~ ZHPDiag v2015.10.25.155 Par Nicolas Coolman (2015/10/25) ~ Démarré par hp (Administrator) (2015/10/28 21:11:11) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\hp\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 10240) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 41.0.2 (x86 fr) v41.0.2 MSIE: Internet Explorer v11.0.10240.16431 ---\\ Informations sur les produits Windows (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 3V66T Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (3) - 5s Kaspersky Internet Security v16.0.0.614 Malwarebytes Anti-Malware version 2.2.0.1024 Windows Defender (Deactivate) ---\\ Surveillance de Logiciels (3) - 5s Adobe Flash Player 19 NPAPI Extended Asian Language font pack for Adobe Reader XI Adobe Acrobat Reader DC - Français ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4078.52 MB (51% free) ~ System Restore: Activé (Enable) ~ System drive C: has 74 GB free of 150 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: HAMADINO ~ User Name: hp ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 74 GB free of 150 GB (System) ~ Drive D: has 49 GB free of 150 GB ~ Drive G: has 79 GB free of 97 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableTaskMgr: OK [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System] DisableRegistryTools: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - (.Microsoft Corporation - Explorateur Windows.) () -- C:\WINDOWS\Explorer.exe [4532304] © [MD5.5DED2A3F11AE916C8F2724947E736261] - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) () -- C:\WINDOWS\System32\rundll32.exe [59392] © [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - (.Microsoft Corporation - Application de démarrage de Windows.) () -- C:\WINDOWS\System32\Wininit.exe [290312] © [MD5.E5D86250453B33900666D92ED1A92ABE] - (.Microsoft Corporation - Extensions Internet pour Win32.) () -- C:\WINDOWS\System32\wininet.dll [2740224] © [MD5.6688FE37E767BA15F022B7E59E5E7EA6] - (.Microsoft Corporation - Application d’ouverture de session Windows.) () -- C:\WINDOWS\System32\Winlogon.exe [579072] © [MD5.ECB1943967424DFB96E03F6A098434EF] - (.Microsoft Corporation - Bibliothèque de licences.) () -- C:\WINDOWS\System32\sppcomapi.dll [430592] © [MD5.C287D0E32771E3222A444DC527A29477] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\System32\dnsapi.dll [680256] © [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - (.Microsoft Corporation - DNS DLL de l’API Client.) () -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] © [MD5.8C795953726C7D2DE72CE4748208C5ED] - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) () -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] © [MD5.6C12C7E01A4F64E0AA9C88AF66955CC9] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) () -- C:\WINDOWS\System32\drivers\AFD.sys [577888] © [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) () -- C:\WINDOWS\System32\drivers\atapi.sys [28512] © [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - (.Microsoft Corporation - CD-ROM File System Driver.) () -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] © [MD5.CA160E02F35A61C6F5C681FB4669C519] - (.Microsoft Corporation - SCSI CD-ROM Driver.) () -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] © [MD5.25435407D97419627F4B10653433BF2B] - (.Microsoft Corporation - DFS Namespace Client Driver.) () -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] © [MD5.C277A49F8A8295840DEBC9240B75A282] - (.Microsoft Corporation - High Definition Audio Bus Driver.) () -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] © [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - (.Microsoft Corporation - Pilote de port i8042.) () -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] © [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - (.Microsoft Corporation - IP Network Address Translator.) () -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] © [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - (.Microsoft Corporation - Minirdr SMB Windows NT.) () -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] © [MD5.F0D791348AD254360CC3C3E501CCB745] - (.Microsoft Corporation - MBT Transport driver.) () -- C:\WINDOWS\System32\drivers\netBT.sys [273408] © [MD5.466EC5659C02ED53DBD47DC1BC2B8086] - (.Microsoft Corporation - Pilote du système de fichiers NT.) () -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] © [MD5.38F1AE32339731F6E5A7281AE8042545] - (.Microsoft Corporation - Pilote de port parallèle.) () -- C:\WINDOWS\System32\drivers\Parport.sys [96768] © [MD5.CA60F6C03611AF1710BC903ED9F566FB] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) () -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] © [MD5.A32AED8C644734B283A7C9D08D76064D] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) () -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] © [MD5.28E1E63A1AC65E17B3194238FA2CF3BF] - (.Microsoft Corporation - TDI Translation Driver.) () -- C:\WINDOWS\System32\drivers\tdx.sys [116576] © [MD5.823A237D871CD652C6BFD47BECB6810A] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) () -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] © ---\\ Processus lancés (6) - 1s [MD5.50C3C62FFE6337E6E4F2F01CB07DF63C] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000] [PID.2056] © [MD5.932A21CF0DA4E951C7C4A62D27E6D8FB] - (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe [211712] [PID.5292] © [MD5.9C30978597D52AD8EA319BABE6112AAE] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [405976] [PID.6672] © [MD5.BD2E3D5008F1EAB96379CEA2C0FABBBD] - (.Adobe Systems Incorporated - Adobe® Flash® Player Utility.) -- C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe [882680] [PID.6392] © [MD5.3FACB1344EF3D8D7BEE23E86B090929D] - (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\Reader_sl.exe [51872] [PID.8560] © [MD5.E39F4186EC180D23F1CE16C683253B99] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hp\Desktop\ZHPDiag3.exe [1959936] [PID.8772] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients4.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://gc.kis.scr.kaspersky-labs.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.tn G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.googleapis.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [eahebamiopdhefndnmappcihfajigkka] __MSG_ExtensionName__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 1s M0 - MFSP: prefs.js [hp - 84q7uaav.default-1441834701605] http://www.google.com/ P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/AuthorwarePlayer] - (.Macromedia, Inc..) -- C:\Windows\System32\Macromed\AUTHORWA\np32asw.dll P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll © P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Incorporated. Copyright 1994-2010 All Rights Reserved.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\SYSWOW64\userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (3) - 0s 127 127 ~ Nombre lignes détournées 127 1201 (Hosts file redirected) ---\\ Browser Helper Object de navigateur (BHO) (7) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll © O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} (Orphean) O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll © O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll © O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {C66D064F-82FE-4E1A-B06A-B2490BA48B18} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll © ---\\ Internet Explorer, Barre d'outil (3) - 0s O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.) O3 - Toolbar: (no name) - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} (Orphean) (.not file.) O3 - Toolbar: (no name) - [HKLM]{3507FA00-ADA2-4A02-99B9-51AD26CA9120} (Orphean) ---\\ Applications lancées au démarrage du système (6) - 0s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe © O4 - HKCU\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files\Supercopier\supercopier.exe © O4 - HKLM\..\Wow6432Node\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe © O4 - HKUS\S-1-5-21-3275587959-2913237554-2789717066-1000\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files\Supercopier\supercopier.exe © ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (28) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll © O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL © O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © ---\\ Liste des services NT non Microsoft et non désactivés (5) - 1s O23 - Service: Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe © O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe © O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe © ---\\ Tâches planifiées en automatique (17) - 3s [MD5.2EED3542F86F77D56569504B37C8108A] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1045720] © [MD5.8C194A201698B4B4F77D974549819D1F] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269000] © [MD5.4E8C983215115036C46841FFB51562A1] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [2820608] =>HackTool.AutoKMS [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] © [MD5.00000000000000000000000000000000] [APT] [SidebarExecute] (...) -- C:\Program Files\Windows Sidebar\sidebar.exe (.not file.) [0] [MD5.1C307171DD801689F2AB6040D64934B4] [APT] [SpyHunter4Startup] (.Enigma Software Group USA, LLC..) -- C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe [8276352] =>.Superfluous.SpyHunter O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1090] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1094] © O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3972] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3976] © O39 - APT: AutoKMS - (.CODYQX4.) -- C:\WINDOWS\System32\Tasks\AutoKMS [3808] =>HackTool.AutoKMS O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3920] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4152] © O39 - APT: SidebarExecute - (...) -- C:\WINDOWS\System32\Tasks\SidebarExecute [3300] O39 - APT: SpyHunter4Startup - (.Enigma Software Group USA, LLC..) -- C:\WINDOWS\System32\Tasks\SpyHunter4Startup [3336] ---\\ Logiciels installés (75) - 7s O42 - Logiciel: EPSON L110 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON L110 Series © O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: WinRAR 5.00 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {243B5B47-6A9C-4D51-8CA4-8D9C0308D02F} © O42 - Logiciel: Java 7 Update 40 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86417040FF} © O42 - Logiciel: Java SE Development Kit 7 Update 40 (64-bit) - (.Oracle.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0170400} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} © O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} © O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.11761. - (.Microsoft Corporation.) [HKLM][64Bits] -- {986E003C-E56D-5A47-110E-D3C81F0E8535} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {BB193400-CE40-4598-8391-FE63EC46BFF4} © O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {E1322B8A-6F66-44ED-95D5-7FEBC50AC814} © O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} © O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {F43C7651-A7CB-49EF-8AF4-40630849FF29} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR © O42 - Logiciel: Adobe Flash Player 19 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Adobe Shockwave Player 12.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player © O42 - Logiciel: Adobe Shockwave Player + Authorware Web Player - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player + Authorware Web Player © O42 - Logiciel: MathType 6 - (.Design Science, Inc..) [HKLM][64Bits] -- DSMT6 © O42 - Logiciel: Hotspot Shield 4.02 - (.AnchorFree Inc..) [HKLM][64Bits] -- HotspotShield © O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26} © O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager © O42 - Logiciel: K-Lite Mega Codec Pack 9.7.0 - (...) [HKLM][64Bits] -- KLiteCodecPack_is1 O42 - Logiciel: Epson Guide d'utilisation L110 Series - (...) [HKLM][64Bits] -- L110 Series Useg O42 - Logiciel: LG PC Suite - (.LG Electronics.) [HKLM][64Bits] -- LG PC Suite © O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 © O42 - Logiciel: Mozilla Firefox 41.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 41.0.2 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: PP助手2.0 Win版 - (.广州铁人网络科技有限公司.) [HKLM][64Bits] -- PP助手2.0 Win版 O42 - Logiciel: Scidot Maths-Sciences - (...) [HKLM][64Bits] -- scidot O42 - Logiciel: Supercopier 4.0.1.13 - (.Supercopier.) [HKLM][64Bits] -- Supercopier O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM][64Bits] -- USB Disk Security_is1 O42 - Logiciel: Archiveur WinRAR - (...) [HKLM][64Bits] -- WinRAR archiver O42 - Logiciel: Yahoo! Messenger - (.Yahoo! Inc..) [HKLM][64Bits] -- Yahoo! Messenger © O42 - Logiciel: Your Uninstaller! 7 - (.URSoft, Inc..) [HKLM][64Bits] -- YU2010_is1 O42 - Logiciel: Solid PDF Tools - (.SolidDocuments.) [HKLM][64Bits] -- {02086033-2913-4D0F-BA3A-9EAAF7ACE3F5} © O42 - Logiciel: HP USB Disk Storage Format Tool - (...) [HKLM][64Bits] -- {0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51} O42 - Logiciel: Skype™ 7.3 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} © O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} © O42 - Logiciel: Java SE Development Kit 7 Update 40 - (.Oracle.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0170400} © O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {52E225FC-FCB4-41F7-837B-6E37FB05BD7B} © O42 - Logiciel: LG United Mobile Drivers - (.LG Electronics.) [HKLM][64Bits] -- {55031CEF-CE75-4A5C-8DEA-60577820529B} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} © O42 - Logiciel: Flash Saving Plugin - (.UnH Solutions.) [HKLM][64Bits] -- {6D74E1F4-32D5-44D0-9054-8D57E981F59F}_is1 © O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} © O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {77E7AE5C-181C-4CAF-ADBF-946F11C1CE26} © O42 - Logiciel: PDF Password Remover - (.PDF Password Remover, Inc..) [HKLM][64Bits] -- {7F4CFF03-15E4-45BD-BFA3-5323A8EAE2F1}_is1 O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} © O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8DBC5A0A-31C4-46C7-B252-6B593EA11A87} © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} © O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} © O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} © O42 - Logiciel: Ashampoo Burning Studio 15 v.15.0.2 - (.Ashampoo GmbH & Co. KG.) [HKLM][64Bits] -- {91B33C97-5B38-0A92-D04A-A0F26F3F87D4}_is1 O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM][64Bits] -- {A4DE5CD7-96D6-3979-8C39-E864396AFFC0} © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} © O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824157129} © O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} © O42 - Logiciel: Extended Asian Language font pack for Adobe Reader XI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-2530-0000-A00000000004} © O42 - Logiciel: Picture Package Music Transfer - (.Sony Corporation.) [HKLM][64Bits] -- {CE2121C6-C94D-4A73-8EA4-6943F33EE335} © O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: LG SP USB Driver - (.LG Electronics.) [HKLM][64Bits] -- {E2AE8456-CCFE-46C0-8629-71CC507660FC} © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} © O42 - Logiciel: LG USB WML Modem Driver - (.LG Electronics.) [HKLM][64Bits] -- {FBA0CA60-8BF2-4381-B819-74F020E165A9} © O42 - Logiciel: DriverPack Solution Updater - (.DriverPack Solution.) [HKCU][64Bits] -- DRPSu Updater O42 - Logiciel: RadioSure - (...) [HKCU][64Bits] -- RadioSure O42 - Logiciel: Viber - (.Viber Media Inc.) [HKCU][64Bits] -- Viber © ---\\ HKCU & HKLM Software Keys (174) - 7s HKLM\SOFTWARE\Wow6432Node\4shared Desktop HKLM\SOFTWARE\Wow6432Node\AddinTools HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Ashampoo HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Canneverbe Limited HKLM\SOFTWARE\Wow6432Node\Cygnus Solutions HKLM\SOFTWARE\Wow6432Node\Design Science HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\DiskInternals HKLM\SOFTWARE\Wow6432Node\DivXNetworks HKLM\SOFTWARE\Wow6432Node\EagleEye HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\Flash Memory Toolkit HKLM\SOFTWARE\Wow6432Node\Freemake HKLM\SOFTWARE\Wow6432Node\g3n-h@ckm@n HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard Company HKLM\SOFTWARE\Wow6432Node\HotspotShield HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Install Options HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\KC Softwares HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\KLCodecPack HKLM\SOFTWARE\Wow6432Node\LAV HKLM\SOFTWARE\Wow6432Node\LG Electronics HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Photodex Media Sources HKLM\SOFTWARE\Wow6432Node\PowerISO HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\secretmaryo HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SNC HKLM\SOFTWARE\Wow6432Node\SolidDocuments HKLM\SOFTWARE\Wow6432Node\Sony Corporation HKLM\SOFTWARE\Wow6432Node\SpringFiles HKLM\SOFTWARE\Wow6432Node\SuppHelpDir HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\sysinternals HKLM\SOFTWARE\Wow6432Node\tueagles HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Yahoo HKLM\SOFTWARE\Wow6432Node\zbshareware HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\AceTools HKCU\SOFTWARE\AddinTools HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Akeo Consulting HKCU\SOFTWARE\AMS Software HKCU\SOFTWARE\AnchorFree HKCU\SOFTWARE\AOL HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Ashampoo HKCU\SOFTWARE\Atari800WinPLus HKCU\SOFTWARE\AVAST Software HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Canneverbe Limited HKCU\SOFTWARE\Cartoonizer HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CoolROM HKCU\SOFTWARE\Cygnus Solutions HKCU\SOFTWARE\Design Science HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DiskInternals HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\drpsu HKCU\SOFTWARE\DRPSu Updater HKCU\SOFTWARE\Duplicate File Cleaner HKCU\SOFTWARE\EFD Software HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Elecard HKCU\SOFTWARE\Engelmann Media HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\EPSON Software Updater HKCU\SOFTWARE\Freemake HKCU\SOFTWARE\Froggie HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Icaros HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Indigo Rose HKCU\SOFTWARE\Install Options HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\KasperskyLabSetup HKCU\SOFTWARE\KC Softwares HKCU\SOFTWARE\Lagarith HKCU\SOFTWARE\LG Electronics HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\LowRegistry HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\madshi HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Maxim Integrated Products HKCU\SOFTWARE\Mediachance HKCU\SOFTWARE\MediaInfo HKCU\SOFTWARE\Mine HKCU\SOFTWARE\mIRC HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netgate HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\PilotGroup HKCU\SOFTWARE\PowerISO HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RadioSure HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Reason HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\SEIKO EPSON CORPORATION HKCU\SOFTWARE\SimonTatham HKCU\SOFTWARE\SimpleTV by SergeyVS#3 HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Slipknot Corp. HKCU\SOFTWARE\SolidDocuments HKCU\SOFTWARE\Sony Corporation HKCU\SOFTWARE\SP1 HKCU\SOFTWARE\Spoon HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\Tavultesoft HKCU\SOFTWARE\TeleCharger HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ultracopier HKCU\SOFTWARE\UnH Solutions HKCU\SOFTWARE\Unity HKCU\SOFTWARE\URSoft HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Viber HKCU\SOFTWARE\Wget HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\Yahoo HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Macromedia HKCU\SOFTWARE\AppDataLow\Software\Unity HKCU\SOFTWARE\AppDataLow\Software\Yahoo ---\\ Contenu des dossiers Programmes (313) - 6s O43 - CFD: 2014/03/30 13:33:35 - [0] D -- C:\Program Files (x86)\Ace Translator O43 - CFD: 2015/04/16 22:02:37 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 2015/09/07 13:36:37 - [0] D -- C:\Program Files (x86)\Apple Software Update O43 - CFD: 2015/02/01 10:47:19 - [] D -- C:\Program Files (x86)\Ashampoo O43 - CFD: 2015/01/03 23:04:56 - [] D -- C:\Program Files (x86)\Bonjour O43 - CFD: 2015/09/26 23:33:35 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 2014/12/26 23:05:29 - [0] D -- C:\Program Files (x86)\DAEMON Tools Ultra O43 - CFD: 2014/12/04 16:28:37 - [0] D -- C:\Program Files (x86)\DDR - Memory Card Recovery(Demo) O43 - CFD: 2013/08/14 13:31:10 - [] D -- C:\Program Files (x86)\directx O43 - CFD: 2014/08/29 23:54:58 - [] D -- C:\Program Files (x86)\DiskInternals O43 - CFD: 2013/09/12 19:15:19 - [] D -- C:\Program Files (x86)\epson O43 - CFD: 2015/03/26 18:39:13 - [] D -- C:\Program Files (x86)\Epson Software O43 - CFD: 2014/02/02 13:11:09 - [0] D -- C:\Program Files (x86)\Flash Memory Toolkit O43 - CFD: 2014/02/15 20:34:22 - [0] D -- C:\Program Files (x86)\Freemake O43 - CFD: 2013/09/17 12:49:05 - [] D -- C:\Program Files (x86)\GDMath O43 - CFD: 2015/06/06 20:26:46 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 2014/05/23 00:18:49 - [0] D -- C:\Program Files (x86)\Hasard O43 - CFD: 2015/09/26 22:15:32 - [0] D -- C:\Program Files (x86)\HDDGURU LLF Tool O43 - CFD: 2013/10/24 21:28:02 - [] D -- C:\Program Files (x86)\Hewlett-Packard O43 - CFD: 2015/10/20 22:42:22 - [] D -- C:\Program Files (x86)\Hotspot Shield O43 - CFD: 2014/11/14 17:33:29 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 2014/11/14 17:26:35 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 2015/10/26 23:57:44 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 2015/08/06 09:07:53 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 2014/02/07 13:42:03 - [0] D -- C:\Program Files (x86)\IO3O LLC O43 - CFD: 2015/01/27 20:07:26 - [] D -- C:\Program Files (x86)\Java O43 - CFD: 2013/08/14 13:28:19 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack O43 - CFD: 2015/09/06 12:00:26 - [] D -- C:\Program Files (x86)\Kaspersky Lab O43 - CFD: 2015/06/05 00:56:53 - [] D -- C:\Program Files (x86)\KC Softwares O43 - CFD: 2014/08/14 01:18:36 - [] D -- C:\Program Files (x86)\LG Electronics O43 - CFD: 2014/05/30 23:33:16 - [0] D -- C:\Program Files (x86)\LibUSB-Win32 O43 - CFD: 2015/10/26 16:14:59 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware O43 - CFD: 2015/10/01 00:10:44 - [] D -- C:\Program Files (x86)\MathType O43 - CFD: 2013/09/16 01:19:58 - [] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 2013/11/04 12:45:20 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 2015/09/27 10:24:11 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 2015/08/12 12:34:26 - [] D -- C:\Program Files (x86)\Microsoft Silverlight O43 - CFD: 2015/09/26 22:49:57 - [0] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 2015/06/05 19:48:51 - [0] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 2013/09/17 12:29:42 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 2015/09/26 23:33:33 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 2014/12/26 23:28:05 - [0] D -- C:\Program Files (x86)\Modèles Météo - GFS O43 - CFD: 2014/05/14 23:21:54 - [0] D -- C:\Program Files (x86)\MotionStudios O43 - CFD: 2015/10/16 09:43:24 - [] D -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 2015/10/16 12:32:47 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 2015/08/02 17:22:26 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 2013/09/12 14:27:45 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 2015/07/31 00:30:20 - [0] D -- C:\Program Files (x86)\Opera O43 - CFD: 2014/10/01 10:56:48 - [] D -- C:\Program Files (x86)\PDF Password Remover O43 - CFD: 2015/05/28 23:32:45 - [0] D -- C:\Program Files (x86)\Photo Slideshow Creator O43 - CFD: 2015/05/28 13:11:35 - [] D -- C:\Program Files (x86)\Photodex O43 - CFD: 2015/05/28 23:25:14 - [0] D -- C:\Program Files (x86)\Photodex Presenter O43 - CFD: 2014/01/11 00:40:46 - [] D -- C:\Program Files (x86)\Portable O43 - CFD: 2015/07/09 13:32:47 - [] D -- C:\Program Files (x86)\PowerISO O43 - CFD: 2015/10/25 13:55:13 - [0] D -- C:\Program Files (x86)\ProgDVB O43 - CFD: 2014/01/27 16:56:05 - [0] D -- C:\Program Files (x86)\Real Desktop O43 - CFD: 2014/11/14 17:22:02 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 2014/02/15 20:32:12 - [] D -- C:\Program Files (x86)\Reason O43 - CFD: 2015/08/02 17:22:26 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 2013/10/18 16:15:12 - [] D -- C:\Program Files (x86)\S.A.D O43 - CFD: 2014/05/05 13:33:14 - [] D -- C:\Program Files (x86)\Save Flash O43 - CFD: 2015/09/26 23:44:15 - [] D -- C:\Program Files (x86)\Scidot O43 - CFD: 2015/08/04 19:08:15 - [0] D -- C:\Program Files (x86)\Secret Maryo Chronicles O43 - CFD: 2013/11/17 14:08:36 - [] D -- C:\Program Files (x86)\SimpleTV O43 - CFD: 2015/04/16 01:03:23 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 2013/09/12 12:48:02 - [] D -- C:\Program Files (x86)\SolidDocuments O43 - CFD: 2015/07/31 00:42:57 - [0] D -- C:\Program Files (x86)\Stella O43 - CFD: 2015/09/13 00:11:23 - [] D -- C:\Program Files (x86)\Tavultesoft O43 - CFD: 2014/11/14 17:37:00 - [0] D -- C:\Program Files (x86)\Temp O43 - CFD: 2015/01/16 23:05:46 - [0] D -- C:\Program Files (x86)\Tropico O43 - CFD: 2015/09/13 12:03:14 - [] RSD -- C:\Program Files (x86)\tuEagles O43 - CFD: 2015/07/31 00:25:24 - [] D -- C:\Program Files (x86)\UltraISO O43 - CFD: 2015/04/07 19:38:59 - [] D -- C:\Program Files (x86)\UnH Solutions O43 - CFD: 2015/02/23 08:12:15 - [] D -- C:\Program Files (x86)\USB Disk Security O43 - CFD: 2013/10/21 18:37:32 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 2013/12/07 13:57:01 - [] D -- C:\Program Files (x86)\VueScan O43 - CFD: 2015/08/02 17:34:27 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 2015/06/05 00:32:21 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 2015/08/02 18:06:39 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 2015/08/02 17:34:27 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 2015/07/10 12:04:26 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 2015/07/10 12:04:22 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 2015/08/02 17:38:42 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 2015/07/10 12:04:26 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 2015/08/02 18:06:39 - [] SD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 2015/07/10 12:04:22 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 2013/08/14 13:28:04 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 2014/05/15 09:04:40 - [] D -- C:\Program Files (x86)\Yahoo! O43 - CFD: 2015/03/09 23:06:35 - [] D -- C:\Program Files (x86)\Your Uninstaller! 7 O43 - CFD: 2015/10/02 21:13:04 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/08/02 18:15:35 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/07/10 17:29:09 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anti-Porn O43 - CFD: 2015/08/02 18:06:44 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo O43 - CFD: 2015/09/07 13:59:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software O43 - CFD: 2009/07/14 16:35:46 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hewlett-Packard Company O43 - CFD: 2015/10/20 22:42:05 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield O43 - CFD: 2015/08/02 18:06:45 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP ScanJet Software O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack O43 - CFD: 2015/09/06 12:01:30 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG PC Suite O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com O43 - CFD: 2015/07/10 12:04:26 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/10/26 13:31:53 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 2015/10/01 00:11:17 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MathType 6 O43 - CFD: 2015/08/12 12:22:38 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 2013/08/14 13:29:41 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\moulin O43 - CFD: 2015/09/26 23:23:10 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Password Remover O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO O43 - CFD: 2015/08/02 18:06:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 2015/08/02 18:06:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SolidDocuments O43 - CFD: 2015/08/02 18:06:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony Picture Utility O43 - CFD: 2015/07/10 12:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 2015/07/10 12:04:26 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/07/10 17:29:06 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 2015/08/02 18:06:48 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UnH Solutions O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 2015/08/02 18:06:49 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Yahoo! Messenger O43 - CFD: 2015/08/02 18:15:35 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Uninstaller! 7 O43 - CFD: 2015/01/03 23:06:56 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 2015/04/16 21:40:22 - [] D -- C:\ProgramData\Adobe O43 - CFD: 2015/09/07 13:33:15 - [] D -- C:\ProgramData\Apple O43 - CFD: 2014/05/29 17:51:03 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 2015/07/10 13:21:38 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 2015/02/01 10:48:07 - [] D -- C:\ProgramData\Ashampoo O43 - CFD: 2013/09/11 21:46:56 - [0] D -- C:\ProgramData\AVAST Software O43 - CFD: 2013/08/14 13:13:09 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 2013/09/12 13:35:47 - [] D -- C:\ProgramData\Canneverbe Limited O43 - CFD: 2015/07/10 12:04:22 - [0] D -- C:\ProgramData\Comms O43 - CFD: 2014/08/10 11:32:12 - [0] D -- C:\ProgramData\DAEMON Tools Ult O43 - CFD: 2014/12/04 16:22:18 - [] D -- C:\ProgramData\DAEMON Tools Ultra O43 - CFD: 2015/07/10 13:21:38 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 2015/07/10 13:21:38 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 2015/08/05 22:35:41 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 2015/09/07 13:39:20 - [] D -- C:\ProgramData\EPSON O43 - CFD: 2013/08/14 13:13:09 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 2014/02/15 20:34:22 - [0] D -- C:\ProgramData\Freemake O43 - CFD: 2015/03/09 23:08:00 - [] D -- C:\ProgramData\Google O43 - CFD: 2015/10/20 22:42:21 - [] D -- C:\ProgramData\Hotspot Shield O43 - CFD: 2013/09/11 22:34:08 - [0] D -- C:\ProgramData\IDM O43 - CFD: 2014/11/14 17:10:54 - [] D -- C:\ProgramData\Intel O43 - CFD: 2015/10/28 20:58:38 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 2015/09/26 14:21:32 - [] D -- C:\ProgramData\KMSAutoS =>PUP.Optional.Windows O43 - CFD: 2014/08/04 23:48:22 - [] D -- C:\ProgramData\LGMOBILEAX O43 - CFD: 2014/11/14 16:50:54 - [] D -- C:\ProgramData\ma-config.com O43 - CFD: 2014/07/06 11:14:44 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 2013/08/14 13:13:09 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 2015/09/26 16:34:56 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 2015/09/26 22:54:29 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 2015/08/02 18:44:45 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 2013/11/04 14:23:59 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 2013/08/14 13:13:09 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 2014/05/14 23:19:04 - [] D -- C:\ProgramData\MotionStudios O43 - CFD: 2013/09/12 15:42:15 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 2015/01/27 20:06:17 - [] D -- C:\ProgramData\Oracle O43 - CFD: 2013/12/27 12:37:42 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 2015/05/28 13:11:47 - [] D -- C:\ProgramData\Photodex O43 - CFD: 2015/10/27 20:42:03 - [0] D -- C:\ProgramData\ProgDVB O43 - CFD: 2015/09/26 23:33:53 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 2014/09/23 20:02:51 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 2015/04/16 01:03:15 - [] D -- C:\ProgramData\Skype O43 - CFD: 2015/07/10 12:04:22 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 2013/09/12 12:47:46 - [] D -- C:\ProgramData\SolidDocuments O43 - CFD: 2015/07/10 13:21:38 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 2014/02/01 08:03:41 - [] D -- C:\ProgramData\Sun O43 - CFD: 2015/10/28 21:10:08 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 2015/07/10 13:21:38 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 2013/09/13 20:47:12 - [] D -- C:\ProgramData\TP-LINK O43 - CFD: 2015/07/10 13:22:45 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 2015/07/10 13:22:45 - [] D -- C:\ProgramData\USOShared O43 - CFD: 2013/10/07 22:44:18 - [] D -- C:\ProgramData\Windows Genuine Advantage O43 - CFD: 2014/05/14 23:11:12 - [] D -- C:\ProgramData\Yahoo! O43 - CFD: 2015/04/16 22:02:38 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 2013/10/27 01:05:50 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 2015/02/14 14:27:25 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 2015/09/26 23:33:35 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 2013/10/18 16:15:11 - [] D -- C:\Program Files (x86)\Common Files\HDX4 O43 - CFD: 2013/09/27 17:38:14 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 2015/08/02 17:58:04 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 2015/01/27 20:06:59 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 2015/09/26 23:21:08 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 2014/11/14 17:10:54 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent O43 - CFD: 2015/07/10 12:04:26 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 2014/12/09 01:06:40 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 2013/09/12 12:48:02 - [] D -- C:\Program Files (x86)\Common Files\SolidDocuments O43 - CFD: 2015/08/02 18:06:34 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 2015/09/26 22:48:02 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 2015/09/13 11:47:01 - [] D -- C:\Program Files (x86)\Common Files\Tavultesoft O43 - CFD: 2013/09/13 01:39:24 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 2014/08/12 13:51:08 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 2015/04/16 23:33:12 - [] D -- C:\Users\hp\AppData\Roaming\Adobe O43 - CFD: 2015/05/26 23:36:28 - [] D -- C:\Users\hp\AppData\Roaming\AMS Software O43 - CFD: 2013/09/25 21:03:21 - [] D -- C:\Users\hp\AppData\Roaming\Apple Computer O43 - CFD: 2015/05/31 23:14:00 - [] D -- C:\Users\hp\AppData\Roaming\Art Mahjongg Egypt O43 - CFD: 2015/02/01 10:49:50 - [] D -- C:\Users\hp\AppData\Roaming\Ashampoo O43 - CFD: 2013/09/12 13:35:47 - [] D -- C:\Users\hp\AppData\Roaming\Canneverbe Limited O43 - CFD: 2014/01/19 15:25:28 - [0] D -- C:\Users\hp\AppData\Roaming\DAEMON Tools Ult O43 - CFD: 2014/08/10 12:02:49 - [] D -- C:\Users\hp\AppData\Roaming\DAEMON Tools Ultra O43 - CFD: 2013/09/12 15:33:57 - [] D -- C:\Users\hp\AppData\Roaming\Design Science O43 - CFD: 2015/10/26 23:56:44 - [] D -- C:\Users\hp\AppData\Roaming\DMCache O43 - CFD: 2013/08/14 13:28:57 - [] D -- C:\Users\hp\AppData\Roaming\DRPSu O43 - CFD: 2014/12/10 07:55:04 - [] D -- C:\Users\hp\AppData\Roaming\dvdcss O43 - CFD: 2013/10/18 16:16:53 - [] D -- C:\Users\hp\AppData\Roaming\Engelmann Media O43 - CFD: 2015/10/27 21:21:25 - [] D -- C:\Users\hp\AppData\Roaming\Enigma Software Group =>.Superfluous.SpyHunter O43 - CFD: 2013/11/18 18:41:08 - [] D -- C:\Users\hp\AppData\Roaming\EurekaLab s.a.s O43 - CFD: 2014/02/08 11:08:50 - [] D -- C:\Users\hp\AppData\Roaming\GeoGebra 4.4 O43 - CFD: 2015/10/20 22:41:48 - [] D -- C:\Users\hp\AppData\Roaming\Hotspot Shield O43 - CFD: 2013/08/14 13:13:27 - [] D -- C:\Users\hp\AppData\Roaming\Identities O43 - CFD: 2015/08/03 12:53:49 - [] D -- C:\Users\hp\AppData\Roaming\IDM O43 - CFD: 2015/06/05 00:57:57 - [] D -- C:\Users\hp\AppData\Roaming\KC Softwares O43 - CFD: 2014/08/14 00:08:52 - [] D -- C:\Users\hp\AppData\Roaming\LG Electronics O43 - CFD: 2014/05/16 22:27:17 - [] D -- C:\Users\hp\AppData\Roaming\libimobiledevice O43 - CFD: 2013/09/11 21:22:45 - [] D -- C:\Users\hp\AppData\Roaming\Macromedia O43 - CFD: 2014/07/06 11:14:47 - [0] D -- C:\Users\hp\AppData\Roaming\Malwarebytes O43 - CFD: 2009/07/14 16:35:18 - [0] D -- C:\Users\hp\AppData\Roaming\Media Center Programs O43 - CFD: 2014/11/04 09:12:05 - [] D -- C:\Users\hp\AppData\Roaming\Media Player Classic O43 - CFD: 2015/09/07 13:58:46 - [] SD -- C:\Users\hp\AppData\Roaming\Microsoft O43 - CFD: 2015/08/31 01:22:04 - [] D -- C:\Users\hp\AppData\Roaming\mIRC O43 - CFD: 2015/05/28 13:12:01 - [] D -- C:\Users\hp\AppData\Roaming\Mozilla O43 - CFD: 2015/05/28 13:12:01 - [] D -- C:\Users\hp\AppData\Roaming\Netscape O43 - CFD: 2015/07/31 00:29:10 - [0] D -- C:\Users\hp\AppData\Roaming\Opera Software O43 - CFD: 2015/05/28 13:11:11 - [] D -- C:\Users\hp\AppData\Roaming\Photodex O43 - CFD: 2014/06/18 22:36:05 - [] D -- C:\Users\hp\AppData\Roaming\PowerISO O43 - CFD: 2014/01/27 14:18:55 - [] D -- C:\Users\hp\AppData\Roaming\Real Desktop O43 - CFD: 2014/05/22 00:26:48 - [] D -- C:\Users\hp\AppData\Roaming\redsn0w O43 - CFD: 2015/07/31 00:14:27 - [] D -- C:\Users\hp\AppData\Roaming\Shortcut O43 - CFD: 2013/11/16 23:36:47 - [] D -- C:\Users\hp\AppData\Roaming\SimpleTV V03 O43 - CFD: 2015/05/27 00:33:01 - [] D -- C:\Users\hp\AppData\Roaming\Skype O43 - CFD: 2014/02/18 11:51:08 - [] D -- C:\Users\hp\AppData\Roaming\smc O43 - CFD: 2015/10/28 01:20:27 - [] D -- C:\Users\hp\AppData\Roaming\SolidDocuments O43 - CFD: 2014/03/23 19:46:44 - [] D -- C:\Users\hp\AppData\Roaming\Sony Corporation O43 - CFD: 2014/05/08 13:46:16 - [] D -- C:\Users\hp\AppData\Roaming\Stellarium O43 - CFD: 2015/09/13 00:09:49 - [] D -- C:\Users\hp\AppData\Roaming\Tavultesoft O43 - CFD: 2015/05/03 23:05:44 - [] D -- C:\Users\hp\AppData\Roaming\Tibo Software O43 - CFD: 2015/05/31 22:22:07 - [] D -- C:\Users\hp\AppData\Roaming\TrickySoftware O43 - CFD: 2013/09/11 23:22:44 - [] D -- C:\Users\hp\AppData\Roaming\URSoft O43 - CFD: 2015/05/23 19:57:45 - [] D -- C:\Users\hp\AppData\Roaming\uTorrent O43 - CFD: 2015/10/18 20:54:10 - [] D -- C:\Users\hp\AppData\Roaming\ViberPC O43 - CFD: 2015/10/23 23:55:40 - [] D -- C:\Users\hp\AppData\Roaming\vlc O43 - CFD: 2013/09/12 12:45:38 - [] D -- C:\Users\hp\AppData\Roaming\WinRAR O43 - CFD: 2014/05/14 23:25:54 - [] D -- C:\Users\hp\AppData\Roaming\Yahoo! O43 - CFD: 2015/05/26 23:28:35 - [] D -- C:\Users\hp\AppData\Roaming\Yandex O43 - CFD: 2013/09/12 12:35:59 - [] D -- C:\Users\hp\AppData\Roaming\Zbshareware Lab O43 - CFD: 2015/10/28 21:11:19 - [] D -- C:\Users\hp\AppData\Roaming\ZHP O43 - CFD: 2015/08/07 08:41:23 - [] D -- C:\Users\hp\AppData\Roaming\{ca02e6c6-4cd7-43cd-a54a-ff9eb2b03cdf} O43 - CFD: 2015/07/02 08:51:46 - [] D -- C:\Users\hp\AppData\Local\Adobe O43 - CFD: 2013/09/25 20:53:44 - [] D -- C:\Users\hp\AppData\Local\Apple O43 - CFD: 2013/09/25 20:55:53 - [] D -- C:\Users\hp\AppData\Local\Apple Computer O43 - CFD: 2015/08/02 18:02:03 - [0] SHD -- C:\Users\hp\AppData\Local\Application Data O43 - CFD: 2015/09/07 13:58:45 - [] D -- C:\Users\hp\AppData\Local\Apps O43 - CFD: 2015/02/01 10:49:51 - [] D -- C:\Users\hp\AppData\Local\ashampoo O43 - CFD: 2015/08/03 01:29:42 - [] D -- C:\Users\hp\AppData\Local\assembly O43 - CFD: 2015/07/21 23:22:24 - [] D -- C:\Users\hp\AppData\Local\CEF O43 - CFD: 2015/08/03 09:52:54 - [] D -- C:\Users\hp\AppData\Local\Comms O43 - CFD: 2015/07/21 11:08:00 - [] D -- C:\Users\hp\AppData\Local\CrashDumps O43 - CFD: 2015/08/04 19:01:37 - [0] D -- C:\Users\hp\AppData\Local\Deployment O43 - CFD: 2015/08/09 23:52:37 - [0] D -- C:\Users\hp\AppData\Local\Diagnostics O43 - CFD: 2014/01/19 14:49:49 - [] D -- C:\Users\hp\AppData\Local\Disc_Soft_Ltd O43 - CFD: 2015/09/22 14:40:21 - [0] D -- C:\Users\hp\AppData\Local\ElevatedDiagnostics O43 - CFD: 2015/06/10 12:52:17 - [0] SHD -- C:\Users\hp\AppData\Local\EmieBrowserModeList O43 - CFD: 2015/06/10 12:52:16 - [0] SHD -- C:\Users\hp\AppData\Local\EmieSiteList O43 - CFD: 2015/06/10 12:52:17 - [0] SHD -- C:\Users\hp\AppData\Local\EmieUserList O43 - CFD: 2015/09/11 23:46:44 - [] D -- C:\Users\hp\AppData\Local\Google O43 - CFD: 2015/08/02 18:02:03 - [0] SHD -- C:\Users\hp\AppData\Local\Historique O43 - CFD: 2013/11/10 10:32:30 - [] D -- C:\Users\hp\AppData\Local\Intel_Corporation O43 - CFD: 2014/08/14 00:04:01 - [] D -- C:\Users\hp\AppData\Local\LG Electronics O43 - CFD: 2014/05/16 19:52:36 - [] D -- C:\Users\hp\AppData\Local\libimobiledevice O43 - CFD: 2013/09/13 01:35:14 - [] D -- C:\Users\hp\AppData\Local\Macromedia O43 - CFD: 2015/10/06 08:51:10 - [] D -- C:\Users\hp\AppData\Local\Microsoft O43 - CFD: 2014/05/05 18:53:02 - [] D -- C:\Users\hp\AppData\Local\Microsoft Help O43 - CFD: 2015/08/02 19:07:17 - [] D -- C:\Users\hp\AppData\Local\MicrosoftEdge O43 - CFD: 2013/10/01 21:48:49 - [] D -- C:\Users\hp\AppData\Local\Mozilla O43 - CFD: 2015/09/26 23:36:14 - [] D -- C:\Users\hp\AppData\Local\MSfree Inc O43 - CFD: 2015/07/31 00:29:10 - [0] D -- C:\Users\hp\AppData\Local\Opera Software O43 - CFD: 2015/10/26 23:55:37 - [] D -- C:\Users\hp\AppData\Local\Packages O43 - CFD: 2015/08/04 11:34:19 - [0] D -- C:\Users\hp\AppData\Local\PeerDistRepub O43 - CFD: 2014/06/09 00:54:11 - [] D -- C:\Users\hp\AppData\Local\Popcorn-Time O43 - CFD: 2013/08/14 13:28:14 - [] D -- C:\Users\hp\AppData\Local\Programs O43 - CFD: 2015/08/02 18:43:19 - [] D -- C:\Users\hp\AppData\Local\Publishers O43 - CFD: 2014/09/23 19:27:34 - [] D -- C:\Users\hp\AppData\Local\RadioSure O43 - CFD: 2014/07/28 23:59:16 - [] D -- C:\Users\hp\AppData\Local\Skype O43 - CFD: 2014/05/08 13:46:15 - [] D -- C:\Users\hp\AppData\Local\stellarium O43 - CFD: 2015/10/28 21:11:24 - [] D -- C:\Users\hp\AppData\Local\Temp O43 - CFD: 2015/08/02 18:02:03 - [0] SHD -- C:\Users\hp\AppData\Local\Temporary Internet Files O43 - CFD: 2015/08/02 18:37:36 - [] D -- C:\Users\hp\AppData\Local\TileDataLayer O43 - CFD: 2015/07/31 01:05:15 - [0] D -- C:\Users\hp\AppData\Local\Unity O43 - CFD: 2015/10/18 20:53:43 - [] D -- C:\Users\hp\AppData\Local\Viber O43 - CFD: 2015/03/28 12:57:13 - [] D -- C:\Users\hp\AppData\Local\VirtualStore O43 - CFD: 2015/06/05 00:43:26 - [] D -- C:\Users\hp\AppData\Local\Windows Live O43 - CFD: 2015/06/07 11:10:19 - [0] D -- C:\Users\hp\AppData\Local\WMTools Downloaded Files O43 - CFD: 2014/08/12 13:51:11 - [] D -- C:\Users\hp\AppData\Local\Wondershare O43 - CFD: 2015/07/10 12:04:26 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 2015/08/02 18:37:35 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 2015/10/15 14:12:13 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 2014/01/23 18:26:05 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Ultra O43 - CFD: 2015/10/28 16:37:35 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Disabled Startup O43 - CFD: 2015/08/02 18:04:00 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DiskInternals O43 - CFD: 2015/08/02 18:15:34 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 2015/07/10 12:04:26 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 2015/08/02 18:15:34 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs O43 - CFD: 2015/08/02 18:15:34 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RadioSure O43 - CFD: 2015/10/28 16:37:35 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 2015/08/02 18:15:34 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier O43 - CFD: 2015/07/10 12:04:26 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 2015/07/10 12:04:45 - [] RSD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell ---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 3s O45 - LFCP:[MD5.8DD0E42A1A244AAB42315208C54733F7] 2015/10/27 21:28:25 A -- C:\WINDOWS\Prefetch\SH_INSTALLER.EXE-58317D62.pf =>.Superfluous.SpyHunter O45 - LFCP:[MD5.E3F39F7CA647AFD570AAFB06C7A82B26] 2015/10/27 21:07:17 A -- C:\WINDOWS\Prefetch\SPYHUNTER-INSTALLER.EXE-0402402D.pf =>.Superfluous.SpyHunter ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll © O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll © O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll © O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll © O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\FileSyncShell.dll © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL © ---\\ Enumération des clés StartupReg (3) - 1s O53 - SMSR:HKLM\...\startupreg\DAEMON Tools Ultra Agent [Key] . (...) -- C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\DrvUpdater [Key] . (.DriverPack Solution - DRP Su Updater.) -- C:\Users\hp\AppData\Roaming\DRPSu\DrvUpdater.exe O53 - SMSR:HKLM\...\startupreg\EPSON SX125 Series [Key] . (...) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGGE.EXE (.not file.) ---\\ Liste des pilotes du système (93) - 5s O58 - SDL:2015/07/20 11:05:27 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\18D43BEE.sys [113880] © O58 - SDL:2015/09/04 17:03:52 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\261D585E.sys [113880] © O58 - SDL:2014/10/04 14:32:19 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\2F840C5B.sys [122584] © O58 - SDL:2015/07/10 11:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] © O58 - SDL:2014/10/24 22:09:59 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\419968D3.sys [129752] © O58 - SDL:2014/11/01 13:03:39 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\45A16DB0.sys [129752] © O58 - SDL:2014/12/05 22:15:13 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\5C5E745D.sys [129752] © O58 - SDL:2014/11/07 17:13:11 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\5E650178.sys [129752] © O58 - SDL:2014/11/07 17:12:56 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\689B0147.sys [129752] © O58 - SDL:2015/06/07 17:06:07 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\715C3041.sys [136408] © O58 - SDL:2014/07/26 01:17:59 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\78D2664C.sys [122584] © O58 - SDL:2015/07/11 09:41:12 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\7B3757EE.sys [113880] © O58 - SDL:2015/06/19 17:10:57 A . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\7E744CCB.sys [136408] © O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] © O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] © O58 - SDL:2015/07/10 11:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] © O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] © O58 - SDL:2013/07/18 12:00:04 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\WINDOWS\System32\drivers\AmUStor.sys [83224] © O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] © O58 - SDL:2011/04/20 03:07:48 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\WINDOWS\System32\drivers\athurx.sys [1930240] © O58 - SDL:2015/07/10 11:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] © O58 - SDL:2015/07/10 11:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] © O58 - SDL:2015/07/06 00:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x64 (Weak).) -- C:\WINDOWS\System32\drivers\cm_km.sys [389816] © O58 - SDL:2015/10/27 21:10:33 A . (...) -- C:\WINDOWS\System32\drivers\EsgScanner.sys [22704] O58 - SDL:2015/07/10 11:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] © O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] © O58 - SDL:2015/07/10 11:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] © O58 - SDL:2014/12/03 23:35:04 A . (.AnchorFree Inc. - Hotspot Shield Routing Driver.) -- C:\WINDOWS\System32\drivers\hssdrv6.sys [44744] © O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] © O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] © O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] © O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] © O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] © O58 - SDL:2015/06/12 03:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [197616] © O58 - SDL:2015/10/09 21:14:45 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3797424] © O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] © O58 - SDL:2013/07/17 22:43:40 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\WINDOWS\System32\drivers\iusb3hcs.sys [20464] © O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] © O58 - SDL:2015/06/22 20:40:04 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\WINDOWS\System32\drivers\kl1.sys [478392] © O58 - SDL:2015/06/06 08:48:24 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [53432] © O58 - SDL:2015/06/27 01:30:00 A . (.Kaspersky Lab ZAO - Backup File Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [70512] © O58 - SDL:2015/06/06 08:51:00 A . (.Kaspersky Lab ZAO - Virtual Disk [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kldisk.sys [68280] © O58 - SDL:2015/06/24 01:28:32 A . (.Kaspersky Lab - Klelam Mini-Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klelam.sys [30328] © O58 - SDL:2015/10/21 10:28:49 A . (.AO Kaspersky Lab - Filter Core [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klflt.sys [181640] O58 - SDL:2015/10/21 10:28:12 A . (.AO Kaspersky Lab - klhk [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klhk.sys [227512] O58 - SDL:2015/10/21 10:28:50 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klif.sys [925064] O58 - SDL:2015/06/11 19:35:38 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver [.) -- C:\WINDOWS\System32\drivers\klim6.sys [39608] © O58 - SDL:2015/06/06 08:31:42 A . (.Kaspersky Lab ZAO - Keyboard Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [41656] © O58 - SDL:2015/06/07 01:52:56 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [41656] © O58 - SDL:2015/09/26 14:39:19 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klpd.sys [41352] O58 - SDL:2015/10/21 10:28:51 A . (.Kaspersky Lab ZAO - Network filtering component [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klwfp.sys [87944] © O58 - SDL:2015/06/16 21:56:32 A . (.Kaspersky Lab ZAO - WFP Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\klwtp.sys [102584] © O58 - SDL:2015/06/23 18:30:50 A . (.Kaspersky Lab ZAO - Network Processor [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kneps.sys [187056] © O58 - SDL:2013/04/18 16:14:12 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetdiag64.sys [29184] © O58 - SDL:2013/06/28 11:45:00 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetmodem64.sys [36352] © O58 - SDL:2009/09/29 08:15:00 A . (.LG Electronics Inc. - LG BT 64 Bit Bus Enumerator.) -- C:\WINDOWS\System32\drivers\lgbtbs64.sys [14848] © O58 - SDL:2009/09/29 08:15:02 A . (.LG Electronics Inc. - LG Bluetooth Transport Driver.) -- C:\WINDOWS\System32\drivers\lgbtpt64.sys [16384] © O58 - SDL:2009/09/29 08:15:00 A . (.LG Electronics Inc. - LG 64 bit Virtual Modem Driver.) -- C:\WINDOWS\System32\drivers\lgvmdm64.sys [17408] © O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] © O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] © O58 - SDL:2015/07/10 11:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] © O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] © O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] © O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] © O58 - SDL:2015/10/27 21:38:40 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] © O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] © O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] © O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] © O58 - SDL:2015/07/10 11:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] © O58 - SDL:2015/10/05 09:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] © O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] © O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] © O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] © O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] © O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] © O58 - SDL:2015/08/06 17:27:39 A . (.Research In Motion Limited - BlackBerry Device Driver.) -- C:\WINDOWS\System32\drivers\RimUsb_AMD64.sys [27520] © O58 - SDL:2015/09/03 12:10:36 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [896752] © O58 - SDL:2015/06/24 22:57:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4504320] © O58 - SDL:2014/10/08 14:13:10 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\WINDOWS\System32\drivers\scdemu.sys [127760] © O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] © O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] © O58 - SDL:2015/07/10 11:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] © O58 - SDL:2013/08/22 13:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [40664] © O58 - SDL:2014/12/03 23:38:18 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42184] © O58 - SDL:2014/06/24 16:08:20 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [125952] © O58 - SDL:2014/09/23 20:09:35 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [34808] O58 - SDL:2015/07/10 11:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2014/08/15 23:35:00 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] © O58 - SDL:2015/07/10 11:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] © O58 - SDL:2015/07/10 11:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] © O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] © O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] © O58 - SDL:2011/04/20 03:07:48 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\WINDOWS\System32\athurx.sys [1930240] © ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (13) - 62s O61 - LFC: 2015/10/27 12:53:56 A . (.SosVirus.) -- C:\Users\hp\Downloads\Pre_Scan (1).exe [3432960] O61 - LFC: 2015/10/27 12:53:24 A . (.SosVirus.) -- C:\Users\hp\Downloads\Pre_Scan.exe [3432960] O61 - LFC: 2015/10/27 21:07:04 A . (.Enigma Software Group USA, LLC..) -- C:\Users\hp\Downloads\SpyHunter-Installer.exe [3237248] =>.Superfluous.SpyHunter O61 - LFC: 2015/10/25 23:47:35 A . (..) -- C:\Users\hp\Downloads\Programs\data.bin [340] O61 - LFC: 2015/10/25 12:47:20 A . (..) -- C:\Users\hp\Downloads\Programs\ProgDVB7.11.4Pro.exe [22168344] O61 - LFC: 2015/10/25 23:45:39 A . (.http://spring-files.com.) -- C:\Users\hp\Downloads\Programs\ProgDVB_Professional_Crack_Serial_Keygen_Free_Download_downloader.exe [5019344] O61 - LFC: 2015/10/27 23:17:38 A . (..) -- C:\Users\hp\AppData\Roaming\Microsoft\UProof\CMAdj.12.bin [2514] O61 - LFC: 2015/10/27 21:07:04 A . (.Enigma Software Group USA, LLC..) -- C:\Users\hp\AppData\Roaming\Enigma Software Group\sh_installer.exe [3237248] =>.Superfluous.SpyHunter O61 - LFC: 2015/10/25 15:02:13 A . (..) -- C:\Users\hp\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [17128] O61 - LFC: 2015/10/28 21:03:16 A . (..) -- C:\Users\hp\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2015/10/28 20:48:56 A . (..) -- C:\Users\hp\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635816371674991374.bin [47292] O61 - LFC: 2015/10/28 16:25:08 A . (..) -- C:\Users\hp\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635816371674991374.bin [47292] O61 - LFC: 2015/10/28 13:25:02 A . (..) -- C:\Users\hp\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files (x86)\Opera\Launcher.exe ---\\ Menu de démarrage Internet (15) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\Firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\hp\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\hp\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\hp\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (4) - 2s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {6452201E-CB6D-4818-8E29-6A4669300D82} - (Flickr) - http://www.flickr.com/ O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ O69 - SBI: SearchScopes [HKCU] {F0A5582D-BAF1-4A5B-BEF1-0E162C53AFD5} - (Yahoo) - http://fr.search.yahoo.com/ ---\\ Enumère les fichiers Crack & Keygen (1) - 43s O82 - LFC: 2015/10/25 23:45:39 A . (.http://spring-files.com.) -- C:\Users\hp\Downloads\Programs\ProgDVB_Professional_Crack_Serial_Keygen_Free_Download_downloader.exe [5019344] =>.Crack,Keygen ---\\ Enumère les services démarrés par Svchost (42) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324608] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] © O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] © O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [187392] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2236416] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] © O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] © O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] © O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] © O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] © O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [717312] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] © O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] © O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] © O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1010176] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [200192] © ---\\ Liste des exceptions du parefeu Windows (19) - 2s O87 - FAEL: "{27FB8CCB-2AC4-4F1E-8CB8-79EC65080FF7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>PUP.Optional.RelevantKnowledge O87 - FAEL: "{6F1AD449-1206-4D1F-9619-A28C6294E71E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (.not file.) =>PUP.Optional.RelevantKnowledge O87 - FAEL: "{5F835582-EEF5-462B-B45D-294A8356F0EE}" [Out-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{43311495-A123-4E69-946F-4F31675CEFDE}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{6D26BC78-F71F-492B-B288-A39AB5754D4B}" [Out-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{32689906-0264-4220-8B5B-48CBB7435E00}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe O87 - FAEL: "{2B9ECBD9-3C73-4D23-9FE8-528450C7857E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{7A65E7EC-6561-4A72-A420-9D94D5E22BC0}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico O87 - FAEL: "{787C1D0E-DD67-4747-A270-40A97AD8219D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (.not file.) O87 - FAEL: "{A99C33C8-2E6A-4F8D-BBA8-60918BFFB07F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe (.not file.) O87 - FAEL: "{530DE82C-88EA-4129-8723-D671483374EC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (.not file.) O87 - FAEL: "{27559513-02D6-489B-8C85-3C02FC07D2DC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\lync.exe (.not file.) O87 - FAEL: "{ABD708AD-F241-4BEA-8FC5-A7A878E2A880}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office15\outlook.exe (.not file.) O87 - FAEL: "UDP Query User{BE7AF01E-6117-4433-BC71-19DDC3063DC7}G:\mirc\mirc.exe" [In-None-P17-TRUE] .(...) -- G:\mirc\mirc.exe (.not file.) O87 - FAEL: "TCP Query User{CACFBB6E-D8E5-413E-87BE-36287D427D17}G:\mirc\mirc.exe" [In-None-P6-TRUE] .(...) -- G:\mirc\mirc.exe (.not file.) O87 - FAEL: "UDP Query User{E9B3FFE1-ADBC-4924-8076-5BDAD4B5F5D5}G:\mirc\mirc.exe" [In-None-P17-TRUE] .(...) -- G:\mirc\mirc.exe (.not file.) O87 - FAEL: "TCP Query User{8D323F36-352E-4887-8201-18D99853D750}G:\mirc\mirc.exe" [In-None-P6-TRUE] .(...) -- G:\mirc\mirc.exe (.not file.) O87 - FAEL: "TCP Query User{97B9E1CF-BDCA-4E3A-89E4-E21DD93F2BB4}C:\users\hp\desktop\pre_scan.exe" [In-None-P6-TRUE] .(...) -- C:\users\hp\desktop\pre_scan.exe (.not file.) O87 - FAEL: "UDP Query User{7B8ED0CD-F722-48E8-A1A2-FE32E6B15C2D}C:\users\hp\desktop\pre_scan.exe" [In-None-P17-TRUE] .(...) -- C:\users\hp\desktop\pre_scan.exe (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (25) - 19s SS - Disabled [2015/09/14 09:25:38] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe © SS - Disabled [2015/10/16 22:09:21] [ 269000] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe © SR - Auto [2015/09/06 12:08:36] [ 194000] Kaspersky Anti-Virus Service 16.0.0 (AVP16.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe © SS - Disabled [2011/08/30 23:05:32] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe © SS - Demand [2015/10/09 21:14:46] [ 291744] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe © SS - Disabled [2015/08/29 13:58:45] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Disabled [2015/08/29 13:58:45] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe © SS - Disabled [2014/12/03 23:40:26] [ 78512] Hotspot Shield Tray Service (HssTrayService) . (...) - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE SS - Disabled [2014/12/13 02:11:52] [ 573736] Hotspot Shield Monitoring Service (HssWd) . (...) - C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe SS - Demand [2012/04/24 14:37:56] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe © SS - Auto [2015/10/09 21:14:46] [ 330136] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\system32\igfxCUIService.exe © SS - Demand [2014/05/13 14:31:14] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe © SS - Auto [2014/06/24 16:08:20] [ 154584] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe © SR - Auto [2014/06/24 16:08:20] [ 405976] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe © SS - Disabled [2014/10/15 11:42:46] [ 2820424] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe © SS - Disabled [2015/10/05 09:48:44] [ 1513784] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe © SS - Disabled [2015/10/05 09:48:46] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe © SS - Disabled [2015/10/16 09:43:16] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe © SS - Auto [2015/06/24 22:57:00] [ 303360] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe © SS - Disabled [2015/02/18 19:11:32] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe © SS - Disabled [2010/12/17 22:03:58] [ 209920] SolidPDFToolsCreatorReadSpool (SPDFToolsReadSpool) . (.Solid Documents, LLC.) - C:\Program Files (x86)\SolidDocuments\Solid PDF Tools\SPDFT\SolidPdfToolsServicex64.exe SS - Disabled [2015/10/27 21:09:21] [ 1026944] SpyHunter 4 Service (SpyHunter 4 Service) . (.Enigma Software Group USA, LLC..) - C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe =>.Superfluous.SpyHunter SS - Disabled [2014/12/14 12:56:54] [ 339336] tuEagles Service (tuEaglesService) . (...) - C:\Program Files (x86)\tuEagles\EglSrv.exe SS - Demand [2015/07/09 00:02:50] [ 144640] vssbrigde64 (vssbrigde64) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe ---\\ Scan Additionnel (6) - 0s C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\ProgramData\KMSAutoS =>PUP.Optional.Windows C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\WINDOWS\Prefetch\SH_INSTALLER.EXE-58317D62.pf =>.Superfluous.SpyHunter C:\WINDOWS\Prefetch\SPYHUNTER-INSTALLER.EXE-0402402D.pf =>.Superfluous.SpyHunter ---\\ Récapitulatif des éléments trouvées sur votre station (4) - 0s http://www.nicolascoolman.fr/trojan-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/blog =>PUP.Optional.Windows http://www.nicolascoolman.fr/adware-relevantknowledge/ =>PUP.Optional.RelevantKnowledge http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico ~ End of the scan, 34600 items in 167 seconds (1041)(1)()