~ ZHPDiag v2015.8.23.124 Par Nicolas Coolman (2015/08/23) ~ Démarré par Dominique (Administrator) (2015/08/23 16:50:56) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Dominique\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Dominique\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v44.0.2403.157 MSIE: Internet Explorer v11.0.9600.17959 ---\\ Informations sur les produits Windows (4) - 5s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK (Auto) Windows Activation Technologies : OK ---\\ Logiciels de protection (1) - 1s Windows Defender W7 (Deactivate) ---\\ Surveillance de Logiciels (2) - 1s Adobe Flash Player 18 ActiveX Adobe Reader XI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8363.152 MB (47% free) ~ System Restore: Activé (Enable) ~ System drive C: has 246 GB free of 381 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: DOMINIQUE-PC ~ User Name: Dominique ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 246 GB free of 381 GB (System) ~ Drive D: has 408 GB free of 553 GB ~ Drive E: has 28 GB free of 30 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (23) - 1s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\windows\Explorer.exe [2871808] [MD5.DD81D91FF3B0763C392422865C9AC12E] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\windows\System32\rundll32.exe [45568] [MD5.94355C28C1970635A31B3FE52EB7CEBA] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\windows\System32\Wininit.exe [129024] [MD5.C555B5C8142844DED9E3BD94E6313000] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\windows\System32\wininet.dll [2427904] [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\windows\System32\Winlogon.exe [455168] [MD5.067FA52BFB59A56110A12312EF9AF243] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\windows\System32\sppcomapi.dll [232448] [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\windows\System32\fr-FR\user32.dll.mui [20480] [MD5.FA886682CFC5D36718D3E436AACF10B9] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) () -- C:\windows\System32\drivers\AFD.sys [497152] [MD5.02062C0B390B7729EDC9E69C680A6F3C] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\windows\System32\drivers\atapi.sys [24128] [MD5.B8BD2BB284668C84865658C77574381A] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\windows\System32\drivers\Cdfs.sys [92160] [MD5.F036CE71586E93D94DAB220D7BDF4416] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\windows\System32\drivers\Cdrom.sys [147456] [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\windows\System32\drivers\DfsC.sys [102400] [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\windows\System32\drivers\HDAudBus.sys [122368] [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\windows\System32\drivers\i8042prt.sys [105472] [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\windows\System32\drivers\IpNat.sys [116224] [MD5.B2081803D510DCE174992BA880EDCA70] - (.Microsoft Corporation - Windows NT SMB Minirdr.) () -- C:\windows\System32\drivers\MRxSmb.sys [159232] [MD5.09594D1089C523423B32A4229263F068] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\windows\System32\drivers\netBT.sys [261632] [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\windows\System32\drivers\ntfs.sys [1684928] [MD5.0086431C29C35BE1DBC43F52CC273887] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\windows\System32\drivers\Parport.sys [97280] [MD5.471815800AE33E6F1C32FB1B97C490CA] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\windows\System32\drivers\Rasl2tp.sys [129536] [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - (.Microsoft Corporation - SMB Transport driver.) () -- C:\windows\System32\drivers\smb.sys [93184] [MD5.70988118145F5F10EF24720B97F35F65] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\windows\System32\drivers\tdx.sys [119296] [MD5.DF8126BD41180351A093A3AD2FC8903B] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\windows\System32\drivers\volsnap.sys [296320] ---\\ Processus lancés (60) - 2s [MD5.ACEC3397D7FE8DF37DAD3B175CA2E148] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1538672] [PID.840] [MD5.F4D36838C25AB847D1A759150B5E992F] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 355.6.) -- C:\windows\system32\nvvsvc.exe [937592] [PID.352] [MD5.F6D78F5436918952F1CB24BC48DB5B72] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [410744] [PID.1052] [MD5.67A95B9D129ED5399E7965CD09CF30E7] - (.Logitech Inc. - Logitech User mode UMVPF service.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848] [PID.1388] [MD5.013697369EAFFA675D0671607F036020] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2012] [MD5.A8561EC42C87EFDB8323EC14B1003494] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1251120] [PID.1608] [MD5.F4D36838C25AB847D1A759150B5E992F] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 355.6.) -- C:\windows\system32\nvvsvc.exe [937592] [PID.1756] [MD5.F7692E60147E56A1CEEE144974F41830] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe [918448] [PID.2180] [MD5.A63173897EA1A73A75D0E65036DE5B15] - (...) -- C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe [915584] [PID.2272] [MD5.5C31DFB196CB3A488A041881634D86D2] - (...) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880] [PID.2308] [MD5.6660C136C490DB14086CEA4B92C93050] - (.ASUSTeK Computer Inc. - ASUS Motherboard Fan Control Service.) -- C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.06\AsusFanControlService.exe [1399296] [PID.2332] [MD5.1C2B62D30100E6DC3C29B5344E73F99F] - (.Bitdefender - Bitdefender Parental Service.) -- C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632] [PID.2408] [MD5.75332ACF4843F1BABC8FFF6379B63501] - (.Microsoft Corp. - Bing Desktop updating service.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173248] [PID.2436] [MD5.0A403702CB00432AC818523CD416BF67] - (.ASUSTeK Computer Inc. - Device Handle.) -- C:\Windows\SysWOW64\AsHookDevice.exe [203392] [PID.2492] [MD5.4B015AACA104091DF767273653B1B883] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192] [PID.2668] [MD5.832CE330DD987227B7DEA8C03F22AEFA] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [628448] [PID.2736] [MD5.C44B44E24B929631D9D7368F5B2B40CF] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.2816] [MD5.FF23D09C29FBC3AC854692CE4535EBC0] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504] [PID.2952] [MD5.30524DD64CF6E47D093FAF5DD22BEB4D] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568] [PID.2976] [MD5.3A2E85F7D90D15460C337CE80C2E3B29] - (...) -- C:\Windows\SysWOW64\PnkBstrA.exe [76888] [PID.3052] [MD5.8F8C6EDB43BA9E60917ED76EA2E02CDE] - (.Razer, Inc. - Monitor Razer Overlay Driver Service.) -- C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe [32960] [PID.2104] [MD5.CFC9B7B465283378D374D5E380D5D244] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5611280] [PID.3004] [MD5.B239FDC885A77E4D5FB93AD1BA2A80EC] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320] [PID.3256] [MD5.F4310278E6CE1C507B5555B662369E26] - (.VIA Technologies, Inc. - Service binary.) -- C:\windows\system32\viakaraokesrv.exe [27760] [PID.3304] [MD5.2BACD71123F42CEA603F4E205E1AE337] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096] [PID.3408] [MD5.E228C336F195FA629D00B02F9FFC5667] - (.Bitdefender - Safebox Service.) -- C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624] [PID.3468] [MD5.2A46FFE841EC43001D5A293A54DB34DE] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223104] [PID.3620] [MD5.B3009DCDBCC5EFA49FA52562E9860E3C] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128] [PID.4740] [MD5.75F29D77B0540FCF47EE3BE000BBABDA] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.4652] [MD5.193AD338F2A64D17300AD640ADFA5D0A] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.3500] [MD5.76F78018F45E7F92164CEA5020176933] - (.Microsoft Corporation. - Microsoft SeaPort Search Enhancement Broker.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE [247968] [PID.4168] [MD5.576C72830E3FD6ACE2910545B6130803] - (.ASUSTeK Computer Inc. - ASUS Routine Controller.) -- C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2931328] [PID.2164] [MD5.D3A36CBDB0D37D41602E572D54F65A46] - (.ASUSTeK Computer Inc. - Tool to hook keyboard and handle hybrid-sle.) -- C:\Program Files (x86)\ASUS\ASUS Instant On\AsInstantOn.exe [1088128] [PID.1796] [MD5.38EA24C920E0C911EFBEB8560449B846] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [18267408] [PID.972] [MD5.D5F1ADEA6513A230E27A3ADAD2A3B160] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1757520] [PID.2004] [MD5.A202423724FAA9524036A2741FABB623] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872] [PID.4300] [MD5.99A6BD4CF4F79C48E4262B691B3849AD] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\tv_w32.exe [229136] [PID.2248] [MD5.7E9257BD4E0BF36C4A13150690877539] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\tv_x64.exe [263952] [PID.5068] [MD5.61E3B5BEE1C10954F53DC07282F2A61C] - (.Logitech Inc. - Logitech Vid HD.) -- C:\Program Files (x86)\Logitech\Vid HD\Vid.exe [6129496] [PID.4140] [MD5.0DFC21F95480B688E83C715A6C668095] - (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [568400] [PID.748] [MD5.DB1919F34AB9CD5F43B0ED463D7E8D28] - (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [615256] [PID.5140] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.5208] [MD5.EC5F07EE0509640FAE1F7430B8C4E8E8] - (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [3037296] [PID.5268] [MD5.BD712BF585CBE46FEC924398E852A29E] - (.ASUSTeK Computer Inc. - Helper AP for Windows ShellExec for NT.) -- C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe [232064] [PID.5284] [MD5.D783DC9A00B768503D6CAE2F5F8A8200] - (.ASUSTeK Computer Inc. - ALU MFC Application.) -- C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe [195200] [PID.5304] [MD5.8FFDB89A0FB7C8ABC3A8825E38047341] - (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136] [PID.5320] [MD5.46E91D8F23069D12CB990FE8A9B05CAA] - (.CANON INC. - Canon IJ Network Scan Utility.) -- C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe [206240] [PID.5392] [MD5.E4C53CE8409DCFF708C790A0AC76398D] - (...) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe [264040] [PID.5432] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.5660] [MD5.0EE5D949361FF92A318ED5267F6BE4A8] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2447992] [PID.5896] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.6020] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.6052] [MD5.7987DEDC6E73D01BD8FBED2907E0C0B6] - (.ASUSTeK Computer Inc. - EPUHelp.) -- C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe [1256576] [PID.6916] [MD5.B490DEFCF9A0129A8C6C470B910304FD] - (.Bitdefender - Bitdefender system tray app.) -- C:\Program Files\Bitdefender\Bitdefender\BdParentalSysTray.exe [111104] [PID.5180] [MD5.0F62973FD42754EC83E1AEE326BF9E2B] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [7545976] [PID.6332] [MD5.AC61D8FB00813CDFAB265ADB3745049A] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21931128] [PID.6252] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.3440] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.8176] [MD5.92B2CC464136BA72FF7E57DF98993ACA] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896] [PID.7020] [MD5.84867350CFF4C8551E5F5A3D355D8CB3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Dominique\Downloads\ZHPDiag3.exe [1901056] [PID.7308] ---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 0s G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast G2 - GCE: Preference [User Data\Default] [ccahoghmggldkcdjiebjkidpfongdfbl] Bitdefender Wallet G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gipjmkadfmnholahnobfgeboogdneacm] Aston Martin DBC Concept - Full HD - Axlg G2 - GCE: Preference [User Data\Default] [jnnbmiailafajdkboegcjcdklooomfic] WeatherBlink =>PUP.Optional.MindSpark G2 - GCE: Preference [User Data\Default] [lccekmodgklaepjeofjdjpbminllajkg] Chrome Hotword Shared Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (3) - 1s P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc..) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (6) - 0s O2 - BHO: Bitdefender Wallet [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office15\OCHelper.dll O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (.Microsoft Corporation. - Bing Client Extensions.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: Bing - [HKLM]{8dcb7100-df86-4384-8842-8fa844297b3f} . (.Microsoft Corporation. - Extensions du client Bing.) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll ---\\ Applications lancées au démarrage du système (31) - 0s O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender\bdagent.exe O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKCU\..\Run: [Logitech Vid] . (.Logitech Inc. - Logitech Vid HD.) -- C:\Program Files (x86)\Logitech\Vid HD\Vid.exe O4 - HKCU\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe O4 - HKCU\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe O4 - HKCU\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_742D9B777A09AF8323E6E20EF7238223] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O4 - HKLM\..\Wow6432Node\Run: [HDAudDeck] . (.VIA - VIA HD Audio CPL.) -- C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe O4 - HKLM\..\Wow6432Node\Run: [RunAIShell] . (.ASUSTeK Computer Inc. - Helper AP for Windows ShellExec for NT.) -- C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe O4 - HKLM\..\Wow6432Node\Run: [ASUS Easy Update] . (.ASUSTeK Computer Inc. - ALU MFC Application.) -- C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe O4 - HKLM\..\Wow6432Node\Run: [ASUSWebStorage] . (.ecareme - AsusWebStorage.) -- C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.104.216\AsusWSPanel.exe O4 - HKLM\..\Wow6432Node\Run: [LWS] . (.Logitech Inc. - Logitech Webcam Software.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe O4 - HKLM\..\Wow6432Node\Run: [BingDesktop] . (.Microsoft Corp. - Bing Desktop Application.) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe O4 - HKUS\.DEFAULT\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe O4 - HKUS\S-1-5-18\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe O4 - HKUS\S-1-5-21-2938748494-1983511254-4015293709-1000\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe O4 - HKUS\S-1-5-21-2938748494-1983511254-4015293709-1000\..\Run: [Logitech Vid] . (.Logitech Inc. - Logitech Vid HD.) -- C:\Program Files (x86)\Logitech\Vid HD\Vid.exe O4 - HKUS\S-1-5-21-2938748494-1983511254-4015293709-1000\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Password Manager Agent.) -- C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe O4 - HKUS\S-1-5-21-2938748494-1983511254-4015293709-1000\..\Run: [Bitdefender Agent de l'application Wallet] . (.Bitdefender - Bitdefender Application Password Manager Ag.) -- C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe O4 - HKUS\S-1-5-21-2938748494-1983511254-4015293709-1000\..\Run: [Bitdefender Wallet] . (.Bitdefender - Bitdefender Password Manager.) -- C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe O4 - HKUS\S-1-5-21-2938748494-1983511254-4015293709-1000\..\Run: [GoogleChromeAutoLaunch_742D9B777A09AF8323E6E20EF7238223] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS2\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (23) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL ---\\ Liste des services NT non Microsoft et non désactivés (28) - 0s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe O23 - Service: ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe O23 - Service: ASUS HM Com Service (asHmComSvc) . (...) - C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe O23 - Service: ASUS System Control Service (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe O23 - Service: AsusFanControlService (AsusFanControlService) . (.ASUSTeK Computer Inc. - ASUS Motherboard Fan Control Service.) - C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.06\AsusFanControlService.exe O23 - Service: Bitdefender Desktop Parental Control (BdDesktopParental) . (.Bitdefender - Bitdefender Parental Service.) - C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe O23 - Service: Device Handle Service (Device Handle Service) . (.ASUSTeK Computer Inc. - Device Handle.) - C:\Windows\SysWOW64\AsHookDevice.exe O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 355.6.) - C:\windows\system32\nvvsvc.exe O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe (.not file.) O23 - Service: Razer Overlay Subsystem Emergency Service (RzOvlMon) . (.Razer, Inc. - Monitor Razer Overlay Driver Service.) - C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe O23 - Service: SafeBox (SafeBox) . (.Bitdefender - Safebox Service.) - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe O23 - Service: Service KMSELDI (Service KMSELDI) . (. - Service_KMS.) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe O23 - Service: (UMVPFSrv) . (.Logitech Inc. - Logitech User mode UMVPF service.) - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe O23 - Service: VIA Karaoke digital mixer Service (VIAKaraokeService) . (.VIA Technologies, Inc. - Service binary.) - C:\windows\system32\viakaraokesrv.exe O23 - Service: Bitdefender Virus Shield (VSSERV) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender\vsserv.exe ---\\ Tâches planifiées en automatique (30) - 4s [MD5.E3FB05F33E1404AD606B1E1FE7C323C3] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [998104] [MD5.368290D0A612D62DA6F3D798B1BB8FE7] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] [MD5.E3FEA8060978EAB6FA5D40E74DE6308B] [APT] [AutoPico Daily Restart] (...) -- C:\Program Files\KMSpico\AutoPico.exe [1051416] =>HackTool.KMSpico [MD5.BC14706D68E7F855735369CFEE4028C7] [APT] [Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8] (.Bitdefender.) -- C:\Program Files\Bitdefender\Bitdefender\bdproductdata.exe [98208] [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000Core] (.Facebook Inc..) -- C:\Users\Dominique\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000UA] (.Facebook Inc..) -- C:\Users\Dominique\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.506708142BC63DABA64F2D3AD1DCD5BF] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648] [MD5.00000000000000000000000000000000] [APT] [{27685169-D159-4F86-B2DB-AD6A14B177DE}] (...) -- F:\MJCamTool_.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{7EDA335C-B60D-494F-A199-4BFC63409DB7}] (...) -- F:\MJCamTool_.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [{BF7D6082-3EFF-4050-BFB0-12E3CA2546DC}] (...) -- c:\users\dominique\appdata\local\google\chrome\application\chrome.exe (.not file.) [0] [MD5.D241DDF08B6BEB9E5EAF01E2B8829EA8] [APT] [ASUS\AsBackupWizard_Run] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\AsBackupWizard\AsRunBkWizardHelper.exe [563840] [MD5.576C72830E3FD6ACE2910545B6130803] [APT] [ASUS\ASUS AI Suite II Execute] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2931328] [MD5.D3A36CBDB0D37D41602E572D54F65A46] [APT] [ASUS\Asus HybridSleep Helper] (.ASUSTeK Computer Inc..) -- C:\Program Files (x86)\ASUS\ASUS Instant On\AsInstantOn.exe [1088128] O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated O39 - APT: FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000Core - (.Facebook Inc..) -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000Core.job [922] =>.Facebook Inc. O39 - APT: FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000UA - (.Facebook Inc..) -- C:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000UA.job [944] =>.Facebook Inc. O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] =>.Google Inc. O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\windows\System32\Tasks\Adobe Acrobat Update Task [3886] =>.Adobe Systems Incorporated O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated O39 - APT: AutoPico Daily Restart - (...) -- C:\windows\System32\Tasks\AutoPico Daily Restart [3712] =>HackTool.KMSpico O39 - APT: Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 - (.Bitdefender.) -- C:\windows\System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 [3498] =>.Bitdefender O39 - APT: FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000Core - (.Facebook Inc..) -- C:\windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000Core [3560] =>.Facebook Inc. O39 - APT: FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000UA - (.Facebook Inc..) -- C:\windows\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2938748494-1983511254-4015293709-1000UA [3928] =>.Facebook Inc. O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] =>.Google Inc. O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] =>.Google Inc. O39 - APT: {27685169-D159-4F86-B2DB-AD6A14B177DE} - (...) -- C:\windows\System32\Tasks\{27685169-D159-4F86-B2DB-AD6A14B177DE} [2916] O39 - APT: {7EDA335C-B60D-494F-A199-4BFC63409DB7} - (...) -- C:\windows\System32\Tasks\{7EDA335C-B60D-494F-A199-4BFC63409DB7} [2916] O39 - APT: {BF7D6082-3EFF-4050-BFB0-12E3CA2546DC} - (...) -- C:\windows\System32\Tasks\{BF7D6082-3EFF-4050-BFB0-12E3CA2546DC} [3134] ---\\ Logiciels installés (110) - 4s O42 - Logiciel: Bitdefender Total Security - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender O42 - Logiciel: KMSpico v9.1.3 - (...) [HKLM][64Bits] -- KMSpico_is1 =>HackTool.KMSpico O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {09536BA1-E498-4CC3-B834-D884A67D7E34} O42 - Logiciel: Canon MG6100 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6100_series O42 - Logiciel: ASUS Music Maker - (.MAGIX AG.) [HKLM][64Bits] -- {5E00D8DF-905B-41C7-B562-C126DE3A4167} O42 - Logiciel: ASUS Vidéo easy - (.MAGIX AG.) [HKLM][64Bits] -- {7DB84618-76E3-4999-A9A0-D7D756E14129} O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} O42 - Logiciel: Security Update for Skype for Business 2015 (KB3055014) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2B62DE-0BBD-421A-A0F8-4517146C7725} O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} O42 - Logiciel: Security Update for Skype for Business 2015 (KB3055014) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8C2B62DE-0BBD-421A-A0F8-4517146C7725} O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} O42 - Logiciel: Security Update for Skype for Business 2015 (KB3055014) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{8C2B62DE-0BBD-421A-A0F8-4517146C7725} O42 - Logiciel: Update for Skype for Business 2015 (KB2889853) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{DD51BA84-F589-4939-B5FE-5538B3DCC12E} O42 - Logiciel: ASUS MX Suite - (.MAGIX AG.) [HKLM][64Bits] -- {9204F334-2A46-49F1-89C4-65CEB7AC1974} O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {9301985B-D116-4A93-A93D-94580084FF86} O42 - Logiciel: NVIDIA Pilote 3D Vision 355.60 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision O42 - Logiciel: NVIDIA Pilote graphique 355.60 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver O42 - Logiciel: NVIDIA GeForce Experience 2.5.13.6 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB O42 - Logiciel: NVIDIA Logiciel système PhysX 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver O42 - Logiciel: Adobe Photoshop Lightroom 5.7.1 64-bit - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BC86B82C-8C0E-4408-9AC1-6B0F2D636963} O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX O42 - Logiciel: AsusVibe2.0 - (.ASUSTEK.) [HKLM][64Bits] -- Asus Vibe2.0 O42 - Logiciel: ASUS WebStorage - (.eCareme Technologies, Inc..) [HKLM][64Bits] -- ASUS WebStorage O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net O42 - Logiciel: Canon IJ Network Scan Utility - (...) [HKLM][64Bits] -- Canon_IJ_Network_Scan_UTILITY O42 - Logiciel: Canon IJ Network Tool - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_UTILITY O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome O42 - Logiciel: Guild Wars 2 - (.NCsoft Corporation, Ltd..) [HKLM][64Bits] -- Guild Wars 2 O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone O42 - Logiciel: VIA Platform Device Manager - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 O42 - Logiciel: Logitech Vid HD - (.Logitech Inc...) [HKLM][64Bits] -- Logitech Vid O42 - Logiciel: ASUS Music Maker - (.MAGIX AG.) [HKLM][64Bits] -- MAGIX_{5E00D8DF-905B-41C7-B562-C126DE3A4167} O42 - Logiciel: ASUS Vidéo easy - (.MAGIX AG.) [HKLM][64Bits] -- MAGIX_{7DB84618-76E3-4999-A9A0-D7D756E14129} O42 - Logiciel: ASUS MX Suite - (.MAGIX AG.) [HKLM][64Bits] -- MAGIX_{9204F334-2A46-49F1-89C4-65CEB7AC1974} O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo O42 - Logiciel: Razer Core - (.Razer Inc.) [HKLM][64Bits] -- Razer Core O42 - Logiciel: Arma 3 - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 107410 O42 - Logiciel: Sid Meier's Civilization V - (.2K Games, Inc..) [HKLM][64Bits] -- Steam App 8930 O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay O42 - Logiciel: World of Warcraft - (.Blizzard Entertainment.) [HKLM][64Bits] -- World of Warcraft O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- {048298C9-A4D3-490B-9FF9-AB023A9238F3} O42 - Logiciel: LWS Pictures And Video - (.Logitech.) [HKLM][64Bits] -- {08610298-29AE-445B-B37D-EFBE05802967} O42 - Logiciel: Razer Synapse 2.0 - (.Razer Inc..) [HKLM][64Bits] -- {0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6} O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} O42 - Logiciel: ASUS Backup Wizard - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {124C9BD0-8C52-40AB-8238-0605703B1C28} O42 - Logiciel: CameraHelperMsi - (.Logitech.) [HKLM][64Bits] -- {15634701-BACE-4449-8B25-1567DA8C9FD3} O42 - Logiciel: LWS Help_main - (.Logitech.) [HKLM][64Bits] -- {1651216E-E7AD-4250-92A1-FB8ED61391C9} O42 - Logiciel: LWS Twitter - (.Logitech.) [HKLM][64Bits] -- {174A3B31-4C43-43DD-866F-73C9DB887B48} O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} O42 - Logiciel: World of Tanks - (.Wargaming.net.) [HKLM][64Bits] -- {1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1 O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} O42 - Logiciel: LWS YouTube Plugin - (.Logitech.) [HKLM][64Bits] -- {21DF0294-6B9D-4741-AB6F-B2ABFBD2387E} O42 - Logiciel: Skype™ 7.4 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} O42 - Logiciel: Complément Office 2007 - Microsoft Enregistrer en tant que PDF ou XPS (Beta - (.Microsoft Corporation.) [HKLM][64Bits] -- {30120000-00B2-040C-0000-0000000FF1CE} O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {3365E735-48A6-4194-9988-CE59AC5AE503} O42 - Logiciel: AI Suite II - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {34D3688E-A737-44C5-9E2A-FF73618728E1} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2721691) - (.Microsoft Corporation.) [HKLM][64Bits] -- {355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36} O42 - Logiciel: erLT - (.Logitech, Inc..) [HKLM][64Bits] -- {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} O42 - Logiciel: AI Manager - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {4AF95DE2-B54D-4C3F-9494-FD3B558E2C2D} O42 - Logiciel: msvcrt_installer - (.SAH.) [HKLM][64Bits] -- {6068A42A-C1CF-45F2-9859-5DB16287FE5D} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM][64Bits] -- {6C5F8503-55D2-4398-858C-362B7A7AF51C} O42 - Logiciel: LWS Gallery - (.Logitech.) [HKLM][64Bits] -- {6F76EC3C-34B1-436E-97FB-48C58D7BEDCD} O42 - Logiciel: LWS Motion Detection - (.Logitech.) [HKLM][64Bits] -- {71E66D3F-A009-44AB-8784-75E2819BA4BA} O42 - Logiciel: Samsung Kies - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {758C8301-2696-4855-AF45-534B1200980A} O42 - Logiciel: Bing Bureau - (.Microsoft Corporation.) [HKLM][64Bits] -- {7D095455-D971-4D4C-9EFD-9AF6A6584F3A} O42 - Logiciel: LWS Launcher - (.Logitech.) [HKLM][64Bits] -- {83C8FA3C-F4EA-46C4-8392-D3CE353738D6} O42 - Logiciel: MSXML 4.0 SP3 Parser (KB973685) - (.Microsoft Corporation.) [HKLM][64Bits] -- {859DFA95-E4A6-48CD-B88E-A3E483E89B44} O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} O42 - Logiciel: LWS Webcam Software - (.Logitech.) [HKLM][64Bits] -- {8937D274-C281-42E4-8CDB-A0B2DF979189} O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} O42 - Logiciel: LWS WLM Plugin - (.Logitech.) [HKLM][64Bits] -- {9DAEA76B-E50F-4272-A595-0124E826553D} O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824147215} O42 - Logiciel: Adobe Reader XI (11.0.12) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} O42 - Logiciel: ASUS Instant On - (.ASUSTeK Computer Inc..) [HKLM][64Bits] -- {CCC4652E-F5E0-498A-84F3-5DDBEF84642B} O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} O42 - Logiciel: MJCamTool - (...) [HKLM][64Bits] -- {D1E4A814-3FAE-49B5-8018-F0D789155273} O42 - Logiciel: Logitech Webcam Software - (.Logitech Inc..) [HKLM][64Bits] -- {D40EB009-0499-459c-A8AF-C9C110766215} O42 - Logiciel: Realtek Ethernet Diagnostic Utility - (.Realtek.) [HKLM][64Bits] -- {DADC7AB0-E554-4705-9F6A-83EA82ED708E} O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: ASUS Easy Update - (.ASUSTeK Computer Inc.) [HKLM][64Bits] -- {E7AA854E-6756-424E-84C2-4E47D5729AFF} O42 - Logiciel: Ralink RT2860 Wireless LAN Card - (.Ralink.) [HKLM][64Bits] -- {E883ECE4-1189-413A-894D-B7C4B17F0607} O42 - Logiciel: War Thunder Launcher 1.0.1.252 - (.2013 Gaijin Entertainment Corporation.) [HKLM][64Bits] -- {ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1 O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} O42 - Logiciel: LWS Facebook - (.Logitech.) [HKLM][64Bits] -- {FF167195-9EE4-46C0-8CD7-FBA3457E88AB} O42 - Logiciel: Orange Player - (.video-a-la-demande.orange.fr.) [HKCU][64Bits] -- 1043820071.video-a-la-demande.orange.fr O42 - Logiciel: Orange Player Communicator - (.video-a-la-demande.orange.fr.) [HKCU][64Bits] -- 1044256356.video-a-la-demande.orange.fr O42 - Logiciel: MyFreeCodec - (...) [HKCU][64Bits] -- MyFreeCodec O42 - Logiciel: World of Warships - (.Wargaming.net.) [HKCU][64Bits] -- {1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1 ---\\ HKCU & HKLM Software Keys (81) - 4s HKLM\SOFTWARE\Wow6432Node\8169Diag HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ArenaNet HKLM\SOFTWARE\Wow6432Node\ASUS HKLM\SOFTWARE\Wow6432Node\Bitdefender HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment HKLM\SOFTWARE\Wow6432Node\bohemia interactive HKLM\SOFTWARE\Wow6432Node\Canon HKLM\SOFTWARE\Wow6432Node\ECAREME HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\lameme HKLM\SOFTWARE\Wow6432Node\logishrd HKLM\SOFTWARE\Wow6432Node\Logitech HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MAGIX HKLM\SOFTWARE\Wow6432Node\McAfee.com HKLM\SOFTWARE\Wow6432Node\mcafeeupdater HKLM\SOFTWARE\Wow6432Node\MJCamTool HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Ralink HKLM\SOFTWARE\Wow6432Node\Razer HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\Ubisoft HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VIA Technologies, Inc HKLM\SOFTWARE\Wow6432Node\webtogo HKLM\SOFTWARE\Wow6432Node\Even Balance HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Adobe Lightroom HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ASUS HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Bitdefender HKCU\SOFTWARE\Blizzard Entertainment HKCU\SOFTWARE\Bohemia Interactive HKCU\SOFTWARE\Canon HKCU\SOFTWARE\ECAREME HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\Firaxis HKCU\SOFTWARE\Gaijin HKCU\SOFTWARE\Google HKCU\SOFTWARE\HookNetwork HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Leadertech HKCU\SOFTWARE\LogiShrd HKCU\SOFTWARE\Logitech HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MCAFEE HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Wargaming.net HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\AppDataLow ---\\ Contenu des dossiers Programmes (299) - 8s O43 - CFD: 2013/12/04 19:45:58 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2012/09/05 18:10:58 - [] D -- C:\Program Files (x86)\ASUS O43 - CFD: 2015/07/29 13:36:18 - [] D -- C:\Program Files (x86)\Battle.net O43 - CFD: 2015/07/26 15:50:14 - [] D -- C:\Program Files (x86)\Canon O43 - CFD: 2015/07/26 15:12:53 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/01/24 13:15:40 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2014/01/24 13:22:19 - [0] D -- C:\Program Files (x86)\GUM1371.tmp O43 - CFD: 2014/01/24 13:15:46 - [0] D -- C:\Program Files (x86)\GUMB0E8.tmp O43 - CFD: 2015/06/26 16:14:57 - [] D -- C:\Program Files (x86)\Hearthstone O43 - CFD: 2014/07/23 16:40:13 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2012/09/06 02:48:52 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/08/19 14:54:16 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2013/04/23 15:16:14 - [] D -- C:\Program Files (x86)\Logitech O43 - CFD: 2013/12/04 19:05:28 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2015/07/26 15:15:27 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/02/21 03:50:54 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET O43 - CFD: 2013/04/25 20:16:01 - [] D -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2 O43 - CFD: 2012/05/11 07:29:20 - [] D -- C:\Program Files (x86)\Microsoft Chart Controls O43 - CFD: 2015/07/26 15:15:14 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/08/19 02:24:42 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/07/26 15:17:35 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2012/05/11 07:36:54 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2015/07/28 03:20:57 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2014/11/10 17:36:29 - [] D -- C:\Program Files (x86)\MJCamTool O43 - CFD: 2015/07/28 16:09:18 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/07/26 15:12:46 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2013/06/10 23:17:32 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 2012/05/11 07:28:09 - [] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 2014/02/28 00:08:05 - [] D -- C:\Program Files (x86)\MyFree Codec O43 - CFD: 2015/02/19 21:06:29 - [] D -- C:\Program Files (x86)\NVIDIA Corporation O43 - CFD: 2015/02/13 13:35:39 - [] D -- C:\Program Files (x86)\Razer O43 - CFD: 2012/05/11 07:22:20 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2014/02/28 00:08:35 - [] D -- C:\Program Files (x86)\Samsung O43 - CFD: 2015/04/16 18:41:03 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2015/08/18 15:50:37 - [] D -- C:\Program Files (x86)\TeamViewer O43 - CFD: 2014/05/28 00:05:16 - [] D -- C:\Program Files (x86)\Ubisoft O43 - CFD: 2009/07/14 06:57:06 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 2012/05/11 07:15:34 - [] D -- C:\Program Files (x86)\VIA O43 - CFD: 2013/07/22 03:39:55 - [] D -- C:\Program Files (x86)\War Thunder O43 - CFD: 2013/07/22 03:22:08 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2013/04/23 15:12:38 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2012/09/07 00:36:20 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/06/11 13:35:34 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2009/07/14 07:32:38 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2012/09/07 00:36:19 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2010/11/21 05:31:38 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2012/09/07 00:36:20 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/07/29 17:23:25 - [] D -- C:\Program Files (x86)\Zenimax Online O43 - CFD: 2014/03/30 18:52:23 - [] HD -- C:\Program Files (x86)\Zero G Registry O43 - CFD: 2013/12/04 19:21:58 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2009/07/14 06:57:13 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2012/09/05 18:11:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS O43 - CFD: 2015/02/18 17:54:57 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net O43 - CFD: 2015/04/17 13:20:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bing Bureau O43 - CFD: 2013/12/04 18:21:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender O43 - CFD: 2015/07/26 15:50:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon IJ Network Utilities O43 - CFD: 2015/07/26 15:50:28 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG6100 series O43 - CFD: 2015/07/26 15:50:14 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities O43 - CFD: 2014/05/28 00:04:56 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2014/01/24 13:15:46 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2012/09/05 18:35:39 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 O43 - CFD: 2015/02/18 18:00:15 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone O43 - CFD: 2015/07/26 15:21:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico O43 - CFD: 2013/11/25 16:30:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech O43 - CFD: 2009/07/14 06:57:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/19 02:26:06 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 2015/08/19 02:25:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2014/07/23 16:40:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MJCamTool O43 - CFD: 2014/02/28 00:08:06 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyFree Codec O43 - CFD: 2015/08/20 16:16:16 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 2014/06/17 15:53:08 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer O43 - CFD: 2012/05/11 07:22:20 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek O43 - CFD: 2014/02/28 00:06:13 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung O43 - CFD: 2014/11/10 19:12:40 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/07/20 17:05:52 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2013/05/26 16:06:04 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 2011/04/12 10:28:03 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2012/09/05 20:48:50 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client O43 - CFD: 2012/05/11 07:38:12 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 2014/03/04 01:37:07 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks O43 - CFD: 2015/02/19 14:07:25 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft O43 - CFD: 2015/07/28 21:08:22 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warships O43 - CFD: 2015/07/26 15:29:48 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2012/09/05 18:10:58 - [] D -- C:\ProgramData\ASUS O43 - CFD: 2012/05/11 07:21:25 - [] D -- C:\ProgramData\ASUS WebStorage O43 - CFD: 2015/02/18 17:53:28 - [] D -- C:\ProgramData\Battle.net O43 - CFD: 2014/03/28 01:59:30 - [] D -- C:\ProgramData\bdch O43 - CFD: 2013/12/04 18:21:42 - [] D -- C:\ProgramData\BDLogging O43 - CFD: 2013/12/04 20:10:23 - [] D -- C:\ProgramData\Bitdefender O43 - CFD: 2015/02/18 17:54:57 - [] D -- C:\ProgramData\Blizzard Entertainment O43 - CFD: 2015/04/20 19:26:38 - [] D -- C:\ProgramData\Bohemia Interactive O43 - CFD: 2015/07/26 15:50:14 - [0] D -- C:\ProgramData\Canon IJ Network Tool O43 - CFD: 2013/08/07 20:50:25 - [] HD -- C:\ProgramData\CanonBJ O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2014/04/01 14:42:19 - [] D -- C:\ProgramData\Elder Scrolls Online O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 2012/05/11 07:17:36 - [] D -- C:\ProgramData\Intel O43 - CFD: 2013/04/23 15:06:51 - [] D -- C:\ProgramData\LogiShrd O43 - CFD: 2013/04/23 15:15:17 - [] D -- C:\ProgramData\Logitech O43 - CFD: 2012/09/05 18:12:39 - [] D -- C:\ProgramData\MAGIX O43 - CFD: 2013/12/04 19:46:15 - [] D -- C:\ProgramData\McAfee O43 - CFD: 2015/07/26 15:17:10 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/08/19 02:25:55 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/08/23 12:07:02 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 2015/08/20 16:01:26 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 2015/04/20 19:14:19 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2012/09/05 18:08:22 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 2014/06/17 15:54:14 - [] D -- C:\ProgramData\Razer O43 - CFD: 2015/07/26 15:17:25 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2014/02/28 00:08:24 - [] D -- C:\ProgramData\Samsung O43 - CFD: 2015/05/20 18:07:46 - [] D -- C:\ProgramData\Skype O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2009/07/14 07:08:56 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2013/12/04 17:53:14 - [] D -- C:\ProgramData\Trend Micro O43 - CFD: 2013/07/22 03:40:00 - [] D -- C:\ProgramData\WarThunder O43 - CFD: 2013/12/04 19:46:00 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2013/12/04 17:52:32 - [] D -- C:\Program Files (x86)\Common Files\Bitdefender O43 - CFD: 2015/02/18 18:00:16 - [0] D -- C:\Program Files (x86)\Common Files\Blizzard Entertainment O43 - CFD: 2014/07/23 16:39:52 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2013/12/12 19:05:11 - [] D -- C:\Program Files (x86)\Common Files\logishrd O43 - CFD: 2013/11/25 16:31:43 - [0] D -- C:\Program Files (x86)\Common Files\LWS O43 - CFD: 2012/09/05 18:10:58 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services O43 - CFD: 2015/07/26 15:17:12 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 2012/05/11 07:17:12 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2014/11/10 19:12:40 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2009/07/14 05:20:08 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/07/05 17:56:12 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 2015/07/26 15:11:42 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2012/05/11 07:30:50 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2015/07/26 15:32:50 - [] D -- C:\Users\Dominique\AppData\Roaming\Adobe O43 - CFD: 2012/05/11 07:21:27 - [] D -- C:\Users\Dominique\AppData\Roaming\ASUS WebStorage O43 - CFD: 2014/04/10 21:00:13 - [] D -- C:\Users\Dominique\AppData\Roaming\Awesomium O43 - CFD: 2015/02/18 17:59:31 - [] D -- C:\Users\Dominique\AppData\Roaming\Battle.net O43 - CFD: 2013/12/04 18:21:49 - [] D -- C:\Users\Dominique\AppData\Roaming\Bitdefender O43 - CFD: 2015/03/04 15:27:28 - [] D -- C:\Users\Dominique\AppData\Roaming\Guild Wars 2 O43 - CFD: 2011/12/28 03:20:45 - [] D -- C:\Users\Dominique\AppData\Roaming\Identities O43 - CFD: 2012/05/11 07:17:06 - [] D -- C:\Users\Dominique\AppData\Roaming\InstallShield O43 - CFD: 2013/04/23 15:15:54 - [] D -- C:\Users\Dominique\AppData\Roaming\Leadertech O43 - CFD: 2012/09/05 18:22:08 - [] D -- C:\Users\Dominique\AppData\Roaming\Macromedia O43 - CFD: 2012/09/05 18:12:39 - [] D -- C:\Users\Dominique\AppData\Roaming\MAGIX O43 - CFD: 2011/04/12 10:28:03 - [0] D -- C:\Users\Dominique\AppData\Roaming\Media Center Programs O43 - CFD: 2015/07/26 15:27:30 - [] SD -- C:\Users\Dominique\AppData\Roaming\Microsoft O43 - CFD: 2013/06/11 14:51:21 - [] D -- C:\Users\Dominique\AppData\Roaming\NVIDIA O43 - CFD: 2013/12/04 18:14:59 - [0] D -- C:\Users\Dominique\AppData\Roaming\QuickScan O43 - CFD: 2014/02/28 00:10:13 - [] D -- C:\Users\Dominique\AppData\Roaming\Samsung O43 - CFD: 2015/07/28 19:44:35 - [] D -- C:\Users\Dominique\AppData\Roaming\Skype O43 - CFD: 2015/07/20 17:18:13 - [] D -- C:\Users\Dominique\AppData\Roaming\TeamViewer O43 - CFD: 2012/09/05 20:52:32 - [] D -- C:\Users\Dominique\AppData\Roaming\TS3Client O43 - CFD: 2014/03/04 03:58:57 - [] D -- C:\Users\Dominique\AppData\Roaming\Wargaming.net O43 - CFD: 2015/06/16 17:24:43 - [0] D -- C:\Users\Dominique\AppData\Roaming\Windows Live Writer O43 - CFD: 2015/08/23 16:51:41 - [] D -- C:\Users\Dominique\AppData\Roaming\ZHP O43 - CFD: 2015/07/26 15:32:40 - [] D -- C:\Users\Dominique\AppData\Local\Adobe O43 - CFD: 2012/09/05 18:05:55 - [0] SHD -- C:\Users\Dominique\AppData\Local\Application Data O43 - CFD: 2012/09/05 20:34:59 - [] D -- C:\Users\Dominique\AppData\Local\Apps O43 - CFD: 2015/04/23 18:14:02 - [] D -- C:\Users\Dominique\AppData\Local\Arma 3 O43 - CFD: 2015/04/20 19:31:35 - [] D -- C:\Users\Dominique\AppData\Local\Arma 3 Launcher O43 - CFD: 2015/07/29 14:19:26 - [] D -- C:\Users\Dominique\AppData\Local\Battle.net O43 - CFD: 2015/02/18 17:55:06 - [] D -- C:\Users\Dominique\AppData\Local\Blizzard Entertainment O43 - CFD: 2015/04/20 19:16:28 - [] D -- C:\Users\Dominique\AppData\Local\Bohemia_Interactive O43 - CFD: 2014/01/24 13:15:02 - [0] D -- C:\Users\Dominique\AppData\Local\Deployment O43 - CFD: 2015/08/02 17:44:34 - [0] D -- C:\Users\Dominique\AppData\Local\Diagnostics O43 - CFD: 2014/02/28 00:05:15 - [] D -- C:\Users\Dominique\AppData\Local\Downloaded Installations O43 - CFD: 2015/08/18 17:14:29 - [] D -- C:\Users\Dominique\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/12 01:34:26 - [0] SHD -- C:\Users\Dominique\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/06/12 01:34:26 - [0] SHD -- C:\Users\Dominique\AppData\Local\EmieSiteList O43 - CFD: 2015/06/12 01:34:26 - [0] SHD -- C:\Users\Dominique\AppData\Local\EmieUserList O43 - CFD: 2013/06/11 14:51:07 - [] D -- C:\Users\Dominique\AppData\Local\Facebook O43 - CFD: 2014/01/24 13:15:46 - [] D -- C:\Users\Dominique\AppData\Local\Google O43 - CFD: 2015/06/02 15:32:23 - [] D -- C:\Users\Dominique\AppData\Local\GWX O43 - CFD: 2012/09/05 18:05:55 - [0] SHD -- C:\Users\Dominique\AppData\Local\Historique O43 - CFD: 2013/04/23 15:19:46 - [] D -- C:\Users\Dominique\AppData\Local\LogiShrd O43 - CFD: 2013/04/23 15:21:30 - [] D -- C:\Users\Dominique\AppData\Local\Logitech® Webcam Software O43 - CFD: 2015/08/02 20:46:47 - [] D -- C:\Users\Dominique\AppData\Local\Microsoft O43 - CFD: 2013/06/10 23:13:35 - [0] D -- C:\Users\Dominique\AppData\Local\Microsoft Help O43 - CFD: 2013/05/26 17:08:11 - [] D -- C:\Users\Dominique\AppData\Local\My Games O43 - CFD: 2015/02/19 21:07:19 - [] D -- C:\Users\Dominique\AppData\Local\NVIDIA O43 - CFD: 2015/02/27 16:27:45 - [] D -- C:\Users\Dominique\AppData\Local\NVIDIA Corporation O43 - CFD: 2014/05/05 23:18:17 - [] D -- C:\Users\Dominique\AppData\Local\oeil2lynx O43 - CFD: 2013/09/04 21:56:31 - [] D -- C:\Users\Dominique\AppData\Local\Orange Player O43 - CFD: 2013/07/21 22:43:39 - [] D -- C:\Users\Dominique\AppData\Local\Programs O43 - CFD: 2013/08/17 12:13:34 - [] D -- C:\Users\Dominique\AppData\Local\PunkBuster O43 - CFD: 2014/06/19 10:43:21 - [] D -- C:\Users\Dominique\AppData\Local\Razer O43 - CFD: 2014/06/17 16:08:36 - [] D -- C:\Users\Dominique\AppData\Local\Razer_Inc O43 - CFD: 2014/02/28 00:10:15 - [] D -- C:\Users\Dominique\AppData\Local\Samsung O43 - CFD: 2014/03/01 20:41:24 - [] D -- C:\Users\Dominique\AppData\Local\Skype O43 - CFD: 2015/02/19 13:15:40 - [] D -- C:\Users\Dominique\AppData\Local\Steam O43 - CFD: 2015/08/23 16:50:59 - [] D -- C:\Users\Dominique\AppData\Local\Temp O43 - CFD: 2012/09/05 18:05:55 - [0] SHD -- C:\Users\Dominique\AppData\Local\Temporary Internet Files O43 - CFD: 2012/09/11 15:06:05 - [] D -- C:\Users\Dominique\AppData\Local\Trend Micro O43 - CFD: 2014/05/28 00:42:22 - [] D -- C:\Users\Dominique\AppData\Local\Ubisoft Game Launcher O43 - CFD: 2015/07/04 19:23:08 - [] D -- C:\Users\Dominique\AppData\Local\VirtualStore O43 - CFD: 2013/07/21 22:44:16 - [0] D -- C:\Users\Dominique\AppData\Local\WarThunder O43 - CFD: 2015/07/30 18:06:15 - [] D -- C:\Users\Dominique\AppData\Local\Windows Live O43 - CFD: 2015/06/16 17:24:51 - [] D -- C:\Users\Dominique\AppData\Local\Windows Live Writer O43 - CFD: 2013/01/09 16:32:02 - [0] D -- C:\Users\Dominique\AppData\Local\{03CACD6C-4A94-44D0-BF3C-FE652FC0E999} O43 - CFD: 2012/10/19 13:23:14 - [0] D -- C:\Users\Dominique\AppData\Local\{083359A3-BC5A-4DD0-B716-B049D21DA094} O43 - CFD: 2012/10/02 14:30:55 - [0] D -- C:\Users\Dominique\AppData\Local\{08B7560D-FAEB-4D72-AFD2-D4CD33A0B205} O43 - CFD: 2012/10/15 13:35:28 - [0] D -- C:\Users\Dominique\AppData\Local\{09A3EC81-E9FA-4C52-87EA-17209BD6E773} O43 - CFD: 2013/01/19 07:33:29 - [0] D -- C:\Users\Dominique\AppData\Local\{09C42285-C613-40AA-8546-1236A497ED30} O43 - CFD: 2012/09/26 13:40:06 - [0] D -- C:\Users\Dominique\AppData\Local\{09F18F45-F325-4071-A29F-5258B761C2F3} O43 - CFD: 2012/12/21 18:46:38 - [0] D -- C:\Users\Dominique\AppData\Local\{0DECFD03-7056-4F2D-8825-2124BC42B734} O43 - CFD: 2012/09/25 13:09:39 - [0] D -- C:\Users\Dominique\AppData\Local\{0E8662B2-EAD6-43C5-83E7-8982A153D0AE} O43 - CFD: 2013/05/28 16:25:53 - [0] D -- C:\Users\Dominique\AppData\Local\{11C85664-6952-47DF-A7F5-0CEE97843C00} O43 - CFD: 2012/11/23 11:42:15 - [0] D -- C:\Users\Dominique\AppData\Local\{21212029-5E04-46E2-9A52-561A4EC791EC} O43 - CFD: 2012/11/27 12:09:31 - [0] D -- C:\Users\Dominique\AppData\Local\{224EC28B-50D8-4177-A5D0-FD874B8A24EA} O43 - CFD: 2012/11/01 00:36:41 - [0] D -- C:\Users\Dominique\AppData\Local\{234A1F5A-B9A9-4841-AA48-C0BCA942E479} O43 - CFD: 2013/01/22 11:36:53 - [0] D -- C:\Users\Dominique\AppData\Local\{2631225F-612D-4DCF-A9BF-284520E56CBD} O43 - CFD: 2012/10/25 13:03:38 - [0] D -- C:\Users\Dominique\AppData\Local\{289C1A48-E207-4B2B-8D51-AECF6C51BA29} O43 - CFD: 2012/12/02 12:01:45 - [0] D -- C:\Users\Dominique\AppData\Local\{30D49D22-BF28-4069-9870-298A5240AB90} O43 - CFD: 2012/09/18 16:03:58 - [0] D -- C:\Users\Dominique\AppData\Local\{3141E4A2-EB24-4271-BA8D-7C25EAB9FBEE} O43 - CFD: 2012/10/17 13:13:40 - [0] D -- C:\Users\Dominique\AppData\Local\{324DBF5E-8EB4-497D-84C9-40844D6E8564} O43 - CFD: 2012/09/29 13:21:27 - [0] D -- C:\Users\Dominique\AppData\Local\{33BF9308-6252-4783-8780-6637672F57D0} O43 - CFD: 2012/12/05 23:52:03 - [0] D -- C:\Users\Dominique\AppData\Local\{3A7905D5-E674-445A-9AEC-A3313BCCDDE5} O43 - CFD: 2012/10/14 17:06:41 - [0] D -- C:\Users\Dominique\AppData\Local\{3CA4F983-743C-4D95-8324-A7CFC6426087} O43 - CFD: 2014/05/07 03:26:08 - [0] D -- C:\Users\Dominique\AppData\Local\{3CA75A13-D317-47C3-94A4-7BA4C62430CC} O43 - CFD: 2013/02/01 08:14:10 - [0] D -- C:\Users\Dominique\AppData\Local\{3D60C2BC-C4D5-4A69-ADB8-EBB78E5D3DC0} O43 - CFD: 2012/12/05 11:29:15 - [0] D -- C:\Users\Dominique\AppData\Local\{44481FAA-F025-4952-868E-EC5C7F2A452D} O43 - CFD: 2012/09/12 18:30:35 - [0] D -- C:\Users\Dominique\AppData\Local\{4854E386-2BF2-42FA-B4C4-43E9967AAB1A} O43 - CFD: 2012/11/17 13:24:52 - [0] D -- C:\Users\Dominique\AppData\Local\{4BC8B8BE-DD20-4104-9AFC-EF691E2372BC} O43 - CFD: 2012/10/29 13:58:48 - [0] D -- C:\Users\Dominique\AppData\Local\{4C41CC4B-F9BC-4D6B-8B49-7333E3D0133B} O43 - CFD: 2012/11/24 14:39:08 - [0] D -- C:\Users\Dominique\AppData\Local\{4E4A2979-D1F0-4EAB-8532-20F5ED2425CB} O43 - CFD: 2012/09/15 11:08:30 - [0] D -- C:\Users\Dominique\AppData\Local\{52186D3F-E1DA-48F2-BB9E-C102FE3A0B98} O43 - CFD: 2012/11/23 23:42:36 - [0] D -- C:\Users\Dominique\AppData\Local\{57606813-0519-45E3-85BC-E77CA7CFDA3B} O43 - CFD: 2012/09/19 22:56:44 - [0] D -- C:\Users\Dominique\AppData\Local\{5B295939-09E3-42E4-8C9C-08205A961C9F} O43 - CFD: 2012/09/14 16:41:57 - [0] D -- C:\Users\Dominique\AppData\Local\{5DFD4879-E95B-4175-8E32-5D1C736CE5D1} O43 - CFD: 2013/01/18 07:57:04 - [0] D -- C:\Users\Dominique\AppData\Local\{5ECC1823-F2E5-4565-B9E0-789881C63A3C} O43 - CFD: 2012/11/10 14:54:47 - [0] D -- C:\Users\Dominique\AppData\Local\{66730FAA-926A-4530-A7BC-B316FC0D7DE8} O43 - CFD: 2012/11/29 13:50:03 - [0] D -- C:\Users\Dominique\AppData\Local\{6963C96C-FD8E-449F-A7E0-F2FE42DEB56D} O43 - CFD: 2012/11/26 23:40:33 - [0] D -- C:\Users\Dominique\AppData\Local\{6AE0196C-3BDF-479F-811B-E0F074D023D2} O43 - CFD: 2012/09/12 18:30:19 - [0] D -- C:\Users\Dominique\AppData\Local\{6CE046D0-FF2B-4918-BEC7-DE1CBFA70E63} O43 - CFD: 2012/09/22 11:28:26 - [0] D -- C:\Users\Dominique\AppData\Local\{6D466338-DBF0-44AB-96B5-EE09E961B99C} O43 - CFD: 2013/06/17 03:03:41 - [0] D -- C:\Users\Dominique\AppData\Local\{722AD571-2938-4B9A-9F80-7298A20DAEB0} O43 - CFD: 2012/11/18 18:33:24 - [0] D -- C:\Users\Dominique\AppData\Local\{7235A99E-CF80-432C-BFDB-BD8F1441E4B5} O43 - CFD: 2012/09/13 20:13:36 - [0] D -- C:\Users\Dominique\AppData\Local\{78EF68C0-7E41-457F-86C2-C7469981AA4D} O43 - CFD: 2013/01/22 23:37:16 - [0] D -- C:\Users\Dominique\AppData\Local\{7B2D7235-66A1-4FAE-B6E9-D55FFD84D333} O43 - CFD: 2013/05/28 17:35:43 - [0] D -- C:\Users\Dominique\AppData\Local\{7D4FD219-7084-40E3-8217-2210518BC0A9} O43 - CFD: 2012/10/31 12:36:19 - [0] D -- C:\Users\Dominique\AppData\Local\{7DE06FA8-D128-4B1C-BBEC-D1DA8DF648D8} O43 - CFD: 2012/09/24 13:04:22 - [0] D -- C:\Users\Dominique\AppData\Local\{8857A25C-A4AD-4E93-BB57-BEAB4BBDEEAD} O43 - CFD: 2012/11/08 16:15:23 - [0] D -- C:\Users\Dominique\AppData\Local\{8948D216-86F4-430D-A8D3-37F394DA55C4} O43 - CFD: 2012/11/26 11:40:10 - [0] D -- C:\Users\Dominique\AppData\Local\{89DE2F61-9645-4A0F-9A50-4115F3E8E6BD} O43 - CFD: 2015/07/17 12:18:23 - [0] D -- C:\Users\Dominique\AppData\Local\{8C53E5A3-F192-41D3-B9B7-50D858654D22} O43 - CFD: 2012/10/16 11:44:01 - [0] D -- C:\Users\Dominique\AppData\Local\{8F3F8A0A-5503-4EB9-9391-141A5517AC19} O43 - CFD: 2012/10/26 20:38:39 - [0] D -- C:\Users\Dominique\AppData\Local\{91F45575-0183-40E4-A099-1762C8FB16C6} O43 - CFD: 2012/11/30 11:38:19 - [0] D -- C:\Users\Dominique\AppData\Local\{91FD5410-4DF7-4F28-BF79-FD1268608169} O43 - CFD: 2013/01/21 07:41:39 - [0] D -- C:\Users\Dominique\AppData\Local\{92502978-EA47-4311-B3D6-2755B2E72FBB} O43 - CFD: 2012/09/16 21:48:25 - [0] D -- C:\Users\Dominique\AppData\Local\{97D22F97-054C-48CA-BA94-1D178A437F1F} O43 - CFD: 2012/11/05 18:39:11 - [0] D -- C:\Users\Dominique\AppData\Local\{9AFA70C6-3DA2-4586-B576-CC70450A2122} O43 - CFD: 2012/11/21 14:00:59 - [0] D -- C:\Users\Dominique\AppData\Local\{9D2EBC86-9206-4053-9D58-D5C87058EF37} O43 - CFD: 2012/11/28 15:17:52 - [0] D -- C:\Users\Dominique\AppData\Local\{9FB43DDE-281E-4477-A44B-41EA57C6A7A8} O43 - CFD: 2013/01/10 17:20:21 - [0] D -- C:\Users\Dominique\AppData\Local\{A055127E-06C6-42EE-BC72-7116EF5C3BDF} O43 - CFD: 2012/12/04 13:03:05 - [0] D -- C:\Users\Dominique\AppData\Local\{A3D2F51C-D5DB-4B2D-98E2-4B371031CD22} O43 - CFD: 2012/09/17 18:30:42 - [0] D -- C:\Users\Dominique\AppData\Local\{ACEF6EA0-00E8-4056-89F8-20F5CF4A630F} O43 - CFD: 2012/12/19 11:08:10 - [0] D -- C:\Users\Dominique\AppData\Local\{AE0CD4A4-0C1D-46E8-BA4C-D4A6E6632085} O43 - CFD: 2013/08/17 15:24:05 - [0] D -- C:\Users\Dominique\AppData\Local\{AFD3457A-0079-4FD9-B269-6CF837DBA31D} O43 - CFD: 2012/10/23 12:14:02 - [0] D -- C:\Users\Dominique\AppData\Local\{B12D292F-1611-45B4-9DE9-09F2EAA9E453} O43 - CFD: 2012/10/30 16:22:00 - [0] D -- C:\Users\Dominique\AppData\Local\{B4CC3D42-A120-4F51-82FF-E1003954901D} O43 - CFD: 2012/11/07 19:45:58 - [0] D -- C:\Users\Dominique\AppData\Local\{B543B9E3-DF53-41A7-ACE9-3EBCD4CDC03D} O43 - CFD: 2012/10/03 13:15:13 - [0] D -- C:\Users\Dominique\AppData\Local\{B71C4700-3742-4D78-A975-3F5809CA2D74} O43 - CFD: 2012/09/20 11:28:07 - [0] D -- C:\Users\Dominique\AppData\Local\{B728759D-4D18-4BF1-A98C-001900115EE8} O43 - CFD: 2012/11/22 23:29:09 - [0] D -- C:\Users\Dominique\AppData\Local\{B9FB1B2C-276D-4BE5-AF77-D4B91243110D} O43 - CFD: 2012/11/09 14:53:37 - [0] D -- C:\Users\Dominique\AppData\Local\{BEB8FA1A-ADC7-4DFC-A250-D9D3D7399DA1} O43 - CFD: 2012/10/04 16:41:49 - [0] D -- C:\Users\Dominique\AppData\Local\{BED43AB2-F1A7-4D64-9F88-6C6E206DB968} O43 - CFD: 2012/09/28 14:33:37 - [0] D -- C:\Users\Dominique\AppData\Local\{C02B6DF1-B7F0-4F38-A4A3-82B65B3AE1D7} O43 - CFD: 2012/11/25 21:17:13 - [0] D -- C:\Users\Dominique\AppData\Local\{C3347067-4031-40BD-B726-6740056B18BB} O43 - CFD: 2012/12/06 11:52:38 - [0] D -- C:\Users\Dominique\AppData\Local\{C33CE917-65D2-4456-AE79-F9DAED7D9DCA} O43 - CFD: 2012/11/30 23:38:41 - [0] D -- C:\Users\Dominique\AppData\Local\{C5237642-BE99-43EA-A6B7-47DE387A9CB3} O43 - CFD: 2013/04/23 14:49:03 - [0] D -- C:\Users\Dominique\AppData\Local\{CCF7C511-BB5C-4DB4-921B-2A7722358416} O43 - CFD: 2012/09/22 23:29:00 - [0] D -- C:\Users\Dominique\AppData\Local\{D614FC28-6FE7-4393-AD87-CE2D6BFB562D} O43 - CFD: 2012/11/28 00:09:53 - [0] D -- C:\Users\Dominique\AppData\Local\{D689F938-0394-4076-9E8E-52AC00AE6133} O43 - CFD: 2012/10/05 13:41:00 - [0] D -- C:\Users\Dominique\AppData\Local\{D77DB2F1-BACF-487F-B628-19E500B4D600} O43 - CFD: 2012/11/22 11:28:48 - [0] D -- C:\Users\Dominique\AppData\Local\{DA78B8DC-673F-4941-A4E0-797542115CD8} O43 - CFD: 2012/12/01 23:41:07 - [0] D -- C:\Users\Dominique\AppData\Local\{DDE71802-1A3A-48FF-90B8-30E5098E48CB} O43 - CFD: 2012/11/10 02:54:13 - [0] D -- C:\Users\Dominique\AppData\Local\{DF37A106-4081-4B66-B209-50F402DB0436} O43 - CFD: 2012/12/03 14:15:08 - [0] D -- C:\Users\Dominique\AppData\Local\{E1802357-9A37-4EE3-A689-2E79E2E83D70} O43 - CFD: 2012/09/27 12:37:14 - [0] D -- C:\Users\Dominique\AppData\Local\{E22A342D-65C8-4614-8EA2-64477B8C9CEC} O43 - CFD: 2012/09/21 11:08:11 - [0] D -- C:\Users\Dominique\AppData\Local\{E4630919-63FA-4C6F-8093-B9BFA797219E} O43 - CFD: 2012/10/18 20:09:33 - [0] D -- C:\Users\Dominique\AppData\Local\{E5B276D2-0AAD-41F6-8462-7D7E4590DFF7} O43 - CFD: 2012/12/09 16:08:36 - [0] D -- C:\Users\Dominique\AppData\Local\{E6AF3444-514B-4388-858A-995F08D199B2} O43 - CFD: 2012/10/27 21:49:31 - [0] D -- C:\Users\Dominique\AppData\Local\{E7499DD5-EBEC-4901-A225-AE3409D17B3B} O43 - CFD: 2012/12/01 11:40:45 - [0] D -- C:\Users\Dominique\AppData\Local\{EF2A6EDB-6A34-4384-BCDC-1343C453AFFB} O43 - CFD: 2012/09/21 23:08:46 - [0] D -- C:\Users\Dominique\AppData\Local\{EF8ED634-CCFE-4643-887E-95A88B5DB836} O43 - CFD: 2015/06/06 17:07:02 - [0] D -- C:\Users\Dominique\AppData\Local\{F12206A5-D6BD-40F1-AB16-862D5402E303} O43 - CFD: 2012/11/01 14:34:35 - [0] D -- C:\Users\Dominique\AppData\Local\{F3359962-0A1F-4715-9DA4-595AD03A9064} O43 - CFD: 2012/10/21 13:24:09 - [0] D -- C:\Users\Dominique\AppData\Local\{F633AF8E-72FA-4098-B017-EB6B219933A9} O43 - CFD: 2012/10/20 17:02:46 - [0] D -- C:\Users\Dominique\AppData\Local\{F7AD2C36-BBCE-4923-B47B-7D1E61C9FB95} O43 - CFD: 2012/09/19 10:56:21 - [0] D -- C:\Users\Dominique\AppData\Local\{FBE7A291-37B3-4DFD-816F-7CEE8D36B439} O43 - CFD: 2012/10/24 20:56:24 - [0] D -- C:\Users\Dominique\AppData\Local\{FFAC8B76-AF0B-4C90-8CB7-A3842DB659A6} O43 - CFD: 2009/07/14 06:54:32 - [] RD -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/08/19 14:59:57 - [] RD -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/07/29 14:18:09 - [] D -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2009/07/14 06:49:38 - [] RD -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/19 14:59:57 - [] RD -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2013/12/04 17:53:06 - [] D -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security 2012 O43 - CFD: 2014/05/28 00:05:21 - [] D -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft O43 - CFD: 2013/07/21 22:44:01 - [] D -- C:\Users\Dominique\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\War Thunder ---\\ Enumération des clés StartupReg (5) - 0s O53 - SMSR:HKLM\...\startupreg\Facebook Update [Key] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\Dominique\AppData\Local\Facebook\Update\FacebookUpdate.exe O53 - SMSR:HKLM\...\startupreg\KiesPreload [Key] . (.Samsung - Kies.) -- C:\Program Files (x86)\Samsung\Kies\Kies.exe O53 - SMSR:HKLM\...\startupreg\KiesTrayAgent [Key] . (.Samsung Electronics Co., Ltd. - Kies TrayAgent Application.) -- C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe O53 - SMSR:HKLM\...\startupreg\Razer Synapse [Key] . (.Razer Inc. - Razer Synapse.) -- C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe O53 - SMSR:HKLM\...\startupreg\Steam [Key] . (...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.) ---\\ Liste des pilotes du système (70) - 22s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864] O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440] O58 - SDL:2012/05/11 06:46:40 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904] O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128] O58 - SDL:2012/05/11 06:46:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632] O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856] O58 - SDL:2015/02/13 13:48:04 A . (.BitDefender - Active Virus Control filter driver.) -- C:\windows\System32\drivers\avc3.sys [1288472] O58 - SDL:2015/02/13 13:48:34 A . (.BitDefender - BitDefender AntiVirus Active Virus Control.) -- C:\windows\System32\drivers\avchv.sys [263032] O58 - SDL:2014/11/04 14:08:07 A . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\windows\System32\drivers\avckf.sys [647752] O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848] O58 - SDL:2013/02/22 19:46:52 A . (.BitDefender LLC - BitDefender Firewall NDIS6 Filter Driver.) -- C:\windows\System32\drivers\BdfNdisf6.sys [93600] O58 - SDL:2013/11/04 16:47:36 A . (.BitDefender SRL - BitDefender SandBox Filter Driver.) -- C:\windows\System32\drivers\bdsandbox.sys [82824] O58 - SDL:2012/04/17 14:34:26 A . (.BitDefender - FileVault Disk Driver.) -- C:\windows\System32\drivers\bdvedisk.sys [76944] O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432] O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704] O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976] O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720] O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480] O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488] O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496] O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016] O58 - SDL:2013/08/23 13:48:49 A . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\windows\System32\drivers\gzflt.sys [150256] O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232] O58 - SDL:2011/11/10 11:04:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\HECIx64.sys [60184] O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720] O58 - SDL:2012/05/11 06:46:40 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496] O58 - SDL:2012/02/27 18:55:24 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [14741632] O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776] O58 - SDL:2012/09/21 21:04:22 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\windows\System32\drivers\lvrs64.sys [351520] O58 - SDL:2012/09/21 21:04:22 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\windows\System32\drivers\lvuvc64.sys [4763680] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392] O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736] O58 - SDL:2010/07/02 12:01:38 A . (.Marvell Semiconductor, Inc. - Marvell magni Windows Driver.) -- C:\windows\System32\drivers\mv91xx.sys [293416] O58 - SDL:2010/07/02 11:54:58 A . (.Marvell Semiconductor Inc. - Marvell Aux NV Bridge DLL.) -- C:\windows\System32\drivers\mvxxmm.sys [6144] O58 - SDL:2011/04/19 11:32:50 A . (.Ralink Technology, Corp. - Ralink 802.11 Wireless Adapter Driver.) -- C:\windows\System32\drivers\netr28x.sys [1488448] O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264] O58 - SDL:2015/08/07 13:06:30 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\windows\System32\drivers\nvhda64v.sys [204648] O58 - SDL:2015/08/07 13:06:30 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\windows\System32\drivers\nvlddmkm.sys [11076216] O58 - SDL:2012/05/11 06:46:40 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352] O58 - SDL:2012/05/11 06:46:40 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272] O58 - SDL:2015/08/11 06:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\windows\System32\drivers\nvvad64v.sys [50472] O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816] O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592] O58 - SDL:2012/02/03 15:01:20 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\windows\System32\drivers\Rt64win7.sys [677480] O58 - SDL:2010/01/14 14:27:46 A . (.Realtek - Realtek NDIS Protocol Driver.) -- C:\windows\System32\drivers\RtNdPt60.sys [32544] O58 - SDL:2010/01/14 14:27:30 A . (.Realtek Corporation - Realtek NDIS 6.0 Intermediate Miniport Driv.) -- C:\windows\System32\drivers\RtTeam60.sys [48416] O58 - SDL:2010/01/14 14:27:18 A . (.Windows (R) Codename Longhorn DDK provider - Sample NDIS 6.0 Intermediate Miniport Drive.) -- C:\windows\System32\drivers\RtVlan60.sys [29472] O58 - SDL:2014/04/18 17:02:50 A . (.Razer, Inc. - Razer Ovrlay Support.) -- C:\windows\System32\drivers\RzDxgk.sys [129472] O58 - SDL:2014/04/18 17:02:50 A . (.Razer, Inc. - Kernel-mode user input redirection driver.) -- C:\windows\System32\drivers\RzFilter.sys [74432] O58 - SDL:2014/05/19 08:47:28 A . (.Razer Inc - Razer Rzudd Engine.) -- C:\windows\System32\drivers\rzudd.sys [155816] O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] O58 - SDL:2009/07/14 02:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\serial.sys [94208] O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584] O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464] O58 - SDL:2014/01/23 05:21:06 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\windows\System32\drivers\ssudbus.sys [108800] O58 - SDL:2014/01/23 05:21:06 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\windows\System32\drivers\ssudmdm.sys [206080] O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656] O58 - SDL:2015/02/13 13:49:04 A . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\windows\System32\drivers\trufos.sys [452040] O58 - SDL:2011/03/29 04:04:06 A . (.VIA Technologies, Inc. - VIA High Definition Audio Function Driver.) -- C:\windows\System32\drivers\viahduaa.sys [2157680] O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488] O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872] ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (17) - 13s O61 - LFC: 2015/08/21 16:30:06 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [5165952] O61 - LFC: 2015/08/22 00:18:07 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\00007cf0\CoProc update.19885687.exe [518256] O61 - LFC: 2015/08/22 00:18:12 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\00007cee\DAO.19885646.exe [6107912] O61 - LFC: 2015/08/18 15:33:37 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\00007c4d\streaming-assets-hearthstone_heroes_of_warcraft.19861092.exe [358464] O61 - LFC: 2015/08/20 16:20:26 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\00007c3a\streaming-assets-world_of_warcraft_mists_of_pandaria.19857078.exe [390128] O61 - LFC: 2015/08/20 16:20:58 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000079d3\vops-guild_wars_2.19749225.exe [11115416] O61 - LFC: 2015/08/20 16:20:56 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000078f9\vops-arma_iii.19704423.exe [10852288] O61 - LFC: 2015/08/20 16:20:40 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000074ad\vops-world_of_warcraft_mists_of_pandaria.19506266.exe [8920504] O61 - LFC: 2015/08/20 16:21:20 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\0000746b\vops-civilization_v.19506266.exe [19295432] O61 - LFC: 2015/08/20 16:20:26 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\00007227\streaming-assets-guild_wars_2.19413971.exe [460376] O61 - LFC: 2015/08/20 16:20:26 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000071f4\streaming-assets-civilization_v.19413971.exe [446912] O61 - LFC: 2015/08/20 16:20:25 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000071d6\streaming-assets-arma_iii.19413971.exe [320992] O61 - LFC: 2015/08/20 16:20:25 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000071b7\streaming-assets-world_of_tanks.19410377.exe [375072] O61 - LFC: 2015/08/20 16:21:01 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\00006fa8\vops-world_of_tanks.19304243.exe [12568888] O61 - LFC: 2015/08/20 16:20:25 A . (..) -- C:\Users\Dominique\AppData\Local\NVIDIA\NvBackend\Packages\000063f8\streaming-assets-steam.18914805.exe [252856] O61 - LFC: 2015/08/23 12:19:37 A . (..) -- C:\Users\Dominique\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [1113849] O61 - LFC: 2015/08/18 07:23:54 A . (.Google Inc..) -- C:\Users\Dominique\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.8.823\_platform_specific\win_x86\widevinecdmadapter.dll [189256] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe ---\\ Recherche d'infection sur les navigateurs (1) - 0s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (32) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\windows\System32\aelupsvc.dll [72192] O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [80384] O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [80384] O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\windows\system32\srvsvc.dll [236032] O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\windows\System32\gpsvc.dll [777728] O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\windows\System32\ikeext.dll [859648] O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\windows\System32\Audiosrv.dll [680960] O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\windows\System32\rasauto.dll [99328] O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\windows\System32\rasmans.dll [344064] O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\windows\System32\ipnathlp.dll [359424] O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\windows\System32\termsrv.dll [683520] O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\windows\system32\wuaueng.dll [2606080] O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\windows\System32\qmgr.dll [849920] O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\windows\System32\iphlpsvc.dll [569344] O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\windows\system32\seclogon.dll [30720] O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\windows\System32\appinfo.dll [70656] O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\windows\system32\iscsiexe.dll [156672] O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\windows\system32\mmcss.dll [67584] O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [242688] O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\windows\System32\browser.dll [136704] O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\windows\System32\eapsvc.dll [111104] O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\windows\system32\schedsvc.dll [1110016] O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\windows\system32\kmsvc.dll [90624] O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\windows\System32\wercplsupport.dll [84480] O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [210432] O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\windows\system32\themeservice.dll [44544] O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\windows\System32\bdesvc.dll [100864] ---\\ Liste des exceptions du parefeu Windows (52) - 2s O87 - FAEL: "{6A9D9185-8343-4D38-ACFB-DC29C8FE3DF5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.) O87 - FAEL: "TCP Query User{D4331B48-AE5A-451E-9C3B-CE38DF632637}C:\users\dominique\appdata\local\temp\gw2.exe" [In-None-P6-TRUE] .(...) -- C:\users\dominique\appdata\local\temp\gw2.exe (.not file.) O87 - FAEL: "UDP Query User{E7E36267-CAB1-4CBB-9ADE-EAB0A120568B}C:\users\dominique\appdata\local\temp\gw2.exe" [In-None-P17-TRUE] .(...) -- C:\users\dominique\appdata\local\temp\gw2.exe (.not file.) O87 - FAEL: "TCP Query User{4B00D724-979B-41FC-B491-F647F8CCE4D2}C:\program files (x86)\guild wars 2\gw2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\guild wars 2\gw2.exe (.not file.) O87 - FAEL: "UDP Query User{1D66988C-6FAE-4315-BAEC-0E70580FF4B1}C:\program files (x86)\guild wars 2\gw2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\guild wars 2\gw2.exe (.not file.) O87 - FAEL: "TCP Query User{3E7D78BB-2B57-40F8-B02A-578683AE0F36}C:\program files (x86)\logitech\vid hd\vid.exe" [In-None-P6-TRUE] .(.Logitech Inc. - Logitech Vid HD.) -- C:\program files (x86)\logitech\vid hd\vid.exe O87 - FAEL: "UDP Query User{1743E0DE-DCB5-4752-B421-6E3387005F80}C:\program files (x86)\logitech\vid hd\vid.exe" [In-None-P17-TRUE] .(.Logitech Inc. - Logitech Vid HD.) -- C:\program files (x86)\logitech\vid hd\vid.exe O87 - FAEL: "{EF092454-3E98-4A8A-BEE9-534BAEE33444}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.) O87 - FAEL: "{401D3087-C263-42A3-A714-2664AB46CB4C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.) O87 - FAEL: "TCP Query User{64752FC8-E940-408F-94EC-D890FC92A2BB}C:\program files (x86)\war thunder\aces.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\war thunder\aces.exe O87 - FAEL: "UDP Query User{05331786-AEBE-4E1F-AA17-EEEF689ABE92}C:\program files (x86)\war thunder\aces.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\war thunder\aces.exe O87 - FAEL: "TCP Query User{14A9FFC2-ACA7-4931-B679-826018EECE5B}C:\users\dominique\appdata\local\apps\2.0\mp71gwh3.pqo\q7wzq557.v9v\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe" [In-None-P6-TRUE] .(...) -- C:\users\dominique\appdata\local\apps\2.0\mp71gwh3.pqo\q7wzq557.v9v\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe (.not file.) O87 - FAEL: "UDP Query User{83EFBD76-BDD9-41CC-811E-9C39028C7176}C:\users\dominique\appdata\local\apps\2.0\mp71gwh3.pqo\q7wzq557.v9v\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe" [In-None-P17-TRUE] .(...) -- C:\users\dominique\appdata\local\apps\2.0\mp71gwh3.pqo\q7wzq557.v9v\laun...app_59711684aa47878d_0001.0022_f1e11c361d677310\launcher.exe (.not file.) O87 - FAEL: "{98344794-B76D-4132-90A5-91279268B737}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{365E08A0-E0A9-4E8D-BFC0-687EA808E4F9}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrA.exe O87 - FAEL: "{8B25076B-0C55-446F-AB4A-1BF64B903638}" [In-None-P6-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "{F19E68B1-DCED-4AE0-95F5-950759770AD5}" [In-None-P17-TRUE] .(...) -- C:\Windows\SysWOW64\PnkBstrB.exe O87 - FAEL: "TCP Query User{C809F598-3763-4733-B778-08A9212A2C79}C:\ubisoft\ghost recon online\pdc-live\ghostrecononline.exe" [In-None-P6-TRUE] .(...) -- C:\ubisoft\ghost recon online\pdc-live\ghostrecononline.exe (.not file.) O87 - FAEL: "UDP Query User{6DB546EB-0CE1-4F81-9898-C97AF38140C2}C:\ubisoft\ghost recon online\pdc-live\ghostrecononline.exe" [In-None-P17-TRUE] .(...) -- C:\ubisoft\ghost recon online\pdc-live\ghostrecononline.exe (.not file.) O87 - FAEL: "{BF28B689-5F45-49D5-8667-586B8612D189}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe (.not file.) O87 - FAEL: "{CBFF976A-1DB3-4D66-87F0-5AFD5327B933}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe (.not file.) O87 - FAEL: "TCP Query User{E3084591-AEC2-4649-AFA9-9CDC33926871}C:\program files (x86)\logitech\vid hd\vid.exe" [In-None-P6-TRUE] .(.Logitech Inc. - Logitech Vid HD.) -- C:\program files (x86)\logitech\vid hd\vid.exe O87 - FAEL: "UDP Query User{37692B7B-DEA9-4149-88D6-57916DD6FFF3}C:\program files (x86)\logitech\vid hd\vid.exe" [In-None-P17-TRUE] .(.Logitech Inc. - Logitech Vid HD.) -- C:\program files (x86)\logitech\vid hd\vid.exe O87 - FAEL: "{553A2564-5B7D-4489-8B9B-D7DA7C2A7871}" [In-None-P6-TRUE] .(...) -- F:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "{DCD37BB7-5F21-4A85-A40D-6EC046820F95}" [In-None-P17-TRUE] .(...) -- F:\fscommand\CKSocketServer.exe (.not file.) O87 - FAEL: "TCP Query User{9A0FB7F1-B69C-4AA0-8E96-4A4E32216C77}C:\program files (x86)\guild wars 2\gw2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\guild wars 2\gw2.exe (.not file.) O87 - FAEL: "UDP Query User{6F41EE52-9067-49A5-83D7-6C02479B0FAD}C:\program files (x86)\guild wars 2\gw2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\guild wars 2\gw2.exe (.not file.) O87 - FAEL: "{733939F2-46C8-4A7D-8E8B-4BCD553A657A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe (.not file.) O87 - FAEL: "{A71BE8B8-FC8E-4CB1-8F99-9ED8643B2331}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe (.not file.) O87 - FAEL: "TCP Query User{89BFE391-99A0-429C-A017-DE9F13882234}C:\program files (x86)\steam\steam.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steam.exe (.not file.) O87 - FAEL: "UDP Query User{09F282DF-015E-49CD-A810-BEA2D7D010B5}C:\program files (x86)\steam\steam.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steam.exe (.not file.) O87 - FAEL: "{03B01129-8AE9-4F24-AC1B-D679FB027FBD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe (.not file.) O87 - FAEL: "{BE29042F-6DE8-4EE1-A470-25C27475EFAE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe (.not file.) O87 - FAEL: "{504539DF-3E18-45AB-B102-7704FA4CAA72}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "{8A6800D2-17CD-4923-92DD-6327A767E9FB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.) O87 - FAEL: "{5A79640A-167E-4565-9FDF-EB9CCE4606B3}" [In-None-P6-TRUE] .(.Bohemia Interactive - Arma 3 Launcher.) -- D:\SteamLibrary\steamapps\common\Arma 3\arma3launcher.exe O87 - FAEL: "{BA8CA9AF-18B1-4DBD-824B-B00C202EB857}" [In-None-P17-TRUE] .(.Bohemia Interactive - Arma 3 Launcher.) -- D:\SteamLibrary\steamapps\common\Arma 3\arma3launcher.exe O87 - FAEL: "{3BF8825F-8E30-40FD-A462-430594CBCFC2}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe =>HackTool.KMSpico O87 - FAEL: "{866BE128-79DA-4EFA-A8BC-793C4133D84F}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe =>HackTool.KMSpico O87 - FAEL: "{E5B5FBF5-B0BD-417B-A29C-51A17A13266C}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico O87 - FAEL: "{A2C0524E-83E0-4EFB-A97B-AB94B6CAE358}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico O87 - FAEL: "{E10FFD2A-CF5C-46FA-8304-B2CECE87D65C}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe O87 - FAEL: "{2381D084-0FEB-4418-BD51-55D69718DA0A}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe O87 - FAEL: "{CF2F962C-A5CE-4851-992C-A9CBD2BEA3D6}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe O87 - FAEL: "{3D473183-1AEA-46F3-ACD6-062C95B4D004}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe O87 - FAEL: "{4D16B5F3-25E4-4C69-ADA2-66E2D40DDF1E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O87 - FAEL: "{2FC9FE01-00DB-44E6-9E30-ED5BF21D25C0}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O87 - FAEL: "{889D5424-1C80-4C3D-AB8E-8DA8FF298B51}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O87 - FAEL: "{0B2D71B8-86E6-43B2-9E9A-986BDDC24E44}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico O87 - FAEL: "{4DD46FB7-64E9-4BB6-8432-237A7030515D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico O87 - FAEL: "{A7F8CF31-70E3-4D81-817D-036C458C7321}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico O87 - FAEL: "{D3B3F439-0641-4E74-B1C4-817BAAF68D51}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (13) - 9s SR - Auto [2011/10/29 03:59:26] [ 918448] ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.00.18\atkexComSvc.exe SR - Auto [2010/12/02 04:15:14] [ 915584] ASUS HM Com Service (asHmComSvc) . (...) - C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe SR - Auto [2010/10/21 11:52:26] [ 586880] ASUS System Control Service (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe SR - Auto [2011/09/02 11:41:07] [ 1399296] AsusFanControlService (AsusFanControlService) . (.ASUSTeK Computer Inc..) - C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.06\AsusFanControlService.exe SR - Auto [2009/12/23 23:59:22] [ 203392] Device Handle Service (Device Handle Service) . (.ASUSTeK Computer Inc..) - C:\Windows\SysWOW64\AsHookDevice.exe SR - Auto [2011/05/24 10:33:30] [ 1840128] FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe SS - Demand [2011/04/26 13:54:12] [ 2702848] Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) . (.MAGIX®.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe SS - Auto [2014/01/24 13:15:05] [ 116648] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SS - Demand [2014/01/24 13:15:05] [ 116648] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe SR - Auto [2014/04/18 17:07:21] [ 32960] Razer Overlay Subsystem Emergency Service (RzOvlMon) . (.Razer, Inc..) - C:\Program Files (x86)\Razer\Core\64bit\RzOvlMon.exe SS - Auto [2013/12/11 15:59:12] [ 1050904] Service KMSELDI (Service KMSELDI) . (...) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico SR - Auto [2015/08/07 08:30:32] [ 5611280] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe SR - Auto [2012/01/18 06:44:52] [ 450848] (UMVPFSrv) . (.Logitech Inc..) - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe ---\\ Scan Additionnel (8) - 0s C:\Users\Dominique\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnnbmiailafajdkboegcjcdklooomfic HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI =>HackTool.KMSpico C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico C:\Program Files\KMSpico\AutoPico.exe =>HackTool.KMSpico C:\windows\System32\Tasks\AutoPico Daily Restart =>HackTool.KMSpico HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\KMSpico_is1 =>HackTool.KMSpico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico C:\Program Files\KMSpico\KMSELDI.exe =>HackTool.KMSpico ---\\ Récapitulatif des éléments trouvées sur votre station (2) - 0s http://www.nicolascoolman.fr/pup-mindspark/ =>PUP.Optional.MindSpark http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico ~ End of the scan, 50761 items in 136 seconds (1015)(0)()