~ ZHPDiag v2016.3.2.62 Par Nicolas Coolman (2016/03/02) ~ Démarré par JPN_Consulting_3 (Administrator) (2016/03/04 09:59:46) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\JPN_Consulting_3\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\JPN_Consulting_3\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 10240) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v48.0.2564.116 MFIE: Mozilla Firefox 44.0.2 (x86 fr) MSIE: Internet Explorer v11.0.10240.16644 ---\\ Informations sur les produits Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 14s Avast Free Antivirus v11.1.2241 Windows Defender (Deactivate) ---\\ Logiciels d'optimisation (1) - 16s CCleaner v4.12 ---\\ Surveillance de Logiciels (2) - 16s Adobe Flash Player 20 NPAPI Adobe Acrobat Reader DC - Français ---\\ Logiciels de partage P2P (1) - 16s µTorrent v2.2.1 ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 6238.06 MB (51% free) System Restore: Activé (Enable) System drive C: has 376 GB () free of 938 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: WEB-CONSULTANT ~ User Name: JPN_Consulting_3 ~ Logged in as Administrator ---\\ Enumération des unités disques (4) - 0s ~ Drive C: has 376 GB free of 938 GB (System) ~ Drive D: has 1 GB free of 15 GB ~ Drive E: has GB free of 1 GB ~ Drive F: has 0 GB free of 0 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.D2EAEC106F183572317AF7D68E381063] - 25/11/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4532304] =>.Microsoft Windows® [MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 31/07/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [290312] =>.Microsoft Windows Publisher® [MD5.E5D86250453B33900666D92ED1A92ABE] - 17/09/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2740224] =>.Microsoft Corporation [MD5.DA32F9BFA7851AD4247353EA03755DE6] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation [MD5.ECB1943967424DFB96E03F6A098434EF] - 31/07/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation [MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [680256] =>.Microsoft Windows® [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] =>.Microsoft Windows® [MD5.8C795953726C7D2DE72CE4748208C5ED] - 10/07/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] =>.Microsoft Windows® [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation [MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation [MD5.25435407D97419627F4B10653433BF2B] - 10/07/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation [MD5.27E248CD861AFED4DF0C48F4C853E7F0] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] =>.Microsoft Corporation [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] =>.Microsoft Corporation [MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [273408] =>.Microsoft Corporation [MD5.BA8DC96D1DD7785EB0589CB1777208B7] - 01/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2115936] =>.Microsoft Windows® [MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.CA60F6C03611AF1710BC903ED9F566FB] - 10/07/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] =>.Microsoft Corporation [MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] =>.Microsoft Windows® [MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (29) - 6s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\IDT\WDM\AESTSr64.exe =>.Andrea Electronics Corporation O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) - C:\Program Files\Motorola\Bluetooth\obexsrv.exe {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Service Bureau à distance Google Chrome (chromoting) . (.Google Inc. - Processus relatif à l'hôte.) - C:\Program Files (x86)\Google\Chrome Remote Desktop\49.0.2623.40\remoting_host.exe =>.Google Inc® O23 - Service: TrueSuiteService (FPLService) . (.HP - HP Service.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe =>.AuthenTec, Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Company® O23 - Service: HP Client Services (HPClientSvc) . (.Hewlett-Packard Company - HP Client Services.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe =>.Hewlett-Packard Company® O23 - Service: @oem42.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\System32\Hpservice.exe =>.Hewlett-Packard Company® O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe =>.Hewlett-Packard Company® O23 - Service: Hotspot Shield Service (hshld) . (.AnchorFree Inc. - Hotspot Shield 5.2.1.) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe =>.AnchorFree Inc® O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: metasploitPostgreSQL-1 (metasploitPostgreSQL-1) . (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) - C:\exploit\postgresql\bin\pg_ctl.exe =>.PostgreSQL Global Development Group O23 - Service: Metasploit Pro Service (metasploitProSvc) . (.http://www.ruby-lang.org/ - Ruby interpreter (CUI) 1.9.3p547 [i386-ming.) - C:\exploit\ruby\bin\ruby.exe O23 - Service: Metasploit Thin Service (metasploitThin) . (.http://www.ruby-lang.org/ - Ruby interpreter (CUI) 1.9.3p547 [i386-ming.) - C:\exploit\ruby\bin\ruby.exe O23 - Service: Metasploit Worker (metasploitWorker) . (.http://www.ruby-lang.org/ - Ruby interpreter (CUI) 1.9.3p547 [i386-ming.) - C:\exploit\ruby\bin\ruby.exe O23 - Service: PRTG Core Server Service (PRTGCoreService) . (...) - C:\Program Files (x86)\PRTG Network Monitor\64 bit\PRTG Server.exe (.not file.) O23 - Service: PRTG Probe Service (PRTGProbeService) . (...) - C:\Program Files (x86)\PRTG Network Monitor\PRTG Probe.exe (.not file.) O23 - Service: @C:\WINDOWS\system32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc. O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (50) - 78s SR - Auto [13/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Disabl [21/02/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [02/06/2013] [ 89600] Andrea ST Filters Service (AESTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\IDT\WDM\AESTSr64.exe =>.Andrea Electronics Corporation SS - Disabl [12/11/2013] [ 168584] Advanced Link Manager Server (ALMServer) . (.Caphyon.) - C:\Program Files (x86)\Caphyon\Advanced Web Ranking\ALMServer.exe {5AB535B2749E242E6D6BCDE3142D2831} =>.Caphyon SR - Auto [18/12/2015] [ 255472] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\system32\atiesrxx.exe =>.AMD SR - Auto [07/10/2015] [ 77104] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [01/12/2015] [ 174416] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.® SS - Disabl [12/11/2013] [ 168584] Advanced Web Ranking Scheduler (AWRScheduler) . (.Caphyon.) - C:\Program Files (x86)\Caphyon\Advanced Web Ranking\Scheduler.exe {5AB535B2749E242E6D6BCDE3142D2831} =>.Caphyon SS - Disabl [12/11/2013] [ 168584] Advanced Web Ranking Server (AWRServer) . (.Caphyon.) - C:\Program Files (x86)\Caphyon\Advanced Web Ranking\AWRServer.exe {5AB535B2749E242E6D6BCDE3142D2831} =>.Caphyon SR - Demand [08/02/2011] [ 4151376] Bluetooth Device Manager (Bluetooth Device Manager) . (.Motorola Solutions, Inc..) - C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. SS - Demand [28/02/2011] [ 1189968] Bluetooth Media Service (Bluetooth Media Service) . (.Motorola Solutions, Inc..) - C:\Program Files\Motorola\Bluetooth\audiosrv.exe {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. SR - Auto [15/02/2011] [ 680016] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc..) - C:\Program Files\Motorola\Bluetooth\obexsrv.exe {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [05/02/2016] [ 69016] Service Bureau à distance Google Chrome (chromoting) . (.Google Inc..) - C:\Program Files (x86)\Google\Chrome Remote Desktop\49.0.2623.40\remoting_host.exe =>.Google Inc® SS - Demand [01/06/2015] [ 290224] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SS - Disabl [26/02/2012] [ 632320] FileZilla Server FTP server (FileZilla Server) . (.FileZilla Project.) - C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe =>.FileZilla Project SS - Demand [01/03/2014] [ 655624] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Acresso Software Inc.® SR - Demand [11/09/2011] [ 1028096] FLEXnet Licensing Service 64 (FLEXnet Licensing Service 64) . (.Macrovision Europe Ltd..) - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe =>.Macrovision Europe Ltd. SR - Auto [17/02/2011] [ 265544] TrueSuiteService (FPLService) . (.HP.) - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe =>.AuthenTec, Inc.® SS - Demand [15/03/2015] [ 347200] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® SS - Demand [22/02/2015] [ 265808] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc® SS - Auto [28/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [19/05/2015] [ 99128] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Company® SR - Auto [11/10/2010] [ 346168] HP Client Services (HPClientSvc) . (.Hewlett-Packard Company.) - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe =>.Hewlett-Packard Company® SR - Demand [19/08/2013] [ 1129760] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SR - Auto [13/05/2011] [ 30520] @oem42.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\WINDOWS\system32\Hpservice.exe =>.Hewlett-Packard Company SR - Auto [11/07/2011] [ 26680] HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe =>.Hewlett-Packard Company® SR - Auto [17/02/2016] [ 2442368] Hotspot Shield Service (hshld) . (.AnchorFree Inc..) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe =>.AnchorFree Inc® SS - Demand [17/02/2016] [ 103176] Hotspot Shield Tray Service (HssTrayService) . (...) - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE =>.AnchorFree Inc® SR - Auto [20/05/2011] [ 13592] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® SR - Auto [02/06/2013] [ 2413056] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. SS - Demand [22/10/2004] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe =>.Macrovision Corporation SR - Auto [14/05/2013] [ 140936] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2013.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® SS - Demand [17/12/2015] [ 644880] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SR - Auto [22/12/2010] [ 325656] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SR - Auto [20/08/2014] [ 76800] metasploitPostgreSQL-1 (metasploitPostgreSQL-1) . (.PostgreSQL Global Development Group.) - C:\exploit\postgresql\bin\pg_ctl.exe =>.PostgreSQL Global Development Group SR - Auto [20/08/2014] [ 70239] Metasploit Pro Service (metasploitProSvc) . (.http://www.ruby-lang.org/.) - C:\exploit\ruby\bin\ruby.exe SR - Auto [20/08/2014] [ 70239] Metasploit Thin Service (metasploitThin) . (.http://www.ruby-lang.org/.) - C:\exploit\ruby\bin\ruby.exe SR - Auto [20/08/2014] [ 70239] Metasploit Worker (metasploitWorker) . (.http://www.ruby-lang.org/.) - C:\exploit\ruby\bin\ruby.exe SS - Demand [13/02/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Demand [15/11/2015] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.® SR - Auto [02/06/2013] [ 301568] @C:\WINDOWS\system32\stlang64.dll (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc. SS - Demand [19/02/2010] [ 517096] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated SR - Auto [17/07/2015] [ 246472] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Auto [11/09/2015] [ 5702416] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer® SR - Auto [22/12/2010] [ 2656280] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SS - Demand [01/05/2014] [ 24576] wampapache64 (wampapache64) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe =>.Apache Software Foundation SS - Demand [01/05/2014] [12942848] wampmysqld64 (wampmysqld64) . (...) - c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe ---\\ Tâches planifiées en automatique (43) - 7s [MD5.4EAF6F8F0B3BE33A0E3877EB7FFD48D4] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656] =>.Adobe Systems, Incorporated® [MD5.785FD0E36CA75D90DD50042E2594BC63] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.D45579DFAC0E6A66575087AA06FB0F96] [APT] [Apple Diagnostics] (.Apple Inc..) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [61200] =>.Apple Inc.® [MD5.8A6D1C082176864414E85ACF6696331D] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1510320] =>.AVAST Software a.s.® [MD5.DB1654ADB276501C44DB0FE5E8A0841D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [4613912] =>.Piriform Ltd® [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core] (.Facebook Inc..) -- C:\Users\JPN_Consulting_3\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] =>.Facebook, Inc.® [MD5.2A3FB4C98F139038E23330D2439DB8A4] [APT] [FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA] (.Facebook Inc..) -- C:\Users\JPN_Consulting_3\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096] =>.Facebook, Inc.® [MD5.37D418DF5EFE5F988D2C8C3440173ED9] [APT] [G2MUpdateTask-S-1-5-21-2994637984-1042281216-3799817174-1000] (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Users\JPN_Consulting_3\AppData\Local\Citrix\GoToMeeting\4431\g2mupdate.exe [41536] {44AD220DBF367E6C4D2E480E121853D7} [MD5.37D418DF5EFE5F988D2C8C3440173ED9] [APT] [G2MUploadTask-S-1-5-21-2994637984-1042281216-3799817174-1000] (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\Users\JPN_Consulting_3\AppData\Local\Citrix\GoToMeeting\4431\g2mupload.exe [41536] {44AD220DBF367E6C4D2E480E121853D7} [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core] (.Google Inc..) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA] (.Google Inc..) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.AF51D4FE088A3EFA5303B36FFFD0581B] [APT] [HPCeeScheduleForJPN_Consulting_3] (.Hewlett-Packard.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [91704] =>.Hewlett-Packard Company® [MD5.64012082261A68A23C5EE50570FECE87] [APT] [MirageAgent] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [139792] =>.CyberLink® [MD5.63740680B14C2EEE08B11ADADFA98DA1] [APT] [{6D987731-178E-4F77-8E91-3E8BC9EA41E3}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [746648] =>.Google Inc® [MD5.BC41666FF68C364CD3EAA486E50C9270] [APT] [Apple\] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [563000] =>.Apple Inc.® [MD5.434FEE6FF661DCABADB69E55E0747494] [APT] [Hewlett-Packard\] (.Hewlett-Packard Development Company, L.P..) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1344312] =>.Hewlett-Packard Company® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core - (.Facebook Inc..) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core.job [950] =>.Facebook, Inc.® O39 - APT: FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA - (.Facebook Inc..) -- C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA.job [972] =>.Facebook, Inc.® O39 - APT: G2MUpdateTask-S-1-5-21-2994637984-1042281216-3799817174-1000 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-2994637984-1042281216-3799817174-1000.job [658] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: G2MUploadTask-S-1-5-21-2994637984-1042281216-3799817174-1000 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-2994637984-1042281216-3799817174-1000.job [754] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1102] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1106] =>.Google Inc® O39 - APT: GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core.job [1100] =>.Google Inc® O39 - APT: GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA.job [1152] =>.Google Inc® O39 - APT: HPCeeScheduleForJPN_Consulting_3 - (.Hewlett-Packard.) -- C:\WINDOWS\Tasks\HPCeeScheduleForJPN_Consulting_3.job [406] =>.Hewlett-Packard Company® O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [3972] =>.Adobe Systems, Incorporated® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3976] =>.Adobe Systems Incorporated® O39 - APT: Apple Diagnostics - (.Apple Inc..) -- C:\WINDOWS\System32\Tasks\Apple Diagnostics [3524] =>.Apple Inc.® O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\WINDOWS\System32\Tasks\avast! Emergency Update [4280] =>.AVAST Software a.s.® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2904] =>.Piriform Ltd® O39 - APT: FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core - (.Facebook Inc..) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core [3712] =>.Facebook, Inc.® O39 - APT: FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA - (.Facebook Inc..) -- C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA [4080] =>.Facebook, Inc.® O39 - APT: G2MUpdateTask-S-1-5-21-2994637984-1042281216-3799817174-1000 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-2994637984-1042281216-3799817174-1000 [3848] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: G2MUploadTask-S-1-5-21-2994637984-1042281216-3799817174-1000 - (.Citrix Online, a division of Citrix Systems, Inc..) -- C:\WINDOWS\System32\Tasks\G2MUploadTask-S-1-5-21-2994637984-1042281216-3799817174-1000 [3944] {44AD220DBF367E6C4D2E480E121853D7} O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3932] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4164] =>.Google Inc® O39 - APT: GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000Core [3916] =>.Google Inc® O39 - APT: GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2994637984-1042281216-3799817174-1000UA [4292] =>.Google Inc® O39 - APT: HPCeeScheduleForJPN_Consulting_3 - (.Hewlett-Packard.) -- C:\WINDOWS\System32\Tasks\HPCeeScheduleForJPN_Consulting_3 [3342] =>.Hewlett-Packard Company® O39 - APT: MirageAgent - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\MirageAgent [3272] =>.CyberLink® ---\\ Processus lancés (97) - 12s [MD5.2074A85A6B8F84A5A9C60B915B465FAF] - (.HP - HP Service.) -- C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe [265544] [PID.1208] =>.AuthenTec, Inc.® [MD5.BBADD85854BFB5D43C60B7AC8EEA3DBA] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [255472] [PID.1532] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.B3AB2D5B98E67EC56ED4EB9D2A3199BF] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [683504] [PID.1560] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.20E27AA5BCC01C2149830C05FE22F675] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [301568] [PID.1620] =>.IDT, Inc. [MD5.FC7C13B5A9E9BE23B7AE72BBC7FDB278] - (.Hewlett-Packard Company - HpService.) -- C:\Windows\System32\Hpservice.exe [30520] [PID.1704] =>.Hewlett-Packard Company® [MD5.199D3FA1AF32FCE46A38E8EB64FFF520] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [174416] [PID.1820] =>.AVAST Software a.s.® [MD5.D07CDE49E69FA4744895F89A5B60B6F3] - (.Google Inc. - Processus relatif à l'hôte.) -- C:\Program Files (x86)\Google\Chrome Remote Desktop\49.0.2623.40\remoting_host.exe [69016] [PID.2136] =>.Google Inc® [MD5.94A6341079918DB7BF799EE897BD2563] - (.Motorola Solutions, Inc. - Bluetooth Device Manager.) -- C:\Program Files\Motorola\Bluetooth\devmgrsrv.exe [4151376] [PID.2144] {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. [MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2156] =>.Adobe Systems, Incorporated® [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2168] =>.Apple Inc.® [MD5.A6FB9DB8F1A86861D955FD6975977AE0] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\IDT\WDM\AESTSr64.exe [89600] [PID.2184] =>.Andrea Electronics Corporation [MD5.2D564BB1C4559A517B390A031955714D] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104] [PID.2200] =>.Apple Inc.® [MD5.C5E4602D85029C666A42890A3B2DFA45] - (.Copyright CANON INC. 2006-2013 - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe [140936] [PID.2268] =>.Canon Inc.® [MD5.491CE9B6321FB74E4B37AF2C47F98434] - (.Hewlett-Packard Development Company, L.P. - HP Quick Launch WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [26680] [PID.2276] =>.Hewlett-Packard Company® [MD5.6A181452D4E240B8ECC7614B9A19BDE9] - (.Hewlett-Packard Company - HP Client Services.) -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [346168] [PID.2284] =>.Hewlett-Packard Company® [MD5.D72BF0AE484F88399E8343E821C10D6A] - (.Realsil Microelectronics Inc. - Realtek Card Reader Icon Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2413056] [PID.2292] =>.Realsil Microelectronics Inc. [MD5.8D18D6FCCBEA517524581A6F9E5AD675] - (.AnchorFree Inc. - Hotspot Shield 5.2.1.) -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [2442368] [PID.2312] =>.AnchorFree Inc® [MD5.7ACB8FCDDA19C644AAD5F2D817952908] - (.PostgreSQL Global Development Group - pg_ctl - starts/stops/restarts the PostgreS.) -- C:\exploit\postgresql\bin\pg_ctl.exe [76800] [PID.2388] =>.PostgreSQL Global Development Group [MD5.38AA67B220F15C0F7C780A27F76D9ED8] - (.http://www.ruby-lang.org/ - Ruby interpreter (CUI) 1.9.3p547 [i386-ming.) -- C:\exploit\ruby\bin\ruby.exe [70239] [PID.2400] [MD5.38AA67B220F15C0F7C780A27F76D9ED8] - (.http://www.ruby-lang.org/ - Ruby interpreter (CUI) 1.9.3p547 [i386-ming.) -- C:\exploit\ruby\bin\ruby.exe [70239] [PID.2612] [MD5.38AA67B220F15C0F7C780A27F76D9ED8] - (.http://www.ruby-lang.org/ - Ruby interpreter (CUI) 1.9.3p547 [i386-ming.) -- C:\exploit\ruby\bin\ruby.exe [70239] [PID.2624] [MD5.3EEDF446E29B6B8F7AD5AFA59B84800B] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246472] [PID.2992] =>.Synaptics Incorporated® [MD5.2AA61246A5B813C1B12BCCFAA6F23DD8] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5702416] [PID.3008] =>.TeamViewer® [MD5.D07CDE49E69FA4744895F89A5B60B6F3] - (.Google Inc. - Processus relatif à l'hôte.) -- C:\Program Files (x86)\Google\Chrome Remote Desktop\49.0.2623.40\remoting_host.exe [69016] [PID.3056] =>.Google Inc® [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.3648] =>.PostgreSQL Global Development Group [MD5.F7D36E135BF9274BB3435F95E7FAD339] - (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) -- C:\Program Files\Motorola\Bluetooth\obexsrv.exe [680016] [PID.3868] {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. [MD5.52C0312AB35EB7187015FB6A99136BB5] - (.Macrovision Europe Ltd. - Activation Licensing Service.) -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [1028096] [PID.3900] =>.Macrovision Europe Ltd. [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.3984] =>.PostgreSQL Global Development Group [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.1392] =>.PostgreSQL Global Development Group [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.3324] =>.PostgreSQL Global Development Group [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.3488] =>.PostgreSQL Global Development Group [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.3576] =>.PostgreSQL Global Development Group [MD5.A7D3F44C35B328C71311F98E30E2D2B7] - (.PostgreSQL Global Development Group - PostgreSQL Server.) -- C:\exploit\postgresql\bin\postgres.exe [4287488] [PID.3220] =>.PostgreSQL Global Development Group [MD5.84222E8F33BB6080953F130D246BB78B] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] [PID.5296] =>.Synaptics Incorporated® [MD5.015BE8DC7A551728CEFD5DD96EE14E80] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.5836] =>.Synaptics Incorporated® [MD5.C943E8F9759DA171D72AE76A7F9AAEC5] - (.AnchorFree Inc. - Hotspot Shield 5.2.1.) -- C:\Program Files (x86)\Hotspot Shield\bin\HSSCP.exe [2873984] [PID.4428] =>.AnchorFree Inc® [MD5.ABF64234F3462571E66527828040219B] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe [252232] [PID.4452] =>.Google Inc® [MD5.434FEE6FF661DCABADB69E55E0747494] - (.Hewlett-Packard Development Company, L.P. - HP CoolSense.) -- C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1344312] [PID.6328] =>.Hewlett-Packard Company® [MD5.64012082261A68A23C5EE50570FECE87] - (.CyberLink - YouCam Mirage.) -- C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [139792] [PID.6336] =>.CyberLink® [MD5.2E6215108125A42160A1EC17208A50F0] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe [313672] [PID.6936] =>.Google Inc® [MD5.D2946D9F020AE76E9CEF9B4A6DF838C0] - (.Hewlett-Packard Company - HP Software Framework WMI Service.) -- C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe [1129760] [PID.7156] =>.Hewlett-Packard Company® [MD5.77E81E788CC63E65272A7D247F441505] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [99128] [PID.5180] =>.Hewlett-Packard Company® [MD5.D41861E56E7552C13674D7F147A02464] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13592] [PID.6856] =>.Intel Corporation® [MD5.D7E0BED3EA21D7BDDD410ADE51708D90] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [325656] [PID.2704] =>.Intel Corporation® [MD5.E4AA3D28753EF9DB333FE40079993B09] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [411056] [PID.7880] =>.Intel Corporation - pGFX® [MD5.CF40080765D6F66FA93318C0DB6C7D1F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [453552] [PID.8012] =>.Intel Corporation - pGFX® [MD5.96655903769E4996A0988769837E39FD] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe [1128448] [PID.8068] =>.IDT, Inc. [MD5.B1964E8776FD7633F149788F5B2A71CB] - (.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712] [PID.8176] =>.Samsung Electronics CO., LTD.® [MD5.8F4914420E948EDEEF2843F2EBA50DB7] - (.Celartem, Inc., doing business as Extensis. - Extensis Font Management Core.) -- C:\Program Files (x86)\Extensis\Suitcase Fusion 5\FMCore.exe [10399232] [PID.7480] [MD5.ABF64234F3462571E66527828040219B] - (.Google Inc. - Google Crash Handler.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler.exe [252232] [PID.4412] =>.Google Inc® [MD5.20ADB9E427DCD96BACDC4714267C42F9] - (.Google Inc. - Google Chrome.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe [1000264] [PID.7840] =>.Google Inc® [MD5.5D47E37C1E1F03C1E7E8DCEDD4A4BCDF] - (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [60688] [PID.7804] =>.Apple Inc.® [MD5.8C5A712AA2C4A0F106965D199D8B73B8] - (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [103696] [PID.7948] =>.Apple Inc.® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.7200] =>.Google Inc® [MD5.DC73E11DC27E7D9AEF884EBE816C4240] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440] [PID.7572] =>.Intel Corporation® [MD5.2E6215108125A42160A1EC17208A50F0] - (.Google Inc. - Google Crash Handler.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Update\1.3.29.5\GoogleCrashHandler64.exe [313672] [PID.7924] =>.Google Inc® [MD5.AE797B72D85E87D403FC11135507922C] - (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288] [PID.8020] =>.Renesas Electronics Corporation® [MD5.2F722690B624C9AD160EDC24DCA880DF] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [7004376] [PID.8476] =>.AVAST Software a.s.® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8576] =>.Google Inc® [MD5.1040F1B137BC8E513AB4EF8698C50AEE] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595504] [PID.8620] =>.Oracle America, Inc.® [MD5.01C915A06DCD038C79705DCC556ABAB6] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [307400] [PID.8688] =>.Advanced Micro Devices, Inc.® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8836] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8860] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8868] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8888] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8904] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8944] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.9004] =>.Google Inc® [MD5.7AA219D7AEAA8BADCAC7853AE6AE3BD5] - (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688] [PID.9036] =>.Apple Inc.® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.9084] =>.Google Inc® [MD5.F7F43570449082C5A6B5FFAC21C1F79D] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [307912] [PID.9256] =>.Advanced Micro Devices, Inc.® [MD5.A678E5DDD974903DD71F503BDCACA218] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2656280] [PID.9600] =>.Intel Corporation® [MD5.BB9217E339B1DE7EB08E2ED0CD89F988] - (.Apple Inc. - iCloud Photo Stream.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [61200] [PID.11312] =>.Apple Inc.® [MD5.A71A3361AE28DDA0F016B9E72D0FD770] - (.Apple Inc. - Apple IE DAV.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe [1079592] [PID.7256] =>.Apple Inc.® [MD5.2CF497C586D50F7D402BEC33156E0AF4] - (.HP - TouchControl.) -- C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe [642888] [PID.12656] =>.AuthenTec, Inc.® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8208] =>.Google Inc® [MD5.5BFC7693CA6F48358FC2631AF4631DEA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\JPN_Consulting_3\Desktop\logiciel nettoyage\nettoyage\ZHPDiag3.exe [2139136] [PID.8224] =>.Nicolas Coolman [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.3440] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.6764] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.9624] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.2688] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.9452] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.3044] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.11144] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.11948] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.12836] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.5576] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.11416] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.12344] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.156] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.10172] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.8956] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.9276] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.13156] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.10116] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.6132] =>.Google Inc® [MD5.63740680B14C2EEE08B11ADADFA98DA1] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [746648] [PID.2472] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (24) - 2s G2 - GCE: Preference [User Data\Default] [akdgnmcogleenhbclghghlkkdndkjdjc] SEOquake G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [bfbameneiokkgbdmiekhjnmfkcnldhhm] __MSG_extensionName__ G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast G2 - GCE: Preference [User Data\Default] [cojebfpfaaikknofipcimmgclgdkihcp] CNRTL - CNRTL.fr G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [dgogifpkoilgiofhhhodbodcfgomelhe] __MSG_wasavi_name__ G2 - GCE: Preference [User Data\Default] [dhdgffkkebhmkfjojejmpbldmpobfkfo] Tampermonkey G2 - GCE: Preference [User Data\Default] [fdcgdnkidjaadafnichfpabhfomcebme] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security G2 - GCE: Preference [User Data\Default] [gplegfbjlmmehdoakndmohflojccocli] PageSpeed Insights (by Google) G2 - GCE: Preference [User Data\Default] [jajcoljhdglkjpfefjkgiohbhnkkmipm] sFTP Client G2 - GCE: Preference [User Data\Default] [kkelicaakdanhinjdeammmilcgefonfh] Window Resizer G2 - GCE: Preference [User Data\Default] [lcgmndephhjcabhhjfcmncnhbmgbkpij] ShiftEdit G2 - GCE: Preference [User Data\Default] [mcbpblocgmgfnpjjppndjkmgjaogfceg] __MSG_application_title__ G2 - GCE: Preference [User Data\Default] [ninejjcohidippngpapiilnmkgllmakh] YSlow G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [oelggcmknbjmhkpgjfhakedcfnkgbdpg] __MSG_extName__ G2 - GCE: Preference [User Data\Default] [pbinfbikhndabcdlabpcbhggkcdakgfg] Coding the Web G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pnhechapfaindjhompbnflcldabbghjo] Secure Shell ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (14) - 4s M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\websitelogon@truesuite.com M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.DEU P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA P2 - EXT FILE: (...) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Mozilla\Firefox\Profiles\ikt3ygwz.default-1438425681686\extensions\firebug@software.joehewitt.com.xpi P2 - EXT FILE: (...) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Mozilla\Firefox\Profiles\ikt3ygwz.default-1438425681686\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi P2 - EXT FILE: (...) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Mozilla\Firefox\Profiles\ikt3ygwz.default-1438425681686\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi P2 - EXT FILE: (...) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Mozilla\Firefox\Profiles\ikt3ygwz.default-1438425681686\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - EXT: (.iMacros Team, iOpus Software GmbH - iMacros for Firefox.) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Mozilla\Firefox\Profiles\ikt3ygwz.default-1438425681686\extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670} =>.iMacros Team, iOpus Software GmbH P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc. P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll =>.WildTangent ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://fr.search.yahoo.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com?fr=hp-avast&type=avastbcl R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKEY_USERS\S-1-5-21-2994637984-1042281216-3799817174-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com?fr=hp-avast&type=avastbcl R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (12) ---\\ Browser Helper Object de navigateur (BHO) (6) - 1s O2 - BHO: Canon Easy-WebPrint EX BHO [64Bits] - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll =>.Canon Inc.® O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: TSBHO Class [64Bits] - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} . (.HP - Website Log On.) -- C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll =>.AuthenTec, Inc.® O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA0129030000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (79) - 4s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxtray.exe =>.Intel Corporation - pGFX® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - pGFX® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - pGFX® O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe =>.IDT, Inc. O4 - HKLM\..\Run: [BTMTrayAgent] C:\Program Files\Motorola\Bluetooth\btmshell.dll",TrayApp (.not file.) O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [CDAServer] . (.Copyright © 2010. All rights reserved. - CDA Server.) -- C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe =>.Samsung Electronics CO., LTD.® O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated® O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKCU\..\Run: [FMCore.exe] . (.Celartem, Inc., doing business as Extensis. - Extensis Font Management Core.) -- C:\Program Files (x86)\Extensis\Suitcase Fusion 5\FMCore.exe O4 - HKCU\..\Run: [Speech Recognition] . (.Microsoft Corporation - Reconnaissance vocale.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc® O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\JPN_Consulting_3\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.® O4 - HKCU\..\Run: [SEO Soft] . (.www.webmaster-rank.info - Logiciel open source de positionnement 32RB.) -- C:\Program Files (x86)\SEO Soft\seosoft.exe O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - HKCU\..\Run: [FAFDD630EB373C2B2BBB8BD08319620DAEEE5696._service_run] . (.Google Inc. - Google Chrome.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - HKCU\..\Run: [hubiC] . (.OVH - hubiC.) -- C:\Program Files\OVH\hubiC\hubiC.exe =>.OVH O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.® O4 - HKCU\..\Run: [AppleIEDAV] . (.Apple Inc. - Apple IE DAV.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe =>.Apple Inc.® O4 - HKCU\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.® O4 - HKCU\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.® O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_E647DA3930CF302355850E06E09FC590] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5907.0716] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5930.0814] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5951.0827] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6201.1019] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6281.1202] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [IAStorIcon] . (.Intel Corporation - IAStorIcon.) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe =>.Intel Corporation® O4 - HKLM\..\Wow6432Node\Run: [NUSB3MON] . (.Renesas Electronics Corporation - USB 3.0 Monitor.) -- C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe =>.Renesas Electronics Corporation® O4 - HKLM\..\Wow6432Node\Run: [HPOSD] . (.Hewlett-Packard Development Company, L.P. - HP On Screen Display.) -- C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe =>.Hewlett-Packard Company® O4 - HKLM\..\Wow6432Node\Run: [HP Quick Launch] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe =>.Hewlett-Packard Company® O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.® O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [Easybits Recovery] . (.EasyBits Software AS - .) -- C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe =>.EasyBits Software AS O4 - HKLM\..\Wow6432Node\Run: [EaseUS EPM tray] C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.3.0\bin\EpmNews.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [Adobe Acrobat Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Acrobat Assistant 8.0] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\acrotray.exe =>.Adobe Systems, Incorporated® O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Company® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\.DEFAULT\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-18\..\RunOnce: [iCloud] . (.Apple Inc. - iCloud.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [FMCore.exe] . (.Celartem, Inc., doing business as Extensis. - Extensis Font Management Core.) -- C:\Program Files (x86)\Extensis\Suitcase Fusion 5\FMCore.exe O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [Speech Recognition] . (.Microsoft Corporation - Reconnaissance vocale.) -- C:\Windows\Speech\Common\sapisvr.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\JPN_Consulting_3\AppData\Local\Facebook\Update\FacebookUpdate.exe =>.Facebook, Inc.® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [SEO Soft] . (.www.webmaster-rank.info - Logiciel open source de positionnement 32RB.) -- C:\Program Files (x86)\SEO Soft\seosoft.exe O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [FAFDD630EB373C2B2BBB8BD08319620DAEEE5696._service_run] . (.Google Inc. - Google Chrome.) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [hubiC] . (.OVH - hubiC.) -- C:\Program Files\OVH\hubiC\hubiC.exe =>.OVH O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [AppleIEDAV] . (.Apple Inc. - Apple IE DAV.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\Run: [GoogleChromeAutoLaunch_E647DA3930CF302355850E06E09FC590] . (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5907.0716] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5930.0814\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5930.0814] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5951.0827\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.5951.0827] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6201.1019] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-2994637984-1042281216-3799817174-1000\..\RunOnce: [Uninstall C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6281.1202] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (70) - 17s O4 - GS\Desktop [Administrateur]: 176.31.250.221.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: 178.32.216.48.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: boulogne1@ks3304713.kimsufi.com.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: CuteRank.lnk . (.CuteRank.net - CuteRank.) C:\Program Files (x86)\CuteRank\CuteRank.exe O4 - GS\Desktop [Administrateur]: intellitamper.exe - Raccourci.lnk . (.LaCaveProds - http://www.chez.com/cavemania - IntelliTamper.) C:\Program Files (x86)\IntelliTamper\intellitamper.exe O4 - GS\Desktop [Administrateur]: jonas - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: Nmap - Zenmap GUI.lnk . (...) C:\Program Files (x86)\Nmap\zenmap.exe O4 - GS\Desktop [Administrateur]: ns324136.ip-37-187-156.eu@ns324136.ip-37-187-156.eu.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: Recovery for Works.lnk . (...) C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery for Works O4 - GS\Desktop [Administrateur]: root@5.196.72.169.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: root@51.255.43.104.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: root@ns3100814.ip-176-31-250.eu.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: stephane.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: vps2.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\JPN_Consulting_3\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\JPN_Consulting_3\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Google Chrome Canary.lnk . (.Google Inc. - Google Chrome.) C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [Administrateur]: Pointofix.lnk . (...) C:\Program Files (x86)\Pointofix\Pointofix.exe O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [Administrateur]: Dropbox.lnk . (...) C:\Users\JPN_Consulting_3\Dropbox O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (...) C:\Windows\System32\fsquirt.exe O4 - GS\sendTo [Administrateur]: WinSCP (for upload).lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\sendTo [Administrateur]: WinSCP (pour envoi).lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\TaskBar [Administrateur]: firefox - Raccourci.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Google Chrome Canary.lnk . (.Google Inc. - Google Chrome.) C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: hpDST.lnk . (.Hewlett-Packard Company - Setup Manager.) C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe =>.Hewlett-Packard Company® O4 - GS\TaskBar [Administrateur]: Screaming Frog SEO Spider.lnk . (.Screaming Frog - Screaming Frog SEO Spider.) C:\Program Files (x86)\Screaming Frog SEO Spider\ScreamingFrogSEOSpider.exe =>.Screaming Frog O4 - GS\Desktop [JPN_Consulting_3]: 176.31.250.221.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: 178.32.216.48.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: boulogne1@ks3304713.kimsufi.com.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: CuteRank.lnk . (.CuteRank.net - CuteRank.) C:\Program Files (x86)\CuteRank\CuteRank.exe O4 - GS\Desktop [JPN_Consulting_3]: intellitamper.exe - Raccourci.lnk . (.LaCaveProds - http://www.chez.com/cavemania - IntelliTamper.) C:\Program Files (x86)\IntelliTamper\intellitamper.exe O4 - GS\Desktop [JPN_Consulting_3]: jonas - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [JPN_Consulting_3]: Nmap - Zenmap GUI.lnk . (...) C:\Program Files (x86)\Nmap\zenmap.exe O4 - GS\Desktop [JPN_Consulting_3]: ns324136.ip-37-187-156.eu@ns324136.ip-37-187-156.eu.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: Recovery for Works.lnk . (...) C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery for Works O4 - GS\Desktop [JPN_Consulting_3]: root@5.196.72.169.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: root@51.255.43.104.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: root@ns3100814.ip-176-31-250.eu.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: stephane.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: vps2.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Desktop [JPN_Consulting_3]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\JPN_Consulting_3\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [JPN_Consulting_3]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\JPN_Consulting_3\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [JPN_Consulting_3]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [JPN_Consulting_3]: Google Chrome Canary.lnk . (.Google Inc. - Google Chrome.) C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [JPN_Consulting_3]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\Quicklaunch [JPN_Consulting_3]: Pointofix.lnk . (...) C:\Program Files (x86)\Pointofix\Pointofix.exe O4 - GS\Quicklaunch [JPN_Consulting_3]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [JPN_Consulting_3]: Dropbox.lnk . (...) C:\Users\JPN_Consulting_3\Dropbox O4 - GS\sendTo [JPN_Consulting_3]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer® O4 - GS\sendTo [JPN_Consulting_3]: Transfert de fichiers Bluetooth.LNK . (...) C:\Windows\System32\fsquirt.exe O4 - GS\sendTo [JPN_Consulting_3]: WinSCP (for upload).lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\sendTo [JPN_Consulting_3]: WinSCP (pour envoi).lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\TaskBar [JPN_Consulting_3]: firefox - Raccourci.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [JPN_Consulting_3]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [JPN_Consulting_3]: Google Chrome Canary.lnk . (.Google Inc. - Google Chrome.) C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [JPN_Consulting_3]: hpDST.lnk . (.Hewlett-Packard Company - Setup Manager.) C:\Program Files (x86)\Hewlett-Packard\Setup Manager\hpDST.exe =>.Hewlett-Packard Company® O4 - GS\TaskBar [JPN_Consulting_3]: Screaming Frog SEO Spider.lnk . (.Screaming Frog - Screaming Frog SEO Spider.) C:\Program Files (x86)\Screaming Frog SEO Spider\ScreamingFrogSEOSpider.exe =>.Screaming Frog O4 - GS\CommonDesktop [Public]: aTube Catcher.lnk . (.DsNET - aTube Catcher to download and convert video.) C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe {3891D1349D41A2C39A519812D8C15FAC} =>.DsNET O4 - GS\CommonDesktop [Public]: FileZilla Client.lnk . (.FileZilla Project - FileZilla FTP Client.) C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe =>.Open Source Developer, Tim Kosse® O4 - GS\CommonDesktop [Public]: Hotspot Shield.lnk . (.AnchorFree Inc. - Hotspot Shield 5.2.1.) C:\Program Files (x86)\Hotspot Shield\bin\HSSCP.exe =>.AnchorFree Inc® O4 - GS\CommonDesktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Video Search.lnk . (.DsNET - aTube Catcher to download and convert video.) C:\Program Files (x86)\DsNET Corp\aTube Catcher 2.0\yct.exe {3891D1349D41A2C39A519812D8C15FAC} =>.DsNET O4 - GS\CommonDesktop [Public]: WinSCP.lnk . (.Martin Prikryl - WinSCP: SFTP, FTP and SCP client.) C:\Program Files (x86)\WinSCP\WinSCP.exe =>.Martin Prikryl® O4 - GS\Programs [Public]: Google Chrome Canary.lnk . (.Google Inc. - Google Chrome.) C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\chrome.exe =>.Google Inc® O4 - GS\Programs [Public]: sFTP Client (FTP, SFTP, SSH Support) - Chrome Web Store.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{06329eff-c652-409c-bb39-a47fa9356983}: DhcpNameServer = 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{69ba6491-1314-4955-afec-759856614df0}: DhcpNameServer = 192.168.0.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{881F8ED6-1598-4470-84A2-4A419E1AEE52}: DhcpNameServer = 172.20.10.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{f0faa632-888c-4531-bd6b-aa1ab82630ac}: DhcpNameServer = 192.168.0.254 ---\\ Protocole additionnel (28) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype-ie-addon-data [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Skype Technologies S.A. - Skype Click to Call for Internet Explorer.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll =>.Skype Technologies SA® O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (222) - 43s O42 - Logiciel: µTorrent - (...) [HKLM][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 15.14 - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2701-1514-000001000000} =>.Igor Pavlov O42 - Logiciel: 7-Zip 15.14 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-1514-000001000000} =>.Igor Pavlov O42 - Logiciel: 7-Zip 9.22beta - (...) [HKLM][64Bits] -- 7-Zip O42 - Logiciel: Acrylic Wi-Fi Professional v2.2 - (.Tarlogic Security S.L..) [HKCU][64Bits] -- {FBD2EDDA-2B1B-49A2-9147-99CBCC5F10E5}_is1 {0DFD} =>.Tarlogic Security S.L. O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Acrobat X Pro - English, Français, Deutsch - (.Adobe Systems.) [HKLM][64Bits] -- {AC76BA86-1033-F400-7760-000000000005} =>.Adobe Systems O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {78DFDC88-FA40-408F-8397-1D7908A6DA21} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Creative Suite 6 Master Collection - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AF37176A-78CA-545B-34EF-8B6A21514DD1} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Help Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.2 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Adobe Widget Browser - (.Adobe Systems Incorporated..) [HKLM][64Bits] -- {EFBE6DD5-B224-96E5-72B9-68D328CB12A6} =>.Adobe Systems Incorporated. O42 - Logiciel: Adobe Widget Browser - (.Adobe Systems Incorporated..) [HKLM][64Bits] -- com.adobe.WidgetBrowser =>.Adobe Systems Incorporated. O42 - Logiciel: Advanced Web Ranking - (.Caphyon.) [HKLM][64Bits] -- {4AC3FB68-C2E5-4F7A-A3B1-6CDD10A5E39F} =>.Caphyon O42 - Logiciel: AdWords Editor - (.Google.) [HKLM][64Bits] -- {64427C94-5A22-4743-8772-B2D9B9FD5283} =>.Google O42 - Logiciel: Afficher le Mode d’emploi - (...) [HKLM][64Bits] -- View User Guide O42 - Logiciel: Agatha Christie - Peril at End House - (.WildTangent.) [HKLM][64Bits] -- WT089362 =>.WildTangent Inc O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM][64Bits] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: AnalogX LinkExaminer - (.AnalogX.) [HKLM][64Bits] -- AnalogX LinkExaminer O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F} =>.Apple Inc. O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {691F30EB-9009-475A-B8A9-E1BF39598FD5} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {3540181E-340A-4E7A-B409-31663472B2F7} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF} =>.Apple Inc. O42 - Logiciel: ATI Catalyst Install Manager - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {DA0D8FDA-D538-1145-8BA2-6F22C4EB4F75} =>.ATI Technologies, Inc. O42 - Logiciel: aTube Catcher - (.DsNET Corp.) [HKLM][64Bits] -- aTube Catcher =>.DsNET Corp O42 - Logiciel: AuthenTec TrueAPI - (.AuthenTec, Inc..) [HKLM][64Bits] -- {054EF02F-95D8-48F4-9EEB-2F9CE3072ED8} =>.AuthenTec, Inc. O42 - Logiciel: Avast Free Antivirus - (.AVAST Software.) [HKLM][64Bits] -- avast =>.AVAST Software a.s.® O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089453 =>.WildTangent Inc O42 - Logiciel: Big Rig Europe - (.WildTangent.) [HKLM][64Bits] -- WT089497 =>.WildTangent Inc O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0} =>.Your Company Name O42 - Logiciel: Blasterball 3 - (.WildTangent.) [HKLM][64Bits] -- WT089308 =>.WildTangent Inc O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc. O42 - Logiciel: Bounce Symphony - (.WildTangent.) [HKLM][64Bits] -- WT087330 =>.WildTangent Inc O42 - Logiciel: Brackets - (.brackets.io.) [HKLM][64Bits] -- {A3D05790-90F7-4D8D-958C-21B060B9B902} =>.brackets.io O42 - Logiciel: Cake Mania - (.WildTangent.) [HKLM][64Bits] -- WT089359 =>.WildTangent Inc O42 - Logiciel: Canon Camera TWAIN Driver - (.Canon.) [HKLM][64Bits] -- {4F9EF11C-A91A-42D0-BDAC-BB9695237075} =>.Canon O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM][64Bits] -- Easy-WebPrint EX =>.Canon Inc.® O42 - Logiciel: Canon IJ Network Scanner Selector EX - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_Scanner_Selector_EX =>.Canon Inc.® O42 - Logiciel: Canon IJ Network Tool - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_UTILITY =>.Canon Inc.® O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Scan_Utility =>.Canon Inc.® O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM][64Bits] -- CANONIJPLM100 =>.Canon Inc.® O42 - Logiciel: Canon MG3500 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3500_series =>.Canon Inc.® O42 - Logiciel: Canon MG3500 series On-screen Manual - (.Canon Inc..) [HKLM][64Bits] -- Canon MG3500 series On-screen Manual =>.Canon Inc.® O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden =>.Canon Inc.® O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden Design Files =>.Canon Inc.® O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter =>.Canon Inc.® O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu =>.Canon Inc.® O42 - Logiciel: Catalyst Control Center - (.Nom de votre société.) [HKLM][64Bits] -- {0372849C-A9C1-A7BF-7180-9DB15334D778} O42 - Logiciel: Catalyst Control Center - Branding - (.ATI.) [HKLM][64Bits] -- {1AA895E9-B751-408B-BB9C-527C04E52C91} =>.ATI O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.ATI.) [HKLM][64Bits] -- {49799BCA-8E53-63CD-D2D4-BAC6AB782DEE} =>.ATI O42 - Logiciel: Catalyst Control Center InstallProxy - (.ATI Technologies, Inc..) [HKLM][64Bits] -- {C51EF224-3786-5566-3B32-251BDEC5C8E7} =>.ATI Technologies, Inc. O42 - Logiciel: Catalyst Control Center Localization All - (.ATI.) [HKLM][64Bits] -- {49FE4B97-0E1E-F9EC-2123-4DFA80064694} =>.ATI O42 - Logiciel: Catalyst Control Center Profiles Mobile - (.ATI.) [HKLM][64Bits] -- {0BB68729-BD8E-76E0-A357-9685790987F1} =>.ATI O42 - Logiciel: ccc-utility64 - (.ATI.) [HKLM][64Bits] -- {7A33B9B4-0C40-53B4-CCA0-D469A83DE142} =>.ATI O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Chrome Remote Desktop Host - (.Google Inc..) [HKLM][64Bits] -- {EBFF2EA1-3944-4CA2-89FA-8B70C0058DD3} =>.Google Inc. O42 - Logiciel: ChromecastApp - (.Google Inc..) [HKCU][64Bits] -- {079ede36-133d-44b0-8053-c7c1fa8d2e0d}_is1 =>.Google Inc® O42 - Logiciel: Chuzzle Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089454 =>.WildTangent Inc O42 - Logiciel: Citrix Online Launcher - (.Citrix.) [HKLM][64Bits] -- {678753E6-E526-4AE5-A144-00240772543A} =>.Citrix O42 - Logiciel: Common Desktop Agent - (.OEM.) [HKLM][64Bits] -- {031A0E14-0413-4C97-9772-2639B782F46F} =>.OEM O42 - Logiciel: CommView - (.TamoSoft.) [HKLM][64Bits] -- CommView =>.TamoSoft Ltd® O42 - Logiciel: ConvertHelper 2.2 - (.DownloadHelper.) [HKLM][64Bits] -- {27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1 =>.DownloadHelper O42 - Logiciel: ConvertHelper 3.1.1 - (.DownloadHelper.) [HKLM][64Bits] -- {27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1 =>.DownloadHelper O42 - Logiciel: Crazy Chicken Kart 2 - (.WildTangent.) [HKLM][64Bits] -- WT089492 =>.WildTangent Inc O42 - Logiciel: CuteRank 3.6.2 - (.CuteRank.Net.) [HKLM][64Bits] -- CuteRank O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Diner Dash 2 Restaurant Rescue - (.WildTangent.) [HKLM][64Bits] -- WT087536 =>.WildTangent Inc O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKCU][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: effiSpin - (.effi10.) [HKLM][64Bits] -- {9B4F28BD-1993-4FB5-8D41-E1CE8CC4530C} =>.effi10 O42 - Logiciel: Energy Star Digital Logo - (.Hewlett-Packard.) [HKLM][64Bits] -- {BD1A34C9-4764-4F79-AE1F-112F8C89D3D4} =>.Hewlett-Packard O42 - Logiciel: Enregistrement utilisateur de Canon MG3500 series - (.‭Canon Inc..) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MG3500 series =>.Canon Inc.® O42 - Logiciel: ESU for Microsoft Windows 7 - (.Hewlett-Packard.) [HKLM][64Bits] -- {3877C901-7B90-4727-A639-B6ED2DD59D43} =>.Hewlett-Packard O42 - Logiciel: Extensis Suitcase Fusion 5 - (.2013 Celartem, Inc. d.b.a Extensis All rights reserved.) [HKLM][64Bits] -- {2C4E3D67-E7D5-464A-BAEC-7B921C0AB8DC} O42 - Logiciel: Facebook Video Calling 3.1.0.521 - (.Skype Limited.) [HKLM][64Bits] -- {2091F234-EB58-4B80-8C96-8EB78C808CF7} =>.Skype Limited O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WT089328 =>.WildTangent Inc O42 - Logiciel: FATE - (.WildTangent.) [HKLM][64Bits] -- WT087361 =>.WildTangent Inc O42 - Logiciel: FileZilla Client 3.14.1 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client =>.Tim Kosse O42 - Logiciel: FileZilla Server - (.FileZilla Project.) [HKLM][64Bits] -- FileZilla Server =>.FileZilla Project O42 - Logiciel: Fishdom - (.WildTangent.) [HKLM][64Bits] -- WT089493 =>.WildTangent Inc O42 - Logiciel: GCSoft version 2.30 - (.GladiaSoft.) [HKLM][64Bits] -- {477F0075-30E8-4672-B69E-8FE38BD7F7C9}_is1 O42 - Logiciel: GCSoftComponents - (.GladiaSoft.) [HKLM][64Bits] -- {BEAA1E2D-B0C9-45C3-899D-31FB50BAF480} O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {EF61675D-9BBC-4EC7-B906-F13BE8D3BD20} =>.Google, Inc. O42 - Logiciel: Google Talk Plugin - (.Google.) [HKLM][64Bits] -- {F9B579C2-D854-300A-BE62-A09EB9D722E4} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: Google Chrome Canary - (.Google Inc..) [HKCU][64Bits] -- Google Chrome SxS =>.Google Inc® O42 - Logiciel: GoToMeeting 7.12.0.4431 - (.CitrixOnline.) [HKCU][64Bits] -- GoToMeeting {44AD220DBF367E6C4D2E480E121853D7} =>.CitrixOnline O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.1.1 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company O42 - Logiciel: Hotspot Shield 5.2.1 - (.AnchorFree Inc..) [HKLM][64Bits] -- HotspotShield =>.AnchorFree Inc® O42 - Logiciel: Hotspot Shield 5.2.1 Embedded - (.Buildbot.) [HKLM][64Bits] -- {AF599C42-A2E5-4251-B7EE-4925A147B323} O42 - Logiciel: HP 3D DriveGuard - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {B4EFABD5-5744-4ED8-BA47-C1704BB684D2} =>.Hewlett-Packard Company O42 - Logiciel: HP Auto - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {CC4D56B7-6F18-470B-8734-ABCD75BCF4F1} =>.Hewlett-Packard Company O42 - Logiciel: HP Client Services - (.Hewlett-Packard.) [HKLM][64Bits] -- {2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2} =>.Hewlett-Packard O42 - Logiciel: HP Connection Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {795AADBF-58C2-42D0-B779-E730702A247E} =>.Hewlett-Packard Company O42 - Logiciel: HP CoolSense - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {0D3A6808-82B8-4BB1-BE5A-AED75B3F6C02} =>.Hewlett-Packard Company O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {3C5AB11A-2DDB-49E6-9FC0-CFD88A7DDFE4} =>.Hewlett-Packard O42 - Logiciel: HP FWUpdateEDO2 - (.Hewlett-Packard.) [HKLM][64Bits] -- {415FA9AD-DA10-4ABE-97B6-5051D4795C90} =>.Hewlett-Packard O42 - Logiciel: HP Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent hp Master Uninstall =>.WildTangent Inc O42 - Logiciel: HP Officejet Pro 8600 Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {20033B23-1270-4E9C-92DC-2E167A367C73} =>.Hewlett Packard O42 - Logiciel: HP On Screen Display - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED1BD69A-07E3-418C-91F1-D856582581BF} =>.Hewlett-Packard Company O42 - Logiciel: HP Power Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {E44578C7-4667-4124-8BC2-1161BCA54978} =>.Hewlett-Packard Company O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {285F722C-0E45-47DE-B38E-5B3B10FA4A7C} =>.Hewlett-Packard Company O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {210A03F5-B2ED-4947-B27E-516F50CBB292} =>.Hewlett-Packard Company O42 - Logiciel: HP Setup Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {AE856388-AFAD-4753-81DF-D96B19D0A17C} =>.Hewlett-Packard Company O42 - Logiciel: HP SimplePass 2011 - (.Hewlett-Packard.) [HKLM][64Bits] -- {BCFAA37D-A6DB-43BF-A351-43F183E52D07} =>.Hewlett-Packard O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {C3036565-A89C-41BB-BB5F-95ECE549D7FF} =>.Hewlett-Packard Company O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EE202411-2C26-49E8-9784-1BC1DBF7DE96} =>.Hewlett-Packard Company O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM][64Bits] -- {B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D} =>.Microsoft O42 - Logiciel: hubiC - (.OVH.) [HKLM][64Bits] -- {51fea8cc-5bb6-4312-86f5-1802a10e030d} {3B8C48FB3CF8A2836C1B26DB9ECBC6FA} =>.OVH O42 - Logiciel: hubiC - x64 - (.OVH.) [HKLM][64Bits] -- {CE2A3177-F286-4F6A-9694-DE8EED87D583} =>.OVH O42 - Logiciel: I.R.I.S. OCR - (.HP.) [HKLM][64Bits] -- {CA6BCA2F-EDEB-408F-850B-31404BE16A61} =>.HP O42 - Logiciel: IBP 12.0.2 - (.Axandra GmbH.) [HKLM][64Bits] -- IBP12_is1 O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {4B48E22A-2FB0-4EFA-B99E-954B1E50CD69} =>.Apple Inc. O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} =>.IDT O42 - Logiciel: IE TIF Extractor - (.Pierre TORRIS.) [HKLM][64Bits] -- IE TIF Extractor_is1 =>.Pierre TORRIS O42 - Logiciel: IIS Express Application Compatibility Database for x64 - (...) [HKLM][64Bits] -- {9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (...) [HKLM][64Bits] -- {fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb O42 - Logiciel: IIS Search Engine Optimization Toolkit 1.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BC5929D3-9D88-4B35-8E37-CD1F2849292C} =>.Microsoft Corporation O42 - Logiciel: IIS 8.0 Express - (.Microsoft Corporation.) [HKLM][64Bits] -- {7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7} =>.Microsoft Corporation O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM][64Bits] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation® O42 - Logiciel: Intel(R) Display Audio Driver - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {FBEB98F8-64E4-4FA3-A15E-4A9F42FF962E} =>.Apple Inc. O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} =>.Oracle Corporation O42 - Logiciel: Java 8 Update 66 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418066F0} =>.Oracle Corporation O42 - Logiciel: Java 8 Update 74 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218074F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Java SE Development Kit 8 Update 20 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180200} =>.Oracle Corporation O42 - Logiciel: Java SE Development Kit 8 Update 25 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180250} =>.Oracle Corporation O42 - Logiciel: Jewel Quest Solitaire - (.WildTangent.) [HKLM][64Bits] -- WT087490 =>.WildTangent Inc O42 - Logiciel: Jitsi - (.Jitsi.) [HKLM][64Bits] -- {0674A55E-7D49-4F5A-8E01-7652C94E5F06} =>.Jitsi O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation O42 - Logiciel: KeywordXtreme - (.CevoSoft.) [HKCU][64Bits] -- e41d61f2c67ad00f O42 - Logiciel: Magic Desktop - (.EasyBits Software AS.) [HKLM][64Bits] -- EasyBits Magic Desktop =>.EasyBits Software AS O42 - Logiciel: Mah Jong Medley - (.WildTangent.) [HKLM][64Bits] -- WT087393 =>.WildTangent Inc O42 - Logiciel: MarketLuck - (.PM Technologies.) [HKLM][64Bits] -- MarketLuck =>.PM Technologies O42 - Logiciel: MaxBulk Mailer 8.4.2 - (.Max Programming LLC.) [HKLM][64Bits] -- MaxBulk Mailer_is1 O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation O42 - Logiciel: Metasploit - (.Rapid7.) [HKLM][64Bits] -- Metasploit 4.10.0 =>.Rapid7 O42 - Logiciel: Microsoft Access database engine 2010 (French) - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-00D1-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access database engine 2010 (French) - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-00D1-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM][64Bits] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB} =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2012 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F1949145-EB64-4DE7-9D81-E6D27937146C} =>.Microsoft Corporation O42 - Logiciel: Microsoft Web Deploy 3.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1A81DA24-AF0B-4406-970E-54400D6EC118} =>.Microsoft Corporation O42 - Logiciel: Microsoft Web Platform Installer 5.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4D84C195-86F0-4B34-8FDE-4A17EB41306A} =>.Microsoft Corporation O42 - Logiciel: Microsoft WebMatrix 3 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D093B71B-8575-4656-9CE0-0E6C006F8818} =>.Microsoft Corporation O42 - Logiciel: Microsoft Works 6-9 Converter - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-0137-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Miro - (.Participatory Culture Foundation.) [HKLM][64Bits] -- Miro =>.Participatory Culture Foundation O42 - Logiciel: Mozilla Firefox 44.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mozilla Thunderbird 38.5.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 38.5.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM][64Bits] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation O42 - Logiciel: MySQL Workbench 6.3 CE - (.Oracle Corporation.) [HKLM][64Bits] -- {59958BAC-A61D-4A23-8082-CC2FDF17937F} =>.Oracle Corporation O42 - Logiciel: Mystery P.I. - The London Caper - (.WildTangent.) [HKLM][64Bits] -- WT089460 =>.WildTangent Inc O42 - Logiciel: Namco All-Stars PAC-MAN - (.WildTangent.) [HKLM][64Bits] -- WT089484 =>.WildTangent Inc O42 - Logiciel: Nmap 7.01 - (...) [HKLM][64Bits] -- Nmap O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: Opera Mobile Emulator - (.Opera Software ASA.) [HKLM][64Bits] -- {1826D0CA-F479-4430-9EFE-86E8E783505B}_is1 =>.Opera Software ASA O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated O42 - Logiciel: Penguins! - (.WildTangent.) [HKLM][64Bits] -- WT087394 =>.WildTangent Inc O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] -- {185F9795-9663-4F13-9EF9-307A282ADB5A} =>.Your Company Name O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WT089458 =>.WildTangent Inc O42 - Logiciel: Poedit - (.Vaclav Slavik.) [HKLM][64Bits] -- {68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1 =>.Vaclav Slavik O42 - Logiciel: Pointofix - (.Amerigomedia.) [HKLM][64Bits] -- Pointofix_is1 =>.Amerigomedia O42 - Logiciel: Polar Bowler - (.WildTangent.) [HKLM][64Bits] -- WT087396 =>.WildTangent Inc O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM][64Bits] -- PowerISO =>.Power Software Ltd O42 - Logiciel: PX Profile Update - (.AMD.) [HKLM][64Bits] -- {1C34B2AF-0D61-1784-8BC8-219F969BEFD6} =>.AMD O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>.Apple Inc. O42 - Logiciel: Ralink Motorola BC8 Bluetooth 3.0+HS Adapter - (.Motorola Solutions, Inc..) [HKLM][64Bits] -- 1DF1F719-D43A-46E8-950F-65A8D96C678A.MBT_is1 {1A191B3F645D6A4880FC212BD3E9BEBF} =>.Motorola Solutions, Inc. O42 - Logiciel: Ralink RT5390 802.11b/g/n WiFi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0} =>.Ralink Technology Corporation® O42 - Logiciel: Rapid SEO Tool 1.5 - (.Karlis Blumentals.) [HKLM][64Bits] -- Rapid SEO Tool_is1 =>.Karlis Blumentals O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: Recovery for Works 13.0.21044.2 Demo License - (.Recoveronix.) [HKLM][64Bits] -- {D4C32DF1-5664-4F95-99E0-36C87AF12F49} O42 - Logiciel: Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {DBCD5E64-7379-4648-9444-8A6558DCB614} =>.Hewlett-Packard O42 - Logiciel: RedMon - Redirection Port Monitor - (...) [HKLM][64Bits] -- Redirection Port Monitor O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- {5442DAB8-7177-49E1-8B22-09A049EA5996} =>.Renesas Electronics Corporation O42 - Logiciel: Renesas Electronics USB 3.0 Host Controller Driver - (.Renesas Electronics Corporation.) [HKLM][64Bits] -- InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996} =>.Renesas Electronics Corporation O42 - Logiciel: Samsung Easy Printer Manager - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- Samsung Easy Printer Manager =>.Samsung Electronics CO., LTD.® O42 - Logiciel: Screaming Frog SEO Spider - (.Screaming Frog Ltd.) [HKLM][64Bits] -- Screaming Frog SEO Spider =>.Screaming Frog Ltd O42 - Logiciel: SEO Soft version 3.1.76 - (.Webmaster rank.) [HKLM][64Bits] -- {E4633C11-48E3-40BC-9257-5F9DB7270993}_is1 O42 - Logiciel: SeoDev Synonymizer - (.SeoDevGroup.) [HKLM][64Bits] -- {B08ABBC4-52E5-46B0-A3AA-FBE4EFEF14FC} =>.SeoDevGroup O42 - Logiciel: Skype Click to Call - (.Skype Technologies S.A..) [HKLM][64Bits] -- {B6CF2967-C81E-40C0-9815-C05774FEF120} =>.Skype Technologies S.A. O42 - Logiciel: Slingo Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT087510 =>.WildTangent Inc O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Synaptics TouchPad Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: System Requirements Lab for Intel - (.Husdawg, LLC.) [HKLM][64Bits] -- {C7CA731B-BF9A-46D9-92CF-8A8737AE9240} =>.Husdawg, LLC O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer® O42 - Logiciel: TSR Watermark Image software version 2.4.2.6 - (...) [HKLM][64Bits] -- TSR Watermark Image_is1 O42 - Logiciel: TuneUp Utilities 2014 (fr-FR) - (.TuneUp Software.) [HKLM][64Bits] -- {1A1940AF-774B-450B-864E-1CB2A1BE0951} =>.TuneUp Software O42 - Logiciel: Universal Internet Dialer - (...) [HKLM][64Bits] -- ST5UNST #1 O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc® O42 - Logiciel: Validity WBF DDK - (.Validity Sensors, Inc..) [HKLM][64Bits] -- {79174AF2-6CB1-42F5-981E-66DCA49391D0} =>.Validity Sensors, Inc. O42 - Logiciel: Virtual Villagers - The Secret City - (.WildTangent.) [HKLM][64Bits] -- WT087513 =>.WildTangent Inc O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VTech Download Agent Library - (.VTech.) [HKLM][64Bits] -- {40C4903E-EDFB-4CAE-A611-41FEBA585921} =>.VTech O42 - Logiciel: WampServer 2.5 - (.Hervé Leclerc (HeL).) [HKLM][64Bits] -- WampServer 2_is1 =>.Hervé Leclerc (HeL) O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WT087519 =>.WildTangent Inc O42 - Logiciel: WildTangent Games App pour HP - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp =>.WildTangent Inc® O42 - Logiciel: Windows Password Key Standard - (.PasswordSeeker, Inc..) [HKLM][64Bits] -- Windows Password Key Standard O42 - Logiciel: WinPcap 4.1.3 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies O42 - Logiciel: WinSCP 5.7.6 - (.Martin Prikryl.) [HKLM][64Bits] -- winscp3_is1 =>.Martin Prikryl® O42 - Logiciel: WksBudgetConverter - (...) [HKLM][64Bits] -- WksBudgetConverter O42 - Logiciel: Xenu's Link Sleuth - (.Tilman Hausherr.) [HKLM][64Bits] -- Xenu's Link Sleuth =>.Tilman Hausherr O42 - Logiciel: Zuma Deluxe - (.WildTangent.) [HKLM][64Bits] -- WT089455 =>.WildTangent Inc ---\\ HKCU & HKLM Software Keys (217) - 43s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\aTube Catcher HKLM\SOFTWARE\Wow6432Node\AuthenTec HKLM\SOFTWARE\Wow6432Node\AVAST Software HKLM\SOFTWARE\Wow6432Node\Brackets HKLM\SOFTWARE\Wow6432Node\Brother HKLM\SOFTWARE\Wow6432Node\Canon HKLM\SOFTWARE\Wow6432Node\Canon_Inc_IC HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\Common Desktop Agent HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Data Fellows HKLM\SOFTWARE\Wow6432Node\Diaginstinfo HKLM\SOFTWARE\Wow6432Node\DownloadHelper HKLM\SOFTWARE\Wow6432Node\DRWDemo1 HKLM\SOFTWARE\Wow6432Node\EasyBits HKLM\SOFTWARE\Wow6432Node\EBP HKLM\SOFTWARE\Wow6432Node\Extensis HKLM\SOFTWARE\Wow6432Node\F-Secure HKLM\SOFTWARE\Wow6432Node\FileZilla 3 HKLM\SOFTWARE\Wow6432Node\FileZilla Client HKLM\SOFTWARE\Wow6432Node\FileZilla Server HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Havij HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\HewlettPackard HKLM\SOFTWARE\Wow6432Node\HotspotShield HKLM\SOFTWARE\Wow6432Node\HotspotShield MSI HKLM\SOFTWARE\Wow6432Node\IDT HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield HKLM\SOFTWARE\Wow6432Node\Insyde HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Jacek Kozlowski HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LEGRAND HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision HKLM\SOFTWARE\Wow6432Node\magnet HKLM\SOFTWARE\Wow6432Node\MarcoLavoie HKLM\SOFTWARE\Wow6432Node\Martin Prikryl HKLM\SOFTWARE\Wow6432Node\MAXSOFT-OCRON HKLM\SOFTWARE\Wow6432Node\MimarSinan HKLM\SOFTWARE\Wow6432Node\Minnetonka Audio Software HKLM\SOFTWARE\Wow6432Node\Motorola HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Norton HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\OVH HKLM\SOFTWARE\Wow6432Node\Paessler HKLM\SOFTWARE\Wow6432Node\Participatory Culture Foundation HKLM\SOFTWARE\Wow6432Node\PM Technologies HKLM\SOFTWARE\Wow6432Node\PowerISO HKLM\SOFTWARE\Wow6432Node\Ralink HKLM\SOFTWARE\Wow6432Node\Rapid7 HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Recoveronix HKLM\SOFTWARE\Wow6432Node\Remo Software HKLM\SOFTWARE\Wow6432Node\Sage HKLM\SOFTWARE\Wow6432Node\Samsung HKLM\SOFTWARE\Wow6432Node\Screaming Frog SEO Spider HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Smart Projects HKLM\SOFTWARE\Wow6432Node\SSScan HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\TeamViewer HKLM\SOFTWARE\Wow6432Node\TechSmith HKLM\SOFTWARE\Wow6432Node\TuneUp HKLM\SOFTWARE\Wow6432Node\Validity HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WildTangent HKLM\SOFTWARE\Wow6432Node\Win32 Services HKLM\SOFTWARE\Wow6432Node\Windows HKLM\SOFTWARE\Wow6432Node\WinPcap HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\Yodot Software HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\4kdownload.com HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\Addictive Software HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\Amazon HKCU\SOFTWARE\Amerigomedia HKCU\SOFTWARE\AnalogX HKCU\SOFTWARE\AnchorFree HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\ASProtect HKCU\SOFTWARE\ATI HKCU\SOFTWARE\AuthenTec HKCU\SOFTWARE\Avast Software HKCU\SOFTWARE\Axandra HKCU\SOFTWARE\Bitcoin HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Brackets HKCU\SOFTWARE\Brother HKCU\SOFTWARE\Cain HKCU\SOFTWARE\Canon HKCU\SOFTWARE\Carambis HKCU\SOFTWARE\CDAS2PC2 HKCU\SOFTWARE\CevoSoft HKCU\SOFTWARE\Citrix HKCU\SOFTWARE\Common Desktop Agent HKCU\SOFTWARE\CommView HKCU\SOFTWARE\CuteRank.Net HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Cygwin HKCU\SOFTWARE\Developer Express HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\EaseUS HKCU\SOFTWARE\ej-technologies HKCU\SOFTWARE\Eltima HKCU\SOFTWARE\EpmNewsInfo HKCU\SOFTWARE\Evernote HKCU\SOFTWARE\Extensis HKCU\SOFTWARE\F-Secure Antibot HKCU\SOFTWARE\Facebook HKCU\SOFTWARE\file repair HKCU\SOFTWARE\FileZilla Server HKCU\SOFTWARE\funkitron HKCU\SOFTWARE\GetFLV HKCU\SOFTWARE\Google HKCU\SOFTWARE\Gravity HKCU\SOFTWARE\GS HKCU\SOFTWARE\GSpot Appliance Corp HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\ImTOO HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Jacek Kozlowski HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Karlis Blumentals HKCU\SOFTWARE\KC Softwares HKCU\SOFTWARE\kde.org HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\MarketLuck HKCU\SOFTWARE\Martin Prikryl HKCU\SOFTWARE\Marvell HKCU\SOFTWARE\mediAvatar HKCU\SOFTWARE\Mercury32 HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mirage HKCU\SOFTWARE\Motorola HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MyCompany HKCU\SOFTWARE\MySQL AB HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\Nmap HKCU\SOFTWARE\Objectif 01 HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Oracle HKCU\SOFTWARE\OVH HKCU\SOFTWARE\Participatory Culture Foundation HKCU\SOFTWARE\Photograph HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Pluto HKCU\SOFTWARE\PM Technologies HKCU\SOFTWARE\PowerISO HKCU\SOFTWARE\PromoToMobile HKCU\SOFTWARE\Python HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Recoveronix HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\RICOH HKCU\SOFTWARE\Sage HKCU\SOFTWARE\Samsung HKCU\SOFTWARE\SimonTatham HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SkypeRS HKCU\SOFTWARE\Smart Projects HKCU\SOFTWARE\Software HKCU\SOFTWARE\SSPrint HKCU\SOFTWARE\SSScan HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Sysinternals HKCU\SOFTWARE\System Requirements Lab HKCU\SOFTWARE\TeamViewer HKCU\SOFTWARE\TechSmith HKCU\SOFTWARE\The Silicon Realms Toolworks HKCU\SOFTWARE\Tracker Software HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\TshwaneDJe HKCU\SOFTWARE\TSR Software HKCU\SOFTWARE\TuneUp HKCU\SOFTWARE\Vaclav Slavik HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\Viber HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wireshark HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Canon HKCU\SOFTWARE\AppDataLow\Software\JavaSoft ---\\ Contenu des dossiers Programmes (596) - 216s O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\7-Zip O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 08/08/2013 - [] D -- C:\Program Files (x86)\AnalogX =>.AnalogX, LLC® O43 - CFD: 04/04/2015 - [] D -- C:\Program Files (x86)\Anuman Interactive O43 - CFD: 21/10/2015 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.® O43 - CFD: 19/08/2013 - [] D -- C:\Program Files (x86)\Ashampoo O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 21/10/2015 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 05/12/2015 - [] D -- C:\Program Files (x86)\Brackets =>.Adobe Systems Incorporated® O43 - CFD: 15/05/2014 - [] D -- C:\Program Files (x86)\Cain O43 - CFD: 26/05/2015 - [] D -- C:\Program Files (x86)\Canon {7BB216C2F39C63D41FBC0A67FB20DAA8} O43 - CFD: 26/12/2013 - [] D -- C:\Program Files (x86)\Caphyon {5AB535B2749E242E6D6BCDE3142D2831} O43 - CFD: 16/05/2014 - [] D -- C:\Program Files (x86)\ClicRDV O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 01/08/2014 - [] D -- C:\Program Files (x86)\CommView =>.TamoSoft Ltd® O43 - CFD: 05/03/2014 - [] D -- C:\Program Files (x86)\ConvertHelper O43 - CFD: 22/01/2016 - [] D -- C:\Program Files (x86)\CuteRank O43 - CFD: 30/05/2014 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink® O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\DsNET Corp O43 - CFD: 15/03/2014 - [] D -- C:\Program Files (x86)\EaseUS O43 - CFD: 21/06/2011 - [] D -- C:\Program Files (x86)\EasyBits For Kids O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\EasyPHP-Devserver-15.10-alpha2 O43 - CFD: 13/07/2013 - [] D -- C:\Program Files (x86)\effi10 O43 - CFD: 04/02/2015 - [] D -- C:\Program Files (x86)\Eltima Software O43 - CFD: 16/09/2013 - [] D -- C:\Program Files (x86)\Extensis O43 - CFD: 16/04/2015 - [] D -- C:\Program Files (x86)\FaxManager O43 - CFD: 26/11/2015 - [] D -- C:\Program Files (x86)\FileZilla FTP Client =>.Open Source Developer, Tim Kosse® O43 - CFD: 02/03/2013 - [] D -- C:\Program Files (x86)\FileZilla Server O43 - CFD: 19/08/2013 - [] D -- C:\Program Files (x86)\Fritivi O43 - CFD: 10/08/2013 - [] D -- C:\Program Files (x86)\GetFLV O43 - CFD: 22/02/2015 - [] D -- C:\Program Files (x86)\GladiaSoft =>.Microsoft Corporation® O43 - CFD: 17/02/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 27/12/2013 - [] D -- C:\Program Files (x86)\Havij O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company® O43 - CFD: 20/02/2016 - [] D -- C:\Program Files (x86)\Hotspot Shield =>.AnchorFree Inc® O43 - CFD: 31/01/2015 - [] D -- C:\Program Files (x86)\HP =>.IMAGE RECOGNITION INTEGRATED SYSTEMS SA® O43 - CFD: 21/06/2011 - [] D -- C:\Program Files (x86)\HP Games O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\HP SimplePass 2011 =>.AuthenTec, Inc.® O43 - CFD: 20/05/2013 - [] D -- C:\Program Files (x86)\IBP 12 O43 - CFD: 10/08/2013 - [] D -- C:\Program Files (x86)\IE TIF Extractor O43 - CFD: 22/05/2014 - [] D -- C:\Program Files (x86)\iExplorer O43 - CFD: 24/01/2015 - [] D -- C:\Program Files (x86)\IIS =>.Microsoft Corporation® O43 - CFD: 24/01/2015 - [] D -- C:\Program Files (x86)\IIS Express =>.Microsoft Corporation® O43 - CFD: 27/04/2014 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 02/06/2013 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation® O43 - CFD: 17/03/2013 - [] D -- C:\Program Files (x86)\IntelliTamper O43 - CFD: 21/12/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 06/11/2015 - [] D -- C:\Program Files (x86)\iS3 {083B5283A9B6FE6464743383083AB153} O43 - CFD: 24/12/2015 - [] D -- C:\Program Files (x86)\iTunes O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.® O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\Jitsi {2B8F26C76CD24D} O43 - CFD: 10/06/2014 - [] D -- C:\Program Files (x86)\Legrand O43 - CFD: 11/12/2015 - [] D -- C:\Program Files (x86)\MarketLuck =>.PM TECHNOLOGIES® O43 - CFD: 24/03/2013 - [] D -- C:\Program Files (x86)\MaxBulk Mailer {00FAFEFEA51201FA249373E0FA2EAED4C9} O43 - CFD: 26/04/2014 - [] D -- C:\Program Files (x86)\mediAvatar O43 - CFD: 29/03/2014 - [0] D -- C:\Program Files (x86)\Microsoft O43 - CFD: 06/12/2011 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services O43 - CFD: 04/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 24/01/2015 - [] D -- C:\Program Files (x86)\Microsoft SDKs O43 - CFD: 11/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 24/01/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation® O43 - CFD: 21/06/2011 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 18/12/2015 - [] D -- C:\Program Files (x86)\Microsoft VS Code =>.Microsoft Corporation® O43 - CFD: 24/01/2015 - [] D -- C:\Program Files (x86)\Microsoft WebMatrix =>.Microsoft Corporation® O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 17/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 24/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla Corporation® O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 04/01/2016 - [] D -- C:\Program Files (x86)\MSECache O43 - CFD: 29/03/2014 - [0] D -- C:\Program Files (x86)\MSXML 4.0 O43 - CFD: 17/03/2013 - [] D -- C:\Program Files (x86)\My Company Name O43 - CFD: 20/01/2016 - [] D -- C:\Program Files (x86)\Nmap O43 - CFD: 14/11/2013 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 06/12/2011 - [] RD -- C:\Program Files (x86)\Online Services =>.Skype Technologies SA® O43 - CFD: 15/06/2013 - [] D -- C:\Program Files (x86)\Opera Mobile Emulator O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\OVH O43 - CFD: 16/03/2014 - [] D -- C:\Program Files (x86)\Participatory Culture Foundation O43 - CFD: 21/07/2013 - [] D -- C:\Program Files (x86)\Poedit O43 - CFD: 14/11/2013 - [] D -- C:\Program Files (x86)\Pointofix O43 - CFD: 02/03/2014 - [] D -- C:\Program Files (x86)\PowerISO =>.Power Software Ltd® O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\PRTG Network Monitor O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\QuickTime =>.Apple Inc.® O43 - CFD: 18/10/2015 - [] D -- C:\Program Files (x86)\Rapid SEO Tool {11210DFE920F3763B774D7BA7A6B587930C8} O43 - CFD: 02/06/2013 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\Renesas Electronics =>.Renesas Electronics Corporation® O43 - CFD: 16/03/2014 - [] D -- C:\Program Files (x86)\RescuePRO Deluxe O43 - CFD: 04/01/2016 - [] D -- C:\Program Files (x86)\RL-Software O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics CO., LTD.® O43 - CFD: 30/06/2013 - [] D -- C:\Program Files (x86)\Screaming Frog SEO Spider O43 - CFD: 02/06/2014 - [] D -- C:\Program Files (x86)\SEO Soft O43 - CFD: 24/10/2014 - [] D -- C:\Program Files (x86)\SeoDev Synonymizer O43 - CFD: 22/06/2015 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 01/04/2013 - [] D -- C:\Program Files (x86)\SystemRequirementsLab =>.Husdawg, LLC® O43 - CFD: 11/01/2016 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer® O43 - CFD: 14/10/2013 - [] D -- C:\Program Files (x86)\TLexSuite O43 - CFD: 16/09/2013 - [] D -- C:\Program Files (x86)\TSR Soft O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 11/11/2013 - [] D -- C:\Program Files (x86)\Universal Internet Dialer O43 - CFD: 05/04/2015 - [] D -- C:\Program Files (x86)\uTorrent =>.BitTorrent Inc® O43 - CFD: 18/08/2013 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Inc® O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 21/06/2011 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation® O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Windows Password Key Standard O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 31/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 03/02/2015 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\WinSCP =>.Martin Prikryl® O43 - CFD: 08/08/2013 - [] D -- C:\Program Files (x86)\Xenu O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 07/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe LiveCycle ES2 O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6 O43 - CFD: 28/06/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced IP Address Calculator O43 - CFD: 28/06/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced LAN Scanner O43 - CFD: 28/06/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Port Scanner O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Web Ranking O43 - CFD: 18/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aptana O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth O43 - CFD: 15/05/2014 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cain O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG3500 series Manual O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CommView O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cygwin O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyPHP Devserver 15.10 alpha 2 O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Energy Star O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MG3500 series O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extensis O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fritivi O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GladiaSoft O43 - CFD: 01/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IE TIF Extractor O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iExplorer O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS 7.0 Extensions O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IntelliTamper O43 - CFD: 24/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 01/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Management-Ware O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MarketLuck O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MaxBulk Mailer O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metasploit O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office O43 - CFD: 09/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft WebMatrix O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Miro O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music and Media O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Online Services O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera Mobile Emulator O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pointofix O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 18/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rapid SEO Tool O43 - CFD: 05/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Frog SEO Spider O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEO Soft O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SeoDev Synonymizer O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Theft Protection O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSR Soft O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 18/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Code O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer O43 - CFD: 31/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xenu's Link Sleuth O43 - CFD: 27/10/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 17/03/2013 - [0] D -- C:\ProgramData\ALM O43 - CFD: 28/01/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 19/07/2013 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Applications O43 - CFD: 19/08/2013 - [] D -- C:\ProgramData\Ashampoo O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\ATI O43 - CFD: 05/12/2013 - [] D -- C:\ProgramData\AVAST Software O43 - CFD: 18/04/2014 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 18/10/2015 - [] D -- C:\ProgramData\Blumentals O43 - CFD: 11/12/2011 - [] D -- C:\ProgramData\Brother O43 - CFD: 06/12/2011 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 03/12/2014 - [0] D -- C:\ProgramData\Canon IJ Network Tool O43 - CFD: 16/11/2014 - [] HD -- C:\ProgramData\CanonBJ O43 - CFD: 26/05/2015 - [] HD -- C:\ProgramData\CanonIJEGV O43 - CFD: 02/12/2014 - [] HD -- C:\ProgramData\CanonIJETV O43 - CFD: 04/12/2014 - [] HD -- C:\ProgramData\CanonIJMIG O43 - CFD: 26/05/2015 - [] HD -- C:\ProgramData\CanonIJMyPrinter O43 - CFD: 03/03/2016 - [0] D -- C:\ProgramData\CanonIJPLM O43 - CFD: 04/12/2014 - [] HD -- C:\ProgramData\CanonIJQuickMenu O43 - CFD: 03/12/2014 - [] HD -- C:\ProgramData\CanonIJScan O43 - CFD: 02/12/2014 - [] D -- C:\ProgramData\CanonIJWSpt O43 - CFD: 27/10/2013 - [] D -- C:\ProgramData\Canon_Inc_IC O43 - CFD: 23/03/2014 - [] D -- C:\ProgramData\Ciel O43 - CFD: 13/04/2013 - [] D -- C:\ProgramData\Coccimail O43 - CFD: 27/07/2014 - [] D -- C:\ProgramData\Common Diagnostics O43 - CFD: 15/03/2014 - [] HD -- C:\ProgramData\Common Files O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 30/05/2014 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 27/07/2014 - [] D -- C:\ProgramData\Delphi O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 11/09/2011 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 O43 - CFD: 20/12/2014 - [] D -- C:\ProgramData\EBP O43 - CFD: 10/03/2014 - [] D -- C:\ProgramData\ECSoftware O43 - CFD: 16/09/2013 - [] D -- C:\ProgramData\Extensis O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\F-Secure O43 - CFD: 06/12/2011 - [0] SHD -- C:\ProgramData\Favoris O43 - CFD: 25/11/2014 - [] D -- C:\ProgramData\FLEXnet O43 - CFD: 18/01/2014 - [] D -- C:\ProgramData\Google O43 - CFD: 07/08/2013 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\Hotspot Shield O43 - CFD: 31/01/2015 - [] D -- C:\ProgramData\HP O43 - CFD: 02/06/2013 - [] D -- C:\ProgramData\Intel O43 - CFD: 05/08/2015 - [] D -- C:\ProgramData\Licenses O43 - CFD: 23/03/2014 - [] D -- C:\ProgramData\Logs O43 - CFD: 06/12/2011 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 31/07/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 03/03/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 31/07/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 06/12/2011 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 29/06/2012 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 21/02/2014 - [] D -- C:\ProgramData\Norton O43 - CFD: 11/09/2011 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\OfficeRecovery.d7cc0641 O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Oracle O43 - CFD: 17/03/2013 - [] D -- C:\ProgramData\PACE Anti-Piracy O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 05/08/2015 - [] D -- C:\ProgramData\Paessler O43 - CFD: 11/09/2011 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 17/03/2013 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 31/01/2012 - [] D -- C:\ProgramData\RICOH O43 - CFD: 25/03/2015 - [] D -- C:\ProgramData\Samsung O43 - CFD: 22/06/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\STOPzilla! O43 - CFD: 21/06/2011 - [] D -- C:\ProgramData\Sun O43 - CFD: 21/02/2014 - [0] D -- C:\ProgramData\Symantec O43 - CFD: 17/10/2012 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 01/08/2014 - [] D -- C:\ProgramData\TamoSoft O43 - CFD: 23/03/2014 - [] AD -- C:\ProgramData\Temp O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 15/03/2014 - [] D -- C:\ProgramData\TuneUp Software O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 15/03/2014 - [] D -- C:\ProgramData\VS Revo Group O43 - CFD: 10/05/2013 - [] D -- C:\ProgramData\VTech O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\WildTangent O43 - CFD: 17/03/2013 - [] D -- C:\ProgramData\{9BF4D58B-C6D6-467B-BC5A-FD0C1278F4AF} O43 - CFD: 15/03/2014 - [] SHD -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} O43 - CFD: 03/06/2015 - [] HDC -- C:\ProgramData\~0 O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 04/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 13/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\Common Files\AuthenTec O43 - CFD: 27/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Canon O43 - CFD: 27/10/2013 - [] D -- C:\Program Files (x86)\Common Files\Canon_Inc_IC O43 - CFD: 15/05/2014 - [] D -- C:\Program Files (x86)\Common Files\Ciel O43 - CFD: 25/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Common Desktop Agent O43 - CFD: 22/05/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 27/10/2013 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 02/06/2013 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Common Files\Java O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared O43 - CFD: 04/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\Common Files\postureAgent O43 - CFD: 17/03/2013 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 17/03/2013 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 09/02/2014 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 31/07/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 11/09/2011 - [] D -- C:\Program Files (x86)\Common Files\Telespree O43 - CFD: 21/06/2011 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 20/05/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\.kde O43 - CFD: 20/05/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\.marble O43 - CFD: 11/12/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\.Temp_Updater_Directory O43 - CFD: 15/06/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Acrylic Wi-Fi Professional O43 - CFD: 14/12/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Adobe O43 - CFD: 03/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\AMD O43 - CFD: 04/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Apple Computer O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\ATI O43 - CFD: 05/12/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\AVAST Software O43 - CFD: 12/04/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Bitcoin O43 - CFD: 03/04/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\BlueLabsSoftware O43 - CFD: 05/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Brackets O43 - CFD: 03/12/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\canon O43 - CFD: 15/11/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\chc O43 - CFD: 15/11/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 O43 - CFD: 18/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Code O43 - CFD: 10/06/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\com.legrand.ecatalogue O43 - CFD: 10/06/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\com.legrand.ecatalogue.6EF9A8E7FC4BFCD9279AEDA3D9E50A4FA03EC022.1 O43 - CFD: 22/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\CuteRank O43 - CFD: 22/03/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Cyberduck O43 - CFD: 10/08/2012 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\CyberLink O43 - CFD: 27/07/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Delphi O43 - CFD: 30/11/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Dropbox O43 - CFD: 02/03/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\FileZilla O43 - CFD: 28/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\funkitron O43 - CFD: 05/04/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Google O43 - CFD: 28/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Hewlett-Packard O43 - CFD: 20/02/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Hotspot Shield O43 - CFD: 17/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\hpqlog O43 - CFD: 30/12/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\HpUpdate O43 - CFD: 20/01/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\HTML Executable O43 - CFD: 13/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\hubiC O43 - CFD: 19/01/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\IBP O43 - CFD: 27/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Identities O43 - CFD: 04/05/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\IDT O43 - CFD: 07/11/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\ImTOO O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Intel Corporation O43 - CFD: 19/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\java O43 - CFD: 11/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Jitsi O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Macromedia O43 - CFD: 14/10/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\main O43 - CFD: 25/01/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Management-Ware Solutions Inc O43 - CFD: 29/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Maxprog O43 - CFD: 11/09/2011 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Media Center Programs O43 - CFD: 26/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\mediAvatar O43 - CFD: 16/10/2015 - [] SD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft O43 - CFD: 24/01/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft Corporation O43 - CFD: 16/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Mozilla O43 - CFD: 27/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\MySQL O43 - CFD: 28/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Namco O43 - CFD: 10/01/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Notepad++ O43 - CFD: 04/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\OfficeRecovery O43 - CFD: 17/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\PACE Anti-Piracy O43 - CFD: 16/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Participatory Culture Foundation O43 - CFD: 02/01/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Poedit O43 - CFD: 02/01/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\redsn0w O43 - CFD: 25/03/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Samsung O43 - CFD: 26/04/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\SanDisk SecureAccess O43 - CFD: 31/05/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Skype O43 - CFD: 23/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 O43 - CFD: 23/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Sun O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Synaptics O43 - CFD: 08/02/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\TeamViewer O43 - CFD: 14/11/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\TechSmith O43 - CFD: 16/09/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Thinstall O43 - CFD: 30/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Thunderbird O43 - CFD: 15/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\TuneUp Software O43 - CFD: 27/02/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\uTorrent O43 - CFD: 14/02/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\vlc O43 - CFD: 22/02/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\WildTangent O43 - CFD: 02/03/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\WinRAR O43 - CFD: 15/06/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Wireshark O43 - CFD: 27/08/2014 - [] SHD -- C:\Users\JPN_Consulting_3\AppData\Roaming\wyUpdate AU O43 - CFD: 04/03/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\ZHP O43 - CFD: 03/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Adobe O43 - CFD: 26/10/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\AMD O43 - CFD: 19/07/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Apple O43 - CFD: 02/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Apple Computer O43 - CFD: 03/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Apple Inc O43 - CFD: 31/07/2015 - [0] SHD -- C:\Users\JPN_Consulting_3\AppData\Local\Application Data O43 - CFD: 04/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Apps O43 - CFD: 19/08/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Ashampoo Movie Studio O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\ATI O43 - CFD: 26/05/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\AuthenTec O43 - CFD: 04/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\AVAST Software O43 - CFD: 15/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Avg2014 O43 - CFD: 02/08/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Bing Ads Intelligence O43 - CFD: 18/10/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Blumentals O43 - CFD: 10/05/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\cache O43 - CFD: 17/11/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Canal.MyCanal O43 - CFD: 25/02/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\CANON_INC O43 - CFD: 26/12/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Caphyon O43 - CFD: 03/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\CEF O43 - CFD: 26/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Citrix O43 - CFD: 05/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Comms O43 - CFD: 03/03/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\CrashDumps O43 - CFD: 04/03/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 10/08/2012 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\CyberLink O43 - CFD: 07/02/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Diagnostics O43 - CFD: 05/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Downloaded Installations O43 - CFD: 20/12/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\EBP O43 - CFD: 13/06/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\EDM Freeware Data O43 - CFD: 13/07/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\EffiSpin O43 - CFD: 15/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\ElevatedDiagnostics O43 - CFD: 16/11/2014 - [] SHD -- C:\Users\JPN_Consulting_3\AppData\Local\EmieBrowserModeList O43 - CFD: 28/09/2015 - [0] SHD -- C:\Users\JPN_Consulting_3\AppData\Local\EmieSiteList O43 - CFD: 28/09/2015 - [0] SHD -- C:\Users\JPN_Consulting_3\AppData\Local\EmieUserList O43 - CFD: 21/10/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Evernote O43 - CFD: 16/04/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Extensis O43 - CFD: 03/02/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Facebook O43 - CFD: 25/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\FSDART O43 - CFD: 22/02/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\GladiaSoft O43 - CFD: 17/09/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Google O43 - CFD: 20/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\gtk-2.0 O43 - CFD: 03/06/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\GWX O43 - CFD: 15/04/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Hewlett-Packard O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Hewlett-Packard_Company O43 - CFD: 29/06/2012 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Hewlett-Packard_Developme O43 - CFD: 31/07/2015 - [0] SHD -- C:\Users\JPN_Consulting_3\AppData\Local\Historique O43 - CFD: 08/06/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\HP O43 - CFD: 10/08/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\IE TIF Extractor O43 - CFD: 11/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Jitsi O43 - CFD: 29/06/2012 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Macromedia O43 - CFD: 11/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\MarketLuck O43 - CFD: 26/04/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\mediAvatar O43 - CFD: 12/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft O43 - CFD: 27/07/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft Games O43 - CFD: 26/05/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft Help O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\MicrosoftEdge O43 - CFD: 05/10/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Mozilla O43 - CFD: 31/07/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\NetworkTiles O43 - CFD: 15/06/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Opera O43 - CFD: 17/03/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\PACE Anti-Piracy O43 - CFD: 20/12/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\PackageAware =>PUP.Optional.BearShare O43 - CFD: 20/02/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Packages O43 - CFD: 11/04/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\pangu O43 - CFD: 26/06/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Programs O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Publishers O43 - CFD: 06/12/2011 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\RemEngine O43 - CFD: 21/04/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Skymonk2 O43 - CFD: 27/04/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Skype O43 - CFD: 24/10/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Synonymizer O43 - CFD: 14/11/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\TechSmith O43 - CFD: 04/03/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Temp O43 - CFD: 31/07/2015 - [0] SHD -- C:\Users\JPN_Consulting_3\AppData\Local\Temporary Internet Files O43 - CFD: 16/09/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Thinstall O43 - CFD: 16/12/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Thunderbird O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\TileDataLayer O43 - CFD: 14/10/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\TLex O43 - CFD: 14/10/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\TshwaneDJe O43 - CFD: 16/09/2013 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\TSR_Software O43 - CFD: 23/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\VirtualStore O43 - CFD: 15/03/2014 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\VS Revo Group O43 - CFD: 16/05/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Local\Windows Live O43 - CFD: 03/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{03928AB9-A878-4B66-A2F0-5C0DBF60BBBE} =>.Empty O43 - CFD: 23/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{0596A713-1295-41BD-8421-DAD7EB972608} =>.Empty O43 - CFD: 08/11/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{061916FC-A61B-4E65-BB2F-AA71D59BEEC0} =>.Empty O43 - CFD: 01/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{07011A79-BE26-4E02-9673-5184445381CA} =>.Empty O43 - CFD: 17/01/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{0941D8E4-C2B0-46B4-8002-3FF1EF2E6EC4} =>.Empty O43 - CFD: 27/05/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{0B96C908-FF15-4C45-8928-4C9AAAA80D18} =>.Empty O43 - CFD: 01/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{0D6BDC20-484E-4E30-865B-BB8BBFC60D03} =>.Empty O43 - CFD: 15/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{10F27652-2D0C-49ED-AD2C-DEAD579CA1F5} =>.Empty O43 - CFD: 06/10/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{12F37073-6B97-4E60-B631-F6293D985CF9} =>.Empty O43 - CFD: 05/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{140C5224-009F-48AB-AD85-144A835D1021} =>.Empty O43 - CFD: 18/12/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{155F5220-C748-4B49-8ABB-F4EA3D9EC09D} =>.Empty O43 - CFD: 10/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{168C28E2-99FB-4CC6-9BC6-118A5E06579F} =>.Empty O43 - CFD: 09/02/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{19A89CA7-DEDB-4D1E-8251-6D2D688C22D7} =>.Empty O43 - CFD: 19/05/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{19FDF94E-5831-4259-93AA-85DAFAFA197D} =>.Empty O43 - CFD: 26/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{1D974B88-8A05-4AFF-8D3D-3A73CF34A642} =>.Empty O43 - CFD: 03/01/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{1F4F18E3-CCEE-4CF0-AD04-810683FBC377} =>.Empty O43 - CFD: 03/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{234ECDFA-625F-47F6-9B11-B7FE52D64BB8} =>.Empty O43 - CFD: 16/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{258629BE-10BE-4597-AA47-07915D4B3D30} =>.Empty O43 - CFD: 01/11/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{270E514D-1AA7-4F56-8719-B4EED7D062D2} =>.Empty O43 - CFD: 11/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{2B29B552-B609-4398-A963-9D048BE8B301} =>.Empty O43 - CFD: 09/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{2C1249A2-9EC2-46A1-BA91-A108182227FC} =>.Empty O43 - CFD: 02/06/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{2FD87320-A22E-4E9C-8161-9AA537AF3D3A} =>.Empty O43 - CFD: 26/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{3121BB34-0D5E-4890-9A2F-3CFE670BACD5} =>.Empty O43 - CFD: 09/06/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{31A3E027-4EE5-48E0-9442-6D1F2E07CE60} =>.Empty O43 - CFD: 08/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{31F27FA8-EA39-4B1C-83CB-7A276137132B} =>.Empty O43 - CFD: 08/12/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{36F6D62E-F4BB-4FD3-AB77-9E7DED80EFF3} =>.Empty O43 - CFD: 02/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{392E6020-786F-4115-A994-DF850394E885} =>.Empty O43 - CFD: 04/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{3AD37F88-1BD1-47CA-9C45-32A46F61CDD4} =>.Empty O43 - CFD: 02/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{4E2E1740-6CCC-4B57-B138-3A4A3EC60D9D} =>.Empty O43 - CFD: 22/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{4F2A7E4C-8B66-4BFC-9539-BF2B2209822B} =>.Empty O43 - CFD: 09/02/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{574BE22E-5A20-4FAA-98E4-8FA1C376FA96} =>.Empty O43 - CFD: 05/07/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{58E4A857-9E33-44BE-9C9E-9DEBF614419A} =>.Empty O43 - CFD: 09/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{59E0C6EF-177C-4280-8A56-498D83A2BF40} =>.Empty O43 - CFD: 08/11/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{6249D031-B619-4626-BA65-7C8A259022F8} =>.Empty O43 - CFD: 20/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{6444FD30-75A4-4BDA-89C8-68C6C1DD45F0} =>.Empty O43 - CFD: 09/12/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{659844BF-DDDA-48CB-AB0E-D087806969AC} =>.Empty O43 - CFD: 02/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{66A593FF-ABF2-45EB-A5A8-539B433EDCAF} =>.Empty O43 - CFD: 21/05/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{66D85F83-79CF-42B1-ABFA-5813E5166D94} =>.Empty O43 - CFD: 01/12/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{6A1E0EE0-A184-4FD9-9B1C-331A5C067359} =>.Empty O43 - CFD: 13/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{6D114D40-D501-4053-BA4B-F9E9CBDB0D25} =>.Empty O43 - CFD: 16/09/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{7009F361-768A-4286-92C7-FDE281DEBE75} =>.Empty O43 - CFD: 31/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{71CFD925-DF38-4836-8EA0-8314F1EECB99} =>.Empty O43 - CFD: 28/12/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{76284D73-6E16-46AD-A0FC-73376CBC6B85} =>.Empty O43 - CFD: 21/07/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{764B5D50-6E45-4191-A730-D725ADFF8D36} =>.Empty O43 - CFD: 27/05/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{76ED08A3-01C9-43A4-8B3A-CDDD17CF0126} =>.Empty O43 - CFD: 20/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{770CE3FF-465B-423A-A78D-D89C20A54101} =>.Empty O43 - CFD: 08/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{79136A17-650B-445B-AE49-B80BF7B4B861} =>.Empty O43 - CFD: 18/01/2016 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{7AFC1369-B37F-4DCD-8288-E387AE87F98E} =>.Empty O43 - CFD: 16/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{7B8EFA96-08B7-451E-872D-4FF952E84A11} =>.Empty O43 - CFD: 27/01/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{7CACD82A-09DA-41E6-8E8B-FC545E81D52B} =>.Empty O43 - CFD: 26/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{7EB1038A-69BB-4640-A997-7F9C205BB907} =>.Empty O43 - CFD: 08/12/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{7FC14F59-7E29-4C7F-9F0D-FFC8A256BAB8} =>.Empty O43 - CFD: 25/06/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{8120CB99-2219-4E14-BAD8-56F29DD2B1DA} =>.Empty O43 - CFD: 07/02/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{8418663D-63A7-41A4-A09A-56739BF1C754} =>.Empty O43 - CFD: 10/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{8840365C-4290-44F9-8AC4-39BB8A9AD6DD} =>.Empty O43 - CFD: 15/11/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{8967C7E8-D17E-4A7F-93BC-F842FEF6FF81} =>.Empty O43 - CFD: 21/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{89D1875F-03A6-4903-A566-1AB8181AA85B} =>.Empty O43 - CFD: 16/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{8B2C6976-D9A8-4533-BB40-11BC16FFB76B} =>.Empty O43 - CFD: 09/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{8D6A8EB7-1206-4812-9353-82A3484CE84E} =>.Empty O43 - CFD: 17/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{956106E9-1C1E-41F3-8140-A2309169F6B9} =>.Empty O43 - CFD: 07/10/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{970B94B4-25F7-4E6D-9BCF-9E9D98AA3682} =>.Empty O43 - CFD: 22/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{9B35130E-38BC-480D-959D-921EE0FF50E0} =>.Empty O43 - CFD: 18/11/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{9E44FD28-437B-4A01-9D12-CDFBB45BE332} =>.Empty O43 - CFD: 24/12/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{A147B983-38EC-4030-A934-7B2AD8FA1A13} =>.Empty O43 - CFD: 21/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{A349D661-331F-4DB3-ACE4-77773D41CAC3} =>.Empty O43 - CFD: 27/10/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{A3B8AFF4-1C20-4C0B-A86F-116F6AD5001B} =>.Empty O43 - CFD: 17/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{A48D675C-A3CF-44E2-8AFB-8093D3F5F227} =>.Empty O43 - CFD: 12/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{AAF11BFF-C350-4A72-8F61-AFAA05940A79} =>.Empty O43 - CFD: 23/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{AC35BB29-FDF6-43F2-BEAA-798BF1E733ED} =>.Empty O43 - CFD: 30/05/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{AC431A09-EF40-4769-B566-761D6B0C20E6} =>.Empty O43 - CFD: 26/06/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{AD912125-708C-4CDB-BAF0-AA394ABA2E14} =>.Empty O43 - CFD: 25/06/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{AE707D0C-C811-481F-9AB8-E15ADF4FDBF4} =>.Empty O43 - CFD: 09/11/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{AFAC0E8B-A402-45FC-85D7-080564B97314} =>.Empty O43 - CFD: 09/10/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B024C260-C573-4540-BC9E-22F6F90C8115} =>.Empty O43 - CFD: 15/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B23FFCAC-E686-445F-9872-4F2E28AEDA56} =>.Empty O43 - CFD: 03/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B4C688FF-5E1F-4E7B-A0D8-85ED418F0856} =>.Empty O43 - CFD: 31/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B787F83E-3166-4D4B-AE4F-99705EB16A7B} =>.Empty O43 - CFD: 24/06/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B7BAA25C-0A5F-4014-9822-5159F069825A} =>.Empty O43 - CFD: 04/06/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B8679276-1C5A-47A0-AAD1-9991DAAA63EF} =>.Empty O43 - CFD: 10/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B8B12F9A-B211-4870-8EFE-D001B4646EAC} =>.Empty O43 - CFD: 30/11/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{B997B977-00FC-4DB7-B215-576BB1902448} =>.Empty O43 - CFD: 11/10/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{BACF9F57-8BE0-4BEA-A13E-49CCEACFA9BB} =>.Empty O43 - CFD: 23/12/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{BC0FF762-1CDD-4133-BA85-2B81CC1B0D0D} =>.Empty O43 - CFD: 28/09/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{BF7E5A53-7C42-4A4E-BC8A-B96D6E7F68C5} =>.Empty O43 - CFD: 26/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{C521AF3B-6857-4658-8A9C-2A445CFFF583} =>.Empty O43 - CFD: 11/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{C770AD48-4490-4A86-99DD-8F258C79B3D6} =>.Empty O43 - CFD: 12/05/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{C7D9B1EA-EEEF-4A70-A983-328DADF5568C} =>.Empty O43 - CFD: 25/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{CBCE3D0F-476A-4EE7-932F-812667F8A9AA} =>.Empty O43 - CFD: 24/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{CF0C5647-0135-4E76-9AB8-BA87487E2DE5} =>.Empty O43 - CFD: 06/10/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{CFC671C7-920A-41E7-A946-515C312EC7D1} =>.Empty O43 - CFD: 15/11/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{D23B400A-DACD-41F1-9C11-1810263441F0} =>.Empty O43 - CFD: 09/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{D278C6BC-CB0F-4449-93FC-C7A4927CFBD9} =>.Empty O43 - CFD: 28/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{D545390B-CC5F-4308-8C8E-B2A9D3B756E7} =>.Empty O43 - CFD: 24/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{D8A97759-1FDE-47B9-ABEF-1AC3FC8B8EE5} =>.Empty O43 - CFD: 08/02/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{D8D33594-5319-4E50-8504-79407520AFD2} =>.Empty O43 - CFD: 06/08/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{DD03CB21-BD26-46F4-89A5-ACAB06B5E13D} =>.Empty O43 - CFD: 21/06/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{E1B874A8-87EF-4B99-8575-02C2AEEFE7C1} =>.Empty O43 - CFD: 17/01/2016 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{E4D93462-3EC0-4D3D-A7D8-87FE8B14F712} =>.Empty O43 - CFD: 27/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{E5637F0E-F90B-460F-922C-3F37C19B81F5} =>.Empty O43 - CFD: 16/07/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{E5D184E4-0948-4B63-BC7E-BF2ECFA5A248} =>.Empty O43 - CFD: 18/03/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{EA713728-2127-41E0-95D7-7FC36DE53205} =>.Empty O43 - CFD: 14/05/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{EE47DA1D-64F1-4F71-A335-A51D1BD88058} =>.Empty O43 - CFD: 31/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{F01BF83F-5A37-4482-8A56-19DB2022D8D5} =>.Empty O43 - CFD: 14/07/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{F11ABA53-42FC-4E9E-B593-4474D64112D3} =>.Empty O43 - CFD: 09/01/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{F2700985-00A6-444E-A92A-11A6AC99967B} =>.Empty O43 - CFD: 05/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{F3545038-BE66-4801-B4CB-18AC8099D36E} =>.Empty O43 - CFD: 23/06/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{F6641257-6E14-42C7-88B1-D8ECA00D2F15} =>.Empty O43 - CFD: 24/09/2015 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{F78F0F1C-B976-4C2B-A64B-7BEAF505A1D4} =>.Empty O43 - CFD: 04/04/2014 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Local\{FBD6BD10-D7E3-4E7A-8D2E-1713EAA6C412} =>.Empty O43 - CFD: 10/07/2015 - [] RD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 31/07/2015 - [] RD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Acrylic Wi-Fi Professional O43 - CFD: 16/10/2015 - [] RD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AdWords Editor O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnalogX O43 - CFD: 28/09/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome O43 - CFD: 17/08/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome Canary O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CevoSoft O43 - CFD: 30/09/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromecast O43 - CFD: 22/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CuteRank O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\effiSpin O43 - CFD: 18/08/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fritivi O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iBusinessPromoter 12 O43 - CFD: 03/11/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud O43 - CFD: 17/03/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IntelliTamper O43 - CFD: 10/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 20/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nmap O43 - CFD: 14/11/2013 - [0] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 04/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recovery for Works O43 - CFD: 15/09/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Screaming Frog SEO Spider O43 - CFD: 16/10/2015 - [] RD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 10/07/2015 - [] RD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Universal Internet Dialer O43 - CFD: 31/07/2015 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Password Key Standard O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 04/01/2016 - [] D -- C:\Users\JPN_Consulting_3\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wks&Wdb Budget Converter ---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 1s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: DropboxExt [DropboxExt1] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt [DropboxExt2] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt [DropboxExt3] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll =>.Dropbox, Inc® O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.® O106 - SIOI: DropboxExt [DropboxExt4] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Users\JPN_Consulting_3\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll =>.Dropbox, Inc® ---\\ Enumération des clés StartupReg (12) - 1s O53 - SMSR:HKLM\...\startupreg\BingDesktop [Key] . (...) -- C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CANAL+ CANALSAT A LA DEMANDE [Key] . (...) -- C:\Program Files (x86)\Canal+\CANAL+ CANALSAT A LA DEMANDE\Launcher.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\CanonQuickMenu [Key] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.CANON INC. O53 - SMSR:HKLM\...\startupreg\FileZilla Server Interface [Key] . (.FileZilla Project - FileZilla Server.) -- C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe =>.FileZilla Project O53 - SMSR:HKLM\...\startupreg\hubiC [Key] . (.OVH - hubiC.) -- C:\Program Files\OVH\hubiC\hubiC.exe =>.OVH O53 - SMSR:HKLM\...\startupreg\IJNetworkScannerSelectorEX [Key] . (.CANON INC. - Canon IJ Network Scanner Selector EX.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe =>.CANON INC. O53 - SMSR:HKLM\...\startupreg\PWRISOVM.EXE [Key] . (.Power Software Ltd - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE =>.Power Software Ltd O53 - SMSR:HKLM\...\startupreg\SEO Soft [Key] . (.www.webmaster-rank.info - Logiciel open source de positionnement 32RB.) -- C:\Program Files (x86)\SEO Soft\seosoft.exe O53 - SMSR:HKLM\...\startupreg\Skype [Key] . (...) -- C:\Program Files (x86)\Skype\Phone\Skype.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Tango [Key] . (...) -- C:\Program Files (x86)\Tango\Tango.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] . (...) -- C:\Users\JPN_Consulting_3\AppData\Roaming\uTorrent\uTorrent.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Viber [Key] . (...) -- C:\Users\JPN_Consulting_3\AppData\Local\Viber\Viber.exe (.not file.) ---\\ Liste des pilotes du système (80) - 11s O58 - SDL:2015/07/10 11:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2011/05/13 18:57:58 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\WINDOWS\System32\drivers\Accelerometer.sys [43320] =>.Hewlett-Packard Company® O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2015/12/01 11:55:38 A . (.AVAST Software - avast! HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [28656] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:55:38 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [97648] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:55:36 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [93528] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:55:38 A . (.AVAST Software - avast! Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [65224] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:54:52 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1059656] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:55:38 A . (.AVAST Software - avast! self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [449992] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:55:38 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [154256] =>.AVAST Software a.s.® O58 - SDL:2015/12/01 11:55:38 A . (.AVAST Software - avast! VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [273784] =>.AVAST Software a.s.® O58 - SDL:2015/12/18 22:32:13 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [21648880] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/18 22:32:13 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [674288] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/07/10 11:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2010/06/30 10:02:30 A . (.Motorola, Inc. - Bluetooth Serial Port Driver.) -- C:\WINDOWS\System32\drivers\btmcom.sys [52736] =>.Motorola, Inc. O58 - SDL:2011/02/08 18:02:04 A . (.Motorola Solutions, Inc. - Bluetooth Radio Driver.) -- C:\WINDOWS\System32\drivers\btmusb.sys [486144] =>.Motorola Solutions, Inc. O58 - SDL:2015/07/10 11:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2011/10/17 03:00:00 A . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\WINDOWS\System32\drivers\cdr4_xp.sys [10224] =>.Sonic Solutions® O58 - SDL:2011/10/17 03:00:00 A . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\WINDOWS\System32\drivers\cdralw2k.sys [10224] =>.Sonic Solutions® O58 - SDL:2012/08/03 17:49:18 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\WINDOWS\System32\drivers\clwvd.sys [40432] =>.CyberLink® O58 - SDL:2009/06/17 20:41:12 A . (.TamoSoft - CommView Driver for Windows XP/2003/Vista/2.) -- C:\WINDOWS\System32\drivers\cv2k1.sys [21544] =>.TamoSoft Ltd® O58 - SDL:2015/07/10 11:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2012/08/21 12:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.® O58 - SDL:2010/10/20 01:34:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2011/05/13 18:58:16 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\WINDOWS\System32\drivers\hpdskflt.sys [30008] =>.Hewlett-Packard Company® O58 - SDL:2015/07/10 11:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] =>.Intel Corporation - Client Components Group® O58 - SDL:2011/05/20 08:53:44 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStor.sys [557848] =>.Intel Corporation® O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2015/06/01 20:00:18 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5384176] =>.Intel Corporation - pGFX® O58 - SDL:2010/10/15 10:28:16 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [317440] =>.Intel(R) Corporation O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2011/04/04 15:25:18 A . (.Marvell Semiconductor, Inc. - USB EWS Device Driver.) -- C:\WINDOWS\System32\drivers\mvusbews.sys [20480] =>.Marvell Semiconductor, Inc. O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2015/06/12 03:59:24 A . (.MediaTek Inc. - MediaTek 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2554528] =>.MEDIATEK INC.® O58 - SDL:2015/11/15 17:30:38 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2011/11/03 03:01:00 A . (.Rovi Corporation - Px Engine Device Driver for 64-bit Windows.) -- C:\WINDOWS\System32\drivers\PxHlpa64.sys [56208] =>.Sonic Solutions® O58 - SDL:2015/07/10 11:59:39 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [587264] =>.Realtek O58 - SDL:2015/06/03 06:41:50 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsPStor.sys [374016] =>.Realtek Semiconductor Corp® O58 - SDL:2011/11/15 04:50:14 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\WINDOWS\System32\drivers\scdemu.sys [125376] =>.Power Software Ltd® O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2015/07/17 06:51:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [42184] =>.Synaptics Incorporated® O58 - SDL:2015/07/17 06:51:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [42696] =>.Synaptics Incorporated® O58 - SDL:2015/07/17 06:51:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [42696] =>.Synaptics Incorporated® O58 - SDL:2013/04/10 10:38:18 A . (.Samsung Electronics - Port Contention Driver.) -- C:\WINDOWS\System32\drivers\SSPORT.SYS [11576] =>.Samsung Electronics CO., LTD.® O58 - SDL:2015/08/15 16:15:31 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] =>.DEVGURU CO LTD® O58 - SDL:2016/02/02 12:39:17 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [214832] =>.DEVGURU CO LTD® O58 - SDL:2016/02/02 12:39:25 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\WINDOWS\System32\drivers\ssudserd.sys [214832] =>.DEVGURU CO LTD® O58 - SDL:2015/07/10 11:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2013/06/02 23:02:30 A . (.IDT, Inc. - IDT PC Audio.) -- C:\WINDOWS\System32\drivers\stwrt64.sys [528384] =>.IDT, Inc. O58 - SDL:2015/07/17 06:51:46 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [614088] =>.Synaptics Incorporated® O58 - SDL:2016/02/17 12:02:26 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc® O58 - SDL:2014/12/09 16:38:36 A . (.Tarlogic - Tarlogic NDIS monitor driver.) -- C:\WINDOWS\System32\drivers\TRLNDISMON.sys [29856] {0DFD} O58 - SDL:2006/12/11 13:43:10 A . (.TamoSoft - CommView Loopback Driver for Vista x64.) -- C:\WINDOWS\System32\drivers\tsvlb.sys [22312] =>.TamoSoft Ltd® O58 - SDL:2007/01/19 13:17:20 A . (.TamoSoft - CommView Pid Driver for Vista x64.) -- C:\WINDOWS\System32\drivers\tsvp.sys [32040] =>.TamoSoft Ltd® O58 - SDL:2015/07/10 11:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/06/10 22:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2015/07/10 11:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (21) - 1423s O61 - LFC: 2016/02/27 11:55:45 A . (.http://www.rundegren.com.) -- C:\Users\JPN_Consulting_3\Desktop\UZAN\laetitia\mhdd32ver4.6floppy.exe [550190] O61 - LFC: 2016/02/27 12:58:49 A . (.pendrivelinux.com.) -- C:\Users\JPN_Consulting_3\Desktop\UZAN\laetitia\Universal-USB-Installer-1.9.6.3.exe [1088958] O61 - LFC: 2016/03/03 13:18:56 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\MusicAlbum_01.040c.digest.bin [8100] O61 - LFC: 2016/03/03 13:18:54 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\MusicArtist_01.040c.digest.bin [2668] O61 - LFC: 2016/03/03 13:18:52 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\MusicGenre_01.040c.digest.bin [2052] O61 - LFC: 2016/03/03 13:18:53 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\MusicPlaylist_01.040c.digest.bin [884] O61 - LFC: 2016/03/03 13:18:58 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\MusicSong_01.040c.digest.bin [50364] O61 - LFC: 2016/03/02 22:28:31 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\PointsOfInterest2_01.040c.digest.bin [56] O61 - LFC: 2016/03/03 13:19:01 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\PointsOfInterest2_02.040c.digest.bin [56] O61 - LFC: 2016/03/03 13:19:01 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\PointsOfInterest_01.040c.digest.bin [56] O61 - LFC: 2016/03/02 22:28:31 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\PointsOfInterest_02.040c.digest.bin [56] O61 - LFC: 2016/03/03 19:13:48 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2016/03/03 13:19:40 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\VaStartMenu_01.040c.digest.bin [39716] O61 - LFC: 2016/03/03 17:20:22 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\VaStartMenu_02.040c.digest.bin [39716] O61 - LFC: 2016/02/28 20:12:49 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\cache\proactive\proactive-cache.bin [209899] O61 - LFC: 2016/03/04 01:23:00 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\51.0.2666.0\natives_blob.bin [411182] O61 - LFC: 2016/03/04 01:23:00 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Google\Chrome SxS\Application\51.0.2666.0\snapshot_blob.bin [629276] O61 - LFC: 2016/03/03 19:04:34 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\ATI\ACE\Manifest.Bin [29892] O61 - LFC: 2016/03/03 00:00:35 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\AMD\GLCache\5b29effe650b9c07_20.bin [247248] O61 - LFC: 2016/03/03 00:00:15 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\AMD\GLCache\b169ddc631f65d92_20.bin [24583] O61 - LFC: 2016/03/03 19:26:08 A . (..) -- C:\Users\JPN_Consulting_3\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [83423] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (12) - 9s O69 - SBI: SearchScopes [HKCU] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {6A9023B2-E201-4AB2-A2B6-88DD823A30AC} - (Ask Search) - http://websearch.ask.com/ =>Toolbar.Ask O69 - SBI: SearchScopes [HKCU] {9CB96984-43C3-4D44-90EF-01466EFCF7BB} - (Yahoo! (Avast)) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {C6032E4B-F4D5-4B62-906B-55E7D90625AF} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/ O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ O69 - SBI: SearchScopes [HKCU] {F1F0A77E-0E5D-48C5-8784-A78B7EE5A444} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] - (Conduit Search) - http://search.conduit.com/ =>.Superfluous.Conduit O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} - (Microsoft (Bing)) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {C6032E4B-F4D5-4B62-906B-55E7D90625AF} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/ O69 - SBI: SearchScopes [HKLM] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ ---\\ Enumère les services démarrés par Svchost (41) - 5s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1335296] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1008640] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324096] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [187392] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [679936] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2236416] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [343040] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [712704] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1015808] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (33) - 13s O87 - FAEL: "{ADB568EE-DF91-447B-A473-E40049A9C36A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (.not file.) O87 - FAEL: "{A3E2BC0E-0867-46C1-97AA-DC5F974ADDD5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (.not file.) O87 - FAEL: "{42D4F85F-BC12-4864-82DC-DE7ACCD00D6A}" [In-None-P17-TRUE] .(...) -- C:\Windows\twain_32\Samsung\SLM2070\ScanCDLM\ScanCDLM.exe (.not file.) O87 - FAEL: "{81F4A3C0-8E8A-4AFE-85C0-992455DB6F8A}" [In-None-P6-TRUE] .(...) -- C:\Windows\twain_32\Samsung\SLM2070\ScanCDLM\ScanCDLM.exe (.not file.) O87 - FAEL: "UDP Query User{4C1F13F4-06AD-4E96-8EC1-335055E763FA}C:\xamppj\mercurymail\mercury.exe" [In-None-P17-TRUE] .(...) -- C:\xamppj\mercurymail\mercury.exe (.not file.) O87 - FAEL: "TCP Query User{E8A7F782-474C-4BCF-9972-CE1C607646A2}C:\xamppj\mercurymail\mercury.exe" [In-None-P6-TRUE] .(...) -- C:\xamppj\mercurymail\mercury.exe (.not file.) O87 - FAEL: "UDP Query User{215371FC-1087-4DB0-9D5F-24E50EAFD9E5}C:\xamppj\filezillaftp\filezillaserver.exe" [In-None-P17-TRUE] .(...) -- C:\xamppj\filezillaftp\filezillaserver.exe (.not file.) O87 - FAEL: "TCP Query User{A6CEDF5A-1376-4499-81AC-CFECC276A705}C:\xamppj\filezillaftp\filezillaserver.exe" [In-None-P6-TRUE] .(...) -- C:\xamppj\filezillaftp\filezillaserver.exe (.not file.) O87 - FAEL: "UDP Query User{2D540592-91E1-441E-A3E0-2B846D92E6FF}C:\xamppj\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\xamppj\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "TCP Query User{867A393A-A6F0-4618-85DA-25B95CF9CD0C}C:\xamppj\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\xamppj\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "UDP Query User{ED91DAC0-CDC8-4017-93F3-6BE36AAEA6CD}C:\xamp\mercurymail\mercury.exe" [In-None-P17-TRUE] .(...) -- C:\xamp\mercurymail\mercury.exe (.not file.) O87 - FAEL: "TCP Query User{6E364F1C-9D5B-4D03-A8C5-02789A01D586}C:\xamp\mercurymail\mercury.exe" [In-None-P6-TRUE] .(...) -- C:\xamp\mercurymail\mercury.exe (.not file.) O87 - FAEL: "UDP Query User{3077BC7E-390A-4A1E-AFBB-A9B23939ED69}C:\xamp\filezillaftp\filezillaserver.exe" [In-None-P17-TRUE] .(...) -- C:\xamp\filezillaftp\filezillaserver.exe (.not file.) O87 - FAEL: "TCP Query User{965855AC-4FC7-42CF-91C4-0A499E9EA591}C:\xamp\filezillaftp\filezillaserver.exe" [In-None-P6-TRUE] .(...) -- C:\xamp\filezillaftp\filezillaserver.exe (.not file.) O87 - FAEL: "UDP Query User{0FD3D088-5A5D-4246-AF0A-9CCF134B7F99}C:\xamp\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\xamp\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "TCP Query User{4EA6EA48-A513-4463-B6F9-63AB6A14156D}C:\xamp\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\xamp\mysql\bin\mysqld.exe (.not file.) O87 - FAEL: "UDP Query User{279CD2F0-4998-43DB-B57D-ED5A92928948}C:\xamp\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\xamp\apache\bin\httpd.exe (.not file.) O87 - FAEL: "TCP Query User{8E773BD6-CF98-46CB-82FA-BB7B4C399F4F}C:\xamp\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\xamp\apache\bin\httpd.exe (.not file.) O87 - FAEL: "UDP Query User{53328B7D-1C87-4B75-81CF-C3A3FFE4FDC8}C:\program files (x86)\xbmc\xbmc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\xbmc\xbmc.exe (.not file.) O87 - FAEL: "TCP Query User{C57FB89F-19CB-4CDA-8B49-A7C432FB48EA}C:\program files (x86)\xbmc\xbmc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\xbmc\xbmc.exe (.not file.) O87 - FAEL: "UDP Query User{48135A77-8BEE-4162-9991-CF9A4578BF92}C:\program files (x86)\xbmc\xbmc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\xbmc\xbmc.exe (.not file.) O87 - FAEL: "TCP Query User{7755BD42-0072-441F-AF13-5EACDA893D4F}C:\program files (x86)\xbmc\xbmc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\xbmc\xbmc.exe (.not file.) O87 - FAEL: "{D5747D19-C788-435E-B457-F4F6C261D9E4}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.) O87 - FAEL: "{C06DC221-EDC3-4C72-8F22-C3DF1C872E59}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.) O87 - FAEL: "UDP Query User{546C7530-C7F9-49AD-847C-AD8B3DFEE75C}C:\program files (x86)\cyberduck\cyberduck.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cyberduck\cyberduck.exe (.not file.) O87 - FAEL: "TCP Query User{D27855EF-F279-4E50-A1C3-A2E4A65858FD}C:\program files (x86)\cyberduck\cyberduck.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cyberduck\cyberduck.exe (.not file.) O87 - FAEL: "UDP Query User{29E216A9-AF79-446C-8CF7-41AD1D77A44B}C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe" [In-None-P17-TRUE] .(...) -- C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe (.not file.) O87 - FAEL: "TCP Query User{8526F56C-54FF-4177-BFDE-9B41D53CD56E}C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe" [In-None-P6-TRUE] .(...) -- C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe (.not file.) O87 - FAEL: "UDP Query User{E545FA7D-583E-448C-AB6F-630916F757FB}C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe" [In-None-P17-TRUE] .(...) -- C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe (.not file.) O87 - FAEL: "TCP Query User{33E48FDE-7862-47F0-82E4-EBA549BAE3ED}C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe" [In-None-P6-TRUE] .(...) -- C:\users\jpn_consulting_3\appdata\roaming\utorrent\utorrent.exe (.not file.) O87 - FAEL: "UDP Query User{117D506B-4A7B-46E8-A8AE-6F9D966DF131}C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe O87 - FAEL: "TCP Query User{3253A7FB-FE2F-4F80-81DA-4A028315985D}C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\participatory culture foundation\miro\miro_downloader.exe O87 - FAEL: "{3AE49690-5220-45E2-8C6E-4961368E3652}" [In-None-P6-TRUE] .(...) -- C:\Windows\system32\ezSharedSvcHost.exe (.not file.) ---\\ Scan Additionnel (4) - 0s C:\Users\JPN_Consulting_3\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Users\JPN_Consulting_3\AppData\Local\PackageAware =>PUP.Optional.BearShare HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A9023B2-E201-4AB2-A2B6-88DD823A30AC} =>Toolbar.Ask HKCU\Software\Microsoft\Internet Explorer\SearchScopes\ =>.Superfluous.Conduit ---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports http://www.nicolascoolman.fr/?p=343 =>PUP.Optional.BearShare http://www.nicolascoolman.fr/?p=235 =>Toolbar.Ask http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit ~ End of the scan, 88469 items in 00h33mn36s (1846)(0)