ltd. - Samsung RAPID Mode Notification Utility.) -- C:\Program Files (x86)\Samsung\RAPID\CacheFilter\SamsungRapidApp.exe
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp
O4 - HKLM\..\Run: [OODefragTray] . (.O&O Software GmbH - O&O Defrag TrayIcon (x64).) -- C:\Program Files\OO Software\Defrag\oodtray.exe
O4 - HKCU\..\Run: [Advanced SystemCare 9] . (.IObit - Advanced SystemCare 9.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
O4 - HKCU\..\Run: [qBittorrent] . (...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe =>P2P.BitTorrent
O4 - HKLM\..\Wow6432Node\Run: [IObit Malware Fighter] . (.IObit - IObit Malware Fighter.) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [DelaypluginInstall] . (...) -- C:\ProgramData\Wondershare\Video Converter Ultimate\DelayPluginI.exe
O4 - HKLM\..\Wow6432Node\Run: [DivXMediaServer] . (.DivX, LLC - DivX Media Server Launcher.) -- C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
O4 - HKLM\..\Wow6432Node\Run: [DivXUpdate] . (.DivX, LLC - DivX Binary File.) -- C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
O4 - HKUS\.DEFAULT\..\Run: [SpybotPostWindows10UpgradeReInstall] . (.Safer-Networking Ltd. - Makes sure Spybot 2 is there on Windows 10..) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe
O4 - HKUS\S-1-5-18\..\Run: [SpybotPostWindows10UpgradeReInstall] . (.Safer-Networking Ltd. - Makes sure Spybot 2 is there on Windows 10..) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-1940706629-3033819210-3501409778-1000\..\Run: [Advanced SystemCare 9] . (.IObit - Advanced SystemCare 9.) -- C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
O4 - HKUS\S-1-5-21-1940706629-3033819210-3501409778-1000\..\Run: [qBittorrent] . (...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe =>P2P.BitTorrent
~ Application: Scanned in 00mn 00s



---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{B528488C-7680-4D04-A8CD-7C34B2A95E4D}: NameServer = 8.8.8.8,8.8.4.4 =>.Google DNS Redirections
O17 - HKLM\System\CCS\Services\Tcpip\..\{B528488C-7680-4D04-A8CD-7C34B2A95E4D}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{B528488C-7680-4D04-A8CD-7C34B2A95E4D}: NameServer = 8.8.8.8,8.8.4.4 =>.Google DNS Redirections
O17 - HKLM\System\CS1\Services\Tcpip\..\{B528488C-7680-4D04-A8CD-7C34B2A95E4D}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{B528488C-7680-4D04-A8CD-7C34B2A95E4D}: NameServer = 8.8.8.8,8.8.4.4 =>.Google DNS Redirections
O17 - HKLM\System\CS2\Services\Tcpip\..\{B528488C-7680-4D04-A8CD-7C34B2A95E4D}: DhcpNameServer = 192.168.1.1 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1
~ Domain: Scanned in 00mn 00s



---\\ Protocole additionnel (O18)
O18 - Handler: WSWSVCUchrome [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807553E5-5146-11D5-A672-00B0D022E945} . (...) --
~ Protocole Additionnel: Scanned in 00mn 00s



---\\ Tâches planifiées en automatique (O39)
[MD5.00000000000000000000000000000000] [APT] [AutoPico Daily Restart] (...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) [0] =>PUA.KMSpico
[MD5.DF74A1DA7DAB05EF6343F29A0895ACD7] [APT] [ASUS DIPAwayMode] (...) -- C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1270552]
[MD5.6216BBE9B496194C6C6F0F5F0A9FF007] [APT] [Ez Update] (...) -- C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [1430328]
[MD5.BCDD2E081A0E91D7E32DF972A95BCE18] [APT] [GameFirst III] (...) -- C:\Program Files (x86)\ASUS\ROG Game First III\gameFirst3.exe [1545016]
[MD5.B6F2FD78572C10DA1709E67A9FBE240B] [APT] [GpuFanHelper] (.TODO: .) -- C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [4331288]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1064]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1068]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Wise Care 365 [424]
O39 - APT: - (..) -- C:\Windows\Tasks\Wise Turbo Checker.job [404]
O39 - APT: - (..) -- C:\Windows\System32\Tasks\Wise Turbo Checker [404]
~ Scheduled Task: 34 Legitimates Filtered in 00mn 01s



---\\ Pilotes lancés au démarrage du système (O41)
O41 - Driver: (HWiNFO32) . (.REALiX(tm) - HWiNFO AMD64 Kernel Driver.) - C:\Windows\sysWOW64\drivers\HWiNFO64A.sys
O41 - Driver: (NFC_Driver) . (.Titan ARC Corp. - Network Flow Control SDK WFP Driver (WPP).) - C:\Windows\System32\drivers\NFC_Driver.sys
~ Drivers: 99 Legitimates Filtered in 00mn 00s



---\\ Logiciels installés (O42)
O42 - Logiciel: KMSpico - (...) [HKLM][64Bits] -- {8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 =>PUA.KMSpico
~ Logic: 5 Legitimates Filtered in 00mn 00s



---\\ HKCU & HKLM Software Keys
[HKCU\Software\WSVCUPlugin]
[HKLM\Software\RAPID]
~ Key Software: 203 Legitimates Filtered in 00mn 00s



---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 25/11/2015 - 02:01:11 - [] ----D C:\Program Files (x86)\Candleworks
O43 - CFD: 02/12/2015 - 05:35:35 - [] ----D C:\ProgramData\ProductData
O43 - CFD: 26/11/2015 - 07:53:28 - [] ----D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
O43 - CFD: 12/04/2011 - 10:27:56 - [0] R-H-D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 25/11/2015 - 04:40:34 - [] ----D C:\Users\Loulou\AppData\Roaming\ProductData
O43 - CFD: 03/12/2015 - 10:20:24 - [0] ----D C:\Users\Loulou\AppData\Roaming\WiseUpdate
O43 - CFD: 06/12/2015 - 07:41:08 - [0] ----D C:\Users\Loulou\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
O43 - CFD: 04/12/2015 - 10:17:14 - [] ----D C:\Users\Loulou\AppData\Local\CEF
O43 - CFD: 30/11/2015 - 23:56:14 - [0] -SH-D C:\Users\Loulou\AppData\Local\EmieBrowserModeList
O43 - CFD: 26/11/2015 - 10:02:02 - [] ----D C:\Users\Loulou\AppData\Local\SR22.0.8
O43 - CFD: 25/11/2015 - 02:01:17 - [] ----D C:\Users\Loulou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FX Trading
O43 - CFD: 02/12/2015 - 03:30:29 - [] ----D C:\Users\Loulou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter
~ Program Folder: 184 Legitimates Filtered in 00mn 00s



---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.63199D95D879B2DEAB4AF63A6617804E] - 01/12/2015 - 01:55:53 -SHA- . (...) -- C:\{66 E66 E62-D 3F5-4 C1D-BC13-C9CC76C79D3E}.CBM [4096]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 02/12/2015 - 03:18:44 ---A- . (...) -- C:\autoexec.bat [0]
O44 - LFC:[MD5.44A55A80E99C9EBED345D1D58602EC58] - 02/12/2015 - 05:31:57 ---A- . (.Titan ARC Corp. - Network Flow Control SDK WFP Driver (WPP).) -- C:\Windows\System32\Drivers\NFC_Driver.sys [48336]
O44 - LFC:[MD5.8A63A03AE53A58DCD77C31B5DD1D591A] - 03/12/2015 - 18:16:20 ---A- . (...) -- C:\Windows\System32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat [118]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 04/12/2015 - 11:23:24 ---A- . (...) -- C:\Windows\System32\LogMsg.txt [0]
O44 - LFC:[MD5.5A5C5C5A408E846556EF46AD8D5E30DE] - 04/12/2015 - 11:23:24 ---A- . (...) -- C:\Windows\System32\LogVss.txt [144]
O44 - LFC:[MD5.ADD2FE1A9F4EE41A6D724819550D4E1F] - 06/12/2015 - 08:14:58 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\VirtualAudio.sys [31080]
O44 - LFC:[MD5.E4D103268F535063A172CFD15090A869] - 06/12/2015 - 12:57:19 -SHA- . (...) -- C:\EUMONBMP.SYS [320000]
O44 - LFC:[MD5.F667737B1A3508F5DBA263818E7A10F2] - 06/12/2015 - 13:03:01 -SHA- . (...) -- C:\{7A EAC 137-2 930-4 45F-91DF-5D8BE165C3E0}.CBM [4096]
O44 - LFC:[MD5.38482A5013D8AB40DF0FB15EAE022C57] - 06/12/2015 - 13:05:30 ---A- . (...) -- C:\Windows\System32\slmgr.vbs.removewat [113629]
O44 - LFC:[MD5.3D733144477CADCF77009EF614413630] - 06/12/2015 - 14:30:02 ---A- . (.Vestris Inc. - ResourceLib.) -- C:\Windows\System32\Vestris.ResourceLib.dll [90112]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 08/12/2015 - 09:41:23 --HA- . (...) -- C:\asc_rdflag [0]
O44 - LFC:[MD5.C01BA8CDB6BB1F4C925775AD82DD3D1A] - 08/12/2015 - 10:42:42 --H-- . (...) -- C:\AMTAG.BIN [1024]
O44 - LFC:[MD5.8CC181475B864545EAA68AD93E18E129] - 08/12/2015 - 11:52:59 ---A- . (...) -- C:\Windows\PE_Rom.dll [1048576]
O44 - LFC:[MD5.79BF314AABF7D806C649EB5CB043A3EC] - 08/12/2015 - 12:02:38 ---A- . (...) -- C:\Windows\Path.idx [551]
O44 - LFC:[MD5.DC84FA9528C812413CC569256110AD82] - 08/12/2015 - 12:02:44 ---A- . (...) -- C:\Windows\MB.idx [2142]
O44 - LFC:[MD5.953310E62CFF9EF5318EA1786567A728] - 24/11/2015 - 22:49:10 ---A- . (...) -- C:\Windows\System32\WinToolkit_RunOnce_Log.log [1784]
O44 - LFC:[MD5.EC1B717EAD60F60B14B1868DC416708B] - 24/11/2015 - 23:31:09 ---A- . (...) -- C:\Windows\System32\BootMan.exe [3428488]
O44 - LFC:[MD5.B69A265AD9328E2027C18D84C3D49959] - 24/11/2015 - 23:31:09 ---A- . (...) -- C:\Windows\System32\EuEpmGdi.dll [17504]
O44 - LFC:[MD5.08C997734B2CECE882656BB2855E6E76] - 24/11/2015 - 23:31:09 ---A- . (...) -- C:\Windows\System32\EuGdiDrv.sys [10848]
O44 - LFC:[MD5.1B677389760689A11241884C700B48E0] - 24/11/2015 - 23:31:09 ---A- . (...) -- C:\Windows\System32\epmntdrv.sys [18528]
O44 - LFC:[MD5.4B91350942AA13F7566277CC6899E142] - 24/11/2015 - 23:31:09 ---A- . (...) -- C:\Windows\System32\setupempdrvx64.exe [101984]
O44 - LFC:[MD5.718FECF22BF4BD4FC05B79AA4BEC75D0] - 24/11/2015 - 23:45:11 ---A- . (...) -- C:\Windows\Language_trs.ini [1769]
O44 - LFC:[MD5.B226B85123619EF1394339C1B5EB5A8D] - 24/11/2015 - 23:51:20 ---A- . (...) -- C:\Windows\System32\iglhxc64.vp [43494]
O44 - LFC:[MD5.94ED4F871997E5DFC610DC1649C38911] - 24/11/2015 - 23:51:20 ---A- . (...) -- C:\Windows\System32\iglhxg64.vp [43256]
O44 - LFC:[MD5.F0962922D46C060E00510E65EA463614] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resENU.cui [148173]
O44 - LFC:[MD5.C2FE01C84FD18E0186D1F72CD1B4B290] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resESN.cui [154037]
O44 - LFC:[MD5.1DFE9B79228C1B6576E030C28AC09F32] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resHUN.cui [156088]
O44 - LFC:[MD5.CB675854B81535EED9474ABA81AF3B21] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resJPN.cui [160698]
O44 - LFC:[MD5.F06723DFF5F186B8C664F1A757E6C698] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resKOR.cui [154381]
O44 - LFC:[MD5.13EA22E443CC20B286ABE6C15484C299] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resPLK.cui [153601]
O44 - LFC:[MD5.A4A91B5A7A276193FB531DEEA202310D] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resPTB.cui [152700]
O44 - LFC:[MD5.475523329454470D5F03AE0F20F61320] - 24/11/2015 - 23:51:20 RSHA- . (...) -- C:\Windows\System32\resPTG.cui [152411]
O44 - LFC:[MD5.899E708E589C09700BFF1C73CB7D7002] - 24/11/2015 - 23:51:21 ---A- . (...) -- C:\Windows\System32\CustomModeAppv2_0.exe.config [895]
O44 - LFC:[MD5.899E708E589C09700BFF1C73CB7D7002] - 24/11/2015 - 23:51:21 ---A- . (...) -- C:\Windows\System32\DPTopologyAppv2_0.exe.config [895]
O44 - LFC:[MD5.899E708E589C09700BFF1C73CB7D7002] - 24/11/2015 - 23:51:21 ---A- . (...) -- C:\Windows\System32\Gfxv2_0.exe.config [895]
O44 - LFC:[MD5.6C0F36ABFE80433B352FA7748ED887BF] - 24/11/2015 - 23:51:21 ---A- . (...) -- C:\Windows\System32\iglhxa64.cpa [2813952]
O44 - LFC:[MD5.3B6EF4F03F2DE75A3B7DDF627A3EC146] - 24/11/2015 - 23:51:21 ---A- . (...) -- C:\Windows\System32\iglhxo64.vp [44025]
O44 - LFC:[MD5.60ACAF7287B507C99B42F02019746A89] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resCSY.cui [152536]
O44 - LFC:[MD5.656228EB61B135FB5600B1F5B9EEF03A] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resHRV.cui [151552]
O44 - LFC:[MD5.8034A7326E3E489196ACF0876B9511DC] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resNOR.cui [150001]
O44 - LFC:[MD5.E6403DF04D68E9580BA868FB3BC85E4F] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resROM.cui [154148]
O44 - LFC:[MD5.377BFCB95D9162704C9A09C86E6BCE5C] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resRUS.cui [175392]
O44 - LFC:[MD5.C1305107CA0496D729E6D99DB80A6EAB] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resSKY.cui [153459]
O44 - LFC:[MD5.359669C896A7E4553259E1835A9DA10A] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resSLV.cui [150924]
O44 - LFC:[MD5.237C25164DD5BC4BF7CB5B33F5320788] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resSVE.cui [151097]
O44 - LFC:[MD5.EC1F88FA3BF50F1800DBF0297D222C55] - 24/11/2015 - 23:51:21 RSHA- . (...) -- C:\Windows\System32\resTRK.cui [152545]
O44 - LFC:[MD5.59075B2A63DF6A568123218BF4DC2696] - 24/11/2015 - 23:51:22 ---A- . (...) -- C:\Windows\System32\CustomModeApp.exe.config [889]
O44 - LFC:[MD5.55C71EDC47B57E5115B40095EEC9E205] - 24/11/2015 - 23:51:22 ---A- . (...) -- C:\Windows\System32\iglhxc64_dev.vp [43816]
O44 - LFC:[MD5.04590E9E52E13EF34B2AA02C7EA2431B] - 24/11/2015 - 23:51:22 ---A- . (...) -- C:\Windows\System32\iglhxg64_dev.vp [43298]
O44 - LFC:[MD5.715DBDBED4599E798F94EDF6003F75B6] - 24/11/2015 - 23:51:22 ---A- . (...) -- C:\Windows\System32\iglhxo64_dev.vp [42079]
O44 - LFC:[MD5.17047D24F02F8A8FD3050290DB03B7A7] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resARA.cui [161268]
O44 - LFC:[MD5.7C64F98778D1CEDE9B127D5B08A2D1A2] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resCHS.cui [145574]
O44 - LFC:[MD5.689D71AD257584E9485EC07C0D009586] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resCHT.cui [146403]
O44 - LFC:[MD5.C3CA8DAFE878973F888004D8A0D5BCCB] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resDAN.cui [149488]
O44 - LFC:[MD5.F952A06650E1E00FF920A831368DE135] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resDEU.cui [154287]
O44 - LFC:[MD5.C4ACB4987AA0560AEE6ED0AD3F74D764] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resELL.cui [179511]
O44 - LFC:[MD5.8D4530712673464C8183AA053240AB89] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resFIN.cui [151989]
O44 - LFC:[MD5.97F2071B652D9D166AECB18549A4E8D5] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resFRA.cui [156105]
O44 - LFC:[MD5.06D37B4DE7F466C183F9F3B44203D5E4] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resHEB.cui [160719]
O44 - LFC:[MD5.A3BF3AAC7B20BA92139E9D6789AC1CE3] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resITA.cui [154314]
O44 - LFC:[MD5.2A2B52E12B6164D95E18A15BB36E3426] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resNLD.cui [153260]
O44 - LFC:[MD5.777E5775AC577F3D95CF5CA856835E2B] - 24/11/2015 - 23:51:22 RSHA- . (...) -- C:\Windows\System32\resTHA.cui [186638]
O44 - LFC:[MD5.105CFE016CCB20175BEACEC146F175AB] - 24/11/2015 - 23:51:27 ---A- . (...) -- C:\Windows\System32\IccLibDll_x64.dll [94208]
O44 - LFC:[MD5.F9D11B02E594D1468BEF13FDE8BE6A28] - 24/11/2015 - 23:52:36 ---A- . (...) -- C:\Windows\System32\results.xml [18672]
O44 - LFC:[MD5.3FF4EA7ECA148BA0FB55073900A270D2] - 25/11/2015 - 00:53:56 --HA- . (...) -- C:\Windows\EPMBatch.ept [2438]
O44 - LFC:[MD5.2CBD6D22499EB13A2666F62EF33D00E2] - 25/11/2015 - 01:12:59 ---A- . (...) -- C:\Windows\System32\ieuinit.inf [16303]
O44 - LFC:[MD5.091F08BCEE2AEDDC89070370552DFD34] - 25/11/2015 - 02:11:24 ---A- . (...) -- C:\Windows\System32\ampa.sys [17008]
O44 - LFC:[MD5.E927DE0218778BA45A10360725855E08] - 25/11/2015 - 02:11:25 ---A- . (...) -- C:\Windows\ampa.exe [1806960]
O44 - LFC:[MD5.E5421FB92280483FA59B6518C70B3319] - 25/11/2015 - 03:15:17 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) -- C:\Windows\System32\fbnative.exe [24104]
O44 - LFC:[MD5.17696B5ACDBDFFC7D26C4B56BF132AD5] - 25/11/2015 - 03:15:18 ---A- . (...) -- C:\Windows\System32\Drivers\EUBKMON.sys [48168]
O44 - LFC:[MD5.FCFD172899D0A026E5BD29F4775BFA76] - 25/11/2015 - 03:15:18 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\Windows\System32\Drivers\eudskacs.sys [18472]
O44 - LFC:[MD5.E47A0ECA90AF393983EF30E458606BB5] - 25/11/2015 - 03:15:18 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\Windows\System32\Drivers\eubakup.sys [60968]
O44 - LFC:[MD5.1D866B50C9B1BA3FE90CC81E0DBC0E15] - 25/11/2015 - 03:15:18 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\Windows\System32\Drivers\EuFdDisk.sys [192040]
O44 - LFC:[MD5.B06A2FFC4503DFF01BAD161F37FFE0F9] - 25/11/2015 - 18:34:44 ---A- . (...) -- C:\Windows\ODBC.INI [382]
O44 - LFC:[MD5.DE4F21D4FA6AB18E962D69287F07908A] - 26/11/2015 - 02:20:09 ---A- . (...) -- C:\Windows\System32\Drivers\fvstore.dat [4906]
O44 - LFC:[MD5.6DD338C5B7CF894DDAFEDD31A022FCB0] - 26/11/2015 - 07:12:52 ---A- . (...) -- C:\Windows\Ascd_tmp.ini [57093]
O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 26/11/2015 - 07:13:01 ---A- . (...) -- C:\Windows\Ascd_err.ini [0]
O44 - LFC:[MD5.C319B9EA41FC8A620B4DC330E87D1C30] - 26/11/2015 - 07:13:03 ---A- . (...) -- C:\Windows\scd.ini [463]
O44 - LFC:[MD5.5B42A424760F56E03FA6584F2E4A5A2A] - 26/11/2015 - 07:19:33 ---A- . (...) -- C:\Windows\Ascd_log.ini [70818]
O44 - LFC:[MD5.0BAE91BDCCF7CF47F8AC02D96A135D4C] - 26/11/2015 - 08:05:20 ---A- . (...) -- C:\Windows\System32\e1d62x64.din [3130]
O44 - LFC:[MD5.64430E214B5B229D426D2D35538C402D] - 26/11/2015 - 08:05:52 ---A- . (...) -- C:\Windows\System32\ColorImageEnhancement.wmv [375173]
O44 - LFC:[MD5.60E6C68CB0B797EDD0386A68526935A4] - 26/11/2015 - 08:05:52 ---A- . (...) -- C:\Windows\System32\DPTopologyApp.exe.config [935]
O44 - LFC:[MD5.A08B87CC51FB774ED45FDF4284B1974F] - 26/11/2015 - 08:05:52 ---A- . (...) -- C:\Windows\System32\FilmModeDetection.wmv [641530]
O44 - LFC:[MD5.60E6C68CB0B797EDD0386A68526935A4] - 26/11/2015 - 08:05:52 ---A- . (...) -- C:\Windows\System32\Gfxv4_0.exe.config [935]
O44 - LFC:[MD5.3ED204C864E5CC3C78D3DBB707D102D1] - 26/11/2015 - 08:05:53 ---A- . (...) -- C:\Windows\System32\ImageStabilization.wmv [403671]
O44 - LFC:[MD5.F15AEEB697A17DE95A0A583599AF743E] - 26/11/2015 - 08:05:53 ---A- . (...) -- C:\Windows\System32\igdclbif.bin [6725162]
O44 - LFC:[MD5.BCED87C01970EC7BCCA2CBD3DC1F928D] - 26/11/2015 - 08:05:53 ---A- . (...) -- C:\Windows\System32\igfxTray.exe [393320]
O44 - LFC:[MD5.4A4BC6457A1067D5225B1F151ACFF015] - 26/11/2015 - 08:05:53 ---A- . (...) -- C:\Windows\System32\iglhxs64.vp [4052]
O44 - LFC:[MD5.2ABDE2F588B1F98F0B31BBFE7C05647E] - 26/11/2015 - 08:06:01 ---A- . (...) -- C:\Windows\System32\igd11dxva64.dll [17888008]
O44 - LFC:[MD5.0173DE76617C229FDBC9BA13DF6E8E3D] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igdde64.dll [192000]
O44 - LFC:[MD5.BD0AB09CA19CF6D57109C49B54EC0B1F] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxCPL.cpl [256000]
O44 - LFC:[MD5.5F11613BB7B0D814462EF1D1637CCC90] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxCUIServicePS.dll [86528]
O44 - LFC:[MD5.FFC7B386A94A01BC65AAC8BA6BDB2167] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxDHLib.dll [60928]
O44 - LFC:[MD5.8ABA03044AA07F15106AD28A0D77BC1C] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxDHLibv2_0.dll [73728]
O44 - LFC:[MD5.4AF3FA53940DE69C28C3A86115B3F853] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxDILib.dll [11264]
O44 - LFC:[MD5.F8F7A60782D9BC64ADB21115C19D42C7] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxDILibv2_0.dll [10752]
O44 - LFC:[MD5.72EF024209D2294889B215FB87F16798] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxEMLib.dll [10240]
O44 - LFC:[MD5.778CB7402FA13223D7E0268C40F455E5] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxEMLibv2_0.dll [10240]
O44 - LFC:[MD5.F525C12EE96415FDC5A1DCE6BD4FA4A5] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxLHMLib.dll [5120]
O44 - LFC:[MD5.102FC1E831608F49E11E3AEB3CFDFA3B] - 26/11/2015 - 08:06:02 ---A- . (...) -- C:\Windows\System32\igfxLHMLibv2_0.dll [5120]
O44 - LFC:[MD5.7E47AD11AC45C634C262836A1C87120E] - 26/11/2015 - 08:10:41 ---A- . (...) -- C:\Windows\System32\{86F549EB-A66B-4D6C-958D-CDDD66410751}.bat [400]
O44 - LFC:[MD5.B40979C88A3C0F48AEAADEC2D74A4D32] - 26/11/2015 - 08:10:41 ---A- . (...) -- C:\Windows\System32\{C1D72DEE-FF54-4835-8F1C-DF56D09A95BE}.bat [86]
O44 - LFC:[MD5.0055B62657CE7561F68136FB1E54AFAC] - 26/11/2015 - 08:10:41 ---A- . (...) -- C:\Windows\System32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat [401]
O44 - LFC:[MD5.F2CF417EF502555B139EDCD9FEBF9CD3] - 26/11/2015 - 09:32:19 ---A- . (...) -- C:\Windows\System32\AcpiServiceVnA64.dll [109848]
O44 - LFC:[MD5.505609C10E1DA95914C728B62F36E066] - 26/11/2015 - 09:32:19 ---A- . (...) -- C:\Windows\System32\audioLibVc.dll [33592]
O44 - LFC:[MD5.C80D3E0C8100244F32F1F77775D9AC8B] - 26/11/2015 - 09:32:21 ---A- . (...) -- C:\Windows\System32\Drivers\RTAIODAT.DAT [1057494]
O44 - LFC:[MD5.CC758BDB722C466464CF09CF70F47D29] - 26/11/2015 - 09:32:21 ---A- . (...) -- C:\Windows\System32\SStudio.dll [2117424]
O44 - LFC:[MD5.6392DCD7D6509AB148E7C8EEF70DD123] - 30/11/2015 - 23:26:08 ---A- . (...) -- C:\Windows\System32\Drivers\cmdguard.cat [7884]
O44 - LFC:[MD5.47EAD7FD83A89EAD85677ACEC22E269D] - 30/11/2015 - 23:26:08 ---A- . (...) -- C:\Windows\System32\Drivers\cmdguard.inf [4123]
~ Files: 612 Legitimates Filtered in 00mn 01s



---\\ Clé de registre Shell MountPoints2 (MPSK) (O51)
O51 - MPSK:{c4be6629-92f4-11e5-87be-806e6f6e6963}\AutoRun\command. (...) -- E:\.\Bin\ASSETUP.exe (.not file.)
~ Keys: Scanned in 00mn 00s



---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableLUA"=0
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 16 Legitimates Filtered in 00mn 00s



---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKCU\...\policies\Explorer] - "NoSimpleNetIDList"=1
O56 - MWPE:[HKCU\...\policies\Explorer] - "NolowDiskSpaceChecks"=1
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 6 Legitimates Filtered in 00mn 00s



---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:14/07/2009 - 02:47:48 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [530496]
O58 - SDL:25/11/2015 - 03:15:18 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\Windows\System32\Drivers\eubakup.sys [60968]
O58 - SDL:25/11/2015 - 03:15:18 ---A- . (...) -- C:\Windows\System32\Drivers\EUBKMON.sys [48168]
O58 - SDL:25/11/2015 - 03:15:18 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\Windows\System32\Drivers\eudskacs.sys [18472]
O58 - SDL:25/11/2015 - 03:15:18 ---A- . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\Windows\System32\Drivers\EuFdDisk.sys [192040]
O58 - SDL:10/06/2009 - 21:31:59 ---A- . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for eHome.) -- C:\Windows\System32\Drivers\hcw85cir.sys [31232]
O58 - SDL:02/12/2015 - 05:31:57 ---A- . (.Titan ARC Corp. - Network Flow Control SDK WFP Driver (WPP).) -- C:\Windows\System32\Drivers\NFC_Driver.sys [48336]
O58 - SDL:14/07/2009 - 02:45:55 ---A- . (.Promise Technology - Promise SuperTrak EX Series Driver for Windows.) -- C:\Windows\System32\Drivers\stexstor.sys [24656]
O58 - SDL:06/12/2015 - 08:14:58 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\VirtualAudio.sys [31080]
O58 - SDL:25/11/2015 - 02:11:24 ---A- . (...) -- C:\Windows\System32\ampa.sys [17008]
O58 - SDL:18/11/2014 - 14:39:06 ---A- . (...) -- C:\Windows\System32\epmntdrv.sys [18528]
O58 - SDL:18/11/2014 - 14:39:06 ---A- . (...) -- C:\Windows\System32\EuGdiDrv.sys [10848]
O58 - SDL:28/01/2014 - 04:16:08 R--A- . (...) -- C:\Windows\SysWOW64\drivers\AsIO.sys [15232]
O58 - SDL:24/02/2014 - 10:49:22 R--A- . (...) -- C:\Windows\SysWOW64\drivers\AsUpIO.sys [14464]
O58 - SDL:02/04/2009 - 13:30:14 ---A- . (...) -- C:\Windows\SysWOW64\drivers\ASUSHWIO.SYS [10296]
O58 - SDL:22/06/2012 - 12:01:32 ---A- . (...) -- C:\Windows\SysWOW64\drivers\EsgScanner.sys [19984]
O58 - SDL:26/11/2015 - 05:49:11 ---A- . (.REALiX(tm) - HWiNFO AMD64 Kernel Driver.) -- C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528]
O58 - SDL:25/11/2015 - 02:11:24 ---A- . (...) -- C:\Windows\SysWOW64\ampa.sys [17008]
O58 - SDL:18/11/2014 - 14:39:06 ---A- . (...) -- C:\Windows\SysWOW64\epmntdrv.sys [15968]
O58 - SDL:22/06/2012 - 12:01:32 ---A- . (...) -- C:\Windows\SysWOW64\ESGScanner.sys [19984]
O58 - SDL:18/11/2014 - 14:39:06 ---A- . (...) -- C:\Windows\SysWOW64\EuGdiDrv.sys [10208]
~ Drivers: 87 Legitimates Filtered in 00mn 00s



---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2015 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s



---\\ Liste les services legacy du registre (LALS) (O64)
O64 - Services: CurCS - 22/09/2014 - C:\Windows\System32\DRIVERS\epfwwfp.sys (epfwwfp) .(.ESET - ESET Personal Firewall driver.) - LEGACY_EPFWWFP
O64 - Services: CurCS - 25/11/2015 - C:\Windows\System32\drivers\EUBKMON.sys (EUBKMON) .(...) - LEGACY_EUBKMON
O64 - Services: CurCS - 25/11/2015 - C:\Windows\system32\drivers\eudskacs.sys (EUDSKACS) .(.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) - LEGACY_EUDSKACS
O64 - Services: CurCS - 25/11/2015 - C:\Windows\system32\drivers\EuFdDisk.sys (EUFDDISK) .(.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) - LEGACY_EUFDDISK
O64 - Services: CurCS - 01/11/1745 - C:\Windows\system32\drivers\IOMap64.sys (IOMap) .(...) - LEGACY_IOMAP
O64 - Services: CurCS - 21/11/2013 - C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys (ISODrive) .(.EZB Systems, Inc. - ISO DVD/CD-ROM Device Driver.) - LEGACY_ISODRIVE
O64 - Services: CurCS - 02/12/2015 - C:\Windows\System32\drivers\NFC_Driver.sys (NFC_Driver) .(.Titan ARC Corp. - Network Flow Control SDK WFP Driver (WPP).) - LEGACY_NFC_DRIVER
~ Legacy: 98 Legitimates Filtered in 00mn 00s



---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Comodo - Chromodo.) -- C:\Program Files (x86)\Comodo\Chromodo\chromodo.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s



---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com
~ Keys: Scanned in 00mn 00s



---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.9AAFED2C7C1977DAB1619D62BEEB3A0E] [SPRF][01/12/2015] (...) -- C:\Users\Loulou\Desktop\Framework.dll [718848]
[MD5.EE3CF359239B41364F29947B1A980B62] [SPRF][26/11/2015] (...) -- C:\Users\Loulou\Desktop\Keygen.exe [97280]
[MD5.914328D9D8C5BCCEE11A66E8281B8C16] [SPRF][26/11/2015] (.Akeo Consulting (http://akeo.ie) - Rufus.) -- C:\Users\Loulou\Desktop\rufus-2.5.exe [863144]
~ Files: 4 Legitimates Filtered in 00mn 00s



---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 26/11/2015 269000 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 25/11/2015 2265792 | (cmdvirth) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
SS - | Demand 26/11/2015 279144 | (cphs) . (.Intel Corporation.) - C:\Windows\SysWow64\IntelCpHeciSvc.exe
SS - | Auto 04/12/2015 144200 | (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Demand 04/12/2015 144200 | (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
SS - | Auto 26/11/2015 2934048 | (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
SS - | Demand 27/11/2015 1738200 | (SDScannerService) . (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
SS - | Demand 27/11/2015 2081752 | (SDUpdateService) . (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
SS - | Demand 27/11/2015 171928 | (SDWSCService) . (.Safer-Networking Ltd..) - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
SS - | Auto 03/12/2015 579904 | (WiseBootAssistant) . (.WiseCleaner.com.) - C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe
SS - | Demand 22/07/1658 0 | (WMPNetworkSvc) . (...) - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe =>.Microsoft Corporation
SR - | Auto 04/12/2015 82128 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 25/11/2015 827680 | (AdvancedSystemCareService9) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
SR - | Auto 28/01/2014 936728 | (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
SR - | Auto 28/01/2014 954648 | (asHmComSvc) . (.ASUSTeK Computer Inc..) - C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
SR - | Auto 24/04/2014 1360016 | (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
SR - | Auto 24/04/2014 382776 | (AsusFanControlService) . (.ASUSTeK Computer Inc..) - C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.01\AsusFanControlService.exe
SR - | Auto 02/12/2015 334648 | (AsusGameFirstService) . (.ASUSTeK.) - C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe
SR - | Auto 25/11/2015 1984696 | (ChromodoUpdater) . (.Comodo.) - C:\Program Files (x86)\Comodo\Chromodo\chromodo_updater.exe
SR - | Auto 25/11/2015 5542472 | (CmdAgent) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
SR - | Auto 25/11/2015 36904 | (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
SR - | Auto 01/10/2014 1349576 | (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
SR - | Auto 26/11/2015 16232 | (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
SR - | Demand 24/11/2015 171632 | (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
SR - | Auto 26/11/2015 344168 | (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe
SR - | Auto 26/11/2015 882464 | (IMFservice) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
SR - | Auto 25/11/2015 260360 | (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\system32\IProsetMonitor.exe
SR - | Auto 07/12/2015 3655416 | (OODefragAgent) . (.O&O Software GmbH.) - C:\Program Files\OO Software\Defrag\oodag.exe
SR - | Auto 25/11/2015 28848 | (SamsungRapidSvc) . (.Samsung Electronics Co., Ltd..) - C:\Windows\System32\RAPID\SamsungRapidSvc.exe
SR - | Auto 07/05/2013 770432 | (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC..) - C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe =>PUP.EnigmaSoftware
SR - | Auto 25/11/2014 27136 | C:\Program Files (x86)\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Demand 03/12/2015 14800 | (WiseHDInfo) . (.wisecleaner.com.) - C:\Windows\WiseHDInfo64.dll
SR - | Auto 25/11/2014 27136 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
~ Services: Scanned in 00mn 03s



---\\ Scan Additionnel (O88)
Database Version : 13008 - (23/03/2015)
Clés trouvées (Keys found) : 2
Valeurs trouvées (Values found) : 3
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 3

[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1] =>PUA.KMSpico^
[HKLM\SYSTEM\CurrentControlSet\Services\SpyHunter 4 Service] =>Crapware.SpyHunter
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:qBittorrent =>P2P.BitTorrent^
C:\Users\Loulou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpyHunter =>Crapware.SpyHunter^
C:\Program Files (x86)\qBittorrent\qbittorrent.exe =>P2P.BitTorrent^
C:\Program Files (x86)\Enigma Software Group\SpyHunter\SH4Service.exe =>PUP.EnigmaSoftware^
C:\Users\Loulou\Desktop\SpyHunter.lnk =>Crapware.SpyHunter
~ Additionnel Scan: 220422 Items scanned in 00mn 11s



---\\ Informations complémentaires sur les modules
~ http://nicolascoolman.fr/r5-internet-explorer-proxy-management-iepm/ =>.Internet Explorer, Proxy Management (R5)
~ http://nicolascoolman.fr/o2-browser-helper-objects-de-navigateur/ =>.Browser Helper Objects de navigateur (O2)
~ http://nicolascoolman.fr/o4-applications-demarrees-par-le-registre/ =>.Applications lancées au démarrage du système (O4)
~ http://nicolascoolman.fr/o51-mountpoints2-shell-key-mpsk/ =>.Clé de registre Shell MountPoints2 (MPSK) (O51)
~ AMI: 4 Legitimates Filtered in 00mn 00s



---\\ Récapitulatif des détections trouvées sur votre station
http://www.nicolascoolman.fr/blog/ =>PUP.EnigmaSoftware
http://nicolascoolman.fr/pup-kmspico =>PUA.KMSpico
http://nicolascoolman.fr/crapware-spyhunter =>Crapware.SpyHunter
~ MSI: 3 link(s) detected in 00mn 00s



~ 1385 Legitimates filtered by white list
End of the scan (578 lines in 00mn 42s)(0.8)

Publicité


Signaler le contenu de ce document

Publicité