cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.8.15.140 Par Nicolas Coolman (2017/08/15)
~ Démarré par EL CHERQUI DOUNIA (Administrator) (2017/08/19 23:39:51)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\EL CHERQUI DOUNIA\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600) =>.Microsoft Corporation

---\\ Navigateurs Internet (3) - 1s
~ GCIE: Google Chrome v60.0.3112.101
~ MFIE: Mozilla Firefox 54.0.1 (x86 fr)
~ MSIE: Internet Explorer v11.0.9600.18763

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 54s
McAfee LiveSafe v16.0.0 (Protection)
Windows Defender (Deactivate)

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 22 Model 0 Stepping 1, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3618.312 MB (30% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 401 GB (86%) free of 465 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: ELCHERQUI
~ User Name: EL CHERQUI DOUNIA
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 401 GB free of 465 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 1s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 7s
[MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2755504] =>.Microsoft Windows®
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [54784] =>.Microsoft Corporation
[MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [146944] =>.Microsoft Corporation
[MD5.94678F9303770C21B29EC5B308361CC6] - 14/07/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3240960] =>.Microsoft Corporation
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [570880] =>.Microsoft Corporation
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/12/2013 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.C8E208FDE134A6BE4D365D5B3A789B9B] - 13/06/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [656384] =>.Microsoft Corporation
[MD5.DDF8C965C1EC614031C4F3BA77431A4C] - 13/06/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [499200] =>.Microsoft Corporation
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 28/08/2013 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation
[MD5.4FED6AD69C9EE1EE7FD3C88437138855] - 11/01/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138752] =>.Microsoft Corporation
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 27/11/2013 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation
[MD5.E2FC654EC895E92A022794329BFC53EC] - 01/02/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation
[MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation
[MD5.275CF7F20338B2B1F5264C665033073F] - 11/06/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2013528] =>.Microsoft Windows®
[MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 22/08/2013 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation
[MD5.576FA545FAB846B06E79B324160DE25C] - 02/08/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (26) - 18s
O23 - Service: AdaptiveSleepService (AdaptiveSleepService) . (...) - C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe =>.ATI
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\system32\atiesrxx.exe =>.AMD
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider - Windows Setup API.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\Windows\system32\CxAudMsg64.exe =>.Conexant Systems Inc.
O23 - Service: DTS APO Service (dts_apo_service) . (.Copyright © 2012 - dts_apo_service.) - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe =>.DTS, Inc.®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: McAfee Home Network (HomeNetSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - McAfee WebAdvisor.) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.®
O23 - Service: McAfee AP Service (McAPExe) . (.McAfee, Inc. - McAfee Access Protection.) - C:\Program Files\Common Files\mcafee\VSCore_15_6\mcapexe.exe =>.McAfee, Inc.®
O23 - Service: McAfee Boot Delay Start Service (McBootDelayStartSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee CSP Service (mccspsvc) . (.McAfee, Inc. - McAfee CSP Service Host.) - C:\Program Files\Common Files\mcafee\CSP\2.4.480.0\McCSPServiceHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee Personal Firewall Service (McMPFSvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee OOBE Service2 (McOobeSv2) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee Platform Services (mcpltsvc) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee Proxy Service (McProxy) . (.McAfee, Inc. - McAfee Service Host.) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee Service Controller (mfemms) . (.McAfee, Inc. - McAfee Management Service.) - C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe =>.McAfee, Inc.®
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc. - McAfee Process Validation Service.) - C:\Windows\system32\mfevtps.exe =>.McAfee, Inc.
O23 - Service: McAfee Module Core Service (ModuleCoreService) . (.McAfee, Inc. - McAfee Module Core Service.) - C:\Program Files\Common Files\mcafee\ModuleCore\ModuleCoreService.exe =>.McAfee, Inc.®
O23 - Service: myCANAL Server (myCANAL Server) . (.Public Domain; Author Iain Patterson 2003-2014 - The non-sucking service manager.) - C:\ProgramData\myCANAL\nssm.exe
O23 - Service: Intel Security PEF Service (PEFService) . (.Intel Security, Inc. - Intel Security PEF Service.) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\Windows\system32\TODDSrv.exe =>.Toshiba Corporation
O23 - Service: TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.Toshiba Corporation - TOSHIBA eco Utility Service.) - C:\Program Files\Toshiba\Teco\TecoService.exe =>.TOSHIBA CORPORATION®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (38) - 506s
SR - Auto [31/08/2013] [ 99328] AdaptiveSleepService (AdaptiveSleepService) . (...) - C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe =>.ATI
SR - Auto [30/08/2013] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\system32\atiesrxx.exe =>.AMD
SR - Auto [03/03/2016] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [22/08/2013] [ 312448] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider
SR - Auto [13/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Demand [29/03/2017] [ 1752992] ClientAnalyticsService (ClientAnalyticsService) . (.Intel Security.) - C:\Program Files\Common Files\mcafee\ClientAnalytics\Legacy\McClientAnalytics.exe =>.McAfee, Inc.®
SR - Auto [12/12/2012] [ 205560] C:\Windows\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc..) - C:\Windows\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.®
SR - Auto [10/09/2013] [ 19792] DTS APO Service (dts_apo_service) . (.Copyright © 2012.) - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe =>.DTS, Inc.®
SS - Demand [12/10/2010] [ 206072] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc®
SS - Auto [04/10/2016] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [04/10/2016] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [22/02/2017] [ 641520] McAfee Home Network (HomeNetSvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SS - Demand [04/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation
SR - Demand [01/06/2016] [ 651576] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [20/01/2017] [ 4355024] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [25/07/2017] [ 590880] McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc..) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.®
SR - Auto [18/04/2017] [ 1001520] McAfee AP Service (McAPExe) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\VSCore_15_6\mcapexe.exe =>.McAfee, Inc.®
SS - Demand [25/07/2013] [ 334608] McAfee Activation Service (McAWFwk) . (.McAfee, Inc..) - c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe =>.McAfee, Inc.®
SR - Auto [22/02/2017] [ 641520] McAfee Boot Delay Start Service (McBootDelayStartSvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SR - Auto [28/04/2017] [ 2115584] McAfee CSP Service (mccspsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\CSP\2.4.480.0\McCSPServiceHost.exe =>.McAfee, Inc.®
SR - Auto [22/02/2017] [ 641520] McAfee Personal Firewall Service (McMPFSvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SS - Auto [22/02/2017] [ 641520] McAfee OOBE Service2 (McOobeSv2) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SR - Auto [22/02/2017] [ 641520] McAfee Platform Services (mcpltsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SR - Auto [22/02/2017] [ 641520] McAfee Proxy Service (McProxy) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SR - Demand [17/03/2017] [ 241664] McAfee Firewall Core Service (mfefire) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe =>.McAfee, Inc.®
SR - Auto [17/03/2017] [ 384504] McAfee Service Controller (mfemms) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe =>.McAfee, Inc.®
SR - Auto [17/03/2017] [ 343544] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc..) - C:\Windows\system32\mfevtps.exe =>.McAfee, Inc.®
SR - Auto [27/04/2017] [ 1582560] McAfee Module Core Service (ModuleCoreService) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\ModuleCore\ModuleCoreService.exe =>.McAfee, Inc.®
SS - Demand [12/08/2017] [ 175560] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [22/02/2017] [ 641520] McAfee Anti-Spam Service (MSK80Service) . (.McAfee, Inc..) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SR - Auto [10/05/2017] [ 294912] myCANAL Server (myCANAL Server) . (.Public Domain; Author Iain Patterson 2003-2014.) - C:\ProgramData\myCANAL\nssm.exe
SR - Auto [21/04/2017] [ 1105840] Intel Security PEF Service (PEFService) . (.Intel Security, Inc..) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc.®
SS - Auto [01/06/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Demand [01/06/2017] [ 317400] TEMPRO Service (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe =>.Toshiba Europe GmbH®
SR - Demand [01/06/2017] [ 317400] TMachInfo (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe =>.TOSHIBA CORPORATION®
SR - Auto [01/06/2017] [ 317400] TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation.) - C:\Windows\system32\TODDSrv.exe =>.TOSHIBA CORPORATION®
SR - Auto [01/06/2017] [ 317400] TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.Toshiba Corporation.) - C:\Program Files\Toshiba\Teco\TecoService.exe =>.TOSHIBA CORPORATION®
SR - Demand [01/06/2017] [ 317400] TPCH Service (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\Toshiba\TPHM\TPCHSrv.exe =>.TOSHIBA CORPORATION®

---\\ Tâches planifiées en automatique (6) - 4s
O39 - APT: Unknown - (.Apple Inc..) -- C:\WINDOWS\System32\Tasks\Apple Diagnostics [3446] =>.Apple Inc.
O39 - APT: Unknown - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3372] =>.Google Inc.
O39 - APT: Unknown - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3500] =>.Google Inc.
O39 - APT: Unknown - (.McAfee Inc..) -- C:\WINDOWS\System32\Tasks\McAfeeLogon [3068] =>.McAfee Inc.
O39 - APT: Unknown - (.Microsoft Corporation.) -- C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 [3198] =>.Microsoft Corporation
O39 - APT: Unknown - (...) -- C:\WINDOWS\System32\Tasks\UMonitor Task [3016]

---\\ Applications lancées au démarrage du système (26) - 12s
O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.®
O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe =>.Conexant Systems, Inc.
O4 - HKLM\..\Run: [TosWaitSrv] . (.TOSHIBA Corporation - .) -- C:\Program Files\Toshiba\TPHM\TosWaitSrv.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TCrdMain] . (.TOSHIBA Corporation - TOSHIBA Function Key Main Module.) -- C:\Program Files\Toshiba\Hotkey\TCrdMain_Win8.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TecoResident] . (.TOSHIBA Corporation - Resident module of eco Utility.) -- C:\Program Files\Toshiba\Teco\TecoResident.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TSSSrv] . (.TOSHIBA Corporation - TOSHIBA System Settings Service.) -- C:\Program Files (x86)\TOSHIBA\System Setting\TssSrv.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKLM\..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) -- C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe =>.Malwarebytes Corporation®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.®
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] . (...) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509] . (...) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe =>.Advanced Micro Devices, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [TSVU] . (.TOSHIBA - TOSHIBA Display Setup Launcher.) -- c:\Program Files\Toshiba\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Wow6432Node\Run: [FonePaw iPhone Data RecoveryAppService] . (...) -- C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\AppService.exe =>.FonePaw Technology Limited®
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\Run: [BingSvc] . (.© 2015 Microsoft Corporation - Microsoft Bing Service.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\BingSvc\BingSvc.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.®
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.®
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.®
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\RunOnce: [Uninstall C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] . (...) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64
O4 - HKUS\S-1-5-21-1973405163-370415072-3422755077-1004\..\RunOnce: [Uninstall C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509] . (...) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509

---\\ Processus lancés (77) - 29s
[MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [0] [PID.1020] =>.AMD
[MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [0] [PID.356] =>.AMD
[MD5.AECB490016EE078BD66E94E0F2039B79] - (...) -- C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe [99328] [PID.1504] =>.ATI Technologies
[MD5.3B3774C868868257533EC7E715BB6D53] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.1540] =>.Apple Inc.®
[MD5.50440A2FEDF6A9D94F2BA06192E172EB] - (.Windows (R) Win 7 DDK provider - Windows Setup API.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448] [PID.1564] =>.Windows (R) Win 7 DDK provider
[MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.1600] =>.Apple Inc.®
[MD5.00000000000000000000000000000000] - (.Conexant Systems Inc. - Conexant Audio Message Service.) -- C:\Windows\system32\CxAudMsg64.exe [0] [PID.1692] =>.Conexant Systems Inc.
[MD5.40CFC6671B2442D32E149FF1683212D1] - (.Copyright © 2012 - dts_apo_service.) -- C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792] [PID.1808] =>.DTS, Inc.®
[MD5.1FF0FAFDA1003F98F4CAA934DD9B7DDB] - (.McAfee, Inc. - McAfee Management Service.) -- C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe [384504] [PID.2020] =>.McAfee, Inc.®
[MD5.00000000000000000000000000000000] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\system32\mfevtps.exe [0] [PID.1040] =>.McAfee, Inc.
[MD5.00000000000000000000000000000000] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\system32\mfevtps.exe [0] [PID.1348] =>.McAfee, Inc.
[MD5.3025C51264B4F5C2E7E45163265AAD64] - (.McAfee, Inc. - McAfee Module Core Service.) -- C:\Program Files\Common Files\mcafee\ModuleCore\ModuleCoreService.exe [1582560] [PID.1412] =>.McAfee, Inc.®
[MD5.D9EC6F3A3B2AC7CD5EEF07BD86E3EFBC] - (.Public Domain; Author Iain Patterson 2003-2014 - The non-sucking service manager.) -- C:\ProgramData\myCANAL\nssm.exe [294912] [PID.1684]
[MD5.604D5C7CD512B441096B77169C9360AD] - (.McAfee, Inc. - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe [241664] [PID.1732] =>.McAfee, Inc.®
[MD5.A01EAA25F68CE89F6F3A16DE901D02C4] - (...) -- C:\ProgramData\myCANAL\myCANAL.Service.exe [5059864] [PID.1968] =>.Groupe Canal+®
[MD5.22FDF599BD75859169CDA232F69A8BA8] - (.Intel Security, Inc. - Intel Security PEF Service.) -- C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1105840] [PID.2016] =>.McAfee, Inc.®
[MD5.00000000000000000000000000000000] - (.TOSHIBA Corporation - TDCSrv Application.) -- C:\Windows\system32\TODDSrv.exe [0] [PID.2360] =>.Toshiba Corporation
[MD5.A52ACBECFE7BE36E377A203B969705AE] - (.McAfee, Inc. - McAfee Service Host.) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [641520] [PID.2436] =>.McAfee, Inc.®
[MD5.804E3246E3E73D4A936F2F4BCDC53A2D] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024] [PID.2632] =>.Malwarebytes Corporation®
[MD5.380192EE4C9FA50A083C14522E6240C8] - (.Toshiba Corporation - TOSHIBA eco Utility Service.) -- C:\Program Files\Toshiba\Teco\TecoService.exe [328544] [PID.2764] =>.TOSHIBA CORPORATION®
[MD5.604D5C7CD512B441096B77169C9360AD] - (.McAfee, Inc. - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe [241664] [PID.3760] =>.McAfee, Inc.®
[MD5.C1BBA11F81307B9F6A68F2A562C7DD0D] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [590880] [PID.3808] =>.McAfee, Inc.®
[MD5.30F3483E0122C8378A530711EEEFB191] - (.McAfee, Inc. - McAfee Access Protection.) -- C:\Program Files\Common Files\mcafee\VSCore_15_6\mcapexe.exe [1001520] [PID.3872] =>.McAfee, Inc.®
[MD5.A05BE7F13964B9B98E31A9C4281CA27A] - (.McAfee, Inc. - McAfee CSP Service Host.) -- C:\Program Files\Common Files\mcafee\CSP\2.4.480.0\McCSPServiceHost.exe [2115584] [PID.3956] =>.McAfee, Inc.®
[MD5.B6EB66BA67A4F58DBA51C48ADF25E474] - (.McAfee, Inc. - McAfee Cloud AV.) -- C:\Program Files\mcafee\MfeAV\MfeAVSvc.exe [4773488] [PID.3964] =>.McAfee, Inc.®
[MD5.981B3521FC601D17ECDE0A538B22A7D3] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [2113968] [PID.3996] =>.McAfee, Inc.®
[MD5.37AD6B4A4BE717669E89A32209B5D72A] - (.Copyright (C) 2008 - ChangeIcon MFC Application.) -- C:\Windows\SysWOW64\UMonit64.exe [53248] [PID.4892] =>.Legitimate
[MD5.0B22EBE04901FA3E30CCBA995FABC231] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe [894048] [PID.3584] =>.Conexant Systems, Inc.®
[MD5.919C80271F41A85B28D218CED3E26A16] - (.TOSHIBA Corporation - TOSHIBA Function Key Main Module.) -- C:\Program Files\Toshiba\Hotkey\TCrdMain_Win8.exe [2556768] [PID.5320] =>.TOSHIBA CORPORATION®
[MD5.788D0DE4CF3FEAE0782437CC2CF6E23A] - (.TOSHIBA Corporation - Resident module of eco Utility.) -- C:\Program Files\Toshiba\Teco\TecoResident.exe [178016] [PID.5432] =>.TOSHIBA CORPORATION®
[MD5.E0AB0280A64EB98D6B908CCDEA7F4D13] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2778864] [PID.5640] =>.Synaptics Incorporated®
[MD5.747CEF68DA0B3BABD64B74C0E06C050E] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [176952] [PID.6072] =>.Apple Inc.®
[MD5.74C8D5ED6C5BEF8EDDB21D213388F5C4] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [182000] [PID.6136] =>.Synaptics Incorporated®
[MD5.A6A21A7D544675E98C040DA18904CF50] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [2780112] [PID.3784] =>.Malwarebytes Corporation®
[MD5.F4D1F1B9B84CB3D5BD0CACD099D15EC6] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [27784672] [PID.3516] =>.Skype Software Sarl®
[MD5.3025C51264B4F5C2E7E45163265AAD64] - (.McAfee, Inc. - McAfee Module Core Service.) -- C:\Program Files\Common Files\mcafee\ModuleCore\ModuleCoreService.exe [1582560] [PID.4496] =>.McAfee, Inc.®
[MD5.E3DC3242F876F03DA070FC97B2E91309] - (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384] [PID.5412] =>.Apple Inc.®
[MD5.EE61DB325A659E7B67A125AE8986D95D] - (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392] [PID.5492] =>.Apple Inc.®
[MD5.2BFF13AC46A5850161317D0F924B5B42] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [651576] [PID.5512] =>.Apple Inc.®
[MD5.11949DEB226D0C50D84E3E0B7A01E8F3] - (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664] [PID.5572] =>.Apple Inc.®
[MD5.86A35D17F268AA6944418CA1043E95A3] - (...) -- C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\AppService.exe [88216] [PID.6292] =>.FonePaw Technology Limited®
[MD5.33E6E5822E22A5E1DEA523C06155FD07] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe [288848] [PID.6836] =>.Google Inc®
[MD5.E57F3AE971F6F5C7BAEFF34DEB19C82F] - (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384] [PID.6912] =>.Apple Inc.®
[MD5.27BEAF3F308ED2276F3863C2F2597556] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe [366672] [PID.2824] =>.Google Inc®
[MD5.6C18FEC75D331BFBBDA0A6DDE36348C1] - (.Apple, Inc. - Apple Security Manager.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\secd.exe [1269048] [PID.5668] =>.Apple Inc.®
[MD5.2B2C2D74BC62E22248787530A7AFC87F] - (.TOSHIBA Corporation - TOSHIBA Service Station.) -- C:\Program Files\Toshiba\Toshiba Service Station\ToshibaServiceStation.exe [655464] [PID.4216] =>.TOSHIBA CORPORATION®
[MD5.67F2A8FCD91A06E445C374C9E6BB0DD3] - (.TOSHIBA Corporation - TOSHIBA PC Health Monitor.) -- C:\Program Files\Toshiba\TPHM\TPCHSrv.exe [466504] [PID.7964] =>.TOSHIBA CORPORATION®
[MD5.3D06451CC0EA519FE768C87A1DFE96DF] - (.TOSHIBA Corporation - TOSHIBA PC Health Monitor.) -- C:\Program Files\Toshiba\TPHM\TPCHWMsg.exe [540240] [PID.8112] =>.TOSHIBA CORPORATION®
[MD5.C6B8CB65A3AACABB00F3DAA371C46A3E] - (.Toshiba Europe GmbH - Toshiba TEMPRO.) -- C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [471416] [PID.2700] =>.Toshiba Europe GmbH®
[MD5.BADF6C22FBAA3ED3E2413A60411425AC] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299520] [PID.3360] =>.Advanced Micro Devices Inc.
[MD5.319313BD72F82F4B6C70523CB618CA97] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299520] [PID.800] =>.ATI Technologies Inc.
[MD5.6C4F5CD42074DB52AE88FC4BAB2C54F7] - (.TOSHIBA Corporation - TSS TMachInfo Service.) -- C:\Program Files\Toshiba\TOSHIBA Service Station\TMachInfo.exe [53864] [PID.7056] =>.TOSHIBA CORPORATION®
[MD5.DCAB6037CD1D9031EA4F6C0910960CB6] - (.Apple Inc. - SyncServer.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe [67384] [PID.9712] =>.Apple Inc.®
[MD5.A8D590ADE72D06723BE0701842008BD4] - (.Apple Inc. - iTunes.) -- C:\Program Files\iTunes\iTunes.exe [3051320] [PID.9380] =>.Apple Inc.®
[MD5.7E84FEDF8175BC22C21C3F0155E85612] - (.Apple Inc. - MobileDeviceHelper.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe [67384] [PID.4172] =>.Apple Inc.®
[MD5.DDD2E6082F897119ACF8970229DD3DD0] - (.Apple Inc. - distnoted.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe [31032] [PID.9608] =>.Apple Inc.®
[MD5.C73F5FC2446900C0BCC121C8ABDC1C34] - (.McAfee, Inc. - McAfee.) -- C:\Program Files\Common Files\mcafee\platform\McUICnt.exe [756120] [PID.7556] =>.McAfee, Inc.®
[MD5.594F91C5985AC402ECD2D7F1376AFFFD] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [521160] [PID.10228] =>.Mozilla Corporation®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.8480] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.9896] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.9252] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.3344] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.3204] =>.Google Inc®
[MD5.4DB8B46D5AC16B9C38294991F118DA74] - (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe [488512] [PID.9060] =>.McAfee, Inc.®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.8976] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.3744] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.6212] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.7344] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.9848] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.10112] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.9924] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.4548] =>.Google Inc®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.6600] =>.Google Inc®
[MD5.E57F3AE971F6F5C7BAEFF34DEB19C82F] - (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67384] [PID.2292] =>.Apple Inc.®
[MD5.86EBD460621BAB6AFE8595392B0560CA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\EL CHERQUI DOUNIA\ZHPDiag3.exe [2812800] [PID.9148] =>.Nicolas Coolman
[MD5.7395451B9DD465D720A8760763F9D430] - (.Apple Inc. - ATH.exe.) -- C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\ATH.exe [66872] [PID.4804] =>.Apple Inc.®
[MD5.88FB83D39F3574643A0D92353787423B] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1131864] [PID.8328] =>.Google Inc®

---\\ Google Chrome, Démarrage,Recherche,Extensions (20) - 3s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ad.doubleclick.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://assets.adobedtm.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://hodor.canalplus.pro
G0 - GCSP: Preferences [User Data\Default][HomePage] http://media-pass.canal-plus.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://secure-player.canal-plus.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://secure-stat.canal-plus.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://secure.adnxs.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.canal-plus.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://thumb.canalplus.pro
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.mycanal.fr
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [User Data\Default] [fheoggkfdfchfphceeifdbepaooicaho] McAfee® WebAdvisor =>.McAfee Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (9) - 5s
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT: (.Apple Inc. - iCloud 書籤.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Mozilla\Firefox\Profiles\jcjy7tz2.default\extensions\firefoxdav@icloud.com =>.Apple Inc.
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.
P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- c:\Program Files (x86)\McAfee\msc\npMcSnFFPl.dll =>.McAfee Total Protection MIME Plugin
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba13.msn.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://toshiba.eu/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (3) - 1s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: McAfee WebAdvisor BHO [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll =>.McAfee, Inc.®
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Raccourcis Global Startup (107) - 39s
O4 - GS\Desktop [Administrateur]: Access 2016.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Certificat travail - Raccourci.lnk . (...) E:\MP Navigator EX\2011_12_01\Certificat travail.pdf
O4 - GS\Desktop [Administrateur]: Diplome - Raccourci.lnk . (...) E:\MP Navigator EX\2011_12_01\Diplome.pdf
O4 - GS\Desktop [Administrateur]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Publisher 2016.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\EL CHERQUI DOUNIA\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: FonePaw Récupération De Données iPhone.lnk . (.FonePaw - .) C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\FonePaw iPhone Data Recovery.exe =>.FonePaw Technology Limited®
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Access 2016.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Certificat travail - Raccourci.lnk . (...) E:\MP Navigator EX\2011_12_01\Certificat travail.pdf
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Diplome - Raccourci.lnk . (...) E:\MP Navigator EX\2011_12_01\Diplome.pdf
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Publisher 2016.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [EL CHERQUI DOUNIA]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\EL CHERQUI DOUNIA\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [EL CHERQUI DOUNIA]: FonePaw Récupération De Données iPhone.lnk . (.FonePaw - .) C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\FonePaw iPhone Data Recovery.exe =>.FonePaw Technology Limited®
O4 - GS\Quicklaunch [EL CHERQUI DOUNIA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [EL CHERQUI DOUNIA]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [EL CHERQUI DOUNIA]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [EL CHERQUI DOUNIA]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [EL CHERQUI DOUNIA]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [EL CHERQUI DOUNIA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [EL CHERQUI DOUNIA]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [EL CHERQUI DOUNIA]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [EL CHERQUI DOUNIA]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Programs [EL CHERQUI DOUNIA]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: Access 2016.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: Certificat travail - Raccourci.lnk . (...) E:\MP Navigator EX\2011_12_01\Certificat travail.pdf
O4 - GS\Desktop [ELC]: Diplome - Raccourci.lnk . (...) E:\MP Navigator EX\2011_12_01\Diplome.pdf
O4 - GS\Desktop [ELC]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: Publisher 2016.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Desktop [ELC]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\EL CHERQUI DOUNIA\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ELC]: FonePaw Récupération De Données iPhone.lnk . (.FonePaw - .) C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\FonePaw iPhone Data Recovery.exe =>.FonePaw Technology Limited®
O4 - GS\Quicklaunch [ELC]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [ELC]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [ELC]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [ELC]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [ELC]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [ELC]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [ELC]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [ELC]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [ELC]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Programs [ELC]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Additional Information.lnk . (.TOSHIBA - Toshiba Regensburg EXternal file Launcher.) C:\Program Files (x86)\TOSHIBA\Addendum\TREXLauncher.exe Additional Information =>.TOSHIBA CORPORATION®
O4 - GS\CommonDesktop [Public]: eBay.lnk . (...) C:\Program Files (x86)\eBay\DesktopShortcut\redirect.html
O4 - GS\CommonDesktop [Public]: FonePaw Récupération De Données iPhone.lnk . (.FonePaw - .) C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\FonePaw iPhone Data Recovery.exe =>.FonePaw Technology Limited®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Manual.lnk . (.TOSHIBA - Toshiba Regensburg EXternal file Launcher.) C:\Program Files (x86)\TOSHIBA\Manuals\TREXLauncher.exe Manual =>.TOSHIBA CORPORATION®
O4 - GS\CommonDesktop [Public]: McAfee LiveSafe.lnk . (.McAfee, Inc. - .) C:\Program Files (x86)\Common Files\mcafee\platform\McUICnt.exe /desktopicon /platui =>.McAfee, Inc.
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\WINDOWS\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: WildTangent Games App - toshiba.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src desktop /dp toshibaemea =>.WildTangent Inc®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: myCANAL (2).lnk . (.Microsoft Corporation - Microsoft Silverlight Out-of-Browser Launch.) C:\Program Files (x86)\Microsoft Silverlight\sllauncher.exe 702145380.player.canalplus.fr =>.Microsoft Corporation®
O4 - GS\Programs [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\WINDOWS\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\WINDOWS\Installer\{56EC47AA-5813-4FF6-8E75-544026FBEA83}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\WINDOWS\Camera\Camera.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\WINDOWS\FileManager\FileManager.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\WINDOWS\FileManager\PhotosApp.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\WINDOWS\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>..Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Skype Entreprise 2016.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: WildTangent Games App - toshiba.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp toshibaemea =>.WildTangent Inc®
O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\WINDOWS\WinStore\WinStore.htm =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (4) - 1s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{A4128055-1715-4311-9D59-EC29ECFD0AB5}: DhcpNameServer = 40.41.1.201 40.41.1.203 =>.USA Eli Lilly And Company
O17 - HKLM\System\CCS\Services\Tcpip\..\{EEEAAA56-3EB4-4117-A294-8E97FB541CBC}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{A4128055-1715-4311-9D59-EC29ECFD0AB5}: DhcpDomain = L2-LINE.COM

---\\ Protocole additionnel (26) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: sacore [64Bits] - {5513F07E-936B-4E52-9B00-067394E91CC5} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll =>.McAfee, Inc.®
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-mfe-ipt [64Bits] - {3EF5086B-5478-4598-A054-786C45D75692} . (.McAfee, Inc. - McAfee MSC IE plugin DLL.) -- c:\Program Files (x86)\McAfee\msc\McSnIePl.dll =>.McAfee, Inc.®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

---\\ Logiciels installés (62) - 33s
O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-5881b21f-c5b0-4954-af47-cc94e341ceac =>.WildTangent Inc®
O42 - Logiciel: AMD Quick Stream - (.AppEx Networks.) [HKLM][64Bits] -- {E9EED4AE-682B-4501-9574-D09A21717599}_is1 =>.AppEx Networks
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {9BA1A894-B42F-4805-BC8C-349C905A3930} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7EAC8A42-9FAC-4F6B-AABF-C08C9F2E0F13} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2E4AF2A6-50EA-4260-9BA4-5E582D11879A} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {56EC47AA-5813-4FF6-8E75-544026FBEA83} =>.Apple Inc.
O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} =>.Atheros
O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-753f3d3e-3acf-4627-bd73-8e014c7634c4 =>.WildTangent Inc®
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-b56f360e-f57f-4062-9785-4e797603fb34 =>.WildTangent Inc®
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.®
O42 - Logiciel: DTS Sound - (.DTS, Inc..) [HKLM][64Bits] -- {2DFA9084-CEB3-4A48-B9F7-9038FEF1B8F4} =>.DTS, Inc.
O42 - Logiciel: Empress of the Deep - The Darkest Secret - (.WildTangent.) [HKLM][64Bits] -- WTA-85439cf0-7e40-4b73-a3b6-e1e04487df3a =>.WildTangent Inc®
O42 - Logiciel: FonePaw Récupération De Données iPhone 3.6.0 - (.FonePaw.) [HKLM][64Bits] -- {77B09C3A-839E-4ea7-81BA-E5864F6BF388}_is1 =>.FonePaw Technology Limited®
O42 - Logiciel: Genesys USB Mass Storage Device - (.Genesys Logic.) [HKLM][64Bits] -- {959B7F35-2819-40C5-A0CD-3C53B5FCC935} =>.Genesys Logic
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {0493048C-CB1A-44B7-8BB3-8467AF7BA9E4} =>.Apple Inc.
O42 - Logiciel: Island Tribe - (.WildTangent.) [HKLM][64Bits] -- WTA-f5627552-5d4f-4dd3-9c18-1b4252c1afb2 =>.WildTangent Inc®
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {9F4BF859-C3A4-4AB6-BDD1-9C5D58188598} =>.Apple Inc.
O42 - Logiciel: Jewel Quest Solitaire 2 - (.WildTangent.) [HKLM][64Bits] -- WTA-df29d958-8950-40d4-a34f-fa8af1e90f1c =>.WildTangent Inc®
O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-d4912066-6dbc-440f-901c-378a2382a0b4 =>.WildTangent Inc®
O42 - Logiciel: Malwarebytes version 3.0.6.1469 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: McAfee LiveSafe - (.McAfee, Inc..) [HKLM][64Bits] -- MSC =>.McAfee, Inc.®
O42 - Logiciel: McAfee WebAdvisor - (.McAfee, Inc..) [HKLM][64Bits] -- {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} =>.McAfee, Inc.®
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 54.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 54.0.1 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: myCANAL - (.player.canalplus.fr.) [HKCU][64Bits] -- 702145380.player.canalplus.fr =>.Microsoft Corporation®
O42 - Logiciel: myCANAL - (.UCAYA.) [HKLM][64Bits] -- myCANAL =>.UCAYA
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Peggle Nights - (.WildTangent.) [HKLM][64Bits] -- WTA-558f50b7-04a5-4fbf-b540-fcc8312f0887 =>.WildTangent Inc®
O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-6ab1d8a5-6f23-4d80-8511-534d145464b0 =>.WildTangent Inc®
O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WTA-2f615a86-6411-47ee-98c5-74a0356e6c7e =>.WildTangent Inc®
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros
O42 - Logiciel: Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Qualcomm Atheros Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Qualcomm Atheros®
O42 - Logiciel: Skype™ 7.38 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated
O42 - Logiciel: TOSHIBA Addendum - (.TOSHIBA.) [HKLM][64Bits] -- {CE0374A6-B204-4336-8293-63FBB1DADBF4} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Addendum - (.TOSHIBA.) [HKLM][64Bits] -- {E6B58BFB-18F0-4BCC-9FF7-378D783DA758} =>.Toshiba
O42 - Logiciel: TOSHIBA Desktop Assist - (.Toshiba Corporation.) [HKLM][64Bits] -- {95CCACF0-010D-45F0-82BF-858643D8BC02} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Display Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- {84FA4D2D-4273-4C66-BD3D-ADD3FE48DFA2} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA eco Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- {5944B9D4-3C2A-48DE-931E-26B31714A2F7} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Function Key - (.Toshiba Corporation.) [HKLM][64Bits] -- {16562A90-71BC-41A0-B890-D91B0C267120} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Password Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- {26BB68BB-CF93-4A12-BC6D-A3B6F53AC8D9} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Password Utility - (.Toshiba Corporation.) [HKLM][64Bits] -- InstallShield_{26BB68BB-CF93-4A12-BC6D-A3B6F53AC8D9} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA PC Health Monitor - (.Toshiba Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Recovery Media Creator - (.Toshiba Corporation.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Service Station - (.Toshiba Corporation.) [HKLM][64Bits] -- {FBFCEEA5-96EA-4C8E-9262-43CBBEBAE413} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA System Driver - (.Toshiba Corporation.) [HKLM][64Bits] -- {1E6A96A1-2BAB-43EF-8087-30437593C66C} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA System Settings - (.Toshiba Corporation.) [HKLM][64Bits] -- {05A55927-DB9B-4E26-BA44-828EBFF829F0} =>.Toshiba Corporation
O42 - Logiciel: Toshiba TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {F76F5214-83A8-4030-80C9-1EF57391D72A} =>.Toshiba Europe GmbH
O42 - Logiciel: TOSHIBA VIDEO PLAYER - (.Toshiba Corporation.) [HKLM][64Bits] -- {FF07604E-C860-40E9-A230-E37FA41F103A} =>.Toshiba Corporation
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc®
O42 - Logiciel: Virtual Villagers 4 - The Tree of Life - (.WildTangent.) [HKLM][64Bits] -- WTA-e03b0124-f746-4451-b091-f56ea32fb6bc =>.WildTangent Inc®
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent Inc
O42 - Logiciel: WildTangent Games App (Toshiba Games) - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-toshiba =>.WildTangent Inc®

---\\ HKCU & HKLM Software Keys (56) - 33s
HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD
HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Wow6432Node\DTS =>.Creative Technology
HKLM\SOFTWARE\Wow6432Node\DTS, Inc. =>.DTS, Inc.
HKLM\SOFTWARE\Wow6432Node\Genesys Logic =>.Genesys Logic
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\Wow6432Node\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros Inc. =>.Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\SiteAdvisor =>.McAfee Inc.
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\sMedio =>.sMedio
HKLM\SOFTWARE\Wow6432Node\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Wow6432Node\TOSHIBA =>.Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\Toshiba Corporation =>.Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\WildTangent =>.WildTangent
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\cacaoweb =>.SUP.CacaoWeb
HKCU\SOFTWARE\Conexant =>.Conexant
HKCU\SOFTWARE\FonePaw =>.FonePaw
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\McAfee =>.McAfee Inc.
HKCU\SOFTWARE\Mine =>.Microsoft Corporation
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-e6ed90be65f4
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\Toshiba =>.Toshiba Corporation
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation

---\\ Contenu des dossiers Programmes (180) - 22s
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\AMD Quick Stream =>.Advanced Micro Devices Inc
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.®
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\ATI Technologies =>.ATI Technologies
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\CONEXANT =>.Conexant
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 09/04/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 14/06/2017 - [] D -- C:\Program Files\mcafee =>.McAfee
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\mcafee.com =>.McAfee Inc.
O43 - CFD: 15/10/2016 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 20/06/2017 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 28/08/2013 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 28/08/2013 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files\Toshiba =>.Toshiba Corporation
O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 15/08/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\AMD AVT =>.Advanced Micro Devices Inc
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Atheros =>.Qualcomm Atheros
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Bluetooth Suite =>.ASUSTeK
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 17/08/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\DTS, Inc =>.DTS, Inc.®
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\eBay =>.eBay
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\FonePaw =>.FonePaw Technology Limited®
O43 - CFD: 04/10/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 03/10/2013 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files (x86)\iTunes =>.Apple Inc.
O43 - CFD: 16/03/2017 - [] D -- C:\Program Files (x86)\McAfee =>.McAfee
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\mcafee.com =>.McAfee Inc.
O43 - CFD: 17/08/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 20/06/2017 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 12/08/2017 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 12/08/2017 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 28/08/2013 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 28/08/2013 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 04/07/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\TOSHIBA Games =>.Toshiba Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Toshiba TEMPRO =>.Toshiba Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\WildGames =>.WildGames
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 21/07/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 21/07/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream =>.Advanced Micro Devices Inc
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS, Inc =>.DTS, Inc
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FonePaw =>.FonePaw
O43 - CFD: 03/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc.
O43 - CFD: 16/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 09/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 16/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee =>.McAfee
O43 - CFD: 21/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 25/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 03/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 03/06/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 06/10/2016 - [] D -- C:\ProgramData\AMD =>.AMD
O43 - CFD: 16/10/2016 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 16/10/2016 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\ATI =>.ATI
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\Conexant =>.Conexant
O43 - CFD: 22/08/2013 - [0] SD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\FonePaw =>.FonePaw
O43 - CFD: 13/03/2017 - [] D -- C:\ProgramData\Intel Security =>.Intel Corporation
O43 - CFD: 09/04/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 14/07/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 28/02/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 12/08/2017 - [] D -- C:\ProgramData\myCANAL =>.MyCanal
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 17/08/2017 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\SRS Labs =>.SRS Labs
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 19/09/2016 - [] D -- C:\ProgramData\Toshiba =>.Toshiba Corporation
O43 - CFD: 19/09/2016 - [] D -- C:\ProgramData\ToshibaEurope =>.Toshiba Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\ProgramData\WildTangent =>.WildTangent
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Qualcomm Atheros
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies =>.ATI Technologies
O43 - CFD: 17/08/2017 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 16/03/2017 - [] D -- C:\Program Files (x86)\Common Files\mcafee =>.McAfee
O43 - CFD: 17/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 03/06/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 03/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Toshiba Shared =>.Toshiba Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 15/10/2016 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\ATI =>.ATI
O43 - CFD: 15/10/2016 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 01/07/2017 - [] SD -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/01/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 19/08/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Skype =>.Skype
O43 - CFD: 30/01/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\sMedio =>.sMedio inc,
O43 - CFD: 19/08/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 01/07/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\6CAF703E-A43A-4D00-8ADA-45024AB6D924.aplzod
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Apple Inc =>.Apple Inc.
O43 - CFD: 15/10/2016 - [0] SHD -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\ATI =>.ATI
O43 - CFD: 01/03/2017 - [0] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 31/05/2017 - [0] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 30/10/2016 - [] SHD -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr
O43 - CFD: 30/10/2016 - [] SHD -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\FonePaw =>.FonePaw
O43 - CFD: 30/10/2016 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google =>.Google
O43 - CFD: 15/10/2016 - [0] SHD -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 04/07/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/01/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 12/08/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\myCANAL =>.MyCanal
O43 - CFD: 15/08/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 19/08/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [0] SHD -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 15/10/2016 - [0] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 19/08/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 21/07/2017 - [] RD -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 18/03/2017 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc.
O43 - CFD: 22/08/2013 - [] D -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 21/07/2017 - [] RD -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\EL CHERQUI DOUNIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 15/10/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [] SD -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 2s
O106 - SIOI: ErrorOverlayHandler2 Class [ OneDrive1] - {7AFDFDDB-F914-11E4-8377-6C3BE50D980C}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6743.1212\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6743.1212\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6743.1212\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler2 Class [ OneDrive4] - {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6743.1212\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler2 Class [ OneDrive5] - {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\Microsoft\OneDrive\17.3.6743.1212\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Image File Execution Options (16) - 3s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ Liste des pilotes du système (68) - 42s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows®
O58 - SDL:2013/02/07 02:45:32 A . (.Advanced Micro Devices, INC. - AMD AS4 Driver.) -- C:\WINDOWS\System32\drivers\AmdAS4.sys [17504] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows®
O58 - SDL:2013/04/18 16:04:28 A . (.AppEx Networks Corporation - AppEx Accelerator LWF/WFP Driver L.E..) -- C:\WINDOWS\System32\drivers\appexDrv.sys [219360] =>.APPEX NETWORKS CORPORATION®
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows®
O58 - SDL:2013/10/24 18:03:40 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athwbx.sys [3858944] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2013/06/22 12:49:50 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWB6.sys [138240] =>.Advanced Micro Devices
O58 - SDL:2013/08/30 20:11:30 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [12528640] =>.Advanced Micro Devices, Inc.
O58 - SDL:2013/08/30 18:32:34 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [618496] =>.Advanced Micro Devices, Inc.
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2013/08/22 10:59:58 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [590024] =>.Qualcomm Atheros®
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\WINDOWS\System32\drivers\cfwids.sys [87568] =>.McAfee, Inc.®
O58 - SDL:2013/07/18 16:16:38 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1387712] =>.Conexant Systems, Inc.®
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows®
O58 - SDL:2017/04/09 16:35:33 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [111544] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/16 11:10:50 A . (.GenesysLogic - GeneStor.) -- C:\WINDOWS\System32\drivers\GeneStor.sys [105704] =>.Genesys Logic,INC. ®
O58 - SDL:2017/04/01 01:14:22 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\WINDOWS\System32\drivers\HipShieldK.sys [225432] =>.McAfee, Inc.®
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2013/07/18 23:55:44 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [130248] =>.Qualcomm Atheros®
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2017/04/26 23:21:30 A . (...) -- C:\WINDOWS\System32\drivers\mbae64.sys [77440] =>.Malwarebytes Corporation®
O58 - SDL:2017/04/26 23:25:52 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [43968] =>.Malwarebytes Corporation®
O58 - SDL:2017/04/09 14:32:40 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MBAMChameleon.sys [186304] =>.Malwarebytes Corporation®
O58 - SDL:2017/08/17 21:12:57 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [251832] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - McAfee Arbitrary Access Control Driver.) -- C:\WINDOWS\System32\drivers\mfeaack.sys [485904] =>.McAfee, Inc.®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\WINDOWS\System32\drivers\mfeavfk.sys [363024] =>.McAfee, Inc.®
O58 - SDL:2017/04/07 02:42:02 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\WINDOWS\System32\drivers\mfeclnrk.sys [30224] =>.McAfee, Inc.®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - McAfee ELAM Driver.) -- C:\WINDOWS\System32\drivers\mfeelamk.sys [85048] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\WINDOWS\System32\drivers\mfefirek.sys [514576] =>.McAfee, Inc.®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - McAfee Link Driver.) -- C:\WINDOWS\System32\drivers\mfehidk.sys [917008] =>.McAfee, Inc.®
O58 - SDL:2017/04/07 02:42:02 A . (.McAfee, Inc. - Event Driver.) -- C:\WINDOWS\System32\drivers\mfencbdc.sys [495632] =>.McAfee, Inc.®
O58 - SDL:2017/04/07 02:42:02 A . (.McAfee, Inc. - Detection driver.) -- C:\WINDOWS\System32\drivers\mfencrk.sys [107544] =>.McAfee, Inc.®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - AAC Protected Launch Plugin Driver.) -- C:\WINDOWS\System32\drivers\mfeplk.sys [109072] =>.McAfee, Inc.®
O58 - SDL:2017/04/18 09:52:18 A . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\WINDOWS\System32\drivers\mfewfpk.sys [252432] =>.McAfee, Inc.®
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2017/04/26 23:27:53 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [92096] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows®
O58 - SDL:2013/08/06 16:15:42 A . (.TOSHIBA - Generic IO & Memory Access.) -- C:\WINDOWS\System32\drivers\QIOMem.sys [14000] =>.Toshiba
O58 - SDL:2013/07/31 20:25:43 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [1936088] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2014/08/06 18:14:34 A . (.Synaptics Incorporated - Synaptics Touchpad 64-bit Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [528112] =>.Synaptics Incorporated®
O58 - SDL:2012/07/25 01:54:00 A . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\WINDOWS\System32\drivers\tdcmdpst.sys [31184] =>.TOSHIBA CORPORATION®
O58 - SDL:2013/08/19 21:32:10 A . (.Windows (R) Win 7 DDK provider - Toshiba Hotkey Driver.) -- C:\WINDOWS\System32\drivers\Thotkey.sys [32624] =>.TOSHIBA CORPORATION®
O58 - SDL:2013/11/01 12:22:28 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\WINDOWS\System32\drivers\tosrfec.sys [27032] =>.TOSHIBA CORPORATION®
O58 - SDL:2012/06/18 19:30:56 A . (.TOSHIBA Corporation - tos_sps64.) -- C:\WINDOWS\System32\drivers\tos_sps64.sys [499096] =>.TOSHIBA CORPORATION®
O58 - SDL:2012/07/22 00:59:02 A . (.TOSHIBA Corporation - TOSHIBA TVALZ Filter Driver.) -- C:\WINDOWS\System32\drivers\TVALZFL.sys [16768] =>.TOSHIBA CORPORATION®
O58 - SDL:2013/08/15 10:13:32 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\WINDOWS\System32\drivers\TVALZ_O.SYS [32832] =>.TOSHIBA CORPORATION®
O58 - SDL:2015/11/06 01:23:52 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 104s
O61 - LFC: 2017/08/17 21:21:43 A . (..) -- C:\Users\EL CHERQUI DOUNIA\AppData\Local\ATI\ACE\Manifest.Bin [28362] =>.ATI Technologies

---\\ Associations Shell Spawning (11) - 2s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (12) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (1) - 39s
O69 - SBI: SearchScopes [HKLM] {37BBB85B-2E58-464B-8738-27E7BB4541D8} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (34) - 3s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [158720] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [158720] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1362432] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1080320] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [927744] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [228864] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [346112] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542720] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3714560] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (6) - 15s
O87 - FAEL: "{B97AF285-61B8-4D12-B2E1-4BE05747AB07}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Spotify\spotify.exe (.not file.)
O87 - FAEL: "{0BDF4FCC-9CCD-478D-9920-9D9662877E59}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Spotify\spotify.exe (.not file.)
O87 - FAEL: "{F5E35882-C60B-42B9-9C5F-02ADCC5EDBCD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (.not file.)
O87 - FAEL: "{1FEC3F02-9745-4746-99B2-D73793439A72}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (.not file.)
O87 - FAEL: "TCP Query User{3FF84BA3-1D7B-4AFE-9DB1-DE38F45E7EB0}C:\users\el cherqui dounia\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\el cherqui dounia\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.SUP.CacaoWeb
O87 - FAEL: "UDP Query User{276ECFC4-CC27-4B3A-B548-40E4384BB9C7}C:\users\el cherqui dounia\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\el cherqui dounia\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.SUP.CacaoWeb

---\\ Scan Additionnel (8) - 49s
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage =>.SUP.Atwola
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_ol.uk.at.atwola.com_0.localstorage-journal =>.SUP.Atwola
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal =>PUP.Optional.Chatango
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights
C:\Users\EL CHERQUI DOUNIA\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights

---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s
https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.SUP.CacaoWeb
https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.SUP.CloudfrontNet
https://nicolascoolman.eu/2017/02/04/superfluous-atwola/ =>.SUP.Atwola
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Chatango
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AudienceInsights

~ Unselected Options: O82,
~ End of the scan, 33589 items in 18mn35s (983)(0)

Publicité


Signaler le contenu de ce document

Publicité