cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.6.14.104 Par Nicolas Coolman (2016/06/10)
~ Démarré par Kheira (Administrator) (2016/06/16 13:09:57)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\Kheira\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Kheira\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 47.0 (x86 fr)
MSIE: Internet Explorer v11.0.9600.18321

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : KKWJQ
Windows License : OK
~ Windows Remaining Initializations Number : 999
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 6s
Avast Internet Security v11.2.2262
Windows Defender (Deactivate)

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 61 Stepping 4, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 6191.528 MB (59% free)
System Restore: Activé (Enable)
System drive C: has 46 GB () free of 106 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: KHEIRA
~ User Name: Kheira
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 46 GB free of 106 GB (System)
~ Drive D: has 476 GB free of 476 GB
~ Drive E: has 476 GB free of 476 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 1s
[MD5.B3541A5A20C6264781909B1B7FE54836] - 09/02/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2757616] =>.Microsoft Windows®
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [54784] =>.Microsoft Corporation
[MD5.EC302D06155F8E3C383750993FCB6B27] - 05/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [146432] =>.Microsoft Corporation
[MD5.6C4F624735E4BA0C4BE1707D9F34CEE3] - 22/04/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2596864] =>.Microsoft Corporation
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [570880] =>.Microsoft Corporation
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 18/03/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - 29/10/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [657920] =>.Microsoft Corporation
[MD5.BD9C7A068C46053F8747CEA73B5930AB] - 29/10/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [498688] =>.Microsoft Corporation
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 29/10/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation
[MD5.A03F362C5557E238CBFA914689C77248] - 29/10/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [134144] =>.Microsoft Corporation
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 29/10/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 18/03/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation
[MD5.5DCD41F62F71519D2A46D41F60C69B0C] - 06/04/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [401920] =>.Microsoft Corporation
[MD5.0217532E19A748F0E5D569307363D5FD] - 22/08/2013 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [282624] =>.Microsoft Corporation
[MD5.9980B262DBE439AE6BDC91AA985F19EE] - 30/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2017624] =>.Microsoft Windows®
[MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [94208] =>.Microsoft Corporation
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 18/03/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation
[MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [108032] =>.Microsoft Corporation
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (28) - 3s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - AGS Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - avast! Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
O23 - Service: Avast Firewall (avast! Firewall) . (.AVAST Software - avast! firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software a.s.®
O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Motorola Solutions Inc.®
O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Motorola Solutions Inc.®
O23 - Service: Protect Service(ceQeekg_protect) (ceQeekg_protect) . (...) - C:\ProgramData\ceQeekg\protect\protect.exe =>PUP.Optional.vreXjvX
O23 - Service: Update Service(ceQeekg_update) (ceQeekg_update) . (...) - C:\Program Files (x86)\ceQeekg\ceQeekg\bin\ceQeekg_server.exe =>PUP.Optional.vreXjvX
O23 - Service: Dravsynlether Core (Drvcoresrv) . (...) - C:\Program Files (x86)\Dravsynlether\Drvcoresrv.exe (.not file.)
O23 - Service: ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\SysWOW64\esif_uf.exe =>.Intel(R) Software®
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
O23 - Service: Intel Bluetooth Service (iBtSiva) . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe =>.Intel Corporation - pGFX®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
O23 - Service: IntelUSBoverIP (IntelUSBoverIP) . (.Intel - UoipService.) - C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe =>.Intel(R) Wireless Display®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (...) - c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe (.not file.)
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 347.2.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: Intel(R) Common Connectivity Framework (STCServ) . (.Intel Corporation - Intel(R) Common Connectivity Framework STC.) - C:\Program Files\Intel\STCServ\STCServ.exe =>.Intel(R) iCDG WINS WSS CCF®
O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare AppService.) - C:\Program Files (x86)\Wondershare\WAF\2.1.7.1\WsAppService.exe =>.Wondershare
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (33) - 18s

SR - Auto [22/04/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [14/05/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [05/04/2016] [ 2021592] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [26/03/2014] [ 115512] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
SR - Auto [21/11/2011] [ 96896] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUS.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
SR - Auto [30/05/2016] [ 243296] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software a.s.®
SR - Auto [30/05/2016] [ 370656] Avast Firewall (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software a.s.®
SR - Demand [30/05/2016] [ 5570272] AvastVBox COM Service (AvastVBoxSvc) . (.Avast Software.) - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe =>.AVAST Software a.s.®
SR - Auto [04/12/2014] [ 1206648] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Motorola Solutions Inc.®
SR - Auto [28/10/2014] [ 1165688] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Motorola Solutions Inc.®
SR - Auto [28/04/2016] [ 303000] Protect Service(ceQeekg_protect) (ceQeekg_protect) . (...) - C:\ProgramData\ceQeekg\protect\protect.exe =>PUP.Optional.vreXjvX
SS - Auto [28/04/2016] [ 472984] Update Service(ceQeekg_update) (ceQeekg_update) . (...) - C:\Program Files (x86)\ceQeekg\ceQeekg\bin\ceQeekg_server.exe =>PUP.Optional.vreXjvX
SS - Demand [20/04/2015] [ 279144] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [18/09/2014] [ 1037568] ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\Windows\SysWOW64\esif_uf.exe =>.Intel(R) Software®
SR - Auto [04/12/2014] [ 638880] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [06/11/2014] [ 1148744] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
SR - Auto [13/12/2014] [ 124520] Intel Bluetooth Service (iBtSiva) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe =>.Intel Corporation - pGFX®
SR - Auto [20/04/2015] [ 344168] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation
SS - Demand [03/10/2014] [ 881152] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Auto [15/10/2014] [ 394184] IntelUSBoverIP (IntelUSBoverIP) . (.Intel.) - C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe =>.Intel(R) Wireless Display®
SR - Auto [25/02/2015] [ 156960] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SR - Auto [25/02/2015] [ 409376] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SS - Demand [11/06/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [04/12/2014] [ 268192] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [06/11/2014] [ 1795912] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SR - Auto [06/11/2014] [19819848] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe =>.NVIDIA Corporation®
SR - Auto [10/01/2015] [ 935056] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\system32\nvvsvc.exe =>.NVIDIA Corporation
SR - Auto [04/12/2014] [ 157088] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [16/03/2015] [ 8095456] Intel(R) Common Connectivity Framework (STCServ) . (.Intel Corporation.) - C:\Program Files\Intel\STCServ\STCServ.exe =>.Intel(R) iCDG WINS WSS CCF®
SR - Auto [17/02/2016] [ 404480] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.1.7.1\WsAppService.exe =>.Wondershare
SR - Auto [04/12/2014] [ 3820960] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions®

---\\ Tâches planifiées en automatique (35) - 13s
[MD5.DE7BC28EAE6A62BC35754D1DCA4ECF38] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1107672] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.A69361C2D172496A291AE2B23DF42654] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_242_pepper.exe [1173184] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.561E13867AEA0E9755CEB1EEC9D0EC76] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.F5566243FAB2332DF315049CBFA804D8] [APT] [ASUS Splendid ACMON] (.ASUS.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [62024] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.95BF2536652AC4116CD54F8D2CB2E055] [APT] [ATK Package 36D18D69AFC3] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [120632] (.Activate.) =>.ASUSTeK Computer Inc.®
[MD5.82B2DA4DA5A5A6FE88CF9E7B1D960DF6] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3154432] (.Activate.) =>HackTool.AutoKMS
[MD5.1282F8C897DBF180BCF3F6F6968DE2C3] [APT] [avast! Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [1517200] (.Activate.) =>.AVAST Software a.s.®
[MD5.8025F05E5A51FD499584AFD7A688423C] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6602152] (.Activate.) =>.Piriform Ltd®
[MD5.5949EC9BAD8DFB48859860F1657D5354] [APT] [ceQeekgBrowserUpdateCore] (...) -- C:\Program Files (x86)\ceQeekg\ceQeekg\bin\ceQeekg_server.exe [472984] (.Activate.) =>PUP.Optional.vreXjvX
[MD5.5949EC9BAD8DFB48859860F1657D5354] [APT] [ceQeekgBrowserUpdateUA] (...) -- C:\Program Files (x86)\ceQeekg\ceQeekg\bin\ceQeekg_server.exe [472984] (.Activate.) =>PUP.Optional.vreXjvX
[MD5.5949EC9BAD8DFB48859860F1657D5354] [APT] [ceQeekgCheckTask] (...) -- C:\Program Files (x86)\ceQeekg\ceQeekg\bin\ceQeekg_server.exe [472984] (.Activate.) =>PUP.Optional.vreXjvX
[MD5.6055DE5C4980310E0988DB68B3BCC9E0] [APT] [IntelBootstrapCCDashExe] (.Intel® Corporation.) -- C:\Program Files\Intel\ConnectCenter\bin\ICCLauncher.exe [90112] (.Activate.) =>.Intel® Corporation
[MD5.813006C133576159EBB6DE770D55267D] [APT] [RtHDVBg_ListenToDevice] (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] (.Activate.) =>.Realtek Semiconductor Corp®
[MD5.D654FDCF122C744D8FB0C3BCF5151700] [APT] [RTKCPL] (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952] (.Activate.) =>.Realtek Semiconductor Corp®
[MD5.2E696C90B2D1DD842F59E38FD212D225] [APT] [SafeZone scheduled Autoupdate 1463126360] (.Avast Software.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [735736] (.Activate.) =>.AVAST Software s.r.o.®
[MD5.00000000000000000000000000000000] [APT] [{298B189B-20F5-41A4-B5E0-95C38AF12415}] (...) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_20_0_0_286_pepper.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.B5C90CBC7AC91FF982C2C8C71ABBE5EA] [APT] [ASUS] (.ASUSTek Computer Inc..) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1271424] (.Activate.) =>.ASUSTek Computer Inc.
[MD5.CD11D500328F07AE1666D046F94179E0] [APT] [AVAST Software] (.AVAST Software.) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [702056] (.Activate.) =>.AVAST Software a.s.®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [3886] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier [4026] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890] =>.Adobe Systems Incorporated®
O39 - APT: ASUS Splendid ACMON - (.ASUS.) -- C:\Windows\System32\Tasks\ASUS Splendid ACMON [2986] =>.ASUSTeK Computer Inc.®
O39 - APT: ATK Package 36D18D69AFC3 - (.ASUSTek Computer Inc..) -- C:\Windows\System32\Tasks\ATK Package 36D18D69AFC3 [3562] =>.ASUSTeK Computer Inc.®
O39 - APT: AutoKMS - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMS [3758] =>HackTool.AutoKMS
O39 - APT: avast! Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\avast! Emergency Update [3924] =>.AVAST Software a.s.®
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2788] =>.Piriform Ltd®
O39 - APT: ceQeekgBrowserUpdateCore - (...) -- C:\Windows\System32\Tasks\ceQeekgBrowserUpdateCore [3804] =>PUP.Optional.vreXjvX
O39 - APT: ceQeekgBrowserUpdateUA - (...) -- C:\Windows\System32\Tasks\ceQeekgBrowserUpdateUA [14744] =>PUP.Optional.vreXjvX
O39 - APT: ceQeekgCheckTask - (...) -- C:\Windows\System32\Tasks\ceQeekgCheckTask [14738] =>PUP.Optional.vreXjvX
O39 - APT: IntelBootstrapCCDashExe - (.Intel® Corporation.) -- C:\Windows\System32\Tasks\IntelBootstrapCCDashExe [3296] =>.Intel® Corporation
O39 - APT: RtHDVBg_ListenToDevice - (.Realtek Semiconductor.) -- C:\Windows\System32\Tasks\RtHDVBg_ListenToDevice [3180] =>.Realtek Semiconductor Corp®
O39 - APT: RTKCPL - (.Realtek Semiconductor.) -- C:\Windows\System32\Tasks\RTKCPL [3146] =>.Realtek Semiconductor Corp®
O39 - APT: SafeZone scheduled Autoupdate 1463126360 - (.Avast Software.) -- C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1463126360 [3912] =>.AVAST Software s.r.o.®

---\\ Processus lancés (55) - 4s
[MD5.806069C408AE736E2182D2FF6C2FA8EE] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 347.2.) -- C:\Windows\System32\nvvsvc.exe [935056] [PID.340] =>.NVIDIA Corporation®
[MD5.71D8F861C6D0ABB37FCC2451B2663288] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [344168] [PID.1092] =>.Intel Corporation - pGFX®
[MD5.564CB886D1A968B9798C1AB03F4EB54F] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [115512] [PID.1540] =>.ASUSTeK Computer Inc.®
[MD5.DBC598E47E7A382E60E2A4745D41FEF9] - (.ASUS - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [96896] [PID.1612] =>.ASUSTeK Computer Inc.®
[MD5.A24AF1F8186B4B69D54DCC4B059CA695] - (.AVAST Software - avast! Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296] [PID.1640] =>.AVAST Software a.s.®
[MD5.08B412FBCBFDE2901C84801C4F356E2A] - (.AVAST Software - avast! firewall service.) -- C:\Program Files\AVAST Software\Avast\afwServ.exe [370656] [PID.1908] =>.AVAST Software a.s.®
[MD5.36114214BF8D7C464D1E92E4EB6B2DD3] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1172] =>.Adobe Systems, Incorporated®
[MD5.C17171E63E84F5711DF23B8F1E7A100E] - (.Adobe Systems, Incorporated - AGS Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592] [PID.1280] =>.Adobe Systems Incorporated®
[MD5.127C81F616E8CB699CFC16B0A2AF412C] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\SysWOW64\esif_uf.exe [1037568] [PID.2060] =>.Intel(R) Software®
[MD5.ADAC76188512444B5D351EDDEB3A392B] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [638880] [PID.2096] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.5140320AEA9D96A3BD48905F68E8E1D2] - (.NVIDIA Corporation - NVIDIA GeForce Experience Service.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744] [PID.2120] =>.NVIDIA Corporation®
[MD5.5417713A06537C28875E6406851CA30C] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [124520] [PID.2180] =>.Intel Corporation - pGFX®
[MD5.E024300408694566DDF65AB5E004F880] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912] [PID.2232] =>.NVIDIA Corporation®
[MD5.465D714F8D79DEEBC5F0ED766C16DFFD] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19819848] [PID.2296] =>.NVIDIA Corporation®
[MD5.6656FBF14F378A272682A4F91CBDCDAD] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [157088] [PID.2408] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.7F03175944FF3843F8B846D46B299A17] - (.Wondershare - Wondershare AppService.) -- C:\Program Files (x86)\Wondershare\WAF\2.1.7.1\WsAppService.exe [404480] [PID.2660] =>.Wondershare
[MD5.3E7427F3D0AAF5E114BFFE86C9FBAAD2] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960] [PID.2748] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.7796E03E2BB3E9F5940F5CB12FC4CC4F] - (.Intel - UoipService.) -- C:\Program Files\Intel Corporation\USB over IP\bin\UoipService.exe [394184] [PID.2764] =>.Intel(R) Wireless Display®
[MD5.465D714F8D79DEEBC5F0ED766C16DFFD] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19819848] [PID.2960] =>.NVIDIA Corporation®
[MD5.FDB183541A4DBA94EB7FF0AF1DB8E8FD] - (.Avast Software - AvastVirtualBox Interface.) -- C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [5570272] [PID.5032] =>.AVAST Software a.s.®
[MD5.422B6D6EE20E15857A970C7A036C3AC0] - (.Intel Corporation - Intel(R) Common Connectivity Framework STC.) -- C:\Program Files\Intel\STCServ\STCServ.exe [8095456] [PID.3620] =>.Intel(R) iCDG WINS WSS CCF®
[MD5.1660B17B3A3993F2F7220C97B50D5B04] - (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1206648] [PID.7400] =>.Motorola Solutions Inc.®
[MD5.5C166D283715895D78DE538924A8C896] - (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1165688] [PID.8104] =>.Motorola Solutions Inc.®
[MD5.AC0588B406D055727448F4AB44CA84D9] - (...) -- C:\ProgramData\ceQeekg\protect\protect.exe [303000] [PID.8052] =>PUP.Optional.vreXjvX
[MD5.1C3EF75B521DB60E951711440648B0D5] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [156960] [PID.5348] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.631ABC3E8FF50F9B70B9A52568B1F5F6] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [409376] [PID.7668] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.E64F67D30E15FEBBF9722C4CF830B67A] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1249424] [PID.2256] =>.NVIDIA Corporation®
[MD5.806069C408AE736E2182D2FF6C2FA8EE] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 347.2.) -- C:\Windows\System32\nvvsvc.exe [935056] [PID.7452] =>.NVIDIA Corporation®
[MD5.6A80F5C61899D79B755BC41E0C48E793] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [303928] [PID.7228] =>.ASUSTeK Computer Inc.®
[MD5.40E18F54917427B1041EDCB3DC430EB6] - (.CyberLink Corp. - ASUSDVD.) -- C:\Users\Kheira\AppData\Roaming\clientmonitor.exe [1944064] [PID.180] =>.CyberLink Corp.
[MD5.10B1F4B3849B69F2EEB0F3B5A9C7ABD3] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [313448] [PID.6784] =>.Intel Corporation - pGFX®
[MD5.26793BC0B998B3595F1FA5D7A0C16923] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\Temp\DPTF\esif_assist.exe [183816] [PID.7092] =>.Intel(R) Software®
[MD5.465D714F8D79DEEBC5F0ED766C16DFFD] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19819848] [PID.7524] =>.NVIDIA Corporation®
[MD5.F5566243FAB2332DF315049CBFA804D8] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [62024] [PID.7044] =>.ASUSTeK Computer Inc.®
[MD5.D97BD80A6F08752D37A3CF8D3935E666] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448200] [PID.5992] =>.NVIDIA Corporation®
[MD5.039F763915F05CFADAD926F4EDD369A6] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [248424] [PID.8144] =>.Intel Corporation - pGFX®
[MD5.C163F4752864BC3F7E2D07CEF3642648] - (...) -- C:\Windows\System32\igfxTray.exe [391784] [PID.4216] =>.Intel Corporation - pGFX®
[MD5.CFAC0D3B76F75709B03360FDF910CF21] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [406328] [PID.6180] =>.ASUSTeK Computer Inc.®
[MD5.E72C2F7797A6B7E0445D789FD6EF87B5] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [209720] [PID.5496] =>.ASUSTeK Computer Inc.®
[MD5.C08AF3D7162084119A3089D40240E592] - (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2464072] [PID.192] =>.NVIDIA Corporation®
[MD5.DF76870008E36907F1FA46F7028E049F] - (.Intel Corporation - igfxext Module.) -- C:\Windows\System32\igfxext.exe [217704] [PID.76] =>.Intel Corporation - pGFX®
[MD5.363D0C08A159AE50E38F662E16483B50] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1298504] [PID.3704] =>.Canon Inc.®
[MD5.80F8F1C3A6EE589C9C9AAAA6CBF074BE] - (.CANON INC. - Canon IJ Network Scanner Selector EX.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [454248] [PID.7196] =>.Canon Inc.®
[MD5.2D6800E17FEBB51E3C75CD935E2BA8F5] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [7405752] [PID.7748] =>.AVAST Software a.s.®
[MD5.CB62B93670F62A51559EB014DBD3BE26] - (.CANON INC. - Canon Quick Menu Updater.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE [1089112] [PID.3500] =>.Canon Inc.®
[MD5.FEF40702709B0DE634250148B1482167] - (.Intel® Corporation - Intel® Common Connectivity Framework Manag.) -- C:\Program Files\Intel\ConnectCenter\bin\CCFManager.exe [68096] [PID.4300] =>.Intel® Corporation
[MD5.813006C133576159EBB6DE770D55267D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.80] =>.Realtek Semiconductor Corp®
[MD5.D654FDCF122C744D8FB0C3BCF5151700] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13876952] [PID.7520] =>.Realtek Semiconductor Corp®
[MD5.40E18F54917427B1041EDCB3DC430EB6] - (.CyberLink Corp. - ASUSDVD.) -- C:\Users\Kheira\AppData\Roaming\clientmonitor.exe [1944064] [PID.6480] =>.CyberLink Corp.
[MD5.CE1DEC053DA24927E89D9AA196D31281] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8590760] [PID.5528] =>.Piriform Ltd®
[MD5.825FB6DE39FE63B3F59B78D760F0619C] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.1148] =>.Mozilla Corporation®
[MD5.B6F06766529B7A15F7C419630397A25A] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe [277960] [PID.6976] =>.Mozilla Corporation®
[MD5.65C301B21772EC0F3824AF53E6C615AD] - (.Adobe Systems, Inc. - Adobe Flash Player 21.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_242.exe [3448000] [PID.5388] =>.Adobe Systems Incorporated®
[MD5.65C301B21772EC0F3824AF53E6C615AD] - (.Adobe Systems, Inc. - Adobe Flash Player 21.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_21_0_0_242.exe [3448000] [PID.3708] =>.Adobe Systems Incorporated®
[MD5.4FA12350B04AAECF0D3893ADFB65101C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Kheira\Downloads\ZHPDiag3(1).exe [2216960] [PID.6944] =>.Nicolas Coolman

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (15) - 5s
P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT: (.UNISYS France - UNISYS NAP Win 32 Plugin Version 51.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npornap.dll =>.UNISYS France
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\3o2i1766.default\extensions\firefox@ghostery.com.xpi
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\3o2i1766.default\searchplugins\avast-search.xml
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\3o2i1766.default\searchplugins\bing-avast.xml
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\3o2i1766.default\searchplugins\McSiteAdvisor.xml
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\3o2i1766.default\searchplugins\yahoo-avast.xml
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\ej2p37et.Kheira\extensions\jid1-BOjn8b0IM7kH2w@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\ej2p37et.Kheira\extensions\{E0B8C461-F8FB-49b4-8373-FE32E9252800}.xpi
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll
P2 - FPN: [HKLM] [@unisys.com/npornap] - (...) -- C:\Program Files (x86)\Orange\CAP Nap Plugin ActiveX

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 2s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (64)

---\\ Browser Helper Object de navigateur (BHO) (4) - 0s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Canon Easy-WebPrint EX BHO [64Bits] - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} . (.CANON INC. - Easy-WebPrint EX.) -- C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll =>.Canon Inc.®
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software a.s.®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Applications lancées au démarrage du système (10) - 1s
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA GeForce Experience Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [ShadowPlay] . (.NVIDIA Corporation - NVIDIA Capture Server Proxy.) -- C:\Windows\System32\nvspcap64.dll =>.NVIDIA Corporation
O4 - HKLM\..\Run: [BTMTrayAgent] . (...) -- C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll"
O4 - HKLM\..\Run: [IntelConnectCenter] . (.Intel® Corporation - Intel® Connect Center Dashboard Launcher.) -- C:\Program Files\Intel\ConnectCenter\bin\ICCLauncher.exe =>.Intel® Corporation
O4 - HKCU\..\RunOnce: [Client Monitor] . (.CyberLink Corp. - ASUSDVD.) -- C:\Users\Kheira\AppData\Roaming\clientmonitor.exe =>.CyberLink Corp.
O4 - HKLM\..\Wow6432Node\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.®
O4 - HKLM\..\Wow6432Node\Run: [IJNetworkScannerSelectorEX] . (.CANON INC. - Canon IJ Network Scanner Selector EX.) -- C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe =>.Canon Inc.®
O4 - HKLM\..\Wow6432Node\Run: [mpck_gb_017010228] (Orphean) =>PUP.Optional.CrossRider
O4 - HKLM\..\Wow6432Node\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software a.s.®
O4 - HKUS\S-1-5-21-3960476503-1996463501-185026468-1001\..\RunOnce: [Client Monitor] . (.CyberLink Corp. - ASUSDVD.) -- C:\Users\Kheira\AppData\Roaming\clientmonitor.exe =>.CyberLink Corp.

---\\ Raccourcis Global Startup (31) - 14s
O4 - GS\Desktop [Administrateur]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team
O4 - GS\Desktop [Administrateur]: Callnote.lnk . (.Kanda Software - Callnote 3.2.3. Built on 23/11/2015 17:06.) C:\Users\Kheira\AppData\Local\Callnote\Callnote.exe {4F54268CC04552F05AB322C033F6C37E}
O4 - GS\Desktop [Administrateur]: ePub Converter.lnk . (.ebook Converter - eBook Converter.) C:\Program Files (x86)\eBookConverter\ePub Converter\epubconverter.exe {1CAF6BE62898BE8FF15364876A8314AE}
O4 - GS\Desktop [Administrateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Kheira\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Captvty.lnk . (.2011-2016, Guillaume - Captvty.) C:\Users\Kheira\Downloads\Captvty.exe
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrateur]: Publisher 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\pubs.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Word 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Kheira]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team
O4 - GS\Desktop [Kheira]: Callnote.lnk . (.Kanda Software - Callnote 3.2.3. Built on 23/11/2015 17:06.) C:\Users\Kheira\AppData\Local\Callnote\Callnote.exe {4F54268CC04552F05AB322C033F6C37E}
O4 - GS\Desktop [Kheira]: ePub Converter.lnk . (.ebook Converter - eBook Converter.) C:\Program Files (x86)\eBookConverter\ePub Converter\epubconverter.exe {1CAF6BE62898BE8FF15364876A8314AE}
O4 - GS\Desktop [Kheira]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [Kheira]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Kheira\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\sendTo [Kheira]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - GS\TaskBar [Kheira]: Captvty.lnk . (.2011-2016, Guillaume - Captvty.) C:\Users\Kheira\Downloads\Captvty.exe
O4 - GS\TaskBar [Kheira]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Kheira]: Publisher 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\pubs.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Kheira]: Word 2013.lnk . (...) C:\Windows\Installer\{90150000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Avast Internet Security.lnk . (.AVAST Software - avast! Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software a.s.®
O4 - GS\CommonDesktop [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.®
O4 - GS\CommonDesktop [Public]: Canon Quick Menu.lnk . (.CANON INC. - Canon Quick Menu.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: PDFill PDF Tools (Free).lnk . (.PlotSoft L.L.C. - PDFill PDF Tools 12.0.) C:\Program Files (x86)\PlotSoft\PDFill\PDFill_PDF_Tools.exe =>.PlotSoft LLC®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe
O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\Kheira\Documents
O4 - GS\Programs [Public]: Google Chrome.lnk . (.The ceQeekg Authors - ceQeekg.) C:\Program Files (x86)\ceQeekg\ceQeekg\chrome.exe =>PUP.Optional.vreXjvX
O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\Kheira\Pictures
O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Kheira\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 82.163.143.171 82.163.142.173 =>PUP.Optional.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\..\{AA64BA9D-8A03-4158-AE9E-1FB634051E89}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\..\{D8A25EB0-C25A-46E2-803F-6F25FFC8C8CE}: DhcpNameServer = 82.163.143.171 =>PUP.Optional.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\..\{DA9037DB-EDFA-48B2-AFD3-1BC62D739553}: DhcpNameServer = 82.163.143.171 =>PUP.Optional.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\..\{AA64BA9D-8A03-4158-AE9E-1FB634051E89}: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\..\{DA9037DB-EDFA-48B2-AFD3-1BC62D739553}: DhcpDomain = wds-17.com

---\\ Protocole additionnel (23) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (81) - 81s
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} =>.ASUS
O42 - Logiciel: Audacity 2.1.0 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 =>.Audacity Team
O42 - Logiciel: Avast Internet Security - (.AVAST Software.) [HKLM][64Bits] -- Avast =>.AVAST Software a.s.®
O42 - Logiciel: Callnote version 3.2.3.0 - (.Kanda Software.) [HKCU][64Bits] -- {048CD767-219E-4F04-AA84-3128F6A35948}_is1 {4F54268CC04552F05AB322C033F6C37E}
O42 - Logiciel: Canon Easy-WebPrint EX - (.Canon Inc..) [HKLM][64Bits] -- Easy-WebPrint EX =>.Canon Inc.®
O42 - Logiciel: Canon IJ Network Scanner Selector EX - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_Scanner_Selector_EX =>.Canon Inc.®
O42 - Logiciel: Canon IJ Network Tool - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Network_UTILITY =>.Canon Inc.®
O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM][64Bits] -- Canon_IJ_Scan_Utility =>.Canon Inc.®
O42 - Logiciel: Canon MX530 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX530_series =>.Canon Inc.®
O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden =>.Canon Inc.®
O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM][64Bits] -- Canon My Image Garden Design Files =>.Canon Inc.®
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter =>.Canon Inc.®
O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu =>.Canon Inc.®
O42 - Logiciel: Canon Utilitaire de numérotation rapide - (.Canon Inc..) [HKLM][64Bits] -- Speed Dial Utility =>.Canon Inc.®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Device Setup - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {1F07F2C7-596F-4F34-B805-2C61A3E50E5A} =>.ASUSTek Computer Inc.
O42 - Logiciel: Enregistrement utilisateur de Canon MX530 series - (.‭Canon Inc..) [HKLM][64Bits] -- Enregistrement utilisateur de Canon MX530 series =>.Canon Inc.®
O42 - Logiciel: ePub Converter - (.eBook Converter.) [HKLM][64Bits] -- ePubConverter
O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM][64Bits] -- {FC76E6BB-7CBB-4CD6-8178-3BCADC0526C3} =>.Foxit Corporation
O42 - Logiciel: Intel Android Device USB driver - (.Intel.) [HKLM][64Bits] -- Intel Android Device USB driver =>.Intel
O42 - Logiciel: Intel Collaborative Processor Performance Control - (.Intel Corporation.) [HKLM][64Bits] -- 0E7DAF70-FB54-4B91-B192-7E771C25AEEB =>.Intel Corporation
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {BD667C75-0EDD-4073-A406-A6DD9C3016EB} =>.Intel Corporation
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {f5d71765-7cd1-4e68-998f-5b379e725da3} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- {654EE65D-FAA4-4EA6-8C07-DC94E6A304D4} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {69AAE674-929D-4A17-B108-623E8FDD6EE7} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {6C9B8590-9D31-4802-92A2-0DDFE9708C4C} =>.Intel Corporation
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {013FAB2E-017D-4330-8179-B5FE02E7F81C} =>.Intel Corporation
O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {021da516-b5d9-40cd-9ade-6427d40fe1e4} =>.Intel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel(R) WiDi - (.Intel Corporation.) [HKLM][64Bits] -- {2F97FBC6-7992-4DF7-A7C7-B68455E307F7} =>.Intel Corporation
O42 - Logiciel: Intel(R) Wireless Bluetooth(R)(patch version 17.1.1449.356) - (.Intel Corporation.) [HKLM][64Bits] -- {302600C1-6BDF-4FD1-1411-148929CC1385} =>.Intel Corporation
O42 - Logiciel: Intel® CCF Manager - (.Intel Corporation.) [HKLM][64Bits] -- {0f3d8dd5-54af-4404-a01c-4967e485a065} =>.Intel(R) iCDG WINS WSS CCF®
O42 - Logiciel: Intel® CCF Manager - (.Intel Corporation.) [HKLM][64Bits] -- {DFD2C0B0-664C-4383-B348-2F531462EBAD} =>.Intel Corporation
O42 - Logiciel: Intel® PROSet/Wireless Software - (.Intel Corporation.) [HKLM][64Bits] -- {a9888f41-68ae-43df-bd7d-d93405a44106} =>.Intel Corporation-Wireless Connectivity Solutions®
O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {AAE0AC3F-17BF-48CD-96CE-4F19169E94B0} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {5EA6BC70-0CFC-413D-8465-8506B6F46EE0} =>.Intel Corporation
O42 - Logiciel: LAME v3.99.3 (for Windows) - (...) [HKLM][64Bits] -- LAME_is1
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 47.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 47.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: NVIDIA Control Panel 347.25 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience 2.1.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Graphics Driver 347.25 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 16.13.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B455E95A-B804-439F-B533-336B1635AE97} =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA PhysX System Software 9.14.0702 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 16.13.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update 16.13.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 1.2.26 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: Orange Plug-in messagerie vocale 888 - (...) [HKLM][64Bits] -- {16E79B1D-D1C2-4CA6-8B23-F4D890E0DCB9}
O42 - Logiciel: Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass ( - (.Google, Inc..) [HKLM][64Bits] -- 092555911492C6959D2596D612F52DCA71881CA2 =>.Google, Inc.
O42 - Logiciel: PDFill PDF Editor with FREE Writer and FREE Tools - (.PlotSoft LLC.) [HKLM][64Bits] -- {D1399216-81B2-457C-A0F7-73B9A2EF6902} =>.PlotSoft LLC
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: SafeZone Stable 1.48.2066.101 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 1.48.2066.101 =>.AVAST Software s.r.o.®
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Skype™ 7.24 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB®
O42 - Logiciel: STCServ - (.Intel Corporation.) [HKLM][64Bits] -- {A954D353-9DAF-4916-8E71-F1E959EBCD1E} =>.Intel Corporation
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} =>.ASUS
O42 - Logiciel: WinRAR 5.31 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (98) - 81s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\ASIO
HKLM\SOFTWARE\Wow6432Node\AsLdr
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\AVAST Software
HKLM\SOFTWARE\Wow6432Node\Canon
HKLM\SOFTWARE\Wow6432Node\Canon_Inc_IC
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\ceQeekg
HKLM\SOFTWARE\Wow6432Node\CLSID
HKLM\SOFTWARE\Wow6432Node\ECAREME
HKLM\SOFTWARE\Wow6432Node\Foxit Software
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Lame For Audacity
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\MOVAVI
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Network Associates
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Orange
HKLM\SOFTWARE\Wow6432Node\PDFPrint
HKLM\SOFTWARE\Wow6432Node\Piriform
HKLM\SOFTWARE\Wow6432Node\PlotSoft
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SRS Labs
HKLM\SOFTWARE\Wow6432Node\Unisys Corporation
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WafCX
HKLM\SOFTWARE\Wow6432Node\WildTangent
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wondershare
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\AVAST Software
HKCU\SOFTWARE\BVRP Software
HKCU\SOFTWARE\Canon
HKCU\SOFTWARE\Caphyon
HKCU\SOFTWARE\ceQeekg
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\David Esperalta
HKCU\SOFTWARE\Downloader
HKCU\SOFTWARE\eBookConverter
HKCU\SOFTWARE\ECAREME
HKCU\SOFTWARE\Foxit Software
HKCU\SOFTWARE\Genius2
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GPL Ghostscript
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\MOVAVI
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\MTK
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OfficeTimelineEx
HKCU\SOFTWARE\PDFPrint
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\PlotSoft
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\RootGenius
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Spotify
HKCU\SOFTWARE\Thunderbird
HKCU\SOFTWARE\Toggle
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wondershare
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Canon

---\\ Contenu des dossiers Programmes (243) - 83s
O43 - CFD: 13/05/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 09/11/2015 - [] D -- C:\Program Files\Canon =>.Canon Inc.®
O43 - CFD: 09/11/2015 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc.®
O43 - CFD: 08/02/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files\DIFX
O43 - CFD: 10/05/2016 - [] D -- C:\Program Files\ea6db1c81c5c7cd31ecc39b09e842ac7
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files\Intel =>.Intel Corporation-Mobile Wireless Group®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\Intel Corporation =>.Intel(R) Wireless Display®
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 29/10/2014 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 29/10/2014 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation®
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 15/06/2016 - [] HD -- C:\Program Files\WindowsApps
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files\WindowsPowerShell
O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\Adobe {6B31649B23633A1431FE80105CBCCAE5}
O43 - CFD: 24/06/2015 - [0] D -- C:\Program Files (x86)\AGEIA Technologies
O43 - CFD: 15/06/2016 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Audacity
O43 - CFD: 09/11/2015 - [] D -- C:\Program Files (x86)\Canon =>.Canon Inc.®
O43 - CFD: 15/06/2016 - [] D -- C:\Program Files (x86)\ceQeekg =>PUP.Optional.vreXjvX
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 31/05/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 24/04/2016 - [0] D -- C:\Program Files (x86)\Coolmuster
O43 - CFD: 24/04/2016 - [] HD -- C:\Program Files (x86)\DrFoneAndroid_Temp
O43 - CFD: 26/02/2016 - [] D -- C:\Program Files (x86)\eBookConverter {1CAF6BE62898BE8FF15364876A8314AE}
O43 - CFD: 29/10/2014 - [] D -- C:\Program Files (x86)\Foxit PhantomPDF =>.Foxit Corporation®
O43 - CFD: 13/05/2016 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 29/05/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX®
O43 - CFD: 27/05/2016 - [] D -- C:\Program Files (x86)\Intel Android Device USB driver
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files (x86)\Lame For Audacity
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 12/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 12/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 16/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird
O43 - CFD: 16/10/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 14/10/2015 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 08/12/2015 - [] D -- C:\Program Files (x86)\Office Timeline {00C80171D15A779BFD47598F697B19FAE6}
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\Orange
O43 - CFD: 21/11/2015 - [] D -- C:\Program Files (x86)\PhotoFiltre 7
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\PlotSoft =>.PlotSoft LLC®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 29/10/2014 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 04/05/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 24/06/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 26/02/2016 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 24/04/2016 - [] D -- C:\Program Files (x86)\Wondershare =>.Shenzhen Wondershare Information Technology Co., Ltd.®
O43 - CFD: 13/06/2016 - [] D -- C:\Program Files (x86)\Zedeo
O43 - CFD: 16/06/2016 - [] D -- C:\Program Files (x86)\ZHPFix
O43 - CFD: 24/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 18/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 24/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 15/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
O43 - CFD: 13/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MX530 series
O43 - CFD: 29/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF
O43 - CFD: 26/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Android Device USB driver
O43 - CFD: 29/05/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Connect Center
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill
O43 - CFD: 28/05/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill_PDF_Tools
O43 - CFD: 21/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 04/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 24/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 18/03/2014 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 23/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 24/04/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 29/10/2014 - [] D -- C:\ProgramData\ASUS WebStorage
O43 - CFD: 29/10/2014 - [] D -- C:\ProgramData\ASUSLogos
O43 - CFD: 13/05/2016 - [] D -- C:\ProgramData\AVAST Software
O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 09/11/2015 - [0] D -- C:\ProgramData\Canon IJ Network Tool
O43 - CFD: 19/10/2015 - [] HD -- C:\ProgramData\CanonBJ
O43 - CFD: 19/10/2015 - [] HD -- C:\ProgramData\CanonIJETV
O43 - CFD: 19/10/2015 - [] HD -- C:\ProgramData\CanonIJFAX
O43 - CFD: 22/11/2015 - [] HD -- C:\ProgramData\CanonIJMIG
O43 - CFD: 22/11/2015 - [] HD -- C:\ProgramData\CanonIJScan
O43 - CFD: 09/11/2015 - [] D -- C:\ProgramData\CanonIJWSpt
O43 - CFD: 28/04/2016 - [] D -- C:\ProgramData\ceQeekg
O43 - CFD: 08/06/2016 - [0] D -- C:\ProgramData\Client
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\eBook Converter
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\Intel
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\Intel.sav
O43 - CFD: 08/12/2015 - [] D -- C:\ProgramData\IsolatedStorage
O43 - CFD: 11/06/2016 - [0] D -- C:\ProgramData\Mailbird
O43 - CFD: 04/11/2015 - [0] D -- C:\ProgramData\McAfee
O43 - CFD: 18/10/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 16/10/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 11/06/2016 - [] D -- C:\ProgramData\Movavi
O43 - CFD: 11/06/2016 - [] D -- C:\ProgramData\Movavi Video Converter 16
O43 - CFD: 26/01/2016 - [0] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 08/12/2015 - [] D -- C:\ProgramData\Office Timeline
O43 - CFD: 29/05/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 28/05/2016 - [0] D -- C:\ProgramData\PlotSoft
O43 - CFD: 10/04/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 24/06/2015 - [] D -- C:\ProgramData\Roaming
O43 - CFD: 11/06/2016 - [] D -- C:\ProgramData\Skype
O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\SP_FT_Logs
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 28/04/2016 - [0] D -- C:\ProgramData\uckt
O43 - CFD: 12/10/2015 - [] D -- C:\ProgramData\USBChargerPlus
O43 - CFD: 29/10/2014 - [] D -- C:\ProgramData\WebStorage
O43 - CFD: 26/01/2016 - [] D -- C:\ProgramData\WildTangent
O43 - CFD: 12/04/2016 - [] D -- C:\ProgramData\Wondershare
O43 - CFD: 12/04/2016 - [] D -- C:\ProgramData\wsr
O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 06/12/2015 - [] D -- C:\Program Files (x86)\Common Files\AV
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 29/05/2016 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 08/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 24/06/2015 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 30/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 10/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Wondershare
O43 - CFD: 04/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Adobe
O43 - CFD: 11/06/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Audacity
O43 - CFD: 13/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\AVAST Software
O43 - CFD: 26/02/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\calibre
O43 - CFD: 04/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Callnote
O43 - CFD: 22/11/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\Canon
O43 - CFD: 11/06/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\FossaMail
O43 - CFD: 09/11/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\Foxit Software
O43 - CFD: 10/04/2016 - [0] D -- C:\Users\Kheira\AppData\Roaming\HMYGSetting
O43 - CFD: 05/02/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Identities
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\Intel
O43 - CFD: 30/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\IsolatedStorage
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\Macromedia
O43 - CFD: 30/05/2016 - [] SD -- C:\Users\Kheira\AppData\Roaming\Microsoft
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Monitor
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\Mozilla
O43 - CFD: 22/01/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\NVIDIA
O43 - CFD: 10/04/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\PDAppFlex
O43 - CFD: 21/11/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\PhotoFiltre 7
O43 - CFD: 27/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Shuame
O43 - CFD: 12/06/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Skype
O43 - CFD: 04/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Slack
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Spotify
O43 - CFD: 28/10/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\Thunderbird
O43 - CFD: 12/06/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\vlc
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\WebStorage
O43 - CFD: 26/01/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\WildTangent
O43 - CFD: 16/10/2015 - [] D -- C:\Users\Kheira\AppData\Roaming\WinRAR
O43 - CFD: 10/04/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Wondershare
O43 - CFD: 16/06/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\ZHP
O43 - CFD: 04/05/2016 - [] D -- C:\Users\Kheira\AppData\Local\Adobe
O43 - CFD: 26/02/2016 - [] D -- C:\Users\Kheira\AppData\Local\Adobe_Systems_Incorporate
O43 - CFD: 12/10/2015 - [0] SHD -- C:\Users\Kheira\AppData\Local\Application Data
O43 - CFD: 08/12/2015 - [] D -- C:\Users\Kheira\AppData\Local\Apps
O43 - CFD: 08/12/2015 - [] D -- C:\Users\Kheira\AppData\Local\assembly
O43 - CFD: 05/02/2016 - [] D -- C:\Users\Kheira\AppData\Local\Callnote
O43 - CFD: 14/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\CEF
O43 - CFD: 28/04/2016 - [] D -- C:\Users\Kheira\AppData\Local\ceQeekg
O43 - CFD: 11/06/2016 - [] D -- C:\Users\Kheira\AppData\Local\converter
O43 - CFD: 28/05/2016 - [0] D -- C:\Users\Kheira\AppData\Local\Deployment
O43 - CFD: 30/05/2016 - [] D -- C:\Users\Kheira\AppData\Local\Diagnostics
O43 - CFD: 29/10/2015 - [0] SHD -- C:\Users\Kheira\AppData\Local\EmieSiteList
O43 - CFD: 29/10/2015 - [0] SHD -- C:\Users\Kheira\AppData\Local\EmieUserList
O43 - CFD: 11/06/2016 - [] D -- C:\Users\Kheira\AppData\Local\FossaMail
O43 - CFD: 29/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\Google
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\GWX
O43 - CFD: 12/10/2015 - [0] SHD -- C:\Users\Kheira\AppData\Local\Historique
O43 - CFD: 24/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\Macromedia
O43 - CFD: 10/02/2016 - [] D -- C:\Users\Kheira\AppData\Local\Microsoft
O43 - CFD: 04/03/2016 - [] D -- C:\Users\Kheira\AppData\Local\Microsoft Help
O43 - CFD: 11/06/2016 - [] D -- C:\Users\Kheira\AppData\Local\Movavi
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\Mozilla
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\NVIDIA
O43 - CFD: 12/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\NVIDIA Corporation
O43 - CFD: 13/06/2016 - [] D -- C:\Users\Kheira\AppData\Local\Packages
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Kheira\AppData\Local\Programs
O43 - CFD: 30/05/2016 - [] D -- C:\Users\Kheira\AppData\Local\Share Link
O43 - CFD: 26/01/2016 - [0] D -- C:\Users\Kheira\AppData\Local\Skype
O43 - CFD: 04/05/2016 - [] D -- C:\Users\Kheira\AppData\Local\slack
O43 - CFD: 28/05/2016 - [] D -- C:\Users\Kheira\AppData\Local\Spotify
O43 - CFD: 28/04/2016 - [] D -- C:\Users\Kheira\AppData\Local\SquirrelTemp
O43 - CFD: 16/06/2016 - [] D -- C:\Users\Kheira\AppData\Local\Temp
O43 - CFD: 12/10/2015 - [0] SHD -- C:\Users\Kheira\AppData\Local\Temporary Internet Files
O43 - CFD: 28/10/2015 - [] D -- C:\Users\Kheira\AppData\Local\Thunderbird
O43 - CFD: 13/06/2016 - [] D -- C:\Users\Kheira\AppData\Local\VirtualStore
O43 - CFD: 10/04/2016 - [] D -- C:\Users\Kheira\AppData\Local\Wondershare
O43 - CFD: 19/10/2015 - [0] D -- C:\Users\Kheira\AppData\Local\Programs\Common
O43 - CFD: 24/06/2015 - [] RD -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 24/06/2015 - [] RD -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 13/04/2016 - [] RD -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 05/02/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Callnote
O43 - CFD: 24/04/2016 - [0] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Coolmuster
O43 - CFD: 26/02/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ePub Converter
O43 - CFD: 22/08/2013 - [] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 21/11/2015 - [0] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 04/05/2016 - [0] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies
O43 - CFD: 04/05/2016 - [] RD -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 24/06/2015 - [] RD -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 26/02/2016 - [] D -- C:\Users\Kheira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 11/02/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft
O43 - CFD: 0 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Packages

---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 41s
O45 - LFCP:[MD5.61ECE4CDE3B68AC50C511BFA96CAD416] 08/02/2016 A -- C:\Windows\Prefetch\BOBROWSER.EXE-71B83A38.pf =>PUP.Optional.BoBrowser
O45 - LFCP:[MD5.B215BF3F3A73EF4653C8558FC507085D] 13/06/2016 A -- C:\Windows\Prefetch\WINTHRUSTER.EXE-DF375CCE.pf =>.Superfluous.WinThruster

---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - avast! Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software a.s.®

---\\ Liste des pilotes du système (72) - 9s
O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows®
O58 - SDL:2013/06/18 17:05:45 A . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\System32\drivers\agrsm64.sys [1146880] =>.LSI Corp
O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows®
O58 - SDL:2013/10/08 03:47:18 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\Windows\System32\drivers\AsHIDSwitch64.sys [20280] =>.ASUSTeK Computer Inc.®
O58 - SDL:2015/03/18 12:37:40 A . (.ASUS Corporation - Asus TP Filter Driver(X64).) -- C:\Windows\System32\drivers\AsusTP.sys [69904] =>.ASUSTeK Computer Inc.®
O58 - SDL:2016/05/30 15:41:31 A . (.AVAST Software - avast! HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [37656] =>.AVAST Software a.s.® (ALWIL Software)
O58 - SDL:2016/05/30 15:40:25 A . (.AVAST Software - avast! Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [37144] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:41:31 A . (.AVAST Software - avast! File System Minifilter for Windows 2.) -- C:\Windows\System32\drivers\aswMonFlt.sys [107792] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:39:27 A . (.AVAST Software - avast! Firewall Driver.) -- C:\Windows\System32\drivers\aswNetSec.sys [536312] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:41:31 A . (.AVAST Software - avast! WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [103064] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:41:31 A . (.AVAST Software - avast! Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [74544] =>.AVAST Software a.s.® (ALWIL Software)
O58 - SDL:2016/05/30 15:40:25 A . (.AVAST Software - avast! Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1070904] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:41:32 A . (.AVAST Software - avast! self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [465792] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:41:32 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [166432] =>.AVAST Software a.s.®
O58 - SDL:2016/05/30 15:41:32 A . (.AVAST Software - avast! VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [287528] =>.AVAST Software a.s.® (ALWIL Software)
O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2014/10/28 15:00:42 A . (.Motorola Solutions, Inc. - Bluetooth Auxiliary Driver.) -- C:\Windows\System32\drivers\btmaux.sys [141624] =>.Motorola Solutions Inc.®
O58 - SDL:2014/11/26 19:04:14 A . (.Motorola Solutions, Inc. - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\btmhsf.sys [1448248] =>.Motorola Solutions Inc.®
O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2014/09/18 20:36:14 A . (.Intel Corporation - DPTF ACPI Device (32-Bit).) -- C:\Windows\System32\drivers\dptf_cpu.sys [38720] =>.Intel(R) Software®
O58 - SDL:2014/09/18 20:36:14 A . (.Intel Corporation - DPTF ACPI Device (64-Bit).) -- C:\Windows\System32\drivers\dptf_pch.sys [38208] =>.Intel(R) Software®
O58 - SDL:2013/06/18 16:45:26 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1i63x64.sys [460288] =>.Intel Corporation
O58 - SDL:2014/09/18 20:36:20 A . (.Intel Corporation - DPTF ACPI Device (64-Bit).) -- C:\Windows\System32\drivers\esif_lf.sys [216360] =>.Intel(R) Software®
O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2014/10/07 08:09:42 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [673520] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2014/12/03 08:28:36 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) USB Driver.) -- C:\Windows\System32\drivers\ibtusb.sys [230128] =>.Intel Corporation-Wireless Connectivity Solutions®
O58 - SDL:2015/04/20 12:58:18 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4888368] =>.Intel Corporation - pGFX®
O58 - SDL:2015/03/24 13:48:58 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [460048] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/03/04 23:08:34 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [42288] =>.Intel(R) Wireless Display®
O58 - SDL:2014/10/16 05:27:46 A . (.Intel Corporation - Intel Collaborative Processor Performance C.) -- C:\Windows\System32\drivers\IntelPcc.sys [79528] =>.Intel(R) Software®
O58 - SDL:2015/03/04 23:08:34 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [30512] =>.Intel(R) Wireless Display®
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/08/10 14:38:44 A . (.McAfee, Inc. - McAfee ELAM Driver.) -- C:\Windows\System32\drivers\mfeelamk.sys [82072] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2014/12/08 13:05:54 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\Netwbw02.sys [3494680] =>.Intel Corporation-Wireless Connectivity Solutions®
O58 - SDL:2013/06/18 16:45:43 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwew02.sys [4649440] =>.Intel Corporation-Mobile Wireless Group®
O58 - SDL:2013/06/18 16:45:58 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\Netwsw00.sys [11518976] =>.Intel Corporation
O58 - SDL:2016/05/30 15:39:43 A . (.AVAST Software - avast! NG snapshot driver.) -- C:\Windows\System32\drivers\ngvss.sys [161760] =>.AVAST Software a.s.®
O58 - SDL:2015/01/10 10:07:48 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10274448] =>.NVIDIA Corporation®
O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows®
O58 - SDL:2014/10/03 21:23:02 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [38216] =>.NVIDIA Corporation®
O58 - SDL:2014/06/17 14:14:10 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [873688] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/05/26 12:55:32 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4468952] =>.Realtek Semiconductor Corp®
O58 - SDL:2014/02/27 03:53:38 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUVStor.sys [331992] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/12/08 06:00:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [122160] =>.DEVGURU CO LTD®
O58 - SDL:2015/12/08 06:00:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [214832] =>.DEVGURU CO LTD®
O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [40664] =>.OpenVPN Technologies, Inc.®
O58 - SDL:2015/02/25 15:15:40 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [129312] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2014/10/15 13:28:06 A . (.Windows (R) Win 7 DDK provider - usb3hub.sys.) -- C:\Windows\System32\drivers\usb3Hub.sys [213296] =>.Intel(R) Wireless Display®
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows®
O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2016/02/10 08:43:24 A . (.StdLib - StdLib.) -- C:\Windows\System32\drivers\{e6b8fdb8-8fe2-487c-bb7b-07e63eb56b49}Gw64.sys [48776] {3235D2ADDB333B08E6BCA0D67482E0E6} =>PUP.Optional.LinkiDoo

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (33) - 37s
O61 - LFC: 2016/06/15 17:43:03 A . (.ToolsLib.) -- C:\Users\Kheira\Downloads\adwcleaner_5.200.exe [3703360] {090323230C295BD623F42B911882691E}
O61 - LFC: 2016/06/12 15:40:28 A . (..) -- C:\Users\Kheira\Downloads\tools\curl.exe [0]
O61 - LFC: 2016/06/12 21:02:41 A . (..) -- C:\Users\Kheira\Downloads\tools\rtmpdump.exe [0]
O61 - LFC: 2016/06/12 15:46:30 A . (..) -- C:\Users\Kheira\Desktop\tools\curl.exe [0]
O61 - LFC: 2016/06/12 15:54:29 A . (..) -- C:\Users\Kheira\Desktop\Captvty\tools\curl.exe [0]
O61 - LFC: 2016/06/16 12:39:50 A . (..) -- C:\Users\Kheira\AppData\Roaming\sp_data.sys [165]
O61 - LFC: 2016/06/15 20:17:49 A . (.Evernote Corporation.) -- C:\Users\Kheira\AppData\Roaming\Mozilla\Firefox\Profiles\ej2p37et.Kheira\evernote_native.bin [196608]
O61 - LFC: 2016/06/13 13:31:13 A . (.Copyright © 2015.) -- C:\Users\Kheira\AppData\Local\Packages\Flipboard.Flipboard_3f5azkryzdbc4\AC\Microsoft\CLR_v4.0_32\NativeImages\PushNotificc0abb6c3#\51efceae5b968d1012c7927ee9eb150a\PushNotificationsHelper.ni.dll [107008]
O61 - LFC: 2016/06/13 13:31:11 A . (.Bit Stadium GmbH.) -- C:\Users\Kheira\AppData\Local\Packages\Flipboard.Flipboard_3f5azkryzdbc4\AC\Microsoft\CLR_v4.0_32\NativeImages\HockeySDK\db3aa3cec91c55fca2de2f4db49af39f\HockeySDK.ni.dll [77824]
O61 - LFC: 2016/06/13 13:31:11 A . (.Copyright © 2013.) -- C:\Users\Kheira\AppData\Local\Packages\Flipboard.Flipboard_3f5azkryzdbc4\AC\Microsoft\CLR_v4.0_32\NativeImages\Flipboard\16feb505e537222c776893508905e574\Flipboard.ni.exe [1758720]
O61 - LFC: 2016/06/13 13:30:28 A . (.Copyright © 2015.) -- C:\Users\Kheira\AppData\Local\Packages\Flipboard.Flipboard_3f5azkryzdbc4\AC\Microsoft\CLR_v4.0\NativeImages\PushNotificc0abb6c3#\696baf3bd7d7ae1d135cb17bb3b085a9\PushNotificationsHelper.ni.dll [158720]
O61 - LFC: 2016/06/13 13:31:07 A . (.Copyright © 2014.) -- C:\Users\Kheira\AppData\Local\Packages\Evernote.Evernote_q4d96b2w5wcc2\AC\Microsoft\CLR_v4.0_32\NativeImages\SQLite.WinRT\67300cd38125c77c28bfdb94eaf87513\SQLite.WinRT.ni.dll [1403904]
O61 - LFC: 2016/06/13 13:31:06 A . (.Copyright 2014.) -- C:\Users\Kheira\AppData\Local\Packages\Evernote.Evernote_q4d96b2w5wcc2\AC\Microsoft\CLR_v4.0_32\NativeImages\GoogleAnalytics.Core\3a7485c175a9465ac8f21eea8e79806f\GoogleAnalytics.Core.ni.dll [354816]
O61 - LFC: 2016/06/13 13:31:06 A . (.Copyright 2014.) -- C:\Users\Kheira\AppData\Local\Packages\Evernote.Evernote_q4d96b2w5wcc2\AC\Microsoft\CLR_v4.0_32\NativeImages\GoogleAnalytics\d18ad42f0348a3c6d5343b229504b14d\GoogleAnalytics.ni.dll [178176]
O61 - LFC: 2016/06/13 13:31:04 A . (.Copyright © 2015.) -- C:\Users\Kheira\AppData\Local\Packages\Evernote.Evernote_q4d96b2w5wcc2\AC\Microsoft\CLR_v4.0_32\NativeImages\Evernote.Windows\987e376d6e81a5985a1578c3acd3c9b7\Evernote.Windows.ni.exe [11201024]
O61 - LFC: 2016/06/13 13:30:38 A . (.Johan Laanstra.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Windows.UI.96b86f0f#\05be35c2afa4c8723d4b22e7d6f97226\Windows.UI.Interactivity.ni.dll [159232]
O61 - LFC: 2016/06/13 13:30:51 A . (.Copyright © 2015.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Portable.Web\6b3e73b87b67af3cb6a6f77a3e4a9b6e\Viber.Portable.Web.ni.dll [422400]
O61 - LFC: 2016/06/13 13:30:49 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Portabdf03d7c#\7ce87c6e15e37ea1d60f8141f9f09091\Viber.Portable.PhoneController.ni.dll [1021952]
O61 - LFC: 2016/06/13 13:30:39 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta7f14ff71#\a1db7e4f1ee2948b48732736e22932c0\Viber.Portable.ThirdParty.ni.dll [230400]
O61 - LFC: 2016/06/13 13:30:50 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta7d81fdab#\161b557e84a1a25c5c1ac6901a5a1f2d\Viber.Portable.SqliteProvider.ni.dll [486400]
O61 - LFC: 2016/06/13 13:30:44 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta61bc03bc#\1905fa6b152b429e0eb8315ad5c1d55d\Viber.Portable.Domain.ni.dll [220672]
O61 - LFC: 2016/06/13 13:30:42 A . (.Viber Media S.à r.l..) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta5aefabf2#\860da2f3d6b8ec8585adb7e9fe12b6da\Viber.Portable.Engine.ni.dll [4026880]
O61 - LFC: 2016/06/13 13:30:46 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta394649da#\2ad8167130d5bc3ce122e051ca9e7b00\Viber.Portable.Utilities.ni.dll [2880512]
O61 - LFC: 2016/06/13 13:30:51 A . (.Copyright © 2015.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Porta06857f05#\5010554ed1a57ffcee6e7dcf4074f52f\Viber.Portable.MainFlow.ni.dll [397312]
O61 - LFC: 2016/06/13 13:30:35 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Metro4e3ef3a9#\5f1205f43eb993b04dd9c10c5561e650\Viber.Metro.Infrastructure.ni.dll [626176]
O61 - LFC: 2016/06/13 13:30:37 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Metro.Toolkit\0017ebd16d407054faf7b7129c6b49b1\Viber.Metro.Toolkit.ni.dll [1475584]
O61 - LFC: 2016/06/13 13:30:34 A . (.Copyright © 2012.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Viber.Metro\a421c523665d922d4c4a65674663dfa8\Viber.Metro.ni.exe [5941760]
O61 - LFC: 2016/06/13 13:30:50 A . (.Copyright © 2015.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Postsharp.C112f42d3#\8b982207f84920f072491fd88a11f875\Postsharp.CustomTools.ni.dll [38400]
O61 - LFC: 2016/06/13 13:30:56 A . (.SharpCrafters s.r.o..) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\PostSharp\1d5383224e1ea12e557bdaa1e2a04263\PostSharp.ni.dll [724992]
O61 - LFC: 2016/06/13 13:30:36 A . (.Bit Stadium GmbH.) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\HockeyAppPCL\e72b1e397202913a54876c61ee724c27\HockeyAppPCL.ni.dll [212992]
O61 - LFC: 2016/06/13 13:30:39 A . (..) -- C:\Users\Kheira\AppData\Local\Packages\2414FC7A.Viber-FreePhoneCallsText_p61zvh252yqyr\AC\Microsoft\CLR_v4.0_32\NativeImages\Bing.Maps\d66f7ce14ae34b2b82ac7409010e517e\Bing.Maps.ni.dll [516608]
O61 - LFC: 2016/06/15 07:31:08 A . (..) -- C:\Users\Kheira\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [7195885]
O61 - LFC: 2016/06/15 21:07:56 A . (..) -- C:\Users\Kheira\AppData\Local\Adobe\Acrobat\DC\UserCache.bin [83572]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software

---\\ Recherche d'infection sur les navigateurs (3) - 62s
O69 - SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} - (Search Provided by Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {fcd9f10e-0daa-405f-bca0-0dd3f37c59d9} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (34) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1083904] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [228864] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3708416] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation

---\\ Scan Additionnel (7) - 0s
C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS
C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
C:\Windows\Prefetch\BOBROWSER.EXE-71B83A38.pf =>PUP.Optional.BoBrowser
C:\Windows\Prefetch\WINTHRUSTER.EXE-DF375CCE.pf =>.Superfluous.WinThruster
C:\Windows\System32\drivers\{e6b8fdb8-8fe2-487c-bb7b-07e63eb56b49}Gw64.sys =>PUP.Optional.LinkiDoo

---\\ Récapitulatif des éléments trouvés sur votre station (8) - 0s
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.vreXjvX
https://www.nicolascoolman.info/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS
https://www.nicolascoolman.info/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DNSUnlocker
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BoBrowser
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.WinThruster
http://www.nicolascoolman.fr/?p=62 =>PUP.Optional.LinkiDoo

~ End of the scan, 54336 items in 00h07mn52s (969)(0)

Publicité


Signaler le contenu de ce document

Publicité