cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.3.28.76 Par Nicolas Coolman (2016/03/28)
~ Démarré par ADEBONNE (Administrator) (2016/03/29 13:06:07)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: d:\Users\ADEBONNE\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\ADEBONNE\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Enterprise, 64-bit Service Pack 1 (Build 7601)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 45.0.1 (x86 fr)
MSIE: Internet Explorer v8.0.7601.17514

---\\ Informations sur les produits Windows (9) - 1s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, VOLUME_MAK channel
Windows ID Activation : OK
~ Windows Partial Key : XQGV7
Windows License : OK
~ Windows Remaining Initializations Number : 2
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8289.716 MB (59% free)
System Restore: Activé (Enable)
System drive C: has 51 GB () free of 103 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BLPP-1576
~ User Name: ADEBONNE
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 51 GB free of 103 GB (System)
~ Drive D: has 147 GB free of 201 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (26) - 0s
[MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3231232] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.7FDF925B70507715598E1319601FCA6A] - 10/12/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1188864] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.CF1F6326AC44C42F4615D4BD53188AC5] - 07/01/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [105984] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.07F8F6B0CAEC7ADD30EBD94940A315D7] - 11/02/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation
[MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation
[MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (28) - 3s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Berger-Levrault AGENT (BL_AGENT) . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O23 - Service: Berger-Levrault SAM (BL_SAM) . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) . (.Cisco Systems, Inc. - Cisco Systems VPN Client.) - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc.
O23 - Service: DameWare Mini Remote Control (dwmrcs) . (.SolarWinds - DameWare products.) - C:\Windows\dwrcs\DWRCS.EXE {4D1AD4813484CD2C046846391B68FADB}
O23 - Service: GSL Share Memory (GslShmSrvc) . (.Gemalto - Classic Client SHM Service.) - C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe =>.Gemalto
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe =>.Nitro PDF Software®
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software®
O23 - Service: PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH - PDF Architect 3.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe =>.pdfforge GmbH®
O23 - Service: PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH - PDF Architect Helper Service.) - C:\Program Files (x86)\PDF Architect\HelperService.exe =>.pdfforge GmbH®
O23 - Service: PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH - PDF Architect Conversion Service.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe =>.pdfforge GmbH®
O23 - Service: Sophos Anti-Virus status reporter (SAVAdminService) . (.Sophos Limited - Sophos Administrator Service.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe =>.Sophos Limited®
O23 - Service: Sophos Anti-Virus (SAVService) . (.Sophos Limited - Performs virus scanning and disinfection fu.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe =>.Sophos Limited®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Sophos Network Threat Protection (SntpService) . (.Sophos Limited - Sophos Network Threat Protection Service.) - C:\Program Files\Sophos\Sophos Network Threat Protection\bin\SntpService.exe =>.Sophos Limited®
O23 - Service: Sophos Agent (Sophos Agent) . (.Sophos Limited - Sophos Agent.) - C:\Program Files (x86)\Sophos\Remote Management System\ManagementAgentNT.exe =>.Sophos Limited®
O23 - Service: Sophos AutoUpdate Service (Sophos AutoUpdate Service) . (.Sophos Limited - Sophos AutoUpdate Service..) - C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe =>.Sophos Limited®
O23 - Service: Sophos Message Router (Sophos Message Router) . (.Sophos Limited - Sophos Message Router.) - C:\Program Files (x86)\Sophos\Remote Management System\RouterNT.exe =>.Sophos Limited®
O23 - Service: Sophos Web Control Service (Sophos Web Control Service) . (.Sophos Limited - Sophos Web Control Service.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe =>.Sophos Limited®
O23 - Service: Sophos System Protection Service (sophossps) . (.Sophos Limited - Sophos System Protection Service Executable.) - C:\Program Files (x86)\Sophos\Sophos System Protection\ssp.exe =>.Sophos Limited®
O23 - Service: Sophos Web Intelligence Service (swi_service) . (.Sophos Limited - Sophos Web Intelligence.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe =>.Sophos Limited®
O23 - Service: Sophos Web Intelligence Update (swi_update_64) . (.Sophos Limited - Sophos Web Intelligence.) - C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe =>.Sophos Limited®
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
O23 - Service: TOSHIBA HDD Protection (Thpsrv) . (.TOSHIBA Corporation - TOSHIBA HDD Protection Service.) - C:\Windows\System32\ThpSrv.exe =>.TOSHIBA CORPORATION®
O23 - Service: TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.TOSHIBA CORPORATION®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (36) - 22s

SR - Auto [21/12/2013] [ 65432] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [24/03/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [19/11/2015] [ 317760] Berger-Levrault AGENT (BL_AGENT) . (.Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
SR - Auto [19/11/2015] [ 317760] Berger-Levrault SAM (BL_SAM) . (.Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
SR - Auto [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Auto [23/03/2010] [ 1528616] Cisco Systems, Inc. VPN Service (CVPND) . (.Cisco Systems, Inc..) - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc.
SR - Demand [18/06/2015] [ 1268568] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe =>.Disc Soft Ltd®
SR - Auto [16/08/2012] [ 869736] DameWare Mini Remote Control (dwmrcs) . (.SolarWinds.) - C:\Windows\dwrcs\DWRCS.EXE {4D1AD4813484CD2C046846391B68FADB}
SS - Disabl [25/10/2013] [ 37376] FusionInventory Agent (FusionInventory-Agent) . (.strawberryperl.com.) - C:\Program Files (x86)\FusionInventory-Agent\perl\bin\perl.exe
SR - Auto [27/07/2012] [ 85504] GSL Share Memory (GslShmSrvc) . (.Gemalto.) - C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe =>.Gemalto
SR - Auto [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SR - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [19/03/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [22/03/2012] [ 204296] NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe =>.Nitro PDF Software®
SR - Auto [22/03/2012] [ 69640] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software®
SS - Demand [24/04/2015] [ 2244312] PDF Architect 3 (PDF Architect 3) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\ws.exe =>.pdfforge GmbH®
SS - Demand [24/04/2015] [ 901336] PDF Architect 3 CrashHandler (PDF Architect 3 CrashHandler) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe =>.pdfforge GmbH®
SR - Auto [24/04/2015] [ 740568] PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe =>.pdfforge GmbH®
SR - Auto [08/04/2013] [ 1320496] PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\HelperService.exe =>.pdfforge GmbH®
SR - Auto [08/04/2013] [ 799280] PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe =>.pdfforge GmbH®
SR - Auto [11/03/2016] [ 311544] Sophos Anti-Virus status reporter (SAVAdminService) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe =>.Sophos Limited®
SR - Auto [11/03/2016] [ 285136] Sophos Anti-Virus (SAVService) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe =>.Sophos Limited®
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [11/03/2016] [ 901248] Sophos Network Threat Protection (SntpService) . (.Sophos Limited.) - C:\Program Files\Sophos\Sophos Network Threat Protection\bin\SntpService.exe =>.Sophos Limited®
SR - Auto [11/03/2016] [ 396040] Sophos Agent (Sophos Agent) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Remote Management System\ManagementAgentNT.exe =>.Sophos Limited®
SR - Auto [11/03/2016] [ 604000] Sophos AutoUpdate Service (Sophos AutoUpdate Service) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe =>.Sophos Limited®
SR - Auto [11/03/2016] [ 1069832] Sophos Message Router (Sophos Message Router) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Remote Management System\RouterNT.exe =>.Sophos Limited®
SR - Auto [14/11/2014] [ 341800] Sophos Web Control Service (Sophos Web Control Service) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe =>.Sophos Limited®
SR - Auto [11/03/2016] [ 2455816] Sophos System Protection Service (sophossps) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos System Protection\ssp.exe =>.Sophos Limited®
SR - Auto [11/03/2016] [ 3339736] Sophos Web Intelligence Service (swi_service) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe =>.Sophos Limited®
SS - Auto [11/03/2016] [ 2118896] Sophos Web Intelligence Update (swi_update_64) . (.Sophos Limited.) - C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe =>.Sophos Limited®
SR - Auto [11/09/2015] [ 5702416] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
SR - Auto [07/01/2008] [ 547456] TOSHIBA HDD Protection (Thpsrv) . (.TOSHIBA Corporation.) - C:\Windows\System32\ThpSrv.exe =>.Toshiba Corporation
SR - Auto [09/12/2010] [ 489384] TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.TOSHIBA CORPORATION®
SR - Demand [01/04/2011] [ 198064] TOSHIBA Bluetooth Service (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe =>.TOSHIBA CORPORATION®

---\\ Tâches planifiées en automatique (12) - 3s
[MD5.A9D55370A0CBADD1E1E2B4796ACD26DF] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.8F7458DCB5D682B6EA8333CEA4F156A7] [APT] [G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335] (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Program Files (x86)\Citrix\GoToMeeting\4670\g2mupdate.exe [41536] (.Activate.) {44AD220DBF367E6C4D2E480E121853D7}
[MD5.8F7458DCB5D682B6EA8333CEA4F156A7] [APT] [G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335] (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Program Files (x86)\Citrix\GoToMeeting\4670\g2mupload.exe [41536] (.Activate.) {44AD220DBF367E6C4D2E480E121853D7}
[MD5.7879E5C3A85A1815D7945D6BD80DFD50] [APT] [PrivaZer_SkipUAC] (.Goversoft LLC.) -- C:\Program Files (x86)\PrivaZer\PrivaZer.exe [14605064] (.Activate.) =>.Goversoft®
[MD5.E3238CA9101C670556B636C8F4FCE358] [APT] [Lenovo\] (.Lenovo.) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [17184] (.Activate.) =>.LENOVO®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335.job [544] {44AD220DBF367E6C4D2E480E121853D7}
O39 - APT: G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\Tasks\G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335.job [640] {44AD220DBF367E6C4D2E480E121853D7}
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated®
O39 - APT: G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335 [3594] {44AD220DBF367E6C4D2E480E121853D7}
O39 - APT: G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335 [3690] {44AD220DBF367E6C4D2E480E121853D7}
O39 - APT: PrivaZer_SkipUAC - (.Goversoft LLC.) -- C:\Windows\System32\Tasks\PrivaZer_SkipUAC [3126] =>.Goversoft®

---\\ Processus lancés (61) - 4s
[MD5.CD72AC46366F3745D0802BE75263CD85] - (.Sophos Limited - Performs virus scanning and disinfection fu.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [285136] [PID.1328] =>.Sophos Limited®
[MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.1324] =>.Adobe Systems, Incorporated®
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1364] =>.Apple Inc.®
[MD5.66257CB4E4FB69887CDDC71663741435] - (.Cisco Systems, Inc. - Cisco Systems VPN Client.) -- C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe [1528616] [PID.1728] {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc.
[MD5.DECF482D820334D25D576EA58D6B1621] - (.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCS.EXE [869736] [PID.2072] {4D1AD4813484CD2C046846391B68FADB}
[MD5.354A8BF5CDB2938E94FD459E2E5AB4A6] - (.Gemalto - Classic Client SHM Service.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe [85504] [PID.2148] =>.Gemalto
[MD5.9611577752E293259C7DCE19E9026362] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464] [PID.2200] =>.Malwarebytes Corporation®
[MD5.F1A89A34388B5626F1548D393B23ECB1] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608] [PID.2428] =>.Malwarebytes Corporation®
[MD5.015096B444149C90F49224EDE970EC09] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [204296] [PID.2628] =>.Nitro PDF Software®
[MD5.13B8FAEBA5F9943ABFC0856A57B7DFCE] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [69640] [PID.2680] =>.Nitro PDF Software®
[MD5.1234BB5F8C7EC1E52F32A3EBF65F52EA] - (.pdfforge GmbH - PDF Architect 3.) -- C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [740568] [PID.2724] =>.pdfforge GmbH®
[MD5.20372BE109FEE1C37E2D5216680DB9EB] - (.pdfforge GmbH - PDF Architect Helper Service.) -- C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496] [PID.2872] =>.pdfforge GmbH®
[MD5.B90A279073A815A4AA2C45A09EE004FA] - (.pdfforge GmbH - PDF Architect Conversion Service.) -- C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280] [PID.2940] =>.pdfforge GmbH®
[MD5.0F88547DDDC91DE85B61F93BB8D7866A] - (.Sophos Limited - Sophos Administrator Service.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [311544] [PID.3000] =>.Sophos Limited®
[MD5.95C9BDF5C030644B0B11D8BEEA9740D5] - (.Sophos Limited - Sophos Network Threat Protection Service.) -- C:\Program Files\Sophos\Sophos Network Threat Protection\bin\SntpService.exe [901248] [PID.2716] =>.Sophos Limited®
[MD5.218A71C75CEFA2C8B5F225EF2EDAC18C] - (.Sophos Limited - Sophos Agent.) -- C:\Program Files (x86)\Sophos\Remote Management System\ManagementAgentNT.exe [396040] [PID.3056] =>.Sophos Limited®
[MD5.F5BCDA93F70CE7DCEB81660CB62C2BFF] - (.Sophos Limited - Sophos AutoUpdate Service..) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [604000] [PID.3132] =>.Sophos Limited®
[MD5.E26625A4A22E5BADF495B8FB613F27AD] - (.Sophos Limited - Sophos Web Control Service.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [341800] [PID.3324] =>.Sophos Limited®
[MD5.664C33FCF2A7CE154ED21EC18F2424B1] - (.Sophos Limited - Sophos System Protection Service Executable.) -- C:\Program Files (x86)\Sophos\Sophos System Protection\ssp.exe [2455816] [PID.3380] =>.Sophos Limited®
[MD5.78D9AE984D5E5C345FE4F536C62C913F] - (.Sophos Limited - Sophos Web Intelligence.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3339736] [PID.3912] =>.Sophos Limited®
[MD5.2AA61246A5B813C1B12BCCFAA6F23DD8] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416] [PID.3240] =>.TeamViewer®
[MD5.91980BDC842D0FDB7F718781B63127D5] - (.TOSHIBA Corporation - TOSHIBA HDD Protection Service.) -- C:\Windows\System32\ThpSrv.exe [547456] [PID.4196] =>.TOSHIBA CORPORATION®
[MD5.CDC97FA5C42B07FB0D4600E17C32F582] - (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [489384] [PID.4324] =>.TOSHIBA CORPORATION®
[MD5.6ED1814C5D92EDBBC2F3C460129A3E1C] - (.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCST.EXE [425832] [PID.5760] {4D1AD4813484CD2C046846391B68FADB}
[MD5.8E98E3EC16D2641005B4748CD330FB45] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9926112] [PID.5840] =>.Malwarebytes Corporation®
[MD5.A889E7974A7B9A41AF88B77E17627D26] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [18484496] [PID.5820] =>.TeamViewer®
[MD5.FBC76FB8AC96C179E4D0BC806B850748] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\tv_w32.exe [230672] [PID.3576] =>.TeamViewer®
[MD5.24B9BA271BC87C8B9FC05A688923652F] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\tv_x64.exe [263952] [PID.4536] =>.TeamViewer®
[MD5.6DEE94C715404B839DDCE782FA8AD350] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [328048] [PID.4900] =>.Alps Electric Co., LTD.®
[MD5.F2DA3E94647A687301F982AC1FA53AD0] - (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBank.exe [976256] [PID.4768] =>.TOSHIBA CORPORATION®
[MD5.890B98C749312FF1DB4FE9868FD78597] - (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUTaskMonitor.exe [896384] [PID.6044] =>.TOSHIBA CORPORATION®
[MD5.3A25973E0B5C1C6ED5A64EF0F85386B2] - (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe [566696] [PID.5624] =>.TOSHIBA CORPORATION®
[MD5.DE6768D360564906AB9C320A6994FC8D] - (.TOSHIBA Corporation - TOSHIBA Flash Cards Main Module.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544] [PID.4264] =>.TOSHIBA CORPORATION®
[MD5.A042FB145907E867A19D5CAC06A9EFB1] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592] [PID.3532] =>.Realtek Semiconductor Corp®
[MD5.C816EC69693ED89D4D20A31D1647FEB9] - (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe [495616] [PID.6112] =>.Greenshot
[MD5.91980BDC842D0FDB7F718781B63127D5] - (.TOSHIBA Corporation - TOSHIBA HDD Protection Service.) -- C:\Windows\System32\ThpSrv.exe [547456] [PID.5172] =>.TOSHIBA CORPORATION®
[MD5.A300D780F0A80E5099002B7295B73430] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [167744] [PID.3336] =>.Intel Corporation®
[MD5.B8868A9397AC7541F600A323704ECF06] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [392512] [PID.4116] =>.Intel Corporation®
[MD5.0B0B165A9A3C4564BF36260AB854AB42] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [417088] [PID.5176] =>.Intel Corporation®
[MD5.051E1C48AE871C51AB6226F9DDE348EE] - (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe [110160] [PID.5912] =>.Siber Systems Inc®
[MD5.60A3F71E829F8E505430CC7430670D7F] - (.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe [317760] [PID.5884] {3D108A29119C5D7FCA5084A87EF8CCFC}
[MD5.FE12709D0ABE8BAE59523B2C4C2BD56F] - (.Sophos Limited - Sophos Endpoint Security and Control.) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe [1531872] [PID.6360] =>.Sophos Limited®
[MD5.B03F39264477EC8A979C67C789A7B62A] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [66928] [PID.6548] =>.Alps Electric Co., LTD.®
[MD5.7F78CE48F8EA201765D65442C71C17E8] - (.(C) 2007 by Gemalto NV Group - RegTool MFC Application.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe [1241088] [PID.6896]
[MD5.1B0E5412AB8F30B8ED2AEAC2C530EB90] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\hidfind.exe [98672] [PID.6952] =>.Alps Electric Co., LTD.®
[MD5.FD97807051658AE27799BE3A557D3776] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\ApntEx.exe [29552] [PID.7008] =>.Alps Electric Co., LTD.®
[MD5.99BF669611DB06126D72C5E965A9E938] - (.TOSHIBA CORPORATION. - Bluetooth Manager.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe [2750376] [PID.6368] =>.TOSHIBA CORPORATION®
[MD5.68BA0E5692BC127B07E1CD2F1B4B427F] - (.Repkasoft - YoWindow 4.) -- C:\Program Files (x86)\YoWindow\yowindow.exe [1140032] [PID.6428] {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft
[MD5.91DF13EC831BDCFA36A7A12CD13D66B9] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [1268568] [PID.6488] =>.Disc Soft Ltd®
[MD5.A22DEB5EC05FEBFDCA1D3FF70FA1FF46] - (.TOSHIBA CORPORATION - TOSHIBA Bluetooth Service.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe [198064] [PID.6624] =>.TOSHIBA CORPORATION®
[MD5.CC9F2719B8BCE8298031517CA982A49E] - (.TOSHIBA CORPORATION. - TosA2DP.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosA2dp.exe [690072] [PID.6200] =>.TOSHIBA CORPORATION®
[MD5.0D878F76B2B191F2B816FF4A18790D78] - (.TOSHIBA CORPORATION. - TosBtHid.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHid.exe [87960] [PID.6756] =>.TOSHIBA CORPORATION®
[MD5.C2546BD4174CAD72C78D79339CB2347A] - (.TOSHIBA CORPORATION. - TosBtHSP.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHSP.exe [746384] [PID.6840] =>.TOSHIBA CORPORATION®
[MD5.47B4FCDCE4C0A64A54BC9A66B176B0F1] - (.TOSHIBA CORPORATION. - TosAVRC.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosAVRC.exe [447816] [PID.3892] =>.TOSHIBA CORPORATION®
[MD5.98A27CEBF7146A6745051D03E8302A0D] - (.TOSHIBA CORPORATION. - tosOBEX.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosOBEX.exe [511888] [PID.7312] =>.TOSHIBA CORPORATION®
[MD5.BF8A6B8EDF6AC72DC0BB3DECCDCF26DC] - (.TOSHIBA CORPORATION. - Bluetooth Information Exchanger.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosBtProc.exe [2953664] [PID.7592] =>.TOSHIBA CORPORATION®
[MD5.60A3F71E829F8E505430CC7430670D7F] - (.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe [317760] [PID.2708] {3D108A29119C5D7FCA5084A87EF8CCFC}
[MD5.60A3F71E829F8E505430CC7430670D7F] - (.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe [317760] [PID.7224] {3D108A29119C5D7FCA5084A87EF8CCFC}
[MD5.6C9DF66D268D3E1D21320C2194F31E98] - (.Sophos Limited - Sophos Message Router.) -- C:\Program Files (x86)\Sophos\Remote Management System\RouterNT.exe [1069832] [PID.6752] =>.Sophos Limited®
[MD5.80B72881A9BDDA484867F22DDC2E84DD] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.7752] =>.Mozilla Corporation®
[MD5.1DE4831E18DC61E758EF7F3EB193B736] - (.Nicolas Coolman - ZHPDiag.) -- D:\Users\ADEBONNE\Downloads\ZHPDiag3.exe [2166272] [PID.1256] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 1s
M0 - MFSP: prefs.js [ADEBONNE - sua2hlze.default] http://www.google.fr
P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT FILE: (...) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\unseen@tangrs.xpi
P2 - EXT FILE: (...) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi
P2 - EXT FILE: (...) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (.20-20 Technologies - Visualisateur 3D de 20-20.) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\2020Player_IKEA@2020Technologies.com =>.20-20 Technologies
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@nitropdf.com/NitroPDF] - (.Nitro PDF Software.) -- C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll =>.Nitro PDF Software

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?linkid=69157
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?linkid=69157
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?linkid=54896
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (19)

---\\ Browser Helper Object de navigateur (BHO) (4) - 0s
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll =>.Siber Systems Inc.
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (Orphean)

---\\ Applications lancées au démarrage du système (23) - 1s
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe =>.Alps Electric Co., LTD.®
O4 - HKLM\..\Run: [TFPUPWDBankService] . (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBank.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TFPUService] . (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUTaskMonitor.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TPwrMain] . (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [HSON] . (.TOSHIBA Corporation - HotStartOn.) -- C:\Program Files\TOSHIBA\TBS\HSON.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TCrdMain] . (.TOSHIBA Corporation - TOSHIBA Flash Cards Main Module.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [Greenshot] . (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe =>.Greenshot
O4 - HKLM\..\Run: [ThpSrv] C:\Windows\system32\thpsrv /logon (.not file.)
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation®
O4 - HKLM\..\Run: [DameWare MRC Agent] . (.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCST.EXE {4D1AD4813484CD2C046846391B68FADB}
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKCU\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe =>.Siber Systems Inc®
O4 - HKLM\..\Wow6432Node\Run: [Sophos AutoUpdate Monitor] . (.Sophos Limited - Sophos Endpoint Security and Control.) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe =>.Sophos Limited®
O4 - HKLM\..\Wow6432Node\Run: [RegTool] . (.(C) 2007 by Gemalto NV Group - RegTool MFC Application.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2243348203-3184530547-2589724496-3335\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKUS\S-1-5-21-2243348203-3184530547-2589724496-3335\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe =>.Siber Systems Inc®

---\\ Raccourcis Global Startup (55) - 9s
O4 - GS\Desktop [Administrateur]: 12 Labours of Hercules V - Kids of Hellas Collectors Edition.lnk . (.Copyright (C) 2016 Zoom Out Games & JetDogs Studios - 12 Labours of Hercules 5.) D:\games\12 Labours of Hercules V - Kids of Hellas Collectors Edition\12LaboursOfHercules5KidsofHellas_CE.exe
O4 - GS\Desktop [Administrateur]: Downloads.lnk . (...) D:\Users\ADEBONNE\Downloads
O4 - GS\Desktop [Administrateur]: games.lnk . (...) D:\games
O4 - GS\Desktop [Administrateur]: Gardens Inc 4 - Blooming Stars Collectors Edition.lnk . (...) D:\games\Gardens Inc 4 - Blooming Stars Collectors Edition\GardensInc4_BloomingStarsCE.exe
O4 - GS\Desktop [Administrateur]: Internet Digital Radio Tuner.lnk . (.Robin Bailleux - Lecteur/Enregistreur de Radios sur Internet.) C:\Program Files (x86)\Internet Digital Radio Tuner\IDRT.exe =>.Robin Bailleux
O4 - GS\Desktop [Administrateur]: JkDefrag.lnk . (.www.jkdefrag.fr - JkDefrag - défragmenteur de disque léger, c.) C:\Program Files (x86)\JkDefrag\JkDefrag64.exe
O4 - GS\Desktop [Administrateur]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE}
O4 - GS\Desktop [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [Administrateur]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group®
O4 - GS\Desktop [Administrateur]: XnView.lnk . (.XnView, http://www.xnview.com - XnView for Windows.) C:\Program Files (x86)\XnView\xnview.exe =>.XnView, http://www.xnview.com
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (...) C:\Users\ADEBONNE\ZHPDiag3.exe
O4 - GS\Quicklaunch [Administrateur]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE}
O4 - GS\Quicklaunch [Administrateur]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Goversoft®
O4 - GS\Quicklaunch [Administrateur]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Startup [Administrateur]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft
O4 - GS\Desktop [SophosSAUBLPP-15760]: 12 Labours of Hercules V - Kids of Hellas Collectors Edition.lnk . (.Copyright (C) 2016 Zoom Out Games & JetDogs Studios - 12 Labours of Hercules 5.) D:\games\12 Labours of Hercules V - Kids of Hellas Collectors Edition\12LaboursOfHercules5KidsofHellas_CE.exe
O4 - GS\Desktop [SophosSAUBLPP-15760]: Downloads.lnk . (...) D:\Users\ADEBONNE\Downloads
O4 - GS\Desktop [SophosSAUBLPP-15760]: games.lnk . (...) D:\games
O4 - GS\Desktop [SophosSAUBLPP-15760]: Gardens Inc 4 - Blooming Stars Collectors Edition.lnk . (...) D:\games\Gardens Inc 4 - Blooming Stars Collectors Edition\GardensInc4_BloomingStarsCE.exe
O4 - GS\Desktop [SophosSAUBLPP-15760]: Internet Digital Radio Tuner.lnk . (.Robin Bailleux - Lecteur/Enregistreur de Radios sur Internet.) C:\Program Files (x86)\Internet Digital Radio Tuner\IDRT.exe =>.Robin Bailleux
O4 - GS\Desktop [SophosSAUBLPP-15760]: JkDefrag.lnk . (.www.jkdefrag.fr - JkDefrag - défragmenteur de disque léger, c.) C:\Program Files (x86)\JkDefrag\JkDefrag64.exe
O4 - GS\Desktop [SophosSAUBLPP-15760]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE}
O4 - GS\Desktop [SophosSAUBLPP-15760]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Desktop [SophosSAUBLPP-15760]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group®
O4 - GS\Desktop [SophosSAUBLPP-15760]: XnView.lnk . (.XnView, http://www.xnview.com - XnView for Windows.) C:\Program Files (x86)\XnView\xnview.exe =>.XnView, http://www.xnview.com
O4 - GS\Desktop [SophosSAUBLPP-15760]: ZHPDiag.lnk . (...) C:\Users\ADEBONNE\ZHPDiag3.exe
O4 - GS\Quicklaunch [SophosSAUBLPP-15760]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE}
O4 - GS\Quicklaunch [SophosSAUBLPP-15760]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Goversoft®
O4 - GS\Quicklaunch [SophosSAUBLPP-15760]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft
O4 - GS\sendTo [SophosSAUBLPP-15760]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\sendTo [SophosSAUBLPP-15760]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\TaskBar [SophosSAUBLPP-15760]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Startup [SophosSAUBLPP-15760]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft
O4 - GS\CommonDesktop [Public]: Berger-Levrault.lnk . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O4 - GS\CommonDesktop [Public]: Citrix Program Neighborhood.lnk . (...) C:\Windows\Installer\{388C130B-0079-46B4-A0D5-DC2DD7A89A7B}\pncico.exe.C76E2E86_AE54_4AF5_997C_63EBB83C7651.exe
O4 - GS\CommonDesktop [Public]: Client VPN Cisco.lnk . (.Cisco Systems, Inc. - Cisco Systems VPN Client.) C:\Program Files (x86)\Cisco Systems\VPN Client\ipsecdialer.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc.
O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) C:\Program Files (x86)\DAEMON Tools Lite\DTLauncher.exe =>.Disc Soft Ltd®
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Microsoft Office Excel 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\Icon.3ABA953D.B50E.4167.B58F.79BC173F193A.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Microsoft Office Outlook 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\Icon.278E0458.3921.40F9.A051.7B6E8229730C.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\Icon.A9119A45.2119.4434.A341.1AC4F66B172F.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Nitro Pro 7.lnk . (.Nitro PDF - Nitro Pro 7.) C:\Program Files (x86)\Nitro PDF\Professional 7\NitroPDF.exe =>.Nitro PDF Software®
O4 - GS\CommonDesktop [Public]: paint.net.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\paint.net\PaintDotNet.exe =>.dotPDN LLC
O4 - GS\CommonDesktop [Public]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Goversoft®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\CommonDesktop [Public]: TeamViewer 10.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\CommonDesktop [Public]: Total Commander 64 bit.lnk . (.Ghisler Software GmbH - Total Commander.) C:\totalcmd\TOTALCMD64.EXE =>.Ghisler Software GmbH®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Startup [Public]: Berger-Levrault - Notifier.lnk . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O4 - GS\Startup [Public]: Bluetooth Manager.lnk . (.TOSHIBA CORPORATION. - Bluetooth Manager.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe =>.TOSHIBA CORPORATION®
O4 - GS\Programs [Public]: Songr.lnk . (.Xamasoft - Songr.) C:\Users\ADEBONNE\AppData\Local\Songr\Songr.exe =>.Xamasoft
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = groupe.berger-levrault.net
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{C7FD9921-C0B3-47D9-8E31-1723AC1A943A}: DhcpNameServer = 192.168.1.254

---\\ Protocole additionnel (26) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl®
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s
O20 - AppInit_DLLs: . (.Sophos Limited - Sophos Buffer Overrun Protection.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll

---\\ Logiciels installés (88) - 14s
O42 - Logiciel: 12 Labours of Hercules V - Kids of Hellas Collectors Edition - (.LeeGT-Games.) [HKLM][64Bits] -- 12 Labours of Hercules V - Kids of Hellas Collectors Edition
O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} =>.Igor Pavlov
O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: ALPS Touch Pad Driver - (.ALPS ELECTRIC CO., LTD..) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.®
O42 - Logiciel: Atheros Bluetooth Filter Driver Package - (.Atheros Communications.) [HKLM][64Bits] -- {65486209-5C54-439C-8383-8AC9BBE25932} =>.Atheros Communications
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} =>.Atheros
O42 - Logiciel: AuthenTec WinBio FingerPrint Software - (.AuthenTec, Inc..) [HKLM][64Bits] -- {3CEE4431-D0DA-49AA-A78D-5D3B559446DF} =>.AuthenTec, Inc.
O42 - Logiciel: Berger-Levrault - (.Berger-Levrault.) [HKLM][64Bits] -- e.magnus
O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6} =>.Toshiba Corporation
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc.
O42 - Logiciel: Cisco Systems VPN Client 5.0.07.0290 - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {467D5E81-8349-4892-9E81-C3674ED8E451} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco WebEx Meetings - (.Cisco WebEx LLC.) [HKLM][64Bits] -- ActiveTouchMeetingClient =>.Cisco WebEx LLC®
O42 - Logiciel: Citrix Online Launcher - (.Citrix.) [HKLM][64Bits] -- {09DA5EE2-7E46-4DC4-96F9-BFEE50D40659} =>.Citrix
O42 - Logiciel: Citrix XenApp Plugin for Hosted Apps with INSIA ISprint Client - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {388C130B-0079-46B4-A0D5-DC2DD7A89A7B} =>.Citrix Systems, Inc.
O42 - Logiciel: Classic Client 6.3 Patch2 for 64 bits - (.Gemalto.) [HKLM][64Bits] -- {A21ADD97-F57A-4971-9435-6D4A47A6EDDE} =>.Gemalto
O42 - Logiciel: Client VPN Cisco version 1.3 - (...) [HKLM][64Bits] -- Client VPN Cisco_is1
O42 - Logiciel: Crystal Reports Basic Runtime for Visual Studio 2008 (x64) - (.Business Objects.) [HKLM][64Bits] -- {2BFA9B05-7418-4EDE-A6FC-620427BAAAA3} =>.Business Objects
O42 - Logiciel: Crystal Reports Basic Runtime French Language Pack for Visual Studio 2008 ( - (.Business Objects.) [HKLM][64Bits] -- {26D96091-69F2-4249-B43D-EEE1E50C52B4} =>.Business Objects
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd®
O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Fran - (.Microsoft Corporation.) [HKLM][64Bits] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62} =>.Microsoft Corporation
O42 - Logiciel: FusionInventory Agent 2.3.5 (x86 edition) - (.FusionInventory Team.) [HKLM][64Bits] -- FusionInventory-Agent =>.FusionInventory Team
O42 - Logiciel: Gardens Inc 4 - Blooming Stars Collectors Edition - (.LeeGT-Games.) [HKLM][64Bits] -- Gardens Inc 4 - Blooming Stars Collectors Edition
O42 - Logiciel: GoToMeeting 7.14.1.4670 - (.CitrixOnline.) [HKCU][64Bits] -- GoToMeeting {44AD220DBF367E6C4D2E480E121853D7} =>.CitrixOnline
O42 - Logiciel: Greenshot 1.1.7.17 - (.Greenshot.) [HKLM][64Bits] -- Greenshot_is1 =>.Greenshot
O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet =>.Intel
O42 - Logiciel: Internet Digital Radio Tuner 3.1.0 - (.Robin Bailleux.) [HKLM][64Bits] -- Internet Digital Radio Tuner_is1 =>.Robin Bailleux
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: JkDefrag 3.36 - (.Trad-Fr.) [HKLM][64Bits] -- {0FC65BD2-FB46-4E89-AEB9-C5CB53E4BC1F}_is1 =>.Trad-Fr
O42 - Logiciel: Light Image Resizer 4.6.3.0 - (.ObviousIdea.) [HKLM][64Bits] -- {EBE030DD-D404-4D92-85E9-8C3624820808}_is1 =>.ObviousIdea
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office15.LYNC =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 45.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 45.0.1 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation
O42 - Logiciel: myCANAL - (.player.canalplus.fr.) [HKCU][64Bits] -- 3092000918.player.canalplus.fr =>.Microsoft Corporation®
O42 - Logiciel: Nitro Pro 7 - (.Nitro PDF Software.) [HKLM][64Bits] -- {B2E6CBC8-F82D-44C3-B8BF-84DBFE747CD7} =>.Nitro PDF Software
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc®
O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {F509C1F4-0029-49F9-B145-A4C4E8DF481A} =>.dotPDN LLC
O42 - Logiciel: PDF Architect - (.pdfforge GmbH.) [HKLM][64Bits] -- {064A929A-4DE8-40CF-A901-BD40C14E4D25} =>.pdfforge GmbH
O42 - Logiciel: PDF Architect 3 - (.pdfforge GmbH.) [HKLM][64Bits] -- PDF Architect 3 =>.pdfforge GmbH
O42 - Logiciel: PDF Architect 3 Create Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {38BA288B-C4F4-4C62-9237-4BFAB374F966} =>.pdfforge GmbH
O42 - Logiciel: PDF Architect 3 Edit Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {5183F03D-90FA-493B-A074-F0F78B8486AD} =>.pdfforge GmbH
O42 - Logiciel: PDF Architect 3 View Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {EB24E9E7-4BC1-4FD7-BF86-BDE07A7A03D7} =>.pdfforge GmbH
O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge
O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM][64Bits] -- PrivaZer =>.Goversoft®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} =>.Renesas Electronics Corporation
O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} =>.Renesas Electronics Corporation
O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller =>.VS Revo Group
O42 - Logiciel: RICOH Media Driver v2.14.17.02 - (.RICOH.) [HKLM][64Bits] -- {FE041B02-234C-4AAA-9511-80DF6482A458} =>.RICOH
O42 - Logiciel: RoboForm 7-9-14-6 (All Users) - (.Siber Systems.) [HKLM][64Bits] -- AI RoboForm =>.Siber Systems Inc®
O42 - Logiciel: RogueKiller version 12 - (.Adlice Software.) [HKLM][64Bits] -- 8B3D7924-ED89-486B-8322-E8594065D5CB_is1 =>.Adlice®
O42 - Logiciel: Runtime Crystal Report 9 - (.Magnus France.) [HKLM][64Bits] -- {4DFA9623-2A9A-4EB0-8AB4-A34FF6497DE3}
O42 - Logiciel: Service Pack 1 pour SQL Server 2008 (KB968369) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB968369 =>.Microsoft Corporation
O42 - Logiciel: Service Pack 3 pour SQL Server 2008 (KB2546951) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB2546951 =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 4 pour SQL Server 2008 (KB2979596) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB2979596 =>.Microsoft Corporation®
O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Songr - (.Xamasoft.) [HKCU][64Bits] -- Songr =>.Xamasoft
O42 - Logiciel: Sophos Anti-Virus - (.Sophos Limited.) [HKLM][64Bits] -- {09863DA9-7A9B-4430-9561-E04D178D7017} =>.Sophos Limited
O42 - Logiciel: Sophos AutoUpdate - (.Sophos Limited.) [HKLM][64Bits] -- {BCF53039-A7FC-4C79-A3E3-437AE28FD918} =>.Sophos Limited
O42 - Logiciel: Sophos Network Threat Protection - (.Sophos Limited.) [HKLM][64Bits] -- {66967E5F-43E8-4402-87A4-04685EE5C2CB} =>.Sophos Limited
O42 - Logiciel: Sophos Remote Management System - (.Sophos Limited.) [HKLM][64Bits] -- {FED1005D-CBC8-45D5-A288-FFC7BB304121} =>.Sophos Limited
O42 - Logiciel: Sophos System Protection - (.Sophos Limited.) [HKLM][64Bits] -- {1093B57D-A613-47F3-90CF-0FD5C5DCFFE6} =>.Sophos Limited
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer®
O42 - Logiciel: TOSHIBA Fingerprint Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {62BBF381-D208-4EF0-B502-6CB6E5B9A161} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA HDD Protection - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {94A90C69-71C1-470A-88F5-AA47ECC96B40} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {066CFFF8-12BF-4390-A673-75F95EFF188E} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6F3C8901-EBD3-470D-87F8-AC210F6E5E02} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02} =>.Toshiba Corporation
O42 - Logiciel: Total Commander 64-bit (Remove or Repair) - (.Ghisler Software GmbH.) [HKLM][64Bits] -- Totalcmd64 {1CD8517B2373647496D551377199DEB5} =>.Ghisler Software GmbH
O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.LYNC_{8D97B9A2-D73D-4CB6-9D1F-D25178AC4EDE} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB3114831) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.LYNC_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB3114831) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.LYNC_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB3114831) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012C-0000-0000-0000000FF1CE}_Office15.LYNC_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2} =>.Microsoft Corporation®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: YoWindow - (.RepkaSoft.) [HKLM][64Bits] -- yowindow {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft

---\\ HKCU & HKLM Software Keys (162) - 14s
HKLM\SOFTWARE\Wow6432Node\ActiveTouch
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Atheros
HKLM\SOFTWARE\Wow6432Node\Cisco Systems
HKLM\SOFTWARE\Wow6432Node\Citrix
HKLM\SOFTWARE\Wow6432Node\Crystal Decisions
HKLM\SOFTWARE\Wow6432Node\DameWare Development
HKLM\SOFTWARE\Wow6432Node\DeterministicNetworks
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\DT Soft
HKLM\SOFTWARE\Wow6432Node\Florian Heidenreich
HKLM\SOFTWARE\Wow6432Node\FreeDownloadManager.ORG
HKLM\SOFTWARE\Wow6432Node\FusionInventory-Agent
HKLM\SOFTWARE\Wow6432Node\Gemplus
HKLM\SOFTWARE\Wow6432Node\GOG.com
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\HewlettPackard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Lenovo
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nalpeiron
HKLM\SOFTWARE\Wow6432Node\Nitro PDF
HKLM\SOFTWARE\Wow6432Node\Notepad++
HKLM\SOFTWARE\Wow6432Node\ObviousIdea
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\ORACLE
HKLM\SOFTWARE\Wow6432Node\PDF Architect 2
HKLM\SOFTWARE\Wow6432Node\PDF Architect 3
HKLM\SOFTWARE\Wow6432Node\PDFCreator
HKLM\SOFTWARE\Wow6432Node\repkasoft
HKLM\SOFTWARE\Wow6432Node\RICOH
HKLM\SOFTWARE\Wow6432Node\Siber Systems
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Sophos
HKLM\SOFTWARE\Wow6432Node\TeamViewer
HKLM\SOFTWARE\Wow6432Node\ThinPrint
HKLM\SOFTWARE\Wow6432Node\TOSHIBA
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\WebEx
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wondershare
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\49074InstEnd
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\8Floor
HKCU\SOFTWARE\A2
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\Alps
HKCU\SOFTWARE\antiufo
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\AxiPLAY
HKCU\SOFTWARE\Bip Media
HKCU\SOFTWARE\Bloobuzz
HKCU\SOFTWARE\BugSplat
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\Citrix
HKCU\SOFTWARE\com.runningpillow.ttt
HKCU\SOFTWARE\CounterPath
HKCU\SOFTWARE\Crystal Decisions
HKCU\SOFTWARE\DeterministicNetworks
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\DQ Team
HKCU\SOFTWARE\EBInstaller
HKCU\SOFTWARE\EMU
HKCU\SOFTWARE\Facebook
HKCU\SOFTWARE\Far Mills
HKCU\SOFTWARE\FarMills
HKCU\SOFTWARE\Fineway Studios
HKCU\SOFTWARE\FreeDownloadManager.ORG
HKCU\SOFTWARE\GameFools
HKCU\SOFTWARE\Ghisler
HKCU\SOFTWARE\GOG.com
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GrowingGrassStudio
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\Hidden Hallow
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Imagination Technologies
HKCU\SOFTWARE\INSIA
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Jumb-O-Fun Games Inc
HKCU\SOFTWARE\Lenovo
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Little Worlds Studio
HKCU\SOFTWARE\LittleWorlds
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Macrovision
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Marvell
HKCU\SOFTWARE\Melesta
HKCU\SOFTWARE\Microids
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\N-Tri studio
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Nitreal Games
HKCU\SOFTWARE\Nitro PDF
HKCU\SOFTWARE\Nordcurrent
HKCU\SOFTWARE\O2D
HKCU\SOFTWARE\ObviousIdea
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Oroboro games
HKCU\SOFTWARE\paint.net
HKCU\SOFTWARE\PDF Architect
HKCU\SOFTWARE\PDF Architect 3
HKCU\SOFTWARE\PDF Tools AG
HKCU\SOFTWARE\PDFCreator
HKCU\SOFTWARE\pdfforge
HKCU\SOFTWARE\phime studio
HKCU\SOFTWARE\PokieMagic
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RDP
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\repkasoft
HKCU\SOFTWARE\Robin Digital Software
HKCU\SOFTWARE\SDPGames
HKCU\SOFTWARE\Shining Rock Software LLC
HKCU\SOFTWARE\Siber Systems
HKCU\SOFTWARE\Siebel Systems, Inc.
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\SkypeRS
HKCU\SOFTWARE\SolidDocuments
HKCU\SOFTWARE\Sophos
HKCU\SOFTWARE\Spoon
HKCU\SOFTWARE\TeamViewer
HKCU\SOFTWARE\Test3D
HKCU\SOFTWARE\The Silicon Realms Toolworks
HKCU\SOFTWARE\TOSHIBA
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Twincats
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\VisualShape
HKCU\SOFTWARE\VMware, Inc.
HKCU\SOFTWARE\VSRevoGroup
HKCU\SOFTWARE\WebEx
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\XunK Entertainment
HKCU\SOFTWARE\z2h
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\ThinPrint

---\\ Contenu des dossiers Programmes (363) - 19s
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Apoint2K =>.Alps Electric Co., LTD.®
O43 - CFD: 26/06/2014 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.®
O43 - CFD: 16/01/2015 - [] D -- C:\Program Files\Business Objects
O43 - CFD: 31/01/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Fingerprint Sensor =>.Microsoft Windows®
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files\Gemalto
O43 - CFD: 06/01/2014 - [] D -- C:\Program Files\Greenshot
O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 09/02/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 20/08/2014 - [] D -- C:\Program Files\paint.net =>.dotPDN LLC®
O43 - CFD: 09/02/2016 - [] D -- C:\Program Files\PDFCreator =>.pdfforge GmbH®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 29/03/2016 - [] D -- C:\Program Files\RogueKiller =>.Adlice®
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Sophos =>.Sophos Limited®
O43 - CFD: 19/09/2014 - [] D -- C:\Program Files\TOSHIBA =>.TOSHIBA CORPORATION®
O43 - CFD: 17/09/2014 - [0] D -- C:\Program Files\WBFS
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 09/10/2013 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar
O43 - CFD: 26/06/2014 - [0] D -- C:\Program Files\Wondershare
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Atheros
O43 - CFD: 26/06/2014 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.®
O43 - CFD: 02/01/2014 - [] D -- C:\Program Files (x86)\Cheat Engine 6.3 =>.Cheat Engine®
O43 - CFD: 21/11/2013 - [] D -- C:\Program Files (x86)\Cisco Systems
O43 - CFD: 19/12/2013 - [] D -- C:\Program Files (x86)\Citrix {7D93C670CBCAA8FE4480A4173D6104C3}
O43 - CFD: 29/03/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Crystal Decisions
O43 - CFD: 04/07/2015 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite =>.Disc Soft Ltd®
O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\FusionInventory-Agent
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\Gemalto
O43 - CFD: 20/02/2014 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 30/09/2015 - [] D -- C:\Program Files (x86)\Internet Digital Radio Tuner
O43 - CFD: 12/02/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 11/02/2016 - [] D -- C:\Program Files (x86)\JkDefrag
O43 - CFD: 04/07/2015 - [] D -- C:\Program Files (x86)\Lenovo =>.LENOVO®
O43 - CFD: 23/03/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 09/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 12/02/2016 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Works
O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 20/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 20/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\MSSOAP
O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\MSXML 4.0
O43 - CFD: 04/02/2014 - [] D -- C:\Program Files (x86)\Nitro PDF =>.Nitro PDF Software®
O43 - CFD: 16/12/2014 - [] D -- C:\Program Files (x86)\Notepad++
O43 - CFD: 31/12/2013 - [] D -- C:\Program Files (x86)\ObviousIdea =>.ObviousIdea®
O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\OCS Inventory Agent
O43 - CFD: 09/03/2014 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc®
O43 - CFD: 01/02/2014 - [] D -- C:\Program Files (x86)\PDF Architect =>.pdfforge GmbH®
O43 - CFD: 17/06/2015 - [] D -- C:\Program Files (x86)\PDF Architect 3 =>.pdfforge GmbH®
O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\PrivaZer =>.Goversoft®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Renesas Electronics
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Ricoh
O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\Siber Systems =>.Siber Systems Inc®
O43 - CFD: 08/01/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Sophos =>.Sophos Limited®
O43 - CFD: 25/03/2016 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\TOH Class Filter =>.Atheros Communications Inc.®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\TOSHIBA =>.TOSHIBA CORPORATION®
O43 - CFD: 30/01/2014 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 21/03/2014 - [] D -- C:\Program Files (x86)\VS Revo Group =>.VS Revo Group®
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 03/01/2014 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 30/01/2014 - [] D -- C:\Program Files (x86)\XnView
O43 - CFD: 14/04/2015 - [] D -- C:\Program Files (x86)\YoWindow {4C4114980DB0E6BB385F90F6249443C7}
O43 - CFD: 19/11/2015 - [] HD -- C:\Program Files (x86)\Zero G Registry
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
O43 - CFD: 10/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Berger-Levrault
O43 - CFD: 21/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Systems VPN Client
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citrix
O43 - CFD: 04/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 11/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e.magnus
O43 - CFD: 05/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gemalto
O43 - CFD: 06/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot
O43 - CFD: 30/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Digital Radio Tuner
O43 - CFD: 01/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 23/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
O43 - CFD: 20/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005
O43 - CFD: 17/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005
O43 - CFD: 16/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 31/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea
O43 - CFD: 01/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect
O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 3
O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
O43 - CFD: 07/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 14/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
O43 - CFD: 19/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA
O43 - CFD: 25/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 03/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 14/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YoWindow
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 26/06/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Atheros
O43 - CFD: 09/12/2013 - [] D -- C:\ProgramData\Berger-Levrault
O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\Cateia Games
O43 - CFD: 09/03/2014 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 14/11/2014 - [] D -- C:\ProgramData\DameWare Development
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\DefenseOfGrecce
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Downloaded Installations
O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\GroupPolicy
O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\HitmanPro
O43 - CFD: 01/06/2015 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Logs
O43 - CFD: 19/04/2014 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 11/03/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 20/03/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 09/12/2013 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 04/02/2014 - [] D -- C:\ProgramData\Nitro PDF
O43 - CFD: 01/02/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 04/07/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 27/01/2015 - [] D -- C:\ProgramData\Particles
O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\PDF Architect 3
O43 - CFD: 29/03/2016 - [0] D -- C:\ProgramData\PDF Architect 4
O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\pdfforge
O43 - CFD: 24/06/2014 - [] D -- C:\ProgramData\Playrix Entertainment
O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\privazer
O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 11/03/2016 - [] HD -- C:\ProgramData\RICOH_DRV
O43 - CFD: 09/12/2013 - [] D -- C:\ProgramData\RoboForm
O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 21/02/2015 - [] D -- C:\ProgramData\Sandlot Games
O43 - CFD: 16/02/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\Sophos
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Sun
O43 - CFD: 14/08/2015 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Toshiba
O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\VMware
O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\WebEx
O43 - CFD: 26/06/2014 - [] D -- C:\ProgramData\Wondershare
O43 - CFD: 14/04/2015 - [] D -- C:\ProgramData\YoWindow
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Cisco Systems
O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Common Files\Crystal Decisions
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared
O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\Common Files\MSSoap
O43 - CFD: 04/02/2014 - [] D -- C:\Program Files (x86)\Common Files\Nitro PDF
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 08/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\Common Files\Sophos
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 26/06/2014 - [] D -- C:\Program Files (x86)\Common Files\Wondershare
O43 - CFD: 05/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\3M
O43 - CFD: 29/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\4 Friends Games
O43 - CFD: 20/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\8floor
O43 - CFD: 15/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\A2 Entertainment
O43 - CFD: 05/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Adobe
O43 - CFD: 26/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\AlawarEntertainment
O43 - CFD: 12/10/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Anuman
O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Apple Computer
O43 - CFD: 14/08/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\AppMinis
O43 - CFD: 11/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\AxiPLAY
O43 - CFD: 13/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Az-Art
O43 - CFD: 15/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\BlamGames
O43 - CFD: 20/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Boomzap
O43 - CFD: 05/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\C.C.C.P
O43 - CFD: 17/12/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\calibre
O43 - CFD: 08/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\com.stateofplaygames.LuminoCity
O43 - CFD: 04/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 15/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Deep Shadows
O43 - CFD: 30/06/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\DMCache
O43 - CFD: 17/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\DominiGames
O43 - CFD: 04/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Downloaded Installations
O43 - CFD: 29/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\DragonsEye Studios
O43 - CFD: 17/09/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Dropbox
O43 - CFD: 10/10/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\dvdcss
O43 - CFD: 10/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Egyptian Settlement
O43 - CFD: 06/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Eipix
O43 - CFD: 05/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\EleFun Games
O43 - CFD: 05/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Elephant Games
O43 - CFD: 21/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ERS Game Studios
O43 - CFD: 27/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\FarMills
O43 - CFD: 26/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\FinewayStudios
O43 - CFD: 13/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Five-BN Games
O43 - CFD: 10/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Floria
O43 - CFD: 14/09/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Friendly Cactus
O43 - CFD: 21/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\GHISLER
O43 - CFD: 02/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Goblinz
O43 - CFD: 14/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Gomo
O43 - CFD: 06/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Greenshot
O43 - CFD: 14/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\GrowingGrass
O43 - CFD: 15/02/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Happy Empire
O43 - CFD: 21/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Hulubulu
O43 - CFD: 10/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ICAClient
O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Identities
O43 - CFD: 21/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\IncredibleZoo
O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Islands5
O43 - CFD: 30/11/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Lazy Turtle Games
O43 - CFD: 16/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Lonely Troops
O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Macromedia
O43 - CFD: 16/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Mad Head Games
O43 - CFD: 19/04/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Malwarebytes
O43 - CFD: 20/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Manifesto Game Studio
O43 - CFD: 27/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Maximize Games
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Media Center Programs
O43 - CFD: 11/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Meridian93
O43 - CFD: 11/05/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microids
O43 - CFD: 15/01/2016 - [] SD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft
O43 - CFD: 07/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Motorola
O43 - CFD: 04/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla
O43 - CFD: 21/03/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Mysterious Oasis
O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Nitro PDF
O43 - CFD: 07/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Nordcurrent
O43 - CFD: 16/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Notepad++
O43 - CFD: 28/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ObviousIdea
O43 - CFD: 17/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Organic 2 Digital
O43 - CFD: 07/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\OWL Studio
O43 - CFD: 01/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\PDF Architect
O43 - CFD: 30/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\PDF Architect 3
O43 - CFD: 29/03/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\PDF Architect 4
O43 - CFD: 04/05/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\PuzzleLab
O43 - CFD: 15/08/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Realore
O43 - CFD: 29/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Realore_Whiterra Adelantado3
O43 - CFD: 11/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\RoryWinterPC
O43 - CFD: 29/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Seven Sails
O43 - CFD: 06/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ShamanGS
O43 - CFD: 17/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Skype
O43 - CFD: 05/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Sticker
O43 - CFD: 13/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Sunward Games
O43 - CFD: 01/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\TeamViewer
O43 - CFD: 16/09/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Teyon
O43 - CFD: 20/11/2013 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\TFPU
O43 - CFD: 30/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\TOMI3
O43 - CFD: 05/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Top Evidence
O43 - CFD: 15/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Twincats
O43 - CFD: 22/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Urchin
O43 - CFD: 28/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Vendel-GAMES
O43 - CFD: 21/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\vikingsaga2_realore_en
O43 - CFD: 13/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\VisualShape
O43 - CFD: 26/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\vlc
O43 - CFD: 28/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\VMware
O43 - CFD: 25/07/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\VSRevoGroup
O43 - CFD: 04/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\webex
O43 - CFD: 19/09/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\WinBatch
O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\WinRAR
O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Wondershare
O43 - CFD: 20/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\XnView
O43 - CFD: 14/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\YoWindow
O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ZHP
O43 - CFD: 23/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ZOG
O43 - CFD: 12/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Adobe
O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Apple
O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Apple Computer
O43 - CFD: 20/11/2013 - [0] SHD -- C:\Users\ADEBONNE\AppData\Local\Application Data
O43 - CFD: 16/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Apps
O43 - CFD: 08/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Astar Games
O43 - CFD: 25/11/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\calibre-cache
O43 - CFD: 26/10/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Canal.MyCanal
O43 - CFD: 19/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Citrix
O43 - CFD: 07/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\CrashDumps
O43 - CFD: 24/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\DADSU-CTL-V01X08
O43 - CFD: 05/07/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Daedalic Entertainment GmbH
O43 - CFD: 15/02/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Deployment
O43 - CFD: 27/03/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Diagnostics
O43 - CFD: 04/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Disc_Soft_Ltd
O43 - CFD: 25/10/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\ElevatedDiagnostics
O43 - CFD: 05/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Facebook
O43 - CFD: 15/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\fantasy_mosaics_8_iwin
O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\fontconfig
O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\gegl-0.2
O43 - CFD: 21/04/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Local\GHISLER
O43 - CFD: 19/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Google
O43 - CFD: 04/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Greenshot
O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\gtk-2.0
O43 - CFD: 20/11/2013 - [0] SHD -- C:\Users\ADEBONNE\AppData\Local\Historique
O43 - CFD: 03/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\ICAClient
O43 - CFD: 30/09/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\IDRT
O43 - CFD: 04/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Lenovo
O43 - CFD: 16/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\Macromedia
O43 - CFD: 23/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Microsoft
O43 - CFD: 09/12/2013 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Microsoft Help
O43 - CFD: 09/05/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Microsoft_Corporation
O43 - CFD: 09/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\Mozilla
O43 - CFD: 14/11/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Local\ntr
O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\paint.net
O43 - CFD: 09/02/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Local\PDFCreator
O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\PrivaZer
O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Programs
O43 - CFD: 15/08/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Realore
O43 - CFD: 08/01/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Skype
O43 - CFD: 21/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Songr
O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Sophos
O43 - CFD: 07/09/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\SpoonBL
O43 - CFD: 31/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\TeamViewer
O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Temp
O43 - CFD: 20/11/2013 - [0] SHD -- C:\Users\ADEBONNE\AppData\Local\Temporary Internet Files
O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\TOSHIBA
O43 - CFD: 21/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\vikingsaga2_realore_en
O43 - CFD: 14/03/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Local\VirtualStore
O43 - CFD: 01/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\VMware
O43 - CFD: 11/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\WBFSManager
O43 - CFD: 04/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\WebEx
O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\WindowsUpdate
O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Wondershare
O43 - CFD: 23/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\12 Labours of Hercules V - Kids of Hellas Collectors Edition
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 12/02/2016 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 12/01/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Berger-Levrault
O43 - CFD: 07/01/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 02/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gardens Inc 4 - Blooming Stars Collectors Edition
O43 - CFD: 04/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\INSIA
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 12/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Island Kingdom
O43 - CFD: 16/12/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 05/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivaZer
O43 - CFD: 21/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
O43 - CFD: 12/02/2016 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Liste des pilotes du système (90) - 5s
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2011/01/21 15:12:08 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [347768] =>.Alps Electric Co., LTD.®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2011/05/24 00:24:22 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2750464] =>.Atheros Communications, Inc.
O58 - SDL:2012/01/27 07:18:04 A . (.AuthenTec, Inc. - AuthenTec Fingerprint Sensor WBF Driver.) -- C:\Windows\System32\drivers\ATSwpWDF.sys [1073200] =>.AuthenTec, Inc.®
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2010/10/18 14:14:02 RA . (.Atheros - Filter Driver for the Bluetooth.) -- C:\Windows\System32\drivers\btfilter.sys [42096] =>.Atheros Communications Inc.®
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2010/02/08 09:32:00 A . (.Cisco Systems, Inc. - Cisco Systems VPN Adapter.) -- C:\Windows\System32\drivers\CVirtA64.sys [14992] =>.Cisco Systems, Inc.®
O58 - SDL:2010/03/23 14:29:46 A . (...) -- C:\Windows\System32\drivers\CVPNDRVA.sys [304784] =>.Cisco Systems, Inc.®
O58 - SDL:2008/03/14 16:00:00 A . (.DameWare Development, LLC - DameWare Development Mirror Miniport Driver.) -- C:\Windows\System32\drivers\DamewareMini.sys [5632]
O58 - SDL:2008/11/16 19:39:44 A . (.Deterministic Networks, Inc. - Deterministic Network Enhancer for NDIS 5.1.) -- C:\Windows\System32\drivers\dne64x.sys [157968] =>.Deterministic Networks®
O58 - SDL:2015/07/04 20:47:52 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2008/03/13 14:00:00 A . (.DameWare - DameWare Virtual Keyboard Driver.) -- C:\Windows\System32\drivers\dwvkbd64.sys [30720] =>.DameWare
O58 - SDL:2016/01/07 14:38:16 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1c62x64.sys [506872] =>.Intel(R) INTELNPG1®
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/08/10 15:07:40 A . (.Gemalto - USB Smart Card Reader Driver.) -- C:\Windows\System32\drivers\GemCCID.sys [119680] =>.Gemalto
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/10/19 23:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation®
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2012/07/31 17:50:10 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12312896] =>.Intel Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2016/03/10 15:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 15:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/29 10:03:19 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2011/04/04 16:25:18 A . (.Marvell Semiconductor, Inc. - USB EWS Device Driver.) -- C:\Windows\System32\drivers\mvusbews.sys [20480] =>.Marvell Semiconductor, Inc.
O58 - SDL:2016/03/10 15:09:06 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64896] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2011/02/10 14:52:34 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [82432] =>.Renesas Electronics Corporation
O58 - SDL:2011/02/10 14:52:34 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [181760] =>.Renesas Electronics Corporation
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2009/06/22 17:06:38 A . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\Windows\System32\drivers\PGEffect.sys [35008] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2011/06/01 11:22:28 A . (.REDC - RICOH MS Driver.) -- C:\Windows\System32\drivers\rimspe64.sys [73216] =>.REDC
O58 - SDL:2011/04/22 09:03:00 A . (.REDC - RICOH PCIe SDXC/MMC Controller Driver.) -- C:\Windows\System32\drivers\risdxc64.sys [101376] =>.REDC
O58 - SDL:2011/04/26 07:06:00 A . (.REDC - RICOH PCIe XD Driver.) -- C:\Windows\System32\drivers\rixdpe64.sys [53760] =>.REDC
O58 - SDL:2011/01/18 20:12:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2719336] =>.Realtek Semiconductor Corp®
O58 - SDL:2016/03/11 10:08:41 A . (.Sophos Limited - SAV On-Access and HIPS for Windows Vista (A.) -- C:\Windows\System32\drivers\savonaccess.sys [161024] =>.Sophos Limited®
O58 - SDL:2016/03/11 10:09:07 A . (.Sophos Limited - Sophos CD-Rom Device Control Filter for Win.) -- C:\Windows\System32\drivers\sdcfilter.sys [38144] =>.Sophos Limited®
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2014/09/03 07:49:36 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\Windows\System32\drivers\ser2pl64.sys [169984] =>.Prolific Technology Inc.
O58 - SDL:2009/07/14 02:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2016/03/11 10:09:24 A . (.Sophos Limited - SNTP Driver.) -- C:\Windows\System32\drivers\sntp.sys [116144] =>.Sophos Limited®
O58 - SDL:2016/03/11 10:08:52 A . (.Sophos Limited - Sophos Boot Driver, Windows XP (AMD64).) -- C:\Windows\System32\drivers\SophosBootDriver.sys [27904] =>.Sophos Limited®
O58 - SDL:2015/07/04 20:47:30 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [381608] =>.Disc Soft Ltd®
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [108800] =>.DEVGURU CO LTD®
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD®
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2008/01/11 23:00:14 A . (.TOSHIBA Corporation - TOSHIBA HDD Protection Driver.) -- C:\Windows\System32\drivers\thpdrv.sys [33400] =>.TOSHIBA CORPORATION®
O58 - SDL:2007/09/04 10:29:04 A . (.TOSHIBA Corporation - TOSHIBA HDD Protection - Shock Sensor Drive.) -- C:\Windows\System32\drivers\Thpevm.sys [14872] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/06/19 10:01:00 A . (.TOSHIBA Corporation. - Toshiba Bluetooth HID mini port driver.) -- C:\Windows\System32\drivers\Toshidpt.sys [9608] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/06/17 12:01:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\Windows\System32\drivers\tosporte.sys [54664] =>.TOSHIBA CORPORATION®
O58 - SDL:2011/08/05 10:24:26 A . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\Windows\System32\drivers\tosrfbd.sys [292024] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/11/11 10:27:00 A . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\Windows\System32\drivers\tosrfbnp.sys [50864] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/11/29 11:47:00 A . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\drivers\tosrfcom.sys [82224] =>.TOSHIBA CORPORATION®
O58 - SDL:2011/07/12 20:08:02 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\Windows\System32\drivers\tosrfec.sys [19904] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/08/30 10:48:00 A . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\Windows\System32\drivers\Tosrfhid.sys [94528] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/07/24 11:33:00 A . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\Windows\System32\drivers\tosrfnds.sys [26472] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/04/26 11:48:00 A . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\Windows\System32\drivers\TosRfSnd.sys [63488] =>.Toshiba Corporation
O58 - SDL:2011/01/27 15:27:04 A . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\Windows\System32\drivers\tosrfusb.sys [67384] =>.TOSHIBA CORPORATION®
O58 - SDL:2016/03/29 09:39:38 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [28272] =>.Adlice®
O58 - SDL:2009/07/14 12:25:14 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\Windows\System32\drivers\TVALZ.SYS [26840] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 7s
O61 - LFC: 2016/03/29 10:43:52 A . (..) -- C:\Users\ADEBONNE\ZHPDiag3.exe [289427]
O61 - LFC: 2016/03/29 10:43:52 A . (..) -- C:\Users\ADEBONNE\AppData\Roaming\ZHP\ZHPDiag3.exe [289427]
O61 - LFC: 2016/03/25 12:45:08 A . (..) -- C:\Users\ADEBONNE\AppData\Local\SpoonBL\2014.03.19T10.58\roaming\xregistry.bin [11123]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (3) - 12s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
O69 - SBI: SearchScopes [HKCU] {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} - (Google) - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC

---\\ Enumère les services démarrés par Svchost (33) - 0s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [782848] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2610688] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (20) - 3s
O87 - FAEL: "{6F1CC5EE-2791-4E7D-8367-3211BD444F23}" [In-None-P17-TRUE] .(.Net Transmit & Receive - NTR Plugin 1.2.4.2.) -- C:\Windows\system32\ntrplugin1242h.exe {4821B37E8333C49F3B692DAC696F208E} (.not file.)
O87 - FAEL: "{73A66074-60CC-42B4-BEA2-0F95868E9C2C}" [In-None-P17-TRUE] .(.Net Transmit & Receive - NTR Plugin 1.2.4.2.) -- C:\Windows\system32\ntrplugin1242a.exe {4821B37E8333C49F3B692DAC696F208E} (.not file.)
O87 - FAEL: "{0891A7E8-CD27-4DCF-8E70-7A5EDA28D912}" [In-None-P17-TRUE] .(.Net Transmit & Receive - NTR Plugin 1.2.4.2.) -- C:\Windows\system32\ntrplugin1242.exe {4821B37E8333C49F3B692DAC696F208E} (.not file.)
O87 - FAEL: "TCP Query User{DF3C6BE6-8790-49D2-8EB6-8C3DDEFB1A12}C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{CC62E5F2-15CA-483B-921D-371BFAC6D4AB}C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe (.not file.)
O87 - FAEL: "{5FEB1A44-D5B3-4BFE-87A2-247081517CEB}" [In-None-P17-TRUE] .(.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O87 - FAEL: "{796FDDCB-0329-4C2C-A3CF-B8DADC2BCC9F}" [In-None-P17-TRUE] .(.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus Update.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O87 - FAEL: "{5E703113-213D-4B31-97F1-E7255FD2B223}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\BL\BL\socle\9.00.00.09\gestioncomposant\bin\gestionnaireDeComposants.exe (.not file.)
O87 - FAEL: "{2BA17FCD-DA1C-4F95-9D7D-AF7E51F8818E}" [In-None-P17-TRUE] .(...) -- C:\oracle\OracleMagnus10GR2\BIN\lsnrctl.exe (.not file.)
O87 - FAEL: "{A0E02B1D-E5F4-4FCC-9AE5-C152A93A8991}" [In-None-P17-TRUE] .(...) -- C:\oracle\OracleMagnus10GR2\BIN\tnslsnr.exe (.not file.)
O87 - FAEL: "{22F53830-F852-42E9-8259-F408135E73BB}" [In-None-P17-TRUE] .(...) -- C:\oracle\OracleMagnus10GR2\BIN\oracle.exe (.not file.)
O87 - FAEL: "{FAF8B9C3-EC16-4107-8109-C05AA108C9FE}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "TCP Query User{8DADB90A-3481-4584-A7A8-63E14750AEBA}C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{47C2E7EB-48AF-42D7-970C-5CCA4F27A9EA}C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{0A8FAB78-7CD5-4B37-96D1-F434AEC48D53}C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{A8DFFD8F-11FC-4EAF-97CA-5257C5248704}C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe (.not file.)
O87 - FAEL: "{4FF80EF3-A27F-49D2-949E-3BBEDEE71B86}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\BL\BL\bin\fss-we\bl-fss.exe (.not file.)
O87 - FAEL: "{9C5CF2A6-F0F6-40BA-805F-25F978E00B34}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\BL\BL\bin\fss-we\bl-fss64.exe (.not file.)
O87 - FAEL: "{EC31FE8C-9DE7-47B2-81B7-A613D09D9B9B}" [In-None-P17-TRUE] .(.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus64.exe {3D108A29119C5D7FCA5084A87EF8CCFC}
O87 - FAEL: "{4081FA29-A762-4608-A09C-EC5C9A178848}" [In-None-P17-TRUE] .(.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCS.EXE {4D1AD4813484CD2C046846391B68FADB}

---\\ Scan Additionnel (1) - 0s
~ Aucun élément malicieux ou superflu trouvé.

---\\ Récapitulatif des éléments trouvés sur votre station (2) - 0s
http://www.nicolascoolman.fr/?p=4664 =>
http://www.nicolascoolman.fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer

~ End of the scan, 4179 items in 00h02mn43s (1163)(0)

Publicité


Signaler le contenu de ce document

Publicité