cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.9.9.156 Par Nicolas Coolman (2016/09/09)
~ Démarré par Mathiew (Administrator) (2016/09/09 13:30:09)
~ Web: https://www.nicolascoolman.com
~ Blog: https://www.anti-malware.top
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Mathiew\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Mathiew\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 10586) =>.Microsoft Corporation

---\\ Navigateurs Internet (2) - 0s
GCIE: Google Chrome v52.0.2743.116
MSIE: Internet Explorer v11.545.10586.0

---\\ Informations sur les produits Windows (8) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 8HVX7
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 2s
Malwarebytes Anti-Malware version 2.2.1.1043
Windows Defender (Activate)

---\\ Surveillance de Logiciels (2) - 2s
Adobe Flash Player 18 NPAPI
Adobe Acrobat Reader DC - Français

---\\ Logiciels de partage P2P (1) - 2s
µTorrent v3.4.7.42330

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8314.892 MB (65% free)
System Restore: Activé (Enable)
System drive C: has 31 GB () free of 254 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: MATHIEW-PC
~ User Name: Mathiew
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 31 GB free of 254 GB (System)
~ Drive D: has 318 GB free of 698 GB
~ Drive H: has 4 GB free of 7 GB

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 1s
[MD5.E396258CFD8F84E8F2C24930E6D88C67] - 01/07/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4515256] =>.Microsoft Windows®
[MD5.2DBCA4E4BB09FF7F8F171CC364DFAF67] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [53760] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [0] =>.Microsoft Windows Publisher®
[MD5.AA551F342B77497149EA7E6C42836084] - 03/08/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2501120] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [0] =>.Microsoft Corporation
[MD5.6A7ACABAE92C837F5C1330188EAE36AE] - 29/03/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [535080] =>.Microsoft Windows®
[MD5.6A7ACABAE92C837F5C1330188EAE36AE] - 29/03/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535080] =>.Microsoft Windows®
[MD5.BC974EFC9DFCF35C74CC711F3DA04EAF] - 13/02/2016 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [0] =>.Microsoft Corporation
[MD5.] - 0 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [0] =>.Microsoft Windows®
[MD5.] - 0 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [0] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (19) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: CfHelper33 (CfHelper33) . (...) - D:\Program Files\MSUser.Default\Help_3\CfHelp33.exe (.not file.)
O23 - Service: CfHelper44 (CfHelper44) . (...) - D:\Program Files\MSUser.Default\Help_4\CfHelp44.exe (.not file.)
O23 - Service: CfHelper55 (CfHelper55) . (...) - D:\Program Files\MSUser.Default\Help_5\CfHelp55.exe (.not file.)
O23 - Service: CfHelper66 (CfHelper66) . (...) - D:\Program Files\MSUser.Default\Help_6\CfHelp66.exe (.not file.)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe =>.Hi-Rez Studios
O23 - Service: (MBAMScheduler) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 353.8.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation
O23 - Service: PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe =>.Even Balance, Inc.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe =>.NVIDIA Corporation®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (25) - 19s

SR - Auto [25/06/2016] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [14/07/2015] [ 268976] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [22/08/2016] [ 2159320] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [02/03/2016] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Demand [30/11/2015] [ 1368408] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Lite\DiscSoftBusService.exe =>.Disc Soft Ltd®
SR - Auto [14/06/2016] [ 1163712] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe =>.NVIDIA Corporation®
SS - Auto [19/10/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [19/10/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SPaused - Auto [18/07/2014] [ 9216] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe =>.Hi-Rez Studios
SR - Demand [05/07/2016] [ 651576] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [10/03/2016] [ 1514464] (MBAMScheduler) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe =>.Malwarebytes Corporation®
SR - Auto [10/03/2016] [ 1136608] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [14/06/2016] [ 1879488] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SR - Demand [14/06/2016] [ 3632576] NVIDIA Streamer Network Service (NvStreamNetworkSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe =>.NVIDIA Corporation®
SR - Auto [14/06/2016] [ 2521024] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
SS - Auto [07/08/2015] [ 937592] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\WINDOWS\system32\nvvsvc.exe =>.NVIDIA Corporation
SS - Demand [19/06/2016] [ 2122248] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginClientService.exe =>.Electronic Arts, Inc.®
SS - Demand [29/08/2016] [ 1310448] Overwolf Updater Windows SCM (OverwolfUpdater) . (.Overwolf LTD.) - D:\Overwolf\OverwolfUpdater.exe =>.Overwolf Ltd®
SR - Auto [24/06/2016] [ 76152] PnkBstrA (PnkBstrA) . (...) - C:\Windows\System32\PnkBstrA.exe =>.Even Balance, Inc.®
SS - Auto [23/05/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Demand [23/08/2016] [ 1465120] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [20/05/2016] [ 426040] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe =>.NVIDIA Corporation®
SS - Demand [19/02/2010] [ 517096] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated

---\\ Tâches planifiées en automatique (25) - 4s
[MD5.BE1A1E8EEA50BE1E1A78EB3D7F4CE8CF] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1110232] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.9B3355B29942AF67F014EA90CE1EA960] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268976] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.00000000000000000000000000000000] [APT] [Anofotion Collector] (...) -- C:\Program Files (x86)\Arlutherdergudom\bemition.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.DC811AFE2D8C207FE3469CE323FDB135] [APT] [BaronReplays] (.Ahri.tw.) -- C:\Users\Mathiew\Downloads\BaronReplays\BaronReplays.exe [1851392] (.Activate.) =>.Ahri.tw
[MD5.00000000000000000000000000000000] [APT] [DreamDecode] (...) -- c:\programdata\{91ddd488-fbbb-6c28-91dd-dd488fbb5223}\7743471726515093173b.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc®
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc®
[MD5.00000000000000000000000000000000] [APT] [KuaiZip_Update] (...) -- C:\PROGRA~1\F85A~1\X86\Update.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.FAEEC7320957C7BE944E9D3616A679E8] [APT] [Overwolf Updater Task] (.Overwolf LTD.) -- D:\Overwolf\OverwolfUpdater.exe [1310448] (.Activate.) =>.Overwolf Ltd®
[MD5.00000000000000000000000000000000] [APT] [UnregisterNonABICompliantCodeRange] (...) -- C:\PROGRA~2\xwi1B2F\2w51C19.bat (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.07E09D95AFDA096BFD4C06EF51DEC558] [APT] [{5A798196-D042-4F07-924D-080E93590A6F}] (.Logitech.) -- C:\Users\Mathiew\Downloads\lgs510.exe [16392304] (.Activate.) =>.Logitech®
[MD5.23985274780D27117C470AA259B79B30] [APT] [Apple] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [569416] (.Activate.) =>.Apple Inc.®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
O39 - APT: DreamDecode - (...) -- C:\WINDOWS\Tasks\DreamDecode.job [358] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1094] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1098] =>.Google Inc®
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [4562] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [4050] =>.Adobe Systems Incorporated®
O39 - APT: Anofotion Collector - (...) -- C:\WINDOWS\System32\Tasks\Anofotion Collector [8964] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: BaronReplays - (.Ahri.tw.) -- C:\WINDOWS\System32\Tasks\BaronReplays [3418] =>.Ahri.tw
O39 - APT: DreamDecode - (...) -- C:\WINDOWS\System32\Tasks\DreamDecode [3384] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3924] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4156] =>.Google Inc®
O39 - APT: Overwolf Updater Task - (.Overwolf LTD.) -- C:\WINDOWS\System32\Tasks\Overwolf Updater Task [3728] =>.Overwolf Ltd®
O39 - APT: UnregisterNonABICompliantCodeRange - (...) -- C:\WINDOWS\System32\Tasks\UnregisterNonABICompliantCodeRange [3472] (.Orphan.) =>.Superfluous.Orphan

---\\ Processus lancés (30) - 1s
[MD5.215AC49E16A2E5E31CEA79C6E20B0860] - (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe [426040] [PID.1160] =>.NVIDIA Corporation®
[MD5.68E7DEA59FDEF410BAF29FDB5B7A6EEF] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.2348] =>.Adobe Systems, Incorporated®
[MD5.3B3774C868868257533EC7E715BB6D53] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.2356] =>.Apple Inc.®
[MD5.37711EE112E628942C7970D3959B4F43] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216] [PID.2424] =>.Hi-Rez Studios
[MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.2440] =>.Apple Inc.®
[MD5.E20C1118524DF19945BCD83A3843E8CF] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2159320] [PID.2492] =>.Adobe Systems Incorporated®
[MD5.205E1B699FD3F2F9B036EEA2EC30C620] - (...) -- C:\Windows\System32\PnkBstrA.exe [76888] [PID.2720] =>.Even Balance, Inc.®
[MD5.0EDF9504CA5174075BA5902AFC1F57C8] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024] [PID.2764] =>.NVIDIA Corporation®
[MD5.020F45E362D3B57CCC5735582BB1A6EC] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488] [PID.2960] =>.NVIDIA Corporation®
[MD5.F78BC07DCED5EDDD6D477E923620F8EA] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712] [PID.3044] =>.NVIDIA Corporation®
[MD5.9209D57C1AA24841EF8D5DE6A5B2AAEB] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576] [PID.4040] =>.NVIDIA Corporation®
[MD5.C3EF139378171D8BB852BEB6E759B7F1] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.4856]
[MD5.58332C83C4A329A744B0B98F934934BB] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe [288920] [PID.4968] =>.Google Inc®
[MD5.788321A2C0C45F16820E00A8BA8FD3DA] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe [366232] [PID.6096] =>.Google Inc®
[MD5.3DECBA13E02DDD8C75276A1836492131] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [29494400] [PID.6836] =>.Skype Software Sarl®
[MD5.9C9D71CC6705176731EA5672F1648BB7] - (.Apple Inc. - iPodService Module (64-bit).) -- C:\Program Files\iPod\bin\iPodService.exe [651576] [PID.6928] =>.Apple Inc.®
[MD5.F1A89A34388B5626F1548D393B23ECB1] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608] [PID.1268] =>.Malwarebytes Corporation®
[MD5.9611577752E293259C7DCE19E9026362] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464] [PID.2756] =>.Malwarebytes Corporation®
[MD5.D5212713CE090D5915DC7112A0522A9C] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [21330880] [PID.10228] =>.NVIDIA Corporation®
[MD5.94A8196066774252DF015EEDF02CCA44] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120] [PID.8288] =>.NVIDIA Corporation®
[MD5.1BD45458EA66A005E37822D9FDDFD6AE] - (.NVIDIA Corporation - OpenAutomate wrapper cache.) -- C:\Users\Mathiew\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe [346552] [PID.9868] =>.Nvidia Corporation®
[MD5.D6393757CDE040A51306221842EA5C0A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.6236] =>.Google Inc®
[MD5.D6393757CDE040A51306221842EA5C0A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.5240] =>.Google Inc®
[MD5.D6393757CDE040A51306221842EA5C0A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.3476] =>.Google Inc®
[MD5.D6393757CDE040A51306221842EA5C0A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.3544] =>.Google Inc®
[MD5.D6393757CDE040A51306221842EA5C0A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.1216] =>.Google Inc®
[MD5.D6393757CDE040A51306221842EA5C0A] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [961352] [PID.5716] =>.Google Inc®
[MD5.C5BC4E50F6571CDD071FD69C1DC9A07C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Mathiew\Downloads\ZHPDiag3.exe [2323968] [PID.7312] =>.Nicolas Coolman
[MD5.C5B8D263A1E134E4F076542F2D78C9DC] - (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe [2168504] [PID.1948] =>.Adobe Systems, Incorporated®
[MD5.C5B8D263A1E134E4F076542F2D78C9DC] - (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe [2168504] [PID.1744] =>.Adobe Systems, Incorporated®

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 0s
P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (.Apple Inc..) -- C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll =>.Apple Inc.
P2 - FPN: [HKLM] [@esn/npbattlelog,version=2.4.0] - (.EA Digital Illusions CE AB.) -- C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll =>.EA Digital Illusions CE AB
P2 - FPN: [HKLM] [@pandonetworks.com/PandoWebPlugin] - (.Pando Networks Inc..) -- C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll =>.Pando Networks Inc.

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (20) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://localoem.msn.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.ldlc.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.google.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (162)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Applications lancées au démarrage du système (27) - 2s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [Launch LCore] . (.Logitech Inc. - Logitech Gaming Framework.) -- C:\Program Files\Logitech Gaming Software\LCore.exe =>.Logitech®
O4 - HKLM\..\Run: [Start WingMan Profiler] . (.Logitech Inc. - Logitech WingMan Event Monitor.) -- C:\Program Files\Logitech\Gaming Software\LWEMon.exe =>.Logitech®
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [Overwolf] . (.Copyright Overwolf © 2016 - Overwolf Launcher.) -- D:\Overwolf\OverwolfLauncher.exe =>.Overwolf Ltd®
O4 - HKCU\..\Run: [msiql] C:\Users\Mathiew\AppData\Local\Temp\msiql.exe (.not file.)
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 (.not file.)
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64 (.not file.)
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files (x86)\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\Run: [Overwolf] . (.Copyright Overwolf © 2016 - Overwolf Launcher.) -- D:\Overwolf\OverwolfLauncher.exe =>.Overwolf Ltd®
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\Run: [msiql] C:\Users\Mathiew\AppData\Local\Temp\msiql.exe (.not file.)
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\RunOnce: [Uninstall C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64 (.not file.)
O4 - HKUS\S-1-5-21-2579031885-1874269007-3705923187-1001\..\RunOnce: [Uninstall C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64 (.not file.)

---\\ Raccourcis Global Startup (115) - 9s
O4 - GS\Desktop [Administrateur]: Adobe Photoshop CS6 (64 Bit).lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems, Incorporated
O4 - GS\Desktop [Administrateur]: BaronReplays.lnk . (.Ahri.tw - BaronReplays.) C:\Users\Mathiew\Downloads\BaronReplays\BaronReplays.exe =>.Ahri.tw
O4 - GS\Desktop [Administrateur]: DeSmuM.lnk . (...) C:\Users\Mathiew\Documents\Desmume\DeSmuME_X432R_x64.exe
O4 - GS\Desktop [Administrateur]: FarCry 3.lnk . (.Ubisoft Entertainment - Far Cry 3.) D:\Far cry 3\FarCry 3\bin\farcry3.exe =>.UBISOFT ENTERTAINMENT INC.®
O4 - GS\Desktop [Administrateur]: FEZ.lnk . (.Copyright © 2012 - FezGame.) D:\R.G.Mechanics\FEZ\FEZ.exe
O4 - GS\Desktop [Administrateur]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc®
O4 - GS\Desktop [Administrateur]: LEGOStarWarsSaga - Raccourci.lnk . (.Traveller's Tales (UK) Ltd - LEGO® Star Wars™ Saga Main Executable.) D:\Lego Star Wars\LEGOStarWarsSaga.exe
O4 - GS\Desktop [Administrateur]: LOL.lnk . (...) C:\Riot Games\League of Legends\lol.launcher.exe =>.Riot Games, Inc.®
O4 - GS\Desktop [Administrateur]: NO$GBA.lnk . (.Copyright © 2001,2002 Martin Korth - Nocash GBA Emulator.) C:\Users\Mathiew\Documents\no$gba\NO$GBA.EXE
O4 - GS\Desktop [Administrateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [Administrateur]: Plague Inc Evolved.lnk . (...) C:\2-click run\Plague Inc Evolved v0.7.4\PlagueIncEvolved.exe
O4 - GS\Desktop [Administrateur]: Pokemon Showdown.lnk . (...) C:\Program Files (x86)\Pokemon Showdown\pokemonshowdown.exe
O4 - GS\Desktop [Administrateur]: Portal 2.lnk . (...) D:\R.G. Catalyst\Portal 2\portal2.exe
O4 - GS\Desktop [Administrateur]: RomStation.lnk . (...) C:\Program Files (x86)\RomStation\RomStation.exe
O4 - GS\Desktop [Administrateur]: SharpKeys.lnk . (...) C:\Users\Mathiew\AppData\Roaming\Microsoft\Installer\{636E94DA-99C0-448F-A931-3DAD83B4975F}\_F33C5543CA54DFFA237A37.exe
O4 - GS\Desktop [Administrateur]: ShovelKnight.lnk . (...) C:\Users\Mathiew\Downloads\Shovel Knight 1\Shovel Knight the game\ShovelKnight.exe
O4 - GS\Desktop [Administrateur]: Smite.lnk . (.Hi-Rez Studios Inc. - HiRezUnifiedLauncher.) C:\Program Files (x86)\Hi-Rez Studios\HiRezLauncherUI.exe
O4 - GS\Desktop [Administrateur]: Star Wars Battlefront II.lnk . (...) D:\Star Wars Battlefront II\LaunchBFII.exe
O4 - GS\Desktop [Administrateur]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\Mathiew\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH®
O4 - GS\Desktop [Administrateur]: TESV.lnk . (.Bethesda Softworks - Skyrim.) D:\Skyrim\TSEV Skyrim LE\TESV.exe =>.Bethesda Softworks
O4 - GS\Desktop [Administrateur]: The Forest v0.04.lnk . (.Friends in War - Copy Maker.) C:\Users\Mathiew\Downloads\The Forest v0.04 (2-click run)\The Forest v0.04 (2-click run).exe =>.Friends in War
O4 - GS\Desktop [Administrateur]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [Administrateur]: VBA-M (rev1490).exe.lnk . (.http://vba-m.com/ - VisualBoyAdvance-M.) C:\Users\Mathiew\Downloads\Poke silvermoon\Visual Boy Advance-M\VBA-M (rev1490).exe
O4 - GS\Desktop [Administrateur]: Vegas Pro 13.0 (64-bit).lnk . (.Sony Creative Software Inc. - .) C:\Program Files (x86)\Sony\Vegas Pro 13.0\vegas130.exe =>.Sony Creative Software Inc.
O4 - GS\Desktop [Administrateur]: Vidéos.lnk . (...) D:\Vidéos
O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\Mathiew\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Mathiew\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\Mathiew\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://yeabests.cc =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: MaohaWiFi.lnk . (...) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWiFi.exe
O4 - GS\Quicklaunch [Administrateur]: UC浏览器.lnk . (...) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe =>.Free Time
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\Mathiew\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Minesweeper.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Games\Minesweeper\MineSweeper.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\WINDOWS\explorer.exe =>.Microsoft Windows®
O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Pokemon Showdown.lnk . (...) C:\Program Files (x86)\Pokemon Showdown\pokemonshowdown.exe
O4 - GS\Desktop [Mathiew]: Adobe Photoshop CS6 (64 Bit).lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems, Incorporated
O4 - GS\Desktop [Mathiew]: BaronReplays.lnk . (.Ahri.tw - BaronReplays.) C:\Users\Mathiew\Downloads\BaronReplays\BaronReplays.exe =>.Ahri.tw
O4 - GS\Desktop [Mathiew]: DeSmuM.lnk . (...) C:\Users\Mathiew\Documents\Desmume\DeSmuME_X432R_x64.exe
O4 - GS\Desktop [Mathiew]: FarCry 3.lnk . (.Ubisoft Entertainment - Far Cry 3.) D:\Far cry 3\FarCry 3\bin\farcry3.exe =>.UBISOFT ENTERTAINMENT INC.®
O4 - GS\Desktop [Mathiew]: FEZ.lnk . (.Copyright © 2012 - FezGame.) D:\R.G.Mechanics\FEZ\FEZ.exe
O4 - GS\Desktop [Mathiew]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc®
O4 - GS\Desktop [Mathiew]: LEGOStarWarsSaga - Raccourci.lnk . (.Traveller's Tales (UK) Ltd - LEGO® Star Wars™ Saga Main Executable.) D:\Lego Star Wars\LEGOStarWarsSaga.exe
O4 - GS\Desktop [Mathiew]: LOL.lnk . (...) C:\Riot Games\League of Legends\lol.launcher.exe =>.Riot Games, Inc.®
O4 - GS\Desktop [Mathiew]: NO$GBA.lnk . (.Copyright © 2001,2002 Martin Korth - Nocash GBA Emulator.) C:\Users\Mathiew\Documents\no$gba\NO$GBA.EXE
O4 - GS\Desktop [Mathiew]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [Mathiew]: Plague Inc Evolved.lnk . (...) C:\2-click run\Plague Inc Evolved v0.7.4\PlagueIncEvolved.exe
O4 - GS\Desktop [Mathiew]: Pokemon Showdown.lnk . (...) C:\Program Files (x86)\Pokemon Showdown\pokemonshowdown.exe
O4 - GS\Desktop [Mathiew]: Portal 2.lnk . (...) D:\R.G. Catalyst\Portal 2\portal2.exe
O4 - GS\Desktop [Mathiew]: RomStation.lnk . (...) C:\Program Files (x86)\RomStation\RomStation.exe
O4 - GS\Desktop [Mathiew]: SharpKeys.lnk . (...) C:\Users\Mathiew\AppData\Roaming\Microsoft\Installer\{636E94DA-99C0-448F-A931-3DAD83B4975F}\_F33C5543CA54DFFA237A37.exe
O4 - GS\Desktop [Mathiew]: ShovelKnight.lnk . (...) C:\Users\Mathiew\Downloads\Shovel Knight 1\Shovel Knight the game\ShovelKnight.exe
O4 - GS\Desktop [Mathiew]: Smite.lnk . (.Hi-Rez Studios Inc. - HiRezUnifiedLauncher.) C:\Program Files (x86)\Hi-Rez Studios\HiRezLauncherUI.exe
O4 - GS\Desktop [Mathiew]: Star Wars Battlefront II.lnk . (...) D:\Star Wars Battlefront II\LaunchBFII.exe
O4 - GS\Desktop [Mathiew]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\Mathiew\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH®
O4 - GS\Desktop [Mathiew]: TESV.lnk . (.Bethesda Softworks - Skyrim.) D:\Skyrim\TSEV Skyrim LE\TESV.exe =>.Bethesda Softworks
O4 - GS\Desktop [Mathiew]: The Forest v0.04.lnk . (.Friends in War - Copy Maker.) C:\Users\Mathiew\Downloads\The Forest v0.04 (2-click run)\The Forest v0.04 (2-click run).exe =>.Friends in War
O4 - GS\Desktop [Mathiew]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [Mathiew]: VBA-M (rev1490).exe.lnk . (.http://vba-m.com/ - VisualBoyAdvance-M.) C:\Users\Mathiew\Downloads\Poke silvermoon\Visual Boy Advance-M\VBA-M (rev1490).exe
O4 - GS\Desktop [Mathiew]: Vegas Pro 13.0 (64-bit).lnk . (.Sony Creative Software Inc. - .) C:\Program Files (x86)\Sony\Vegas Pro 13.0\vegas130.exe =>.Sony Creative Software Inc.
O4 - GS\Desktop [Mathiew]: Vidéos.lnk . (...) D:\Vidéos
O4 - GS\Desktop [Mathiew]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleane.) C:\Users\Mathiew\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Mathiew]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Mathiew\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Mathiew]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\Mathiew\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\Quicklaunch [Mathiew]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://yeabests.cc =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Mathiew]: MaohaWiFi.lnk . (...) C:\Program Files (x86)\GreatMaker\MaohaWiFi\MaohaWiFi.exe
O4 - GS\Quicklaunch [Mathiew]: UC浏览器.lnk . (...) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
O4 - GS\sendTo [Mathiew]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Mathiew]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FreeTime\FormatFactory\FormatFactory.exe =>.Free Time
O4 - GS\sendTo [Mathiew]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Mathiew]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Mathiew]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\Mathiew\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\TaskBar [Mathiew]: Minesweeper.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Games\Minesweeper\MineSweeper.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Mathiew]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\WINDOWS\explorer.exe =>.Microsoft Windows®
O4 - GS\TaskBar [Mathiew]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Programs [Mathiew]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Mathiew]: Pokemon Showdown.lnk . (...) C:\Program Files (x86)\Pokemon Showdown\pokemonshowdown.exe
O4 - GS\CommonDesktop [Public]: 12 is Better Than 6.lnk . (...) D:\12 is better than 6\12 is Better Than 6\12ibt6Low\12ibt6.exe
O4 - GS\CommonDesktop [Public]: 60 Seconds.lnk . (...) D:\60seconds\60 Seconds\Win64\60Seconds.exe
O4 - GS\CommonDesktop [Public]: Adobe Application Manager.lnk . (.Adobe Systems Incorporated - Adobe Application Manager.) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe =>.Adobe Systems Incorporated®
O4 - GS\CommonDesktop [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team
O4 - GS\CommonDesktop [Public]: Battlefield 4.lnk . (.EA Digital Illusions CE AB - Battlefield/Battlelog Web Helper.) C:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe =>.Electronic Arts®
O4 - GS\CommonDesktop [Public]: CASIO FA-124.lnk . (.CASIO COMPUTER CO., LTD - FA-124.) C:\Program Files (x86)\CASIO\CASIO FA-124\FA124.exe
O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) C:\Program Files (x86)\DAEMON Tools Lite\DTLauncher.exe =>.Disc Soft Ltd®
O4 - GS\CommonDesktop [Public]: DS3 Tool.lnk . (.www.motioninjoy.com - .) C:\Program Files (x86)\MotioninJoy\ds3\DS3_Tool.exe =>.www.motioninjoy.com
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --load-extension="C:\Users\Mathiew\AppData\Local\kemgadeojglibflomicgnfeopkdfflnk" http://yeabests.cc =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Hi-Rez Diagnostics and Support.lnk . (.Hewlett-Packard Company - HiRezGamesDiagAndSupport.) C:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe =>.Hewlett-Packard Company
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.®
O4 - GS\CommonDesktop [Public]: Overwolf.lnk . (.Copyright Overwolf © 2016 - Overwolf Launcher.) D:\Overwolf\OverwolfLauncher.exe =>.Overwolf Ltd®
O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\WINDOWS\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Pokemon Showdown.lnk . (...) C:\Program Files (x86)\Pokemon Showdown\pokemonshowdown.exe
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\WINDOWS\system32\mblctr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.8.4 =>.Google DNS
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{563bf7ca-424d-4b1b-8be5-8ff39cce124d}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{86f34d10-e021-4895-a3f7-7987568306f2}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{563bf7ca-424d-4b1b-8be5-8ff39cce124d}: DhcpDomain = lan

---\\ Protocole additionnel (24) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (113) - 12s
O42 - Logiciel: «Portal 2» 2.0.0.1 - (.VALVE.) [HKLM][64Bits] -- Portal 2_is1 =>.Valve
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: 12 is Better Than 6 - (...) [HKLM][64Bits] -- MTJpc2JldHRlcnRoYW42_is1
O42 - Logiciel: 60 Seconds! - (...) [HKLM][64Bits] -- NjBzZWNvbmRz_is1
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824191728} =>.Adobe Systems Incorporated
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D4B07658-F443-4445-A261-E643996E139D} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {A6B0442B-E159-444B-B49D-6B9AC531EAE3} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {2E4AF2A6-50EA-4260-9BA4-5E582D11879A} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {56EC47AA-5813-4FF6-8E75-544026FBEA83} =>.Apple Inc.
O42 - Logiciel: Assassin's Creed - (.Ubisoft.) [HKLM][64Bits] -- {8CFA9151-6404-409A-AF22-4632D04582FD} =>.UBISOFT ENTERTAINMENT INC.®
O42 - Logiciel: Assassin's Creed Brotherhood - (.Ubisoft.) [HKLM][64Bits] -- {BE4BA698-8533-4F77-9559-C7F3F78C0B05} =>.UBISOFT ENTERTAINMENT INC.®
O42 - Logiciel: Assassin's Creed II - (.Ubisoft.) [HKLM][64Bits] -- {8570BEE8-0CA3-4977-9AB1-80ED93F0513C} =>.UBISOFT ENTERTAINMENT INC.®
O42 - Logiciel: Assassin's Creed IV Black Flag - (.Ubisoft.) [HKLM][64Bits] -- Uplay Install 273 =>.Ubisoft Entertainment Sweden AB®
O42 - Logiciel: Audacity 2.0.6 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 =>.Audacity Team
O42 - Logiciel: Battlefield 4™ - (.Electronic Arts.) [HKLM][64Bits] -- {ABADE36E-EC37-413B-8179-B432AD3FACE7} =>.Electronic Arts, Inc.®
O42 - Logiciel: Battlelog Web Plugins - (.EA Digital Illusions CE AB.) [HKLM][64Bits] -- Battlelog Web Plugins =>.EA Digital Illusions CE AB
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
O42 - Logiciel: CASIO FA-124 - (.CASIO COMPUTER CO., LTD..) [HKLM][64Bits] -- {FB47E710-6249-4EFA-BE36-E922B0612AF4} =>.CASIO COMPUTER CO., LTD.
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd®
O42 - Logiciel: Far Cry 3 - (.Ubisoft.) [HKLM][64Bits] -- {E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88} =>.Ubisoft
O42 - Logiciel: FarCry 3 version 5.1 - (.Black_Box.) [HKLM][64Bits] -- {B810D852-DFD6-FC3-89A5-CC4D47756DAF}_is1 =>.Black_Box
O42 - Logiciel: FEZ - (.R.G. Mechanics, markfiter.) [HKLM][64Bits] -- FEZ_R.G. Mechanics_is1 =>.R.G. Mechanics, markfiter
O42 - Logiciel: Format Factory and Options - (.Format Factory.) [HKLM][64Bits] -- Format_Factory_and_Options =>.Format Factory
O42 - Logiciel: FormatFactory 3.2.1.0 - (.Free Time.) [HKLM][64Bits] -- FormatFactory =>.Free Time
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC} =>.Hi-Rez Studios
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {E109B4A3-9883-4E6E-9A19-4D7E1A88AFE8} =>.Apple Inc.
O42 - Logiciel: Java 8 Update 31 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218031F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: LAME v3.99.3 (for Windows) - (...) [HKLM][64Bits] -- LAME_is1
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {3E75652D-99B1-417E-B163-BEF33CAD3F16} =>.Riot Games
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 3.0.1 =>.Riot Games
O42 - Logiciel: LEGO® Star Wars™ : La Saga Complète - (.LucasArts.) [HKLM][64Bits] -- InstallShield_{D596980D-17BE-4425-B8F0-5640719AADE9} =>.LUCASFILM ENTERTAINMENT COMPANY LTD®
O42 - Logiciel: LEGO® Star Wars™: The Complete Saga - (.LucasArts.) [HKLM][64Bits] -- {D596980D-17BE-4425-B8F0-5640719AADE9} =>.LucasArts
O42 - Logiciel: Logitech - Assistant pour jeux vidéo 8.57 - (.Logitech Inc..) [HKLM][64Bits] -- Logitech Gaming Software =>.Logitech Inc.
O42 - Logiciel: Logitech Gaming Software 5.10 - (.Logitech.) [HKLM][64Bits] -- {1444D2EE-C7AD-44A8-844F-2634B49353D1} =>.Logitech
O42 - Logiciel: LOLReplay - (.www.leaguereplays.com.) [HKLM][64Bits] -- LOLReplay =>.www.leaguereplays.com
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes
O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM][64Bits] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {3061DCA5-2D0B-48F9-800F-9D7C1FEB5E78} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Mises à jour NVIDIA 2.11.4.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: MotioninJoy Gamepad tool 0.7.1001 - (.www.motioninjoy.com.) [HKLM][64Bits] -- {330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1 =>.www.motioninjoy.com
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} =>.Sony Creative Software Inc.
O42 - Logiciel: NVIDIA GeForce Experience 2.11.4.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LED Visualizer 1.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote 3D Vision 368.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.34.14 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote du contrôleur 3D Vision 364.44 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 368.22 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 2.11.4.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 1.2.40 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: OpenAL - (...) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc®
O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {121727D5-FDF3-4723-BA57-EB383440ED72} =>.Apache Software Foundation
O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.
O42 - Logiciel: Overwolf - (.Overwolf Ltd..) [HKLM][64Bits] -- Overwolf =>.Overwolf Ltd®
O42 - Logiciel: Panneau de configuration NVIDIA 353.82 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7
O42 - Logiciel: Phylogene V2.7.6.1 - (...) [HKLM][64Bits] -- Phylogène lycée_is1
O42 - Logiciel: Plague Inc Evolved v0.7.4 - (.Friends in War.) [HKLM][64Bits] -- Plague Inc Evolved v0.7.40.7.4 =>.Friends in War
O42 - Logiciel: Pokemon Showdown - (."Pokemon Showdown".) [HKLM][64Bits] -- Pokemon Showdown
O42 - Logiciel: Project CARS - (.Slightly Mad Studios.) [HKLM][64Bits] -- Steam App 234630 =>.Valve®
O42 - Logiciel: PunkBuster Services - (.Even Balance, Inc..) [HKLM][64Bits] -- PunkBusterSvc =>.Even Balance, Inc.®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: RomStation - (.RomStation.) [HKLM][64Bits] -- {223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1 =>.RomStation
O42 - Logiciel: Secure Download Manager - (.Kivuto Solutions Inc..) [HKLM][64Bits] -- {60232A95-0B96-4BBB-9798-85A6AB6F8210} =>.Kivuto Solutions Inc.
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A} =>.Microsoft Corporation
O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB931906 =>.Microsoft Corporation
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3115431) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{48D57144-8D86-4841-A981-72D7D360B09E} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3115431) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{48D57144-8D86-4841-A981-72D7D360B09E} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Skype for Business 2015 (KB3115431) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{48D57144-8D86-4841-A981-72D7D360B09E} =>.Microsoft Corporation®
O42 - Logiciel: SharpKeys - (.RandyRants.com.) [HKLM][64Bits] -- {636E94DA-99C0-448F-A931-3DAD83B4975F} =>.RandyRants.com
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Skype™ 7.26 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Smite - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017} =>.Hi-Rez Studios
O42 - Logiciel: Star Wars Battlefront II - (.LucasArts.) [HKLM][64Bits] -- {3D374523-CFDE-461A-827E-2A102E2AB365} =>.LucasArts
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: System Requirements Lab Detection - (.Husdawg, LLC.) [HKLM][64Bits] -- {B20C5FA0-43D1-46D1-AE5D-EB2F5D6684AE} =>.Husdawg, LLC
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKCU][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH
O42 - Logiciel: The Forest v0.04 - (.Friends in War.) [HKLM][64Bits] -- The Forest v0.040.04 =>.Friends in War
O42 - Logiciel: TSEV Skyrim LE - (...) [HKLM][64Bits] -- TSEV Skyrim LE_is1
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb
O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{8B3A877E-1B73-464A-AD21-9F26A0682AC6} =>.Microsoft Corporation®
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Entertainment Sweden AB®
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {CE20A68F-BFBC-11E3-AA73-F04DA23A5C58} =>.Sony
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Vulkan Run Time Libraries 1.0.11.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.11.1 =>.LunarG, Inc.®
O42 - Logiciel: Windows 7 Games for Windows 8 and 10 - (...) [HKLM][64Bits] -- MicrosoftGamesForWin8
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.10 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (149) - 12s
HKLM\SOFTWARE\Wow6432Node\"echo_installer"/n
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Battlelog Web Plugins
HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks =>.Bethesda Softworks
HKLM\SOFTWARE\Wow6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\dbmkdb
HKLM\SOFTWARE\Wow6432Node\Disc Soft =>.Disc Soft
HKLM\SOFTWARE\Wow6432Node\EA Games =>.EA Games
HKLM\SOFTWARE\Wow6432Node\EAD4258FA0B8979333856B14520EEEB0 =>PUP.Optional.CrossRider
HKLM\SOFTWARE\Wow6432Node\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\Wow6432Node\fdqoge
HKLM\SOFTWARE\Wow6432Node\Fraps
HKLM\SOFTWARE\Wow6432Node\GOG.com =>.GOG.com
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\Hi-Rez Studios =>.Hi-Rez Studios
HKLM\SOFTWARE\Wow6432Node\HiRez Studios =>.Hirez Studios
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\INRP
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Wow6432Node\jhnlnl
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Lame For Audacity
HKLM\SOFTWARE\Wow6432Node\Logitech =>.Logitech
HKLM\SOFTWARE\Wow6432Node\LOLReplay
HKLM\SOFTWARE\Wow6432Node\LucasArts =>.LucasArts
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial)
HKLM\SOFTWARE\Wow6432Node\Maoha
HKLM\SOFTWARE\Wow6432Node\McAfee.com =>.McAfee.com
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugin
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\OpenAL
HKLM\SOFTWARE\Wow6432Node\OpenOffice =>.OpenOffice
HKLM\SOFTWARE\Wow6432Node\Origin
HKLM\SOFTWARE\Wow6432Node\Origin Games
HKLM\SOFTWARE\Wow6432Node\Overwolf =>.Overwolf
HKLM\SOFTWARE\Wow6432Node\Pando Networks
HKLM\SOFTWARE\Wow6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\Wow6432Node\PowerPivot
HKLM\SOFTWARE\Wow6432Node\rFactor2
HKLM\SOFTWARE\Wow6432Node\Riot Games =>.Riot Games
HKLM\SOFTWARE\Wow6432Node\SerGEAnt's Zone Of Games
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\SolidWorks =>.SolidWorks
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\TeamViewer =>.TeamViewer
HKLM\SOFTWARE\Wow6432Node\THQ =>.THQ
HKLM\SOFTWARE\Wow6432Node\Ubisoft =>.Ubisoft
HKLM\SOFTWARE\Wow6432Node\UCBrowser
HKLM\SOFTWARE\Wow6432Node\UCBrowserPID
HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile
HKLM\SOFTWARE\Wow6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node\Xvid Team =>.Xvid Team
HKLM\SOFTWARE\Wow6432Node\ZipTool
HKLM\SOFTWARE\Wow6432Node\Even Balance
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Audacity
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Bugsplat
HKCU\SOFTWARE\CASIO =>.CASIO
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\COMMONMSG
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\dlr
HKCU\SOFTWARE\e-academy Inc.
HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts
HKCU\SOFTWARE\Emulators
HKCU\SOFTWARE\Enterbrain =>.Enterbrain
HKCU\SOFTWARE\FreeTime
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\IADirectShow
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Image Space Incorporated
HKCU\SOFTWARE\INRP
HKCU\SOFTWARE\InstallPath
HKCU\SOFTWARE\InterActual Technologies
HKCU\SOFTWARE\ISI
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Kivuto Solutions Inc. =>.Kivuto Solutions Inc.
HKCU\SOFTWARE\KuaiZip
HKCU\SOFTWARE\KuaiZipSFX
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech =>.Logitech
HKCU\SOFTWARE\LOLReplay
HKCU\SOFTWARE\LucasArts =>.LucasArts
HKCU\SOFTWARE\LunarianConcepts
HKCU\SOFTWARE\MacGo
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Maoha
HKCU\SOFTWARE\MCAFEE =>.McAfee
HKCU\SOFTWARE\MountAndBladeWarbandKeys
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Ndemic Creations =>.Ndemic Creations
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NVIDIA Corporation =>.NVIDIA Corporation
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\OpenOffice =>.OpenOffice
HKCU\SOFTWARE\Overwolf =>.Overwolf
HKCU\SOFTWARE\Pando Networks
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\PopWnd
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RandyRants
HKCU\SOFTWARE\Realtek =>.Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Riot Games =>.Riot Games
HKCU\SOFTWARE\Robot Gentleman
HKCU\SOFTWARE\SKS
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\SNDA
HKCU\SOFTWARE\SolidWorks =>.SolidWorks
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\TeamSpeak 3 Client
HKCU\SOFTWARE\TeamViewer =>.TeamViewer
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Ubisoft =>.Ubisoft
HKCU\SOFTWARE\UCBrowser
HKCU\SOFTWARE\UCBrowserPID
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\VirtualDub.org
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\ZipTool
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft

---\\ Contenu des dossiers Programmes (305) - 36s
O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 11/10/2015 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.®
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\Common Files
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\DVD Maker
O43 - CFD: 30/07/2014 - [0] SHD -- C:\Program Files\Fichiers communs
O43 - CFD: 11/06/2015 - [0] D -- C:\Program Files\InterActual
O43 - CFD: 10/08/2016 - [] D -- C:\Program Files\Internet Explorer
O43 - CFD: 27/07/2016 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 27/07/2016 - [] AD -- C:\Program Files\iTunes =>.Apple Inc.®
O43 - CFD: 20/05/2015 - [] D -- C:\Program Files\Logitech =>.Logitech®
O43 - CFD: 28/03/2015 - [] D -- C:\Program Files\Logitech Gaming Software =>.Logitech®
O43 - CFD: 25/11/2014 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\Microsoft Games
O43 - CFD: 25/11/2014 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 25/11/2014 - [] D -- C:\Program Files\Microsoft SQL Server
O43 - CFD: 27/11/2014 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft.NET
O43 - CFD: 15/03/2015 - [] AD -- C:\Program Files\MotioninJoy =>.MotionInjoy
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\MSBuild
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics®
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\Reference Assemblies
O43 - CFD: 29/12/2015 - [] D -- C:\Program Files\Sony =>.Sony
O43 - CFD: 13/02/2016 - [0] HD -- C:\Program Files\Uninstall Information
O43 - CFD: 08/09/2016 - [] D -- C:\Program Files\Unlocker
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files\Windows Defender
O43 - CFD: 10/08/2016 - [] D -- C:\Program Files\Windows Journal
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files\Windows Mail
O43 - CFD: 05/06/2016 - [] D -- C:\Program Files\Windows Media Player
O43 - CFD: 05/06/2016 - [] D -- C:\Program Files\Windows Multimedia Platform
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files\Windows NT
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 05/06/2016 - [] D -- C:\Program Files\Windows Portable Devices
O43 - CFD: 03/06/2016 - [] SHD -- C:\Program Files\Windows Sidebar
O43 - CFD: 09/09/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation®
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files\WindowsPowerShell
O43 - CFD: 09/09/2016 - [] D -- C:\Program Files\ZipTool
O43 - CFD: 16/01/2016 - [] AD -- C:\Program Files (x86)\Adobe =>.Adobe
O43 - CFD: 19/03/2016 - [] AD -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.®
O43 - CFD: 22/11/2014 - [] AD -- C:\Program Files (x86)\Audacity
O43 - CFD: 26/09/2015 - [] AD -- C:\Program Files (x86)\Battlelog Web Plugins =>.Electronic Arts®
O43 - CFD: 11/10/2015 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.®
O43 - CFD: 07/02/2016 - [] D -- C:\Program Files (x86)\CASIO =>.CASIO
O43 - CFD: 01/09/2016 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 04/12/2015 - [] D -- C:\Program Files (x86)\DAEMON Tools Lite =>.Disc Soft Ltd®
O43 - CFD: 13/02/2015 - [] D -- C:\Program Files (x86)\Format Factory and Options
O43 - CFD: 13/02/2015 - [] D -- C:\Program Files (x86)\FreeTime
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 30/07/2014 - [] AD -- C:\Program Files (x86)\Hi-Rez Studios =>.Khrona LLC®
O43 - CFD: 19/12/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.LUCASFILM ENTERTAINMENT COMPANY LTD®
O43 - CFD: 10/08/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 27/07/2016 - [] D -- C:\Program Files (x86)\iTunes
O43 - CFD: 08/02/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle America, Inc.®
O43 - CFD: 28/12/2015 - [] AD -- C:\Program Files (x86)\Lame For Audacity
O43 - CFD: 22/08/2015 - [0] D -- C:\Program Files (x86)\LibraryModule
O43 - CFD: 21/02/2015 - [] D -- C:\Program Files (x86)\Logitech =>.Logitech
O43 - CFD: 21/01/2015 - [] D -- C:\Program Files (x86)\LOLReplay
O43 - CFD: 09/09/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation®
O43 - CFD: 09/09/2016 - [0] D -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
O43 - CFD: 25/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation®
O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET
O43 - CFD: 20/02/2015 - [] AD -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
O43 - CFD: 25/11/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation®
O43 - CFD: 25/11/2014 - [] D -- C:\Program Files (x86)\Microsoft SQL Server
O43 - CFD: 03/06/2016 - [] AD -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft.NET
O43 - CFD: 28/12/2014 - [] D -- C:\Program Files (x86)\Movie Maker 2.6
O43 - CFD: 10/08/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 10/06/2016 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 03/10/2015 - [] D -- C:\Program Files (x86)\OpenAL =>.Creative Labs Inc®
O43 - CFD: 11/10/2014 - [] AD -- C:\Program Files (x86)\OpenOffice 4
O43 - CFD: 19/06/2016 - [] AD -- C:\Program Files (x86)\Origin =>.Electronic Arts, Inc.®
O43 - CFD: 20/05/2016 - [] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts®
O43 - CFD: 30/07/2014 - [] D -- C:\Program Files (x86)\Pando Networks
O43 - CFD: 09/08/2014 - [] D -- C:\Program Files (x86)\PhotoFiltre 7
O43 - CFD: 05/09/2015 - [] D -- C:\Program Files (x86)\Play Games
O43 - CFD: 09/02/2015 - [] D -- C:\Program Files (x86)\Pokemon Showdown
O43 - CFD: 29/01/2015 - [] D -- C:\Program Files (x86)\RandyRants.com =>.RandyRants.com
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 17/04/2016 - [] AD -- C:\Program Files (x86)\RomStation =>.Microsoft Corporation®
O43 - CFD: 29/08/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl®
O43 - CFD: 29/12/2015 - [] D -- C:\Program Files (x86)\Sony =>.Sony
O43 - CFD: 09/09/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve®
O43 - CFD: 26/08/2015 - [0] D -- C:\Program Files (x86)\SystemAid
O43 - CFD: 16/05/2015 - [] AD -- C:\Program Files (x86)\SystemRequirementsLab
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer
O43 - CFD: 19/08/2015 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft Entertainment Sweden AB®
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information
O43 - CFD: 04/10/2014 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLAN
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc.®
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 05/06/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 14/07/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 05/06/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 03/06/2016 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 30/07/2014 - [] AD -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 14/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 14/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CASIO =>.CASIO
O43 - CFD: 08/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Compress
O43 - CFD: 08/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios =>.Hi-Rez Studios
O43 - CFD: 08/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech =>.Logitech
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts =>.LucasArts
O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 09/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 28/08/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy =>.MotionInjoy
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.NVIDIA Corporation
O43 - CFD: 03/06/2016 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Catalyst =>.R.G. Catalyst
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony =>.Sony
O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SVT_INRP
O43 - CFD: 14/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 13/02/2016 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSEV Skyrim LE
O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall Format Factory and Options
O43 - CFD: 26/10/2014 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 30/07/2014 - [] D -- C:\ProgramData\Apple
O43 - CFD: 30/07/2014 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 03/06/2016 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 12/06/2015 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 30/07/2014 - [0] SHD -- C:\ProgramData\Bureau
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 06/12/2014 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 03/06/2016 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 12/07/2015 - [] D -- C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
O43 - CFD: 01/08/2014 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts
O43 - CFD: 30/07/2014 - [0] SHD -- C:\ProgramData\Favoris
O43 - CFD: 30/07/2014 - [] D -- C:\ProgramData\Hi-Rez Studios =>.Hi-Rez Studios
O43 - CFD: 01/08/2014 - [] D -- C:\ProgramData\HP =>.HP
O43 - CFD: 28/03/2015 - [] D -- C:\ProgramData\LogiShrd
O43 - CFD: 09/09/2016 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 08/10/2014 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 30/07/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer
O43 - CFD: 08/09/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft
O43 - CFD: 28/08/2016 - [] D -- C:\ProgramData\Microsoft Help
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 30/07/2014 - [0] SHD -- C:\ProgramData\Modèles
O43 - CFD: 09/09/2016 - [] D -- C:\ProgramData\NVIDIA =>.NVIDIA
O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\NVIDIA Corporation =>.NVIDIA Corporation
O43 - CFD: 08/02/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Orbit
O43 - CFD: 22/07/2016 - [] D -- C:\ProgramData\Origin
O43 - CFD: 01/09/2016 - [] D -- C:\ProgramData\Overwolf =>.Overwolf
O43 - CFD: 02/04/2016 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 03/06/2016 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 30/07/2014 - [] D -- C:\ProgramData\Riot Games =>.Riot Games
O43 - CFD: 29/08/2016 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 29/12/2015 - [] D -- C:\ProgramData\Sony =>.Sony
O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\Steam
O43 - CFD: 16/10/2014 - [] D -- C:\ProgramData\Sun
O43 - CFD: 19/08/2015 - [] D -- C:\ProgramData\Ubisoft =>.Ubisoft
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 13/02/2016 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 06/03/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 26/10/2014 - [] D -- C:\Program Files (x86)\Common Files\Apple
O43 - CFD: 20/05/2016 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller
O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Gestionnaire d'installation SolidWorks
O43 - CFD: 04/12/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 08/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 03/06/2016 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 04/09/2016 - [] D -- C:\Program Files (x86)\Common Files\Overwolf =>.Overwolf
O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 29/03/2016 - [] AD -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines
O43 - CFD: 29/08/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\.minecraft
O43 - CFD: 15/05/2015 - [0] D -- C:\Users\Mathiew\AppData\Roaming\.rFactor
O43 - CFD: 01/07/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 13/07/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Apple Computer
O43 - CFD: 06/03/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Audacity
O43 - CFD: 30/07/2014 - [0] D -- C:\Users\Mathiew\AppData\Roaming\Awesomium
O43 - CFD: 01/08/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Championify
O43 - CFD: 19/12/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 10/07/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\dvdcss
O43 - CFD: 18/09/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\e-academy Inc
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\FEZ
O43 - CFD: 21/11/2010 - [] D -- C:\Users\Mathiew\AppData\Roaming\Identities
O43 - CFD: 15/07/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 28/03/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Logishrd
O43 - CFD: 28/03/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Logitech =>.Logitech
O43 - CFD: 02/10/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\LolClient
O43 - CFD: 30/07/2014 - [] D -- C:\Users\Mathiew\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 09/09/2016 - [0] D -- C:\Users\Mathiew\AppData\Roaming\Malwarebytes =>.Malwarebytes
O43 - CFD: 11/06/2016 - [] SD -- C:\Users\Mathiew\AppData\Roaming\Microsoft =>.Microsoft
O43 - CFD: 03/10/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Minecraft =>.Minecraft
O43 - CFD: 15/03/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\MotioninJoy =>.MotionInjoy
O43 - CFD: 19/08/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\nBrowser
O43 - CFD: 20/05/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\NVIDIA =>.NVIDIA
O43 - CFD: 11/10/2014 - [] D -- C:\Users\Mathiew\AppData\Roaming\OpenOffice =>.OpenOffice
O43 - CFD: 26/09/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Origin
O43 - CFD: 09/08/2014 - [] D -- C:\Users\Mathiew\AppData\Roaming\PhotoFiltre 7
O43 - CFD: 29/12/2015 - [0] D -- C:\Users\Mathiew\AppData\Roaming\Publish Providers
O43 - CFD: 19/08/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\PunkBuster
O43 - CFD: 30/07/2014 - [] D -- C:\Users\Mathiew\AppData\Roaming\Riot Games =>.Riot Games
O43 - CFD: 09/09/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Skype =>.Skype
O43 - CFD: 14/11/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\SolidWorks =>.SolidWorks
O43 - CFD: 29/12/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Sony =>.Sony
O43 - CFD: 19/02/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Sony Creative Software Inc
O43 - CFD: 01/07/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
O43 - CFD: 01/05/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\TS3Client
O43 - CFD: 15/07/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Ubisoft =>.Ubisoft
O43 - CFD: 09/07/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\uTorrent
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\vlc
O43 - CFD: 06/08/2014 - [] D -- C:\Users\Mathiew\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 20/12/2014 - [] D -- C:\Users\Mathiew\AppData\Roaming\Yacht Club Games =>.Yacht Club Games
O43 - CFD: 09/09/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\ZHP
O43 - CFD: 10/07/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\_12ibt6
O43 - CFD: 03/06/2016 - [0] D -- C:\Users\Mathiew\AppData\Local\ActiveSync
O43 - CFD: 06/03/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Adobe =>.Adobe
O43 - CFD: 07/11/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Ahri.tw =>.Ahri.tw
O43 - CFD: 30/07/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Apple
O43 - CFD: 30/07/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Apple Computer
O43 - CFD: 03/06/2016 - [0] SHD -- C:\Users\Mathiew\AppData\Local\Application Data
O43 - CFD: 19/09/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Apps
O43 - CFD: 31/07/2015 - [] D -- C:\Users\Mathiew\AppData\Local\CEF
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Comms
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\CrashDumps
O43 - CFD: 06/09/2016 - [0] D -- C:\Users\Mathiew\AppData\Local\Diagnostics
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Disc_Soft_Ltd
O43 - CFD: 07/02/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Downloaded Installations
O43 - CFD: 19/04/2015 - [0] D -- C:\Users\Mathiew\AppData\Local\ElevatedDiagnostics
O43 - CFD: 13/02/2016 - [0] SHD -- C:\Users\Mathiew\AppData\Local\EmieBrowserModeList
O43 - CFD: 13/02/2016 - [0] SHD -- C:\Users\Mathiew\AppData\Local\EmieSiteList
O43 - CFD: 13/02/2016 - [0] SHD -- C:\Users\Mathiew\AppData\Local\EmieUserList
O43 - CFD: 01/08/2014 - [] D -- C:\Users\Mathiew\AppData\Local\ESN
O43 - CFD: 11/03/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Google =>.Google
O43 - CFD: 01/06/2015 - [] D -- C:\Users\Mathiew\AppData\Local\GWX
O43 - CFD: 03/06/2016 - [0] SHD -- C:\Users\Mathiew\AppData\Local\Historique
O43 - CFD: 30/08/2016 - [] D -- C:\Users\Mathiew\AppData\Local\IsolatedStorage
O43 - CFD: 28/03/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Logitech =>.Logitech
O43 - CFD: 20/02/2015 - [0] D -- C:\Users\Mathiew\AppData\Local\Logitech-LS
O43 - CFD: 19/12/2015 - [] D -- C:\Users\Mathiew\AppData\Local\LucasArts =>.LucasArts
O43 - CFD: 21/02/2015 - [] D -- C:\Users\Mathiew\AppData\Local\MacGo
O43 - CFD: 12/12/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Mega Limited =>.MEGA Limited
O43 - CFD: 01/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Microsoft =>.Microsoft
O43 - CFD: 08/08/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Microsoft Games
O43 - CFD: 25/11/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Microsoft Help
O43 - CFD: 19/10/2015 - [] D -- C:\Users\Mathiew\AppData\Local\My Games
O43 - CFD: 10/06/2016 - [] D -- C:\Users\Mathiew\AppData\Local\NVIDIA =>.NVIDIA
O43 - CFD: 25/06/2016 - [] D -- C:\Users\Mathiew\AppData\Local\NVIDIA Corporation =>.NVIDIA Corporation
O43 - CFD: 01/08/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Origin
O43 - CFD: 09/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Overwolf =>.Overwolf
O43 - CFD: 10/08/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Packages
O43 - CFD: 09/02/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Pokemon Showdown
O43 - CFD: 31/07/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Programs
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Publishers
O43 - CFD: 19/10/2015 - [] D -- C:\Users\Mathiew\AppData\Local\PunkBuster
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Qaperrydawesh
O43 - CFD: 11/06/2015 - [] D -- C:\Users\Mathiew\AppData\Local\SKIDROW =>.SKIDROW
O43 - CFD: 29/12/2015 - [] D -- C:\Users\Mathiew\AppData\Local\SkinSpotlights
O43 - CFD: 29/12/2015 - [] D -- C:\Users\Mathiew\AppData\Local\SkinSpotlightsReplays
O43 - CFD: 21/12/2015 - [0] D -- C:\Users\Mathiew\AppData\Local\Skype =>.Skype
O43 - CFD: 12/12/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Skyrim
O43 - CFD: 29/12/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Sony =>.Sony
O43 - CFD: 17/05/2015 - [] D -- C:\Users\Mathiew\AppData\Local\Steam
O43 - CFD: 27/04/2016 - [] D -- C:\Users\Mathiew\AppData\Local\TeamSpeak 3 Client
O43 - CFD: 27/09/2015 - [] D -- C:\Users\Mathiew\AppData\Local\TeamViewer =>.TeamViewer
O43 - CFD: 09/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Temp
O43 - CFD: 03/06/2016 - [0] SHD -- C:\Users\Mathiew\AppData\Local\Temporary Internet Files
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Local\TileDataLayer
O43 - CFD: 09/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Tuhitluqerent
O43 - CFD: 31/07/2014 - [] D -- C:\Users\Mathiew\AppData\Local\Ubisoft Game Launcher
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\UCBrowser
O43 - CFD: 17/04/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Unravel
O43 - CFD: 20/02/2015 - [] D -- C:\Users\Mathiew\AppData\Local\VirtualStore
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Local\Voqawardwagise
O43 - CFD: 13/02/2015 - [0] D -- C:\Users\Mathiew\AppData\Local\WMTools Downloaded Files
O43 - CFD: 31/07/2014 - [0] D -- C:\Users\Mathiew\AppData\Local\Programs\Common
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1-click run
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 03/06/2016 - [] RD -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 11/08/2016 - [] RD -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory =>.FormatFactory
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 30/10/2015 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 01/09/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf =>.Overwolf
O43 - CFD: 09/08/2014 - [0] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Programs
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RandyRants.com =>.RandyRants.com
O43 - CFD: 11/08/2016 - [] RD -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 30/10/2015 - [] RD -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Forest v0.04
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft =>.Ubisoft
O43 - CFD: 08/09/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
O43 - CFD: 03/06/2016 - [] D -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\Mathiew\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 03/06/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft
O43 - CFD: 04/09/2016 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Overwolf =>.Overwolf

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 1s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Mathiew\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ Liste des pilotes du système (62) - 7s
O58 - SDL:2015/10/30 09:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 09:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2015/10/30 09:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2015/12/04 19:37:09 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2015/12/04 19:37:22 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtliteusbbus.sys [46392] =>.Disc Soft Ltd®
O58 - SDL:2015/10/30 09:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows®
O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\WINDOWS\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.®
O58 - SDL:2015/10/30 09:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2014/07/25 13:40:07 A . (.REALiX(tm) - HWiNFO AMD64 Kernel Driver.) -- C:\WINDOWS\System32\drivers\HWiNFO64A.SYS [31648] =>.Martin Malik - REALiX®
O58 - SDL:2015/10/30 09:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation
O58 - SDL:2015/10/30 09:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] =>.Intel Corporation
O58 - SDL:2015/10/30 09:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/10/30 09:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2015/10/30 09:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows®
O58 - SDL:2014/02/03 06:46:42 A . (.Auteurs - Intel(R) Smart Connect Technology Device Dr.) -- C:\WINDOWS\System32\drivers\ISCTD.sys [44744] =>.Intel CASE®
O58 - SDL:2016/09/08 16:58:06 A . (.WinMount International Inc - WinMount Driver for x64.) -- C:\WINDOWS\System32\drivers\KuaiZipDrive.sys [92872] =>.Superfluous.Tencent
O58 - SDL:2009/11/24 02:37:50 A . (.Logitech Inc. - Logitech WingMan Virtual Bus Enumerator Dri.) -- C:\WINDOWS\System32\drivers\LGBusEnum.sys [22408] =>.Logitech®
O58 - SDL:2009/11/24 02:38:00 A . (.Logitech Inc. - Logitech GamePanel Virtual Hid Device Drive.) -- C:\WINDOWS\System32\drivers\LGVirHid.sys [16008] =>.Logitech®
O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation®
O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation®
O58 - SDL:2016/09/09 13:11:42 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2009/11/18 07:12:00 A . (.Creative Technology Ltd. - Creative Audio Driver.) -- C:\WINDOWS\System32\drivers\MBfilt64.sys [32344] =>.Creative Labs Inc®
O58 - SDL:2015/10/30 09:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation®
O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows®
O58 - SDL:2016/05/21 23:10:34 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [141256] =>.NVIDIA Corporation®
O58 - SDL:2015/08/29 00:31:14 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11151488] =>.NVIDIA Corporation®
O58 - SDL:2015/10/30 09:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows®
O58 - SDL:2016/04/14 07:38:19 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [56384] =>.NVIDIA Corporation®
O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [589824] =>.Realtek
O58 - SDL:2014/01/21 19:25:26 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [3849304] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/10/30 09:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2013/09/16 21:20:12 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverx64.sys [99288] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2016/08/29 12:54:26 A . (.Huorong Borui (Beijing) Technology Co., Ltd. - Huorong Network Security Core Kext.) -- C:\WINDOWS\System32\drivers\ucguard.sys [81792] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.®
O58 - SDL:2015/06/10 23:08:36 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2015/10/30 09:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows®
O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows®
O58 - SDL:2010/04/27 16:57:12 A . (.Logitech Inc. - Logitech WingMan Virtual Bus Enumerator Dri.) -- C:\WINDOWS\System32\drivers\WmBEnum.sys [26440] =>.Logitech®
O58 - SDL:2010/04/27 16:57:20 A . (.Logitech Inc. - Logitech WingMan Virtual Hid Device Driver.) -- C:\WINDOWS\System32\drivers\WmVirHid.sys [16200] =>.Logitech®
O58 - SDL:2010/04/27 14:03:12 A . (.Logitech Inc. - Logitech WingMan Translation Driver.) -- C:\WINDOWS\System32\drivers\WmXlCore.sys [77512] =>.Logitech®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (11) - 32s
O61 - LFC: 2016/08/30 10:46:01 A . (..) -- C:\Users\Mathiew\Downloads\BaronReplays\BaronReplays_Auto.exe [11365758]
O61 - LFC: 2016/09/01 17:10:06 A . (..) -- C:\Users\Mathiew\AppData\Roaming\Championify\update.bat [406]
O61 - LFC: 2016/09/06 22:23:50 A . (..) -- C:\Users\Mathiew\AppData\Local\Voqawardwagise\nacl_validation_cache.bin [236]
O61 - LFC: 2016/09/08 18:41:55 A . (..) -- C:\Users\Mathiew\AppData\Local\Tuhitluqerent\nacl_validation_cache.bin [200]
O61 - LFC: 2016/09/06 22:23:50 A . (..) -- C:\Users\Mathiew\AppData\Local\Qaperrydawesh\nacl_validation_cache.bin [236]
O61 - LFC: 2016/08/30 18:53:27 A . (..) -- C:\Users\Mathiew\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [32104]
O61 - LFC: 2016/09/09 13:27:13 A . (..) -- C:\Users\Mathiew\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2016/08/29 16:13:58 A . (.Copyright © 2016.) -- C:\Users\Mathiew\AppData\Local\Overwolf\Extensions\ggfmakpbllghoepnmfelddbminamnbmfelbahfdp\0.13.1\plugins\OwDota2GameEvents.dll [49664]
O61 - LFC: 2016/08/29 13:10:00 A . (.Copyright © 2016.) -- C:\Users\Mathiew\AppData\Local\Overwolf\Extensions\ggfmakpbllghoepnmfelddbminamnbmfelbahfdp\0.12.2\plugins\OwDota2GameEvents.dll [49664]
O61 - LFC: 2016/09/07 15:00:04 A . (..) -- C:\Users\Mathiew\AppData\Local\NVIDIA\NvBackend\UMDShim\nvcoproc.bin [7350875]
O61 - LFC: 2016/09/09 13:05:20 A . (..) -- C:\Users\Mathiew\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148]

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.)

---\\ Recherche d'infection sur les navigateurs (4) - 1s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {630117AB-CF28-40D8-B9EC-51ED7F16911A} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {630117AB-CF28-40D8-B9EC-51ED7F16911A} - (Bing) - http://www.bing.com/

---\\ Enumère les services démarrés par Svchost (41) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1339904] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [957952] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [963072] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [94720] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [112640] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1001472] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [372736] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] =>.Microsoft Corporation
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2057216] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [211456] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [696320] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [507904] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [456704] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2280960] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1144320] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [608768] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [361472] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [379392] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1139712] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948736] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (18) - 6s
O87 - FAEL: "UDP Query User{4F9BD578-BD00-49F4-9D2D-C56EB07B4FCA}C:\users\mathiew\appdata\local\popcorn time\nw.exe" [In-None-P17-TRUE] .(...) -- C:\users\mathiew\appdata\local\popcorn time\nw.exe (.not file.)
O87 - FAEL: "TCP Query User{497B232A-6B0C-4F94-B227-F7FC1AE5CE33}C:\users\mathiew\appdata\local\popcorn time\nw.exe" [In-None-P6-TRUE] .(...) -- C:\users\mathiew\appdata\local\popcorn time\nw.exe (.not file.)
O87 - FAEL: "UDP Query User{2108DF76-E213-46AB-8713-40C261EE0AF2}D:\r.g. catalyst\portal 2\portal2.exe" [In-None-P17-TRUE] .(...) -- D:\r.g. catalyst\portal 2\portal2.exe
O87 - FAEL: "TCP Query User{51C46C94-8601-4EA8-BE67-0A0C507C9C53}D:\r.g. catalyst\portal 2\portal2.exe" [In-None-P6-TRUE] .(...) -- D:\r.g. catalyst\portal 2\portal2.exe
O87 - FAEL: "UDP Query User{87BA9F55-F0CB-4755-AF9D-093A0875A242}C:\program files (x86)\rfactor2\bin32\rfactor2 dedicated.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\rfactor2\bin32\rfactor2 dedicated.exe (.not file.)
O87 - FAEL: "TCP Query User{702D11C1-C8AB-40E6-B686-19DC8C045D4E}C:\program files (x86)\rfactor2\bin32\rfactor2 dedicated.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\rfactor2\bin32\rfactor2 dedicated.exe (.not file.)
O87 - FAEL: "UDP Query User{6C90AC9B-20F3-400C-ACDD-ACC7FF123DBF}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" [In-None-P17-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe (.not file.)
O87 - FAEL: "TCP Query User{3FDA7D75-BB9F-41CC-AEFD-5EB6880615E5}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe" [In-None-P6-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe (.not file.)
O87 - FAEL: "UDP Query User{8A0F28AD-EE7D-4ADB-9D56-AF66FE78A87E}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" [In-None-P17-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe (.not file.)
O87 - FAEL: "TCP Query User{EF86358F-26E1-4C9B-851C-8E6B1784E0F8}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe" [In-None-P6-TRUE] .(...) -- C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe (.not file.)
O87 - FAEL: "{B42A877D-93B4-4563-A685-AC1FEF01646E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (.not file.)
O87 - FAEL: "{35FB0C49-1FAB-4F66-A9D7-08F7F7AE6F2E}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (.not file.)
O87 - FAEL: "UDP Query User{1D5BA1E5-A989-411B-B461-B82C50296EDC}C:\program files (x86)\lolreplay\lolreplay.exe" [In-None-P17-TRUE] .(.Copyright © 2011 - LOLReplay.) -- C:\program files (x86)\lolreplay\lolreplay.exe
O87 - FAEL: "TCP Query User{F446C0E5-EB9D-4EC4-8F17-EC43C4E1F973}C:\program files (x86)\lolreplay\lolreplay.exe" [In-None-P6-TRUE] .(.Copyright © 2011 - LOLReplay.) -- C:\program files (x86)\lolreplay\lolreplay.exe
O87 - FAEL: "UDP Query User{87F60F0E-931F-4903-AC84-4D1795C7FECF}C:\users\mathiew\downloads\assassin's creed ii pc full game updated v_1.01 ^^nosteam^^\assassin's creed ii\assassinscreediigame.exe" [In-None-P17-TRUE] .(...) -- C:\users\mathiew\downloads\assassin's creed ii pc full game updated v_1.01 ^^nosteam^^\assassin's creed ii\assassinscreediigame.exe (.not file.)
O87 - FAEL: "TCP Query User{AF73F042-AD9C-47D2-8831-9B0077CB90A3}C:\users\mathiew\downloads\assassin's creed ii pc full game updated v_1.01 ^^nosteam^^\assassin's creed ii\assassinscreediigame.exe" [In-None-P6-TRUE] .(...) -- C:\users\mathiew\downloads\assassin's creed ii pc full game updated v_1.01 ^^nosteam^^\assassin's creed ii\assassinscreediigame.exe (.not file.)
O87 - FAEL: "UDP Query User{62A51710-B501-46C1-B49B-457841441F3F}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
O87 - FAEL: "TCP Query User{E40C8037-0AF0-472C-8D6F-720765D62637}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe

---\\ Scan Additionnel (1) - 0s
HKLM\SOFTWARE\Wow6432Node\EAD4258FA0B8979333856B14520EEEB0 =>PUP.Optional.CrossRider

---\\ Récapitulatif des éléments trouvés sur votre station (2) - 0s
https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider
https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent

~ End of the scan, 38603 items in 00h02mn50s (1191)

Publicité


Signaler le contenu de ce document

Publicité