cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.3.4.39 Par Nicolas Coolman (2017/03/04)
~ Démarré par S (Administrator) (2017/03/05 12:34:23)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\S\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\S\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Home Premium, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Navigateurs Internet (2) - 1s
~ GCIE: Google Chrome v56.0.2924.87
~ MSIE: Internet Explorer v11.0.9600.18537

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Surveillance de Logiciels (2) - 11s
~ Adobe Flash Player 24 ActiveX (Surveillance)
~ Adobe Reader XI (Surveillance)

---\\ Logiciels de partage P2P (1) - 12s
~ µTorrent v3.2.1.28086 (P2P)

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 21 Model 16 Stepping 1, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3643.768 MB (44% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 146 GB (20%) free of 697 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: S-D
~ User Name: S
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 146 GB free of 697 GB (System)

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 5s
[MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\windows\Explorer.exe [3229696] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.105954F9BEAD700A6DF4B5B489FCCB4B] - 12/11/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\windows\System32\wininet.dll [2920960] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 05/07/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9B38580063D281A99E68EF5813022A5F] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\DfsC.sys [106496] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.632E8A00090E4F85F304E152C92C7F2C] - 05/01/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation
[MD5.E47D571FEC2C76E867935109AB2A770C] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netBT.sys [262144] =>.Microsoft Corporation
[MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.DF8126BD41180351A093A3AD2FC8903B] - 25/02/2011 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\windows\System32\drivers\volsnap.sys [296320] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (11) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\windows\system32\atiesrxx.exe =>.AMD
O23 - Service: GFNEX Service (GFNEXSrv) . (.Auteurs - GFNEXSrv.) - C:\Windows\System32\GFNEXSrv.exe =>.Toshiba Corporation
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Hotspot Shield Service (hshld) . (.AnchorFree Inc. - Hotspot Shield 5.0.4.) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe =>.AnchorFree Inc®
O23 - Service: Hotspot Shield Monitoring Service (HssWd) . (.AnchorFree Inc. - Hotspot Shield 5.0.4.) - C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe =>.AnchorFree Inc®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation - TDCSrv Application.) - C:\windows\system32\TODDSrv.exe =>.Toshiba Corporation
O23 - Service: TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation - TOSHIBA Power Saver.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.Toshiba Corporation
O23 - Service: TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation - TOSHIBA eco Utility Service.) - C:\Program Files\TOSHIBA\TECO\TecoService.exe =>.TOSHIBA CORPORATION®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (19) - 58s
SS - Auto [19/12/2016] [ 82640] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [18/02/2017] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SS - Auto [14/02/2012] [ 235520] (AMD External Events Utility) . (.AMD.) - C:\windows\system32\atiesrxx.exe =>.AMD
SS - Auto [10/09/2010] [ 162824] GFNEX Service (GFNEXSrv) . (.Auteurs.) - C:\Windows\System32\GFNEXSrv.exe =>.PEGATRON CORPORATION®
SS - Auto [28/08/2015] [ 144200] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [28/08/2015] [ 144200] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [13/11/2015] [ 2048720] Hotspot Shield Service (hshld) . (.AnchorFree Inc..) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe =>.AnchorFree Inc®
SS - Demand [13/11/2015] [ 96600] Hotspot Shield Tray Service (HssTrayService) . (...) - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE =>.AnchorFree Inc®
SS - Auto [13/11/2015] [ 851152] Hotspot Shield Monitoring Service (HssWd) . (.AnchorFree Inc..) - C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe =>.AnchorFree Inc®
SR - Auto [20/01/2017] [ 4355024] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Auto [20/09/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Demand [20/09/2016] [ 324224] Notebook Performance Tuning Service (TEMPRO) (TemproMonitoringService) . (.Toshiba Europe GmbH.) - C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe =>.Toshiba Europe GmbH®
SS - Demand [20/09/2016] [ 324224] TMachInfo (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe =>.TOSHIBA CORPORATION®
SS - Auto [20/09/2016] [ 324224] TOSHIBA Optical Disc Drive Service (TODDSrv) . (.TOSHIBA Corporation.) - C:\windows\system32\TODDSrv.exe =>.TOSHIBA CORPORATION®
SS - Auto [20/09/2016] [ 324224] TOSHIBA Power Saver (TosCoSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe =>.Toshiba Corporation
SS - Demand [20/09/2016] [ 324224] TOSHIBA Bluetooth Service (TOSHIBA Bluetooth Service) . (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\TosBtSrv.exe =>.TOSHIBA CORPORATION®
SS - Auto [20/09/2016] [ 324224] TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TECO\TecoService.exe =>.TOSHIBA CORPORATION®
SS - Demand [20/09/2016] [ 324224] TOSHIBA HDD SSD Alert Service (TOSHIBA HDD SSD Alert Service) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe =>.TOSHIBA CORPORATION®
SS - Demand [20/09/2016] [ 324224] TPCH Service (TPCHSrv) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe =>.TOSHIBA CORPORATION®

---\\ Tâches planifiées en automatique (23) - 6s
[MD5.A0747D9A94EDFD251ED8E6556E70BA37] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [324224] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.89ECFB35517F62C3802B227F288B750E] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [324224] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.00000000000000000000000000000000] [APT] [AVGPCTuneUp_Task_BkGndMaintenance] (...) -- C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe (.not file.) [324224] (.Activate.)
[MD5.00000000000000000000000000000000] [APT] [CCleanerSkipUAC] (...) -- C:\Program Files\CCleaner\CCleaner.exe (.not file.) [324224] (.Activate.)
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [324224] (.Activate.) =>.Google Inc®
[MD5.DD7423ABBE2913E70D50E9318AD57EE4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [324224] (.Activate.) =>.Google Inc®
[MD5.00000000000000000000000000000000] [APT] [RealDownloader Update Check] (...) -- C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe (.not file.) [324224] (.Activate.)
[MD5.00000000000000000000000000000000] [APT] [RealTimes (32-bit) ] (...) -- c:\program files (x86)\real\realplayer\Update\realsched.exe (.not file.) [324224] (.Activate.)
[MD5.00000000000000000000000000000000] [APT] [RealUpgradeLogonTaskS-1-5-21-3343322983-3518632045-369774458-1000] (...) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe (.not file.) [324224] (.Activate.)
[MD5.00000000000000000000000000000000] [APT] [RealUpgradeScheduledTaskS-1-5-21-3343322983-3518632045-369774458-1000] (...) -- C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe (.not file.) [324224] (.Activate.)
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] [APT] [{98F9B58E-FEC5-4710-B80E-F75620BECB91}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [324224] (.Activate.) =>.Google Inc®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\windows\Tasks\Adobe Flash Player Updater.job [324224] =>.Adobe Systems Incorporated®
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\windows\System32\Tasks\Adobe Acrobat Update Task [324224] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\windows\System32\Tasks\Adobe Flash Player Updater [324224] =>.Adobe Systems Incorporated®
O39 - APT: AVGPCTuneUp_Task_BkGndMaintenance - (...) -- C:\windows\System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: CCleanerSkipUAC - (...) -- C:\windows\System32\Tasks\CCleanerSkipUAC [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore [324224] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA [324224] =>.Google Inc®
O39 - APT: RealDownloader Update Check - (...) -- C:\windows\System32\Tasks\RealDownloader Update Check [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: RealTimes (32-bit) - (...) -- C:\windows\System32\Tasks\RealTimes (32-bit) [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: RealUpgradeLogonTaskS-1-5-21-3343322983-3518632045-369774458-1000 - (...) -- C:\windows\System32\Tasks\RealUpgradeLogonTaskS-1-5-21-3343322983-3518632045-369774458-1000 [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: RealUpgradeScheduledTaskS-1-5-21-3343322983-3518632045-369774458-1000 - (...) -- C:\windows\System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-3343322983-3518632045-369774458-1000 [324224] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: {98F9B58E-FEC5-4710-B80E-F75620BECB91} - (.Google Inc..) -- C:\windows\System32\Tasks\{98F9B58E-FEC5-4710-B80E-F75620BECB91} [324224] =>.Google Inc®

---\\ Applications lancées au démarrage du système (21) - 1s
O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated®
O4 - HKLM\..\Run: [TPwrMain] . (.TOSHIBA Corporation - TOSHIBA Power Saver.) -- C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TCrdMain] . (.TOSHIBA Corporation - TOSHIBA Flash Cards Main Module.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [Teco] . (.TOSHIBA Corporation - TOSHIBA eco Utility.) -- C:\Program Files\TOSHIBA\TECO\Teco.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TosWaitSrv] . (.TOSHIBA Corporation - .) -- C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [TosSENotify] . (.TOSHIBA Corporation - .) -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe =>.TOSHIBA CORPORATION®
O4 - HKLM\..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) -- C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe =>.Malwarebytes Corporation®
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\S\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - HKLM\..\Wow6432Node\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe =>.Advanced Micro Devices, Inc.®
O4 - HKUS\.DEFAULT\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe =>.TOSHIBA CORPORATION®
O4 - HKUS\S-1-5-18\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe =>.TOSHIBA CORPORATION®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe =>.TOSHIBA CORPORATION®
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [TOPI.EXE] . (.TOSHIBA - TOSHIBA Online Product Information.) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe =>.TOSHIBA CORPORATION®
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3343322983-3518632045-369774458-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\S\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKUS\S-1-5-21-3343322983-3518632045-369774458-1000\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®

---\\ Processus lancés (13) - 1s
[MD5.804E3246E3E73D4A936F2F4BCDC53A2D] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024] [PID.2616] =>.Malwarebytes Corporation®
[MD5.4219B7B71D6C15EBE6E4F0CAFAFEF709] - (.TOSHIBA Corporation - TOSHIBA Flash Cards Main Module.) -- C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [989056] [PID.4040] =>.TOSHIBA CORPORATION®
[MD5.A6A21A7D544675E98C040DA18904CF50] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [2780112] [PID.1056] =>.Malwarebytes Corporation®
[MD5.2BACD71123F42CEA603F4E205E1AE337] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292096] [PID.6028] =>.Microsoft Corporation®
[MD5.2A46FFE841EC43001D5A293A54DB34DE] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [223104] [PID.5976] =>.Microsoft Corporation®
[MD5.B7FD7D6C909114C25C205A50CD326D14] - (.AnchorFree Inc. - Hotspot Shield 5.0.4.) -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [2048720] [PID.5344] =>.AnchorFree Inc®
[MD5.043AA33C9487A2046734C29E53A7DA47] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\S\AppData\Roaming\ZHP\ZHPDiag3.exe [2707968] [PID.1768] =>.Nicolas Coolman
[MD5.ED7D6E700124AB329D596118F3947785] - (.AnchorFree Inc. - Hotspot Shield 5.0.4.) -- C:\Program Files (x86)\Hotspot Shield\bin\HSSCP.exe [2995920] [PID.5288] =>.AnchorFree Inc®
[MD5.4BA3933ED46F480D024829186AEE5C47] - (...) -- C:\Program Files (x86)\Hotspot Shield\bin\openvpn.exe [687840] [PID.3868] =>.AnchorFree Inc®
[MD5.8CBC7CDDA81791240E3ABAA0DDB8C2FB] - (.AnchorFree Inc. - Hotspot Shield 5.0.4.) -- C:\Program Files (x86)\Hotspot Shield\bin\FBWMgr.exe [864464] [PID.4908] =>.AnchorFree Inc®
[MD5.7418BB0C92FDFA5F32F63DD9DA2CC75E] - (.AnchorFree Inc. - Hotspot Shield 5.0.4.) -- C:\Program Files (x86)\Hotspot Shield\bin\FBW.exe [1483984] [PID.2628] =>.AnchorFree Inc®
[MD5.7418BB0C92FDFA5F32F63DD9DA2CC75E] - (.AnchorFree Inc. - Hotspot Shield 5.0.4.) -- C:\Program Files (x86)\Hotspot Shield\bin\FBW.exe [1483984] [PID.6280] =>.AnchorFree Inc®
[MD5.7418BB0C92FDFA5F32F63DD9DA2CC75E] - (.AnchorFree Inc. - Hotspot Shield 5.0.4.) -- C:\Program Files (x86)\Hotspot Shield\bin\FBW.exe [1483984] [PID.4724] =>.AnchorFree Inc®

---\\ Google Chrome, Démarrage,Recherche,Extensions (16) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://1087072589.rsc.cdn77.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://1986635568.rsc.cdn77.org
G0 - GCSP: Preferences [User Data\Default][HomePage] http://androidon.ru
G0 - GCSP: Preferences [User Data\Default][HomePage] http://api.stathat.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://asrvvv-a.akamoihd.net =>.Superfluous.AkamaiHD
G0 - GCSP: Preferences [User Data\Default][HomePage] http://istatic.davebestdeals.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://pizdopletka.club
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin
G2 - GCE: Preference [User Data\Default] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety =>.Avira Software
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] __MSG_name__ =>.Wladimir Palant
G2 - GCE: Preference [User Data\Default] [mccgphdljaoibmimmngmeehgdocpcajn] Copy clean Links
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (3) - 1s
M0 - MFSP: prefs.js [S - 6QcrXe0m.default] http://www.malwarebytes.org/
P2 - EXT FILE: (.Google - Google Search.) -- C:\Users\S\AppData\Roaming\Mozilla\Firefox\Profiles\6QcrXe0m.default\searchplugins\google.xml =>.Google
P2 - EXT: (...) -- C:\Users\S\AppData\Roaming\Mozilla\Firefox\Profiles\6QcrXe0m.default\extensions\abs@avira.com =>.Avira Software

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies []

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (35)

---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: AMD SteadyVideo BHO [64Bits] - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} . (.Advanced Micro Devices - This plugin allows the user to turn AMD Ste.) -- C:\Program Files (x86)\AMD\SteadyVideo\SteadyVideo.dll =>.Advanced Micro Devices, Inc.®
O2 - BHO: Windows Live ID Sign-in Helper [64Bits] - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: TOSHIBA Media Controller Plug-in [64Bits] - {F3C88694-EFFA-4d78-B409-54B7B2535B14} . (. - TOSHIBA Media Controller Plug-in (32).) -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll =>.TOSHIBA CORPORATION®

---\\ Internet Explorer, Barre d'outil (1) - 0s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)

---\\ Raccourcis Global Startup (92) - 8s
O4 - GS\Desktop [Administrateur]: BitSpirit.lnk . (.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) C:\Program Files (x86)\BitSpirit\BitSpirit.exe
O4 - GS\Desktop [Administrateur]: Microsoft Word Starter 2010.lnk . (.Microsoft Corporation - Microsoft Office Client Virtualization Hand.) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Word Starter 2010 90140066040C0000" =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: PeerBlock.lnk . (.PeerBlock, LLC - PeerBlock.) C:\Program Files\PeerBlock\peerblock.exe =>.PeerBlock, LLC®
O4 - GS\Desktop [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Quicklaunch [Administrateur]: BitSpirit.lnk . (.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) C:\Program Files (x86)\BitSpirit\BitSpirit.exe
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe " =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: TOSHIBA Disc Creator(Audio).lnk . (.TOSHIBA Corporation - .) C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe /SendTo:AD =>.Toshiba Corporation
O4 - GS\sendTo [Administrateur]: TOSHIBA Disc Creator(Data).lnk . (.TOSHIBA Corporation - .) C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe /SendTo:DD =>.Toshiba Corporation
O4 - GS\sendTo [Administrateur]: TOSHIBA Disc Creator(Image).lnk . (.TOSHIBA Corporation - .) C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe /SendTo:ITD =>.Toshiba Corporation
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: VLC media player.lnk . (...) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLan Team
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe " =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [S]: BitSpirit.lnk . (.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) C:\Program Files (x86)\BitSpirit\BitSpirit.exe
O4 - GS\Desktop [S]: Microsoft Word Starter 2010.lnk . (.Microsoft Corporation - Microsoft Office Client Virtualization Hand.) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE "Microsoft Word Starter 2010 90140066040C0000" =>.Microsoft Corporation®
O4 - GS\Desktop [S]: PeerBlock.lnk . (.PeerBlock, LLC - PeerBlock.) C:\Program Files\PeerBlock\peerblock.exe =>.PeerBlock, LLC®
O4 - GS\Desktop [S]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Quicklaunch [S]: BitSpirit.lnk . (.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) C:\Program Files (x86)\BitSpirit\BitSpirit.exe
O4 - GS\Quicklaunch [S]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [S]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe " =>.Microsoft Corporation®
O4 - GS\Quicklaunch [S]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [S]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [S]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [S]: TOSHIBA Disc Creator(Audio).lnk . (.TOSHIBA Corporation - .) C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe /SendTo:AD =>.Toshiba Corporation
O4 - GS\sendTo [S]: TOSHIBA Disc Creator(Data).lnk . (.TOSHIBA Corporation - .) C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe /SendTo:DD =>.Toshiba Corporation
O4 - GS\sendTo [S]: TOSHIBA Disc Creator(Image).lnk . (.TOSHIBA Corporation - .) C:\Program Files (x86)\TOSHIBA\TOSHIBA Disc Creator\ToDisc.exe /SendTo:ITD =>.Toshiba Corporation
O4 - GS\sendTo [S]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [S]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [S]: VLC media player.lnk . (...) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLan Team
O4 - GS\TaskBar [S]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Programs [S]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe " =>.Microsoft Corporation®
O4 - GS\Programs [S]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\CommonDesktop [Public]: Adobe Reader XI.lnk . (.Adobe Systems Incorporated - Adobe Reader.) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Enregistrement de la garantie Toshiba.lnk . (.Toshiba Europe GmbH - .) C:\Program Files (x86)\TOSHIBA\Registration\ToshibaRegistration.exe -desktop =>.Toshiba Europe GmbH
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Hotspot Shield.lnk . (.AnchorFree Inc. - Hotspot Shield 5.0.4.) C:\Program Files (x86)\Hotspot Shield\bin\HSSCP.exe =>.AnchorFree Inc®
O4 - GS\CommonDesktop [Public]: LibreOffice 3.6.lnk . (.The Document Foundation - LibreOffice 3.6.) C:\Program Files (x86)\LibreOffice 3.6\program\soffice.exe =>.The Document Foundation
O4 - GS\CommonDesktop [Public]: Manual.lnk . (.TOSHIBA - Toshiba Regensburg EXternal file Launcher.) C:\Program Files (x86)\TOSHIBA\Manuals\TREXLauncher.exe Manual =>.TOSHIBA CORPORATION®
O4 - GS\CommonDesktop [Public]: Microsoft Office 2010.lnk . (...) C:\Toshiba\OfficeLink.cmd
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (...) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLan Team
O4 - GS\CommonDesktop [Public]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) C:\Program Files (x86)\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe " =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\S\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe " =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: Toshiba Places Icon Utility.lnk . (.Toshiba - Toshiba Places Icon Utility.) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe =>.TOSHIBA CORPORATION®
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\windows\system32\rundll32.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Reader XI.lnk . (...) C:\windows\Installer\{AC76BA86-7AD7-1036-7B44-AB0000000001}\SC_Reader.ico =>.Adobe Inc.
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Office 2010.lnk . (...) C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\windows\system32\WindowsAnytimeUpgradeUI.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (7) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 8.8.8.8 =>.Google Inc
O17 - HKLM\System\CCS\Services\Tcpip\..\{68EAE8AC-5CF9-4625-8551-F1C7320E9A9A}: NameServer = 8.8.8.8,8.8.4.4 =>.Google Inc
O17 - HKLM\System\CCS\Services\Tcpip\..\{256E5E2C-18AD-4451-B38E-3138954804C1}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{37BE0DC3-B57F-4CA4-B1D5-F116D3DA1A72}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{40EB4F49-4D5C-4A66-9B4B-F6FFDAA7544A}: DhcpNameServer = 8.8.8.8 =>.Google Inc
O17 - HKLM\System\CCS\Services\Tcpip\..\{68EAE8AC-5CF9-4625-8551-F1C7320E9A9A}: DhcpNameServer = 192.168.1.1 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{FB38E96F-EE0B-4B7D-BB28-B9DA39956C7F}: DhcpNameServer = 192.168.1.1 192.168.1.1 =>.Local IP Adress

---\\ Protocole additionnel (26) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: video/mp4 [64Bits] - {20C75730-7C25-476B-95DC-C65810F9E489} . (.Advanced Micro Devices - MIME Video Detector for IE.) -- C:\Program Files (x86)\AMD\SteadyVideo\VideoMIMEFilter.dll =>.Advanced Micro Devices, Inc.®
O18 - Filter: video/x-flv [64Bits] - {20C75730-7C25-476B-95DC-C65810F9E489} . (.Advanced Micro Devices - MIME Video Detector for IE.) -- C:\Program Files (x86)\AMD\SteadyVideo\VideoMIMEFilter.dll =>.Advanced Micro Devices, Inc.®

---\\ Logiciels installés (64) - 13s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKLM][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: Adobe Flash Player 24 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader XI (11.0.19) - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AB0000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824211354} =>.Adobe Systems Incorporated
O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} =>.Advanced Micro Devices Inc.
O42 - Logiciel: AMD Steady Video Plug-In - (.AMD.) [HKLM][64Bits] -- {5E015E15-F7AD-3379-523F-AD63C0CB9E71} =>.AMD
O42 - Logiciel: BitSpirit v3.6.0.550 Stable - (.LANSPIRIT.NET.) [HKLM][64Bits] -- BitSpirit_is1
O42 - Logiciel: Bluetooth Stack for Windows by Toshiba - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {CEBB6BFB-D708-4F99-A633-BC2600E01EF6} =>.Toshiba Corporation
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: FileZilla Client 3.24.1 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
O42 - Logiciel: Hotspot Shield 5.0.4 - (.AnchorFree Inc..) [HKLM][64Bits] -- HotspotShield =>.AnchorFree Inc®
O42 - Logiciel: Java Auto Updater - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Sun Microsystems, Inc.
O42 - Logiciel: Java(TM) 6 Update 30 - (.Oracle.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216030FF} =>.Oracle
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation
O42 - Logiciel: LibreOffice 3.6 - (.The Document Foundation.) [HKLM][64Bits] -- {1E85458A-9B00-443F-A187-2E06DBB15E43} =>.The Document Foundation
O42 - Logiciel: Logiciel d'archivage WinRAR - (.RarLab.) [HKLM][64Bits] -- WinRAR archiver =>.RarLab
O42 - Logiciel: Malwarebytes version 3.0.6.1469 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft
O42 - Logiciel: Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass ( - (.Google, Inc..) [HKLM][64Bits] -- 092555911492C6959D2596D612F52DCA71881CA2 =>.Google, Inc.
O42 - Logiciel: PeerBlock 1.1 (r518) - (.PeerBlock, LLC.) [HKLM][64Bits] -- {015C5B35-B678-451C-9AEE-821E8D69621C}_is1 =>.PeerBlock, LLC®
O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation
O42 - Logiciel: Premium Sound HD - (.SRS Labs, Inc..) [HKLM][64Bits] -- {3007FF9F-5B2C-41FF-8BFC-08BF25DB2681} =>.SRS Labs, Inc.
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.
O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {96AE7E41-E34E-47D0-AC07-1091A8127911} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek WLAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A55F-4fed-B2B9-173001290E16} =>.Realtek Semiconductor Corp.
O42 - Logiciel: RtkClassFilter - (.REALTEK Semiconductor Corp.) [HKLM][64Bits] -- {8220FCF2-A57F-4236-BFCC-C6C2268E851E} =>.REALTEK Semiconductor Corp
O42 - Logiciel: RtkClassFilter - (.REALTEK Semiconductor Corp.) [HKLM][64Bits] -- InstallShield_{8220FCF2-A57F-4236-BFCC-C6C2268E851E} =>.REALTEK Semiconductor Corp
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} =>.McAfee
O42 - Logiciel: Skype™ 7.31 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB®
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated
O42 - Logiciel: TOSHIBA Assist - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {C2A276E3-154E-44DC-AAF1-FFDD7FD30E35} =>.Macrovision Corporation®
O42 - Logiciel: TOSHIBA Disc Creator - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {5DA0E02F-970B-424B-BF41-513A5018E4C0} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA eco Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {C9C56642-9AAB-4267-9454-36FF1CC59168} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Hardware Setup - (.TOSHIBA.) [HKLM][64Bits] -- {2FD5D2C5-A7A1-4065-89BA-90542BF7CCD3} =>.Macrovision Corporation®
O42 - Logiciel: TOSHIBA HDD/SSD Alert - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {D4322448-B6AF-4316-B859-D8A0E84DCB38} =>.Toshiba Corporation
O42 - Logiciel: Toshiba Manuals - (.TOSHIBA.) [HKLM][64Bits] -- {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Media Controller - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {C7A4F26F-F9B0-41B2-8659-99181108CDE3} =>.Macrovision Corporation®
O42 - Logiciel: TOSHIBA Media Controller Plug-in - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {F26FDF57-483E-42C8-A9C9-EEE1EDB256E0} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Online Product Information - (.TOSHIBA.) [HKLM][64Bits] -- {2290A680-4083-410A-ADCC-7092C67FC052} =>.Toshiba
O42 - Logiciel: TOSHIBA PC Health Monitor - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Places Icon Utility - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {461F6F0D-7173-4902-9604-AB1A29108AF2} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Recovery Media Creator - (.TOSHIBA CORPORATION.) [HKLM][64Bits] -- {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Recovery Media Creator Reminder - (.TOSHIBA.) [HKLM][64Bits] -- {773970F1-5EBA-4474-ADEE-1EA3B0A59492} =>.Toshiba
O42 - Logiciel: TOSHIBA Recovery Media Creator Reminder - (.TOSHIBA.) [HKLM][64Bits] -- InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Resolution+ Plug-in for Windows Media Player - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Service Station - (.TOSHIBA.) [HKLM][64Bits] -- {AC6569FA-6919-442A-8552-073BE69E247A} =>.Toshiba
O42 - Logiciel: TOSHIBA Supervisor Password - (.TOSHIBA.) [HKLM][64Bits] -- {119826A8-4EF6-4BE5-A88B-D2D81FA7CEE2} =>.Macrovision Corporation®
O42 - Logiciel: TOSHIBA TEMPRO - (.Toshiba Europe GmbH.) [HKLM][64Bits] -- {F082CB11-4794-4259-99A1-D91BA762AD15} =>.Toshiba Europe GmbH
O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {066CFFF8-12BF-4390-A673-75F95EFF188E} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Value Added Package - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E} =>.TOSHIBA CORPORATION®
O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- {6F3C8901-EBD3-470D-87F8-AC210F6E5E02} =>.Toshiba Corporation
O42 - Logiciel: TOSHIBA Web Camera Application - (.TOSHIBA Corporation.) [HKLM][64Bits] -- InstallShield_{6F3C8901-EBD3-470D-87F8-AC210F6E5E02} =>.Toshiba Corporation
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
O42 - Logiciel: VLC media player 2.0.3 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Windows Driver Package - Realtek Semiconductor Corp. RtkBtFilter Bluetooth - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- EA90D42054890B3938D0BEF1E8A316D20C6D6003 =>.Microsoft Windows®

---\\ HKCU & HKLM Software Keys (90) - 13s
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD
HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AVG =>.AVG Software
HKLM\SOFTWARE\Wow6432Node\Avira =>.Avira
HKLM\SOFTWARE\Wow6432Node\BitSpirit
HKLM\SOFTWARE\Wow6432Node\Bunndle =>.Unknow
HKLM\SOFTWARE\Wow6432Node\CDDB =>.Cddb Software
HKLM\SOFTWARE\Wow6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\Wow6432Node\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\Wow6432Node\HotspotShield =>.AnchorFree Inc.
HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Lexmark =>.Lexmark
HKLM\SOFTWARE\Wow6432Node\LexmarkLaser =>.Lexmark
HKLM\SOFTWARE\Wow6432Node\LibreOffice =>.LibreOffice
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\RealNetworks =>.RealNetworks
HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Riot Games =>.Riot Games
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\TEUA =>.Legitimate
HKLM\SOFTWARE\Wow6432Node\The Document Foundation =>.The Document Foundation
HKLM\SOFTWARE\Wow6432Node\TOSHIBA =>.Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\TOSHIBA Corporation =>.Toshiba Corporation
HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Wow6432Node\WildTangent =>.WildTangent
HKLM\SOFTWARE\Wow6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\Xing Technology Corp. =>.Xing Technology Corp.
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AnchorFree
HKCU\SOFTWARE\Ankama =>.Ankama
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\Avg =>.AVG Software
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\ByteLinker
HKCU\SOFTWARE\Bytescout =>.ByteScout
HKCU\SOFTWARE\Dnldstr_Aggregator
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Haali =>.Haali Media
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Index Education =>.Index Education
HKCU\SOFTWARE\IrekZielinskiSoft =>.IrekZielinski Software
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Lexmark =>.Lexmark
HKCU\SOFTWARE\Logitech =>.Logitech
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\MOVAVI =>.Movavi
HKCU\SOFTWARE\Nero =>.Ahead Corporation
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ProtectedStorage
HKCU\SOFTWARE\RainbowCrack
HKCU\SOFTWARE\Real
HKCU\SOFTWARE\RealNetworks =>.RealNetworks
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplicationsEx =>PUP.Optional.SfKpCouponApp
HKCU\SOFTWARE\S-D
HKCU\SOFTWARE\Shared Components
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\Spotify =>.Spotify
HKCU\SOFTWARE\Streaming Video Recorder
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation
HKCU\SOFTWARE\Toshiba =>.Toshiba Corporation
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Video Download Capture =>.Apowersoft
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation

---\\ Contenu des dossiers Programmes (390) - 24s
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files\AMD =>.AMD
O43 - CFD: 04/03/2017 - [0] D -- C:\Program Files\Android =>.Android
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.®
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 18/02/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 04/03/2017 - [] D -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 07/10/2012 - [0] D -- C:\Program Files\Google =>.Google
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 03/08/2014 - [] D -- C:\Program Files\Lexmark =>.Lexmark
O43 - CFD: 05/03/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 04/03/2017 - [] D -- C:\Program Files\ophcrack
O43 - CFD: 17/11/2015 - [] D -- C:\Program Files\PeerBlock =>.PeerBlock, LLC®
O43 - CFD: 16/04/2012 - [] D -- C:\Program Files\PlayReady =>.Microsoft Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files\SRS Labs =>.SRS Labs, Inc.®
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 27/05/2013 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 19/03/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\AMD =>.AMD
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\AMD APP =>.Advanced Micro Devices Inc
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies
O43 - CFD: 29/01/2017 - [] D -- C:\Program Files (x86)\AVG =>.AVG Software
O43 - CFD: 29/01/2017 - [0] D -- C:\Program Files (x86)\Avira =>.Avira Software
O43 - CFD: 02/01/2013 - [] D -- C:\Program Files (x86)\BitSpirit
O43 - CFD: 04/03/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 19/03/2016 - [0] D -- C:\Program Files (x86)\GetGo Software =>.GetGo Software
O43 - CFD: 07/10/2012 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 22/11/2015 - [] D -- C:\Program Files (x86)\Hotspot Shield =>.AnchorFree Inc®
O43 - CFD: 24/11/2013 - [] D -- C:\Program Files (x86)\Index Education =>.Index Education
O43 - CFD: 20/01/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 16/04/2012 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files (x86)\LibreOffice 3.6 =>.LibreOffice
O43 - CFD: 13/05/2015 - [] D -- C:\Program Files (x86)\Microsoft Application Virtualization Client =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 16/04/2012 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 29/01/2017 - [] D -- C:\Program Files (x86)\Real =>.RealNetworks Inc.
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\Realtek WLAN Driver =>.Realtek Semiconductor Corp.
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 25/01/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 15/06/2012 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\TOSHIBA Corporation =>.Toshiba Corporation
O43 - CFD: 31/01/2017 - [] D -- C:\Program Files (x86)\TOSHIBA Games =>.Toshiba Corporation
O43 - CFD: 16/04/2012 - [] D -- C:\Program Files (x86)\Toshiba TEMPRO =>.Toshiba Corporation
O43 - CFD: 22/09/2013 - [] D -- C:\Program Files (x86)\trend micro =>.Trend Micro
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 11/02/2013 - [] D -- C:\Program Files (x86)\uTorrent =>.BitTorrent Inc®
O43 - CFD: 05/10/2012 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 17/07/2013 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 27/05/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/09/2013 - [] D -- C:\Program Files (x86)\WinRAR =>.WinRAR
O43 - CFD: 15/06/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 03/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon =>.Amazon
O43 - CFD: 15/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center =>.Advanced Micro Devices Inc
O43 - CFD: 18/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio =>.Google Inc.
O43 - CFD: 02/01/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitSpirit v3
O43 - CFD: 03/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay =>.eBay
O43 - CFD: 04/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 31/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 22/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 08/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 3.6 =>.LibreOffice
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 05/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 08/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Français) =>.Microsoft Corporation
O43 - CFD: 13/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 22/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock =>.PeerBlock
O43 - CFD: 06/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 15/06/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs =>.SRS Labs
O43 - CFD: 29/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 23/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TimeAdjuster
O43 - CFD: 03/10/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 05/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 27/05/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation
O43 - CFD: 22/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 19/03/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 05/10/2012 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\ProgramData\ATI =>.ATI
O43 - CFD: 29/01/2017 - [] D -- C:\ProgramData\Avg =>.AVG Software
O43 - CFD: 29/01/2017 - [0] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 05/03/2017 - [0] D -- C:\ProgramData\boost_interprocess =>.boost.org
O43 - CFD: 19/11/2016 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation
O43 - CFD: 23/05/2015 - [] D -- C:\ProgramData\DatacardService =>.Entriq, Inc.
O43 - CFD: 14/07/2009 - [0] SD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 06/10/2012 - [] D -- C:\ProgramData\Google =>.Google
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 30/01/2014 - [] D -- C:\ProgramData\IndexEducation =>.ION
O43 - CFD: 28/04/2014 - [] D -- C:\ProgramData\InstallMate =>.Superfluous.Tarma
O43 - CFD: 19/03/2016 - [] D -- C:\ProgramData\IsolatedStorage =>.id Software
O43 - CFD: 05/03/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 08/10/2012 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 20/01/2015 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 16/04/2012 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 29/01/2017 - [] D -- C:\ProgramData\Real =>.RealNetworks Inc.
O43 - CFD: 15/11/2015 - [] D -- C:\ProgramData\Riot Games =>.Riot Games
O43 - CFD: 18/02/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 16/04/2012 - [] D -- C:\ProgramData\Sun =>.Oracle
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 09/06/2015 - [] D -- C:\ProgramData\Toshiba =>.Toshiba Corporation
O43 - CFD: 03/10/2012 - [] D -- C:\ProgramData\ToshibaEurope =>.Toshiba Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\ProgramData\VirtualizedApplications =>.Microsoft Corporation
O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\WildTangent =>.WildTangent
O43 - CFD: 19/03/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies =>.ATI Technologies
O43 - CFD: 02/01/2013 - [] D -- C:\Program Files (x86)\Common Files\BitSpirit
O43 - CFD: 14/05/2014 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 16/04/2012 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 15/06/2012 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 22/09/2013 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard =>.Seagate
O43 - CFD: 06/11/2012 - [] D -- C:\Users\S\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 28/06/2015 - [] D -- C:\Users\S\AppData\Roaming\AnkamaCertificates =>.Ankama
O43 - CFD: 04/11/2013 - [] D -- C:\Users\S\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 28/06/2015 - [] D -- C:\Users\S\AppData\Roaming\app =>.Ankama
O43 - CFD: 07/10/2012 - [] D -- C:\Users\S\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Roaming\ATI =>.ATI
O43 - CFD: 02/01/2013 - [] D -- C:\Users\S\AppData\Roaming\BitSpirit
O43 - CFD: 29/06/2015 - [] D -- C:\Users\S\AppData\Roaming\Dofus =>.Ankama
O43 - CFD: 28/06/2015 - [] D -- C:\Users\S\AppData\Roaming\Dofus-2 =>.Ankama
O43 - CFD: 29/06/2015 - [] D -- C:\Users\S\AppData\Roaming\Dofus-3 =>.Ankama
O43 - CFD: 29/11/2016 - [] D -- C:\Users\S\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 04/03/2017 - [] D -- C:\Users\S\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 19/03/2016 - [0] D -- C:\Users\S\AppData\Roaming\GetGo Software =>.GetGo Software
O43 - CFD: 17/11/2015 - [] D -- C:\Users\S\AppData\Roaming\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 18/10/2012 - [] D -- C:\Users\S\AppData\Roaming\IndexEducation =>.ION
O43 - CFD: 19/03/2016 - [] D -- C:\Users\S\AppData\Roaming\IsolatedStorage =>.id Software
O43 - CFD: 18/02/2017 - [] D -- C:\Users\S\AppData\Roaming\JetBrains =>.JetBrains Inc
O43 - CFD: 08/10/2012 - [] D -- C:\Users\S\AppData\Roaming\LibreOffice =>.LibreOffice
O43 - CFD: 15/11/2015 - [] D -- C:\Users\S\AppData\Roaming\LolClient =>.LolClient
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 21/11/2010 - [0] D -- C:\Users\S\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 25/01/2016 - [] SD -- C:\Users\S\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 06/01/2014 - [] D -- C:\Users\S\AppData\Roaming\MOVAVI =>.Movavi
O43 - CFD: 19/11/2016 - [] D -- C:\Users\S\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/10/2012 - [] D -- C:\Users\S\AppData\Roaming\Nero =>.Ahead Corporation
O43 - CFD: 29/01/2017 - [] D -- C:\Users\S\AppData\Roaming\Real =>.RealNetworks Inc.
O43 - CFD: 28/06/2015 - [] D -- C:\Users\S\AppData\Roaming\Reg
O43 - CFD: 02/07/2016 - [] D -- C:\Users\S\AppData\Roaming\Riot Games =>.Riot Games
O43 - CFD: 05/03/2017 - [] SHD -- C:\Users\S\AppData\Roaming\S-D
O43 - CFD: 03/03/2017 - [] D -- C:\Users\S\AppData\Roaming\Skype =>.Skype
O43 - CFD: 03/03/2017 - [] D -- C:\Users\S\AppData\Roaming\SoftGrid Client =>.Microsoft Corporation
O43 - CFD: 05/03/2017 - [] D -- C:\Users\S\AppData\Roaming\Spotify =>.Spotify
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Roaming\Toshiba =>.Toshiba Corporation
O43 - CFD: 18/11/2015 - [] D -- C:\Users\S\AppData\Roaming\TOSHIBA Online Product Information =>.Toshiba Corporation
O43 - CFD: 08/10/2012 - [0] D -- C:\Users\S\AppData\Roaming\TP =>.TP
O43 - CFD: 25/02/2017 - [] D -- C:\Users\S\AppData\Roaming\uTorrent
O43 - CFD: 04/03/2017 - [] D -- C:\Users\S\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 31/01/2017 - [] D -- C:\Users\S\AppData\Roaming\WildTangent =>.WildTangent
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Roaming\WinBatch =>.winbatch.com
O43 - CFD: 22/09/2013 - [] D -- C:\Users\S\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 05/03/2017 - [] D -- C:\Users\S\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 24/09/2015 - [] D -- C:\Users\S\AppData\Local\Adobe =>.Adobe
O43 - CFD: 04/03/2017 - [0] D -- C:\Users\S\AppData\Local\Android =>.Android
O43 - CFD: 17/11/2015 - [0] D -- C:\Users\S\AppData\Local\Ankama =>.Ankama
O43 - CFD: 22/09/2013 - [] D -- C:\Users\S\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 02/03/2014 - [] D -- C:\Users\S\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 03/10/2012 - [0] SHD -- C:\Users\S\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Local\ATI =>.ATI
O43 - CFD: 19/11/2016 - [] D -- C:\Users\S\AppData\Local\Avg =>.AVG Software
O43 - CFD: 29/01/2017 - [] D -- C:\Users\S\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 19/11/2016 - [] D -- C:\Users\S\AppData\Local\Avira =>.Avira Software
O43 - CFD: 12/08/2015 - [] D -- C:\Users\S\AppData\Local\CEF =>.CEF
O43 - CFD: 05/01/2017 - [] D -- C:\Users\S\AppData\Local\Chromium =>.Chromium
O43 - CFD: 28/04/2014 - [] D -- C:\Users\S\AppData\Local\Comodo =>.Comodo
O43 - CFD: 17/11/2015 - [] D -- C:\Users\S\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 04/03/2017 - [] D -- C:\Users\S\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 18/02/2017 - [] D -- C:\Users\S\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 08/03/2016 - [0] SHD -- C:\Users\S\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr
O43 - CFD: 08/03/2016 - [0] SHD -- C:\Users\S\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr
O43 - CFD: 08/03/2016 - [0] SHD -- C:\Users\S\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr
O43 - CFD: 04/03/2017 - [] D -- C:\Users\S\AppData\Local\FileZilla =>.FileZilla
O43 - CFD: 08/11/2016 - [] D -- C:\Users\S\AppData\Local\Google =>.Google
O43 - CFD: 01/06/2015 - [] D -- C:\Users\S\AppData\Local\GWX =>.GWX
O43 - CFD: 03/10/2012 - [0] SHD -- C:\Users\S\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/02/2017 - [] D -- C:\Users\S\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/08/2014 - [] D -- C:\Users\S\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 29/10/2015 - [0] D -- C:\Users\S\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 06/01/2014 - [] D -- C:\Users\S\AppData\Local\Movavi =>.Movavi
O43 - CFD: 18/10/2012 - [] D -- C:\Users\S\AppData\Local\Nero_AG =>.Ahead
O43 - CFD: 13/11/2016 - [0] D -- C:\Users\S\AppData\Local\Ok-SendMail-Bron-tok =>Worm.Brontok
O43 - CFD: 28/04/2014 - [] D -- C:\Users\S\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 26/10/2013 - [] D -- C:\Users\S\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 11/09/2015 - [] D -- C:\Users\S\AppData\Local\Real =>.RealNetworks Inc.
O43 - CFD: 06/03/2016 - [0] D -- C:\Users\S\AppData\Local\Skype =>.Skype
O43 - CFD: 08/10/2012 - [] D -- C:\Users\S\AppData\Local\SoftGrid Client =>.Microsoft Corporation
O43 - CFD: 05/03/2017 - [] D -- C:\Users\S\AppData\Local\Spotify =>.Spotify
O43 - CFD: 03/10/2012 - [] D -- C:\Users\S\AppData\Local\SRS Labs =>.SRS Labs
O43 - CFD: 05/03/2017 - [] D -- C:\Users\S\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 03/10/2012 - [0] SHD -- C:\Users\S\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 09/06/2015 - [] D -- C:\Users\S\AppData\Local\TOSHIBA =>.Toshiba Corporation
O43 - CFD: 13/11/2016 - [] D -- C:\Users\S\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 19/05/2015 - [] D -- C:\Users\S\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 21/11/2012 - [0] D -- C:\Users\S\AppData\Local\{00C91D58-015C-441D-A02B-16333B8290E1} =>.Superfluous.Empty
O43 - CFD: 16/10/2012 - [0] D -- C:\Users\S\AppData\Local\{040AE173-2582-4403-8F21-BD8246B32809} =>.Superfluous.Empty
O43 - CFD: 23/03/2013 - [0] D -- C:\Users\S\AppData\Local\{05DF2FDF-7792-4E26-B3E6-4A25A75FD518} =>.Superfluous.Empty
O43 - CFD: 12/11/2012 - [0] D -- C:\Users\S\AppData\Local\{06E7AE13-89D2-4894-965F-20DA06AE3D95} =>.Superfluous.Empty
O43 - CFD: 08/11/2012 - [0] D -- C:\Users\S\AppData\Local\{08330E9D-6966-4F2B-A31E-020118963A1C} =>.Superfluous.Empty
O43 - CFD: 31/10/2014 - [0] D -- C:\Users\S\AppData\Local\{08E94AB1-F1B3-45F3-92DB-F7EA2A93FB43} =>.Superfluous.Empty
O43 - CFD: 24/01/2016 - [0] D -- C:\Users\S\AppData\Local\{0E5F9C7C-052B-4518-A94C-E071104B2081} =>.Superfluous.Empty
O43 - CFD: 21/10/2012 - [0] D -- C:\Users\S\AppData\Local\{0E7E168B-9DCD-4F74-996A-848AC989DB99} =>.Superfluous.Empty
O43 - CFD: 03/09/2014 - [0] D -- C:\Users\S\AppData\Local\{0FB165D8-22CA-48C1-89C6-03798A7D39A6} =>.Superfluous.Empty
O43 - CFD: 13/11/2012 - [0] D -- C:\Users\S\AppData\Local\{12866719-D26B-4F9E-BEC7-C619B6AA25C8} =>.Superfluous.Empty
O43 - CFD: 27/05/2013 - [0] D -- C:\Users\S\AppData\Local\{142564DB-1B19-4B5B-8B20-B85370C6D2DE} =>.Superfluous.Empty
O43 - CFD: 25/12/2012 - [0] D -- C:\Users\S\AppData\Local\{14DAA820-C659-4869-A82D-5C79D38E7DB0} =>.Superfluous.Empty
O43 - CFD: 23/12/2012 - [0] D -- C:\Users\S\AppData\Local\{1810C727-589A-4006-A6AD-5716AC1995B7} =>.Superfluous.Empty
O43 - CFD: 23/12/2012 - [0] D -- C:\Users\S\AppData\Local\{1A0172F3-2E3F-4EB3-99E0-FF2336DFA031} =>.Superfluous.Empty
O43 - CFD: 09/10/2012 - [0] D -- C:\Users\S\AppData\Local\{1A212A0E-B5E3-4CCF-9692-61BF3AB42C44} =>.Superfluous.Empty
O43 - CFD: 17/10/2014 - [0] D -- C:\Users\S\AppData\Local\{1D58067C-9EA5-458F-9F52-7E92919103C9} =>.Superfluous.Empty
O43 - CFD: 22/10/2012 - [0] D -- C:\Users\S\AppData\Local\{213DA412-C69F-4DC5-8D38-618442CEFC5A} =>.Superfluous.Empty
O43 - CFD: 02/11/2012 - [0] D -- C:\Users\S\AppData\Local\{24D69E47-4091-4F49-AF86-44F1906D5088} =>.Superfluous.Empty
O43 - CFD: 06/01/2013 - [0] D -- C:\Users\S\AppData\Local\{25782A35-4E64-41F7-9342-FE71D5BF554B} =>.Superfluous.Empty
O43 - CFD: 05/11/2012 - [0] D -- C:\Users\S\AppData\Local\{28DB2E64-581A-4B54-AD3E-784DFED30B6E} =>.Superfluous.Empty
O43 - CFD: 20/10/2012 - [0] D -- C:\Users\S\AppData\Local\{294FB413-D91F-4F41-9538-95B0D1BF7BF0} =>.Superfluous.Empty
O43 - CFD: 07/01/2016 - [0] D -- C:\Users\S\AppData\Local\{2977B588-FBEE-4AF5-9298-5AEA61865518} =>.Superfluous.Empty
O43 - CFD: 28/10/2013 - [0] D -- C:\Users\S\AppData\Local\{2AAD325D-FE30-4E25-BF5F-649EAB4910B7} =>.Superfluous.Empty
O43 - CFD: 29/12/2014 - [0] D -- C:\Users\S\AppData\Local\{2BD7D43F-4562-4028-B9F5-4D3954203621} =>.Superfluous.Empty
O43 - CFD: 24/12/2012 - [0] D -- C:\Users\S\AppData\Local\{2C40848F-0BCD-41D0-AEC5-24DCA921554B} =>.Superfluous.Empty
O43 - CFD: 15/10/2012 - [0] D -- C:\Users\S\AppData\Local\{2D644F37-9B1E-4CE9-9020-D6B1F8078CD2} =>.Superfluous.Empty
O43 - CFD: 02/12/2012 - [0] D -- C:\Users\S\AppData\Local\{2EF47877-340E-414B-AF0F-7F53E9A8F375} =>.Superfluous.Empty
O43 - CFD: 14/10/2012 - [0] D -- C:\Users\S\AppData\Local\{312ED8B6-650B-4A4B-956B-FB994CDDCA1C} =>.Superfluous.Empty
O43 - CFD: 13/03/2013 - [0] D -- C:\Users\S\AppData\Local\{341C56CE-E297-4BBA-B23E-6C83EE2C0FDB} =>.Superfluous.Empty
O43 - CFD: 09/10/2012 - [0] D -- C:\Users\S\AppData\Local\{3529ABC1-F9A9-4436-BF25-E6CC0CA9B540} =>.Superfluous.Empty
O43 - CFD: 15/05/2013 - [0] D -- C:\Users\S\AppData\Local\{387E5B71-EBAD-41DB-8B9C-4D3EDF668438} =>.Superfluous.Empty
O43 - CFD: 21/11/2012 - [0] D -- C:\Users\S\AppData\Local\{3981B790-3329-4A13-A912-F193EB9486C3} =>.Superfluous.Empty
O43 - CFD: 07/10/2012 - [0] D -- C:\Users\S\AppData\Local\{398C6DD4-035B-45C0-9487-58EDC5882302} =>.Superfluous.Empty
O43 - CFD: 08/03/2013 - [0] D -- C:\Users\S\AppData\Local\{44C6C887-DD17-48BB-A413-AF1D7B2C63AB} =>.Superfluous.Empty
O43 - CFD: 09/01/2013 - [0] D -- C:\Users\S\AppData\Local\{4626D1F7-B73B-4F31-ADF5-509BC056E7D5} =>.Superfluous.Empty
O43 - CFD: 30/12/2012 - [0] D -- C:\Users\S\AppData\Local\{470565A1-A76D-4840-AC4A-853161A5D891} =>.Superfluous.Empty
O43 - CFD: 07/03/2013 - [0] D -- C:\Users\S\AppData\Local\{490D6C2D-87A6-485D-A340-A5E547588482} =>.Superfluous.Empty
O43 - CFD: 11/02/2013 - [0] D -- C:\Users\S\AppData\Local\{4A42A121-66FC-4095-95B8-BF373AD435A3} =>.Superfluous.Empty
O43 - CFD: 10/10/2012 - [0] D -- C:\Users\S\AppData\Local\{4DEC58C7-9CB9-4FDC-B323-9B5025C6338D} =>.Superfluous.Empty
O43 - CFD: 10/11/2012 - [0] D -- C:\Users\S\AppData\Local\{4ECAEC7F-1A21-4BFB-9507-DFEAC81F638C} =>.Superfluous.Empty
O43 - CFD: 20/11/2012 - [0] D -- C:\Users\S\AppData\Local\{535FD640-168A-4415-9B98-95C36EA75E8D} =>.Superfluous.Empty
O43 - CFD: 12/11/2012 - [0] D -- C:\Users\S\AppData\Local\{54BFA39A-7A2D-4228-9EC9-E72A33E6FD49} =>.Superfluous.Empty
O43 - CFD: 28/12/2014 - [0] D -- C:\Users\S\AppData\Local\{54DB576E-21B0-4AF9-9022-6D0EDE93E0D4} =>.Superfluous.Empty
O43 - CFD: 20/11/2012 - [0] D -- C:\Users\S\AppData\Local\{5ACE6CB9-1D55-4661-BC28-EC242FC68C5E} =>.Superfluous.Empty
O43 - CFD: 15/04/2013 - [0] D -- C:\Users\S\AppData\Local\{5B395E77-46DF-47A9-BD3B-06A767A55AEA} =>.Superfluous.Empty
O43 - CFD: 18/10/2012 - [0] D -- C:\Users\S\AppData\Local\{5B41E282-C281-45D8-A809-F4619915C7E0} =>.Superfluous.Empty
O43 - CFD: 11/11/2012 - [0] D -- C:\Users\S\AppData\Local\{5C7C2473-924B-4C53-B2E9-35EB9A30DB83} =>.Superfluous.Empty
O43 - CFD: 14/03/2013 - [0] D -- C:\Users\S\AppData\Local\{5D875AD6-4445-4577-BA37-FCD1D4349CEA} =>.Superfluous.Empty
O43 - CFD: 04/10/2012 - [0] D -- C:\Users\S\AppData\Local\{5DE25156-D138-44E2-8ED3-FA0ED5323193} =>.Superfluous.Empty
O43 - CFD: 19/11/2012 - [0] D -- C:\Users\S\AppData\Local\{5E0CA5C4-FC80-4425-A16E-22221868EC67} =>.Superfluous.Empty
O43 - CFD: 11/11/2012 - [0] D -- C:\Users\S\AppData\Local\{5E900CCE-338C-49EF-BA10-71C1B7DBAF81} =>.Superfluous.Empty
O43 - CFD: 15/10/2012 - [0] D -- C:\Users\S\AppData\Local\{64390B53-2F96-4304-A0C7-A0C21C7D9AE5} =>.Superfluous.Empty
O43 - CFD: 20/01/2014 - [0] D -- C:\Users\S\AppData\Local\{68757CDC-E6A4-4031-AAD4-6BFDADBB679A} =>.Superfluous.Empty
O43 - CFD: 29/10/2013 - [0] D -- C:\Users\S\AppData\Local\{6A2E0C18-B717-4540-8B26-6FF587DD47B7} =>.Superfluous.Empty
O43 - CFD: 29/04/2013 - [0] D -- C:\Users\S\AppData\Local\{6B6AD1DF-8D1B-4336-970C-1D725E507CBB} =>.Superfluous.Empty
O43 - CFD: 24/03/2013 - [0] D -- C:\Users\S\AppData\Local\{6CB09F14-5E9F-4C01-B52F-38E07324306C} =>.Superfluous.Empty
O43 - CFD: 31/12/2012 - [0] D -- C:\Users\S\AppData\Local\{6E7C532C-8D6B-4746-ADC8-50D59C123131} =>.Superfluous.Empty
O43 - CFD: 16/03/2013 - [0] D -- C:\Users\S\AppData\Local\{6FE9CC89-D5B1-4766-A9D7-CC66D1BFF8CD} =>.Superfluous.Empty
O43 - CFD: 19/01/2014 - [0] D -- C:\Users\S\AppData\Local\{71FBA7B3-8F1C-4C88-A229-2DEDA88A8E21} =>.Superfluous.Empty
O43 - CFD: 03/03/2013 - [0] D -- C:\Users\S\AppData\Local\{747A9CC4-6087-4BC6-B840-B90B6404DEAF} =>.Superfluous.Empty
O43 - CFD: 02/01/2013 - [0] D -- C:\Users\S\AppData\Local\{748DCD70-093D-4BFA-A784-18E65167D745} =>.Superfluous.Empty
O43 - CFD: 03/01/2013 - [0] D -- C:\Users\S\AppData\Local\{74D4800C-31F4-4998-811F-BD5C61F55784} =>.Superfluous.Empty
O43 - CFD: 15/11/2012 - [0] D -- C:\Users\S\AppData\Local\{75E38D93-FE3C-4A33-B211-7AC68E21621D} =>.Superfluous.Empty
O43 - CFD: 12/01/2013 - [0] D -- C:\Users\S\AppData\Local\{780F281A-9AC1-4288-94FF-364F28DFE156} =>.Superfluous.Empty
O43 - CFD: 16/04/2013 - [0] D -- C:\Users\S\AppData\Local\{78F08310-BFCB-43FA-AA34-8A19F0236EC2} =>.Superfluous.Empty
O43 - CFD: 13/10/2012 - [0] D -- C:\Users\S\AppData\Local\{794B942B-453A-4B6D-95CB-45D74C93768C} =>.Superfluous.Empty
O43 - CFD: 17/03/2013 - [0] D -- C:\Users\S\AppData\Local\{7DA572ED-EA4B-41C6-8951-0132E1A8A09F} =>.Superfluous.Empty
O43 - CFD: 09/10/2012 - [0] D -- C:\Users\S\AppData\Local\{86EA5C36-61DF-4ECD-AAAA-312547E13D2A} =>.Superfluous.Empty
O43 - CFD: 24/03/2013 - [0] D -- C:\Users\S\AppData\Local\{87122DFB-6279-4D84-B96A-E4DA7224292D} =>.Superfluous.Empty
O43 - CFD: 14/10/2012 - [0] D -- C:\Users\S\AppData\Local\{873710E0-7FD4-4444-9CEE-A192AB31D233} =>.Superfluous.Empty
O43 - CFD: 17/01/2016 - [0] D -- C:\Users\S\AppData\Local\{8797887C-C96C-425A-83F5-3274E3405778} =>.Superfluous.Empty
O43 - CFD: 25/10/2013 - [0] D -- C:\Users\S\AppData\Local\{8D4D8C6D-77B7-449C-9B76-72422E3294ED} =>.Superfluous.Empty
O43 - CFD: 02/11/2012 - [0] D -- C:\Users\S\AppData\Local\{8D6EEB76-B649-4638-A31E-DC7A47B57874} =>.Superfluous.Empty
O43 - CFD: 13/03/2013 - [0] D -- C:\Users\S\AppData\Local\{96A73DAE-9AF9-4EE5-9826-982936A3BAA6} =>.Superfluous.Empty
O43 - CFD: 29/12/2012 - [0] D -- C:\Users\S\AppData\Local\{97BC0CEA-88FF-4648-A6D1-D459FC6FB8B9} =>.Superfluous.Empty
O43 - CFD: 06/10/2012 - [0] D -- C:\Users\S\AppData\Local\{97C8850F-E6EB-4D27-8807-518A6F4C36D7} =>.Superfluous.Empty
O43 - CFD: 06/05/2013 - [0] D -- C:\Users\S\AppData\Local\{98E14596-3565-400A-AED4-EE976F63CB45} =>.Superfluous.Empty
O43 - CFD: 13/04/2013 - [0] D -- C:\Users\S\AppData\Local\{98E8779D-06DB-42D1-BBD9-25E3F325C4C8} =>.Superfluous.Empty
O43 - CFD: 28/03/2016 - [0] D -- C:\Users\S\AppData\Local\{98F30608-9A65-4998-A587-E4A2927051F1} =>.Superfluous.Empty
O43 - CFD: 19/11/2012 - [0] D -- C:\Users\S\AppData\Local\{999EEFAA-0453-4179-8556-EBAF3B5D5EEF} =>.Superfluous.Empty
O43 - CFD: 15/03/2013 - [0] D -- C:\Users\S\AppData\Local\{9BB6B4F6-30D8-4F22-B010-343BF61806BD} =>.Superfluous.Empty
O43 - CFD: 09/11/2012 - [0] D -- C:\Users\S\AppData\Local\{9C608794-8DAF-478A-AB64-4C78F845133C} =>.Superfluous.Empty
O43 - CFD: 18/01/2014 - [0] D -- C:\Users\S\AppData\Local\{A0D8D3AB-7F77-42F4-8C38-979C6C2E949C} =>.Superfluous.Empty
O43 - CFD: 09/11/2012 - [0] D -- C:\Users\S\AppData\Local\{A26DB41F-1BCB-4CB9-86AD-53624E59F180} =>.Superfluous.Empty
O43 - CFD: 07/11/2012 - [0] D -- C:\Users\S\AppData\Local\{A720A183-3131-44AF-8048-20380594878B} =>.Superfluous.Empty
O43 - CFD: 23/10/2012 - [0] D -- C:\Users\S\AppData\Local\{AB5B52DD-7B2F-45EC-8A9E-A379876A64CE} =>.Superfluous.Empty
O43 - CFD: 04/11/2012 - [0] D -- C:\Users\S\AppData\Local\{AC247CCD-C83B-41BF-A97F-623D6B738170} =>.Superfluous.Empty
O43 - CFD: 24/10/2012 - [0] D -- C:\Users\S\AppData\Local\{AD229789-A8A6-4907-8607-0D0BBD45831F} =>.Superfluous.Empty
O43 - CFD: 01/11/2012 - [0] D -- C:\Users\S\AppData\Local\{ADB9269A-2FCE-484D-A581-21EDC2184C98} =>.Superfluous.Empty
O43 - CFD: 30/12/2012 - [0] D -- C:\Users\S\AppData\Local\{B0016E32-4F74-4F20-8D11-6D1EDDBBE7AF} =>.Superfluous.Empty
O43 - CFD: 17/10/2012 - [0] D -- C:\Users\S\AppData\Local\{B219558D-A9E0-4E66-923B-F3B7BB3FC4EA} =>.Superfluous.Empty
O43 - CFD: 29/03/2013 - [0] D -- C:\Users\S\AppData\Local\{B2FE1DEB-D2B6-4E88-9731-33877573ECFC} =>.Superfluous.Empty
O43 - CFD: 13/12/2012 - [0] D -- C:\Users\S\AppData\Local\{B5035C42-BCB5-4435-A017-EC7C41AB55AA} =>.Superfluous.Empty
O43 - CFD: 07/01/2013 - [0] D -- C:\Users\S\AppData\Local\{B67DC864-221B-4B26-A034-D297D72DF558} =>.Superfluous.Empty
O43 - CFD: 27/02/2013 - [0] D -- C:\Users\S\AppData\Local\{B7F16E69-A13E-4FF0-A6EF-1A181AD44369} =>.Superfluous.Empty
O43 - CFD: 07/11/2012 - [0] D -- C:\Users\S\AppData\Local\{BA7A3FE2-3FEE-4DF7-B83A-461E9EF05940} =>.Superfluous.Empty
O43 - CFD: 12/03/2013 - [0] D -- C:\Users\S\AppData\Local\{BD27A76F-33A9-405F-A70D-B808AE7B24DC} =>.Superfluous.Empty
O43 - CFD: 09/12/2012 - [0] D -- C:\Users\S\AppData\Local\{C0CA2BD6-8EBF-45D8-A4E9-5A15EBB02FC8} =>.Superfluous.Empty
O43 - CFD: 09/01/2013 - [0] D -- C:\Users\S\AppData\Local\{C2C05028-07ED-4492-9D55-63EE9CD96A71} =>.Superfluous.Empty
O43 - CFD: 08/11/2012 - [0] D -- C:\Users\S\AppData\Local\{C366464F-3D48-4EF2-AB06-9A123A739BCD} =>.Superfluous.Empty
O43 - CFD: 09/12/2014 - [0] D -- C:\Users\S\AppData\Local\{C41583A4-C44D-4FBB-A9AC-0947A668F513} =>.Superfluous.Empty
O43 - CFD: 22/01/2013 - [0] D -- C:\Users\S\AppData\Local\{C4B97826-B0DA-44DB-A0F6-219041767FA9} =>.Superfluous.Empty
O43 - CFD: 31/10/2012 - [0] D -- C:\Users\S\AppData\Local\{C4FD0CC5-0794-4AE6-A018-C63254E60970} =>.Superfluous.Empty
O43 - CFD: 15/10/2014 - [0] D -- C:\Users\S\AppData\Local\{C598EAA7-E2B5-4693-8848-FEC45FCD65A6} =>.Superfluous.Empty
O43 - CFD: 03/12/2012 - [0] D -- C:\Users\S\AppData\Local\{C7DE877A-8F48-41D1-9138-073C89003A1A} =>.Superfluous.Empty
O43 - CFD: 25/12/2012 - [0] D -- C:\Users\S\AppData\Local\{C94C5B8D-25CA-43A6-AEFD-440ADA648606} =>.Superfluous.Empty
O43 - CFD: 03/01/2015 - [0] D -- C:\Users\S\AppData\Local\{CDEB5403-C129-4935-A33E-EACE35BBF41D} =>.Superfluous.Empty
O43 - CFD: 06/03/2013 - [0] D -- C:\Users\S\AppData\Local\{CF050C9A-1323-4D49-94AE-86D2CB6A1375} =>.Superfluous.Empty
O43 - CFD: 14/11/2012 - [0] D -- C:\Users\S\AppData\Local\{D1782E72-4BB2-4039-A289-FC2A0B1837F2} =>.Superfluous.Empty
O43 - CFD: 08/03/2013 - [0] D -- C:\Users\S\AppData\Local\{D1B0DCE5-DA6B-424E-BBAE-6A3FA16C91CD} =>.Superfluous.Empty
O43 - CFD: 03/12/2012 - [0] D -- C:\Users\S\AppData\Local\{D4F5FA65-C76A-4C9E-A0E3-3E4F3E41B680} =>.Superfluous.Empty
O43 - CFD: 09/03/2013 - [0] D -- C:\Users\S\AppData\Local\{D85E4B18-69AC-4C67-AB3F-37F3D6ABA667} =>.Superfluous.Empty
O43 - CFD: 04/01/2013 - [0] D -- C:\Users\S\AppData\Local\{D92E90CA-EC11-4C79-9B8E-C29E87DE6D9D} =>.Superfluous.Empty
O43 - CFD: 20/03/2013 - [0] D -- C:\Users\S\AppData\Local\{DD2AC9F4-7083-495F-A4B5-B1A563548C55} =>.Superfluous.Empty
O43 - CFD: 18/03/2013 - [0] D -- C:\Users\S\AppData\Local\{DD2B5AB8-34DC-4A46-BB3E-DEC5D77198D0} =>.Superfluous.Empty
O43 - CFD: 22/12/2014 - [0] D -- C:\Users\S\AppData\Local\{DE679114-2F93-43F2-9494-807AAD23AFE8} =>.Superfluous.Empty
O43 - CFD: 06/11/2012 - [0] D -- C:\Users\S\AppData\Local\{E00B8A4E-EF24-49C1-A6F6-BDA41D1F9EAB} =>.Superfluous.Empty
O43 - CFD: 29/12/2012 - [0] D -- C:\Users\S\AppData\Local\{E16648BA-BED9-4A50-ACB6-4C7D47D4AFDE} =>.Superfluous.Empty
O43 - CFD: 02/01/2013 - [0] D -- C:\Users\S\AppData\Local\{E76813C8-647B-45BE-B7DC-42C75465E6D8} =>.Superfluous.Empty
O43 - CFD: 04/12/2012 - [0] D -- C:\Users\S\AppData\Local\{EA2C59A0-F1EA-4C72-A888-DC6E2CF92E3F} =>.Superfluous.Empty
O43 - CFD: 13/11/2012 - [0] D -- C:\Users\S\AppData\Local\{EB202DA4-8EE7-40D0-BC4C-B61A4E9388AD} =>.Superfluous.Empty
O43 - CFD: 08/10/2012 - [0] D -- C:\Users\S\AppData\Local\{EC69E5C5-0CE4-4EEA-AC08-ED3864385983} =>.Superfluous.Empty
O43 - CFD: 28/12/2012 - [0] D -- C:\Users\S\AppData\Local\{EE8B4D80-8991-4E85-9997-8BAD9AE5687E} =>.Superfluous.Empty
O43 - CFD: 12/10/2012 - [0] D -- C:\Users\S\AppData\Local\{EF760D26-82AE-4A78-B67E-041B91ABAF12} =>.Superfluous.Empty
O43 - CFD: 13/04/2013 - [0] D -- C:\Users\S\AppData\Local\{EFA88243-71E2-4950-9636-90F437344A64} =>.Superfluous.Empty
O43 - CFD: 01/01/2013 - [0] D -- C:\Users\S\AppData\Local\{F24442A6-97E7-496D-AC2F-C2BBD6304FA8} =>.Superfluous.Empty
O43 - CFD: 11/10/2012 - [0] D -- C:\Users\S\AppData\Local\{F530FDAD-7165-417A-9D61-9C6D4323DD03} =>.Superfluous.Empty
O43 - CFD: 10/10/2012 - [0] D -- C:\Users\S\AppData\Local\{F6D71608-B1BC-462A-B056-72796C907984} =>.Superfluous.Empty
O43 - CFD: 25/10/2013 - [0] D -- C:\Users\S\AppData\Local\{F800DD94-ADBC-43B6-B344-100B7113B8F3} =>.Superfluous.Empty
O43 - CFD: 26/02/2013 - [0] D -- C:\Users\S\AppData\Local\{F9936A3C-A194-41AC-B353-DFB7AA97E93C} =>.Superfluous.Empty
O43 - CFD: 09/03/2013 - [0] D -- C:\Users\S\AppData\Local\{FA75F545-FE94-40EE-BB7F-E60EC6DEB608} =>.Superfluous.Empty
O43 - CFD: 05/05/2014 - [0] D -- C:\Users\S\AppData\Local\{FEEE0250-601E-4C04-BC32-62710A9EE5F3} =>.Superfluous.Empty
O43 - CFD: 11/01/2014 - [0] D -- C:\Users\S\AppData\Local\{FF31B7F8-A066-4ADE-960B-0196DE0FFB2E} =>.Superfluous.Empty
O43 - CFD: 26/10/2013 - [0] D -- C:\Users\S\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 16/10/2016 - [] RD -- C:\Users\S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 31/01/2017 - [] RD -- C:\Users\S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 22/09/2013 - [] D -- C:\Users\S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 28/11/2016 - [] D -- C:\Users\Default\AppData\Local\AVG =>.AVG Software
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 28/11/2016 - [] D -- C:\Users\Default User\AppData\Local\AVG =>.AVG Software
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 19/11/2016 - [] D -- C:\windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software
O43 - CFD: 29/01/2017 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 17/11/2015 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\CrashRpt =>.Superfluous.CrashReports
O43 - CFD: 03/10/2012 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\Google =>.Google
O43 - CFD: 16/04/2012 - [] D -- C:\windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/11/2016 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 13/05/2015 - [0] D -- C:\windows\System32\Config\systemprofile\AppData\Local\SoftGrid Client =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] SD -- C:\windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/03/2017 - [] D -- C:\windows\System32\Config\systemprofile\AppData\Roaming\SoftGrid Client =>.Microsoft Corporation
O43 - CFD: 08/10/2012 - [] -- C:\windows\System32\Config\systemprofile\AppData\Roaming\{90140011-0066-040C-0000-0000000FF1CE} =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Liste des pilotes du système (80) - 39s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2012/01/04 20:24:18 A . (.Advanced Micro Devices, INC. - AMD USB 3.0 Hub Driver.) -- C:\windows\System32\drivers\amdhub30.sys [324224] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2012/02/01 19:54:56 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\windows\System32\drivers\amdkmpfd.sys [324224] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [324224] =>.Microsoft Windows®
O58 - SDL:2012/01/04 20:24:18 A . (.Advanced Micro Devices, INC. - AMD USB 3.0 Host Controller Driver.) -- C:\windows\System32\drivers\amdxhc.sys [324224] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2013/06/02 03:56:58 A . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\windows\System32\drivers\Apowersoft_AudioDevice.sys [324224] =>.APOWERSOFT LIMITED®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/12/05 22:47:30 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\windows\System32\drivers\AtihdW76.sys [324224] =>.ATI Technologies, Inc®
O58 - SDL:2012/02/14 01:09:14 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\windows\System32\drivers\atikmdag.sys [324224] =>.Advanced Micro Devices, Inc.
O58 - SDL:2012/02/13 23:36:26 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\windows\System32\drivers\atikmpag.sys [324224] =>.Advanced Micro Devices, Inc.
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [324224] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [324224] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [324224] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [324224] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [324224] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [324224] =>.Broadcom Corporation
O58 - SDL:2017/03/05 12:25:14 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\windows\System32\drivers\farflt.sys [324224] =>.Malwarebytes Corporation®
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [324224] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [324224] =>.Microsoft Windows®
O58 - SDL:2017/02/24 06:23:20 A . (.Auteurs - .) -- C:\windows\System32\drivers\mbae64.sys [324224] =>.Malwarebytes Corporation®
O58 - SDL:2017/03/05 12:25:11 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\windows\System32\drivers\mbam.sys [324224] =>.Malwarebytes Corporation®
O58 - SDL:2017/03/05 12:25:40 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\windows\System32\drivers\MBAMChameleon.sys [324224] =>.Malwarebytes Corporation®
O58 - SDL:2017/03/05 12:25:10 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\windows\System32\drivers\MBAMSwissArmy.sys [324224] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [324224] =>.Microsoft Windows®
O58 - SDL:2017/03/05 12:25:21 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\windows\System32\drivers\mwac.sys [324224] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/02/09 03:07:00 A . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) -- C:\windows\System32\drivers\PGEffect.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/08/24 05:57:24 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\windows\System32\drivers\Rt64win7.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/01/05 21:42:32 A . (.Realtek Microelectronics - Filter Driver for the Realtek Bluetooth Chi.) -- C:\windows\System32\drivers\RtkBtfilter.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/02/22 05:25:02 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/03/31 19:10:18 A . (.Realtek Semiconductor Corporation - Realtek RTL8187B NDIS Driver.) -- C:\windows\System32\drivers\rtl8187B.sys [324224] =>.Realtek Semiconductor Corporation
O58 - SDL:2010/04/01 22:01:10 A . (.Realtek Semiconductor Corporation - Realtek RTL8187S PCIE NDIS Driverr.) -- C:\windows\System32\drivers\rtl8187Se.sys [324224] =>.Realtek Semiconductor Corporation
O58 - SDL:2011/07/19 00:11:10 A . (.Realtek Semiconductor Corporation - Realtek RTL81892CE NDIS Driverr.) -- C:\windows\System32\drivers\rtl8192ce.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2011/06/21 01:07:08 A . (.Realtek Semiconductor Corporation - Realtek RTL81892SE NDIS Driverr.) -- C:\windows\System32\drivers\rtl8192se.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/12/23 00:24:00 A . (.Realtek Semiconductor Corporation - Realtek RTL819xP NDIS Driverr.) -- C:\windows\System32\drivers\rtl819xp.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2011/08/17 22:27:06 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\windows\System32\drivers\RtsUStor.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2012/01/17 01:20:38 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\windows\System32\drivers\rtwlane.sys [324224] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [324224] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [324224] =>.Microsoft Windows®
O58 - SDL:2011/12/19 20:15:10 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\windows\System32\drivers\SynTP.sys [324224] =>.Synaptics Incorporated®
O58 - SDL:2015/11/13 00:41:16 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\windows\System32\drivers\taphss6.sys [324224] =>.AnchorFree Inc®
O58 - SDL:2009/07/31 04:22:04 A . (.TOSHIBA Corporation. - TOSHIBA ODD Writing Driver for x64..) -- C:\windows\System32\drivers\tdcmdpst.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/06/17 20:01:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth Port Emulation Driver.) -- C:\windows\System32\drivers\tosporte.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2012/01/30 22:14:00 A . (.TOSHIBA CORPORATION - Bluetooth RF Bus Driver.) -- C:\windows\System32\drivers\tosrfbd.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/11/11 18:27:00 A . (.TOSHIBA Corporation - Bluetooth RFBNEP Driver.) -- C:\windows\System32\drivers\tosrfbnp.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/11/29 19:47:00 A . (.TOSHIBA Corporation - Bluetooth RFCOMM Driver.) -- C:\windows\System32\drivers\tosrfcom.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/06/19 00:45:00 A . (.TOSHIBA Corporation - TOSHIBA Bluetooth EC Driver.) -- C:\windows\System32\drivers\tosrfec.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/08/30 18:48:00 A . (.TOSHIBA Corporation. - Bluetooth HID Driver from TOSHIBA.) -- C:\windows\System32\drivers\Tosrfhid.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/07/24 19:33:00 A . (.TOSHIBA Corporation. - Bluetooth BNEP Driver.) -- C:\windows\System32\drivers\tosrfnds.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2010/04/26 19:48:00 A . (.TOSHIBA Corporation - Bluetooth Audio Driver (WDM).) -- C:\windows\System32\drivers\TosRfSnd.sys [324224] =>.Toshiba Corporation
O58 - SDL:2011/12/17 01:24:00 A . (.TOSHIBA CORPORATION - Bluetooth USB Miniport Driver.) -- C:\windows\System32\drivers\tosrfusb.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/06/20 03:15:22 A . (.TOSHIBA Corporation - TOSHIBA TVALZ Filter Driver for x64.) -- C:\windows\System32\drivers\TVALZFL.sys [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2009/07/14 23:31:18 A . (.TOSHIBA Corporation - TOSHIBA ACPI-Based Value Added Logical and.) -- C:\windows\System32\drivers\TVALZ_O.SYS [324224] =>.TOSHIBA CORPORATION®
O58 - SDL:2012/01/14 12:05:54 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\windows\System32\drivers\usbfilter.sys [324224] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [324224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [324224] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 73s
O61 - LFC: 2017/03/05 12:25:44 A . (..) -- C:\Users\S\AppData\Local\ATI\ACE\Manifest.Bin [30466] =>.ATI Technologies

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (2) - 1s
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] {5F14ACF5-7272-4F80-9CD6-135C37C091BA} - (Google) - http://www.google.com/ =>.Google Inc.

---\\ Enumère les services démarrés par Svchost (32) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\windows\System32\aelupsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\windows\system32\srvsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\windows\System32\gpsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\windows\System32\ikeext.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\windows\System32\Audiosrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\windows\System32\rasauto.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\windows\System32\rasmans.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\windows\System32\ipnathlp.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\windows\System32\termsrv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\windows\system32\wuaueng.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\windows\System32\qmgr.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\windows\System32\iphlpsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\windows\system32\seclogon.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\windows\System32\appinfo.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\windows\system32\iscsiexe.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\windows\system32\mmcss.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\windows\System32\browser.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\windows\System32\eapsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\windows\system32\schedsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\windows\system32\kmsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\windows\System32\wercplsupport.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\windows\system32\themeservice.dll [324224] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\windows\System32\bdesvc.dll [324224] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (33) - 4s
O87 - FAEL: "{FE210474-C63B-4126-B098-0A54BD10461E}" [In-None-P6-TRUE] .(.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) -- C:\Program Files (x86)\BitSpirit\BitSpirit.exe
O87 - FAEL: "{AFD279E9-162E-4725-9F63-209AA8429CF4}" [In-None-P17-TRUE] .(.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) -- C:\Program Files (x86)\BitSpirit\BitSpirit.exe
O87 - FAEL: "TCP Query User{4A4D0E4E-66CC-4263-AC07-561A6C81660A}C:\program files (x86)\bitspirit\bitspirit.exe" [In-None-P6-TRUE] .(.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) -- C:\program files (x86)\bitspirit\bitspirit.exe
O87 - FAEL: "UDP Query User{A4DFF521-FE81-469A-ADA6-A46E3B139370}C:\program files (x86)\bitspirit\bitspirit.exe" [In-None-P17-TRUE] .(.LANSPIRIT.NET - The powerful and easy-to-use BitTorrent Cli.) -- C:\program files (x86)\bitspirit\bitspirit.exe
O87 - FAEL: "{B260E74D-4E79-42BC-918A-8CE5C716114E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe (.not file.) =>.Apowersoft
O87 - FAEL: "{F16E0AFC-63F7-4BF0-BD5D-4EF0860AF9D9}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe (.not file.) =>.Apowersoft
O87 - FAEL: "{6B7A03EC-A6EA-4C90-BEBC-7B27806602E2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{E00DBF33-04AE-4C0B-9F69-D5906AC0B0FC}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{EB5B3CE7-DFAD-4FA6-848A-6C3C3418F4A4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{98929E16-877A-4D84-962C-C1040EA54BF6}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{8C3B0268-D004-4D8F-90EE-7DC9E13B0A6B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{915EC46F-7F18-47D3-8BC3-0B6C8B61CB94}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{4D51BE8C-02FD-484C-AC17-5F27A650AB0F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{1794E867-75B2-4005-8DCE-3002BC7EC84B}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{9AE51A0C-74FD-4F6F-BBF9-B06ABE64BBF5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{984258A8-43FD-4617-8407-558DD990DA51}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll (.not file.) =>.Apowersoft
O87 - FAEL: "{778A9CA4-FB72-446A-8284-79372E25AAB4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe (.not file.)
O87 - FAEL: "{A45D10D4-0956-4260-8EFA-6B8A8E2DE6E3}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe (.not file.)
O87 - FAEL: "{06426CDD-9811-47F5-B93F-5B080DC0ECA4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll (.not file.)
O87 - FAEL: "{F7092E3B-03BD-4681-A536-7FAD91E076C6}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll (.not file.)
O87 - FAEL: "{1F0DAF54-7813-4D2C-AE86-063C0D40B315}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll (.not file.)
O87 - FAEL: "{DF5F78F5-89E6-4D15-B681-F5CAA295AAA0}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll (.not file.)
O87 - FAEL: "{7280ED16-045E-4961-BBA7-D7F8415E43F1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll (.not file.)
O87 - FAEL: "{A19611CC-99AD-4872-BED2-A8DE37F837F2}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll (.not file.)
O87 - FAEL: "{BED92BBA-34E5-4BDA-BFAE-705F8B84F136}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll (.not file.)
O87 - FAEL: "{8391037F-3AA3-4314-8CEE-7808D06DDDBB}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll (.not file.)
O87 - FAEL: "{E4AF9E55-4ECD-46FD-B605-1977AE93AE5D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll (.not file.)
O87 - FAEL: "{9C770F72-BD30-4077-BCF6-5860604E3946}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll (.not file.)
O87 - FAEL: "TCP Query User{BF8A604D-C83B-43A8-99AC-CC27691B6F57}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{7B374F02-FC1F-4D26-B1E2-C1646E95468E}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "TCP Query User{A9A3614D-5E28-4EB4-A741-4EECD27B0B71}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{DF39282C-AE62-43EF-A0DB-85F8FC076958}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "{3CFDB5EC-E0F0-4073-B0FD-3395F27611CE}" [In-None-P6-TRUE] .(...) -- C:\Users\S\AppData\Local\Torch\Application\torch.exe (.not file.) =>.Superfluous.Torch

---\\ Scan Additionnel (10) - 5s
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
C:\ProgramData\InstallMate =>.Superfluous.Tarma
C:\Users\S\AppData\Local\CrashRpt =>.Superfluous.CrashReports
C:\Users\S\AppData\Local\Ok-SendMail-Bron-tok =>Worm.Brontok
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:TCP Query User{BF8A604D-C83B-43A8-99AC-CC27691B6F57}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:UDP Query User{7B374F02-FC1F-4D26-B1E2-C1646E95468E}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:TCP Query User{A9A3614D-5E28-4EB4-A741-4EECD27B0B71}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:UDP Query User{DF39282C-AE62-43EF-A0DB-85F8FC076958}C:\users\s\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{3CFDB5EC-E0F0-4073-B0FD-3395F27611CE} =>.Superfluous.Torch

---\\ Récapitulatif des éléments trouvés sur votre station (8) - 0s
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AkamaiHD
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SfKpCouponApp
https://www.nicolascoolman.com/fr/pup-tarma/ =>.Superfluous.Tarma
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.CrashReports
https://www.nicolascoolman.com/fr/worm-brontok/ =>Worm.Brontok
https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.Superfluous.CacaoWeb
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Torch

~ Unselected Options: O82,
~ End of the scan, 49140 items in 09mn18s (1136)(0)

Publicité


Signaler le contenu de ce document

Publicité