~ ZHPDiag v2016.3.28.76 Par Nicolas Coolman (2016/03/28) ~ Démarré par ADEBONNE (Administrator) (2016/03/29 13:06:07) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: d:\Users\ADEBONNE\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\ADEBONNE\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Enterprise, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (2) - 0s MFIE: Mozilla Firefox 45.0.1 (x86 fr) MSIE: Internet Explorer v8.0.7601.17514 ---\\ Informations sur les produits Windows (9) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, VOLUME_MAK channel Windows ID Activation : OK ~ Windows Partial Key : XQGV7 Windows License : OK ~ Windows Remaining Initializations Number : 2 Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8289.716 MB (59% free) System Restore: Activé (Enable) System drive C: has 51 GB () free of 103 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: BLPP-1576 ~ User Name: ADEBONNE ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 51 GB free of 103 GB (System) ~ Drive D: has 147 GB free of 201 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (26) - 0s [MD5.9D77CC4A36FEEA644D002CFB9B2D42C0] - 22/01/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3231232] =>.Microsoft Corporation [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.7FDF925B70507715598E1319601FCA6A] - 10/12/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1188864] =>.Microsoft Corporation [MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation [MD5.CF1F6326AC44C42F4615D4BD53188AC5] - 07/01/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [105984] =>.Microsoft Corporation [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.07F8F6B0CAEC7ADD30EBD94940A315D7] - 11/02/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [261632] =>.Microsoft Corporation [MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation [MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (28) - 3s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Berger-Levrault AGENT (BL_AGENT) . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O23 - Service: Berger-Levrault SAM (BL_SAM) . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) . (.Cisco Systems, Inc. - Cisco Systems VPN Client.) - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc. O23 - Service: DameWare Mini Remote Control (dwmrcs) . (.SolarWinds - DameWare products.) - C:\Windows\dwrcs\DWRCS.EXE {4D1AD4813484CD2C046846391B68FADB} O23 - Service: GSL Share Memory (GslShmSrvc) . (.Gemalto - Classic Client SHM Service.) - C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe =>.Gemalto O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe =>.Nitro PDF Software® O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software® O23 - Service: PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH - PDF Architect 3.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe =>.pdfforge GmbH® O23 - Service: PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH - PDF Architect Helper Service.) - C:\Program Files (x86)\PDF Architect\HelperService.exe =>.pdfforge GmbH® O23 - Service: PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH - PDF Architect Conversion Service.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe =>.pdfforge GmbH® O23 - Service: Sophos Anti-Virus status reporter (SAVAdminService) . (.Sophos Limited - Sophos Administrator Service.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe =>.Sophos Limited® O23 - Service: Sophos Anti-Virus (SAVService) . (.Sophos Limited - Performs virus scanning and disinfection fu.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe =>.Sophos Limited® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Sophos Network Threat Protection (SntpService) . (.Sophos Limited - Sophos Network Threat Protection Service.) - C:\Program Files\Sophos\Sophos Network Threat Protection\bin\SntpService.exe =>.Sophos Limited® O23 - Service: Sophos Agent (Sophos Agent) . (.Sophos Limited - Sophos Agent.) - C:\Program Files (x86)\Sophos\Remote Management System\ManagementAgentNT.exe =>.Sophos Limited® O23 - Service: Sophos AutoUpdate Service (Sophos AutoUpdate Service) . (.Sophos Limited - Sophos AutoUpdate Service..) - C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe =>.Sophos Limited® O23 - Service: Sophos Message Router (Sophos Message Router) . (.Sophos Limited - Sophos Message Router.) - C:\Program Files (x86)\Sophos\Remote Management System\RouterNT.exe =>.Sophos Limited® O23 - Service: Sophos Web Control Service (Sophos Web Control Service) . (.Sophos Limited - Sophos Web Control Service.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe =>.Sophos Limited® O23 - Service: Sophos System Protection Service (sophossps) . (.Sophos Limited - Sophos System Protection Service Executable.) - C:\Program Files (x86)\Sophos\Sophos System Protection\ssp.exe =>.Sophos Limited® O23 - Service: Sophos Web Intelligence Service (swi_service) . (.Sophos Limited - Sophos Web Intelligence.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe =>.Sophos Limited® O23 - Service: Sophos Web Intelligence Update (swi_update_64) . (.Sophos Limited - Sophos Web Intelligence.) - C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe =>.Sophos Limited® O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® O23 - Service: TOSHIBA HDD Protection (Thpsrv) . (.TOSHIBA Corporation - TOSHIBA HDD Protection Service.) - C:\Windows\System32\ThpSrv.exe =>.TOSHIBA CORPORATION® O23 - Service: TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.TOSHIBA CORPORATION® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (36) - 22s SR - Auto [21/12/2013] [ 65432] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [24/03/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [19/11/2015] [ 317760] Berger-Levrault AGENT (BL_AGENT) . (.Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} SR - Auto [19/11/2015] [ 317760] Berger-Levrault SAM (BL_SAM) . (.Berger-Levrault.) - D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} SR - Auto [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [23/03/2010] [ 1528616] Cisco Systems, Inc. VPN Service (CVPND) . (.Cisco Systems, Inc..) - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc. SR - Demand [18/06/2015] [ 1268568] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe =>.Disc Soft Ltd® SR - Auto [16/08/2012] [ 869736] DameWare Mini Remote Control (dwmrcs) . (.SolarWinds.) - C:\Windows\dwrcs\DWRCS.EXE {4D1AD4813484CD2C046846391B68FADB} SS - Disabl [25/10/2013] [ 37376] FusionInventory Agent (FusionInventory-Agent) . (.strawberryperl.com.) - C:\Program Files (x86)\FusionInventory-Agent\perl\bin\perl.exe SR - Auto [27/07/2012] [ 85504] GSL Share Memory (GslShmSrvc) . (.Gemalto.) - C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe =>.Gemalto SR - Auto [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation® SR - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [19/03/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [22/03/2012] [ 204296] NitroPDFDriverCreatorReadSpool2 (NitroDriverReadSpool2) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe =>.Nitro PDF Software® SR - Auto [22/03/2012] [ 69640] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software® SS - Demand [24/04/2015] [ 2244312] PDF Architect 3 (PDF Architect 3) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\ws.exe =>.pdfforge GmbH® SS - Demand [24/04/2015] [ 901336] PDF Architect 3 CrashHandler (PDF Architect 3 CrashHandler) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\crash-handler-ws.exe =>.pdfforge GmbH® SR - Auto [24/04/2015] [ 740568] PDF Architect 3 Creator (PDF Architect 3 Creator) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect 3\creator-ws.exe =>.pdfforge GmbH® SR - Auto [08/04/2013] [ 1320496] PDF Architect Helper Service (PDF Architect Helper Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\HelperService.exe =>.pdfforge GmbH® SR - Auto [08/04/2013] [ 799280] PDF Architect Service (PDF Architect Service) . (.pdfforge GmbH.) - C:\Program Files (x86)\PDF Architect\ConversionService.exe =>.pdfforge GmbH® SR - Auto [11/03/2016] [ 311544] Sophos Anti-Virus status reporter (SAVAdminService) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe =>.Sophos Limited® SR - Auto [11/03/2016] [ 285136] Sophos Anti-Virus (SAVService) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe =>.Sophos Limited® SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [11/03/2016] [ 901248] Sophos Network Threat Protection (SntpService) . (.Sophos Limited.) - C:\Program Files\Sophos\Sophos Network Threat Protection\bin\SntpService.exe =>.Sophos Limited® SR - Auto [11/03/2016] [ 396040] Sophos Agent (Sophos Agent) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Remote Management System\ManagementAgentNT.exe =>.Sophos Limited® SR - Auto [11/03/2016] [ 604000] Sophos AutoUpdate Service (Sophos AutoUpdate Service) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe =>.Sophos Limited® SR - Auto [11/03/2016] [ 1069832] Sophos Message Router (Sophos Message Router) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Remote Management System\RouterNT.exe =>.Sophos Limited® SR - Auto [14/11/2014] [ 341800] Sophos Web Control Service (Sophos Web Control Service) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe =>.Sophos Limited® SR - Auto [11/03/2016] [ 2455816] Sophos System Protection Service (sophossps) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos System Protection\ssp.exe =>.Sophos Limited® SR - Auto [11/03/2016] [ 3339736] Sophos Web Intelligence Service (swi_service) . (.Sophos Limited.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe =>.Sophos Limited® SS - Auto [11/03/2016] [ 2118896] Sophos Web Intelligence Update (swi_update_64) . (.Sophos Limited.) - C:\ProgramData\Sophos\Web Intelligence\swi_update_64.exe =>.Sophos Limited® SR - Auto [11/09/2015] [ 5702416] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® SR - Auto [07/01/2008] [ 547456] TOSHIBA HDD Protection (Thpsrv) . (.TOSHIBA Corporation.) - C:\Windows\System32\ThpSrv.exe =>.Toshiba Corporation SR - Auto [09/12/2010] [ 489384] TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.TOSHIBA CORPORATION® SR - Demand [01/04/2011] [ 198064] TOSHIBA Bluetooth Service (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe =>.TOSHIBA CORPORATION® ---\\ Tâches planifiées en automatique (12) - 3s [MD5.A9D55370A0CBADD1E1E2B4796ACD26DF] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated® [MD5.8F7458DCB5D682B6EA8333CEA4F156A7] [APT] [G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335] (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Program Files (x86)\Citrix\GoToMeeting\4670\g2mupdate.exe [41536] (.Activate.) {44AD220DBF367E6C4D2E480E121853D7} [MD5.8F7458DCB5D682B6EA8333CEA4F156A7] [APT] [G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335] (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Program Files (x86)\Citrix\GoToMeeting\4670\g2mupload.exe [41536] (.Activate.) {44AD220DBF367E6C4D2E480E121853D7} [MD5.7879E5C3A85A1815D7945D6BD80DFD50] [APT] [PrivaZer_SkipUAC] (.Goversoft LLC.) -- C:\Program Files (x86)\PrivaZer\PrivaZer.exe [14605064] (.Activate.) =>.Goversoft® [MD5.E3238CA9101C670556B636C8F4FCE358] [APT] [Lenovo\] (.Lenovo.) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [17184] (.Activate.) =>.LENOVO® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335.job [544] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\Tasks\G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335.job [640] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3940] =>.Adobe Systems Incorporated® O39 - APT: G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-2243348203-3184530547-2589724496-3335 [3594] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-2243348203-3184530547-2589724496-3335 [3690] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: PrivaZer_SkipUAC - (.Goversoft LLC.) -- C:\Windows\System32\Tasks\PrivaZer_SkipUAC [3126] =>.Goversoft® ---\\ Processus lancés (61) - 4s [MD5.CD72AC46366F3745D0802BE75263CD85] - (.Sophos Limited - Performs virus scanning and disinfection fu.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [285136] [PID.1328] =>.Sophos Limited® [MD5.B362181ED3771DC03B4141927C80F801] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65432] [PID.1324] =>.Adobe Systems, Incorporated® [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1364] =>.Apple Inc.® [MD5.66257CB4E4FB69887CDDC71663741435] - (.Cisco Systems, Inc. - Cisco Systems VPN Client.) -- C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe [1528616] [PID.1728] {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc. [MD5.DECF482D820334D25D576EA58D6B1621] - (.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCS.EXE [869736] [PID.2072] {4D1AD4813484CD2C046846391B68FADB} [MD5.354A8BF5CDB2938E94FD459E2E5AB4A6] - (.Gemalto - Classic Client SHM Service.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\GslShmSrvc.exe [85504] [PID.2148] =>.Gemalto [MD5.9611577752E293259C7DCE19E9026362] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464] [PID.2200] =>.Malwarebytes Corporation® [MD5.F1A89A34388B5626F1548D393B23ECB1] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608] [PID.2428] =>.Malwarebytes Corporation® [MD5.015096B444149C90F49224EDE970EC09] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Common Files\Nitro PDF\Professional\7.0\NitroPDFDriverService2x64.exe [204296] [PID.2628] =>.Nitro PDF Software® [MD5.13B8FAEBA5F9943ABFC0856A57B7DFCE] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [69640] [PID.2680] =>.Nitro PDF Software® [MD5.1234BB5F8C7EC1E52F32A3EBF65F52EA] - (.pdfforge GmbH - PDF Architect 3.) -- C:\Program Files (x86)\PDF Architect 3\creator-ws.exe [740568] [PID.2724] =>.pdfforge GmbH® [MD5.20372BE109FEE1C37E2D5216680DB9EB] - (.pdfforge GmbH - PDF Architect Helper Service.) -- C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496] [PID.2872] =>.pdfforge GmbH® [MD5.B90A279073A815A4AA2C45A09EE004FA] - (.pdfforge GmbH - PDF Architect Conversion Service.) -- C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280] [PID.2940] =>.pdfforge GmbH® [MD5.0F88547DDDC91DE85B61F93BB8D7866A] - (.Sophos Limited - Sophos Administrator Service.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [311544] [PID.3000] =>.Sophos Limited® [MD5.95C9BDF5C030644B0B11D8BEEA9740D5] - (.Sophos Limited - Sophos Network Threat Protection Service.) -- C:\Program Files\Sophos\Sophos Network Threat Protection\bin\SntpService.exe [901248] [PID.2716] =>.Sophos Limited® [MD5.218A71C75CEFA2C8B5F225EF2EDAC18C] - (.Sophos Limited - Sophos Agent.) -- C:\Program Files (x86)\Sophos\Remote Management System\ManagementAgentNT.exe [396040] [PID.3056] =>.Sophos Limited® [MD5.F5BCDA93F70CE7DCEB81660CB62C2BFF] - (.Sophos Limited - Sophos AutoUpdate Service..) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [604000] [PID.3132] =>.Sophos Limited® [MD5.E26625A4A22E5BADF495B8FB613F27AD] - (.Sophos Limited - Sophos Web Control Service.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [341800] [PID.3324] =>.Sophos Limited® [MD5.664C33FCF2A7CE154ED21EC18F2424B1] - (.Sophos Limited - Sophos System Protection Service Executable.) -- C:\Program Files (x86)\Sophos\Sophos System Protection\ssp.exe [2455816] [PID.3380] =>.Sophos Limited® [MD5.78D9AE984D5E5C345FE4F536C62C913F] - (.Sophos Limited - Sophos Web Intelligence.) -- C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3339736] [PID.3912] =>.Sophos Limited® [MD5.2AA61246A5B813C1B12BCCFAA6F23DD8] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416] [PID.3240] =>.TeamViewer® [MD5.91980BDC842D0FDB7F718781B63127D5] - (.TOSHIBA Corporation - TOSHIBA HDD Protection Service.) -- C:\Windows\System32\ThpSrv.exe [547456] [PID.4196] =>.TOSHIBA CORPORATION® [MD5.CDC97FA5C42B07FB0D4600E17C32F582] - (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe [489384] [PID.4324] =>.TOSHIBA CORPORATION® [MD5.6ED1814C5D92EDBBC2F3C460129A3E1C] - (.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCST.EXE [425832] [PID.5760] {4D1AD4813484CD2C046846391B68FADB} [MD5.8E98E3EC16D2641005B4748CD330FB45] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9926112] [PID.5840] =>.Malwarebytes Corporation® [MD5.A889E7974A7B9A41AF88B77E17627D26] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [18484496] [PID.5820] =>.TeamViewer® [MD5.FBC76FB8AC96C179E4D0BC806B850748] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\tv_w32.exe [230672] [PID.3576] =>.TeamViewer® [MD5.24B9BA271BC87C8B9FC05A688923652F] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\tv_x64.exe [263952] [PID.4536] =>.TeamViewer® [MD5.6DEE94C715404B839DDCE782FA8AD350] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [328048] [PID.4900] =>.Alps Electric Co., LTD.® [MD5.F2DA3E94647A687301F982AC1FA53AD0] - (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBank.exe [976256] [PID.4768] =>.TOSHIBA CORPORATION® [MD5.890B98C749312FF1DB4FE9868FD78597] - (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUTaskMonitor.exe [896384] [PID.6044] =>.TOSHIBA CORPORATION® [MD5.3A25973E0B5C1C6ED5A64EF0F85386B2] - (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe [566696] [PID.5624] =>.TOSHIBA CORPORATION® [MD5.DE6768D360564906AB9C320A6994FC8D] - (.TOSHIBA Corporation - TOSHIBA Flash Cards Main Module.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544] [PID.4264] =>.TOSHIBA CORPORATION® [MD5.A042FB145907E867A19D5CAC06A9EFB1] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592] [PID.3532] =>.Realtek Semiconductor Corp® [MD5.C816EC69693ED89D4D20A31D1647FEB9] - (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe [495616] [PID.6112] =>.Greenshot [MD5.91980BDC842D0FDB7F718781B63127D5] - (.TOSHIBA Corporation - TOSHIBA HDD Protection Service.) -- C:\Windows\System32\ThpSrv.exe [547456] [PID.5172] =>.TOSHIBA CORPORATION® [MD5.A300D780F0A80E5099002B7295B73430] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [167744] [PID.3336] =>.Intel Corporation® [MD5.B8868A9397AC7541F600A323704ECF06] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [392512] [PID.4116] =>.Intel Corporation® [MD5.0B0B165A9A3C4564BF36260AB854AB42] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [417088] [PID.5176] =>.Intel Corporation® [MD5.051E1C48AE871C51AB6226F9DDE348EE] - (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe [110160] [PID.5912] =>.Siber Systems Inc® [MD5.60A3F71E829F8E505430CC7430670D7F] - (.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe [317760] [PID.5884] {3D108A29119C5D7FCA5084A87EF8CCFC} [MD5.FE12709D0ABE8BAE59523B2C4C2BD56F] - (.Sophos Limited - Sophos Endpoint Security and Control.) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe [1531872] [PID.6360] =>.Sophos Limited® [MD5.B03F39264477EC8A979C67C789A7B62A] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [66928] [PID.6548] =>.Alps Electric Co., LTD.® [MD5.7F78CE48F8EA201765D65442C71C17E8] - (.(C) 2007 by Gemalto NV Group - RegTool MFC Application.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe [1241088] [PID.6896] [MD5.1B0E5412AB8F30B8ED2AEAC2C530EB90] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\hidfind.exe [98672] [PID.6952] =>.Alps Electric Co., LTD.® [MD5.FD97807051658AE27799BE3A557D3776] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\ApntEx.exe [29552] [PID.7008] =>.Alps Electric Co., LTD.® [MD5.99BF669611DB06126D72C5E965A9E938] - (.TOSHIBA CORPORATION. - Bluetooth Manager.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtMng.exe [2750376] [PID.6368] =>.TOSHIBA CORPORATION® [MD5.68BA0E5692BC127B07E1CD2F1B4B427F] - (.Repkasoft - YoWindow 4.) -- C:\Program Files (x86)\YoWindow\yowindow.exe [1140032] [PID.6428] {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft [MD5.91DF13EC831BDCFA36A7A12CD13D66B9] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe [1268568] [PID.6488] =>.Disc Soft Ltd® [MD5.A22DEB5EC05FEBFDCA1D3FF70FA1FF46] - (.TOSHIBA CORPORATION - TOSHIBA Bluetooth Service.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe [198064] [PID.6624] =>.TOSHIBA CORPORATION® [MD5.CC9F2719B8BCE8298031517CA982A49E] - (.TOSHIBA CORPORATION. - TosA2DP.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosA2dp.exe [690072] [PID.6200] =>.TOSHIBA CORPORATION® [MD5.0D878F76B2B191F2B816FF4A18790D78] - (.TOSHIBA CORPORATION. - TosBtHid.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHid.exe [87960] [PID.6756] =>.TOSHIBA CORPORATION® [MD5.C2546BD4174CAD72C78D79339CB2347A] - (.TOSHIBA CORPORATION. - TosBtHSP.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtHSP.exe [746384] [PID.6840] =>.TOSHIBA CORPORATION® [MD5.47B4FCDCE4C0A64A54BC9A66B176B0F1] - (.TOSHIBA CORPORATION. - TosAVRC.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosAVRC.exe [447816] [PID.3892] =>.TOSHIBA CORPORATION® [MD5.98A27CEBF7146A6745051D03E8302A0D] - (.TOSHIBA CORPORATION. - tosOBEX.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosOBEX.exe [511888] [PID.7312] =>.TOSHIBA CORPORATION® [MD5.BF8A6B8EDF6AC72DC0BB3DECCDCF26DC] - (.TOSHIBA CORPORATION. - Bluetooth Information Exchanger.) -- C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\tosBtProc.exe [2953664] [PID.7592] =>.TOSHIBA CORPORATION® [MD5.60A3F71E829F8E505430CC7430670D7F] - (.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe [317760] [PID.2708] {3D108A29119C5D7FCA5084A87EF8CCFC} [MD5.60A3F71E829F8E505430CC7430670D7F] - (.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe [317760] [PID.7224] {3D108A29119C5D7FCA5084A87EF8CCFC} [MD5.6C9DF66D268D3E1D21320C2194F31E98] - (.Sophos Limited - Sophos Message Router.) -- C:\Program Files (x86)\Sophos\Remote Management System\RouterNT.exe [1069832] [PID.6752] =>.Sophos Limited® [MD5.80B72881A9BDDA484867F22DDC2E84DD] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.7752] =>.Mozilla Corporation® [MD5.1DE4831E18DC61E758EF7F3EB193B736] - (.Nicolas Coolman - ZHPDiag.) -- D:\Users\ADEBONNE\Downloads\ZHPDiag3.exe [2166272] [PID.1256] =>.Nicolas Coolman ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 1s M0 - MFSP: prefs.js [ADEBONNE - sua2hlze.default] http://www.google.fr P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation® P2 - EXT FILE: (...) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\unseen@tangrs.xpi P2 - EXT FILE: (...) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi P2 - EXT FILE: (...) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT: (.20-20 Technologies - Visualisateur 3D de 20-20.) -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla\Firefox\Profiles\sua2hlze.default\extensions\2020Player_IKEA@2020Technologies.com =>.20-20 Technologies P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@nitropdf.com/NitroPDF] - (.Nitro PDF Software.) -- C:\Program Files (x86)\Nitro PDF\Professional 7\npnitromozilla.dll =>.Nitro PDF Software ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?linkid=69157 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?linkid=54896 R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?linkid=54896 R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?linkid=69157 R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?linkid=54896 R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (19) ---\\ Browser Helper Object de navigateur (BHO) (4) - 0s O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: RoboForm BHO [64Bits] - {724d43a9-0d85-11d4-9908-00400523e39a} . (.Siber Systems Inc. - RoboForm Main Module.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll =>.Siber Systems Inc. O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (Orphean) ---\\ Applications lancées au démarrage du système (23) - 1s O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe =>.Alps Electric Co., LTD.® O4 - HKLM\..\Run: [TFPUPWDBankService] . (.TOSHIBA - TFPUPWDBank.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\BrowserAddin\TFPUPWDBank.exe =>.TOSHIBA CORPORATION® O4 - HKLM\..\Run: [TFPUService] . (.TOSHIBA - TFPU Task Monitor.) -- C:\Program Files\TOSHIBA\Fingerprint Utility\TFPUTaskMonitor.exe =>.TOSHIBA CORPORATION® O4 - HKLM\..\Run: [TPwrMain] . (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe =>.TOSHIBA CORPORATION® O4 - HKLM\..\Run: [HSON] . (.TOSHIBA Corporation - HotStartOn.) -- C:\Program Files\TOSHIBA\TBS\HSON.exe =>.TOSHIBA CORPORATION® O4 - HKLM\..\Run: [TCrdMain] . (.TOSHIBA Corporation - TOSHIBA Flash Cards Main Module.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe =>.TOSHIBA CORPORATION® O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [Greenshot] . (.Greenshot - Greenshot.) -- C:\Program Files\Greenshot\Greenshot.exe =>.Greenshot O4 - HKLM\..\Run: [ThpSrv] C:\Windows\system32\thpsrv /logon (.not file.) O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [DameWare MRC Agent] . (.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCST.EXE {4D1AD4813484CD2C046846391B68FADB} O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd® O4 - HKCU\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe =>.Siber Systems Inc® O4 - HKLM\..\Wow6432Node\Run: [Sophos AutoUpdate Monitor] . (.Sophos Limited - Sophos Endpoint Security and Control.) -- C:\Program Files (x86)\Sophos\AutoUpdate\ALMon.exe =>.Sophos Limited® O4 - HKLM\..\Wow6432Node\Run: [RegTool] . (.(C) 2007 by Gemalto NV Group - RegTool MFC Application.) -- C:\Program Files (x86)\Gemalto\Classic Client\BIN\RegTool.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2243348203-3184530547-2589724496-3335\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd® O4 - HKUS\S-1-5-21-2243348203-3184530547-2589724496-3335\..\Run: [RoboForm] . (.Siber Systems - RoboForm TaskBar Icon.) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe =>.Siber Systems Inc® ---\\ Raccourcis Global Startup (55) - 9s O4 - GS\Desktop [Administrateur]: 12 Labours of Hercules V - Kids of Hellas Collectors Edition.lnk . (.Copyright (C) 2016 Zoom Out Games & JetDogs Studios - 12 Labours of Hercules 5.) D:\games\12 Labours of Hercules V - Kids of Hellas Collectors Edition\12LaboursOfHercules5KidsofHellas_CE.exe O4 - GS\Desktop [Administrateur]: Downloads.lnk . (...) D:\Users\ADEBONNE\Downloads O4 - GS\Desktop [Administrateur]: games.lnk . (...) D:\games O4 - GS\Desktop [Administrateur]: Gardens Inc 4 - Blooming Stars Collectors Edition.lnk . (...) D:\games\Gardens Inc 4 - Blooming Stars Collectors Edition\GardensInc4_BloomingStarsCE.exe O4 - GS\Desktop [Administrateur]: Internet Digital Radio Tuner.lnk . (.Robin Bailleux - Lecteur/Enregistreur de Radios sur Internet.) C:\Program Files (x86)\Internet Digital Radio Tuner\IDRT.exe =>.Robin Bailleux O4 - GS\Desktop [Administrateur]: JkDefrag.lnk . (.www.jkdefrag.fr - JkDefrag - défragmenteur de disque léger, c.) C:\Program Files (x86)\JkDefrag\JkDefrag64.exe O4 - GS\Desktop [Administrateur]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE} O4 - GS\Desktop [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Administrateur]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group® O4 - GS\Desktop [Administrateur]: XnView.lnk . (.XnView, http://www.xnview.com - XnView for Windows.) C:\Program Files (x86)\XnView\xnview.exe =>.XnView, http://www.xnview.com O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (...) C:\Users\ADEBONNE\ZHPDiag3.exe O4 - GS\Quicklaunch [Administrateur]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE} O4 - GS\Quicklaunch [Administrateur]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Goversoft® O4 - GS\Quicklaunch [Administrateur]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Startup [Administrateur]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft O4 - GS\Desktop [SophosSAUBLPP-15760]: 12 Labours of Hercules V - Kids of Hellas Collectors Edition.lnk . (.Copyright (C) 2016 Zoom Out Games & JetDogs Studios - 12 Labours of Hercules 5.) D:\games\12 Labours of Hercules V - Kids of Hellas Collectors Edition\12LaboursOfHercules5KidsofHellas_CE.exe O4 - GS\Desktop [SophosSAUBLPP-15760]: Downloads.lnk . (...) D:\Users\ADEBONNE\Downloads O4 - GS\Desktop [SophosSAUBLPP-15760]: games.lnk . (...) D:\games O4 - GS\Desktop [SophosSAUBLPP-15760]: Gardens Inc 4 - Blooming Stars Collectors Edition.lnk . (...) D:\games\Gardens Inc 4 - Blooming Stars Collectors Edition\GardensInc4_BloomingStarsCE.exe O4 - GS\Desktop [SophosSAUBLPP-15760]: Internet Digital Radio Tuner.lnk . (.Robin Bailleux - Lecteur/Enregistreur de Radios sur Internet.) C:\Program Files (x86)\Internet Digital Radio Tuner\IDRT.exe =>.Robin Bailleux O4 - GS\Desktop [SophosSAUBLPP-15760]: JkDefrag.lnk . (.www.jkdefrag.fr - JkDefrag - défragmenteur de disque léger, c.) C:\Program Files (x86)\JkDefrag\JkDefrag64.exe O4 - GS\Desktop [SophosSAUBLPP-15760]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE} O4 - GS\Desktop [SophosSAUBLPP-15760]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [SophosSAUBLPP-15760]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group® O4 - GS\Desktop [SophosSAUBLPP-15760]: XnView.lnk . (.XnView, http://www.xnview.com - XnView for Windows.) C:\Program Files (x86)\XnView\xnview.exe =>.XnView, http://www.xnview.com O4 - GS\Desktop [SophosSAUBLPP-15760]: ZHPDiag.lnk . (...) C:\Users\ADEBONNE\ZHPDiag3.exe O4 - GS\Quicklaunch [SophosSAUBLPP-15760]: Light Image Resizer 4.lnk . (.ObviousIdea SARL - Light Image Resizer.) C:\Program Files (x86)\ObviousIdea\Image Resizer 4\Resize.exe {1216BEAB0AA2AC012FC01AC17420C2BE} O4 - GS\Quicklaunch [SophosSAUBLPP-15760]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Goversoft® O4 - GS\Quicklaunch [SophosSAUBLPP-15760]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft O4 - GS\sendTo [SophosSAUBLPP-15760]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\sendTo [SophosSAUBLPP-15760]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\TaskBar [SophosSAUBLPP-15760]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Startup [SophosSAUBLPP-15760]: YoWindow.lnk . (.Repkasoft - YoWindow 4.) C:\Program Files (x86)\YoWindow\yowindow.exe {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft O4 - GS\CommonDesktop [Public]: Berger-Levrault.lnk . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O4 - GS\CommonDesktop [Public]: Citrix Program Neighborhood.lnk . (...) C:\Windows\Installer\{388C130B-0079-46B4-A0D5-DC2DD7A89A7B}\pncico.exe.C76E2E86_AE54_4AF5_997C_63EBB83C7651.exe O4 - GS\CommonDesktop [Public]: Client VPN Cisco.lnk . (.Cisco Systems, Inc. - Cisco Systems VPN Client.) C:\Program Files (x86)\Cisco Systems\VPN Client\ipsecdialer.exe {332B7395831CFA9CEC1ECB706880ED} =>.Cisco Systems, Inc. O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) C:\Program Files (x86)\DAEMON Tools Lite\DTLauncher.exe =>.Disc Soft Ltd® O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Microsoft Office Excel 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\Icon.3ABA953D.B50E.4167.B58F.79BC173F193A.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Microsoft Office Outlook 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\Icon.278E0458.3921.40F9.A051.7B6E8229730C.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Microsoft Office Word 2007.lnk . (...) C:\Windows\Installer\{90120000-0030-0000-0000-0000000FF1CE}\Icon.A9119A45.2119.4434.A341.1AC4F66B172F.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Nitro Pro 7.lnk . (.Nitro PDF - Nitro Pro 7.) C:\Program Files (x86)\Nitro PDF\Professional 7\NitroPDF.exe =>.Nitro PDF Software® O4 - GS\CommonDesktop [Public]: paint.net.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\paint.net\PaintDotNet.exe =>.dotPDN LLC O4 - GS\CommonDesktop [Public]: PrivaZer.lnk . (.Goversoft LLC - PrivaZer.) C:\Program Files (x86)\PrivaZer\PrivaZer.exe =>.Goversoft® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\CommonDesktop [Public]: TeamViewer 10.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\CommonDesktop [Public]: Total Commander 64 bit.lnk . (.Ghisler Software GmbH - Total Commander.) C:\totalcmd\TOTALCMD64.EXE =>.Ghisler Software GmbH® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Startup [Public]: Berger-Levrault - Notifier.lnk . (.Berger-Levrault - Lanceur d'application Berger-Levrault.) D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O4 - GS\Startup [Public]: Bluetooth Manager.lnk . (.TOSHIBA CORPORATION. - Bluetooth Manager.) C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe =>.TOSHIBA CORPORATION® O4 - GS\Programs [Public]: Songr.lnk . (.Xamasoft - Songr.) C:\Users\ADEBONNE\AppData\Local\Songr\Songr.exe =>.Xamasoft O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = groupe.berger-levrault.net O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\..\{C7FD9921-C0B3-47D9-8E31-1723AC1A943A}: DhcpNameServer = 192.168.1.254 ---\\ Protocole additionnel (26) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip [64Bits] - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s O20 - AppInit_DLLs: . (.Sophos Limited - Sophos Buffer Overrun Protection.) - C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sophos_detoured_x64.dll ---\\ Logiciels installés (88) - 14s O42 - Logiciel: 12 Labours of Hercules V - Kids of Hellas Collectors Edition - (.LeeGT-Games.) [HKLM][64Bits] -- 12 Labours of Hercules V - Kids of Hellas Collectors Edition O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} =>.Igor Pavlov O42 - Logiciel: Adobe Flash Player 21 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader XI (11.0.08) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated O42 - Logiciel: ALPS Touch Pad Driver - (.ALPS ELECTRIC CO., LTD..) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.® O42 - Logiciel: Atheros Bluetooth Filter Driver Package - (.Atheros Communications.) [HKLM][64Bits] -- {65486209-5C54-439C-8383-8AC9BBE25932} =>.Atheros Communications O42 - Logiciel: Atheros Driver Installation Program - (.Atheros.) [HKLM][64Bits] -- {C3A32068-8AB1-4327-BB16-BED9C6219DC7} =>.Atheros O42 - Logiciel: AuthenTec WinBio FingerPrint Software - (.AuthenTec, Inc..) [HKLM][64Bits] -- {3CEE4431-D0DA-49AA-A78D-5D3B559446DF} =>.AuthenTec, Inc. O42 - Logiciel: Berger-Levrault - (.Berger-Levrault.) [HKLM][64Bits] -- e.magnus O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6} =>.Toshiba Corporation O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: Cisco Systems VPN Client 5.0.07.0290 - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {467D5E81-8349-4892-9E81-C3674ED8E451} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco WebEx Meetings - (.Cisco WebEx LLC.) [HKLM][64Bits] -- ActiveTouchMeetingClient =>.Cisco WebEx LLC® O42 - Logiciel: Citrix Online Launcher - (.Citrix.) [HKLM][64Bits] -- {09DA5EE2-7E46-4DC4-96F9-BFEE50D40659} =>.Citrix O42 - Logiciel: Citrix XenApp Plugin for Hosted Apps with INSIA ISprint Client - (.Citrix Systems, Inc..) [HKLM][64Bits] -- {388C130B-0079-46B4-A0D5-DC2DD7A89A7B} =>.Citrix Systems, Inc. O42 - Logiciel: Classic Client 6.3 Patch2 for 64 bits - (.Gemalto.) [HKLM][64Bits] -- {A21ADD97-F57A-4971-9435-6D4A47A6EDDE} =>.Gemalto O42 - Logiciel: Client VPN Cisco version 1.3 - (...) [HKLM][64Bits] -- Client VPN Cisco_is1 O42 - Logiciel: Crystal Reports Basic Runtime for Visual Studio 2008 (x64) - (.Business Objects.) [HKLM][64Bits] -- {2BFA9B05-7418-4EDE-A6FC-620427BAAAA3} =>.Business Objects O42 - Logiciel: Crystal Reports Basic Runtime French Language Pack for Visual Studio 2008 ( - (.Business Objects.) [HKLM][64Bits] -- {26D96091-69F2-4249-B43D-EEE1E50C52B4} =>.Business Objects O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd® O42 - Logiciel: Fichiers de prise en charge de l'installation de Microsoft SQL Server (Fran - (.Microsoft Corporation.) [HKLM][64Bits] -- {3380F354-C5F7-4E71-8F51-EEE6C3F06C62} =>.Microsoft Corporation O42 - Logiciel: FusionInventory Agent 2.3.5 (x86 edition) - (.FusionInventory Team.) [HKLM][64Bits] -- FusionInventory-Agent =>.FusionInventory Team O42 - Logiciel: Gardens Inc 4 - Blooming Stars Collectors Edition - (.LeeGT-Games.) [HKLM][64Bits] -- Gardens Inc 4 - Blooming Stars Collectors Edition O42 - Logiciel: GoToMeeting 7.14.1.4670 - (.CitrixOnline.) [HKCU][64Bits] -- GoToMeeting {44AD220DBF367E6C4D2E480E121853D7} =>.CitrixOnline O42 - Logiciel: Greenshot 1.1.7.17 - (.Greenshot.) [HKLM][64Bits] -- Greenshot_is1 =>.Greenshot O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet =>.Intel O42 - Logiciel: Internet Digital Radio Tuner 3.1.0 - (.Robin Bailleux.) [HKLM][64Bits] -- Internet Digital Radio Tuner_is1 =>.Robin Bailleux O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: JkDefrag 3.36 - (.Trad-Fr.) [HKLM][64Bits] -- {0FC65BD2-FB46-4E89-AEB9-C5CB53E4BC1F}_is1 =>.Trad-Fr O42 - Logiciel: Light Image Resizer 4.6.3.0 - (.ObviousIdea.) [HKLM][64Bits] -- {EBE030DD-D404-4D92-85E9-8C3624820808}_is1 =>.ObviousIdea O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012C-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office15.LYNC =>.Microsoft Corporation® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 45.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 45.0.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation O42 - Logiciel: myCANAL - (.player.canalplus.fr.) [HKCU][64Bits] -- 3092000918.player.canalplus.fr =>.Microsoft Corporation® O42 - Logiciel: Nitro Pro 7 - (.Nitro PDF Software.) [HKLM][64Bits] -- {B2E6CBC8-F82D-44C3-B8BF-84DBFE747CD7} =>.Nitro PDF Software O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc® O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {F509C1F4-0029-49F9-B145-A4C4E8DF481A} =>.dotPDN LLC O42 - Logiciel: PDF Architect - (.pdfforge GmbH.) [HKLM][64Bits] -- {064A929A-4DE8-40CF-A901-BD40C14E4D25} =>.pdfforge GmbH O42 - Logiciel: PDF Architect 3 - (.pdfforge GmbH.) [HKLM][64Bits] -- PDF Architect 3 =>.pdfforge GmbH O42 - Logiciel: PDF Architect 3 Create Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {38BA288B-C4F4-4C62-9237-4BFAB374F966} =>.pdfforge GmbH O42 - Logiciel: PDF Architect 3 Edit Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {5183F03D-90FA-493B-A074-F0F78B8486AD} =>.pdfforge GmbH O42 - Logiciel: PDF Architect 3 View Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {EB24E9E7-4BC1-4FD7-BF86-BDE07A7A03D7} =>.pdfforge GmbH O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge O42 - Logiciel: PrivaZer - (.Goversoft LLC.) [HKLM][64Bits] -- PrivaZer =>.Goversoft® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} =>.Renesas Electronics Corporation O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} =>.Renesas Electronics Corporation O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller =>.VS Revo Group O42 - Logiciel: RICOH Media Driver v2.14.17.02 - (.RICOH.) [HKLM][64Bits] -- {FE041B02-234C-4AAA-9511-80DF6482A458} =>.RICOH O42 - Logiciel: RoboForm 7-9-14-6 (All Users) - (.Siber Systems.) [HKLM][64Bits] -- AI RoboForm =>.Siber Systems Inc® O42 - Logiciel: RogueKiller version 12 - (.Adlice Software.) [HKLM][64Bits] -- 8B3D7924-ED89-486B-8322-E8594065D5CB_is1 =>.Adlice® O42 - Logiciel: Runtime Crystal Report 9 - (.Magnus France.) [HKLM][64Bits] -- {4DFA9623-2A9A-4EB0-8AB4-A34FF6497DE3} O42 - Logiciel: Service Pack 1 pour SQL Server 2008 (KB968369) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB968369 =>.Microsoft Corporation O42 - Logiciel: Service Pack 3 pour SQL Server 2008 (KB2546951) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB2546951 =>.Microsoft Corporation® O42 - Logiciel: Service Pack 4 pour SQL Server 2008 (KB2979596) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB2979596 =>.Microsoft Corporation® O42 - Logiciel: Skype™ 7.18 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Songr - (.Xamasoft.) [HKCU][64Bits] -- Songr =>.Xamasoft O42 - Logiciel: Sophos Anti-Virus - (.Sophos Limited.) [HKLM][64Bits] -- {09863DA9-7A9B-4430-9561-E04D178D7017} =>.Sophos Limited O42 - Logiciel: Sophos AutoUpdate - (.Sophos Limited.) [HKLM][64Bits] -- {BCF53039-A7FC-4C79-A3E3-437AE28FD918} =>.Sophos Limited O42 - Logiciel: Sophos Network Threat Protection - (.Sophos Limited.) [HKLM][64Bits] -- {66967E5F-43E8-4402-87A4-04685EE5C2CB} =>.Sophos Limited O42 - Logiciel: Sophos Remote Management System - (.Sophos Limited.) [HKLM][64Bits] -- {FED1005D-CBC8-45D5-A288-FFC7BB304121} =>.Sophos Limited O42 - Logiciel: Sophos System Protection - (.Sophos Limited.) [HKLM][64Bits] -- {1093B57D-A613-47F3-90CF-0FD5C5DCFFE6} =>.Sophos Limited O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer® O42 - Logiciel: TOSHIBA Fingerprint Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {62BBF381-D208-4EF0-B502-6CB6E5B9A161} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA HDD Protection - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {94A90C69-71C1-470A-88F5-AA47ECC96B40} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {066CFFF8-12BF-4390-A673-75F95EFF188E} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} =>.TOSHIBA CORPORATION® O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6F3C8901-EBD3-470D-87F8-AC210F6E5E02} =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02} =>.Toshiba Corporation O42 - Logiciel: Total Commander 64-bit (Remove or Repair) - (.Ghisler Software GmbH.) [HKLM][64Bits] -- Totalcmd64 {1CD8517B2373647496D551377199DEB5} =>.Ghisler Software GmbH O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.LYNC_{8D97B9A2-D73D-4CB6-9D1F-D25178AC4EDE} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3114831) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-002A-0000-1000-0000000FF1CE}_Office15.LYNC_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3114831) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE}_Office15.LYNC_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3114831) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012C-0000-0000-0000000FF1CE}_Office15.LYNC_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2} =>.Microsoft Corporation® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: YoWindow - (.RepkaSoft.) [HKLM][64Bits] -- yowindow {4C4114980DB0E6BB385F90F6249443C7} =>.RepkaSoft ---\\ HKCU & HKLM Software Keys (162) - 14s HKLM\SOFTWARE\Wow6432Node\ActiveTouch HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Atheros HKLM\SOFTWARE\Wow6432Node\Cisco Systems HKLM\SOFTWARE\Wow6432Node\Citrix HKLM\SOFTWARE\Wow6432Node\Crystal Decisions HKLM\SOFTWARE\Wow6432Node\DameWare Development HKLM\SOFTWARE\Wow6432Node\DeterministicNetworks HKLM\SOFTWARE\Wow6432Node\Disc Soft HKLM\SOFTWARE\Wow6432Node\DT Soft HKLM\SOFTWARE\Wow6432Node\Florian Heidenreich HKLM\SOFTWARE\Wow6432Node\FreeDownloadManager.ORG HKLM\SOFTWARE\Wow6432Node\FusionInventory-Agent HKLM\SOFTWARE\Wow6432Node\Gemplus HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HewlettPackard HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Lenovo HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial) HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nalpeiron HKLM\SOFTWARE\Wow6432Node\Nitro PDF HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\ObviousIdea HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OpenAL HKLM\SOFTWARE\Wow6432Node\ORACLE HKLM\SOFTWARE\Wow6432Node\PDF Architect 2 HKLM\SOFTWARE\Wow6432Node\PDF Architect 3 HKLM\SOFTWARE\Wow6432Node\PDFCreator HKLM\SOFTWARE\Wow6432Node\repkasoft HKLM\SOFTWARE\Wow6432Node\RICOH HKLM\SOFTWARE\Wow6432Node\Siber Systems HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Sophos HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\ThinPrint HKLM\SOFTWARE\Wow6432Node\TOSHIBA HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\VMware, Inc. HKLM\SOFTWARE\Wow6432Node\WebEx HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\49074InstEnd HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\8Floor HKCU\SOFTWARE\A2 HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Alps HKCU\SOFTWARE\antiufo HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\AxiPLAY HKCU\SOFTWARE\Bip Media HKCU\SOFTWARE\Bloobuzz HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\Citrix HKCU\SOFTWARE\com.runningpillow.ttt HKCU\SOFTWARE\CounterPath HKCU\SOFTWARE\Crystal Decisions HKCU\SOFTWARE\DeterministicNetworks HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\DQ Team HKCU\SOFTWARE\EBInstaller HKCU\SOFTWARE\EMU HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\Far Mills HKCU\SOFTWARE\FarMills HKCU\SOFTWARE\Fineway Studios HKCU\SOFTWARE\FreeDownloadManager.ORG HKCU\SOFTWARE\GameFools HKCU\SOFTWARE\Ghisler HKCU\SOFTWARE\GOG.com HKCU\SOFTWARE\Google HKCU\SOFTWARE\GrowingGrassStudio HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Hidden Hallow HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Imagination Technologies HKCU\SOFTWARE\INSIA HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Jumb-O-Fun Games Inc HKCU\SOFTWARE\Lenovo HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Little Worlds Studio HKCU\SOFTWARE\LittleWorlds HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Macrovision HKCU\SOFTWARE\Malwarebytes' Anti-Malware HKCU\SOFTWARE\Marvell HKCU\SOFTWARE\Melesta HKCU\SOFTWARE\Microids HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\N-Tri studio HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nitreal Games HKCU\SOFTWARE\Nitro PDF HKCU\SOFTWARE\Nordcurrent HKCU\SOFTWARE\O2D HKCU\SOFTWARE\ObviousIdea HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Oroboro games HKCU\SOFTWARE\paint.net HKCU\SOFTWARE\PDF Architect HKCU\SOFTWARE\PDF Architect 3 HKCU\SOFTWARE\PDF Tools AG HKCU\SOFTWARE\PDFCreator HKCU\SOFTWARE\pdfforge HKCU\SOFTWARE\phime studio HKCU\SOFTWARE\PokieMagic HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\RDP HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\repkasoft HKCU\SOFTWARE\Robin Digital Software HKCU\SOFTWARE\SDPGames HKCU\SOFTWARE\Shining Rock Software LLC HKCU\SOFTWARE\Siber Systems HKCU\SOFTWARE\Siebel Systems, Inc. HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\SolidDocuments HKCU\SOFTWARE\Sophos HKCU\SOFTWARE\Spoon HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\Test3D HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\TOSHIBA HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Twincats HKCU\SOFTWARE\Unity HKCU\SOFTWARE\VisualShape HKCU\SOFTWARE\VMware, Inc. HKCU\SOFTWARE\VSRevoGroup HKCU\SOFTWARE\WebEx HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\XunK Entertainment HKCU\SOFTWARE\z2h HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\JavaSoft HKCU\SOFTWARE\AppDataLow\Software\ThinPrint ---\\ Contenu des dossiers Programmes (363) - 19s O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\7-Zip O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Apoint2K =>.Alps Electric Co., LTD.® O43 - CFD: 26/06/2014 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.® O43 - CFD: 16/01/2015 - [] D -- C:\Program Files\Business Objects O43 - CFD: 31/01/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\DVD Maker O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Fingerprint Sensor =>.Microsoft Windows® O43 - CFD: 15/03/2016 - [] D -- C:\Program Files\Gemalto O43 - CFD: 06/01/2014 - [] D -- C:\Program Files\Greenshot O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 09/02/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild O43 - CFD: 20/08/2014 - [] D -- C:\Program Files\paint.net =>.dotPDN LLC® O43 - CFD: 09/02/2016 - [] D -- C:\Program Files\PDFCreator =>.pdfforge GmbH® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 29/03/2016 - [] D -- C:\Program Files\RogueKiller =>.Adlice® O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Sophos =>.Sophos Limited® O43 - CFD: 19/09/2014 - [] D -- C:\Program Files\TOSHIBA =>.TOSHIBA CORPORATION® O43 - CFD: 17/09/2014 - [0] D -- C:\Program Files\WBFS O43 - CFD: 10/10/2013 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 09/10/2013 - [] D -- C:\Program Files\Windows NT O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar O43 - CFD: 26/06/2014 - [0] D -- C:\Program Files\Wondershare O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Atheros O43 - CFD: 26/06/2014 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 02/01/2014 - [] D -- C:\Program Files (x86)\Cheat Engine 6.3 =>.Cheat Engine® O43 - CFD: 21/11/2013 - [] D -- C:\Program Files (x86)\Cisco Systems O43 - CFD: 19/12/2013 - [] D -- C:\Program Files (x86)\Citrix {7D93C670CBCAA8FE4480A4173D6104C3} O43 - CFD: 29/03/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Crystal Decisions O43 - CFD: 04/07/2015 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite =>.Disc Soft Ltd® O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\FusionInventory-Agent O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\Gemalto O43 - CFD: 20/02/2014 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 30/09/2015 - [] D -- C:\Program Files (x86)\Internet Digital Radio Tuner O43 - CFD: 12/02/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 11/02/2016 - [] D -- C:\Program Files (x86)\JkDefrag O43 - CFD: 04/07/2015 - [] D -- C:\Program Files (x86)\Lenovo =>.LENOVO® O43 - CFD: 23/03/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 09/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 12/02/2016 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Microsoft Works O43 - CFD: 19/11/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 20/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 20/03/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\MSSOAP O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 04/02/2014 - [] D -- C:\Program Files (x86)\Nitro PDF =>.Nitro PDF Software® O43 - CFD: 16/12/2014 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 31/12/2013 - [] D -- C:\Program Files (x86)\ObviousIdea =>.ObviousIdea® O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\OCS Inventory Agent O43 - CFD: 09/03/2014 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc® O43 - CFD: 01/02/2014 - [] D -- C:\Program Files (x86)\PDF Architect =>.pdfforge GmbH® O43 - CFD: 17/06/2015 - [] D -- C:\Program Files (x86)\PDF Architect 3 =>.pdfforge GmbH® O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\PrivaZer =>.Goversoft® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Renesas Electronics O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Ricoh O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\Siber Systems =>.Siber Systems Inc® O43 - CFD: 08/01/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Sophos =>.Sophos Limited® O43 - CFD: 25/03/2016 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\TOH Class Filter =>.Atheros Communications Inc.® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\TOSHIBA =>.TOSHIBA CORPORATION® O43 - CFD: 30/01/2014 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 21/03/2014 - [] D -- C:\Program Files (x86)\VS Revo Group =>.VS Revo Group® O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 03/01/2014 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 30/01/2014 - [] D -- C:\Program Files (x86)\XnView O43 - CFD: 14/04/2015 - [] D -- C:\Program Files (x86)\YoWindow {4C4114980DB0E6BB385F90F6249443C7} O43 - CFD: 19/11/2015 - [] HD -- C:\Program Files (x86)\Zero G Registry O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 10/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Berger-Levrault O43 - CFD: 21/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Systems VPN Client O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citrix O43 - CFD: 04/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite O43 - CFD: 11/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e.magnus O43 - CFD: 05/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gemalto O43 - CFD: 06/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot O43 - CFD: 30/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Digital Radio Tuner O43 - CFD: 01/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 23/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 20/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 19/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2005 O43 - CFD: 17/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2005 O43 - CFD: 16/12/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 31/12/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ObviousIdea O43 - CFD: 01/02/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 3 O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator O43 - CFD: 07/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller O43 - CFD: 08/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 14/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos O43 - CFD: 19/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 12/04/2011 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA O43 - CFD: 25/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 03/01/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 14/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YoWindow O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Adobe O43 - CFD: 26/06/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Atheros O43 - CFD: 09/12/2013 - [] D -- C:\ProgramData\Berger-Levrault O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 30/08/2015 - [] D -- C:\ProgramData\Cateia Games O43 - CFD: 09/03/2014 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 14/11/2014 - [] D -- C:\ProgramData\DameWare Development O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\DefenseOfGrecce O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\GroupPolicy O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\HitmanPro O43 - CFD: 01/06/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 02/07/2014 - [] D -- C:\ProgramData\Logs O43 - CFD: 19/04/2014 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 11/03/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 20/03/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 09/10/2013 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 09/12/2013 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 04/02/2014 - [] D -- C:\ProgramData\Nitro PDF O43 - CFD: 01/02/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 04/07/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 27/01/2015 - [] D -- C:\ProgramData\Particles O43 - CFD: 17/06/2015 - [] D -- C:\ProgramData\PDF Architect 3 O43 - CFD: 29/03/2016 - [0] D -- C:\ProgramData\PDF Architect 4 O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\pdfforge O43 - CFD: 24/06/2014 - [] D -- C:\ProgramData\Playrix Entertainment O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\privazer O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 11/03/2016 - [] HD -- C:\ProgramData\RICOH_DRV O43 - CFD: 09/12/2013 - [] D -- C:\ProgramData\RoboForm O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 21/02/2015 - [] D -- C:\ProgramData\Sandlot Games O43 - CFD: 16/02/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 11/03/2016 - [] D -- C:\ProgramData\Sophos O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Sun O43 - CFD: 14/08/2015 - [0] AD -- C:\ProgramData\TEMP O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 10/10/2013 - [] D -- C:\ProgramData\Toshiba O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\VMware O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\WebEx O43 - CFD: 26/06/2014 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 14/04/2015 - [] D -- C:\ProgramData\YoWindow O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Cisco Systems O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Common Files\Crystal Decisions O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 09/12/2013 - [] D -- C:\Program Files (x86)\Common Files\MSSoap O43 - CFD: 04/02/2014 - [] D -- C:\Program Files (x86)\Common Files\Nitro PDF O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 08/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/11/2014 - [] D -- C:\Program Files (x86)\Common Files\Sophos O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 10/10/2013 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 11/12/2013 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard O43 - CFD: 26/06/2014 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 05/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\3M O43 - CFD: 29/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\4 Friends Games O43 - CFD: 20/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\8floor O43 - CFD: 15/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\A2 Entertainment O43 - CFD: 05/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Adobe O43 - CFD: 26/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\AlawarEntertainment O43 - CFD: 12/10/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Anuman O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Apple Computer O43 - CFD: 14/08/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\AppMinis O43 - CFD: 11/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\AxiPLAY O43 - CFD: 13/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Az-Art O43 - CFD: 15/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\BlamGames O43 - CFD: 20/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Boomzap O43 - CFD: 05/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\C.C.C.P O43 - CFD: 17/12/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\calibre O43 - CFD: 08/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\com.stateofplaygames.LuminoCity O43 - CFD: 04/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 15/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Deep Shadows O43 - CFD: 30/06/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\DMCache O43 - CFD: 17/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\DominiGames O43 - CFD: 04/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Downloaded Installations O43 - CFD: 29/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\DragonsEye Studios O43 - CFD: 17/09/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Dropbox O43 - CFD: 10/10/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\dvdcss O43 - CFD: 10/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Egyptian Settlement O43 - CFD: 06/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Eipix O43 - CFD: 05/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\EleFun Games O43 - CFD: 05/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Elephant Games O43 - CFD: 21/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ERS Game Studios O43 - CFD: 27/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\FarMills O43 - CFD: 26/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\FinewayStudios O43 - CFD: 13/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Five-BN Games O43 - CFD: 10/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Floria O43 - CFD: 14/09/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Friendly Cactus O43 - CFD: 21/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\GHISLER O43 - CFD: 02/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Goblinz O43 - CFD: 14/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Gomo O43 - CFD: 06/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Greenshot O43 - CFD: 14/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\GrowingGrass O43 - CFD: 15/02/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Happy Empire O43 - CFD: 21/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Hulubulu O43 - CFD: 10/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ICAClient O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Identities O43 - CFD: 21/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\IncredibleZoo O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Islands5 O43 - CFD: 30/11/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Lazy Turtle Games O43 - CFD: 16/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Lonely Troops O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Macromedia O43 - CFD: 16/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Mad Head Games O43 - CFD: 19/04/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Malwarebytes O43 - CFD: 20/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Manifesto Game Studio O43 - CFD: 27/04/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Maximize Games O43 - CFD: 12/04/2011 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Media Center Programs O43 - CFD: 11/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Meridian93 O43 - CFD: 11/05/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microids O43 - CFD: 15/01/2016 - [] SD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft O43 - CFD: 07/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Motorola O43 - CFD: 04/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Mozilla O43 - CFD: 21/03/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Mysterious Oasis O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Nitro PDF O43 - CFD: 07/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Nordcurrent O43 - CFD: 16/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Notepad++ O43 - CFD: 28/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ObviousIdea O43 - CFD: 17/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Organic 2 Digital O43 - CFD: 07/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\OWL Studio O43 - CFD: 01/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\PDF Architect O43 - CFD: 30/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\PDF Architect 3 O43 - CFD: 29/03/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\PDF Architect 4 O43 - CFD: 04/05/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\PuzzleLab O43 - CFD: 15/08/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Realore O43 - CFD: 29/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Realore_Whiterra Adelantado3 O43 - CFD: 11/02/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\RoryWinterPC O43 - CFD: 29/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Seven Sails O43 - CFD: 06/12/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ShamanGS O43 - CFD: 17/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Skype O43 - CFD: 05/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Sticker O43 - CFD: 13/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Sunward Games O43 - CFD: 01/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\TeamViewer O43 - CFD: 16/09/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Teyon O43 - CFD: 20/11/2013 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\TFPU O43 - CFD: 30/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\TOMI3 O43 - CFD: 05/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Top Evidence O43 - CFD: 15/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Twincats O43 - CFD: 22/03/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Urchin O43 - CFD: 28/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Vendel-GAMES O43 - CFD: 21/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\vikingsaga2_realore_en O43 - CFD: 13/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\VisualShape O43 - CFD: 26/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\vlc O43 - CFD: 28/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\VMware O43 - CFD: 25/07/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\VSRevoGroup O43 - CFD: 04/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\webex O43 - CFD: 19/09/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\WinBatch O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\WinRAR O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Wondershare O43 - CFD: 20/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\XnView O43 - CFD: 14/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\YoWindow O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ZHP O43 - CFD: 23/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\ZOG O43 - CFD: 12/06/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Adobe O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Apple O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Apple Computer O43 - CFD: 20/11/2013 - [0] SHD -- C:\Users\ADEBONNE\AppData\Local\Application Data O43 - CFD: 16/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Apps O43 - CFD: 08/01/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Astar Games O43 - CFD: 25/11/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\calibre-cache O43 - CFD: 26/10/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Canal.MyCanal O43 - CFD: 19/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Citrix O43 - CFD: 07/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\CrashDumps O43 - CFD: 24/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\DADSU-CTL-V01X08 O43 - CFD: 05/07/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Daedalic Entertainment GmbH O43 - CFD: 15/02/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Deployment O43 - CFD: 27/03/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Diagnostics O43 - CFD: 04/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Disc_Soft_Ltd O43 - CFD: 25/10/2015 - [0] D -- C:\Users\ADEBONNE\AppData\Local\ElevatedDiagnostics O43 - CFD: 05/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Facebook O43 - CFD: 15/04/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\fantasy_mosaics_8_iwin O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\fontconfig O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\gegl-0.2 O43 - CFD: 21/04/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Local\GHISLER O43 - CFD: 19/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Google O43 - CFD: 04/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Greenshot O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\gtk-2.0 O43 - CFD: 20/11/2013 - [0] SHD -- C:\Users\ADEBONNE\AppData\Local\Historique O43 - CFD: 03/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\ICAClient O43 - CFD: 30/09/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\IDRT O43 - CFD: 04/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Lenovo O43 - CFD: 16/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\Macromedia O43 - CFD: 23/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Microsoft O43 - CFD: 09/12/2013 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Microsoft Help O43 - CFD: 09/05/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Microsoft_Corporation O43 - CFD: 09/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\Mozilla O43 - CFD: 14/11/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Local\ntr O43 - CFD: 20/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\paint.net O43 - CFD: 09/02/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Local\PDFCreator O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\PrivaZer O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Programs O43 - CFD: 15/08/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Realore O43 - CFD: 08/01/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Local\Skype O43 - CFD: 21/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\Songr O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Sophos O43 - CFD: 07/09/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\SpoonBL O43 - CFD: 31/07/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\TeamViewer O43 - CFD: 29/03/2016 - [] D -- C:\Users\ADEBONNE\AppData\Local\Temp O43 - CFD: 20/11/2013 - [0] SHD -- C:\Users\ADEBONNE\AppData\Local\Temporary Internet Files O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\TOSHIBA O43 - CFD: 21/02/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\vikingsaga2_realore_en O43 - CFD: 14/03/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Local\VirtualStore O43 - CFD: 01/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\VMware O43 - CFD: 11/08/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\WBFSManager O43 - CFD: 04/12/2015 - [] D -- C:\Users\ADEBONNE\AppData\Local\WebEx O43 - CFD: 20/11/2013 - [] D -- C:\Users\ADEBONNE\AppData\Local\WindowsUpdate O43 - CFD: 26/06/2014 - [] D -- C:\Users\ADEBONNE\AppData\Local\Wondershare O43 - CFD: 23/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\12 Labours of Hercules V - Kids of Hellas Collectors Edition O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 12/02/2016 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 12/01/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Berger-Levrault O43 - CFD: 07/01/2016 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 02/02/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gardens Inc 4 - Blooming Stars Collectors Edition O43 - CFD: 04/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\INSIA O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 12/01/2016 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Island Kingdom O43 - CFD: 16/12/2014 - [0] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 05/12/2013 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PrivaZer O43 - CFD: 21/03/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller O43 - CFD: 12/02/2016 - [] RD -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 03/01/2014 - [] D -- C:\Users\ADEBONNE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Liste des pilotes du système (90) - 5s O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2011/01/21 15:12:08 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [347768] =>.Alps Electric Co., LTD.® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2011/05/24 00:24:22 A . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driv.) -- C:\Windows\System32\drivers\athrx.sys [2750464] =>.Atheros Communications, Inc. O58 - SDL:2012/01/27 07:18:04 A . (.AuthenTec, Inc. - AuthenTec Fingerprint Sensor WBF Driver.) -- C:\Windows\System32\drivers\ATSwpWDF.sys [1073200] =>.AuthenTec, Inc.® O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2010/10/18 14:14:02 RA . (.Atheros - Filter Driver for the Bluetooth.) -- C:\Windows\System32\drivers\btfilter.sys [42096] =>.Atheros Communications Inc.® O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2010/02/08 09:32:00 A . (.Cisco Systems, Inc. - Cisco Systems VPN Adapter.) -- C:\Windows\System32\drivers\CVirtA64.sys [14992] =>.Cisco Systems, Inc.® O58 - SDL:2010/03/23 14:29:46 A . (...) -- C:\Windows\System32\drivers\CVPNDRVA.sys [304784] =>.Cisco Systems, Inc.® O58 - SDL:2008/03/14 16:00:00 A . (.DameWare Development, LLC - DameWare Development Mirror Miniport Driver.) -- C:\Windows\System32\drivers\DamewareMini.sys [5632] O58 - SDL:2008/11/16 19:39:44 A . (.Deterministic Networks, Inc. - Deterministic Network Enhancer for NDIS 5.1.) -- C:\Windows\System32\drivers\dne64x.sys [157968] =>.Deterministic Networks® O58 - SDL:2015/07/04 20:47:52 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd® O58 - SDL:2008/03/13 14:00:00 A . (.DameWare - DameWare Virtual Keyboard Driver.) -- C:\Windows\System32\drivers\dwvkbd64.sys [30720] =>.DameWare O58 - SDL:2016/01/07 14:38:16 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1c62x64.sys [506872] =>.Intel(R) INTELNPG1® O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2009/08/10 15:07:40 A . (.Gemalto - USB Smart Card Reader Driver.) -- C:\Windows\System32\drivers\GemCCID.sys [119680] =>.Gemalto O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2010/10/19 23:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2012/07/31 17:50:10 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [12312896] =>.Intel Corporation O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2016/03/10 15:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 15:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation® O58 - SDL:2016/03/29 10:03:19 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2011/04/04 16:25:18 A . (.Marvell Semiconductor, Inc. - USB EWS Device Driver.) -- C:\Windows\System32\drivers\mvusbews.sys [20480] =>.Marvell Semiconductor, Inc. O58 - SDL:2016/03/10 15:09:06 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64896] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2011/02/10 14:52:34 A . (.Renesas Electronics Corporation - USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\nusb3hub.sys [82432] =>.Renesas Electronics Corporation O58 - SDL:2011/02/10 14:52:34 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [181760] =>.Renesas Electronics Corporation O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2009/06/22 17:06:38 A . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\Windows\System32\drivers\PGEffect.sys [35008] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2011/06/01 11:22:28 A . (.REDC - RICOH MS Driver.) -- C:\Windows\System32\drivers\rimspe64.sys [73216] =>.REDC O58 - SDL:2011/04/22 09:03:00 A . (.REDC - RICOH PCIe SDXC/MMC Controller Driver.) -- C:\Windows\System32\drivers\risdxc64.sys [101376] =>.REDC O58 - SDL:2011/04/26 07:06:00 A . (.REDC - RICOH PCIe XD Driver.) -- C:\Windows\System32\drivers\rixdpe64.sys [53760] =>.REDC O58 - SDL:2011/01/18 20:12:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [2719336] =>.Realtek Semiconductor Corp® O58 - SDL:2016/03/11 10:08:41 A . (.Sophos Limited - SAV On-Access and HIPS for Windows Vista (A.) -- C:\Windows\System32\drivers\savonaccess.sys [161024] =>.Sophos Limited® O58 - SDL:2016/03/11 10:09:07 A . (.Sophos Limited - Sophos CD-Rom Device Control Filter for Win.) -- C:\Windows\System32\drivers\sdcfilter.sys [38144] =>.Sophos Limited® O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2014/09/03 07:49:36 A . (.Prolific Technology Inc. - USB-to-Serial Cable Driver.) -- C:\Windows\System32\drivers\ser2pl64.sys [169984] =>.Prolific Technology Inc. O58 - SDL:2009/07/14 02:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Brother Industries Ltd. O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2016/03/11 10:09:24 A . (.Sophos Limited - SNTP Driver.) -- C:\Windows\System32\drivers\sntp.sys [116144] =>.Sophos Limited® O58 - SDL:2016/03/11 10:08:52 A . (.Sophos Limited - Sophos Boot Driver, Windows XP (AMD64).) -- C:\Windows\System32\drivers\SophosBootDriver.sys [27904] =>.Sophos Limited® O58 - SDL:2015/07/04 20:47:30 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [381608] =>.Disc Soft Ltd® O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [108800] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2008/01/11 23:00:14 A . (.TOSHIBA Corporation - TOSHIBA HDD Protection Driver.) -- C:\Windows\System32\drivers\thpdrv.sys [33400] =>.TOSHIBA CORPORATION® O58 - SDL:2007/09/04 10:29:04 A . (.TOSHIBA Corporation - TOSHIBA HDD Protection - Shock Sensor Drive.) -- C:\Windows\System32\drivers\Thpevm.sys [14872] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/19 10:01:00 A . (.TOSHIBA Corporation. - Toshiba Bluetooth HID mini port driver.) -- C:\Windows\System32\drivers\Toshidpt.sys [9608] =>.TOSHIBA CORPORATION® O58 - SDL:2009/06/17 12:01:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\Windows\System32\drivers\tosporte.sys [54664] =>.TOSHIBA CORPORATION® O58 - SDL:2011/08/05 10:24:26 A . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\Windows\System32\drivers\tosrfbd.sys [292024] =>.TOSHIBA CORPORATION® O58 - SDL:2010/11/11 10:27:00 A . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\Windows\System32\drivers\tosrfbnp.sys [50864] =>.TOSHIBA CORPORATION® O58 - SDL:2010/11/29 11:47:00 A . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\drivers\tosrfcom.sys [82224] =>.TOSHIBA CORPORATION® O58 - SDL:2011/07/12 20:08:02 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\Windows\System32\drivers\tosrfec.sys [19904] =>.TOSHIBA CORPORATION® O58 - SDL:2010/08/30 10:48:00 A . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\Windows\System32\drivers\Tosrfhid.sys [94528] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/24 11:33:00 A . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\Windows\System32\drivers\tosrfnds.sys [26472] =>.TOSHIBA CORPORATION® O58 - SDL:2010/04/26 11:48:00 A . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\Windows\System32\drivers\TosRfSnd.sys [63488] =>.Toshiba Corporation O58 - SDL:2011/01/27 15:27:04 A . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\Windows\System32\drivers\tosrfusb.sys [67384] =>.TOSHIBA CORPORATION® O58 - SDL:2016/03/29 09:39:38 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [28272] =>.Adlice® O58 - SDL:2009/07/14 12:25:14 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\Windows\System32\drivers\TVALZ.SYS [26840] =>.TOSHIBA CORPORATION® O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 7s O61 - LFC: 2016/03/29 10:43:52 A . (..) -- C:\Users\ADEBONNE\ZHPDiag3.exe [289427] O61 - LFC: 2016/03/29 10:43:52 A . (..) -- C:\Users\ADEBONNE\AppData\Roaming\ZHP\ZHPDiag3.exe [289427] O61 - LFC: 2016/03/25 12:45:08 A . (..) -- C:\Users\ADEBONNE\AppData\Local\SpoonBL\2014.03.19T10.58\roaming\xregistry.bin [11123] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (3) - 12s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC O69 - SBI: SearchScopes [HKCU] {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} - (Google) - http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ---\\ Enumère les services démarrés par Svchost (33) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [782848] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2610688] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (20) - 3s O87 - FAEL: "{6F1CC5EE-2791-4E7D-8367-3211BD444F23}" [In-None-P17-TRUE] .(.Net Transmit & Receive - NTR Plugin 1.2.4.2.) -- C:\Windows\system32\ntrplugin1242h.exe {4821B37E8333C49F3B692DAC696F208E} (.not file.) O87 - FAEL: "{73A66074-60CC-42B4-BEA2-0F95868E9C2C}" [In-None-P17-TRUE] .(.Net Transmit & Receive - NTR Plugin 1.2.4.2.) -- C:\Windows\system32\ntrplugin1242a.exe {4821B37E8333C49F3B692DAC696F208E} (.not file.) O87 - FAEL: "{0891A7E8-CD27-4DCF-8E70-7A5EDA28D912}" [In-None-P17-TRUE] .(.Net Transmit & Receive - NTR Plugin 1.2.4.2.) -- C:\Windows\system32\ntrplugin1242.exe {4821B37E8333C49F3B692DAC696F208E} (.not file.) O87 - FAEL: "TCP Query User{DF3C6BE6-8790-49D2-8EB6-8C3DDEFB1A12}C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{CC62E5F2-15CA-483B-921D-371BFAC6D4AB}C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1386606611\windows\resource\jre\bin\javaw.exe (.not file.) O87 - FAEL: "{5FEB1A44-D5B3-4BFE-87A2-247081517CEB}" [In-None-P17-TRUE] .(.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O87 - FAEL: "{796FDDCB-0329-4C2C-A3CF-B8DADC2BCC9F}" [In-None-P17-TRUE] .(.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus Update.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O87 - FAEL: "{5E703113-213D-4B31-97F1-E7255FD2B223}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\BL\BL\socle\9.00.00.09\gestioncomposant\bin\gestionnaireDeComposants.exe (.not file.) O87 - FAEL: "{2BA17FCD-DA1C-4F95-9D7D-AF7E51F8818E}" [In-None-P17-TRUE] .(...) -- C:\oracle\OracleMagnus10GR2\BIN\lsnrctl.exe (.not file.) O87 - FAEL: "{A0E02B1D-E5F4-4FCC-9AE5-C152A93A8991}" [In-None-P17-TRUE] .(...) -- C:\oracle\OracleMagnus10GR2\BIN\tnslsnr.exe (.not file.) O87 - FAEL: "{22F53830-F852-42E9-8259-F408135E73BB}" [In-None-P17-TRUE] .(...) -- C:\oracle\OracleMagnus10GR2\BIN\oracle.exe (.not file.) O87 - FAEL: "{FAF8B9C3-EC16-4107-8109-C05AA108C9FE}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer O87 - FAEL: "TCP Query User{8DADB90A-3481-4584-A7A8-63E14750AEBA}C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{47C2E7EB-48AF-42D7-970C-5CCA4F27A9EA}C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1411108738\windows\resource\jre\bin\javaw.exe (.not file.) O87 - FAEL: "TCP Query User{0A8FAB78-7CD5-4B37-96D1-F434AEC48D53}C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe (.not file.) O87 - FAEL: "UDP Query User{A8DFFD8F-11FC-4EAF-97CA-5257C5248704}C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\adebonne\appdata\local\temp\i1426595851\windows\resource\jre\bin\javaw.exe (.not file.) O87 - FAEL: "{4FF80EF3-A27F-49D2-949E-3BBEDEE71B86}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\BL\BL\bin\fss-we\bl-fss.exe (.not file.) O87 - FAEL: "{9C5CF2A6-F0F6-40BA-805F-25F978E00B34}" [In-None-P17-TRUE] .(...) -- D:\Program Files (x86)\BL\BL\bin\fss-we\bl-fss64.exe (.not file.) O87 - FAEL: "{EC31FE8C-9DE7-47B2-81B7-A613D09D9B9B}" [In-None-P17-TRUE] .(.Berger-Levrault - Lanceur d'application Berger-Levrault.) -- D:\Program Files (x86)\BL\BL\bin\e.magnus64.exe {3D108A29119C5D7FCA5084A87EF8CCFC} O87 - FAEL: "{4081FA29-A762-4608-A09C-EC5C9A178848}" [In-None-P17-TRUE] .(.SolarWinds - DameWare products.) -- C:\Windows\dwrcs\DWRCS.EXE {4D1AD4813484CD2C046846391B68FADB} ---\\ Scan Additionnel (1) - 0s ~ Aucun élément malicieux ou superflu trouvé. ---\\ Récapitulatif des éléments trouvés sur votre station (2) - 0s http://www.nicolascoolman.fr/?p=4664 => http://www.nicolascoolman.fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer ~ End of the scan, 4179 items in 00h02mn43s (1163)(0)