cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.1.27.21 Par Nicolas Coolman (2016/01/27)
~ Démarré par toto (Administrator) (2016/01/28 19:37:54)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\toto\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\toto\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586)

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v47.0.2526.111
MSIE: Internet Explorer v11.63.10586.0

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 8HVX7
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 1s
Microsoft Security Client v4.8.0204.0
Windows Defender (Activate)

---\\ Surveillance de Logiciels (2) - 2s
Adobe Flash Player 20 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Logiciels de partage P2P (1) - 2s
eMule

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4193.524 MB (55% free)
System Restore: Activé (Enable)
System drive C: has 68 GB () free of 462 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: TOTO-HP
~ User Name: toto
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 68 GB free of 462 GB (System)
~ Drive D: has 1 GB free of 13 GB

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoClose: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 1s
[MD5.4572EB3DDBD2DFA10DE7A037A6CC6D53] - 30/10/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4502864] =>.Microsoft Windows®
[MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation
[MD5.CAD491DD9EC00BB841EA407D9C498C4A] - 30/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [290856] =>.Microsoft Windows Publisher®
[MD5.AB4C1A9F37C0B8467AC923ED4AD727D6] - 12/12/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2647552] =>.Microsoft Corporation
[MD5.7B24B823404D53DA4748F21AD2BF04C9] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [584704] =>.Microsoft Corporation
[MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation
[MD5.E7B524818100B0FDE2B057C74B0C0DCD] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [686984] =>.Microsoft Windows®
[MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535088] =>.Microsoft Windows®
[MD5.CE50037751671682D1FDBBE7C9B37F4A] - 30/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.70148EFA9A562E7185B75BBE7D376BF7] - 12/12/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows®
[MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
[MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation
[MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] =>.Microsoft Corporation
[MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] =>.Microsoft Corporation
[MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] =>.Microsoft Corporation
[MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation
[MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation
[MD5.61F9F27A8C3D7BCD287FE98A440421CE] - 30/10/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows®
[MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279552] =>.Microsoft Corporation
[MD5.EFEFC245B884B1BE0401931398DCD707] - 12/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152800] =>.Microsoft Windows®
[MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation
[MD5.381B8F2311A0375676B635EA5E7C8AB0] - 30/10/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation
[MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 30/10/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] =>.Microsoft Corporation
[MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 12/12/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows®
[MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (11) - 5s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - C:\Windows\System32\escsvc64.exe =>.SEIKO EPSON Corporation®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company®
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - LightScribe Service.) - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.9.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: PDF Document Manager (pdfcDispatcher) . (.PDF Complete Inc - Dispatcher.) - C:\Program Files (x86)\PDF Complete\pdfsvc.exe =>.PDF Complete®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (18) - 18s

SR - Auto [13/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [20/01/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [07/10/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Auto [17/05/2012] [ 144560] Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\Windows\System32\escsvc64.exe =>.Seiko Epson Corporation
SS - Demand [29/10/2015] [ 777744] Garmin Device Interaction Service (Garmin Device Interaction Service) . (.Garmin Ltd. or its subsidiaries.) - C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe =>.Garmin International, Inc.®
SS - Auto [19/06/2015] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [19/06/2015] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [24/01/2015] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SR - Demand [28/04/2015] [ 1102472] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company®
SR - Auto [28/09/2015] [ 25800] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company®
SS - Demand [09/12/2015] [ 644880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [19/05/2010] [ 73728] LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company.) - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe =>.Hewlett-Packard Company
SR - Auto [13/10/2015] [ 933168] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation
SR - Auto [15/10/2009] [ 635416] PDF Document Manager (pdfcDispatcher) . (.PDF Complete Inc.) - C:\Program Files (x86)\PDF Complete\pdfsvc.exe =>.PDF Complete®
SS - Auto [11/12/2014] [ 315496] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [13/10/2015] [ 416432] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe =>.NVIDIA Corporation®

---\\ Tâches planifiées en automatique (24) - 5s
[MD5.4EAF6F8F0B3BE33A0E3877EB7FFD48D4] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656] =>.Adobe Systems, Incorporated®
[MD5.295A5BFCE8D225D014DB4E6E69336279] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated®
[MD5.00000000000000000000000000000000] [APT] [CreateChoiceProcessTask] (...) -- C:\Windows\System32\browserchoice.exe (.not file.) [0]
[MD5.26502493132A7924466D091C540584F0] [APT] [EPSON XP-235 Series Update {AA4862B4-E166-4307-927D-9B8C5F179F10}] (.SEIKO EPSON CORPORATION.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSPFE.EXE [690536] =>.SEIKO EPSON CORPORATION®
[MD5.26502493132A7924466D091C540584F0] [APT] [EPSON XP-235 Series Update {F445AD92-ED96-4460-8A13-82D70167428B}] (.SEIKO EPSON CORPORATION.) -- C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSPFE.EXE [690536] =>.SEIKO EPSON CORPORATION®
[MD5.690FF806F9DF3F28270CE057D1170DD3] [APT] [GarminUpdaterTask] (.Copyright © 2015.) -- C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [25512] =>.Garmin International, Inc.®
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc®
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc®
[MD5.3DA2B70325A5947E981387DB9A9BD843] [APT] [HPCeeScheduleFortoto] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568] =>.Hewlett-Packard Company®
[MD5.00000000000000000000000000000000] [APT] [SidebarExecute] (...) -- C:\Program Files\Windows Sidebar\sidebar.exe (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{FF64FBC1-7C32-4E4E-852D-18C3F677D77F}] (...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) [0]
[MD5.BC41666FF68C364CD3EAA486E50C9270] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [563000] =>.Apple Inc.®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1088] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1092] =>.Google Inc.
O39 - APT: HPCeeScheduleFortoto - (.Hewlett-Packard.) -- C:\WINDOWS\Tasks\HPCeeScheduleFortoto.job [344] =>.Hewlett-Packard
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3972] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3976] =>.Adobe Systems Incorporated
O39 - APT: CreateChoiceProcessTask - (...) -- C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask [2538] (.Orphean.)
O39 - APT: GarminUpdaterTask - (.Copyright © 2015.) -- C:\WINDOWS\System32\Tasks\GarminUpdaterTask [2702]
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3380] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3604] =>.Google Inc.
O39 - APT: HPCeeScheduleFortoto - (.Hewlett-Packard.) -- C:\WINDOWS\System32\Tasks\HPCeeScheduleFortoto [3232] =>.Hewlett-Packard
O39 - APT: SidebarExecute - (...) -- C:\WINDOWS\System32\Tasks\SidebarExecute [2078] (.Orphean.)

---\\ Processus lancés (19) - 2s
[MD5.F3A837A403C0E92A7475913659DECF94] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.9.) -- C:\Windows\System32\nvvsvc.exe [933168] [PID.1052] =>.NVIDIA Corporation®
[MD5.7FFEE5D79695C7392DBF3EA1F18A1E67] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [416432] [PID.1060] =>.NVIDIA Corporation®
[MD5.4A9EEAB7073682B2ADC80A3F583CB150] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1201456] [PID.1292] =>.NVIDIA Corporation®
[MD5.F3A837A403C0E92A7475913659DECF94] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 341.9.) -- C:\Windows\System32\nvvsvc.exe [933168] [PID.1300] =>.NVIDIA Corporation®
[MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2112] =>.Apple Inc.®
[MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2128] =>.Adobe Systems, Incorporated®
[MD5.7550D101BF49FDB1F92666A233EE36C4] - (.Hewlett-Packard Company - LightScribe Service.) -- c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728] [PID.2148] =>.Hewlett-Packard Company
[MD5.D315FF43E23DF424ECEC2F6C930203E4] - (.Seiko Epson Corporation - Epson Scanner Service (64bit).) -- C:\Windows\System32\escsvc64.exe [144560] [PID.2244] =>.SEIKO EPSON Corporation®
[MD5.2D564BB1C4559A517B390A031955714D] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.2268] =>.Apple Inc.®
[MD5.BDF850D185B2344C7811B79E49050188] - (.PDF Complete Inc - Dispatcher.) -- C:\Program Files (x86)\PDF Complete\pdfsvc.exe [635416] [PID.2712] =>.PDF Complete®
[MD5.B78DC853DD751F53299C0AE7D4670ED0] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2446000] [PID.5144] =>.NVIDIA Corporation®
[MD5.7FDD42B0CC5A6A5A508B58402BE6B2E7] - (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1802424] [PID.5712] =>.NVIDIA Corporation®
[MD5.793D7221E5EC69EA615349A13B702B8C] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.4536] =>.Oracle America, Inc.®
[MD5.904CA475F6ADD4080B0EA5144D23FDF1] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.6948]
[MD5.CB5A8B34FA37AE53053F2D3DF05AC1E6] - (.Hewlett-Packard Company - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800] [PID.5248] =>.Hewlett-Packard Company®
[MD5.7B7DE6B3DC30F3246958F42C67A6F7BB] - (.Hewlett-Packard Company - HP Software Framework WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [1102472] [PID.3912] =>.Hewlett-Packard Company®
[MD5.3787A24B4F4CE8A8D053D95948D0DEF8] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [923184] [PID.3960] =>.Oracle America, Inc.®
[MD5.AD0F16DEF98337C3F11E69DCFDD9928E] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\toto\Desktop\ZHPDiag3.exe [2097152] [PID.2056] =>.Nicolas Coolman
[MD5.AB391D6DC2B80C46F218910AD5EACAF1] - (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe [495616] [PID.5264] =>.Greenshot

---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blmhfefnikfdajhebhlfdnhkhpecpffj] Mambo Weather
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 1s
P2 - EXT FILE: (...) -- C:\Users\toto\AppData\Roaming\Mozilla\Firefox\Profiles\ik7zq93g.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_286.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems Inc..) -- C:\Windows\system32\Adobe\Director\np32dsw.dll =>.Adobe Systems Inc.
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (21) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKEY_USERS\S-1-5-21-1662047707-3924305311-2755576146-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://google.com
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (15521)

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ Applications lancées au démarrage du système (29) - 3s
O4 - HKLM\..\Run: [hpsysdrv] . (.Hewlett-Packard - hpsysdrv.) -- c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe =>.Hewlett-Packard Company®
O4 - HKLM\..\Run: [SmartMenu] . (.Copyright (C) 2009 Hewlett-Packard Development Compan - SmartMenu.) -- C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe =>.Hewlett-Packard Company®
O4 - HKLM\..\Run: [Greenshot] . (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe =>.Greenshot
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Update Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [HPAdvisorDock] . (.Hewlett-Packard - HP Advisor Dock.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe =>.Hewlett-Packard Company®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [Gadwin PrintScreen] . (.Gadwin Systems, Inc - Gadwin PrintScreen.) -- C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe {00C69E961146A520E14B1F31C2738B4FED}
O4 - HKCU\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe =>.Garmin International, Inc.®
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_C5E28F56F8DCD461D2BE63C7E01A4C73] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.®
O4 - HKLM\..\Wow6432Node\Run: [PDF Complete] . (.PDF Complete Inc - Sentry for PDF.) -- C:\Program Files (x86)\PDF Complete\pdfsty.exe =>.PDF Complete®
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- c:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Company®
O4 - HKUS\.DEFAULT\..\Run: [SpybotPostWindows10UpgradeReInstall] . (.Safer-Networking Ltd. - Makes sure Spybot 2 is there on Windows 10..) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe =>.Safer-Networking Ltd.
O4 - HKUS\S-1-5-18\..\Run: [SpybotPostWindows10UpgradeReInstall] . (.Safer-Networking Ltd. - Makes sure Spybot 2 is there on Windows 10..) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe =>.Safer-Networking Ltd.
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [HPAdvisorDock] . (.Hewlett-Packard - HP Advisor Dock.) -- C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe =>.Hewlett-Packard Company®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [Gadwin PrintScreen] . (.Gadwin Systems, Inc - Gadwin PrintScreen.) -- C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe {00C69E961146A520E14B1F31C2738B4FED}
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [GarminExpressTrayApp] . (.Garmin Ltd. or its subsidiaries - Garmin Express Tray.) -- C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe =>.Garmin International, Inc.®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [GoogleChromeAutoLaunch_C5E28F56F8DCD461D2BE63C7E01A4C73] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.®
O4 - HKUS\S-1-5-21-1662047707-3924305311-2755576146-1000\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.®

---\\ Raccourcis Global Startup (59) - 7s
O4 - GS\Desktop [Administrateur]: Disque local (M) - Raccourci.lnk . (...) M:\
O4 - GS\Desktop [Administrateur]: Gadwin PrintScreen.lnk . (.Gadwin Systems, Inc - Gadwin PrintScreen.) C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe {00C69E961146A520E14B1F31C2738B4FED}
O4 - GS\Desktop [Administrateur]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company®
O4 - GS\Desktop [Administrateur]: Malwarebytes Anti-Malware.lnk . (...) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
O4 - GS\Desktop [Administrateur]: PeerBlock.lnk . (.PeerBlock, LLC - .) C:\Program Files (x86)\PeerBlock\peerblock.exe =>.PeerBlock, LLC
O4 - GS\Desktop [Administrateur]: Popcorn Time.lnk . (...) C:\Users\toto\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe
O4 - GS\Desktop [Administrateur]: Simpo PDF Creator Pro.lnk . (.Simpo Technologies - PDFCreator.) C:\Program Files (x86)\Simpo PDF Creator Pro\PDFCreator.exe
O4 - GS\Desktop [Administrateur]: toto - Raccourci.lnk . (...) C:\Users\toto
O4 - GS\Desktop [Administrateur]: Yannick - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\toto\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: EssentialPIM.lnk . (...) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: toto - Raccourci.lnk . (...) C:\Users\toto
O4 - GS\Desktop [Mcx1-TOTO-HP]: Disque local (M) - Raccourci.lnk . (...) M:\
O4 - GS\Desktop [Mcx1-TOTO-HP]: Gadwin PrintScreen.lnk . (.Gadwin Systems, Inc - Gadwin PrintScreen.) C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe {00C69E961146A520E14B1F31C2738B4FED}
O4 - GS\Desktop [Mcx1-TOTO-HP]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company®
O4 - GS\Desktop [Mcx1-TOTO-HP]: Malwarebytes Anti-Malware.lnk . (...) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
O4 - GS\Desktop [Mcx1-TOTO-HP]: PeerBlock.lnk . (.PeerBlock, LLC - .) C:\Program Files (x86)\PeerBlock\peerblock.exe =>.PeerBlock, LLC
O4 - GS\Desktop [Mcx1-TOTO-HP]: Popcorn Time.lnk . (...) C:\Users\toto\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe
O4 - GS\Desktop [Mcx1-TOTO-HP]: Simpo PDF Creator Pro.lnk . (.Simpo Technologies - PDFCreator.) C:\Program Files (x86)\Simpo PDF Creator Pro\PDFCreator.exe
O4 - GS\Desktop [Mcx1-TOTO-HP]: toto - Raccourci.lnk . (...) C:\Users\toto
O4 - GS\Desktop [Mcx1-TOTO-HP]: Yannick - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Mcx1-TOTO-HP]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\toto\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Mcx1-TOTO-HP]: EssentialPIM.lnk . (...) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe
O4 - GS\Quicklaunch [Mcx1-TOTO-HP]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Mcx1-TOTO-HP]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [Mcx1-TOTO-HP]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Mcx1-TOTO-HP]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Mcx1-TOTO-HP]: toto - Raccourci.lnk . (...) C:\Users\toto
O4 - GS\Desktop [toto]: Disque local (M) - Raccourci.lnk . (...) M:\
O4 - GS\Desktop [toto]: Gadwin PrintScreen.lnk . (.Gadwin Systems, Inc - Gadwin PrintScreen.) C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe {00C69E961146A520E14B1F31C2738B4FED}
O4 - GS\Desktop [toto]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company®
O4 - GS\Desktop [toto]: Malwarebytes Anti-Malware.lnk . (...) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
O4 - GS\Desktop [toto]: PeerBlock.lnk . (.PeerBlock, LLC - .) C:\Program Files (x86)\PeerBlock\peerblock.exe =>.PeerBlock, LLC
O4 - GS\Desktop [toto]: Popcorn Time.lnk . (...) C:\Users\toto\AppData\Local\Popcorn Time\node-webkit\Popcorn Time.exe
O4 - GS\Desktop [toto]: Simpo PDF Creator Pro.lnk . (.Simpo Technologies - PDFCreator.) C:\Program Files (x86)\Simpo PDF Creator Pro\PDFCreator.exe
O4 - GS\Desktop [toto]: toto - Raccourci.lnk . (...) C:\Users\toto
O4 - GS\Desktop [toto]: Yannick - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [toto]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\toto\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [toto]: EssentialPIM.lnk . (...) C:\Program Files (x86)\EssentialPIM\EssentialPIM.exe
O4 - GS\Quicklaunch [toto]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [toto]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [toto]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [toto]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [toto]: toto - Raccourci.lnk . (...) C:\Users\toto
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: EPSON Scan.lnk . (.SEIKO EPSON CORP. - EPSON Scan.) C:\Windows\twain_32\escndv\escndv.exe =>.SEIKO EPSON CORPORATION®
O4 - GS\CommonDesktop [Public]: Garmin Express.lnk . (.Garmin Ltd. or its subsidiaries - Garmin Express.) C:\Program Files (x86)\Garmin\Express\express.exe =>.Garmin International, Inc.®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: Magic Control.lnk . (.Easybits Software - Parental Control for Magic Desktop.) C:\Program Files (x86)\EasyBits For Kids\ezParentalControlMD.exe =>.EasyBits Software AS®
O4 - GS\CommonDesktop [Public]: Magic Desktop.lnk . (.EasyBits Software - Magic Desktop Launcher.) C:\Program Files (x86)\EasyBits For Kids\ezMDLauncher.exe =>.EasyBits Software AS®
O4 - GS\CommonDesktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe =>.Apple Inc.®
O4 - GS\CommonDesktop [Public]: Recuva.lnk . (.Piriform Ltd - Recuva.) C:\Program Files\Recuva\recuva64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{4e08bc3e-cc9c-4c78-94a0-c123a05d28e6}: DhcpNameServer = 172.20.10.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{e1a09c7d-81c3-44b8-8732-f81ed2c245a5}: DhcpNameServer = 192.168.0.254

---\\ Protocole additionnel (24) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

---\\ Enumère les données de BootExecute (1) - 0s
O34 - HKLM BootExecute: (sdnclean64.exe)

---\\ Logiciels installés (130) - 18s
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: Advanced ZIP Password Recovery (remove only) - (...) [HKLM][64Bits] -- Advanced ZIP Password Recovery
O42 - Logiciel: Agatha Christie - Death on the Nile - (.WildTangent.) [HKLM][64Bits] -- WT087420 =>.WildTangent Inc
O42 - Logiciel: ANT Drivers Installer x64 - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {D47EDA73-1251-4020-93E5-A7AF8B7D3FB5} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {C5815ACF-FD34-4553-8A22-C7411B7E662B} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {CBF12D2F-CF64-4CB7-858B-2C1F21068E5F} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {3540181E-340A-4E7A-B409-31663472B2F7} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} =>.Apple Inc.
O42 - Logiciel: Barbie(R) sauve les animaux - (...) [HKLM][64Bits] -- {DFF99740-4BC7-4C80-8BA7-0201D3B91779}
O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087428 =>.WildTangent Inc
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087453 =>.WildTangent Inc
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} =>.Microsoft Corporation
O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink®
O42 - Logiciel: CyberLink DVD Suite Deluxe - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink®
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT087536 =>.WildTangent Inc
O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {FB4BB287-37F9-4E27-9C4D-2D3882E08EFF} =>.CyberLink®
O42 - Logiciel: DVD Menu Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF} =>.CyberLink®
O42 - Logiciel: Elevated Installer - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {519CFDE8-7A41-4A5F-8A13-D3897EDAC23E} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: eMule - (...) [HKLM][64Bits] -- eMule
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner =>.SEIKO EPSON CORPORATION®
O42 - Logiciel: EPSON XP-235 Series Printer Uninstall - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON XP-235 Series =>.SEIKO EPSON CORPORATION®
O42 - Logiciel: EssentialPIM - (.Astonsoft Ltd.) [HKLM][64Bits] -- EssentialPIM =>.Astonsoft Ltd
O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WT087361 =>.WildTangent Inc
O42 - Logiciel: Gadwin PrintScreen - (.Gadwin Systems, Inc..) [HKLM][64Bits] -- Gadwin PrintScreen =>.Gadwin Systems, Inc.
O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {42E1A1AC-597A-4A11-B4B4-F47D5611A68B} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: Garmin Express - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {b292f4e5-60ca-4bb8-8810-e5f908c3c1ff} =>.Garmin International, Inc.®
O42 - Logiciel: Garmin Express Tray - (.Garmin Ltd or its subsidiaries.) [HKLM][64Bits] -- {BBD32E06-A24C-45F0-818E-6F51BF68D0BE} =>.Garmin Ltd or its subsidiaries
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {4286E640-B5FB-11DF-AC4B-005056C00008} =>.Google
O42 - Logiciel: Greenshot 1.1.9.13 - (.Greenshot.) [HKLM][64Bits] -- Greenshot_is1 =>.Greenshot
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company
O42 - Logiciel: HomePlayer 1.5.9e - (.HomePlayer.) [HKLM][64Bits] -- HomePlayer =>.HomePlayer
O42 - Logiciel: HP Advisor - (.Hewlett-Packard.) [HKLM][64Bits] -- {40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {C9EF1AAF-B542-41C8-A537-1142DA5D4AEC} =>.Hewlett-Packard
O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall =>.WildTangent Inc
O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- {DCCAD079-F92C-44DA-B258-624FC6517A5A} =>.CyberLink®
O42 - Logiciel: HP MediaSmart DVD - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A} =>.CyberLink®
O42 - Logiciel: HP MediaSmart Music - (.Hewlett-Packard.) [HKLM][64Bits] -- {91A34181-9FAD-43AB-A35F-E7A8945B7E1C} =>.CyberLink®
O42 - Logiciel: HP MediaSmart Music - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C} =>.CyberLink®
O42 - Logiciel: HP MediaSmart Photo - (.Hewlett-Packard.) [HKLM][64Bits] -- {6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF} =>.CyberLink®
O42 - Logiciel: HP MediaSmart Photo - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF} =>.CyberLink®
O42 - Logiciel: HP MediaSmart SmartMenu - (.Hewlett-Packard.) [HKLM][64Bits] -- {5B08AF35-B699-4A44-BB89-3E51E70611E8} =>.Hewlett-Packard
O42 - Logiciel: HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {D12E3E7F-1B13-4933-A915-16C7DD37A095} =>.CyberLink®
O42 - Logiciel: HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095} =>.CyberLink®
O42 - Logiciel: HP Odometer - (.Hewlett-Packard.) [HKLM][64Bits] -- {B8AC1A89-FFD1-4F97-8051-E505A160F562} =>.Hewlett-Packard
O42 - Logiciel: HP Setup - (.Hewlett-Packard.) [HKLM][64Bits] -- {72D90DB3-A16A-4545-B555-868471101833} =>.Hewlett-Packard
O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {79C54A05-F146-4EA0-8A70-D4EFE6181E52} =>.Hewlett-Packard Company
O42 - Logiciel: HP Support Information - (.Hewlett-Packard.) [HKLM][64Bits] -- {B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA} =>.Hewlett-Packard
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED5CE45D-842B-4C18-A002-87E16EA39BB3} =>.Hewlett-Packard Company
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {DE77FE3F-A33D-499A-87AD-5FC406617B40} =>.Hewlett-Packard
O42 - Logiciel: HP Vision Hardware Diagnostics - (.Hewlett-Packard.) [HKLM][64Bits] -- {D79A02E9-6713-4335-9668-AAC7474C0C0E} =>.Hewlett-Packard
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {4B48E22A-2FB0-4EFA-B99E-954B1E50CD69} =>.Apple Inc.
O42 - Logiciel: Insaniquarium Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087480 =>.WildTangent Inc
O42 - Logiciel: Internet TV pour Windows Media Center - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D318C86-AF4C-409F-A6AC-7183FF4CF424} =>.Microsoft Corporation
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {0D44E3A4-6C3D-45D7-B443-079509E5BE5D} =>.Apple Inc.
O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Jewel Quest II - (.WildTangent.) [HKLM][64Bits] -- WT087485 =>.WildTangent Inc
O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WT087490 =>.WildTangent Inc
O42 - Logiciel: John Deere Drive Green - (.WildTangent.) [HKLM][64Bits] -- WT087380 =>.WildTangent Inc
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink®
O42 - Logiciel: LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink®
O42 - Logiciel: Lightroom - (.Adobe.) [HKLM][64Bits] -- {D4134B0B-EA9B-4835-A77A-60BEE6277101} =>.Adobe
O42 - Logiciel: LightScribe System Software - (.LightScribe.) [HKLM][64Bits] -- {46BA053F-57B3-4153-BDB6-D37EEC8B12D7} =>.LightScribe
O42 - Logiciel: Logiciel d'archivage WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver
O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop =>.EasyBits Software AS®
O42 - Logiciel: Manuels EPSON - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {84CECC1B-21EF-41B1-9A91-3E724E5D99D3} =>.Seiko Epson Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM][64Bits] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {D9FCBAAE-DB72-488B-96D0-0AA3C892C0D6} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mises à jour NVIDIA 10.4.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- {3023EBDA-BF1B-4831-B347-E5018555F26E} =>.CyberLink®
O42 - Logiciel: Movie Theme Pack for HP MediaSmart Video - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E} =>.CyberLink®
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote 3D Vision 341.92 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.30.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 341.92 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: OpenOffice.org 3.3 - (.OpenOffice.org.) [HKLM][64Bits] -- {7E0610A2-E336-40B3-B685-C4905E97EC9A} =>.OpenOffice.org
O42 - Logiciel: Package de pilotes Windows - Dynastream Innovations, Inc. ANT LibUSB Driver - (.Dynastream Innovations, Inc..) [HKLM][64Bits] -- F9D2A789F9CFF8CEC36B544F53877C80F1F73C46 =>.Dynastream Innovations, Inc.
O42 - Logiciel: Package de pilotes Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB ( - (.Silicon Labs Software.) [HKLM][64Bits] -- D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2 =>.Silicon Labs Software
O42 - Logiciel: Panneau de configuration NVIDIA 341.92 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PDF Complete Special Edition - (.PDF Complete, Inc.) [HKLM][64Bits] -- PDF Complete =>.PDF Complete®
O42 - Logiciel: PeerBlock 1.2 (r693) - (.PeerBlock, LLC.) [HKLM][64Bits] -- {015C5B35-B678-451C-9AEE-821E8D69621C}_is1 =>.PeerBlock, LLC
O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT087394 =>.WildTangent Inc
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- {D36DD326-7280-11D8-97C8-000129760CBE} =>.CyberLink®
O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE} =>.CyberLink®
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 =>.Google Inc®
O42 - Logiciel: Plants vs. Zombies - (.WildTangent.) [HKLM][64Bits] -- WT087501 =>.WildTangent Inc
O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WT087396 =>.WildTangent Inc
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink®
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink®
O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1} =>.CyberLink®
O42 - Logiciel: PressReader - (. NewspaperDirect Inc..) [HKLM][64Bits] -- {912CED74-88D3-4C5B-ACB0-13231864975D}
O42 - Logiciel: PVSonyDll - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3D3E663D-4E7E-4577-A560-7ECDDD45548A} =>.NVIDIA Corporation
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {80CEEB1E-0A6C-45B9-A312-37A1D25FDEBC} =>.Apple Inc.
O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0} =>.Ralink
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Recovery Manager - (.CyberLink Corp..) [HKLM][64Bits] -- {44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5} =>.CyberLink®
O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Ltd®
O42 - Logiciel: SAMSUNG Mobile Modem Driver Set - (...) [HKLM][64Bits] -- SAMSUNG Mobile Modem
O42 - Logiciel: Samsung Mobile phone USB driver Drive Software - (...) [HKLM][64Bits] -- Samsung Mobile phone USB driver Drive
O42 - Logiciel: SAMSUNG Mobile USB Modem 1.0 Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem 1.0 =>.MCCI Corporation®
O42 - Logiciel: SAMSUNG Mobile USB Modem Software - (...) [HKLM][64Bits] -- SAMSUNG Mobile USB Modem =>.MCCI Corporation®
O42 - Logiciel: Samsung PC Studio 3 USB Driver Installer - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {EBA29752-DDD2-4B62-B2E3-9841F92A3E3A} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Simpo PDF Creator Pro 3.2.0.0 - (...) [HKLM][64Bits] -- Simpo PDF Creator Pro_is1
O42 - Logiciel: Skype™ 7.0 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A.
O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087510 =>.WildTangent Inc
O42 - Logiciel: Virtual Villagers - The Secret City - (.WildTangent.) [HKLM][64Bits] -- WT087513 =>.WildTangent Inc
O42 - Logiciel: VirtualDJ 8 - (.Atomix Productions.) [HKLM][64Bits] -- {9ADBBA93-4625-4898-BB0D-BCE7EA9F8B4A} =>.Atomix Productions
O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WT087519 =>.WildTangent Inc
O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087533 =>.WildTangent Inc

---\\ HKCU & HKLM Software Keys (125) - 18s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\ALWIL Software
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Bunndle
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\dck
HKLM\SOFTWARE\Wow6432Node\DivXNetworks
HKLM\SOFTWARE\Wow6432Node\EasyBits
HKLM\SOFTWARE\Wow6432Node\ej-technologies
HKLM\SOFTWARE\Wow6432Node\Elcom
HKLM\SOFTWARE\Wow6432Node\emme
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\Garmin
HKLM\SOFTWARE\Wow6432Node\GNU
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\InterVideo
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\LightScribe
HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\magnet
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Mattel Interactive
HKLM\SOFTWARE\Wow6432Node\MimarSinan
HKLM\SOFTWARE\Wow6432Node\mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NewspaperDirect
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenOffice.org
HKLM\SOFTWARE\Wow6432Node\PDFComplete
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Safer Networking Limited
HKLM\SOFTWARE\Wow6432Node\Samsung Electronics Co., Ltd.
HKLM\SOFTWARE\Wow6432Node\SecureDigitalServices
HKLM\SOFTWARE\Wow6432Node\Simpo PDF Creator Pro
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\VirtualDJ
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\Win32 Services
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo!
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\49040InstEnd
HKCU\SOFTWARE\ACE Compression Software
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Adobe Lightroom
HKCU\SOFTWARE\ALWIL Software
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\EasyBits
HKCU\SOFTWARE\ej-technologies
HKCU\SOFTWARE\Elcom
HKCU\SOFTWARE\eMule
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\EPSON Software Updater
HKCU\SOFTWARE\Gabest
HKCU\SOFTWARE\Gadwin Systems
HKCU\SOFTWARE\Garmin
HKCU\SOFTWARE\GNU
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\Haali
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HookNetwork
HKCU\SOFTWARE\i-FunBox.com
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\LAV
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LogMeIn
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Magic Desktop
HKCU\SOFTWARE\Modern UI Test
HKCU\SOFTWARE\mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OpenOffice.org
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PDFComplete
HKCU\SOFTWARE\PressReader
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Safer Networking Limited
HKCU\SOFTWARE\SEIKO EPSON CORPORATION
HKCU\SOFTWARE\Simpo PDF Creator Pro
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\SyncEngines
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\uJ3frMzA3KgKLzDgdBfCD1v
HKCU\SOFTWARE\UTNJYGD
HKCU\SOFTWARE\Uy4pzCtMbameo
HKCU\SOFTWARE\VideoLAN
HKCU\SOFTWARE\VirtualDJ
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Google
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\Against Intuition
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Macromedia

---\\ Contenu des dossiers Programmes (598) - 83s
O43 - CFD: 25/01/2016 - [0] D -- C:\Program Files (x86)\68cf729f-00ec-4a1a-b056-c07346fb065d =>PUP.Optional.CrossRider
O43 - CFD: 17/05/2015 - [0] D -- C:\Program Files (x86)\8478c685-44db-4654-a60d-ba9a7e146df5 =>PUP.Optional.CrossRider
O43 - CFD: 25/01/2016 - [0] D -- C:\Program Files (x86)\a1643612-f702-4dfa-9948-a631d0c1c11d =>PUP.Optional.CrossRider
O43 - CFD: 25/01/2016 - [] D -- C:\Program Files (x86)\Adobe
O43 - CFD: 25/01/2016 - [] AD -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.®
O43 - CFD: 08/10/2015 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.®
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 22/11/2010 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink®
O43 - CFD: 21/03/2014 - [] AD -- C:\Program Files (x86)\EasyBits For Kids =>.EasyBits Software AS®
O43 - CFD: 01/02/2012 - [] D -- C:\Program Files (x86)\EasyBits For Kids - Backup
O43 - CFD: 26/06/2015 - [] D -- C:\Program Files (x86)\ElcomSoft
O43 - CFD: 18/01/2015 - [] D -- C:\Program Files (x86)\eMule
O43 - CFD: 12/11/2015 - [] D -- C:\Program Files (x86)\epson =>.SEIKO EPSON CORPORATION®
O43 - CFD: 12/11/2015 - [] D -- C:\Program Files (x86)\EPSON Software =>.SEIKO EPSON CORPORATION®
O43 - CFD: 25/11/2013 - [] AD -- C:\Program Files (x86)\EssentialPIM
O43 - CFD: 01/03/2014 - [] D -- C:\Program Files (x86)\Gadwin Systems {00C69E961146A520E14B1F31C2738B4FED}
O43 - CFD: 06/11/2015 - [] AD -- C:\Program Files (x86)\Garmin =>.Garmin International, Inc.®
O43 - CFD: 19/06/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 25/01/2016 - [] AD -- C:\Program Files (x86)\Hewlett-Packard =>.CyberLink®
O43 - CFD: 28/02/2011 - [] D -- C:\Program Files (x86)\HomePlayer
O43 - CFD: 22/11/2010 - [] AD -- C:\Program Files (x86)\Hp =>.Hewlett-Packard Company®
O43 - CFD: 14/02/2012 - [] AD -- C:\Program Files (x86)\HP Games
O43 - CFD: 02/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.CyberLink®
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 18/12/2015 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 17/12/2011 - [] D -- C:\Program Files (x86)\Mattel Interactive
O43 - CFD: 16/10/2011 - [0] D -- C:\Program Files (x86)\Microsoft
O43 - CFD: 29/04/2011 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 13/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 20/02/2011 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 18/05/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 29/04/2011 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 22/02/2011 - [0] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 22/11/2010 - [] D -- C:\Program Files (x86)\NewspaperDirect =>.Newspaperdirect, Inc®
O43 - CFD: 29/11/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 20/02/2011 - [] RD -- C:\Program Files (x86)\Online Services =>.Skype Technologies SA®
O43 - CFD: 27/07/2011 - [] AD -- C:\Program Files (x86)\OpenOffice.org 3
O43 - CFD: 20/01/2015 - [0] D -- C:\Program Files (x86)\Opera
O43 - CFD: 19/01/2014 - [] D -- C:\Program Files (x86)\PC Tools
O43 - CFD: 22/11/2010 - [] AD -- C:\Program Files (x86)\PDF Complete =>.PDF Complete®
O43 - CFD: 27/08/2015 - [] AD -- C:\Program Files (x86)\QuickTime
O43 - CFD: 22/11/2010 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 25/04/2012 - [] D -- C:\Program Files (x86)\Samsung
O43 - CFD: 14/06/2015 - [] AD -- C:\Program Files (x86)\Simpo PDF Creator Pro
O43 - CFD: 16/04/2015 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 25/01/2016 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore
O43 - CFD: 28/01/2016 - [] AD -- C:\Program Files (x86)\Spybot - Search & Destroy 2
O43 - CFD: 22/11/2010 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 12/12/2015 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 28/07/2012 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\VirtualDJ =>.Atomix Productions Inc.®
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 25/04/2012 - [] AD -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 12/12/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 02/03/2011 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 28/01/2016 - [] AD -- C:\Program Files (x86)\ZHPDiag
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 12/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Lightroom 1.4
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced ZIP Password Recovery
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barbie(R)
O43 - CFD: 19/05/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\emme
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eReaders
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gadwin Systems
O43 - CFD: 12/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomePlayer
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 15/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
O43 - CFD: 18/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les manuels de l'utilisateur
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 12/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 12/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services
O43 - CFD: 12/12/2015 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3
O43 - CFD: 12/12/2015 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Help & Tools
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Complete
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
O43 - CFD: 12/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Simpo PDF Creator Pro
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 12/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 25/12/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 20/02/2011 - [] D -- C:\ProgramData\Alwil Software
O43 - CFD: 06/02/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 28/02/2011 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 12/12/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 28/09/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 04/03/2011 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 12/12/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 09/07/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 04/01/2014 - [] D -- C:\ProgramData\Easybits
O43 - CFD: 22/01/2014 - [] D -- C:\ProgramData\eMule
O43 - CFD: 12/11/2015 - [] D -- C:\ProgramData\Epson
O43 - CFD: 28/09/2015 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 01/08/2015 - [] D -- C:\ProgramData\Garmin
O43 - CFD: 19/05/2015 - [] D -- C:\ProgramData\Google
O43 - CFD: 05/12/2015 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 11/03/2012 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 11/10/2014 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 28/09/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 28/01/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 10/09/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 28/09/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 26/12/2013 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 22/11/2010 - [0] D -- C:\ProgramData\NewspaperDirect
O43 - CFD: 22/02/2011 - [] D -- C:\ProgramData\Norton
O43 - CFD: 22/11/2010 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 28/01/2016 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 30/11/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 19/01/2014 - [] D -- C:\ProgramData\PC Tools
O43 - CFD: 25/09/2015 - [] D -- C:\ProgramData\PDFC
O43 - CFD: 22/11/2010 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 16/04/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 27/04/2011 - [] D -- C:\ProgramData\Skype Extras
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 28/01/2016 - [] D -- C:\ProgramData\Spybot - Search & Destroy
O43 - CFD: 21/03/2015 - [] D -- C:\ProgramData\Sun
O43 - CFD: 20/01/2014 - [] AD -- C:\ProgramData\Temp
O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 14/10/2012 - [] D -- C:\ProgramData\VirtualizedApplications
O43 - CFD: 19/05/2015 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 22/01/2014 - [] D -- C:\ProgramData\{18165758-115C-4DC0-9EC2-FF89F725767F}
O43 - CFD: 22/08/2011 - [] DC -- C:\ProgramData\{3C0AACBF-B491-4BE5-BAF9-AA46E0629E42}
O43 - CFD: 28/02/2011 - [] D -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
O43 - CFD: 04/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 05/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 17/12/2011 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 30/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 22/11/2010 - [] AD -- C:\Program Files (x86)\Common Files\LightScribe
O43 - CFD: 22/11/2010 - [] AD -- C:\Program Files (x86)\Common Files\LS Getting Started
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 03/02/2012 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 16/04/2015 - [] AD -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 20/02/2011 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 14/06/2013 - [] D -- C:\Users\toto\AppData\Roaming\Adobe
O43 - CFD: 03/01/2015 - [] D -- C:\Users\toto\AppData\Roaming\Apple Computer
O43 - CFD: 10/05/2013 - [] D -- C:\Users\toto\AppData\Roaming\Azureus
O43 - CFD: 02/04/2013 - [] D -- C:\Users\toto\AppData\Roaming\CyberLink
O43 - CFD: 02/05/2015 - [] D -- C:\Users\toto\AppData\Roaming\dvdcss
O43 - CFD: 26/06/2015 - [] D -- C:\Users\toto\AppData\Roaming\Elephant Games
O43 - CFD: 05/01/2016 - [] D -- C:\Users\toto\AppData\Roaming\EPSON
O43 - CFD: 25/11/2013 - [] D -- C:\Users\toto\AppData\Roaming\EssentialPIM
O43 - CFD: 08/05/2015 - [] D -- C:\Users\toto\AppData\Roaming\GARMIN
O43 - CFD: 26/02/2011 - [] D -- C:\Users\toto\AppData\Roaming\Google
O43 - CFD: 25/03/2015 - [] D -- C:\Users\toto\AppData\Roaming\Greenshot
O43 - CFD: 01/03/2011 - [] D -- C:\Users\toto\AppData\Roaming\Hewlett-Packard
O43 - CFD: 21/01/2014 - [] D -- C:\Users\toto\AppData\Roaming\HP Support Assistant
O43 - CFD: 21/11/2012 - [] D -- C:\Users\toto\AppData\Roaming\hpqLog
O43 - CFD: 21/01/2014 - [] D -- C:\Users\toto\AppData\Roaming\HpUpdate
O43 - CFD: 22/01/2016 - [] D -- C:\Users\toto\AppData\Roaming\Identities
O43 - CFD: 31/08/2012 - [] D -- C:\Users\toto\AppData\Roaming\iFunbox_UserCache
O43 - CFD: 20/02/2011 - [] D -- C:\Users\toto\AppData\Roaming\Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\toto\AppData\Roaming\Media Center Programs
O43 - CFD: 10/05/2013 - [0] D -- C:\Users\toto\AppData\Roaming\Media Player Classic
O43 - CFD: 12/12/2015 - [] SD -- C:\Users\toto\AppData\Roaming\Microsoft
O43 - CFD: 17/02/2015 - [] D -- C:\Users\toto\AppData\Roaming\Mozilla
O43 - CFD: 14/02/2012 - [] D -- C:\Users\toto\AppData\Roaming\NewspaperDirect
O43 - CFD: 27/07/2011 - [] D -- C:\Users\toto\AppData\Roaming\OpenOffice.org
O43 - CFD: 19/01/2014 - [] D -- C:\Users\toto\AppData\Roaming\Product_FR
O43 - CFD: 08/07/2012 - [] D -- C:\Users\toto\AppData\Roaming\redsn0w
O43 - CFD: 28/09/2015 - [] D -- C:\Users\toto\AppData\Roaming\Skype
O43 - CFD: 27/04/2011 - [] D -- C:\Users\toto\AppData\Roaming\skypePM
O43 - CFD: 02/11/2014 - [] D -- C:\Users\toto\AppData\Roaming\SMIGames
O43 - CFD: 28/09/2015 - [] D -- C:\Users\toto\AppData\Roaming\SoftGrid Client
O43 - CFD: 30/10/2015 - [] D -- C:\Users\toto\AppData\Roaming\Sun
O43 - CFD: 14/10/2012 - [0] D -- C:\Users\toto\AppData\Roaming\TP
O43 - CFD: 28/01/2016 - [] D -- C:\Users\toto\AppData\Roaming\uTorrent
O43 - CFD: 27/01/2016 - [] D -- C:\Users\toto\AppData\Roaming\vlc
O43 - CFD: 22/02/2011 - [] D -- C:\Users\toto\AppData\Roaming\WinBatch
O43 - CFD: 18/03/2011 - [] D -- C:\Users\toto\AppData\Roaming\Windows Live Writer
O43 - CFD: 02/03/2011 - [] D -- C:\Users\toto\AppData\Roaming\WinRAR
O43 - CFD: 28/01/2016 - [] D -- C:\Users\toto\AppData\Roaming\ZHP
O43 - CFD: 01/11/2014 - [] D -- C:\Users\toto\AppData\Roaming\_MDLogs
O43 - CFD: 12/12/2015 - [0] D -- C:\Users\toto\AppData\Local\ActiveSync
O43 - CFD: 06/12/2015 - [] D -- C:\Users\toto\AppData\Local\Adobe
O43 - CFD: 26/10/2015 - [] D -- C:\Users\toto\AppData\Local\Apple
O43 - CFD: 13/11/2013 - [] D -- C:\Users\toto\AppData\Local\Apple Computer
O43 - CFD: 27/12/2015 - [] D -- C:\Users\toto\AppData\Local\Apple Inc
O43 - CFD: 12/12/2015 - [0] SHD -- C:\Users\toto\AppData\Local\Application Data
O43 - CFD: 19/06/2015 - [] D -- C:\Users\toto\AppData\Local\Apps
O43 - CFD: 06/12/2015 - [] D -- C:\Users\toto\AppData\Local\CEF
O43 - CFD: 03/10/2015 - [] D -- C:\Users\toto\AppData\Local\Comms
O43 - CFD: 16/05/2015 - [] D -- C:\Users\toto\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 21/03/2011 - [] D -- C:\Users\toto\AppData\Local\CyberLink
O43 - CFD: 04/11/2015 - [0] D -- C:\Users\toto\AppData\Local\Diagnostics
O43 - CFD: 19/12/2015 - [0] D -- C:\Users\toto\AppData\Local\ElevatedDiagnostics
O43 - CFD: 14/06/2015 - [0] SHD -- C:\Users\toto\AppData\Local\EmieBrowserModeList
O43 - CFD: 14/06/2015 - [0] SHD -- C:\Users\toto\AppData\Local\EmieSiteList
O43 - CFD: 14/06/2015 - [0] SHD -- C:\Users\toto\AppData\Local\EmieUserList
O43 - CFD: 20/01/2014 - [] D -- C:\Users\toto\AppData\Local\eMule
O43 - CFD: 15/08/2013 - [] D -- C:\Users\toto\AppData\Local\Garmin
O43 - CFD: 08/05/2015 - [] D -- C:\Users\toto\AppData\Local\Garmin_Ltd._or_its_subsid
O43 - CFD: 16/09/2015 - [] D -- C:\Users\toto\AppData\Local\Google
O43 - CFD: 12/09/2015 - [] D -- C:\Users\toto\AppData\Local\Greenshot
O43 - CFD: 06/06/2015 - [] D -- C:\Users\toto\AppData\Local\GWX
O43 - CFD: 14/12/2015 - [] D -- C:\Users\toto\AppData\Local\Hewlett-Packard
O43 - CFD: 12/12/2015 - [0] SHD -- C:\Users\toto\AppData\Local\Historique
O43 - CFD: 06/06/2011 - [0] D -- C:\Users\toto\AppData\Local\HP MediaSmart Video
O43 - CFD: 27/01/2016 - [0] D -- C:\Users\toto\AppData\Local\Installer =>PUP.Optional.InstallPedia
O43 - CFD: 07/07/2012 - [] D -- C:\Users\toto\AppData\Local\libimobiledevice
O43 - CFD: 11/03/2012 - [] D -- C:\Users\toto\AppData\Local\LogMeIn
O43 - CFD: 27/12/2013 - [] D -- C:\Users\toto\AppData\Local\Macromedia
O43 - CFD: 12/12/2015 - [] D -- C:\Users\toto\AppData\Local\Microsoft
O43 - CFD: 15/11/2013 - [] D -- C:\Users\toto\AppData\Local\Microsoft Games
O43 - CFD: 28/09/2015 - [] D -- C:\Users\toto\AppData\Local\MicrosoftEdge
O43 - CFD: 26/12/2013 - [] D -- C:\Users\toto\AppData\Local\Mozilla
O43 - CFD: 28/09/2015 - [0] D -- C:\Users\toto\AppData\Local\NetworkTiles
O43 - CFD: 30/11/2015 - [] D -- C:\Users\toto\AppData\Local\NVIDIA
O43 - CFD: 12/12/2015 - [] D -- C:\Users\toto\AppData\Local\Packages
O43 - CFD: 26/10/2015 - [0] D -- C:\Users\toto\AppData\Local\pangu
O43 - CFD: 02/06/2015 - [0] D -- C:\Users\toto\AppData\Local\PDFC
O43 - CFD: 19/09/2014 - [] D -- C:\Users\toto\AppData\Local\Popcorn Time
O43 - CFD: 19/09/2014 - [] D -- C:\Users\toto\AppData\Local\Popcorn-Time
O43 - CFD: 21/03/2011 - [] D -- C:\Users\toto\AppData\Local\PowerCinema
O43 - CFD: 14/04/2014 - [] D -- C:\Users\toto\AppData\Local\Programs
O43 - CFD: 28/09/2015 - [] D -- C:\Users\toto\AppData\Local\Publishers
O43 - CFD: 11/01/2014 - [] D -- C:\Users\toto\AppData\Local\Rainbow
O43 - CFD: 16/04/2015 - [] D -- C:\Users\toto\AppData\Local\Skype
O43 - CFD: 14/10/2012 - [] D -- C:\Users\toto\AppData\Local\SoftGrid Client
O43 - CFD: 16/05/2015 - [] D -- C:\Users\toto\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 28/01/2016 - [] D -- C:\Users\toto\AppData\Local\Temp
O43 - CFD: 12/12/2015 - [0] SHD -- C:\Users\toto\AppData\Local\Temporary Internet Files
O43 - CFD: 28/09/2015 - [] D -- C:\Users\toto\AppData\Local\TileDataLayer
O43 - CFD: 12/09/2012 - [] D -- C:\Users\toto\AppData\Local\VirtualStore
O43 - CFD: 19/12/2015 - [] D -- C:\Users\toto\AppData\Local\Windows Live
O43 - CFD: 01/03/2011 - [] D -- C:\Users\toto\AppData\Local\Windows Live Writer
O43 - CFD: 15/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{000C23CE-D40F-4DAB-A658-E9C13A23C7A8} =>.Empty
O43 - CFD: 30/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{00226212-9CE8-4B4F-A50B-55B46F805E0F} =>.Empty
O43 - CFD: 07/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{010C685F-30C2-4DE8-BFEC-C7B2B110D871} =>.Empty
O43 - CFD: 26/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{01A039FC-E352-4B2D-B795-57F5D94B3196} =>.Empty
O43 - CFD: 06/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{041A463A-F3C1-4B90-B99C-834C90F4A3E3} =>.Empty
O43 - CFD: 02/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{041F0197-9D5F-41B5-806F-EF000CE583A4} =>.Empty
O43 - CFD: 14/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{0651CA21-B56D-4DA6-8CC9-37941830AA46} =>.Empty
O43 - CFD: 03/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{079019DB-77EC-4F78-A895-23C5869B62E5} =>.Empty
O43 - CFD: 16/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{07AB6858-5C70-4895-9113-B3B3F84D5278} =>.Empty
O43 - CFD: 14/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{07E0E2B0-009E-48C7-A567-8B4769C7493D} =>.Empty
O43 - CFD: 28/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{08BC7B70-AB92-43AB-A1DB-082C750D27EA} =>.Empty
O43 - CFD: 20/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{09021C39-4CE7-4B6E-8F8C-19FB459B8A41} =>.Empty
O43 - CFD: 03/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{09179F4E-C7FB-4221-91A5-EDE926CBDD90} =>.Empty
O43 - CFD: 27/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{0A01F1A2-0742-446F-9FDE-8FC6E7B8B4D9} =>.Empty
O43 - CFD: 03/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{0A2193FB-B6C1-4201-AF2D-F70EC84FEEAC} =>.Empty
O43 - CFD: 21/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{0B210F4C-648C-4392-9A05-E9D6A91C7318} =>.Empty
O43 - CFD: 21/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{0C0FEE15-7F09-4832-8119-7094F92C779D} =>.Empty
O43 - CFD: 26/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{0F56DF06-2B1B-4F13-9D02-54C3B230174A} =>.Empty
O43 - CFD: 29/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{0F8801E7-9CE1-4103-906B-86C2F63F111D} =>.Empty
O43 - CFD: 04/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{100A319E-70B9-4A72-B176-07F74219F3D9} =>.Empty
O43 - CFD: 14/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{1012C039-30E6-42E9-812D-510681A893AE} =>.Empty
O43 - CFD: 31/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{10362E19-E0CD-4196-97D7-940AD49F0816} =>.Empty
O43 - CFD: 28/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{12742BBD-8C09-4A1F-8ACB-F1B09FDFE44F} =>.Empty
O43 - CFD: 29/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{12A5FDBC-4C38-43CA-B1EA-924B8F9265B0} =>.Empty
O43 - CFD: 04/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{12C89624-C134-4471-8379-0CCE9C78FCA9} =>.Empty
O43 - CFD: 07/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{12E48D18-892D-4D90-ADDB-BCA9BD82A475} =>.Empty
O43 - CFD: 03/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{13953C55-FE01-4F14-A467-FC37B9FB995D} =>.Empty
O43 - CFD: 03/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{13C6CDEE-A13D-46C7-B3F0-C1B88B67F79F} =>.Empty
O43 - CFD: 01/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{168E4366-1855-46B3-85EC-6118AC2442AF} =>.Empty
O43 - CFD: 22/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{16A782C8-A5DE-4430-AD21-661E71AF82D6} =>.Empty
O43 - CFD: 19/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{16F3AE83-7EA2-4443-88BC-12EF5EDB8EF6} =>.Empty
O43 - CFD: 18/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{1724ABC2-86AE-44B4-A390-3DFAAA37DB12} =>.Empty
O43 - CFD: 23/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{174A899C-346A-4235-B3C2-02FF088C2718} =>.Empty
O43 - CFD: 19/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{18C98FDB-3416-4A92-B38F-00E5B55D915C} =>.Empty
O43 - CFD: 19/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{19231CC1-15C0-40B3-BFEB-02CA37A9E8D2} =>.Empty
O43 - CFD: 27/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{194153CF-A599-43DA-9A65-48C6C82CCBE0} =>.Empty
O43 - CFD: 28/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{1A5BAB6A-6D20-4A95-8384-12798DB1663C} =>.Empty
O43 - CFD: 11/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{1ABA9F17-3487-4D48-8ACB-28A456A359E0} =>.Empty
O43 - CFD: 18/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{1B0704E5-A37A-4AF8-A50F-C23EBD2E5AC3} =>.Empty
O43 - CFD: 26/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{1B6711D5-2694-48A1-97A4-CACE6CE13184} =>.Empty
O43 - CFD: 20/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{1C96D449-877D-4638-87D1-4E9D1A465204} =>.Empty
O43 - CFD: 22/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{1CA5B3E2-959F-4854-9D2E-FB26F9420621} =>.Empty
O43 - CFD: 20/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{1D07EA11-1ED1-4664-95F1-DAD71FC88ECD} =>.Empty
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{1E7DF161-75A9-463F-AF9D-30512D58FEEE} =>.Empty
O43 - CFD: 07/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{1F963125-3E96-403D-84E2-F61A587198F7} =>.Empty
O43 - CFD: 20/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{202B0596-9620-4D52-BF3C-27619C30A4C3} =>.Empty
O43 - CFD: 25/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{22B50D21-910D-4C16-8206-A10E0356C6DC} =>.Empty
O43 - CFD: 09/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{24F14D5A-0E31-4117-96C8-30726E8F6A81} =>.Empty
O43 - CFD: 09/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{27B614F0-7983-47ED-8863-C85861ABBB2A} =>.Empty
O43 - CFD: 09/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{27E23520-F00F-437C-9256-79CFE06107C3} =>.Empty
O43 - CFD: 19/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{296A7FB7-94E5-49BD-919D-6D90DB0BAF7C} =>.Empty
O43 - CFD: 07/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{297D2163-4D00-4C97-875E-399FBA44501D} =>.Empty
O43 - CFD: 23/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{2B7EB93C-CE09-4A7B-BF43-685ED9D8C4CF} =>.Empty
O43 - CFD: 30/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{2C276B28-65EF-4A95-8780-D4BAC9EA151C} =>.Empty
O43 - CFD: 02/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{2CE724F0-7B8D-48DA-A7B1-CFD80F378BA3} =>.Empty
O43 - CFD: 22/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{2D414E76-D480-416C-A303-62040C16E0EB} =>.Empty
O43 - CFD: 05/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{2FFF68B2-F5AC-4E68-899D-C99871C78079} =>.Empty
O43 - CFD: 08/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{30D06554-E3BF-445C-87CD-11E5EBCDDE0E} =>.Empty
O43 - CFD: 23/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{31B24601-BB26-476F-94A9-6B98E7521586} =>.Empty
O43 - CFD: 14/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{31B8A4B8-8161-490F-8EB6-B0C8BF7CE9C2} =>.Empty
O43 - CFD: 24/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{31F5DA08-6E8F-4B87-9EDF-E1E1843DD14C} =>.Empty
O43 - CFD: 15/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{3247A6B0-C12D-4233-BFEF-6CEF1DBF8518} =>.Empty
O43 - CFD: 11/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{32DFCAD7-EED5-4F9E-982A-CF3A8055D34F} =>.Empty
O43 - CFD: 21/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{3394993B-7A67-47F6-977E-F02467ACE5A0} =>.Empty
O43 - CFD: 31/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{33B59F5F-9913-4075-B032-C1DD15BF70EE} =>.Empty
O43 - CFD: 09/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{34A2B88F-7775-4F36-A63A-6568AF2B2578} =>.Empty
O43 - CFD: 02/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{3586D4F5-BCD5-42A6-8054-B4C4A70EBA6B} =>.Empty
O43 - CFD: 03/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{3612C268-5A69-40FE-AB35-578FBA024305} =>.Empty
O43 - CFD: 09/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{361B255B-6469-41FD-BFD3-7E3396F0D21D} =>.Empty
O43 - CFD: 02/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{378BDB99-6452-4D9F-A758-84B8D5282F88} =>.Empty
O43 - CFD: 14/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{39492CF0-1A46-4677-9DA7-7970E66A4A12} =>.Empty
O43 - CFD: 03/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{3A534092-E862-41D0-B68E-888142F8D869} =>.Empty
O43 - CFD: 01/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{3A83720D-CD98-4EC4-9C0B-3F642C9AC5F6} =>.Empty
O43 - CFD: 12/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{3A973A3A-FA2D-4229-9BC8-710C1AE590DC} =>.Empty
O43 - CFD: 02/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{3B55999B-04A9-4789-AC14-BAC0B569A43A} =>.Empty
O43 - CFD: 15/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{3B623B3F-5734-48AB-A9D2-0620CAAE1426} =>.Empty
O43 - CFD: 03/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{3BE043AA-6C81-4F51-BF57-7BC35EEF5AD1} =>.Empty
O43 - CFD: 30/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{3CD4BBC3-F375-4A51-A998-C7869AFF53B3} =>.Empty
O43 - CFD: 12/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{3D04F01B-BEE9-42D7-81DB-FD33C1EFEA56} =>.Empty
O43 - CFD: 14/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{3DF81713-6001-47BF-933D-93CF762DB043} =>.Empty
O43 - CFD: 16/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{3EF76811-FA34-498B-B3A4-F7CEFDE30ED8} =>.Empty
O43 - CFD: 16/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{3FAAE11B-F580-403B-997C-4648F620547F} =>.Empty
O43 - CFD: 26/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{41813117-5B65-41A6-9D18-C6F4DB181724} =>.Empty
O43 - CFD: 09/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{4251109C-9B31-4B16-9634-7DA5F2EAA114} =>.Empty
O43 - CFD: 30/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{44BDA19B-86A7-4779-AAE5-9F3D9138EECC} =>.Empty
O43 - CFD: 03/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{450B3502-6090-4653-8188-A4C66271D116} =>.Empty
O43 - CFD: 06/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{45303D3D-4F60-4554-9F10-D90AA92E6F1E} =>.Empty
O43 - CFD: 10/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{457DA1FA-73B4-4823-9DC8-1AF4E155CE98} =>.Empty
O43 - CFD: 08/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{46816F0F-F760-4F1D-9878-BE2DFBE7CDD8} =>.Empty
O43 - CFD: 22/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{479D827C-AABE-408B-87C5-01043073ADDD} =>.Empty
O43 - CFD: 27/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{481CED67-F313-4440-88D8-74C03580A608} =>.Empty
O43 - CFD: 11/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{488064DD-EBB8-40E6-8E6D-AEB2A39FA39D} =>.Empty
O43 - CFD: 24/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{49006B40-1BA5-4D13-91C2-41281372D146} =>.Empty
O43 - CFD: 09/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{4AB5322E-77B8-4EB9-BA33-80CA49AF529F} =>.Empty
O43 - CFD: 27/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{4AD8B9DF-FE1B-495D-B7D6-5B79E290D828} =>.Empty
O43 - CFD: 04/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{4E86A3A9-776D-4D39-B662-3E221CF15F15} =>.Empty
O43 - CFD: 11/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{4F64AC89-1BA5-494F-A1B1-B265D82ED9B4} =>.Empty
O43 - CFD: 24/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{4F661BFA-ED18-45BE-80F8-68D862FF9262} =>.Empty
O43 - CFD: 20/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{4F87DB60-EA61-42A8-ABAE-13DB40DFA651} =>.Empty
O43 - CFD: 17/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{514291B1-AE26-407C-BB4E-5A72AADB7EC5} =>.Empty
O43 - CFD: 20/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{51EF60E3-51B7-4B62-B603-D3A124FE143D} =>.Empty
O43 - CFD: 27/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{51F559EB-AC33-46C5-844A-7B675581DAE8} =>.Empty
O43 - CFD: 18/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{5252544D-05CD-4D12-9D38-AF7E3495F2FD} =>.Empty
O43 - CFD: 26/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{52B406A3-8D14-49C1-8EDE-6222B40EC042} =>.Empty
O43 - CFD: 28/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{5694205F-0D2F-47E2-AA76-30423E27A430} =>.Empty
O43 - CFD: 10/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{56957F21-9DB7-49D4-8933-2438AE47750B} =>.Empty
O43 - CFD: 20/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{5804D387-611E-4CFB-9CC3-85D1E5D42FFC} =>.Empty
O43 - CFD: 31/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{582B2671-73AD-4F9C-9857-983538FDA9BA} =>.Empty
O43 - CFD: 09/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{587FCBC8-29D7-46AD-B43C-23C53FB2D292} =>.Empty
O43 - CFD: 04/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{59512337-1AA6-434D-A565-0CF5CF17040B} =>.Empty
O43 - CFD: 16/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{5994A4A3-DD16-43EB-A8EB-70A2614789A3} =>.Empty
O43 - CFD: 28/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{59BC17E7-86D4-467A-8161-86ADF95A6CE3} =>.Empty
O43 - CFD: 16/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{59F1AF80-4820-44BA-B47B-35C11C317312} =>.Empty
O43 - CFD: 03/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{5AB2B338-8FA7-4373-8FB5-C760CB217DC1} =>.Empty
O43 - CFD: 17/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{5C1F915D-3A81-4028-B9A3-9BAA564A892D} =>.Empty
O43 - CFD: 16/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{5C8693FF-26DC-4FC9-BA09-B9F774036D22} =>.Empty
O43 - CFD: 15/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{5CEC8A0B-51D9-4FB0-9A91-B9AEDD2C258F} =>.Empty
O43 - CFD: 29/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{5D16390C-E784-4432-B4EA-8F9D4C1DB2D2} =>.Empty
O43 - CFD: 15/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{5DBC2971-A2E8-448E-805E-BDBC06A0A455} =>.Empty
O43 - CFD: 03/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{5DCCEC9F-9B51-4A69-8A9E-4767BEC41E63} =>.Empty
O43 - CFD: 23/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{5E4A71B2-CEF9-4D36-AC30-90DE22DDF2D8} =>.Empty
O43 - CFD: 14/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{5F50C056-8FC5-4DD3-A78E-33E7AE6258B8} =>.Empty
O43 - CFD: 21/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{60B5890A-1A8E-4600-BACA-BA42FA03985E} =>.Empty
O43 - CFD: 04/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{615015CA-2991-43B0-89F8-3A1A766E959D} =>.Empty
O43 - CFD: 18/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{61D5EF9D-CDC2-42D9-8567-CE58B09AC45E} =>.Empty
O43 - CFD: 20/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{62428797-9E9B-461D-9921-1912780237C1} =>.Empty
O43 - CFD: 25/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{6284B86E-D049-4625-8051-76EAC5ED61B2} =>.Empty
O43 - CFD: 27/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{62988C5B-5837-48AB-8DED-1C61A579CE52} =>.Empty
O43 - CFD: 29/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{62FA4EF0-28D4-4A08-A851-3EC208C52077} =>.Empty
O43 - CFD: 19/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{6332CBFC-A936-45F1-BC23-E078732DC8DA} =>.Empty
O43 - CFD: 05/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{63D50BE9-309E-406C-A3DE-B428D957849F} =>.Empty
O43 - CFD: 30/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{64B8718D-316C-4DE2-B074-E68789EF01E4} =>.Empty
O43 - CFD: 02/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{665BBE8C-5E9A-4DCD-A3C1-C8C3359A5A86} =>.Empty
O43 - CFD: 30/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{671D098F-CBC9-4FCC-A6DE-3C4DFE64F14D} =>.Empty
O43 - CFD: 21/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{67244D53-5620-41FC-866E-04285ABAAEB1} =>.Empty
O43 - CFD: 11/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{672BD3C7-0032-481E-B819-C3D2A035BF55} =>.Empty
O43 - CFD: 05/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{6808AB5C-35CA-4DAA-8175-9D658F39AB99} =>.Empty
O43 - CFD: 18/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{69D1F75B-0124-439D-9C8A-88841AB05A42} =>.Empty
O43 - CFD: 12/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{6A64E8FD-B93F-419E-9C1E-AD7C4E1E43B8} =>.Empty
O43 - CFD: 26/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{6AB5DDDD-EEBA-4DE9-A9DC-2DB6E0C20798} =>.Empty
O43 - CFD: 27/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{6AE5F0B5-DB49-4002-B51E-F0EF4339C0BE} =>.Empty
O43 - CFD: 08/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{6B602EAD-3B03-46BD-BF66-BBF546C0B56A} =>.Empty
O43 - CFD: 28/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{6B97BA5D-D4A8-40E4-A8A7-7682BCF884D0} =>.Empty
O43 - CFD: 19/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{6C501B29-A144-4774-A07F-B2C805986345} =>.Empty
O43 - CFD: 18/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{6CAE6A41-37EA-430F-B91C-7F0C5F5BB744} =>.Empty
O43 - CFD: 12/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{6DCC98F0-6945-4D3B-A0C9-9023EB3CDC76} =>.Empty
O43 - CFD: 08/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{6E631439-926C-45E6-98BC-9BEE95DDDB0D} =>.Empty
O43 - CFD: 04/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{6F83401F-E978-49A2-9EF9-91787B1814FE} =>.Empty
O43 - CFD: 07/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{6FC8E690-B400-45C2-94B0-BEBBAA179E69} =>.Empty
O43 - CFD: 10/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{72CEAEC0-65A0-4377-995C-94DCF878213A} =>.Empty
O43 - CFD: 12/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{746E9331-0C34-44D4-9D50-7C7BDF1A9C53} =>.Empty
O43 - CFD: 04/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{75F9A3AE-7F95-4BA2-9798-16D2E60C63AF} =>.Empty
O43 - CFD: 12/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{760BE555-6E53-4CAE-9D52-C84D427ACD99} =>.Empty
O43 - CFD: 11/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{76D9B6CB-2B9E-464F-A1F8-C1C13C875C63} =>.Empty
O43 - CFD: 14/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{76DC5AB0-0B8C-49E9-B35E-37C9C33EDA20} =>.Empty
O43 - CFD: 15/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{76FFC2E1-BA7B-4D72-9712-6039F07A5CF4} =>.Empty
O43 - CFD: 01/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{775602F8-4E19-4FE1-8C81-DD3062C908C1} =>.Empty
O43 - CFD: 11/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{787FEE64-DEB1-4E85-846D-3A974A92D6D1} =>.Empty
O43 - CFD: 05/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{796A358F-2621-464E-B01B-92730B655007} =>.Empty
O43 - CFD: 16/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{7B8E24A0-979A-4789-8A23-21E08C6DC038} =>.Empty
O43 - CFD: 16/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{7C3E60C5-D099-4442-9255-345C250DFAB0} =>.Empty
O43 - CFD: 17/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{7D5D3184-2711-4162-9FFB-875C8CD19F4E} =>.Empty
O43 - CFD: 18/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{7F6871F7-162B-4016-8AD0-A9AC263315C5} =>.Empty
O43 - CFD: 13/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{80668E85-D935-4728-9CC4-A8D72B9A5A4A} =>.Empty
O43 - CFD: 21/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{80E8AB03-0B65-4FAB-AA9E-1CD756B34742} =>.Empty
O43 - CFD: 02/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{819D4496-8EC5-47A7-A496-B2333207E4E6} =>.Empty
O43 - CFD: 01/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{81A19734-BCFD-43DC-ACB0-F684F1333BB2} =>.Empty
O43 - CFD: 01/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{81A1BF7B-D90B-4BE0-886E-ECC3AA4C032C} =>.Empty
O43 - CFD: 26/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{81F7728E-192D-4C56-B5C8-477C529C5245} =>.Empty
O43 - CFD: 13/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{827BE6E0-D991-4CD2-8CBC-890E089E07FF} =>.Empty
O43 - CFD: 25/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{82E0C8C0-0202-4413-BBCD-0DBD81908F14} =>.Empty
O43 - CFD: 13/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{857A73A6-3DE2-4901-BA94-2CCABEC1A71E} =>.Empty
O43 - CFD: 17/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{85F967B5-A059-493E-8025-92559A7C2051} =>.Empty
O43 - CFD: 18/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{87A83500-AB92-41F8-B4E7-5A0D6D679D0E} =>.Empty
O43 - CFD: 16/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{8800358E-BE2B-407E-8B6D-338CAFF4F13C} =>.Empty
O43 - CFD: 30/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{8801315A-4B75-477B-8E1B-3FEA11293950} =>.Empty
O43 - CFD: 07/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{888D182F-E6FC-495E-B6BF-C2AE0C727271} =>.Empty
O43 - CFD: 09/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{8A373FBD-69B6-4E60-B93F-A1948ACB626A} =>.Empty
O43 - CFD: 01/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{8A548DB8-6B6F-4975-9E59-A6195D4D0492} =>.Empty
O43 - CFD: 30/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{8C25AEB0-19A0-4A3D-85F6-D73D0008358A} =>.Empty
O43 - CFD: 28/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{8F74CDA4-51CC-40AC-87E6-515BD156C886} =>.Empty
O43 - CFD: 25/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{907AA20C-7BAB-42B0-A0EF-76E0D086F537} =>.Empty
O43 - CFD: 19/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{92AE3579-C390-4B45-A021-99EFD6186783} =>.Empty
O43 - CFD: 31/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{9389C968-A874-4393-BA05-EF350E92D951} =>.Empty
O43 - CFD: 22/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{938D200A-F942-464B-950F-ADABB45793DD} =>.Empty
O43 - CFD: 29/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{93EE0C6E-8FA0-467C-A895-696D1748B2A1} =>.Empty
O43 - CFD: 18/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{94A9B8F6-3628-4E84-A330-70C7FE84B907} =>.Empty
O43 - CFD: 31/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{94E613C7-D48A-41E1-94F6-54FF21A80AAE} =>.Empty
O43 - CFD: 18/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{96493F9C-9B7B-4125-B8F6-BAB833642796} =>.Empty
O43 - CFD: 08/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{968F4FA4-8E73-4204-8335-0DD857904E4B} =>.Empty
O43 - CFD: 18/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{97411361-EA66-4AB4-808A-0E387F67F0DF} =>.Empty
O43 - CFD: 04/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{9772DF65-FA9E-4B90-A3D1-22B14B8E5B45} =>.Empty
O43 - CFD: 20/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{99869A72-9DEF-4B06-986E-03B8CCF6C511} =>.Empty
O43 - CFD: 15/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{9B38E183-F967-4342-82E5-29DEC0D2D1E1} =>.Empty
O43 - CFD: 22/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{9B51951A-DD8B-4F7D-AA0C-C32CCD04BF62} =>.Empty
O43 - CFD: 16/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{9B938E12-88A6-450B-8319-51B32D841AB8} =>.Empty
O43 - CFD: 19/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{9C0E4956-0A28-44A2-A18B-FDC5154BA238} =>.Empty
O43 - CFD: 28/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{9C73BD60-AE01-4B6D-8C03-482BDC7C4AC3} =>.Empty
O43 - CFD: 11/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{9D0294B1-1435-44E4-AD58-40085C621F9F} =>.Empty
O43 - CFD: 29/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{9D435A21-D18A-4550-8259-4EF1DDA7BB28} =>.Empty
O43 - CFD: 26/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{A1DE9784-9A2E-4393-8053-FD2F9801D3A0} =>.Empty
O43 - CFD: 18/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{A216E448-47CF-4D53-B00A-EA8695BEDA18} =>.Empty
O43 - CFD: 29/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{A2784DD8-E21F-4387-9D70-FCC2821BD82B} =>.Empty
O43 - CFD: 19/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{A38AF284-36F8-4D5E-BD95-804A4A1466A3} =>.Empty
O43 - CFD: 19/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{A39A9A69-6DB1-483D-8460-40BB3D437153} =>.Empty
O43 - CFD: 09/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{A3AA1B05-E432-4329-8AEB-18C55571CB5F} =>.Empty
O43 - CFD: 17/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{A3EBEE7B-E845-4708-A34F-E690730EAEA0} =>.Empty
O43 - CFD: 10/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{A45AB69E-D3B8-4355-A02F-A12355208BAB} =>.Empty
O43 - CFD: 12/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{A4994EAD-55DD-4D2D-B3EB-E51B1418DDB0} =>.Empty
O43 - CFD: 17/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{A75F1E55-A0B8-41FE-819C-CE8E66C41AFE} =>.Empty
O43 - CFD: 20/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{A767FD58-0B1B-405D-9DD0-6EEBF3F97E77} =>.Empty
O43 - CFD: 04/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{A780A326-A38B-434C-94E9-CAFD48C36779} =>.Empty
O43 - CFD: 21/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{A831C3D6-A062-451C-8366-B32870EF4DC0} =>.Empty
O43 - CFD: 25/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{A93C3E8A-7F74-4541-B104-16F784CF68D1} =>.Empty
O43 - CFD: 07/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{AA532DEA-83A8-4518-8679-6807B32A506B} =>.Empty
O43 - CFD: 26/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{AA5A33D2-0A60-4FCE-9D2A-ACAC61A7AB46} =>.Empty
O43 - CFD: 16/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{ACD3FE41-568E-4B8C-A4F2-3C46E948234F} =>.Empty
O43 - CFD: 17/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{ADC2CC54-656C-4794-BF00-E973B7BA4009} =>.Empty
O43 - CFD: 23/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{AEF8013B-0703-4C73-8F3F-068DDA55137A} =>.Empty
O43 - CFD: 17/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{AF9948D5-B9C8-4992-B346-2D66CA7F0E99} =>.Empty
O43 - CFD: 29/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{B064A657-60D4-4226-A94E-5E5B26B3F5CF} =>.Empty
O43 - CFD: 10/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{B0751405-552C-41ED-974C-E4011AA7E05A} =>.Empty
O43 - CFD: 22/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{B082857E-9186-4A38-B6CB-9ADFA13FED97} =>.Empty
O43 - CFD: 07/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{B1548118-C2E5-48DF-8B0F-07215D4D7B52} =>.Empty
O43 - CFD: 05/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{B2EEB3D7-A983-4551-9844-FA403B666679} =>.Empty
O43 - CFD: 11/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{B548FD6F-9B43-4AEE-8500-506BA1ABE890} =>.Empty
O43 - CFD: 17/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{B6302461-7E88-424A-8125-3ED80FDB6524} =>.Empty
O43 - CFD: 15/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{B6694835-384D-457D-B114-9561D9BA5716} =>.Empty
O43 - CFD: 03/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{B7EF3E0A-CD15-417E-9F34-5769BA261C8C} =>.Empty
O43 - CFD: 10/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{B9217486-8CCA-4B32-80E6-A3FB894E1A2A} =>.Empty
O43 - CFD: 04/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{BA055228-F25D-435A-BE55-DD2ADFEEC31A} =>.Empty
O43 - CFD: 04/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{BC2E22D5-AE0B-4C9D-BBBD-1D71C1D2509F} =>.Empty
O43 - CFD: 31/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{BD134041-E0CF-44CE-9208-C3A04208626F} =>.Empty
O43 - CFD: 03/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{BDA2E32B-10DA-4FAE-81C5-4CD8F63A732E} =>.Empty
O43 - CFD: 16/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{BE4D136E-907C-48D9-95D9-4CD90DAEE700} =>.Empty
O43 - CFD: 04/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{BE939C2D-9500-40CB-8A53-E0D40C45E3B9} =>.Empty
O43 - CFD: 15/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{BF6AB8F4-2CBC-418C-9031-08AF3F4CEDAE} =>.Empty
O43 - CFD: 11/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{BFB9B1A1-3181-47DE-A3C0-63089E4B0CEB} =>.Empty
O43 - CFD: 05/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{C0B7E857-4047-40BE-A5E1-1414307DE118} =>.Empty
O43 - CFD: 25/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{C119176E-7EE6-4742-998A-88446582E660} =>.Empty
O43 - CFD: 02/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{C219652C-BDC3-4262-B064-08D0F7BF64F2} =>.Empty
O43 - CFD: 01/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{C222A1D3-E042-4B03-899E-80EB6F17B428} =>.Empty
O43 - CFD: 15/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{C2609498-E8BB-4617-88CF-71F16DF312C8} =>.Empty
O43 - CFD: 18/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{C3CEA8E3-DA67-489B-9B27-F9768A713F09} =>.Empty
O43 - CFD: 15/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{C3E63DC4-6AA8-44BD-9A48-4FCF35DB4B6F} =>.Empty
O43 - CFD: 05/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{C5EEDFCA-D218-4F03-83A1-81FC6A667DB7} =>.Empty
O43 - CFD: 05/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{C6D08891-C8CA-4862-A5AE-760B92AA8BA3} =>.Empty
O43 - CFD: 27/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{C6D360AD-3F56-43D7-8A4B-4607525D572D} =>.Empty
O43 - CFD: 18/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{C819033E-1019-4A87-9F01-1F56DE3CE952} =>.Empty
O43 - CFD: 25/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{C9A6EF91-803F-4E5B-B96A-95CC0C0DF49A} =>.Empty
O43 - CFD: 21/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{C9BB7F6C-22B8-4772-8813-768BEDB985DB} =>.Empty
O43 - CFD: 20/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{CA5355D8-2EF6-49CD-B3A4-DD84B840DA03} =>.Empty
O43 - CFD: 02/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{CCBA1013-330D-4753-9610-59B28D4071F4} =>.Empty
O43 - CFD: 17/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{CCDF5F18-9176-47FA-99AF-15F349638348} =>.Empty
O43 - CFD: 16/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{CE082679-26C4-4AB6-A7B0-28E98582ADEA} =>.Empty
O43 - CFD: 10/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{CE4DFB5E-B344-4681-B42B-715047B4C008} =>.Empty
O43 - CFD: 19/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{CF10420C-987B-41C3-A534-6AFDF79283F4} =>.Empty
O43 - CFD: 28/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{CF639E92-14DB-4F25-AD55-EFE4E5206093} =>.Empty
O43 - CFD: 05/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{CF65A0DB-C244-464A-ACB7-00FC59365171} =>.Empty
O43 - CFD: 08/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{CFC0FAAF-2B4E-4376-BEE2-A34905E768B6} =>.Empty
O43 - CFD: 16/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{CFF0F77F-FF38-4848-A71A-ADDB2CAE11CC} =>.Empty
O43 - CFD: 13/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{D01DBA9E-BFD0-4A17-8766-7837A60978E0} =>.Empty
O43 - CFD: 15/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{D0CB8FCD-05E4-4663-8C1F-C7A601F90B2B} =>.Empty
O43 - CFD: 16/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{D0DF24FD-4FD2-4AC6-B87F-9D73C64DA262} =>.Empty
O43 - CFD: 08/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{D0DF520B-EF47-48B5-8523-2E3307BB23C3} =>.Empty
O43 - CFD: 07/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{D10454A0-63BF-42BA-ADC1-661B8A4F24F8} =>.Empty
O43 - CFD: 21/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{D38AA61B-EB8B-4815-92D9-F7E00C65D80A} =>.Empty
O43 - CFD: 22/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{D41D555D-AA96-4028-90C9-349F908744C1} =>.Empty
O43 - CFD: 04/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{D55A9136-50D7-4F5F-995F-09A60AFC3E56} =>.Empty
O43 - CFD: 20/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{D6419CE0-8D43-490F-AF44-22E34A4539BA} =>.Empty
O43 - CFD: 06/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{D6D241C8-2C02-4BCD-B525-62DF8A2E4F33} =>.Empty
O43 - CFD: 10/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{DA3A050E-6E4A-45D0-BD2E-003089A8A14F} =>.Empty
O43 - CFD: 09/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{DA4FC756-FECE-4E5C-8B65-1A1C04FAE236} =>.Empty
O43 - CFD: 20/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{DAB47A46-9689-4F99-A28B-C6C3F4CCF3D8} =>.Empty
O43 - CFD: 23/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{DB1F5971-3685-4560-8781-000C025EB783} =>.Empty
O43 - CFD: 21/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{DB5E8F0F-07CA-40FD-B418-45FA7C866A48} =>.Empty
O43 - CFD: 30/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{DD2DF3E4-FF20-4FDA-A708-1E432EA35644} =>.Empty
O43 - CFD: 02/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{DDB5C78E-4901-462D-B654-52E9447B780F} =>.Empty
O43 - CFD: 15/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{DEC828CE-CF58-4AE3-8D3A-B1B0C3B77C14} =>.Empty
O43 - CFD: 02/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{DFC7BD82-0446-42DB-9522-45ECB92CEF67} =>.Empty
O43 - CFD: 19/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{E1ED921F-1675-4AC9-B6FF-16C2052C884E} =>.Empty
O43 - CFD: 08/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{E2308B17-F23B-493A-BE71-AC342290D58D} =>.Empty
O43 - CFD: 13/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{E39C372F-E04F-4373-908E-9A20EDBF727F} =>.Empty
O43 - CFD: 20/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{E39CDF10-378E-402E-85A8-26C9077D9B3C} =>.Empty
O43 - CFD: 25/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{E3C6DDD9-BEB9-45A4-A782-6F008627A573} =>.Empty
O43 - CFD: 20/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{E60A7238-6064-4B8D-9CFC-B40B20354B92} =>.Empty
O43 - CFD: 29/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{E6EF56C8-B11A-4525-9B9D-2BB70C944CD7} =>.Empty
O43 - CFD: 23/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{E70783F2-17BE-4D5E-ACAA-EF423D0274D1} =>.Empty
O43 - CFD: 29/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{EAFF7291-C17D-4AE1-8D43-9ECED02910B8} =>.Empty
O43 - CFD: 22/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{EB0E3215-AAB2-4C59-A2E2-B7C8859F4A13} =>.Empty
O43 - CFD: 18/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{EC8A8C62-CB3D-4BB7-9FD9-46B147351D0E} =>.Empty
O43 - CFD: 10/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{EDD5A24D-560A-43EE-BA27-9F6DA18DA212} =>.Empty
O43 - CFD: 19/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{EE00AFD6-27AA-411F-8F8D-E76038E4AD64} =>.Empty
O43 - CFD: 08/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{EE619EBF-ED2C-49B0-B13E-D81BF453FA69} =>.Empty
O43 - CFD: 10/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{EE6DC6FF-72BB-46CE-93FA-FA08D7007E6D} =>.Empty
O43 - CFD: 27/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{EED8C004-47B1-4334-9642-136361456517} =>.Empty
O43 - CFD: 10/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{F2473DFF-A040-4509-8BA3-F58C2A6149E8} =>.Empty
O43 - CFD: 22/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{F3897C52-B342-4BCD-A19C-D9A60DA20CF7} =>.Empty
O43 - CFD: 10/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{F51042BD-F161-4A9A-BEF2-8D22964AA5AF} =>.Empty
O43 - CFD: 06/01/2016 - [0] D -- C:\Users\toto\AppData\Local\{F6A5A58E-D3A4-4F25-AA7F-8A73EE2EB007} =>.Empty
O43 - CFD: 10/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{F6DB3827-56F1-4F7A-9890-FF47BA40AACC} =>.Empty
O43 - CFD: 26/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{F7BB3C24-8C26-4CF4-A94D-74715B8CA6FB} =>.Empty
O43 - CFD: 04/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{F7C02AED-0CBC-49C2-B9C1-25851FE2A135} =>.Empty
O43 - CFD: 09/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{F811FFCB-9980-4701-9A89-19AFB6D39D12} =>.Empty
O43 - CFD: 26/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{F856AF7B-65EA-42C3-BCD8-911CBB968A47} =>.Empty
O43 - CFD: 13/12/2015 - [0] D -- C:\Users\toto\AppData\Local\{F8CBB17B-9314-4101-A289-9C2130BA01D9} =>.Empty
O43 - CFD: 08/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{F96B5C66-9B7E-437A-8CFF-05F190599C19} =>.Empty
O43 - CFD: 09/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{FAC480BB-EFF7-4728-9768-12A76C79DF67} =>.Empty
O43 - CFD: 08/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{FAC5C20C-A5A8-4FB1-B5FF-6EBCDA6F2186} =>.Empty
O43 - CFD: 17/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{FACC8A60-3A65-4A73-B491-FBEF2657C372} =>.Empty
O43 - CFD: 13/11/2015 - [0] D -- C:\Users\toto\AppData\Local\{FBCE148A-967A-42E0-9F2D-2014FEA5BFF1} =>.Empty
O43 - CFD: 21/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{FC1C0A53-A54A-4C19-896D-2A5E836BD73E} =>.Empty
O43 - CFD: 08/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{FC89E5E6-ADD1-4636-B8D4-9979F7669DF9} =>.Empty
O43 - CFD: 19/05/2015 - [0] D -- C:\Users\toto\AppData\Local\{FCE2D879-8F6D-4F76-BC56-5B7132737196} =>.Empty
O43 - CFD: 27/10/2015 - [0] D -- C:\Users\toto\AppData\Local\{FD836D17-31E2-4E8C-AD47-7A9E33132B6D} =>.Empty
O43 - CFD: 06/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{FE2EFD51-311B-4840-B124-AB75711DFB0F} =>.Empty
O43 - CFD: 30/08/2015 - [0] D -- C:\Users\toto\AppData\Local\{FECD2A77-7625-41BA-95F0-F21853BC43C7} =>.Empty
O43 - CFD: 08/07/2015 - [0] D -- C:\Users\toto\AppData\Local\{FEDC973D-AD97-4027-B3D0-EBA732DD4A43} =>.Empty
O43 - CFD: 02/06/2015 - [0] D -- C:\Users\toto\AppData\Local\{FEFD6F1D-6B9B-4BF9-B8DF-2346D17AB1E1} =>.Empty
O43 - CFD: 01/09/2015 - [0] D -- C:\Users\toto\AppData\Local\{FF07C816-F083-4E93-B462-53C5AF014DD7} =>.Empty
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 12/12/2015 - [] RD -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 28/01/2016 - [] RD -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 26/06/2015 - [0] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Advanced ZIP Password Recovery
O43 - CFD: 12/12/2015 - [] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gadwin Systems
O43 - CFD: 28/02/2011 - [0] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HomePlayer
O43 - CFD: 27/12/2015 - [] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud
O43 - CFD: 30/10/2015 - [] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 12/12/2015 - [] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Popcorn Time
O43 - CFD: 28/01/2016 - [] RD -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 12/12/2015 - [] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 12/12/2015 - [] D -- C:\Users\toto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\toto\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation®

---\\ Enumération des clés StartupReg (2) - 0s
O53 - SMSR:HKLM\...\startupreg\AnumanLive [Key] . (...) -- C:\Users\toto\AppData\Roaming\Anuman Interactive\AnumanLive\AnumanLive.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.

---\\ Liste des pilotes du système (54) - 10s
O58 - SDL:2015/10/30 08:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 08:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2008/04/01 13:23:34 A . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys [10488] =>.Sonic Solutions®
O58 - SDL:2008/04/01 13:23:34 A . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\WINDOWS\System32\drivers\cdralw2k.sys [10488] =>.Sonic Solutions®
O58 - SDL:2012/05/29 14:53:30 A . (.Windows (R) Codename Longhorn DDK provider - hpvhd 64bit support driver.) -- C:\WINDOWS\System32\drivers\cpqdfw.sys [27456] =>.Hewlett-Packard Company®
O58 - SDL:2010/04/27 18:43:50 A . (...) -- C:\WINDOWS\System32\drivers\cqcpu.sys [24376] =>.Hewlett-Packard Company®
O58 - SDL:2015/10/30 08:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows®
O58 - SDL:2012/08/21 12:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.®
O58 - SDL:2015/10/30 08:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] =>.Intel Corporation
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows®
O58 - SDL:2013/07/25 15:53:46 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl64.sys [23040] =>.Apple Inc.
O58 - SDL:2015/06/12 03:59:24 A . (.MediaTek Inc. - MediaTek 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2554528] =>.MEDIATEK INC.®
O58 - SDL:2015/11/29 18:19:48 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [206120] =>.NVIDIA Corporation®
O58 - SDL:2015/11/29 18:19:50 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [12907704] =>.NVIDIA Corporation®
O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows®
O58 - SDL:2008/04/01 13:23:34 A . (.Sonic Solutions - Px Engine Device Driver for 64-bit Windows.) -- C:\WINDOWS\System32\drivers\PxHlpa64.sys [52856] =>.Sonic Solutions®
O58 - SDL:2015/10/30 08:17:23 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [589824] =>.Realtek
O58 - SDL:2012/06/21 12:13:02 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4065296] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] =>.DEVGURU CO LTD®
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD®
O58 - SDL:2014/01/22 07:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\WINDOWS\System32\drivers\ssudserd.sys [206080] =>.DEVGURU CO LTD®
O58 - SDL:2015/10/30 08:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2015/06/10 22:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2015/10/30 08:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (39) - 81s
O61 - LFC: 2016/01/22 06:47:23 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2016-01-16_132511.006799BCMWLAN Core Power Alert\StateSnapshots\FirmwareEvent.bin [78]
O61 - LFC: 2016/01/22 06:47:23 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2016-01-16_132511.006799BCMWLAN Core Power Alert\StateSnapshots\SoC_RAM.bin [294912]
O61 - LFC: 2016/01/22 06:47:23 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2016-01-15_163454.162531BCMWLAN Join Timeout\StateSnapshots\SoC_RAM.bin [294912]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-27_130149.006752BCMWLAN Core Power Alert\StateSnapshots\FirmwareEvent.bin [78]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-27_130149.006752BCMWLAN Core Power Alert\StateSnapshots\SoC_RAM.bin [294912]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-26_233034.006697BCMWLAN Core Power Alert\StateSnapshots\FirmwareEvent.bin [78]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-26_233034.006697BCMWLAN Core Power Alert\StateSnapshots\SoC_RAM.bin [294912]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-18_160545.006902BCMWLAN Core Power Alert\StateSnapshots\FirmwareEvent.bin [78]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-18_160545.006902BCMWLAN Core Power Alert\StateSnapshots\SoC_RAM.bin [294912]
O61 - LFC: 2016/01/22 06:47:22 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-12-18_100536.073021BCMWLAN Cmdr Command Failed\StateSnapshots\CommandResponse.bin [28]
O61 - LFC: 2016/01/22 06:47:21 A . (..) -- C:\Users\toto\AppData\Roaming\Apple Computer\Logs\CrashReporter\MobileDevice\iphone a yannick\com.apple.driver.AppleBCMWLANCore\2015-11-08_202402.933200BCMWLAN Join Timeout\StateSnapshots\SoC_RAM.bin [294912]
O61 - LFC: 2016/01/24 09:51:57 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.ZuneMusic_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\c7ce2f077d8b557ee04e5c4ae3c66264_fce8394c8fd8a807_1ce21153f82571a8_1_0.bin [16384]
O61 - LFC: 2016/01/28 19:40:11 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2016/01/28 19:14:52 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\Contacts_01.040c.digest.bin [20028]
O61 - LFC: 2016/01/28 19:16:02 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\Contacts_02.040c.digest.bin [20028]
O61 - LFC: 2016/01/28 19:14:55 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicAlbum_01.040c.digest.bin [201164]
O61 - LFC: 2016/01/28 11:07:50 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicAlbum_02.040c.digest.bin [201164]
O61 - LFC: 2016/01/28 19:14:53 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicArtist_01.040c.digest.bin [78868]
O61 - LFC: 2016/01/28 11:07:47 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicArtist_02.040c.digest.bin [78868]
O61 - LFC: 2016/01/28 19:14:52 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicGenre_01.040c.digest.bin [6916]
O61 - LFC: 2016/01/28 11:07:45 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicGenre_02.040c.digest.bin [6916]
O61 - LFC: 2016/01/28 19:14:53 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicPlaylist_01.040c.digest.bin [18900]
O61 - LFC: 2016/01/28 11:07:46 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicPlaylist_02.040c.digest.bin [18900]
O61 - LFC: 2016/01/28 19:15:01 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicSong_01.040c.digest.bin [2146772]
O61 - LFC: 2016/01/28 11:07:59 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\MusicSong_02.040c.digest.bin [2146772]
O61 - LFC: 2016/01/27 23:08:11 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\PointsOfInterest2_01.040c.digest.bin [56]
O61 - LFC: 2016/01/28 11:08:03 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\PointsOfInterest2_02.040c.digest.bin [56]
O61 - LFC: 2016/01/27 23:08:10 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\PointsOfInterest_01.040c.digest.bin [56]
O61 - LFC: 2016/01/28 11:08:03 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\PointsOfInterest_02.040c.digest.bin [56]
O61 - LFC: 2016/01/28 19:17:44 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\VaStartMenu_01.040c.digest.bin [25260]
O61 - LFC: 2016/01/28 19:37:52 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\Grammars\VaStartMenu_02.040c.digest.bin [25260]
O61 - LFC: 2016/01/28 19:35:13 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\cache\proactive\proactive-cache.bin [196806]
O61 - LFC: 2016/01/28 19:41:32 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635895970329133957.bin [79012]
O61 - LFC: 2016/01/27 20:24:27 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\Temp\NVIDIA Corporation\NV_Cache\c7ce2f077d8b557ee04e5c4ae3c66264_fce8394c8fd8a807_abdb79e79164a64e_0_1.bin [1048576]
O61 - LFC: 2016/01/21 20:38:11 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\Temp\NVIDIA Corporation\NV_Cache\c7ce2f077d8b557ee04e5c4ae3c66264_fce8394c8fd8a807_abdb79e79164a64e_2_0.bin [16384]
O61 - LFC: 2016/01/27 20:20:02 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\Temp\NVIDIA Corporation\NV_Cache\c7ce2f077d8b557ee04e5c4ae3c66264_fce8394c8fd8a807_abdb79e79164a64e_3_0.bin [16384]
O61 - LFC: 2016/01/27 20:20:02 A . (..) -- C:\Users\toto\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\Temp\NVIDIA Corporation\NV_Cache\c7ce2f077d8b557ee04e5c4ae3c66264_fce8394c8fd8a807_abdb79e79164a64e_4_0.bin [16384]
O61 - LFC: 2016/01/26 03:31:44 A . (..) -- C:\Users\toto\AppData\Local\Packages\king.com.CandyCrushSaga_kgqvnymyfvs32\AC\Temp\NVIDIA Corporation\NV_Cache\d6ca7f6e7a44f3fb3c0b589848b09f49_fce8394c8fd8a807_7ee8af2d1add887_0_1.bin [1048576]
O61 - LFC: 2016/01/28 19:34:40 A . (..) -- C:\Users\toto\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (7) - 6s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {80c554b9-c7f8-4a21-9471-06d606da78a2} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {87FEF901-D157-4404-AC2E-2516CDE27D8A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {96481888-F0D2-4951-9097-393F5E0CE1ED} - (Wikipedia) - http://fr.wikipedia.org/
O69 - SBI: SearchScopes [HKLM] {9CF95B2E-638F-477A-8B98-8FE028ED100C} - (Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search

---\\ Enumère les services démarrés par Svchost (41) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1338368] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [957952] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [958464] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [94720] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [112640] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1012224] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [372736] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2057216] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [203776] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [696320] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [507904] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [457728] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2280448] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1144320] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [608768] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [360448] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [360960] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1130496] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948224] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (20) - 4s
O87 - FAEL: "{0296D348-9E8E-49B9-A459-194CA8C9C804}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe (.not file.)
O87 - FAEL: "TCP Query User{22B83596-D384-4F58-8DD4-3ED63AAC0160}C:\program files (x86)\emule\emule.exe" [In-None-P6-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\program files (x86)\emule\emule.exe
O87 - FAEL: "UDP Query User{1CCE02C5-7455-4CE0-BB49-EEAE07CA8D50}C:\program files (x86)\emule\emule.exe" [In-None-P17-TRUE] .(.http://www.emule-project.net - eMule.) -- C:\program files (x86)\emule\emule.exe
O87 - FAEL: "{2C72D385-008C-4E22-AFD6-94DF80E10A27}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\HomePlayer.exe
O87 - FAEL: "{CDB4CE33-CD66-4B5D-A5F7-9028DA8EE49A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\HomePlayer.exe
O87 - FAEL: "{D670D17F-6EA5-428D-AF5E-DA23A189A2A5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\VLC\vlc.exe
O87 - FAEL: "{EAD3D055-D0C8-4F24-A4DD-982618C003BB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\VLC\vlc.exe
O87 - FAEL: "{61414363-950A-4746-BDE5-96CAE92ADED5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\HomePlayer.exe
O87 - FAEL: "{374C304F-07B7-4526-989C-E978BBF87BEF}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\HomePlayer.exe
O87 - FAEL: "{588C2E28-ABD4-431D-84E6-58F4918D39A4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\VLC\vlc.exe
O87 - FAEL: "{51BAD54F-B26C-44E4-9064-F0B5B1C5137E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\HomePlayer\VLC\vlc.exe
O87 - FAEL: "{C1322204-E766-41B5-88EB-7F4175734C6F}" [In-None-P17-TRUE] .(...) -- C:\Windows\system32\ezSharedSvcHost.exe (.not file.)
O87 - FAEL: "{3F873880-4BC8-45AA-BE19-E4BCF45EA2D1}" [In-None-P6-TRUE] .(...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{F4E92FE1-130D-42F6-A9F3-19E111046AD1}" [In-None-P17-TRUE] .(...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "TCP Query User{510BB3C4-583D-4A9C-950D-2CA9A65C2EAD}C:\users\toto\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P6-TRUE] .(...) -- C:\users\toto\appdata\local\popcorn time\node-webkit\popcorn time.exe
O87 - FAEL: "UDP Query User{C228F38A-4767-4DB5-B86F-C3426169CD05}C:\users\toto\appdata\local\popcorn time\node-webkit\popcorn time.exe" [In-None-P17-TRUE] .(...) -- C:\users\toto\appdata\local\popcorn time\node-webkit\popcorn time.exe
O87 - FAEL: "{FBF01B69-D07C-4C22-AA36-8B5D12763923}" [In-None-P6-TRUE] .(...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{610A0506-6277-48BD-8F24-7F0C8C824109}" [In-None-P17-TRUE] .(...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{2CA113E4-BF06-4E7B-8D49-EDE7F6541A86}" [In-None-P6-TRUE] .(...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{EC11BE8D-6AD3-4DD9-B3EA-09B904900597}" [In-None-P17-TRUE] .(...) -- C:\Users\toto\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)

---\\ Scan Additionnel (7) - 0s
C:\Program Files (x86)\68cf729f-00ec-4a1a-b056-c07346fb065d =>PUP.Optional.CrossRider
C:\Program Files (x86)\8478c685-44db-4654-a60d-ba9a7e146df5 =>PUP.Optional.CrossRider
C:\Program Files (x86)\a1643612-f702-4dfa-9948-a631d0c1c11d =>PUP.Optional.CrossRider
C:\Program Files (x86)\Software =>PUP.Optional.Boxore
C:\Users\toto\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\Users\toto\AppData\Local\Installer =>PUP.Optional.InstallPedia
C:\Users\toto\AppData\Local\Software =>PUP.Optional.Boxore

---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s
http://www.nicolascoolman.fr/?p=180 =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=90 =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports
http://www.nicolascoolman.fr/?p=943 =>PUP.Optional.InstallPedia

~ End of the scan, 33671 items in 26h20mn44s (1386)(0)

Publicité


Signaler le contenu de ce document

Publicité