cjoint

Publicité


Publicité

Commentaire : libdez-ZHPDIAG

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.6.14.104 Par Nicolas Coolman (2016/06/10)
~ Démarré par pompido (Administrator) (2016/07/13 23:12:24)
~ Site: http://www.nicolascoolman.com
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\ayoub\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\ayoub\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home Single Language, 64-bit (Build 10240)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v51.0.2704.103
MFIE: Mozilla Firefox 44.0.2 (x86 fr)
MSIE: Internet Explorer v11.0.10240.17022

---\\ Informations sur les produits Windows (7) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
~ Windows Partial Key : 6F4BT
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ Logiciels de protection (4) - 9s
Avira Antivirus v15.0.17.273
Avira Launcher v1.1.65.9690
Malwarebytes Anti-Malware version 2.2.1.1043
Windows Defender (Deactivate)

---\\ Surveillance de Logiciels (2) - 10s
Adobe Flash Player 22 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Logiciels de partage P2P (1) - 10s
µTorrent v3.4.7.42330

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4083.992 MB (38% free)
System Restore: Activé (Enable)
System drive C: has 177 GB () free of 461 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: POMPIDO
~ User Name: pompido
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 177 GB free of 461 GB (System)
~ Drive D: has 1 GB free of 13 GB

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 7s
[MD5.1550F64C237E1E1046B7C4302AB595D7] - 28/05/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4532304] =>.Microsoft Windows®
[MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 18/07/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [290312] =>.Microsoft Windows Publisher®
[MD5.D56268A343A9447F9545B06381F2CDEF] - 24/06/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3119616] =>.Microsoft Corporation
[MD5.DA32F9BFA7851AD4247353EA03755DE6] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation
[MD5.ECB1943967424DFB96E03F6A098434EF] - 19/07/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation
[MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [680256] =>.Microsoft Windows®
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] =>.Microsoft Windows®
[MD5.8C795953726C7D2DE72CE4748208C5ED] - 10/07/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] =>.Microsoft Windows®
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows®
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation
[MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation
[MD5.55D5C5B0B9F9B65BD452136A384E6EAC] - 23/02/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation
[MD5.27E248CD861AFED4DF0C48F4C853E7F0] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] =>.Microsoft Corporation
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] =>.Microsoft Corporation
[MD5.1BD49789354B1CFE28D96DC232071A02] - 28/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [272896] =>.Microsoft Corporation
[MD5.224A508EDBD7B493E581B0462EC91E52] - 24/06/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2115936] =>.Microsoft Windows®
[MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation
[MD5.2521520142F7853E39028AE6BD66E072] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation
[MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] =>.Microsoft Corporation
[MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] =>.Microsoft Windows®
[MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (33) - 5s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - AGS Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: HP SimplePass Cachedrv Service (Cachedrv server) . (...) - C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe
O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink - CyberLink Media Server Monitor Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.®
O23 - Service: CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink - CyberLink Media Server Service.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.®
O23 - Service: egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) - C:\Program Files (x86)\EagleGet\EGMonitor.exe
O23 - Service: Freemake Improver (Freemake Improver) . (.Freemake - FreemakeUtilsService.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake
O23 - Service: (FreemakeVideoCapture) . (.Ellora Assets Corp. - CaptureLibService.) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.Ellora Assets Corp.
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company®
O23 - Service: HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company®
O23 - Service: Hotspot Shield Service (hshld) . (.AnchorFree Inc. - Hotspot Shield 5.4.5.) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc.
O23 - Service: IAM Aegean Modem Device Helper (IAM Aegean Modem Device Helper) . (...) - C:\Program Files (x86)\My Connection\BackgroundService\ServiceManager.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: KMS Server Service (KMSServerService) . (.My Digital Life Forums - KMS Server Emulator Service.) - C:\WINDOWS\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: HP SimplePass Service (omniserv) . (.Softex Inc. - HP SimplePass Service.) - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe =>.Softex Inc.
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (45) - 29s

SR - Auto [25/06/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [13/07/2016] [ 270016] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [13/08/2015] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics®
SR - Auto [05/04/2016] [ 2021592] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SS - Auto [02/06/2016] [ 970656] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [02/06/2016] [ 467016] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [02/06/2016] [ 467016] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG®
SS - Auto [02/06/2016] [ 1435704] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [01/06/2016] [ 302680] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [14/10/2013] [ 109568] HP SimplePass Cachedrv Service (Cachedrv server) . (...) - C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe
SS - Demand [15/10/2015] [ 291744] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [05/09/2013] [ 77576] CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.®
SR - Auto [05/09/2013] [ 298760] CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.®
SR - Auto [21/04/2016] [ 238592] egGetSvc (egGetSvc) . (.Copyright (C) EagleGet 2014~2015.) - C:\Program Files (x86)\EagleGet\EGMonitor.exe
SS - Demand [29/04/2015] [ 1045256] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Acresso Software Inc.®
SS - Auto [03/06/2016] [ 108032] Freemake Improver (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.Freemake
SR - Auto [03/06/2016] [ 9216] (FreemakeVideoCapture) . (.Ellora Assets Corp..) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.Ellora Assets Corp.
SS - Auto [06/05/2015] [ 107848] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [06/05/2015] [ 107848] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [28/04/2015] [ 1102472] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company®
SR - Auto [26/04/2016] [ 28552] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company®
SR - Auto [01/12/2014] [ 573704] HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company®
SR - Auto [28/06/2016] [ 2757752] Hotspot Shield Service (hshld) . (.AnchorFree Inc..) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc.
SS - Demand [28/06/2016] [ 103168] Hotspot Shield Tray Service (HssTrayService) . (...) - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE {2C55C805B14E57423E47788CF4B66377}
SR - Auto [14/03/2012] [ 53312] IAM Aegean Modem Device Helper (IAM Aegean Modem Device Helper) . (...) - C:\Program Files (x86)\My Connection\BackgroundService\ServiceManager.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation®
SR - Auto [15/10/2015] [ 330136] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation
SR - Auto [27/08/2013] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
SS - Demand [27/08/2013] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Auto [16/09/2013] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [16/09/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [17/05/2015] [ 211968] KMS Server Service (KMSServerService) . (.My Digital Life Forums.) - C:\WINDOWS\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico
SR - Auto [16/09/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
SR - Auto [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SR - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [28/06/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [14/10/2013] [ 87552] HP SimplePass Service (omniserv) . (.Softex Inc..) - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe =>.Softex Inc.
SR - Auto [13/08/2015] [ 294616] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
SS - Demand [06/07/2016] [ 1450064] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SS - Demand [19/02/2010] [ 517096] Adobe SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
SR - Auto [24/06/2016] [ 268920] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
SR - Auto [22/08/2011] [ 79872] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.
SR - Auto [22/08/2011] [ 846448] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
SR - Auto [22/08/2011] [11837440] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe

---\\ Tâches planifiées en automatique (33) - 7s
[MD5.BE1A1E8EEA50BE1E1A78EB3D7F4CE8CF] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1110232] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.32B31B696CB8E8F380831DFEB80A67E4] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270016] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.60D05F375378CD63AD03C0CD42B872CD] [APT] [AdobeAAMUpdater-1.0-MicrosoftAccount-ayoub-tijani456@hotmail.com] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.C746CD166372F3C6F364B62F2C2C8B20] [APT] [AutoKMS] (.CODYQX4.) -- C:\WINDOWS\AutoKMS\AutoKMS.exe [3738624] (.Activate.) =>HackTool.AutoKMS
[MD5.BA90221541E206773C2662083B72ED5E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6775512] (.Activate.) =>.Piriform Ltd®
[MD5.4E9AF25BA5E8219310E384AEA5B0EED8] [APT] [CLMLSvc_P2G8] (.CyberLink.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576] (.Activate.) =>.CyberLink Corp.®
[MD5.227E138E4A6D8D3A1CC9C3EA0D1874A5] [APT] [CLVDLauncher] (.CyberLink Corp..) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008] (.Activate.) =>.CyberLink Corp.®
[MD5.4CDD442D3FFFA0B4BAEEAD3F001B4223] [APT] [Core Temp Autostart ayoub] (.Copyright (C) 2006 - 2016 Alcpu.) -- C:\Program Files\Core Temp\Core Temp.exe [897240] (.Activate.) {3020CDC2DB9ED0BE866D8392BB5C4D0E}
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] (.Activate.) =>.Google Inc®
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] (.Activate.) =>.Google Inc®
[MD5.DF35A7BB8530611B8F8B3787396E6AB4] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233760] (.Activate.) =>.Intel® Services Manager®
[MD5.DF35A7BB8530611B8F8B3787396E6AB4] [APT] [ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon] (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [233760] (.Activate.) =>.Intel® Services Manager®
[MD5.B8935167AD138FEEF6B419064FFCA7D1] [APT] [Synaptics TouchPad Enhancements] (.Synaptics Incorporated.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4263544] (.Activate.) =>.Synaptics Incorporated®
[MD5.00000000000000000000000000000000] [APT] [{18588680-6FA9-4D32-ADFE-041530442154}] (...) -- C:\Users\ayoub\AppData\Local\TNT2\2.0.0.1983\TNT2User.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{76C76491-D225-43A1-A410-EC10985E9A68}] (...) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Office Setup Controller\setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{FBFD30EF-CB0F-4A0A-8AE9-7D387AF691D4}] (...) -- C:\Users\ayoub\Downloads\Compressed\ALL.YOU.NEED.IN.ENGLISH_By nadosh2525\Grammar_1\TSCC.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.A1E81820C9FE16D343213B6778CE460F] [APT] [Hewlett-Packard] (.HP Inc..) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [201080] (.Activate.) =>.Hewlett-Packard Company®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [918] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [922] =>.Google Inc®
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4562] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated®
O39 - APT: AdobeAAMUpdater-1.0-MicrosoftAccount-ayoub-tijani456@hotmail.com - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-ayoub-tijani456@hotmail.com [3664] =>.Adobe Systems Incorporated®
O39 - APT: AutoKMS - (.CODYQX4.) -- C:\WINDOWS\System32\Tasks\AutoKMS [3808] =>HackTool.AutoKMS
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2858] =>.Piriform Ltd®
O39 - APT: CLMLSvc_P2G8 - (.CyberLink.) -- C:\WINDOWS\System32\Tasks\CLMLSvc_P2G8 [3160] =>.CyberLink Corp.®
O39 - APT: CLVDLauncher - (.CyberLink Corp..) -- C:\WINDOWS\System32\Tasks\CLVDLauncher [3160] =>.CyberLink Corp.®
O39 - APT: Core Temp Autostart ayoub - (.Copyright (C) 2006 - 2016 Alcpu.) -- C:\WINDOWS\System32\Tasks\Core Temp Autostart ayoub [2906] {3020CDC2DB9ED0BE866D8392BB5C4D0E}
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3748] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3980] =>.Google Inc®
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d [4046] =>.Intel® Services Manager®
O39 - APT: ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon - (.Intel Corporation.) -- C:\WINDOWS\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon [3800] =>.Intel® Services Manager®
O39 - APT: Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements [2990] =>.Synaptics Incorporated®

---\\ Processus lancés (57) - 10s
[MD5.1300D100EF891C98504DE38624D3F639] - (.Softex Inc. - HP SimplePass Service.) -- C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [87552] [PID.1048] =>.Softex Inc.
[MD5.DEE40211AA700A0A9D7F95EC38DE0714] - (...) -- C:\Program Files\Hewlett-Packard\SimplePass\cachesrvr.exe [109568] [PID.1068]
[MD5.C746CD166372F3C6F364B62F2C2C8B20] - (.CODYQX4 - AutoKMS.) -- C:\WINDOWS\AutoKMS\AutoKMS.exe [3738624] [PID.1368] =>HackTool.AutoKMS
[MD5.75909533EECD0CD9D5974B59474AA6C0] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\System32\igfxCUIService.exe [330136] [PID.1388] =>.Intel Corporation - pGFX®
[MD5.C397166D21F4CD59D5AF339F8938CD0D] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [294616] [PID.1568] =>.Realtek Semiconductor Corp®
[MD5.DC64C1C5948E69DD5815BD5421DDED9B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.1660] =>.Realtek Semiconductor Corp®
[MD5.BD65021AB0EC790AECC503C394E61BA4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\sched.exe [467016] [PID.1964] =>.Avira Operations GmbH & Co. KG®
[MD5.BD65021AB0EC790AECC503C394E61BA4] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\avguard.exe [467016] [PID.1896] =>.Avira Operations GmbH & Co. KG®
[MD5.C17171E63E84F5711DF23B8F1E7A100E] - (.Adobe Systems, Incorporated - AGS Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592] [PID.1960] =>.Adobe Systems Incorporated®
[MD5.1E13E1BCAC098D84854BF4E7DA216C90] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files (x86)\EagleGet\EGMonitor.exe [238592] [PID.2060]
[MD5.68E7DEA59FDEF410BAF29FDB5B7A6EEF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2148] =>.Adobe Systems, Incorporated®
[MD5.382269039F3C88B63880B5B19F3BAA2A] - (.Ellora Assets Corp. - CaptureLibService.) -- C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [9216] [PID.2156] =>.Ellora Assets Corp.
[MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.2180] =>.Andrea Electronics®
[MD5.F14317082B49575B64365028D88230D7] - (...) -- C:\Program Files (x86)\My Connection\BackgroundService\ServiceManager.exe [53312] [PID.2208] =>.JRD COMMUNICATION (SHENZHEN) LTD®
[MD5.28C5E3C59B130D1C9932AB3A588BD4E5] - (.Hewlett-Packard Development Company, L.P. - HP WMI Service.) -- c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [573704] [PID.2216] =>.Hewlett-Packard Company®
[MD5.EB4DFE1644911BD343529E28411DF416] - (.My Digital Life Forums - KMS Server Emulator Service.) -- C:\WINDOWS\KMSServerService\KMS Server Service.exe [211968] [PID.2244]
[MD5.F1A89A34388B5626F1548D393B23ECB1] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608] [PID.2348] =>.Malwarebytes Corporation®
[MD5.9611577752E293259C7DCE19E9026362] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464] [PID.2356] =>.Malwarebytes Corporation®
[MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.2460] =>.Intel(R) Corporation
[MD5.15D2B7A72F975046DD6BDFBA25E64493] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [268920] [PID.2544] =>.Synaptics Incorporated®
[MD5.B5BB4513C3206D1D4F8A0F276AE424FA] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [846448] [PID.2748] =>.VMware, Inc.®
[MD5.DED90079ADD2661664E86D2DDD8DA405] - (.AnchorFree Inc. - Hotspot Shield 5.4.5.) -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [2757752] [PID.2796] {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc.
[MD5.9C57AD1165D9F4866EBA6C18E91A8A14] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [302680] [PID.2964] =>.Avira Operations GmbH & Co. KG®
[MD5.0FC29ADB3F634ED3E535A76395B470B5] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [79872] [PID.2972] =>.VMware, Inc.
[MD5.0B82C21C79BC67ECF416F1E1655E5F65] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [11837440] [PID.3808]
[MD5.1E13E1BCAC098D84854BF4E7DA216C90] - (.Copyright (C) EagleGet 2014~2015 - EGMonitor.) -- C:\Program Files (x86)\EagleGet\EGMonitor.exe [238592] [PID.4120]
[MD5.8E98E3EC16D2641005B4748CD330FB45] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9926112] [PID.4300] =>.Malwarebytes Corporation®
[MD5.B8935167AD138FEEF6B419064FFCA7D1] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4263544] [PID.4628] =>.Synaptics Incorporated®
[MD5.56FE3C885B0901601549E23E7A435984] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler.exe [250008] [PID.5040] =>.Google Inc®
[MD5.A425CDCEB9D26E9A5ABAFA259799D447] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.30.3\GoogleCrashHandler64.exe [312472] [PID.4284] =>.Google Inc®
[MD5.80A11F070E9EEFCB48B357E9E0E2C7D1] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\System32\igfxEM.exe [541600] [PID.3368] =>.Intel Corporation - pGFX®
[MD5.B6C52FADECE225339D02B6923E930B5C] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\System32\igfxHK.exe [258456] [PID.796] =>.Intel Corporation - pGFX®
[MD5.01AB3932B44D1C58F2BF12AE2369B1BA] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [236656] [PID.2448] =>.Synaptics Incorporated®
[MD5.CDFEAA94AD3E362BCE09E0556B92EC84] - (...) -- C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe [65024] [PID.1948]
[MD5.6E8DBA64A14C22F92DD94AD7A0887324] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\Antivirus\avshadow.exe [1036576] [PID.3444] =>.Avira Operations GmbH & Co. KG®
[MD5.4CDD442D3FFFA0B4BAEEAD3F001B4223] - (.Copyright (C) 2006 - 2016 Alcpu - CPU temperature and system information util.) -- C:\Program Files\Core Temp\Core Temp.exe [897240] [PID.6832] {3020CDC2DB9ED0BE866D8392BB5C4D0E}
[MD5.B40BD1D06E8BF04355A0B954936EC62F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8496344] [PID.4136] =>.Realtek Semiconductor Corp®
[MD5.DC64C1C5948E69DD5815BD5421DDED9B] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1393880] [PID.6624] =>.Realtek Semiconductor Corp®
[MD5.88DA2E50CBCD4C062632EE34923C5913] - (.Hewlett-Packard - HP SimplePass Application.) -- C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe [2758200] [PID.7152] =>.Softex Incorporated®
[MD5.B5F08FCC816B933D8EC1FACCE62B2A12] - (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [155704] [PID.7164] =>.Softex Incorporated®
[MD5.1C8F76268DE368A288C6AFB2F00F348F] - (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\opbhobrokerdsktop.exe [155704] [PID.6444] =>.Softex Incorporated®
[MD5.39AF1CDEAFA4FC9D5185FBD9F4D141C4] - (.Octoshape ApS - Main program for Octoshape client.) -- C:\Users\ayoub\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe [107800] [PID.6268] {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS
[MD5.535833DA47D695208FC65591385FE1F6] - (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [509192] [PID.6960] =>.Hewlett-Packard Company®
[MD5.C29D8BC04AEB4A237ED07EFE2847E614] - (.Copyright (C) 2001 Analog Devices \n(c) 2005 SAGEM - ADI RAS setup Application.) -- C:\WINDOWS\adirasx64.exe [253008] [PID.7072] {17E885E30185F79AAFDF01CCF61E18D1}
[MD5.5178A245B4C35A7C12AC4142AC5E8DC0] - (...) -- C:\Program Files (x86)\My Connection\BackgroundService\ModemListener.exe [126056] [PID.5660] =>.JRD COMMUNICATION (SHENZHEN) LTD®
[MD5.573B14904E1ED1AF161F7D9F832252D0] - (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [75776] [PID.3180]
[MD5.0FE9CBDD78FFD967F6ABB52F4ED38627] - (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [151776] [PID.6388] =>.Avira Operations GmbH & Co. KG®
[MD5.C4668A2D015BFC941394010662CC21CC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8810200] [PID.212] =>.Piriform Ltd®
[MD5.4E9AF25BA5E8219310E384AEA5B0EED8] - (.CyberLink - CyberLink MediaLibrary Service.) -- C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576] [PID.7220] =>.CyberLink Corp.®
[MD5.F2099D2D7B6085D94FB597FA39356D08] - (.CyberLink - CyberLink Media Server Monitor Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [77576] [PID.7492] =>.CyberLink Corp.®
[MD5.CA27F20A09B6500482AC2F5B3DB488CF] - (.CyberLink - CyberLink Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [298760] [PID.5348] =>.CyberLink Corp.®
[MD5.E60B8915796784DE61CE1AD17DDC5B17] - (.Hewlett-Packard Company - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [28552] [PID.5600] =>.Hewlett-Packard Company®
[MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.4800] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.6304] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.3DE66F47365AA8CEB18B1EE272F4FEBA] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.1292] =>.Intel Corporation - Software and Firmware Products®
[MD5.4FA12350B04AAECF0D3893ADFB65101C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\ayoub\Desktop\ZHPDiag3(1).exe [2216960] [PID.8348] =>.Nicolas Coolman
[MD5.8FE11A6B735F7C904E1DC0EF7EA79B78] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [392136] [PID.9108] =>.Mozilla Corporation®

---\\ Google Chrome, Démarrage,Recherche,Extensions (16) - 2s
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [eopekjehpibhfpjjcokfmhcaeiclddih] Invite All (for Facebook)
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ipmkfpcnmccejididiaagpgchgjfajgp] __MSG_extName__
G2 - GCE: Preference [User Data\Default] [kaebhgioafceeldhgjmendlfhbfjefmo] EagleGet Free Downloader
G2 - GCE: Preference [User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] Application Launcher for Drive (by Google)
G2 - GCE: Preference [User Data\Default] [nlbejmccbhkncgokjcmghpfloaajcffj] __MSG_name__
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (11) - 3s
M0 - MFSP: prefs.js [pompido - e3v3i08p.default] http://google.com/
P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.FRA
P2 - EXT FILE: (...) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\firefox@mega.co.nz.xpi
P2 - EXT FILE: (...) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\safeguard-secure-search.xml
P2 - EXT: (.Avira - Segurança do navegador Avira.) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\abs@avira.com =>.Avira
P2 - EXT: (.V@no - Cookies Manager+.) -- C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} =>.V@no
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@t.garena.com/garenatalk] - (.Garena.) -- C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll =>.Garena

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (13) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (30)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Applications lancées au démarrage du système (39) - 4s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [SimplePass] . (.Hewlett-Packard - HP SimplePass Application.) -- C:\Program Files\Hewlett-Packard\SimplePass\HPSmplPass.exe =>.Softex Incorporated®
O4 - HKLM\..\Run: [OPBHOBroker] . (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe =>.Softex Incorporated®
O4 - HKLM\..\Run: [OPBHOBrokerDesktop] . (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe =>.Softex Incorporated®
O4 - HKLM\..\Run: [adiras] . (.Copyright (C) 2001 Analog Devices \n(c) 2005 SAGEM - ADI RAS setup Application.) -- C:\WINDOWS\adiras.exe {17E885E30185F79AAFDF01CCF61E18D1}
O4 - HKLM\..\Run: [Windows Mobile Device Center] . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\WINDOWS\WindowsMobile\wmdc.exe =>.Microsoft Corporation®
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc®
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKCU\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - HKCU\..\Run: [AdobeBridge] (Orphean)
O4 - HKCU\..\Run: [GarenaPlus] C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe (.not file.)
O4 - HKCU\..\Run: [Octoshape Streaming Services] . (.Octoshape ApS - Main program for Octoshape client.) -- C:\Users\ayoub\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKLM\..\Wow6432Node\Run: [YouCam Service] . (.CyberLink Corp. - CyberLink YouCam Service.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe =>.CyberLink Corp.®
O4 - HKLM\..\Wow6432Node\Run: [vmware-tray] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.Hewlett-Packard Development Company, L.P. - HP Message Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe =>.Hewlett-Packard Company®
O4 - HKLM\..\Wow6432Node\Run: [adiras] . (.Copyright (C) 2001 Analog Devices \n(c) 2005 SAGEM - ADI RAS setup Application.) -- C:\WINDOWS\adirasx64.exe {17E885E30185F79AAFDF01CCF61E18D1}
O4 - HKLM\..\Wow6432Node\Run: [IAM Aegean ModemListener] . (...) -- C:\Program Files (x86)\My Connection\BackgroundService\ModemListener.exe =>.JRD COMMUNICATION (SHENZHEN) LTD®
O4 - HKLM\..\Wow6432Node\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe
O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira Launcher.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Wow6432Node\Run: [avgnt] . (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS5ServiceManager] . (.Adobe Systems Incorporated - Adobe CS5 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\WINDOWS\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [GoogleDriveSync] . (.Google - Google Drive.) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc®
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [EagleGet] . (.EagleGet.com - EagleGet Free Downloader.) -- C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [AdobeBridge] (Orphean)
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [GarenaPlus] C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe (.not file.)
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [Octoshape Streaming Services] . (.Octoshape ApS - Main program for Octoshape client.) -- C:\Users\ayoub\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS
O4 - HKUS\S-1-5-21-2428007030-3290115269-3721999086-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®

---\\ Raccourcis Global Startup (48) - 20s
O4 - GS\Desktop [Administrateur]: Express English.lnk . (.ONH1986 - Express English.) C:\Program Files (x86)\ONH1986\Express English\Express English.exe
O4 - GS\Desktop [Administrateur]: Google Drive.lnk . (...) C:\Users\ayoub\Google Drive
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\TaskBar [Administrateur]: Adobe Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files (x86)\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrateur]: Adobe Photoshop CC 2015 (32 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrateur]: Assassin's Creed IV - Black Flag.lnk . (...) C:\Games\Assassin's Creed IV - Black Flag\Launcher.exe
O4 - GS\TaskBar [Administrateur]: Core Temp.lnk . (...) C:\Program Files (x86)\Core Temp\Core Temp.exe
O4 - GS\TaskBar [Administrateur]: Defunct.lnk . (...) C:\WINDOWS\Defunct\Defunct_x86.exe
O4 - GS\TaskBar [Administrateur]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - GS\TaskBar [Administrateur]: Express English Dictionary.lnk . (.Express English - Express English Dictionary.) C:\Users\ayoub\Desktop\Dictionary Express English.exe
O4 - GS\TaskBar [Administrateur]: Far Cry 3.lnk . (.Ubisoft Entertainment - Far Cry 3.) C:\Program Files (x86)\R.G. Mechanics\Far Cry 3\bin\farcry3.exe =>.UBISOFT ENTERTAINMENT INC.®
O4 - GS\TaskBar [Administrateur]: Freemake Video Downloader.lnk . (.Freemake - Freemake Video Downloader.) C:\Program Files (x86)\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe =>.Ellora Assets Corporation®
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: gta_sa.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\GTA San Andreas\gta_sa.exe
O4 - GS\TaskBar [Administrateur]: Hein 4.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\Hein.exe
O4 - GS\TaskBar [Administrateur]: Mafia II.lnk . (.2K Czech - Mafia II Application.) C:\Program Files (x86)\Black_Box\Mafia II\pc\Mafia2.exe
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrateur]: pes6.lnk . (.KONAMI - pes6.exe.) C:\Users\ayoub\Desktop\telechargement\GAME\Perfect Patch\PES6.exe =>.Konami
O4 - GS\TaskBar [Administrateur]: Play Sniper Elite 3.lnk . (...) C:\Users\ayoub\Sniper Elite 3\bin\Launcher.exe
O4 - GS\TaskBar [Administrateur]: Speed.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\NFS\Need for Speed Most Wanted\Speed.exe
O4 - GS\TaskBar [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ayoub\Desktop\ZHPDiag3(1).exe =>.Nicolas Coolman
O4 - GS\Desktop [pompido]: Express English.lnk . (.ONH1986 - Express English.) C:\Program Files (x86)\ONH1986\Express English\Express English.exe
O4 - GS\Desktop [pompido]: Google Drive.lnk . (...) C:\Users\ayoub\Google Drive
O4 - GS\Quicklaunch [pompido]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [pompido]: VMware Workstation.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.®
O4 - GS\Quicklaunch [pompido]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\ayoub\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\TaskBar [pompido]: Adobe Illustrator CS6.lnk . (.Adobe Systems Inc. - Adobe Illustrator CS6.) C:\Program Files (x86)\Adobe\Adobe Illustrator CS6\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [pompido]: Adobe Photoshop CC 2015 (32 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2015 (32 Bit)\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [pompido]: Assassin's Creed IV - Black Flag.lnk . (...) C:\Games\Assassin's Creed IV - Black Flag\Launcher.exe
O4 - GS\TaskBar [pompido]: Core Temp.lnk . (...) C:\Program Files (x86)\Core Temp\Core Temp.exe
O4 - GS\TaskBar [pompido]: Defunct.lnk . (...) C:\WINDOWS\Defunct\Defunct_x86.exe
O4 - GS\TaskBar [pompido]: EagleGet.lnk . (.EagleGet.com - EagleGet Free Downloader.) C:\Program Files (x86)\EagleGet\EagleGet.exe
O4 - GS\TaskBar [pompido]: Express English Dictionary.lnk . (.Express English - Express English Dictionary.) C:\Users\ayoub\Desktop\Dictionary Express English.exe
O4 - GS\TaskBar [pompido]: Far Cry 3.lnk . (.Ubisoft Entertainment - Far Cry 3.) C:\Program Files (x86)\R.G. Mechanics\Far Cry 3\bin\farcry3.exe =>.UBISOFT ENTERTAINMENT INC.®
O4 - GS\TaskBar [pompido]: Freemake Video Downloader.lnk . (.Freemake - Freemake Video Downloader.) C:\Program Files (x86)\Freemake\Freemake Video Downloader\FreemakeVideoDownloader.exe =>.Ellora Assets Corporation®
O4 - GS\TaskBar [pompido]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [pompido]: gta_sa.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\GTA San Andreas\gta_sa.exe
O4 - GS\TaskBar [pompido]: Hein 4.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\Hein.exe
O4 - GS\TaskBar [pompido]: Mafia II.lnk . (.2K Czech - Mafia II Application.) C:\Program Files (x86)\Black_Box\Mafia II\pc\Mafia2.exe
O4 - GS\TaskBar [pompido]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [pompido]: pes6.lnk . (.KONAMI - pes6.exe.) C:\Users\ayoub\Desktop\telechargement\GAME\Perfect Patch\PES6.exe =>.Konami
O4 - GS\TaskBar [pompido]: Play Sniper Elite 3.lnk . (...) C:\Users\ayoub\Sniper Elite 3\bin\Launcher.exe
O4 - GS\TaskBar [pompido]: Speed.lnk . (...) C:\Users\ayoub\Desktop\telechargement\GAME\NFS\Need for Speed Most Wanted\Speed.exe
O4 - GS\TaskBar [pompido]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\ayoub\Desktop\ZHPDiag3(1).exe =>.Nicolas Coolman
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\Startup [Public]: Hyperappel du Petit Larousse 2010.lnk . (.Copyright (C) 2000 - Application MFC hyperappel.) C:\Program Files (x86)\Larousse\Petit Larousse 2010\bin\Hyperappel.exe

---\\ Modification Domaine/Adresses DNS (5) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{49351A80-A448-4A23-AC7C-29C39F11A17B}: NameServer = 62.251.229.237 62.251.229.223
O17 - HKLM\System\CCS\Services\Tcpip\..\{5f38f559-6451-40b0-b7af-26ad2a255484}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{73367c69-7196-487a-8125-2010b09c8e62}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{d49cc982-c76d-4f3d-8ef5-1bbcc3e832b0}: DhcpNameServer = 8.8.8.8

---\\ Protocole additionnel (24) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\WINDOWS\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\WINDOWS\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\WINDOWS\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\WINDOWS\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\WINDOWS\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\WINDOWS\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\WINDOWS\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (130) - 23s
O42 - Logiciel: "Assassin's Creed IV - Black Flag" - (...) [HKLM][64Bits] -- {959CF39B-F3FA-4A80-AECF-8AF6BA639276}_is1
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 3D English Dictionary - (.3D Computer Center.) [HKLM][64Bits] -- {63DA793F-E504-4671-93B6-DCFD9442FC13}
O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} =>.Igor Pavlov
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe After Effects CS5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DA1B174B-4297-467C-9EF8-0AB8D4D5171E} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FE23D063-934D-4829-A0D8-00634CE79B4A} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 22 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Illustrator CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {4869414E-7AEA-4C8E-BE1C-8D40977FD517} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CC 2015 (32 Bit) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {2614BC86-757D-4293-9E25-E4E16F370A9E} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Premiere Pro CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {38C72D42-0672-43B1-9E05-E7631684F9A1} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824184103} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation
O42 - Logiciel: Avira Antivirus v15.0.17.273 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Launcher v1.1.65.9690 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {3d9e0476-943f-4962-99dc-b9c937a43840} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Launcher v1.1.65.9690 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {C1578C4F-5453-44FE-A172-01331906BF18} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Core Temp 1.1 - (.Alcpu.) [HKLM][64Bits] -- {086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1 =>.Alcpu
O42 - Logiciel: CPUID CPU-Z 1.76 - (...) [HKLM][64Bits] -- CPUID CPU-Z_is1
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink Corp.®
O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink Corp.®
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: Defunct - (...) [HKLM][64Bits] -- Defunct_is1
O42 - Logiciel: DisableMSDefender - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {74FE39A0-FB76-47CD-84BA-91E2BBB17EF2} =>.Hewlett-Packard Company
O42 - Logiciel: EagleGet version 2.0.4.10 - (.EagleGet.) [HKLM][64Bits] -- {F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1 =>.EagleGet
O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7} =>.Hewlett-Packard Company
O42 - Logiciel: Express English - (.ONH1986.) [HKLM][64Bits] -- Express English3.9.1
O42 - Logiciel: Far Cry 3 - (.R.G. Mechanics, Panky.) [HKLM][64Bits] -- Far Cry 3_R.G. Mechanics_is1
O42 - Logiciel: Freemake Video Downloader - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Downloader_is1 =>.Ellora Assets Corporation
O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DE3A9DC5-9A5D-6485-9662-347162C7E4CA} =>.Adobe Systems Incorporated
O42 - Logiciel: French App Name - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 =>.Adobe Systems Incorporated
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3} =>.Microsoft Corporation
O42 - Logiciel: Gestionnaire pour appareils Windows Mobile - (.Microsoft Corporation.) [HKLM][64Bits] -- {626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B} =>.Microsoft Corporation
O42 - Logiciel: GNS3 1.2.3 - (...) [HKLM][64Bits] -- GNS3
O42 - Logiciel: Google Chrome - (.Google Inc‎.‎.) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Drive - (.Google, Inc..) [HKLM][64Bits] -- {709316AD-161C-4D5C-9AE7-0B3A822DA271} =>.Google, Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company
O42 - Logiciel: Hotspot Shield 5.4.5 - (.AnchorFree Inc..) [HKLM][64Bits] -- HotspotShield {2C55C805B14E57423E47788CF4B66377} =>.Anchorfree Inc.
O42 - Logiciel: Hotspot Shield 5.4.5 Embedded - (.Buildbot.) [HKLM][64Bits] -- {AF599C42-A2E5-4251-B7EE-4925A167F821}
O42 - Logiciel: HP Connected Music (Meridian - installer) - (.Meridian Audio Ltd.) [HKLM][64Bits] -- StartHPConnectedMusic =>.Meridian Audio Ltd®
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {C9EF1AAF-B542-41C8-A537-1142DA5D4AEC} =>.Hewlett-Packard
O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {CCE5C597-03EA-423E-BA80-6FCD280A8465} =>.Hewlett-Packard
O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} =>.Hewlett-Packard
O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {FD49537C-C3A6-4F8D-93E6-68C778A1E192} =>.Hewlett-Packard
O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C} =>.Hewlett-Packard
O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- {314FAD12-F785-4471-BCE8-AB506642B9A1} =>.Hewlett-Packard
O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1} =>.Hewlett-Packard
O42 - Logiciel: HP Support Solutions Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {ED5CE45D-842B-4C18-A002-87E16EA39BB3} =>.Hewlett-Packard Company
O42 - Logiciel: HP System Event Utility - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {3EDAF5B5-0CA9-4967-B103-FBFF1162C336} =>.Hewlett-Packard Company
O42 - Logiciel: HP Utility Center - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {7A75E042-0D30-43C2-BD2A-684F4BE38FF7} =>.Hewlett-Packard Company
O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {EFA01423-3857-468C-B7B6-F30AA08E50BC} =>.Hewlett-Packard Company
O42 - Logiciel: Inst5675 - (.Softex Inc..) [HKLM][64Bits] -- {2DE6247C-7077-451B-8BA7-FFD1A2ABBB47} =>.Softex Inc.
O42 - Logiciel: Inst5676 - (.Softex Inc..) [HKLM][64Bits] -- {878F6913-7421-4713-97F7-0A736EE2A188} =>.Softex Inc.
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {0EC7F9CC-4741-45AE-9F55-6E9343F726F5} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} =>.Intel Corporation
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {E5FAF48A-145F-4B33-A062-DCFAAFAE5D41} =>.Intel Corporation
O42 - Logiciel: Intel® RealSense™ SDK 2014 Runtime (x64): Core - (.Intel Corporation.) [HKLM][64Bits] -- {37D41A97-6B02-4C30-8753-85107BE1D674} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} =>.Intel Corporation
O42 - Logiciel: Kodi - (.XBMC-Foundation.) [HKCU][64Bits] -- Kodi =>.XBMC-Foundation
O42 - Logiciel: Longman Dictionary of Contemporary English 5th Edition - (...) [HKLM][64Bits] -- NSIS_ldoce5
O42 - Logiciel: Mafia II version 1.0 - (.2K Games.) [HKLM][64Bits] -- {4F5FB47E-14DE-45B4-85E3-11CD5E497KA3}_is1 =>.2K Games
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Microsoft .NET Execution Environment (DNX) 1-rc1 (x64) for .NET Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {884c9296-7b31-3db0-87d8-5571d0bfce64} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Execution Environment (DNX) 1-rc1 (x64) for .NET Framework 4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0af01a07-ccb7-3765-b479-31f6588c7982} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Version Manager (x64) 1.0.0-rc1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4ec36977-42b9-3c18-a692-b9dee7404484} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Server Speech Platform Runtime (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {22CB8ED7-DF57-4864-BD04-F63B9CE4B494} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Server Speech Text to Speech Voice (fr-FR, Hortense) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9B9D928F-97D5-4D95-9A71-EE9B1805BADE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 44.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0.2 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: NirSoft Wireless Network Watcher - (...) [HKLM][64Bits] -- NirSoft Wireless Network Watcher
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} =>.NVIDIA Corporation
O42 - Logiciel: Octoshape Streaming Services - (.Octoshape ApS.) [HKCU][64Bits] -- Octoshape Streaming Services {3F230254014E1FB24E0D0F84A88D3EBE} =>.Octoshape ApS
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated
O42 - Logiciel: Petit Larousse 2010 - (...) [HKLM][64Bits] -- {422FADA9-FED2-41D7-B5FA-472BB98B7784}
O42 - Logiciel: Ralink Bluetooth Stack64 - (.Mediatek.) [HKLM][64Bits] -- {8A69F02D-A72B-AEE6-1CD3-6B05B9F9DD83} =>.Mediatek
O42 - Logiciel: Ralink RT3290 802.11bgn Wi-Fi Adapter - (.Mediatek.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} =>.Macrovision Corporation®
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek Ethernet Controller All-In-One Windows Driver - (.Realtek.) [HKLM][64Bits] -- {F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: SAGEM F@st 800-840 - (.SAGEM.) [HKLM][64Bits] -- {4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F} =>.Macrovision Corporation®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated
O42 - Logiciel: tools-freebsd - (.VMware, Inc..) [HKLM][64Bits] -- {003BFBBD-6C67-419E-A24D-0DCAFC3A5249} =>.VMware, Inc.
O42 - Logiciel: tools-linux - (.VMware, Inc..) [HKLM][64Bits] -- {D102611A-6466-4101-A51D-51069303AC65} =>.VMware, Inc.
O42 - Logiciel: tools-netware - (.VMware, Inc..) [HKLM][64Bits] -- {197597A7-AD33-4898-9D8E-73066818B464} =>.VMware, Inc.
O42 - Logiciel: tools-solaris - (.VMware, Inc..) [HKLM][64Bits] -- {AB1C87CB-1807-4CF0-B4C2-CEE14C18CDB4} =>.VMware, Inc.
O42 - Logiciel: tools-windows - (.VMware, Inc..) [HKLM][64Bits] -- {FFD9383C-01D5-4897-A954-43AF599AED30} =>.VMware, Inc.
O42 - Logiciel: tools-winPre2k - (.VMware, Inc..) [HKLM][64Bits] -- {AE0F62A7-A1A2-407F-9F4C-48939BD9AD8D} =>.VMware, Inc.
O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{8B3A877E-1B73-464A-AD21-9F26A0682AC6} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB3115261) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D8E86AF8-E495-4DC1-A058-7E69AA96AA8A} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB3115261) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{D8E86AF8-E495-4DC1-A058-7E69AA96AA8A} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2015 (KB3115261) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D8E86AF8-E495-4DC1-A058-7E69AA96AA8A} =>.Microsoft Corporation®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VmciSockets - (.VMware, Inc..) [HKLM][64Bits] -- {528E2373-AE49-4802-B4A8-326BBFDAD6A0} =>.VMware, Inc.
O42 - Logiciel: VMware Workstation - (.VMware, Inc.) [HKLM][64Bits] -- VMware_Workstation =>.VMware, Inc
O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {0D94F75A-0EA6-4951-B3AF-B145FA9E05C6} =>.VMware, Inc.
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies
O42 - Logiciel: YTD Video Downloader 5.7.1 - (.GreenTree Applications SRL.) [HKLM][64Bits] -- {1a413f37-ed88-4fec-9666-5c48dc4b7bb7} =>.Superfluous.GreenTreeApp
O42 - Logiciel: معرض الصور - (.Microsoft Corporation.) [HKLM][64Bits] -- {6F77C156-7660-4CEC-8793-97D80D5BFEC0} =>.Microsoft Corporation

---\\ HKCU & HKLM Software Keys (129) - 23s
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\Aegean
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Analog Devices
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\AVG
HKLM\SOFTWARE\Wow6432Node\Avira
HKLM\SOFTWARE\Wow6432Node\AviraSpeedup
HKLM\SOFTWARE\Wow6432Node\CyberLink
HKLM\SOFTWARE\Wow6432Node\Debug
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\EA Games
HKLM\SOFTWARE\Wow6432Node\EagleGet
HKLM\SOFTWARE\Wow6432Node\EasyBoot Systems
HKLM\SOFTWARE\Wow6432Node\Freemake
HKLM\SOFTWARE\Wow6432Node\Garena
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\Havas Interactive
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\HotspotShield
HKLM\SOFTWARE\Wow6432Node\HotspotShield MSI
HKLM\SOFTWARE\Wow6432Node\Huawei technologies
HKLM\SOFTWARE\Wow6432Node\IAM Aegean Modem Service
HKLM\SOFTWARE\Wow6432Node\IDM
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager
HKLM\SOFTWARE\Wow6432Node\InterVideo
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\KONAMI
HKLM\SOFTWARE\Wow6432Node\KONAMIPES6
HKLM\SOFTWARE\Wow6432Node\Lake
HKLM\SOFTWARE\Wow6432Node\LanTricks
HKLM\SOFTWARE\Wow6432Node\Larousse
HKLM\SOFTWARE\Wow6432Node\Lavasoft
HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Macrovision
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\McAfee
HKLM\SOFTWARE\Wow6432Node\McAfee.com
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\NSIS_ldoce5
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\ONH1986
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Piriform
HKLM\SOFTWARE\Wow6432Node\PowerPivot
HKLM\SOFTWARE\Wow6432Node\Ralink Corporation
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\SAGEM
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SWiSHzone.com
HKLM\SOFTWARE\Wow6432Node\ThinPrint
HKLM\SOFTWARE\Wow6432Node\TuneUp
HKLM\SOFTWARE\Wow6432Node\Ubisoft
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\VMware, Inc.
HKLM\SOFTWARE\Wow6432Node\WinPcap
HKLM\SOFTWARE\Wow6432Node\X-AVCSD
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\7-Zip
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\ALI213
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\AVG
HKCU\SOFTWARE\Avira
HKCU\SOFTWARE\AviraSpeedup
HKCU\SOFTWARE\Besier 3D-Edutainment
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\CamStudioOpenSource for Nick
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\Clubic
HKCU\SOFTWARE\CyberLink
HKCU\SOFTWARE\Cygwin
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\EagleGet
HKCU\SOFTWARE\EasyBoot Systems
HKCU\SOFTWARE\EMU
HKCU\SOFTWARE\Freemake
HKCU\SOFTWARE\French ????? ???? ????? -????? ???? Dictionnaire français arabe arabe français.exe
HKCU\SOFTWARE\FreshlySqueezed
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Kodi
HKCU\SOFTWARE\Lexmark
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MCAFEE
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Northcode Inc
HKCU\SOFTWARE\Octoshape
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Odin Game Studio
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Rbf
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Remedy Entertainment
HKCU\SOFTWARE\Resplendence Sp
HKCU\SOFTWARE\SecuROM
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Softex
HKCU\SOFTWARE\SWiSHzone.com
HKCU\SOFTWARE\Synaptics
HKCU\SOFTWARE\TechSmith
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Ubisoft
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\Adobe
HKCU\SOFTWARE\AppDataLow\Software\PasswordBox
HKCU\SOFTWARE\AppDataLow\Software\ThinPrint

---\\ Contenu des dossiers Programmes (352) - 182s
O43 - CFD: 05/07/2015 - [] D -- C:\Program Files\3D Driving-School
O43 - CFD: 02/11/2013 - [] D -- C:\Program Files\7-Zip
O43 - CFD: 09/05/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd®
O43 - CFD: 25/05/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 03/07/2016 - [] D -- C:\Program Files\Core Temp {3020CDC2DB9ED0BE866D8392BB5C4D0E}
O43 - CFD: 23/04/2016 - [] D -- C:\Program Files\CPUID =>.CPUID®
O43 - CFD: 30/04/2016 - [] D -- C:\Program Files\DNX =>.Windows Phone®
O43 - CFD: 07/04/2015 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 07/06/2015 - [] D -- C:\Program Files\GNS3
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files\Hewlett-Packard
O43 - CFD: 25/05/2016 - [] D -- C:\Program Files\Intel
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 30/04/2016 - [] D -- C:\Program Files\Microsoft DNX
O43 - CFD: 17/05/2015 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 24/06/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files\Microsoft SQL Server
O43 - CFD: 21/12/2015 - [] D -- C:\Program Files\Microsoft.NET
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 14/05/2016 - [0] D -- C:\Program Files\R.G. Catalyst
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 30/01/2016 - [] D -- C:\Program Files\WhySoSlow =>.Daniel Terhell®
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 13/07/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 13/07/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation®
O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files\WindowsPowerShell
O43 - CFD: 20/06/2016 - [] D -- C:\Program Files\WinPcap =>.CACE Technologies, Inc.®
O43 - CFD: 06/05/2016 - [] AD -- C:\Program Files\Wireshark
O43 - CFD: 01/06/2015 - [] AD -- C:\Program Files (x86)\3d_Dic
O43 - CFD: 11/06/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 05/05/2016 - [] D -- C:\Program Files (x86)\Adobe Media Player
O43 - CFD: 27/04/2015 - [] D -- C:\Program Files (x86)\Anuman Interactive
O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\Avira =>.Avira Operations GmbH & Co. KG®
O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Black_Box {75658E3C8112D2CC4D4337417BE8B567}
O43 - CFD: 10/04/2015 - [] AD -- C:\Program Files (x86)\Cisco Packet Tracer 6.0.1
O43 - CFD: 02/07/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 15/04/2015 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corp.®
O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\directx
O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\Disc Soft
O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\EagleGet
O43 - CFD: 06/06/2015 - [] D -- C:\Program Files (x86)\Ela-Salaty
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Freemake =>.Microsoft Corporation®
O43 - CFD: 18/03/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 31/12/2015 - [] AD -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company®
O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Hotspot Shield {2C55C805B14E57423E47788CF4B66377}
O43 - CFD: 02/11/2013 - [] AD -- C:\Program Files (x86)\HPConnectedMusic =>.Meridian Audio Ltd®
O43 - CFD: 31/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp®
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX®
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\Internet Mobile
O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\Kodi
O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Larousse =>.Microsoft Corporation®
O43 - CFD: 10/05/2015 - [] D -- C:\Program Files (x86)\Longman
O43 - CFD: 13/07/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 24/06/2016 - [] AD -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation®
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 21/12/2015 - [] AD -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 02/07/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 28/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\MSECache
O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\My Connection =>.JRD COMMUNICATION (SHENZHEN) LTD®
O43 - CFD: 11/06/2016 - [] D -- C:\Program Files (x86)\NirSoft
O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 21/05/2015 - [] D -- C:\Program Files (x86)\ONH1986
O43 - CFD: 07/04/2015 - [] RD -- C:\Program Files (x86)\Online Services
O43 - CFD: 01/07/2016 - [] D -- C:\Program Files (x86)\Opera
O43 - CFD: 03/05/2016 - [] D -- C:\Program Files (x86)\Photoshop Cs6
O43 - CFD: 05/07/2016 - [] D -- C:\Program Files (x86)\R.G. Mechanics =>.UBISOFT ENTERTAINMENT INC.®
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Ralink Corporation =>.Ralink Technology Corporation®
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp®
O43 - CFD: 05/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 18/04/2015 - [] D -- C:\Program Files (x86)\SAGEM {17E885E30185F79AAFDF01CCF61E18D1}
O43 - CFD: 07/07/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve®
O43 - CFD: 25/05/2016 - [0] D -- C:\Program Files (x86)\SWiSH Max4
O43 - CFD: 13/08/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 01/05/2016 - [0] D -- C:\Program Files (x86)\Tonec Inc., Copyright © 1999 - 2015
O43 - CFD: 17/05/2015 - [] D -- C:\Program Files (x86)\TV 3L PC
O43 - CFD: 29/04/2015 - [] AD -- C:\Program Files (x86)\UltraISO {11211B6C1D7687D789B2B9118C0D9622C42F}
O43 - CFD: 16/05/2015 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 12/04/2015 - [] AD -- C:\Program Files (x86)\VMware =>.VMware, Inc.®
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 02/11/2013 - [] AD -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 13/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3D English Dictionary
O43 - CFD: 07/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 05/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe
O43 - CFD: 03/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assassin's Creed IV - Black Flag
O43 - CFD: 23/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Networking Academy
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer
O43 - CFD: 21/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
O43 - CFD: 03/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp
O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
O43 - CFD: 08/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defunct
O43 - CFD: 04/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EagleGet
O43 - CFD: 20/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 04/07/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GNS3
O43 - CFD: 02/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 31/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Larousse
O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Longman
O43 - CFD: 06/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mafia II
O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 13/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 24/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
O43 - CFD: 01/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\My Connection
O43 - CFD: 21/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
O43 - CFD: 05/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840
O43 - CFD: 21/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
O43 - CFD: 25/05/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 25/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 28/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Michonne Episode 1
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 11/07/2016 - [] D -- C:\ProgramData\ALI213
O43 - CFD: 09/05/2016 - [0] D -- C:\ProgramData\ALM
O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 20/05/2015 - [] D -- C:\ProgramData\AVG
O43 - CFD: 13/03/2016 - [] D -- C:\ProgramData\Avira
O43 - CFD: 11/02/2016 - [] D -- C:\ProgramData\BDLogging
O43 - CFD: 04/05/2016 - [] D -- C:\ProgramData\BlueStacksSetup
O43 - CFD: 07/04/2015 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 02/07/2016 - [] HD -- C:\ProgramData\Common Files
O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 08/06/2015 - [] D -- C:\ProgramData\CyberLink
O43 - CFD: 16/05/2015 - [0] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\DAEMON Tools Ultra
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 04/05/2016 - [] D -- C:\ProgramData\EagleGet
O43 - CFD: 29/04/2015 - [] D -- C:\ProgramData\FLEXnet
O43 - CFD: 20/06/2016 - [] D -- C:\ProgramData\Freemake
O43 - CFD: 14/05/2016 - [] D -- C:\ProgramData\Garena
O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\GarenaMessenger
O43 - CFD: 22/04/2015 - [] D -- C:\ProgramData\GNU
O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 06/07/2016 - [] D -- C:\ProgramData\Hotspot Shield
O43 - CFD: 10/04/2015 - [0] D -- C:\ProgramData\IDM
O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\install_clap
O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Intel
O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\KONAMI
O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 25/05/2016 - [] D -- C:\ProgramData\McAfee
O43 - CFD: 07/04/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 21/12/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 30/04/2016 - [] D -- C:\ProgramData\Microsoft DNX
O43 - CFD: 13/07/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
O43 - CFD: 07/04/2015 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 05/07/2016 - [] D -- C:\ProgramData\Orbit
O43 - CFD: 24/06/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Ralink Driver
O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 21/12/2015 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 12/07/2016 - [] D -- C:\ProgramData\RogueKiller
O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Rosetta Stone
O43 - CFD: 16/05/2015 - [] D -- C:\ProgramData\Rosetta Stone Backups
O43 - CFD: 05/07/2016 - [] SHD -- C:\ProgramData\SecuROM
O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 06/06/2015 - [] D -- C:\ProgramData\Solarwinds
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\Steam
O43 - CFD: 07/04/2015 - [] D -- C:\ProgramData\Synaptics
O43 - CFD: 26/02/2014 - [] D -- C:\ProgramData\Temp
O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 24/07/2015 - [] AD -- C:\ProgramData\VMware
O43 - CFD: 09/05/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 09/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Common Files\CyberLink
O43 - CFD: 04/05/2016 - [] D -- C:\Program Files (x86)\Common Files\EagleGet
O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Common Files\EZB Systems
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared
O43 - CFD: 22/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 29/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared
O43 - CFD: 21/12/2015 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 26/02/2014 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 07/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 25/05/2016 - [] D -- C:\Program Files (x86)\Common Files\SWiSHzone.com
O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 12/04/2015 - [] D -- C:\Program Files (x86)\Common Files\VMware
O43 - CFD: 02/11/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard
O43 - CFD: 11/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Acapela Group
O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Adobe
O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\AVG
O43 - CFD: 13/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Avira
O43 - CFD: 17/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\BitTorrent Sync
O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\com.rosettastone.languagetraining
O43 - CFD: 27/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\CyberLink
O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\DAEMON Tools Ultra
O43 - CFD: 01/05/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\DMCache
O43 - CFD: 04/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\EagleGet
O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Far Cry 3
O43 - CFD: 14/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Garena
O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\GarenaPlus
O43 - CFD: 17/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\GNS3
O43 - CFD: 29/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\gnupg
O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Hewlett-Packard
O43 - CFD: 17/03/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\hpqlog
O43 - CFD: 22/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Identities
O43 - CFD: 18/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\InstallShield
O43 - CFD: 31/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Kodi
O43 - CFD: 10/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\ldoce5
O43 - CFD: 11/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Lingoversity
O43 - CFD: 01/06/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Macromedia
O43 - CFD: 06/05/2016 - [] SD -- C:\Users\ayoub\AppData\Roaming\Microsoft
O43 - CFD: 10/12/2015 - [0] D -- C:\Users\ayoub\AppData\Roaming\Moonchild Productions
O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Mozilla
O43 - CFD: 06/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Naturalsoft
O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Octoshape
O43 - CFD: 01/07/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\Opera Software
O43 - CFD: 06/07/2016 - [] SHD -- C:\Users\ayoub\AppData\Roaming\Pr
O43 - CFD: 11/02/2016 - [0] D -- C:\Users\ayoub\AppData\Roaming\QuickScan
O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\RHEng =>.Superfluous.Conduit
O43 - CFD: 05/07/2016 - [] RHD -- C:\Users\ayoub\AppData\Roaming\SecuROM
O43 - CFD: 14/05/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Skype
O43 - CFD: 09/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 28/06/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Steam
O43 - CFD: 02/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\StokedBigAir
O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\SWiSH Max4
O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Synaptics
O43 - CFD: 08/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\uTorrent
O43 - CFD: 12/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\vlc
O43 - CFD: 16/06/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\VMware
O43 - CFD: 13/07/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\ZHP
O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\1BN_Software_&_IT_Solutio
O43 - CFD: 06/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\2K Games
O43 - CFD: 13/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Adobe
O43 - CFD: 06/08/2015 - [0] SHD -- C:\Users\ayoub\AppData\Local\Application Data
O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Avg
O43 - CFD: 13/03/2016 - [] D -- C:\Users\ayoub\AppData\Local\Avira
O43 - CFD: 03/05/2016 - [0] D -- C:\Users\ayoub\AppData\Local\AviraSpeedup
O43 - CFD: 04/05/2016 - [] D -- C:\Users\ayoub\AppData\Local\BlueStacks
O43 - CFD: 18/07/2015 - [] D -- C:\Users\ayoub\AppData\Local\CEF
O43 - CFD: 29/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Chromium
O43 - CFD: 10/02/2016 - [] D -- C:\Users\ayoub\AppData\Local\Comms
O43 - CFD: 08/06/2015 - [] D -- C:\Users\ayoub\AppData\Local\CyberLink
O43 - CFD: 19/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\Diagnostics
O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Disc_Soft_Ltd
O43 - CFD: 05/10/2015 - [0] D -- C:\Users\ayoub\AppData\Local\ElevatedDiagnostics
O43 - CFD: 11/05/2015 - [] SHD -- C:\Users\ayoub\AppData\Local\EmieBrowserModeList
O43 - CFD: 04/05/2016 - [0] SHD -- C:\Users\ayoub\AppData\Local\EmieSiteList
O43 - CFD: 04/05/2016 - [0] SHD -- C:\Users\ayoub\AppData\Local\EmieUserList
O43 - CFD: 04/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\EMU
O43 - CFD: 20/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\FreemakeVideoDownloader
O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Geckofx
O43 - CFD: 23/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\GNU
O43 - CFD: 18/03/2016 - [] D -- C:\Users\ayoub\AppData\Local\Google
O43 - CFD: 01/06/2015 - [] D -- C:\Users\ayoub\AppData\Local\GWX
O43 - CFD: 04/02/2016 - [] D -- C:\Users\ayoub\AppData\Local\Hewlett-Packard
O43 - CFD: 06/08/2015 - [0] SHD -- C:\Users\ayoub\AppData\Local\Historique
O43 - CFD: 27/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\HPConnectedMusic
O43 - CFD: 28/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Intel_Corporation
O43 - CFD: 10/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\ldoce5
O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Macromedia
O43 - CFD: 29/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Mega Limited
O43 - CFD: 29/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\MegaDownloader
O43 - CFD: 21/12/2015 - [] D -- C:\Users\ayoub\AppData\Local\Microsoft
O43 - CFD: 30/12/2015 - [] D -- C:\Users\ayoub\AppData\Local\Microsoft Help
O43 - CFD: 08/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\MicrosoftEdge
O43 - CFD: 09/12/2015 - [] D -- C:\Users\ayoub\AppData\Local\Moonchild Productions
O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Mozilla
O43 - CFD: 06/08/2015 - [0] D -- C:\Users\ayoub\AppData\Local\NetworkTiles
O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Local\Octoshape
O43 - CFD: 01/07/2016 - [0] D -- C:\Users\ayoub\AppData\Local\Opera Software
O43 - CFD: 06/05/2016 - [] D -- C:\Users\ayoub\AppData\Local\Packages
O43 - CFD: 06/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\Popcorn-Time-Community
O43 - CFD: 07/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Power2Go8
O43 - CFD: 10/04/2015 - [] D -- C:\Users\ayoub\AppData\Local\Programs
O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\Publishers
O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\PunkBuster
O43 - CFD: 05/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Rockstar Games
O43 - CFD: 03/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Setup Integrity Check
O43 - CFD: 06/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\SKIDROW
O43 - CFD: 20/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\SkinSoft
O43 - CFD: 10/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Skype
O43 - CFD: 16/05/2015 - [] D -- C:\Users\ayoub\AppData\Local\Smart_PC_Soft
O43 - CFD: 11/07/2016 - [] D -- C:\Users\ayoub\AppData\Local\Sniper3
O43 - CFD: 25/04/2016 - [] D -- C:\Users\ayoub\AppData\Local\Steam
O43 - CFD: 13/07/2016 - [] AD -- C:\Users\ayoub\AppData\Local\Temp
O43 - CFD: 06/08/2015 - [0] SHD -- C:\Users\ayoub\AppData\Local\Temporary Internet Files
O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\TileDataLayer
O43 - CFD: 29/06/2016 - [] D -- C:\Users\ayoub\AppData\Local\VirtualStore
O43 - CFD: 17/03/2016 - [] D -- C:\Users\ayoub\AppData\Local\VMware
O43 - CFD: 01/08/2015 - [] D -- C:\Users\ayoub\AppData\Local\Windows Live
O43 - CFD: 10/04/2015 - [0] D -- C:\Users\ayoub\AppData\Local\Programs\Common
O43 - CFD: 10/07/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 06/08/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 21/12/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 21/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike
O43 - CFD: 09/03/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
O43 - CFD: 21/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life
O43 - CFD: 21/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS
O43 - CFD: 01/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
O43 - CFD: 26/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kodi
O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Longman
O43 - CFD: 10/07/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 11/06/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher
O43 - CFD: 25/05/2016 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Octoshape Streaming Services
O43 - CFD: 06/08/2015 - [] D -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ONH1986
O43 - CFD: 03/06/2016 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 10/07/2015 - [] RD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\ayoub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\dcpsvc
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Intel
O43 - CFD: 12/08/2015 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages
O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\TrueKey

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\ayoub\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Liste des pilotes du système (88) - 17s
O58 - SDL:2015/07/10 11:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows®
O58 - SDL:2007/02/07 17:50:58 A . (.Analog Deivces - USB Firmware loader.) -- C:\WINDOWS\System32\drivers\adildrx64.sys [58264] =>.Ikanos Communications, Inc.®
O58 - SDL:2007/02/07 17:51:18 A . (.Analog Devices Inc. - ADSL USB Driver.) -- C:\WINDOWS\System32\drivers\adiusbawx64.sys [169496] =>.Ikanos Communications, Inc.®
O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows®
O58 - SDL:2011/06/20 10:00:48 A . (.TCT International Mobile Ltd - USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\AlcatelOTUsbnet.sys [138752] =>.TCT International Mobile Ltd
O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows®
O58 - SDL:2016/03/17 12:19:44 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\WINDOWS\System32\drivers\avgntflt.sys [128664] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2016/06/02 15:43:49 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\WINDOWS\System32\drivers\avipbb.sys [146712] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2016/02/18 10:49:19 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\WINDOWS\System32\drivers\avkmgr.sys [35488] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2016/06/02 15:43:49 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\WINDOWS\System32\drivers\avnetflt.sys [78208] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2015/07/10 11:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2015/07/10 11:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2013/03/05 12:01:42 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [91712] =>.CyberLink Corp.®
O58 - SDL:2013/03/05 07:22:20 A . (.CyberLink Corporation - CyberLink WebCam Virtual Driver.) -- C:\WINDOWS\System32\drivers\clwvd.sys [41408] =>.CyberLink Corp.®
O58 - SDL:2015/05/20 21:36:33 A . (.Connectify - NDIS filter driver.) -- C:\WINDOWS\System32\drivers\cnnctfy2.sys [31344] =>.Connectify®
O58 - SDL:2016/04/10 16:04:54 A . (.eagleGet - eagleGet Network Filter.) -- C:\WINDOWS\System32\drivers\eagleGet.sys [86840] =>.EagleGet
O58 - SDL:2015/07/10 11:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows®
O58 - SDL:2011/08/22 00:11:26 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [39024] =>.VMware, Inc.®
O58 - SDL:2015/07/10 11:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] =>.Intel Corporation - Client Components Group®
O58 - SDL:2013/08/22 11:08:42 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [644968] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows®
O58 - SDL:2016/01/28 11:20:10 N . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [209056] =>.Tonec Inc.®
O58 - SDL:2015/10/15 14:56:32 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3797424] =>.Intel Corporation - pGFX®
O58 - SDL:2015/08/21 11:50:48 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] =>.Intel(R) Wireless Display®
O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] =>.Intel(R) Wireless Display®
O58 - SDL:2011/06/20 10:00:48 A . (.TCT International Mobile Ltd - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\jrdusbser.sys [120832] =>.TCT International Mobile Ltd
O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation®
O58 - SDL:2016/07/13 23:09:51 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation®
O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows®
O58 - SDL:2015/06/12 05:59:24 A . (.MediaTek Inc. - MediaTek 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2554528] =>.MEDIATEK INC.®
O58 - SDL:2011/02/11 22:23:34 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.®
O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows®
O58 - SDL:2016/01/11 13:12:58 A . (.Resplendence Software Projects Sp. - Resplendence WhySoSlow Monitoring Driver.) -- C:\WINDOWS\System32\drivers\rspWhy64.sys [33536] =>.Daniel Terhell®
O58 - SDL:2013/08/15 23:28:42 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [830680] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/06/03 02:27:02 A . (.Ralink Technology, Corp. - Ralink Bluetooth Adapter.) -- C:\WINDOWS\System32\drivers\rtbth.sys [1219200] =>.MEDIATEK INC.®
O58 - SDL:2015/08/13 02:30:07 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4506840] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/06/05 03:12:54 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [310528] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/26 23:54:36 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUStor.sys [263896] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/09/20 06:10:18 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [30448] =>.Synaptics Incorporated®
O58 - SDL:2016/06/24 02:10:12 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [76408] =>.Synaptics Incorporated®
O58 - SDL:2016/04/30 00:22:10 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [52904] =>.Synaptics Incorporated®
O58 - SDL:2016/06/24 02:10:12 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [79992] =>.Synaptics Incorporated®
O58 - SDL:2016/05/20 12:15:39 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [129152] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2016/05/20 12:15:32 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [221824] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2016/06/24 03:52:44 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\WINDOWS\System32\drivers\ssudserd.sys [221824] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2015/07/10 11:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2016/06/24 02:10:36 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [74872] =>.Synaptics Incorporated®
O58 - SDL:2016/06/24 02:10:40 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [871544] =>.Synaptics Incorporated®
O58 - SDL:2016/05/13 18:27:24 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc®
O58 - SDL:2013/09/16 22:20:12 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [99288] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2016/07/12 19:10:39 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [28272] =>.Adlice®
O58 - SDL:2015/07/10 11:59:48 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2011/08/08 15:59:12 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [116336] =>.VMware, Inc.®
O58 - SDL:2011/08/22 16:12:26 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [24176] =>.VMware, Inc.®
O58 - SDL:2011/08/22 16:12:26 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [20080] =>.VMware, Inc.®
O58 - SDL:2011/08/22 16:12:26 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [45680] =>.VMware, Inc.®
O58 - SDL:2011/08/22 18:06:14 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [30320] =>.VMware, Inc.®
O58 - SDL:2011/08/22 00:01:22 A . (.VMware, Inc. - VMware USB driver.) -- C:\WINDOWS\System32\drivers\vmusb.sys [37680] =>.VMware, Inc.®
O58 - SDL:2011/08/22 18:07:58 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [62064] =>.VMware, Inc.®
O58 - SDL:2015/07/10 11:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows®
O58 - SDL:2015/06/23 22:24:48 A . (.HP Inc. - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [30384] =>.Hewlett-Packard Company®
O58 - SDL:2012/10/09 09:39:52 A . (.Softex Inc - OmniPass PBA Driver.) -- C:\WINDOWS\System32\oprom.sys [5120] =>.Softex Inc

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 150s
O61 - LFC: 2016/07/11 18:58:47 A . (..) -- C:\Users\ayoub\Sniper Elite 3\bin\Profile\nosTEAM\Stats\Achievements.Bin [88]
O61 - LFC: 2016/07/11 19:04:25 A . (..) -- C:\Users\ayoub\Sniper Elite 3\bin\Profile\nosTEAM\Stats\Stats.Bin [60]
O61 - LFC: 2016/07/12 07:55:22 A . (..) -- C:\Users\ayoub\Documents\Freemake\FreemakeVideoDownloader\fvd.bin [407]
O61 - LFC: 2016/07/09 21:33:19 A . (..) -- C:\Users\ayoub\Desktop\telechargement\GAME\Perfect Patch\kitserver\dat\e_text.afs\unnamed_151.bin [645728]
O61 - LFC: 2016/07/13 23:09:59 A . (..) -- C:\Users\ayoub\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2016/07/06 03:19:01 A . (..) -- C:\Users\ayoub\AppData\Local\2K Games\Mafia II\Data\vfs.bin [164736]

---\\ Associations Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\WINDOWS\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\WINDOWS\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (6) - 9s
O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.baseURI", "resource://caa1-adoicaxffmovix-at-jetpack/"); =>PUP.Optional.GoMovix
O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.domain", "caa1-adoicaxffmovix-at-jetpack"); =>PUP.Optional.GoMovix
O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.load.reason", "startup"); =>PUP.Optional.GoMovix
O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.rootURI", "jar:file:///C:/Users/ayoub/AppData/Roaming/Mozilla/Firefox/Profil[...] =>PUP.Optional.GoMovix
O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.sdk.version", "0.1.6"); =>PUP.Optional.GoMovix
O69 - SBI: prefs.js [pompido - e3v3i08p.default] user_pref("extensions.caa1-aDOiCAxFFMOVIX@jetpack.url", "resource://caa1-adoicaxffmovix-at-jetpack/data/index.html"); =>PUP.Optional.GoMovix

---\\ Enumère les services démarrés par Svchost (41) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1336832] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [954368] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [954880] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [93696] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1012736] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [226304] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [324096] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\WINDOWS\System32\SessEnv.dll [371200] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [95744] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2093056] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [196096] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [190976] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [680448] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\WINDOWS\System32\mprdim.dll [497152] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [311808] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2238464] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1168896] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [593920] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [63488] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1149440] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1019392] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [354816] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [712704] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\WINDOWS\System32\lfsvc.dll [27136] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [267776] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [918016] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1016832] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [359936] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [237568] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [58368] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (30) - 3s
O87 - FAEL: "UDP Query User{30119743-86D0-4FD2-87BE-853EE92640CE}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe
O87 - FAEL: "TCP Query User{D4972882-3C72-423A-8C90-0A5DA6C8DC9C}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe
O87 - FAEL: "{0182DD11-EB43-4F2C-9700-8CA5CA6B55C9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\mHotspot\mHotspot.exe (.not file.)
O87 - FAEL: "{05FAD4E3-6773-4E9C-9515-D4CACD1D2F22}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\mHotspot\mHotspot.exe (.not file.)
O87 - FAEL: "{C09A6B21-CB25-499E-AFF2-2975468B45F9}" [Out-None-P6-TRUE] .(...) -- C:\Users\ayoub\AppData\Local\Temp\nsrDFED.tmp\CnetInstaller-75452123.exe (.not file.)
O87 - FAEL: "{98B706B3-7241-4D44-AE7E-0215BF46AB63}" [In-None-P6-TRUE] .(...) -- C:\Users\ayoub\AppData\Local\Temp\nsrDFED.tmp\CnetInstaller-75452123.exe (.not file.)
O87 - FAEL: "{14BB9793-B36B-4AD6-AAAF-7DE2E8D1F7E5}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\6BQJ9MWYCXI.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{5AC528F9-4C45-4858-9C1B-400EE2F67B86}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\6BQJ9MWYCXI.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{96A1F3DE-A590-4E4A-A661-2DA7896F436E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\USM9UPHQ5CA.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{DC45E047-D57E-4156-8EC4-AC5B95120FAD}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\USM9UPHQ5CA.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{C427845D-64C1-4785-8B52-5F7FB3C148CE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\C0ELPZKJPMC.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{5AAC9BE4-9ACD-49DD-A25E-EF414FD6639B}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\C0ELPZKJPMC.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "UDP Query User{CD86C66F-B5AE-49E9-8599-A2CE79FDE9FC}C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe (.not file.)
O87 - FAEL: "TCP Query User{0761886F-D0DA-4821-8A22-BBFD295F68C3}C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.2sv\bin\packettracer6.exe (.not file.)
O87 - FAEL: "{DE4839D2-0C60-4778-9A79-3D80DAB7061C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
O87 - FAEL: "{90032AB6-4BEB-4DEC-9432-6F642BDD189A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
O87 - FAEL: "UDP Query User{EE450022-709D-4894-B3C8-EB12795A9715}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe
O87 - FAEL: "TCP Query User{52F06FBA-C0E5-42A0-B95F-105975568D8D}C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cisco packet tracer 6.0.1\bin\packettracer6.exe
O87 - FAEL: "{5BBF7C09-8012-4613-9B99-1D1D70DF98D5}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.)
O87 - FAEL: "{CC17FF1D-E1E3-4EC4-B478-AD6C55946F2A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.)
O87 - FAEL: "{A68E5A4C-A9AB-4BD7-B411-B8988E8965C8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.)
O87 - FAEL: "{E06E393C-CDCE-4D19-9F52-27DB186C26DC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.)
O87 - FAEL: "{762F04DF-EE8C-4BA8-9627-363102102BBA}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.)
O87 - FAEL: "{02D5FE73-CBA2-4F5B-B070-F8230E1CAC80}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe (.not file.)
O87 - FAEL: "{6F7F379F-5CF1-4FAB-B93E-06DF0E76932C}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.)
O87 - FAEL: "{595C6ABA-8282-4ECD-A28D-D3C266AE5643}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Bonjour\mDNSResponder.exe (.not file.)
O87 - FAEL: "TCP Query User{4A143E19-59E3-44D8-8A44-B1EA1EA60759}C:\users\ayoub\desktop\perfect patch\pes6.exe" [In-None-P6-TRUE] .(...) -- C:\users\ayoub\desktop\perfect patch\pes6.exe (.not file.)
O87 - FAEL: "UDP Query User{2B7B1B8D-AF1F-43C3-A170-40DFE96D0857}C:\users\ayoub\desktop\perfect patch\pes6.exe" [In-None-P17-TRUE] .(...) -- C:\users\ayoub\desktop\perfect patch\pes6.exe (.not file.)
O87 - FAEL: "TCP Query User{97932E41-AD18-4A71-B983-2055843782CD}C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe" [In-None-P6-TRUE] .(...) -- C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe (.not file.)
O87 - FAEL: "UDP Query User{C8E50683-8FE5-46FA-AC22-9D3FE796FCB1}C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe" [In-None-P17-TRUE] .(...) -- C:\users\ayoub\call of duty game\call of duty black ops 2\sp.exe (.not file.)

---\\ Scan Additionnel (10) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\KMSServerService =>HackTool.KMSpico
C:\WINDOWS\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico
C:\WINDOWS\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS
C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7} =>.Superfluous.GreenTreeApp
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7} =>.Superfluous.GreenTreeApp
HKCU\SOFTWARE\GreenTree Applications =>.Superfluous.GreenTreeApp
HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader
C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS
C:\Users\ayoub\AppData\Roaming\RHEng =>.Superfluous.Conduit

---\\ Récapitulatif des éléments trouvés sur votre station (6) - 0s
http://www.nicolascoolman.fr/?p=989 =>HackTool.KMSpico
https://www.nicolascoolman.info/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.GreenTreeApp
http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit
http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.GoMovix

~ End of the scan, 86394 items in 00h24mn41s (1262)(0)

Publicité


Signaler le contenu de ce document

Publicité