cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2016.1.31.23 Par Nicolas Coolman (2016/01/30)
~ Démarré par RUBEN ESPADA (Administrator) (2017/03/11 23:36:48)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Pas de fichier réseau
~ Mode: Scanner
~ Rapport: C:\Users\RUBEN ESPADA\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\RUBEN ESPADA\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1 Pro, 64-bit (Build 9600)

---\\ Navigateurs Internet (3) - 0s
GCIE: Google Chrome v56.0.2924.87
MFIE: Mozilla Firefox 48.0.2 (x86 fr)
MSIE: Internet Explorer v11.0.9600.18538

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 3s
Kaspersky Internet Security v16.0.1.445
Windows Defender (Deactivate)

---\\ Logiciels d'optimisation (1) - 4s
CCleaner v5.14

---\\ Surveillance de Logiciels (1) - 4s
Adobe Flash Player 24 PPAPI

---\\ Informations sur le système (9) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8305.724 MB (60% free)
System Restore: Activé (Enable)
System drive C: has 53 GB () free of 243 GB
Total RAM: 8305.724 MB (42% free)
Total RAM: 8305.724 MB (41% free)
System drive C: has 52 GB () free of 243 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: RUBEN
~ User Name: RUBEN ESPADA
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 53 GB free of 243 GB (System)
~ Drive D: has GB free of 7 GB
~ Drive C: has 52 GB free of 243 GB (System)

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 0s
[MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2755504] =>.Microsoft Windows®
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [54784] =>.Microsoft Corporation
[MD5.EC302D06155F8E3C383750993FCB6B27] - 05/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [146432] =>.Microsoft Corporation
[MD5.105954F9BEAD700A6DF4B5B489FCCB4B] - 12/11/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2920960] =>.Microsoft Corporation
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [570880] =>.Microsoft Corporation
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/12/2013 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.84B55134C5CA26063E7AA980BB15D976] - 08/10/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [658432] =>.Microsoft Corporation
[MD5.4CD766EF361C27DAE50C84AC40C15DF2] - 08/10/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [498688] =>.Microsoft Corporation
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 22/08/2013 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation
[MD5.FBFF94FC1FE0699A6BC5ACE270AB9EA1] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 27/11/2013 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation
[MD5.C3B0566DE49265AE98405825938C20A1] - 19/11/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation
[MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation
[MD5.9980B262DBE439AE6BDC91AA985F19EE] - 30/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2017624] =>.Microsoft Windows®
[MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 22/08/2013 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation
[MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [108032] =>.Microsoft Corporation
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (28) - 2s
O23 - Service: Arp Intelligent Protection Service (AIPS) . (.Arcai.com - Arp Intelligent Protection Service.) - C:\Program Files (x86)\netcut\services\aips.exe =>.arcai.com
O23 - Service: Kaspersky Anti-Virus Service 16.0.1 (AVP16.0.1) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Motorola Solutions Inc.®
O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Motorola Solutions Inc.®
O23 - Service: CyberGhost 6 Service (CG6Service) . (.CyberGhost S.R.L - CyberGhost Service.) - C:\Program Files\CyberGhost 6\CyberGhost.Service.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc. - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe {0098B182EAF5DF8BDE0F8872EDE210C75E}
O23 - Service: Intel Bluetooth Service (ibtsiva) . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) - C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
O23 - Service: Killer Service V2 (Killer Service V2) . (.Rivet Networks - Killer Network Service.) - C:\Program Files\Killer Networking\Network Manager\KillerService.exe =>.Rivet Networks
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
O23 - Service: Logitech Gaming Registry Service (LogiRegistryService) . (.Logitech Inc. - Logitech Surround Sound Service.) - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe =>.Logitech Inc®
O23 - Service: Micro Star SCM (Micro Star SCM) . (.Micro-Star International Co., Ltd. - MSI SCM Service.) - C:\Windows\SysWOW64\MSIService.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.
O23 - Service: MSI_SuperCharger (MSI_SuperCharger) . (.MSI - SUPER CHARGER Service.) - C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Wireless Controller Service (NVIDIA Wireless Controller Service) . (...) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe (.not file.)
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation®
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_W (SystemUsageReportSvc_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese - Intel(R) System Usage Report.) - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe {330000B91CF627C463298C6A1F00020000B91C}
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (42) - 100s

SS - Demand [15/02/2017] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [28/07/2011] [ 262144] Arp Intelligent Protection Service (AIPS) . (.Arcai.com.) - C:\Program Files (x86)\netcut\services\aips.exe =>.arcai.com
SR - Auto [22/12/2015] [ 236928] Kaspersky Anti-Virus Service 16.0.1 (AVP16.0.1) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
SS - Demand [16/12/2016] [ 1447944] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.®
SR - Auto [17/06/2014] [ 1202552] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Motorola Solutions Inc.®
SR - Auto [14/07/2014] [ 1161592] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Motorola Solutions, Inc..) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Motorola Solutions Inc.®
SR - Auto [06/02/2017] [ 76848] CyberGhost 6 Service (CG6Service) . (.CyberGhost S.R.L.) - C:\Program Files\CyberGhost 6\CyberGhost.Service.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L
SS - Demand [12/05/2016] [ 279160] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Demand [06/02/2017] [ 1471168] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.Disc Soft Ltd®
SS - Demand [08/06/2016] [ 416408] Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe {330000B91CF627C463298C6A1F00020000B91C}
SR - Auto [13/08/2015] [ 640928] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SS - Auto [11/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [11/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [07/12/2016] [ 31776] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc..) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe {0098B182EAF5DF8BDE0F8872EDE210C75E}
SR - Auto [13/07/2015] [ 150256] Intel Bluetooth Service (ibtsiva) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [12/05/2016] [ 344184] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation
SR - Auto [27/08/2013] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation
SS - Demand [27/08/2013] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Auto [16/09/2013] [ 131544] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [16/09/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [27/02/2015] [ 390144] Killer Service V2 (Killer Service V2) . (.Rivet Networks.) - C:\Program Files\Killer Networking\Network Manager\KillerService.exe =>.Rivet Networks
SS - Demand [22/12/2015] [ 152488] klvssbrigde64 (klvssbrigde64) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\vssbridge64.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
SR - Auto [16/09/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products®
SR - Auto [03/08/2016] [ 193656] Logitech Gaming Registry Service (LogiRegistryService) . (.Logitech Inc..) - C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe =>.Logitech Inc®
SR - Auto [09/07/2009] [ 160768] Micro Star SCM (Micro Star SCM) . (.Micro-Star International Co., Ltd..) - C:\Windows\SysWOW64\MSIService.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.
SS - Demand [24/08/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [21/02/2014] [ 162800] MSI_SuperCharger (MSI_SuperCharger) . (.MSI.) - C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
SS - Demand [13/08/2015] [ 268192] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [08/02/2017] [ 462784] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SR - Demand [08/02/2017] [ 462784] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SR - Auto [10/02/2017] [ 462784] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Auto [08/02/2017] [ 425408] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation®
SR - Auto [13/08/2015] [ 157088] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SS - Demand [25/06/2010] [ 117264] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.CACE Technologies, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.CACE Technologies, Inc.®
SS - Auto [16/01/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies
SR - Auto [22/07/2016] [ 754784] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
SS - Demand [09/03/2017] [ 1590560] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [08/06/2016] [ 117400] Intel(R) System Usage Report Service SystemUsageReportSvc_W (SystemUsageReportSvc_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese.) - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe {330000B91CF627C463298C6A1F00020000B91C}
SS - Demand [08/06/2016] [ 416408] User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2016 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe {330000B91CF627C463298C6A1F00020000B91C}
SR - Auto [13/08/2015] [ 3831712] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [20/01/2017] [ 4355024] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes

---\\ Tâches planifiées en automatique (33) - 4s
[MD5.9554D030EE070DD17AD6E22054567826] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_24_0_0_221_pepper.exe [1269848] =>.Adobe Systems Incorporated®
[MD5.874B1D3B016BB6051EED24E6F94DA18B] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [270936] =>.Adobe Systems Incorporated®
[MD5.7E49CB7F9BB53542F2944A527BC4E24D] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6628056] =>.Piriform Ltd®
[MD5.C6FF00DA1605982E616C03BE809FFE2D] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.C6FF00DA1605982E616C03BE809FFE2D] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
[MD5.85F3530120F2E313515F8CBF347A503F] [APT] [MSI_Dragon Gaming Center] (.TODO: <公司名稱>.) -- C:\Program Files (x86)\MSI\Dragon Gaming Center\mDispatch.exe [1680520]
[MD5.DA665E0A630E7B7F587FCE74C944CB97] [APT] [MSI_Reminder] (.MSI Copyright © 2013.) -- C:\Program Files (x86)\MSI\MSI Remind Manager\MSI Reminder.exe [4682240]
[MD5.827D7ACEE525674CE7A6E3DFD2BD55F0] [APT] [NahimicMSIsvc32Run] (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [813568]
[MD5.D2555AD23A679FF553B3CFE9CA3BD788] [APT] [NahimicMSIsvc64Run] (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [272384]
[MD5.62FF2B0B9FFA19C541B686E247234E42] [APT] [NahimicMSIUILauncherRun] (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [532448] {410503D6972DAFF6500EF92CC2E86447}
[MD5.A416379BC27DEF9EA90A118EF191DA46] [APT] [NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784] =>.NVIDIA Corporation®
[MD5.C9182F9E9B83791892EE4F8F6682B587] [APT] [NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [781248] =>.NVIDIA Corporation®
[MD5.EBBD7DDD56D226DC748DF289057C9121] [APT] [NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [641984] =>.NVIDIA Corporation®
[MD5.EBBD7DDD56D226DC748DF289057C9121] [APT] [NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [641984] =>.NVIDIA Corporation®
[MD5.A6B4EF3B20F81F848A2AFA92410A7047] [APT] [NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160] =>.NVIDIA Corporation®
[MD5.103837B9CC88D03455EBA0835E19A397] [APT] [NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [714688] =>.NVIDIA Corporation®
[MD5.103837B9CC88D03455EBA0835E19A397] [APT] [NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [714688] =>.NVIDIA Corporation®
[MD5.C9F154C7F3FC91861CE36707FB86A1E5] [APT] [TA Unofficial Patch Updater] (.Total Annihilation Universe.) -- C:\Program Files (x86)\Steam\steamapps\common\Total Annihilation\updater.exe [321024]
[MD5.9E954EB288272F584735E53D48567ADA] [APT] [Intel\Intel Telemetry 2] (.Intel Corporation.) -- C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1741576] {330000B8E2603147304B44B2A600020000B8E2} =>.Intel Corporation
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job [1064] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated
O39 - APT: TA Unofficial Patch Updater - (.Total Annihilation Universe.) -- C:\Windows\Tasks\TA Unofficial Patch Updater.job [478]
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier [4036] =>.Adobe Systems Incorporated
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3890] =>.Adobe Systems Incorporated
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2798] =>.Piriform Ltd
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3372] =>.Google Inc.
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3500] =>.Google Inc.
O39 - APT: MSI_Dragon Gaming Center - (.TODO: <公司名稱>.) -- C:\Windows\System32\Tasks\MSI_Dragon Gaming Center [3172]
O39 - APT: MSI_Reminder - (.MSI Copyright © 2013.) -- C:\Windows\System32\Tasks\MSI_Reminder [3068]
O39 - APT: NahimicMSIsvc32Run - (...) -- C:\Windows\System32\Tasks\NahimicMSIsvc32Run [3130]
O39 - APT: NahimicMSIsvc64Run - (...) -- C:\Windows\System32\Tasks\NahimicMSIsvc64Run [3138]
O39 - APT: NahimicMSIUILauncherRun - (...) -- C:\Windows\System32\Tasks\NahimicMSIUILauncherRun [3140]
O39 - APT: TA Unofficial Patch Updater - (.Total Annihilation Universe.) -- C:\Windows\System32\Tasks\TA Unofficial Patch Updater [3048]

---\\ Processus lancés (94) - 5s
[MD5.F7706B581C5070A2719D001EE806E51D] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784] [PID.976] =>.NVIDIA Corporation®
[MD5.87657AC357B01DD74D47F340BF1CE622] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1286592] [PID.440] =>.NVIDIA Corporation®
[MD5.11AF1FF8EC3757F0FD44C70A9AEFF1EB] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [344184] [PID.1048] =>.Intel Corporation - pGFX®
[MD5.2870CE9BFD6BA66FB0FFC6D11C9E41A7] - (.Arcai.com - Arp Intelligent Protection Service.) -- C:\Program Files (x86)\netcut\services\aips.exe [262144] [PID.1184] =>.arcai.com
[MD5.09F0E4D1F66C40AB770AD1540758C59E] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe [236928] [PID.1712] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
[MD5.6DCB7233AAD29E43331B3ECFCC8FB8D1] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [640928] [PID.1800] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.72E0D25E70AAB076B3265D19F0285335] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [150256] [PID.1856] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.1900] =>.Intel(R) Corporation
[MD5.1A0A2195A44B15E15A58531452CD3038] - (.Rivet Networks - Killer Network Service.) -- C:\Program Files\Killer Networking\Network Manager\KillerService.exe [390144] [PID.1932] =>.Rivet Networks
[MD5.7159380FEF0F34EEBFEACF261F25EB76] - (.Logitech Inc. - Logitech Surround Sound Service.) -- C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193656] [PID.1952] =>.Logitech Inc®
[MD5.71C6748EE8DE938532057EF10B4B7E44] - (.Micro-Star International Co., Ltd. - MSI SCM Service.) -- C:\Windows\SysWOW64\MSIService.exe [160768] [PID.1968] =>.MICRO-STAR INTERNATIONAL CO., LTD.
[MD5.B0762157B3CFF4D4782646F009EE8465] - (.MSI - SUPER CHARGER Service.) -- C:\Program Files (x86)\MSI\SUPER CHARGER\ChargeService.exe [162800] [PID.1168] =>.MICRO-STAR INTERNATIONAL CO., LTD.®
[MD5.A416379BC27DEF9EA90A118EF191DA46] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784] [PID.1368] =>.NVIDIA Corporation®
[MD5.31380F5B9C42D851853A380830FAA88F] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [425408] [PID.1980] =>.NVIDIA Corporation®
[MD5.B91EE7363FDC2B0CB1C5E6190B46F7DC] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [157088] [PID.2060] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.7DB9E612A2742ACEAB080B882E83141C] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784] [PID.2148] =>.Samsung Electronics CO., LTD.®
[MD5.2BE3A44B764D6C43CBF4650E862CB807] - (.Copyright (C) 2016 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [117400] [PID.2200] {330000B91CF627C463298C6A1F00020000B91C}
[MD5.65308E8DDBCA0A3D7A72E3404E194319] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712] [PID.2384] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.2B2559146B072EB183DA1AB57E38E886] - (.CyberGhost S.R.L - CyberGhost Service.) -- C:\Program Files\CyberGhost 6\CyberGhost.Service.exe [76848] [PID.2576] {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L
[MD5.287C64659B259AA170B91E9BA4F1878A] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe [218648] [PID.2844] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
[MD5.5CBF93603273AB791EDB2B195B7EDD34] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [425408] [PID.3292] =>.NVIDIA Corporation®
[MD5.03162D11317DB43DB85E47A0AA183107] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [313464] [PID.5004] =>.Intel Corporation - pGFX®
[MD5.781BD1D9F95E014A7BE8690BF9596C28] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [248440] [PID.5012] =>.Intel Corporation - pGFX®
[MD5.0776370846DFE1D108CBD098DB162F35] - (.wyDay - wyUpdate.) -- C:\Program Files\CyberGhost 6\wyUpdate.exe [432040] [PID.4352] {66D3288AB6917B554EAF362A360E8AFB}
[MD5.729B7C623A2960C00B8E669F48011310] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456632] [PID.5376] =>.NVIDIA Corporation®
[MD5.1CEA2C2C9658D84A8E5E1207E1780E8C] - (.Arcai.com - NetCut Arp Spoof Application.) -- C:\Program Files (x86)\netcut\netcut.exe [897024] [PID.5656] =>.arcai.com
[MD5.A15FF7FFA54109281D5742D396271DFC] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056] [PID.5764] =>.Realtek Semiconductor Corp®
[MD5.E66FA967B5659C5725344582F250A6E9] - (.Motorola Solutions, Inc. - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1202552] [PID.5820] =>.Motorola Solutions Inc.®
[MD5.13323CD3010EDFD7E72104E3EE415692] - (.Motorola Solutions, Inc. - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1161592] [PID.5864] =>.Motorola Solutions Inc.®
[MD5.B776782188B68FA0125E651C5FC3A3A2] - (.MSI - SCM.) -- C:\Program Files (x86)\SCM\SCM.exe [299008] [PID.5904] =>.MSI
[MD5.62FF2B0B9FFA19C541B686E247234E42] - (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [532448] [PID.6100] {410503D6972DAFF6500EF92CC2E86447}
[MD5.827D7ACEE525674CE7A6E3DFD2BD55F0] - (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [813568] [PID.6108]
[MD5.D2555AD23A679FF553B3CFE9CA3BD788] - (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [272384] [PID.6116]
[MD5.5D36AEE2E912402F4ABAB2C55182E3E1] - (.Logitech Inc. - Logitech Gaming Framework.) -- C:\Program Files\Logitech Gaming Software\LCore.exe [15853176] [PID.1252] =>.Logitech Inc®
[MD5.22F7B9670AD770C7ED7F4738204C8E5C] - (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe [2573416] [PID.5488] =>.Hewlett Packard®
[MD5.18FDFB348067FC83AA0B7B170FF5AFE9] - (.NVIDIA Corporation - NVIDIA Capture Server.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe [7551936] [PID.5640] =>.NVIDIA Corporation®
[MD5.6A86DD196C0CFB9B0DB8C2F1681492EE] - (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4701888] [PID.3552] =>.Disc Soft Ltd®
[MD5.7B00468816A1D485E38D22704EED5F5C] - (.Disc Soft Ltd - Disc Soft Bus Service Lite.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168] [PID.6076] =>.Disc Soft Ltd®
[MD5.EB4AA8EBA35D295876DA86C5A3FCC33F] - (.NVIDIA Corporation - NVIDIA Share.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe [1447360] [PID.6328] =>.NVIDIA Corporation®
[MD5.4FE90C27175000D29318473081815B08] - (.Rivet Networks - Killer Network Manager.) -- C:\Program Files\Killer Networking\Network Manager\NetworkManager.exe [330240] [PID.6384] =>.Rivet Networks
[MD5.8FFD745B53040008EFCD6309EB5FB993] - (.Micro-Star International Co., Ltd. - MSI Keyboard LED Manager.) -- C:\Program Files (x86)\MSI\KLM\KLM.exe [1569416] [PID.6420] =>.MICRO-STAR INTERNATIONAL CO., LTD.
[MD5.EB4AA8EBA35D295876DA86C5A3FCC33F] - (.NVIDIA Corporation - NVIDIA Share.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe [1447360] [PID.6556] =>.NVIDIA Corporation®
[MD5.0EE6B358B76BC90E20239CECF7621281] - (.Node.js - NVIDIA Web Helper Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe [15547328] [PID.6592] =>.NVIDIA Corporation®
[MD5.87F63B73D7D5C469021545D793084DCD] - (.Rainmeter - Rainmeter desktop customization tool.) -- C:\Program Files\Rainmeter\Rainmeter.exe [37520] [PID.6672] {7ACCB711A8AB666435E5A2BD31CE0EF0}
[MD5.F4EC93E4A239F9A27777ED2416F6353D] - (.MSI - SUPER CHARGER.) -- C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe [1047536] [PID.6724] =>.MICRO-STAR INTERNATIONAL CO., LTD.®
[MD5.34D296AFC913E302953C70463EF09A48] - (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [96056] [PID.6752] =>.Hewlett-Packard Company®
[MD5.A416379BC27DEF9EA90A118EF191DA46] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [462784] [PID.7160] =>.NVIDIA Corporation®
[MD5.00B0D1B3D80491A8DD996F977262E766] - (.Micro-Star International Co., Ltd. - Dragon Gaming Center.) -- C:\Program Files (x86)\MSI\Dragon Gaming Center\Dragon Gaming Center.exe [6835848] [PID.6396] =>.MICRO-STAR INTERNATIONAL CO., LTD.
[MD5.80B8A0895A4A55F7B3ADC5C4F754E690] - (.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\nvstreamsrv\NvStreamUserAgent.exe [21212096] [PID.6644] =>.NVIDIA Corporation®
[MD5.94C2AB0ADBE93CEAB6D912ECD4F9CDF9] - (.Mojang - Minecraft launcher.) -- C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe [38847360] [PID.2984] {064DB5FD801DB3C8EA9E89A7C8485692} =>.Mojang
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.4184] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.988] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.2372] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.2988] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.3972] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.7900] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.EC80F3ECC5F8543E22BBCB037D837CA9] - (.HP Inc. - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776] [PID.2140] {0098B182EAF5DF8BDE0F8872EDE210C75E}
[MD5.57739E742ABC085C2A4340D4404B4A8B] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544] [PID.1876] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.8196] =>.Intel Corporation - Intel® Management Engine Firmware®
[MD5.3DE66F47365AA8CEB18B1EE272F4FEBA] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.8216] =>.Intel Corporation - Software and Firmware Products®
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.8380] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.8584] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.8640] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.8760] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.8488] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.1308] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.8548] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.52F5D651B8E39F258C1C34272FEB1AB2] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8619224] [PID.2808] =>.Piriform Ltd®
[MD5.52F5D651B8E39F258C1C34272FEB1AB2] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8619224] [PID.3952] =>.Piriform Ltd®
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.3088] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.7888] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.4812] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.1576] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.5680] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.6400] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.2000] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.1232] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.7868] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.7356] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.5096] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.4560] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.9188] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.456] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.3188] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.168] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.DE04CB4B5BB20F0233199FB05E2EE590] - (.Malwarebytes - Malwarebytes.) -- C:\Users\RUBEN ESPADA\Desktop\mb3-setup-consumer-3.0.6.1469-1075.exe [57131432] [PID.3304] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
[MD5.73DF548CEF46AA11B768144F29D062FC] - (. - Setup/Uninstall.) -- C:\Users\RUBEN ESPADA\AppData\Local\Temp\is-1FH0G.tmp\mb3-setup-consumer-3.0.6.1469-1075.tmp [1192400] [PID.5180] {044E3BF58976880FFD074448A8F7A058}
[MD5.DE04CB4B5BB20F0233199FB05E2EE590] - (.Malwarebytes - Malwarebytes.) -- C:\Users\RUBEN ESPADA\Desktop\mb3-setup-consumer-3.0.6.1469-1075.exe [57131432] [PID.4896] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
[MD5.73DF548CEF46AA11B768144F29D062FC] - (. - Setup/Uninstall.) -- C:\Users\RUBEN ESPADA\AppData\Local\Temp\is-D2B4H.tmp\mb3-setup-consumer-3.0.6.1469-1075.tmp [1192400] [PID.6688] {044E3BF58976880FFD074448A8F7A058}
[MD5.804E3246E3E73D4A936F2F4BCDC53A2D] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024] [PID.7332] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
[MD5.A6A21A7D544675E98C040DA18904CF50] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [2780112] [PID.2608] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.5584] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.1892] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
[MD5.38372AA4CC9FBD0EB7A26FC7B5F24562] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [945496] [PID.1192] {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.

---\\ Google Chrome, Démarrage,Recherche,Extensions (22) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://192.168.0.38:8008
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://gc.kis.scr.kaspersky-labs.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ogs.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com
G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [boadgeojelhgndaghljhdicfkmllpafd] Google Cast
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.AdblocPlus Plugin
G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [lpeeaghdjmhlakojjcgfdhgcejdaefmi] __MSG_ExtensionName__
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 0s
M0 - MFSP: prefs.js [RUBEN ESPADA - hvfq9scx.default] https://uk.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_dmontlsfs_17_09¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dgb%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FyEtDyCyCzyyE0D0Czz0DyC0C0B0CzytN0D0Tzu0StCzzzzzytN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1BzztN1L1G1B1V1N2Y1L1Qzu2SyE0AzyyB0B0F0AtAtGtCyD0AtBtG0FtBtDzztGtA0C0CzztGyDzztB0DtB0A0C0DtB0E0EtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0D0ByE0B0B0C0AtAtGtCyD0BtCtGyEtC0EtBtG0BzytDyCtG0E0A0DyB0FyEyD0FtB0F0DyB2QtN0A0LzutB%26cr%3D1181326535%26a%3Dwncy_dmontlsfs_17_09%26os_ver%3D6.3%26os%3DWindows%2B8.1%2BPro
P2 - EXT FILE: (...) -- C:\Users\RUBEN ESPADA\AppData\Roaming\Mozilla\Firefox\Profiles\hvfq9scx.default\extensions\firefox-hotfix@mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Users\RUBEN ESPADA\AppData\Roaming\Mozilla\Firefox\Profiles\hvfq9scx.default\searchplugins\yahoo! powered.xml
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll =>.Adobe Systems Incorporated
M0 - MFSP: prefs.js [RUBEN ESPADA - hvfq9scx.default] https://www.malwarebytes.org/restorebrowser/_dmontlsfs_17_09¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dgb%26pa%3Dwincy%26cd%3D2XzuyEtN2Y1L1Qzu0FyEtDyCyCzyyE0D0Czz0DyC0C0B0CzytN0D0Tzu0StCzzzzzytN1L2XzutAtFtByBtFyEtFyDtBtN1L1Czu1BzztN1L1G1B1V1N2Y1L1Qzu2SyE0AzyyB0B0F0AtAtGtCyD0AtBtG0FtBtDzztGtA0C0CzztGyDzztB0DtB0A0C0DtB0E0EtA2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0D0ByE0B0B0C0AtAtGtCyD0BtCtGyEtC0EtBtG0BzytDyCtG0E0A0DyB0FyEyD0FtB0F0DyB2QtN0A0LzutB%26cr%3D1181326535%26a%3Dwncy_dmontlsfs_17_09%26os_ver%3D6.3%26os%3DWindows%2B8.1%2BPro

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://uk.search.yahoo.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://uk.search.yahoo.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (11) - 3s
134.255
151.8
134.255

151.8

~ Nombre lignes détournées 134.255

2004 (Hosts file redirected)
134.255


151.8


~ Nombre lignes détournées 134.255

2004 (Hosts file redirected)

134.255



151.8



~ Nombre lignes détournées 134.255

2004 (Hosts file redirected)



---\\ Browser Helper Object de navigateur (BHO) (3) - 0s
O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {03993315-5CE9-4F00-8790-D14A94F1D91A} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (Orphean)
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} (Orphean)

---\\ Applications lancées au démarrage du système (28) - 1s
O4 - HKLM\..\Run: [BTMTrayAgent] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [ETDCtrl] C:\Program Files (x86)\Elantech\ETDCtrl.exe (.not file.)
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [SCM] . (.MSI - SCM.) -- C:\Program Files (x86)\SCM\SCM.exe =>.MSI
O4 - HKLM\..\Run: [NahimicMSIUILauncher] . (...) -- C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe {410503D6972DAFF6500EF92CC2E86447}
O4 - HKLM\..\Run: [InstallerLauncher] C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe (.not file.)
O4 - HKLM\..\Run: [Logitech Download Assistant] . (.Logitech, Inc. - Logitech Download Assistant.) -- C:\Windows\System32\LogiLDA.dll =>.Logitech Inc®
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [Launch LCore] . (.Logitech Inc. - Logitech Gaming Framework.) -- C:\Program Files\Logitech Gaming Software\LCore.exe =>.Logitech Inc®
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKCU\..\Run: [CyberGhost] . (.CyberGhost S.R.L. - CyberGhost.) -- C:\Program Files\CyberGhost 6\CyberGhost.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L.
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [HP Photosmart 5520 series (NET)] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe =>.Hewlett Packard®
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [KLM] . (.Micro-Star International Co., Ltd. - MSI Keyboard LED Manager.) -- C:\Program Files (x86)\MSI\KLM\KLM.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.
O4 - HKLM\..\Wow6432Node\Run: [SUPER CHARGER] . (.MSI - SUPER CHARGER.) -- C:\Program Files (x86)\MSI\SUPER CHARGER\SUPER CHARGER.exe =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [HP Software Update] . (.Hewlett-Packard - hpwuSchd Application.) -- C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe =>.Hewlett-Packard Company®
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\Run: [CyberGhost] . (.CyberGhost S.R.L. - CyberGhost.) -- C:\Program Files\CyberGhost 6\CyberGhost.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L.
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\Run: [HP Photosmart 5520 series (NET)] . (.Hewlett-Packard Co. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP Photosmart 5520 series\Bin\ScanToPCActivationApp.exe =>.Hewlett Packard®
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKUS\S-1-5-21-2705040802-1120441282-1941736732-1001\..\RunOnce: [Uninstall C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) -- C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes

---\\ Raccourcis Global Startup (74) - 6s
O4 - GS\Desktop [Administrator]: Bethesda.net_Launcher.exe - Raccourci.lnk . (.ZeniMax Online Studios - ZeniMax Online Studios Launcher.) C:\Program Files (x86)\Zenimax Online\Launcher\Bethesda.net_Launcher.exe {5703A83169AFEF8304E753B714065E6A} =>.Zenimax Online Studios
O4 - GS\Desktop [Administrator]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - .) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe =>.CyberGhost S.R.L.
O4 - GS\Desktop [Administrator]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\RUBEN ESPADA\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent\uTorrent.exe {0CF35369A9710762C36F6805FC9E45D6}
O4 - GS\Quicklaunch [Administrator]: Arcai.com's NetCut.lnk . (.Arcai.com - NetCut Arp Spoof Application.) C:\Program Files (x86)\netcut\netcut.exe =>.arcai.com
O4 - GS\Quicklaunch [Administrator]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - CyberGhost.) C:\Program Files\CyberGhost 6\CyberGhost.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L.
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O4 - GS\Quicklaunch [Administrator]: XSplit Broadcaster.lnk . (...) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.Core.exe
O4 - GS\sendTo [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - GS\TaskBar [Administrator]: csgo.lnk . (...) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O4 - GS\TaskBar [Administrator]: Dragon Gaming Center.lnk . (.Macrovision Corporation - InstallShield.) C:\Windows\Installer\{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}\Dragon_Gaming_Cent_965B16C707784C45B7D183A59E6FBBCB_1.exe =>.Macrovision Corporation
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O4 - GS\TaskBar [Administrator]: Hearthstone.lnk . (...) C:\Program Files (x86)\Hearthstone\Hearthstone.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\TaskBar [Administrator]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\TaskBar [Administrator]: Kaspersky Internet Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O4 - GS\TaskBar [Administrator]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - GS\TaskBar [Administrator]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [Administrator]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\RUBEN ESPADA\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH®
O4 - GS\Startup [Administrator]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync\MEGAsync.exe {1121623C69317CDC4806228F0983E88BB38B} =>.MEGA Limited
O4 - GS\Startup [Administrator]: Rainmeter.lnk . (.Rainmeter - Rainmeter desktop customization tool.) C:\Program Files\Rainmeter\Rainmeter.exe {7ACCB711A8AB666435E5A2BD31CE0EF0}
O4 - GS\Desktop [Guest]: Bethesda.net_Launcher.exe - Raccourci.lnk . (.ZeniMax Online Studios - ZeniMax Online Studios Launcher.) C:\Program Files (x86)\Zenimax Online\Launcher\Bethesda.net_Launcher.exe {5703A83169AFEF8304E753B714065E6A} =>.Zenimax Online Studios
O4 - GS\Desktop [Guest]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - .) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe =>.CyberGhost S.R.L.
O4 - GS\Desktop [Guest]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\RUBEN ESPADA\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent\uTorrent.exe {0CF35369A9710762C36F6805FC9E45D6}
O4 - GS\Quicklaunch [Guest]: Arcai.com's NetCut.lnk . (.Arcai.com - NetCut Arp Spoof Application.) C:\Program Files (x86)\netcut\netcut.exe =>.arcai.com
O4 - GS\Quicklaunch [Guest]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - CyberGhost.) C:\Program Files\CyberGhost 6\CyberGhost.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L.
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O4 - GS\Quicklaunch [Guest]: XSplit Broadcaster.lnk . (...) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.Core.exe
O4 - GS\sendTo [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - GS\TaskBar [Guest]: csgo.lnk . (...) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O4 - GS\TaskBar [Guest]: Dragon Gaming Center.lnk . (.Macrovision Corporation - InstallShield.) C:\Windows\Installer\{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}\Dragon_Gaming_Cent_965B16C707784C45B7D183A59E6FBBCB_1.exe =>.Macrovision Corporation
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O4 - GS\TaskBar [Guest]: Hearthstone.lnk . (...) C:\Program Files (x86)\Hearthstone\Hearthstone.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\TaskBar [Guest]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\TaskBar [Guest]: Kaspersky Internet Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O4 - GS\TaskBar [Guest]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - GS\TaskBar [Guest]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [Guest]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\RUBEN ESPADA\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH®
O4 - GS\Startup [Guest]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync\MEGAsync.exe {1121623C69317CDC4806228F0983E88BB38B} =>.MEGA Limited
O4 - GS\Startup [Guest]: Rainmeter.lnk . (.Rainmeter - Rainmeter desktop customization tool.) C:\Program Files\Rainmeter\Rainmeter.exe {7ACCB711A8AB666435E5A2BD31CE0EF0}
O4 - GS\Desktop [RUBEN ESPADA]: Bethesda.net_Launcher.exe - Raccourci.lnk . (.ZeniMax Online Studios - ZeniMax Online Studios Launcher.) C:\Program Files (x86)\Zenimax Online\Launcher\Bethesda.net_Launcher.exe {5703A83169AFEF8304E753B714065E6A} =>.Zenimax Online Studios
O4 - GS\Desktop [RUBEN ESPADA]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - .) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe =>.CyberGhost S.R.L.
O4 - GS\Desktop [RUBEN ESPADA]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\Desktop [RUBEN ESPADA]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\RUBEN ESPADA\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [RUBEN ESPADA]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent\uTorrent.exe {0CF35369A9710762C36F6805FC9E45D6}
O4 - GS\Quicklaunch [RUBEN ESPADA]: Arcai.com's NetCut.lnk . (.Arcai.com - NetCut Arp Spoof Application.) C:\Program Files (x86)\netcut\netcut.exe =>.arcai.com
O4 - GS\Quicklaunch [RUBEN ESPADA]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - CyberGhost.) C:\Program Files\CyberGhost 6\CyberGhost.exe {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L.
O4 - GS\Quicklaunch [RUBEN ESPADA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O4 - GS\Quicklaunch [RUBEN ESPADA]: XSplit Broadcaster.lnk . (...) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.Core.exe
O4 - GS\sendTo [RUBEN ESPADA]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - GS\TaskBar [RUBEN ESPADA]: csgo.lnk . (...) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O4 - GS\TaskBar [RUBEN ESPADA]: Dragon Gaming Center.lnk . (.Macrovision Corporation - InstallShield.) C:\Windows\Installer\{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}\Dragon_Gaming_Cent_965B16C707784C45B7D183A59E6FBBCB_1.exe =>.Macrovision Corporation
O4 - GS\TaskBar [RUBEN ESPADA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O4 - GS\TaskBar [RUBEN ESPADA]: Hearthstone.lnk . (...) C:\Program Files (x86)\Hearthstone\Hearthstone.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\TaskBar [RUBEN ESPADA]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\TaskBar [RUBEN ESPADA]: Kaspersky Internet Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O4 - GS\TaskBar [RUBEN ESPADA]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe {330000008AF4BE0B29747A0FA000000000008A} =>.Skype Technologies S.A.
O4 - GS\TaskBar [RUBEN ESPADA]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [RUBEN ESPADA]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\RUBEN ESPADA\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH®
O4 - GS\Startup [RUBEN ESPADA]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync\MEGAsync.exe {1121623C69317CDC4806228F0983E88BB38B} =>.MEGA Limited
O4 - GS\Startup [RUBEN ESPADA]: Rainmeter.lnk . (.Rainmeter - Rainmeter desktop customization tool.) C:\Program Files\Rainmeter\Rainmeter.exe {7ACCB711A8AB666435E5A2BD31CE0EF0}
O4 - GS\CommonDesktop [Public]: Battle.net.lnk . (.Blizzard Entertainment - Battle.net Launcher.) C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: BookWright.lnk . (...) C:\Program Files (x86)\BookWright\BookWright.exe {0122698A76CD257048905201CC74A8EA}
O4 - GS\CommonDesktop [Public]: cw@ZNW Client.lnk . (.Zircon Network - Client for the cw@ZNW Servers.) C:\Program Files (x86)\Zircon Network\cw@ZNW\cw@ZNW_Client.exe
O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) C:\Program Files\DAEMON Tools Lite\DTLauncher.exe =>.Disc Soft Ltd®
O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - NVIDIA GeForce Experience.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe =>.NVIDIA Corporation®
O4 - GS\CommonDesktop [Public]: LibreOffice 5.2.lnk . (.The Document Foundation - LibreOffice.) C:\Program Files (x86)\LibreOffice 5\program\soffice.exe =>.The Document Foundation®
O4 - GS\Startup [Public]: Killer Network Manager.lnk . (.Rivet Networks - .) C:\Program Files (x86)\Killer Networking\Network Manager\NetworkManager.exe =>.Rivet Networks
O4 - GS\Programs [Public]: CyberGhost 6.lnk . (.CyberGhost S.R.L. - .) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe =>.CyberGhost S.R.L.
O4 - GS\Programs [Public]: join.me.lnk . (.LogMeIn, Inc. - join.me.) C:\Users\RUBEN ESPADA\AppData\Local\join.me\join.me.exe =>.LogMeIn, Inc.®
O4 - GS\Programs [Public]: Start Tor Browser.lnk . (...) C:\Users\RUBEN ESPADA\Desktop\Tor Browser\Browser\firefox.exe
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1029166B-4FD1-4BA9-B43E-6DBD0B4E41E1}: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9221B648-3BF6-48C7-93E5-406C55919581}: DhcpNameServer = 185.156.172.178 185.93.180.131 83.143.245.42
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CA40628C-1B95-4AF1-AC2D-CB6AA6AACDF9}: DhcpNameServer = 192.168.0.254

---\\ Protocole additionnel (25) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

---\\ Liste des clés Explorer StartupApproved (28) - 0s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Bitdefender Agent Wallet
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Clownfish
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:cacaoweb =>.Superfluous.CacaoWeb
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CyberGhost
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:join.me.launcher
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP Photosmart 5520 series (NET)
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ManyCam
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:TotalVPN.lnk
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:MEGAsync.lnk
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Rainmeter.lnk
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Envoyer à OneNote.lnk
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Bitdefender Agent Wallet
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Clownfish
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:cacaoweb =>.Superfluous.CacaoWeb
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CyberGhost
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:join.me.launcher
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP Photosmart 5520 series (NET)
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ManyCam
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:TotalVPN.lnk
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:MEGAsync.lnk
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Rainmeter.lnk
[HKEY_USERS\S-1-5-21-2705040802-1120441282-1941736732-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Envoyer à OneNote.lnk

---\\ Logiciels installés (160) - 12s
O42 - Logiciel: . . . - (.Intel.) [HKLM][64Bits] -- {06DA421D-EE23-487D-878F-F0AF97EF69AD} =>.Intel
O42 - Logiciel: . . . - (.Intel.) [HKLM][64Bits] -- {DB52A2D0-CAA1-4ED1-B122-29E7EDDE187F} =>.Intel
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent
O42 - Logiciel: Action! - (.Mirillis.) [HKLM][64Bits] -- Mirillis Action! =>.Mirillis
O42 - Logiciel: Adobe Flash Player 24 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 24 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Algobox - (...) [HKLM][64Bits] -- Algobox
O42 - Logiciel: Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation
O42 - Logiciel: AudioFXSetup - (.Nahimic.) [HKLM][64Bits] -- {AFD4102D-0D35-4975-A817-1903BF06AC97} =>.Nahimic
O42 - Logiciel: Battery Calibration - (.Micro-Star International Co., Ltd..) [HKLM][64Bits] -- {619FA785-489B-4D22-911F-82D6EDF5BDB0} =>.Macrovision Corporation®
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: BookWright version 1.2.155 - (.Blurb, Inc..) [HKLM][64Bits] -- {C17978EB-5A2C-40E3-B351-F03A27245BF9}_is1
O42 - Logiciel: Boot Configure - (.Micro-Star International Co., Ltd..) [HKLM][64Bits] -- {5563D674-6B02-43F4-B9D0-C2A944E84F3C} =>.MICRO-STAR INTERNATIONAL CO., LTD.
O42 - Logiciel: Borderlands 2 - (.Gearbox Software.) [HKLM][64Bits] -- Steam App 49520 =>.Valve®
O42 - Logiciel: Brawlhalla - (.Blue Mammoth Games.) [HKLM][64Bits] -- Steam App 291550 =>.Valve®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Cheat Engine 6.5 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engine 6.5_is1 =>.Cheat Engine®
O42 - Logiciel: CheckDevicesConfigurator - (.Nahimic.) [HKLM][64Bits] -- {7744FCC8-29DC-43C9-A861-5FA81B4F9376} =>.Nahimic
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} =>.Cisco Systems, Inc.
O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 =>.Valve®
O42 - Logiciel: Counter-Strike: Source - (.Valve.) [HKLM][64Bits] -- Steam App 240 =>.Valve®
O42 - Logiciel: Cube World version 0.0.1 - (.Picroma.) [HKLM][64Bits] -- {D692A0E0-1BBB-4E9C-826E-4254EE330830}_is1 =>.Picroma
O42 - Logiciel: CyberGhost 6 - (.CyberGhost S.R.L..) [HKLM][64Bits] -- CyberGhost 6_is1 {008A83DCBD56B8AF121E8A95157494BCFB} =>.CyberGhost S.R.L.
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd®
O42 - Logiciel: Dofus - (.Ankama.) [HKCU][64Bits] -- 2744A393-554C-4E35-A24F-DEF0392B4484-2 =>.Ankama Games®
O42 - Logiciel: Dofus Beta - (.Ankama.) [HKCU][64Bits] -- 1D98FB2F-73F1-419A-A159-521B0F645CFB-2 =>.Ankama Games®
O42 - Logiciel: Double Action: Boogaloo - (.Double Action Factory.) [HKLM][64Bits] -- Steam App 317360 =>.Valve®
O42 - Logiciel: Dragon Gaming Center - (.Micro-Star International Co., Ltd..) [HKLM][64Bits] -- {965B16C7-0778-4C45-B7D1-83A59E6FBBCB} =>.MICRO-STAR INTERNATIONAL CO., LTD.
O42 - Logiciel: Dragon Gaming Center - (.Micro-Star International Co., Ltd..) [HKLM][64Bits] -- InstallShield_{965B16C7-0778-4C45-B7D1-83A59E6FBBCB} =>.MICRO-STAR INTERNATIONAL CO., LTD.
O42 - Logiciel: ELAN Touchpad 11.13.11.4_X64_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronic Corp.
O42 - Logiciel: FileZilla Client 3.15.0.2 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} =>.Microsoft Corporation
O42 - Logiciel: GIMP 2.8.18 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 {031CE845CCA97AAE1EAD8B6464F9C7B6} =>.The GIMP Team
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {C9EF1AAF-B542-41C8-A537-1142DA5D4AEC} =>.Hewlett-Packard
O42 - Logiciel: HP Photosmart 5520 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {CB08AF0F-D14B-4570-83CD-2567CE63CC5F} =>.Hewlett Packard
O42 - Logiciel: HP Support Solutions Framework - (.HP Inc..) [HKLM][64Bits] -- {446AA6E0-104D-40FB-A18A-A3431AED2F14}
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM][64Bits] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard
O42 - Logiciel: Intel(R) Manageability Engine Firmware Recovery Agent - (.Intel Corporation.) [HKLM][64Bits] -- {0EC7F9CC-4741-45AE-9F55-6E9343F726F5} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {ead3e417-3b5d-4d7f-a7b8-40e693290fdc} =>.Intel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel(R) Wireless Bluetooth(R) - (.Intel Corporation.) [HKLM][64Bits] -- {FE3029AC-28A2-417C-9411-9A1969BFE72D} =>.Intel Corporation
O42 - Logiciel: Intel(R) Wireless Bluetooth(R)(patch version 17.1.1434.2) - (.Intel Corporation.) [HKLM][64Bits] -- {302600C1-6BDF-4FD1-1407-148929CC1385} =>.Intel Corporation
O42 - Logiciel: Intel® Driver Update Utility - (.Intel.) [HKLM][64Bits] -- {fe2eebd3-ee15-4538-bb19-b627e3f2a911} =>.Intel(R) Driver Update Utility®
O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {2FB369C6-9264-472B-836A-DB2F6B2C9BE4} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} =>.Intel Corporation
O42 - Logiciel: Java 8 Update 101 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180101F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: join.me - (.LogMeIn, Inc..) [HKCU][64Bits] -- JoinMe =>.LogMeIn, Inc.®
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {F575F386-57EF-4943-B003-A13F13B05EEB} =>.Kaspersky Lab
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{F575F386-57EF-4943-B003-A13F13B05EEB} =>.Kaspersky Lab
O42 - Logiciel: KB9X Radio Switch Driver - (.ENE TECHNOLOGY INC..) [HKLM][64Bits] -- 5AADE1068CF70DD983F763B20CF2CAAB72883915 =>.ENE TECHNOLOGY INC.
O42 - Logiciel: Killer Bandwidth Control Filter Driver - (.Rivet Networks.) [HKLM][64Bits] -- {28ACB51A-477E-4601-8B77-476D56E75F75} =>.Rivet Networks
O42 - Logiciel: Killer E220x Drivers - (.Rivet Networks.) [HKLM][64Bits] -- {741CCB6B-EC89-4CB7-99C2-7AAA6CA350B6} =>.Rivet Networks
O42 - Logiciel: Killer Network Manager - (.Rivet Networks.) [HKLM][64Bits] -- {0F001620-30C9-49B4-8D69-B110218686EC} =>.Rivet Networks
O42 - Logiciel: Killer Performance Suite - (.Qualcomm Atheros.) [HKLM][64Bits] -- {E70DB50B-10B4-46BC-9DE2-AB8B49E061EE} =>.Rivet Networks LLC®
O42 - Logiciel: KLM - (.Application.) [HKLM][64Bits] -- {4DEA5B85-6C56-45F3-AE00-FED756B0D3B4} =>.Application
O42 - Logiciel: KLM - (.Application.) [HKLM][64Bits] -- InstallShield_{4DEA5B85-6C56-45F3-AE00-FED756B0D3B4} =>.Application
O42 - Logiciel: Kohana Launcher - (...) [HKCU][64Bits] -- Kohana Launcher
O42 - Logiciel: LauncherSetup - (.Nahimic.) [HKLM][64Bits] -- {46B7FC00-4225-4A55-97A7-CF6CF2778B92} =>.Nahimic
O42 - Logiciel: LibreOffice 5.2.5.1 - (.The Document Foundation.) [HKLM][64Bits] -- {79CD8EA1-DEB1-4582-9E41-8634223BDCD4} =>.The Document Foundation
O42 - Logiciel: Logiciel de base du périphérique HP Photosmart 5520 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {97104D7C-FAC1-40A2-A34D-7950424FAEDE} =>.Hewlett-Packard Co.
O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {cc892976-0919-4ba9-ab52-ae15d2127a12} =>.Intel Corporation-Wireless Connectivity Solutions®
O42 - Logiciel: Logitech - Assistant pour jeux vidéo 8.84 - (.Logitech Inc..) [HKLM][64Bits] -- Logitech Gaming Software =>.Logitech Inc®
O42 - Logiciel: Logitech Gaming Software - (.Logitech Inc..) [HKLM][64Bits] -- {690285C2-2481-44FB-8402-162EA970A6DD} =>.Logitech Inc.
O42 - Logiciel: Malwarebytes version 3.0.6.1469 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync {1121623C69317CDC4806228F0983E88BB38B} =>.MEGA Limited
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe {330000013FBFE82DC1EE0D270500010000013F} =>.Microsoft Corporation
O42 - Logiciel: Minecraft - (.Mojang.) [HKLM][64Bits] -- {1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872} =>.Mojang
O42 - Logiciel: Minion - (.Good Game Mods LLC.) [HKCU][64Bits] -- {Minion}}_is1
O42 - Logiciel: Mises à jour NVIDIA 23.23.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Mozilla Firefox 48.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 48.0.2 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSI Remind Manager - (.Micro-Star International Co., Ltd..) [HKLM][64Bits] -- {3E23F267-3E35-40F9-B6BF-BC034D214717} =>.MICRO-STAR INTERNATIONAL CO., LTD.
O42 - Logiciel: MSI Remind Manager - (.Micro-Star International Co., Ltd..) [HKLM][64Bits] -- InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717} =>.MICRO-STAR INTERNATIONAL CO., LTD.
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft
O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft
O42 - Logiciel: Nahimic for MSI - (.Nahimic.) [HKLM][64Bits] -- {1fd8e4b4-0aa8-4ade-afb4-b4ea2cbd6179} {410503D6972DAFF6500EF92CC2E86447} =>.Nahimic
O42 - Logiciel: NahimicSettingsConfigurator - (.Nahimic.) [HKLM][64Bits] -- {79875E1A-1B2F-40C0-8F96-6396D3E97357} =>.Nahimic
O42 - Logiciel: NetCut 2.1.4 - (.arcai.com.) [HKLM][64Bits] -- NetCut_is1 =>.arcai.com
O42 - Logiciel: Nexus Mod Manager - (.Black Tree Gaming.) [HKLM][64Bits] -- 6af12c54-643b-4752-87d0-8335503010de_is1 =>.Black Tree Gaming
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience 3.3.0.100 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 23.23.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 378.66 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 3.3.0.100 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 3.51.2 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Wireless Controller Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GfExperienceService =>.NVIDIA Corporation
O42 - Logiciel: NvNodejs - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation
O42 - Logiciel: NvTelemetry - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation
O42 - Logiciel: NvvHci - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci =>.NVIDIA Corporation
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-007E-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Panneau de configuration NVIDIA 378.66 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PhotoFiltre 7 - (...) [HKCU][64Bits] -- PhotoFiltre 7
O42 - Logiciel: Planetary Annihilation: TITANS - (.Uber Entertainment.) [HKLM][64Bits] -- Steam App 386070 =>.Valve®
O42 - Logiciel: ProductDaemonSetup - (.Nahimic.) [HKLM][64Bits] -- {5FD4A186-3CC3-45FF-B5D3-319A0176C5AA} =>.Nahimic
O42 - Logiciel: Python 3.4.0 - (.Python Software Foundation.) [HKLM][64Bits] -- {a37f2d73-72d1-364d-ba5d-cea430bcc040} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 (32-bit) - (.Python Software Foundation.) [HKCU][64Bits] -- {8ba65a8c-cb48-4716-bc24-47c148808015} {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Core Interpreter (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {FC638B75-E969-4496-A546-9D78EA7D8F35} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Development Libraries (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {F2A430F2-A7AC-4B46-808A-FC6E8419ABDE} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Documentation (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {A66771E3-430A-40A7-B00C-94A239396BEE} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Executables (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {3C182441-3C75-4113-A28D-D3AEAD85B320} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 pip Bootstrap (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {1D427483-31FE-4ED4-AD39-AB78BBF7D22D} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Standard Library (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {4CB36E4F-EC00-479B-AA25-0B9EC5385B0C} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Tcl/Tk Support (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {C7D63030-7738-499A-A0D2-8549174D2B70} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Test Suite (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {6EAD5F85-97EC-4AFB-84D2-D52AC41D3C66} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.0 Utility Scripts (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {7C3DAC9E-E229-415C-A600-5974B5D9DE7F} =>.Python Software Foundation
O42 - Logiciel: Python Launcher - (.Python Software Foundation.) [HKLM][64Bits] -- {A674B2CB-13CA-437B-A215-9DD257959A49} =>.Python Software Foundation
O42 - Logiciel: Rainmeter - (...) [HKLM][64Bits] -- Rainmeter
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9DAABC60-A5EF-41FF-B2B9-17329590CD5} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club {5057286E4033FCB0000000005565F5AC} =>.Rockstar Games
O42 - Logiciel: Samsung USB Driver for Mobile Phones - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.®
O42 - Logiciel: SCM - (.Application.) [HKLM][64Bits] -- {EC3EEFE5-DFBE-4535-8A2A-CAEC82A9BB83} =>.Application
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Skype™ 7.32 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: SUPER CHARGER - (.MSI.) [HKLM][64Bits] -- {7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1 =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O42 - Logiciel: TAP-Windows 9.21.2 - (...) [HKLM][64Bits] -- TAP-Windows
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKCU][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH
O42 - Logiciel: The Elder Scrolls Online - (.Zenimax Online Studios.) [HKLM][64Bits] -- The Elder Scrolls Online =>.Zenimax Online Studios
O42 - Logiciel: Total Annihilation v3.9.02 Beta Patch - (.Total Annihilation Universe.) [HKLM][64Bits] -- {0BDA7A1D-1A75-4AB8-B362-28DF706518D5}
O42 - Logiciel: TreeSize Free V3.4.5 - (.JAM Software.) [HKLM][64Bits] -- TreeSize Free_is1 {112199E91680BD5106AF94858F45D72B58F4} =>.JAM Software
O42 - Logiciel: UIInstallUpgrade - (.Nahimic.) [HKLM][64Bits] -- {0D036C5F-A96F-434E-B8C1-6229515DEF70} =>.Nahimic
O42 - Logiciel: Unity Web Player - (.Unity Technologies ApS.) [HKCU][64Bits] -- UnityWebPlayer =>.Unity Technologies ApS
O42 - Logiciel: Unturned - (.Smartly Dressed Games.) [HKLM][64Bits] -- Steam App 304930 =>.Valve®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Vulkan Run Time Libraries 1.0.39.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.39.1 {03B471CD4D7FFEC29A3B20B2CB0F5F54}
O42 - Logiciel: Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/0 - (.GoPro.) [HKLM][64Bits] -- 0B624A43DD66DBF5CF3EDFA9741A364E688062A4 =>.Microsoft Windows®
O42 - Logiciel: Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 - (.Texas Instruments Inc..) [HKLM][64Bits] -- EC3E466026556D3EB760B01C4772277614354E11 =>.Microsoft Windows®
O42 - Logiciel: Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 - (.Texas Instruments Inc..) [HKLM][64Bits] -- 7511B29C86C398B4D11A0B0E4176CAD68D1B7057 =>.Microsoft Windows®
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies
O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Wrye Bash - (.Wrye & Wrye Bash Development Team.) [HKLM][64Bits] -- Wrye Bash

---\\ HKCU & HKLM Software Keys (159) - 12s
HKLM\SOFTWARE\Wow6432Node\Adware Removal Tool by TSA
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Apple Inc.
HKLM\SOFTWARE\Wow6432Node\Arcai
HKLM\SOFTWARE\Wow6432Node\bethesda softworks
HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment
HKLM\SOFTWARE\Wow6432Node\Caphyon
HKLM\SOFTWARE\Wow6432Node\CineForm
HKLM\SOFTWARE\Wow6432Node\CodeGear
HKLM\SOFTWARE\Wow6432Node\CyberGhost
HKLM\SOFTWARE\Wow6432Node\Dragon Gaming Center
HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat
HKLM\SOFTWARE\Wow6432Node\FileZilla 3
HKLM\SOFTWARE\Wow6432Node\FileZilla Client
HKLM\SOFTWARE\Wow6432Node\Fraps
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\GoPro
HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\KasperskyLab
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\LibreOffice
HKLM\SOFTWARE\Wow6432Node\Licenses
HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard
HKLM\SOFTWARE\Wow6432Node\LOOT
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Micro-Star International Co., Ltd.
HKLM\SOFTWARE\Wow6432Node\Mojang
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\MSI
HKLM\SOFTWARE\Wow6432Node\MSI Remind Manager
HKLM\SOFTWARE\Wow6432Node\Notepad++
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Opera Software
HKLM\SOFTWARE\Wow6432Node\Overwolf
HKLM\SOFTWARE\Wow6432Node\Piriform
HKLM\SOFTWARE\Wow6432Node\Python
HKLM\SOFTWARE\Wow6432Node\Rainmeter
HKLM\SOFTWARE\Wow6432Node\Razer
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Rockstar Games
HKLM\SOFTWARE\Wow6432Node\RtWLan
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\SRS Labs
HKLM\SOFTWARE\Wow6432Node\TAUniverse
HKLM\SOFTWARE\Wow6432Node\Texas Instruments
HKLM\SOFTWARE\Wow6432Node\The Document Foundation
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\VideoLAN
HKLM\SOFTWARE\Wow6432Node\Visicom Media
HKLM\SOFTWARE\Wow6432Node\WinPcap
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Wow6432Node
HKLM\SOFTWARE\Wow6432Node\Wrye Bash
HKLM\SOFTWARE\Wow6432Node\Zenimax_Online
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\AI_RecycleBin
HKCU\SOFTWARE\Ankama
HKCU\SOFTWARE\Anvsoft
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc.
HKCU\SOFTWARE\Application
HKCU\SOFTWARE\Arcai.com
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\Blizzard Entertainment
HKCU\SOFTWARE\BugSplat
HKCU\SOFTWARE\Caphyon
HKCU\SOFTWARE\Cavedog Entertainment
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\Chromium
HKCU\SOFTWARE\CineForm
HKCU\SOFTWARE\csastats
HKCU\SOFTWARE\CyberGhost
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\Drivers
HKCU\SOFTWARE\Elantech
HKCU\SOFTWARE\Freejam
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\GoPro
HKCU\SOFTWARE\Hewlett-Packard
HKCU\SOFTWARE\HP
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\InstallShield
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JAM Software
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\join.me
HKCU\SOFTWARE\KasperskyLab
HKCU\SOFTWARE\Killer
HKCU\SOFTWARE\Kyle Seeley
HKCU\SOFTWARE\Licenses
HKCU\SOFTWARE\LogiShrd
HKCU\SOFTWARE\Logitech
HKCU\SOFTWARE\LunarianConcepts
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\MainConcept
HKCU\SOFTWARE\MainConcept (Consumer)
HKCU\SOFTWARE\ManyCam
HKCU\SOFTWARE\Mine
HKCU\SOFTWARE\Mirillis
HKCU\SOFTWARE\Mojang
HKCU\SOFTWARE\MountAndBladeWarbandKeys
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Nahimic
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\nwjs
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Opera Software
HKCU\SOFTWARE\PhotoFiltre 7
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\ProtectedStorage
HKCU\SOFTWARE\Python
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\RAZER
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\Samsung
HKCU\SOFTWARE\SCM
HKCU\SOFTWARE\Screentime Media
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\skypeapp-ee118f3411a5
HKCU\SOFTWARE\Smartly Dressed Games
HKCU\SOFTWARE\SplitmediaLabs
HKCU\SOFTWARE\SYNCJM
HKCU\SOFTWARE\Sysinternals
HKCU\SOFTWARE\System32
HKCU\SOFTWARE\TA Patch
HKCU\SOFTWARE\TeamSpeak 3 Client
HKCU\SOFTWARE\Texas Instruments
HKCU\SOFTWARE\The Document Foundation
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\VB and VBA Program Settings
HKCU\SOFTWARE\Visicom Media
HKCU\SOFTWARE\Win
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Unity
HKCU\SOFTWARE\Malwarebytes

---\\ Contenu des dossiers Programmes (340) - 23s
O43 - CFD: 24/11/2016 - [] D -- C:\Program Files (x86)\Adware Removal Tool by TSA
O43 - CFD: 11/10/2016 - [] D -- C:\Program Files (x86)\Algobox
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\Battle.net =>.Blizzard Entertainment, Inc.®
O43 - CFD: 21/02/2017 - [] D -- C:\Program Files (x86)\BookWright {0122698A76CD257048905201CC74A8EA}
O43 - CFD: 17/04/2016 - [] D -- C:\Program Files (x86)\Cheat Engine 6.5 =>.Cheat Engine®
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\Cisco
O43 - CFD: 26/02/2017 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 31/01/2016 - [] D -- C:\Program Files (x86)\Cube World
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\Hearthstone =>.Blizzard Entertainment, Inc.®
O43 - CFD: 17/10/2016 - [] D -- C:\Program Files (x86)\Hewlett-Packard {0098B182EAF5DF8BDE0F8872EDE210C75E}
O43 - CFD: 17/10/2016 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard Company®
O43 - CFD: 20/02/2017 - [0] D -- C:\Program Files (x86)\iMobie
O43 - CFD: 18/02/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Realtek Semiconductor Corp®
O43 - CFD: 05/10/2016 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX®
O43 - CFD: 05/10/2016 - [] D -- C:\Program Files (x86)\Intel Driver Update Utility =>.Intel(R) Driver Update Utility®
O43 - CFD: 09/11/2016 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 01/11/2016 - [] D -- C:\Program Files (x86)\JAM Software {112199E91680BD5106AF94858F45D72B58F4}
O43 - CFD: 30/09/2016 - [] D -- C:\Program Files (x86)\Kaspersky Lab {0F668FB0F0F002B774C7DDBD769EE5B1}
O43 - CFD: 29/01/2017 - [] D -- C:\Program Files (x86)\Kohana
O43 - CFD: 07/02/2017 - [] D -- C:\Program Files (x86)\LibreOffice 5 =>.The Document Foundation®
O43 - CFD: 16/02/2017 - [] D -- C:\Program Files (x86)\ManyCam =>.Superfluous.VisicomManyCam
O43 - CFD: 05/10/2015 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET
O43 - CFD: 05/12/2016 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation®
O43 - CFD: 03/10/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
O43 - CFD: 04/01/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\Minecraft {064DB5FD801DB3C8EA9E89A7C8485692}
O43 - CFD: 30/03/2016 - [] D -- C:\Program Files (x86)\Mirillis {2F959E6F97CDBCFC157DD142D63E0710}
O43 - CFD: 16/09/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation®
O43 - CFD: 16/09/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation®
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\MSI =>.MICRO-STAR INTERNATIONAL CO., LTD.®
O43 - CFD: 29/10/2016 - [] D -- C:\Program Files (x86)\netcut
O43 - CFD: 24/08/2015 - [] D -- C:\Program Files (x86)\Notepad++
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.NVIDIA Corporation®
O43 - CFD: 21/10/2016 - [] D -- C:\Program Files (x86)\PhotoFiltre 7
O43 - CFD: 26/01/2016 - [] D -- C:\Program Files (x86)\QuickTime
O43 - CFD: 16/02/2017 - [] D -- C:\Program Files (x86)\Razer =>.Microsoft Windows Hardware Compatibility Publisher®
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 29/01/2017 - [] D -- C:\Program Files (x86)\Rockstar Games {5057286E4033FCB0000000005565F5AC}
O43 - CFD: 16/02/2017 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics CO., LTD.®
O43 - CFD: 16/08/2015 - [] D -- C:\Program Files (x86)\SCM
O43 - CFD: 26/02/2017 - [] RD -- C:\Program Files (x86)\Skype {330000008AF4BE0B29747A0FA000000000008A}
O43 - CFD: 14/03/2016 - [] D -- C:\Program Files (x86)\SplitmediaLabs
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\Steam =>.Valve®
O43 - CFD: 16/08/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 04/08/2016 - [] D -- C:\Program Files (x86)\VideoLAN
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\VulkanRT {03B471CD4D7FFEC29A3B20B2CB0F5F54}
O43 - CFD: 12/08/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 03/10/2015 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation®
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation®
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 20/08/2016 - [] D -- C:\Program Files (x86)\WinPcap =>.CACE Technologies, Inc.®
O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 16/11/2016 - [] D -- C:\Program Files (x86)\Zenimax Online {5703A83169AFEF8304E753B714065E6A}
O43 - CFD: 15/11/2015 - [] HD -- C:\Program Files (x86)\Zero G Registry
O43 - CFD: 28/02/2017 - [] D -- C:\Program Files (x86)\Zircon Network
O43 - CFD: 11/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 14/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 09/11/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 11/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Algobox
O43 - CFD: 29/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\arcai.com
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
O43 - CFD: 21/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BookWright
O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.5
O43 - CFD: 30/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cube World
O43 - CFD: 27/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 6
O43 - CFD: 04/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 18/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
O43 - CFD: 04/07/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
O43 - CFD: 17/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
O43 - CFD: 22/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 05/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
O43 - CFD: 22/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 30/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Killer Networking
O43 - CFD: 07/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.2
O43 - CFD: 22/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
O43 - CFD: 04/05/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
O43 - CFD: 30/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nahimic for MSI
O43 - CFD: 29/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager
O43 - CFD: 24/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
O43 - CFD: 28/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 04/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016
O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 16/02/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
O43 - CFD: 19/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 28/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 27/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 11/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 19/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Annihilation v3.9.02
O43 - CFD: 01/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TreeSize Free
O43 - CFD: 04/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
O43 - CFD: 20/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap
O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 28/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zircon Network
O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\.mono
O43 - CFD: 16/02/2017 - [] D -- C:\ProgramData\Apple
O43 - CFD: 12/11/2015 - [] D -- C:\ProgramData\Apple Computer
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 01/03/2017 - [] D -- C:\ProgramData\Battle.net
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\BDLogging
O43 - CFD: 23/12/2015 - [] D -- C:\ProgramData\Blizzard Entertainment
O43 - CFD: 16/09/2016 - [] D -- C:\ProgramData\Caphyon
O43 - CFD: 04/03/2017 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Downloaded Installations
O43 - CFD: 03/11/2016 - [] D -- C:\ProgramData\Elder Scrolls Online
O43 - CFD: 18/10/2016 - [] D -- C:\ProgramData\Hewlett-Packard
O43 - CFD: 17/10/2016 - [] D -- C:\ProgramData\HP
O43 - CFD: 16/11/2015 - [] D -- C:\ProgramData\Intel
O43 - CFD: 16/11/2015 - [] D -- C:\ProgramData\Intel.sav
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\IntelDLM
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\Kaspersky Lab
O43 - CFD: 16/08/2015 - [] D -- C:\ProgramData\Killer
O43 - CFD: 27/12/2015 - [] D -- C:\ProgramData\LogiShrd
O43 - CFD: 14/02/2016 - [] D -- C:\ProgramData\LogMeIn
O43 - CFD: 18/01/2016 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 18/01/2017 - [] D -- C:\ProgramData\ManyCam
O43 - CFD: 05/12/2016 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 05/12/2016 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 01/02/2016 - [] D -- C:\ProgramData\Mirillis
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 22/07/2016 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 28/02/2017 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 30/01/2016 - [] D -- C:\ProgramData\Picroma
O43 - CFD: 16/02/2017 - [] D -- C:\ProgramData\Razer
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Realtek
O43 - CFD: 04/03/2017 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Roaming
O43 - CFD: 16/01/2017 - [] D -- C:\ProgramData\Samsung
O43 - CFD: 26/02/2017 - [] D -- C:\ProgramData\Skype
O43 - CFD: 14/03/2016 - [] D -- C:\ProgramData\SplitMediaLabs
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Sun
O43 - CFD: 28/12/2015 - [0] AD -- C:\ProgramData\TEMP
O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 01/09/2016 - [] D -- C:\ProgramData\Total Annihilation Universe
O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\Common Files\BattlEye
O43 - CFD: 28/12/2015 - [] D -- C:\Program Files (x86)\Common Files\CineForm
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 22/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 04/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 26/02/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 11/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 16/11/2015 - [0] D -- C:\Program Files (x86)\Common Files\TI Shared
O43 - CFD: 03/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Windows Live
O43 - CFD: 29/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Wrye Bash
O43 - CFD: 11/03/2017 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\.minecraft
O43 - CFD: 01/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\.mono
O43 - CFD: 22/07/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\.technic
O43 - CFD: 10/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Adobe
O43 - CFD: 18/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\AnkamaCertificates
O43 - CFD: 17/04/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Anvsoft
O43 - CFD: 17/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\app
O43 - CFD: 31/01/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Apple Computer
O43 - CFD: 29/01/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Awesomium
O43 - CFD: 15/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Battle.net
O43 - CFD: 01/01/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\BrawlhallaAir
O43 - CFD: 07/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\client
O43 - CFD: 24/01/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\com.oyundongusu.gameloopercreator
O43 - CFD: 12/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\com.playsaurus.heroclicker
O43 - CFD: 22/11/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\com.zam.minion.Minion
O43 - CFD: 26/12/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Curse
O43 - CFD: 27/01/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Curse Client
O43 - CFD: 04/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 11/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus
O43 - CFD: 25/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus Beta
O43 - CFD: 14/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-2
O43 - CFD: 14/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-3
O43 - CFD: 14/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-4
O43 - CFD: 14/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-5
O43 - CFD: 14/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-6
O43 - CFD: 14/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-7
O43 - CFD: 16/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Dofus-8
O43 - CFD: 25/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusBETA
O43 - CFD: 25/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusBETA-2
O43 - CFD: 25/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusBETA-3
O43 - CFD: 25/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusBETA-4
O43 - CFD: 25/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusBETA-5
O43 - CFD: 11/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam
O43 - CFD: 11/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-2
O43 - CFD: 11/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-3
O43 - CFD: 12/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-4
O43 - CFD: 12/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-5
O43 - CFD: 12/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-6
O43 - CFD: 12/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-7
O43 - CFD: 12/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\DofusSteam-8
O43 - CFD: 10/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\dvdcss
O43 - CFD: 04/05/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\FileZilla
O43 - CFD: 16/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\GameRanger
O43 - CFD: 03/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\gg.minion.Minion
O43 - CFD: 23/11/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Hewlett-Packard
O43 - CFD: 23/11/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\hpqLog
O43 - CFD: 24/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\HpUpdate
O43 - CFD: 11/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Identities
O43 - CFD: 22/01/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\iMobie
O43 - CFD: 11/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\InstallShield
O43 - CFD: 11/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Intel
O43 - CFD: 01/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\JAM Software
O43 - CFD: 11/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\java
O43 - CFD: 07/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Kohana
O43 - CFD: 07/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\LibreOffice
O43 - CFD: 27/12/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Logishrd
O43 - CFD: 27/12/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Logitech
O43 - CFD: 11/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Macromedia
O43 - CFD: 18/01/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\ManyCam
O43 - CFD: 28/02/2017 - [] SD -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft
O43 - CFD: 30/03/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Mirillis
O43 - CFD: 16/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Mozilla
O43 - CFD: 22/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Notepad++
O43 - CFD: 09/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\NVIDIA
O43 - CFD: 17/02/2016 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Opera Software
O43 - CFD: 21/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\PhotoFiltre 7
O43 - CFD: 11/08/2015 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\QuickScan
O43 - CFD: 30/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Rainmeter
O43 - CFD: 19/04/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Reg
O43 - CFD: 10/06/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\RegBETA
O43 - CFD: 16/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Samsung
O43 - CFD: 11/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Skype
O43 - CFD: 14/03/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\SplitmediaLabs
O43 - CFD: 02/09/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Sun
O43 - CFD: 16/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Total Annihilation Universe
O43 - CFD: 11/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\TS3Client
O43 - CFD: 04/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent
O43 - CFD: 10/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\vlc
O43 - CFD: 21/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\WinRAR
O43 - CFD: 11/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\xm1
O43 - CFD: 11/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\ZHP
O43 - CFD: 16/09/2016 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Local\Adobe
O43 - CFD: 01/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Aircraftwarx
O43 - CFD: 18/08/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Ankama
O43 - CFD: 12/11/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Apple
O43 - CFD: 28/11/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Apple Computer
O43 - CFD: 10/08/2015 - [0] SHD -- C:\Users\RUBEN ESPADA\AppData\Local\Application Data
O43 - CFD: 18/10/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Apps
O43 - CFD: 11/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Battle.net
O43 - CFD: 29/07/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Black_Tree_Gaming
O43 - CFD: 16/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Blizzard
O43 - CFD: 16/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Blizzard Entertainment
O43 - CFD: 09/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Blurb
O43 - CFD: 27/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\CEF
O43 - CFD: 15/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Chromium
O43 - CFD: 10/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\CrashDumps
O43 - CFD: 01/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\CyberGhost
O43 - CFD: 18/10/2015 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Local\Deployment
O43 - CFD: 04/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Diagnostics
O43 - CFD: 04/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Disc_Soft_Ltd
O43 - CFD: 19/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Eclipse
O43 - CFD: 03/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\ElevatedDiagnostics
O43 - CFD: 31/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\fontconfig
O43 - CFD: 11/03/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\ftblauncher
O43 - CFD: 31/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\gegl-0.2
O43 - CFD: 29/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Google
O43 - CFD: 29/11/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\GoPro
O43 - CFD: 06/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\gtk-2.0
O43 - CFD: 19/12/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\GWX
O43 - CFD: 17/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Hewlett-Packard
O43 - CFD: 10/08/2015 - [0] SHD -- C:\Users\RUBEN ESPADA\AppData\Local\History
O43 - CFD: 17/10/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\HP
O43 - CFD: 22/01/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\iMobie_Inc
O43 - CFD: 11/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Intel
O43 - CFD: 12/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Intel_Corporation
O43 - CFD: 15/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\join.me
O43 - CFD: 15/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\join.me.launcher
O43 - CFD: 27/12/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Logitech
O43 - CFD: 14/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\LogMeIn
O43 - CFD: 31/07/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\LOOT
O43 - CFD: 23/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Macromedia
O43 - CFD: 18/07/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Mega Limited
O43 - CFD: 19/08/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync
O43 - CFD: 22/06/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Micro-Star_International_
O43 - CFD: 09/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft
O43 - CFD: 03/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Minion
O43 - CFD: 02/04/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Mirillis
O43 - CFD: 18/01/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Mozilla
O43 - CFD: 16/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\MSI
O43 - CFD: 02/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\NBTExplorer
O43 - CFD: 29/08/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\NVIDIA
O43 - CFD: 28/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\NVIDIA Corporation
O43 - CFD: 29/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\openvr
O43 - CFD: 17/02/2016 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Local\Opera Software
O43 - CFD: 28/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Package Cache
O43 - CFD: 24/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Packages
O43 - CFD: 17/05/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\PAYDAY 2
O43 - CFD: 27/09/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\pip
O43 - CFD: 28/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Programs
O43 - CFD: 16/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Razer
O43 - CFD: 18/02/2017 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Local\Rockstar Games
O43 - CFD: 22/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\RzStats
O43 - CFD: 19/12/2015 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Local\Skype
O43 - CFD: 16/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Skyrim
O43 - CFD: 14/03/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\SplitMediaLabs
O43 - CFD: 01/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Steam
O43 - CFD: 27/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\TeamSpeak 3 Client
O43 - CFD: 11/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Temp
O43 - CFD: 10/08/2015 - [0] SHD -- C:\Users\RUBEN ESPADA\AppData\Local\Temporary Internet Files
O43 - CFD: 15/06/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Uber Entertainment
O43 - CFD: 02/01/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Unity
O43 - CFD: 01/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\VirtualStore
O43 - CFD: 11/02/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\Windows Live
O43 - CFD: 04/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Local\{9563A33F-B1CB-CF87-DC53-EA6FF83B16F7}
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 11/08/2015 - [] RD -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 11/10/2016 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Algobox
O43 - CFD: 07/09/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kohana Launcher
O43 - CFD: 22/08/2013 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 18/07/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
O43 - CFD: 21/10/2016 - [0] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7
O43 - CFD: 28/02/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6
O43 - CFD: 27/01/2017 - [] RD -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 11/03/2017 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 21/09/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 03/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Elder Scrolls Online
O43 - CFD: 21/08/2015 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 29/07/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wrye Bash
O43 - CFD: 03/11/2016 - [] D -- C:\Users\RUBEN ESPADA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ZAM Network LLC
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
O43 - CFD: 11/03/2017 - [] D -- C:\ProgramData\Malwarebytes

---\\ ShellIconOverlayIdentifiers (SIOI) (11) - 1s
O106 - SIOI: ErrorOverlayHandler2 Class [ OneDrive1] - {7AFDFDDB-F914-11E4-8377-6C3BE50D980C}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\FileSyncShell.dll {330000013FBFE82DC1EE0D270500010000013F} =>.Microsoft Corporation
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\FileSyncShell.dll {330000013FBFE82DC1EE0D270500010000013F} =>.Microsoft Corporation
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\FileSyncShell.dll {330000013FBFE82DC1EE0D270500010000013F} =>.Microsoft Corporation
O106 - SIOI: UpToDateOverlayHandler2 Class [ OneDrive4] - {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\FileSyncShell.dll {330000013FBFE82DC1EE0D270500010000013F} =>.Microsoft Corporation
O106 - SIOI: SyncingOverlayHandler2 Class [ OneDrive5] - {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\OneDrive\17.3.6798.0207\FileSyncShell.dll {330000013FBFE82DC1EE0D270500010000013F} =>.Microsoft Corporation
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL {330000014096A9EE7056FECC07000100000140} =>.Microsoft Corporation
O106 - SIOI: ###MegaShellExtPending [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSynced [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync\ShellExtX32.dll
O106 - SIOI: ###MegaShellExtSyncing [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Users\RUBEN ESPADA\AppData\Local\MEGAsync\ShellExtX32.dll

---\\ Liste des pilotes du système (101) - 6s
O58 - SDL:2015/08/16 13:54:14 AH . (...) -- C:\Windows\System32\drivers\._RtsPer.sys [4096]
O58 - SDL:2015/08/16 13:39:44 AH . (...) -- C:\Windows\System32\drivers\._rtwlane.sys [4096]
O58 - SDL:2016/02/01 16:20:38 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\0FE37F3A.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows®
O58 - SDL:2016/01/29 16:20:20 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\52AC1499.sys [192216] =>.Malwarebytes Corporation®
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows®
O58 - SDL:2013/08/13 00:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2014/05/13 10:17:06 A . (.Motorola Solutions, Inc. - Bluetooth Auxiliary Driver.) -- C:\Windows\System32\drivers\btmaux.sys [141624] =>.Motorola Solutions Inc.®
O58 - SDL:2014/06/17 09:51:04 A . (.Motorola Solutions, Inc. - Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\btmhsf.sys [1424184] =>.Motorola Solutions Inc.®
O58 - SDL:2015/02/09 11:20:34 A . (.Rivet Networks, LLC. - Killer Bandwidth Control Filter Driver.) -- C:\Windows\System32\drivers\bwcW8x64.sys [100912] =>.Rivet Networks LLC®
O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2015/07/05 23:10:20 A . (.Kaspersky Lab ZAO - Cryptographic Module Driver x64 (Weak).) -- C:\Windows\System32\drivers\cm_km.sys [389816] =>.Kaspersky Lab®
O58 - SDL:2017/03/04 12:01:57 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2017/03/04 12:16:53 A . (.Disc Soft Ltd - SCSI miniport.) -- C:\Windows\System32\drivers\dtlitescsidrv.sys [316072] =>.Disc Soft Ltd®
O58 - SDL:2017/03/04 12:02:05 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2014/03/27 08:27:58 A . (.Qualcomm Atheros, Inc. - Killer e2200 PCI-E Gigabit Ethernet Control.) -- C:\Windows\System32\drivers\e22w8x64.sys [130224] =>.Qualcomm Atheros, Inc.®
O58 - SDL:2014/08/28 08:56:30 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\Windows\System32\drivers\ETD.sys [428808] =>.ELAN Microelectronics Corporation®
O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows®
O58 - SDL:2016/04/05 15:14:14 AH . (.LogMeIn Inc. - LogMeIn Hamachi Virtual Miniport Driver.) -- C:\Windows\System32\drivers\Hamdrv.sys [45680] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2014/09/15 15:30:34 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) USB Driver.) -- C:\Windows\System32\drivers\ibtusb.sys [222664] =>.Intel Corporation-Mobile Wireless Group®
O58 - SDL:2016/05/12 21:06:22 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4923344] {330000B898AA86B5A39E5A1BBD00020000B898} =>.Intel Corporation
O58 - SDL:2015/07/10 16:47:38 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [460048] =>.Intel Corporation - Client Components Group®
O58 - SDL:2015/11/17 18:39:19 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [51704] {330000B7E741A34024FC3AB6E700020000B7E7} =>.Intel Corporation
O58 - SDL:2015/11/17 18:39:19 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [39920] {330000B7E741A34024FC3AB6E700020000B7E7} =>.Intel Corporation
O58 - SDL:2015/09/11 19:30:40 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\Windows\System32\drivers\kl1.sys [478392] =>.Kaspersky Lab®
O58 - SDL:2015/06/06 07:48:24 A . (.Kaspersky Lab ZAO - Backup Disk Filter [fre_wnet_x64].) -- C:\Windows\System32\drivers\klbackupdisk.sys [53432] =>.Kaspersky Lab®
O58 - SDL:2015/12/01 21:42:00 A . (.AO Kaspersky Lab - Backup File Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klbackupflt.sys [79752] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2015/12/01 23:24:14 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x64].) -- C:\Windows\System32\drivers\kldisk.sys [78200] =>.Kaspersky Lab®
O58 - SDL:2015/06/24 00:28:32 A . (.Kaspersky Lab - Klelam Mini-Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klelam.sys [30328] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2015/12/11 16:31:52 A . (.AO Kaspersky Lab - Filter Core [fre_win8_x64].) -- C:\Windows\System32\drivers\klflt.sys [182664] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2016/12/02 11:01:00 A . (.AO Kaspersky Lab - klhk [fre_win8_x64].) -- C:\Windows\System32\drivers\klhk.sys [237912] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2016/09/30 19:44:43 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win8_x64].) -- C:\Windows\System32\drivers\klif.sys [992600] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2016/04/29 00:52:56 A . (.AO Kaspersky Lab - Packet Network Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klim6.sys [51288] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2015/11/11 11:04:20 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klkbdflt.sys [52608] =>.Kaspersky Lab®
O58 - SDL:2015/06/07 00:52:56 A . (.Kaspersky Lab ZAO - Mouse Device Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [41656] =>.Kaspersky Lab®
O58 - SDL:2015/12/07 15:08:20 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [45960] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2016/09/30 19:44:43 A . (.AO Kaspersky Lab - WFP Network Filter [fre_win8_x64].) -- C:\Windows\System32\drivers\klwfp.sys [87984] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2016/09/30 19:44:43 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [110424] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2015/12/02 23:38:12 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x64].) -- C:\Windows\System32\drivers\kneps.sys [194440] {0F668FB0F0F002B774C7DDBD769EE5B1} =>.AO Kaspersky Lab
O58 - SDL:2016/04/15 18:32:36 A . (.Logitech Inc. - Surround Filter Driver.) -- C:\Windows\System32\drivers\ladfGSS.sys [45208] =>.Logitech Inc®
O58 - SDL:2016/04/19 02:09:16 A . (.Logitech Inc. - Logitech WingMan Virtual Bus Enumerator Dri.) -- C:\Windows\System32\drivers\LGBusEnum.sys [53928] =>.Logitech Inc®
O58 - SDL:2016/04/19 02:09:16 A . (.Logitech Inc. - Logitech Gaming Software Joystick Translati.) -- C:\Windows\System32\drivers\LGJoyXlCore.sys [85160] =>.Logitech Inc®
O58 - SDL:2015/11/20 20:45:48 A . (.Logitech Inc. - Logitech LowAudio.) -- C:\Windows\System32\drivers\lgLowAudio.sys [26264] =>.Logitech Inc®
O58 - SDL:2016/04/19 02:09:16 A . (.Logitech Inc. - Logitech GamePanel Virtual Hid Device Drive.) -- C:\Windows\System32\drivers\LGVirHid.sys [43432] =>.Logitech Inc®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2008/03/13 08:46:00 A . (.ManyCam LLC. - ManyCam Virtual Webcam, WDM Video Capture D.) -- C:\Windows\System32\drivers\ManyCam_x64.sys [27136]
O58 - SDL:2014/12/29 04:59:36 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv_x64.sys [35960] =>.Superfluous.VisicomManyCam
O58 - SDL:2016/08/25 03:57:06 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [49312] =>.Superfluous.VisicomManyCam
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2015/09/24 23:25:46 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\Netwbw02.sys [4107504] =>.Intel Corporation-Wireless Connectivity Solutions®
O58 - SDL:2010/06/25 18:07:26 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.®
O58 - SDL:2017/02/10 01:52:40 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [14373824] =>.NVIDIA Corporation®
O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows®
O58 - SDL:2017/02/08 12:57:28 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [46016] =>.NVIDIA Corporation®
O58 - SDL:2017/02/08 12:57:29 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\Windows\System32\drivers\nvvhci.sys [57792] =>.NVIDIA Corporation®
O58 - SDL:2015/06/15 19:58:08 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4493528] =>.Realtek Semiconductor Corp®
O58 - SDL:2014/02/21 14:40:10 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [466648] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/11/22 10:03:02 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\Windows\System32\drivers\rtwlane.sys [2987224] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/08/13 16:19:08 A . (.Razer Inc - Razer RzEndPt.) -- C:\Windows\System32\drivers\rzendpt.sys [50392] =>.Razer Inc.®
O58 - SDL:2015/08/13 16:19:08 A . (.Razer Inc - Razer Rzudd Engine.) -- C:\Windows\System32\drivers\rzudd.sys [201432] =>.Razer Inc.®
O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2015/06/04 12:33:50 A . (...) -- C:\Windows\System32\drivers\semav6msr64.sys [21984] =>.Intel(R) Code Signing External®
O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/08/16 14:01:14 A . (.SpeedJet Technology INC. - SJT I/O Driver(64).) -- C:\Windows\System32\drivers\SjtWinIo.sys [9216]
O58 - SDL:2017/03/04 12:15:51 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [394296] =>.Disc Soft Ltd®
O58 - SDL:2016/05/12 17:47:36 A . (.SteelSeries ApS - SteelSeries PS/2 Driver.) -- C:\Windows\System32\drivers\ssps2.sys [33376] =>.SteelSeries ApS®
O58 - SDL:2016/09/05 05:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2016/09/05 05:47:12 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [165504] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2016/04/21 10:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project
O58 - SDL:2013/09/16 11:17:42 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [99288] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2012/03/07 09:07:36 A . (.Texas Instruments - tiehdusb.sys.) -- C:\Windows\System32\drivers\tiehdusb.sys [128512] =>.Texas Instruments
O58 - SDL:2015/06/17 17:04:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/11/12 21:50:10 A . (.Western Digital Technologies, Inc. - Western Digital SCSI Architecture Model (SA.) -- C:\Windows\System32\drivers\wdcsam64.sys [26880] =>.WDKTestCert wdclab,130885612892544312®
O58 - SDL:2015/05/25 23:29:04 A . (.SplitmediaLabs Limited - XSplit Stream Audio.) -- C:\Windows\System32\drivers\xspltspk.sys [26200] =>.Splitmedialabs Limited®
O58 - SDL:2017/03/11 23:27:59 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\Windows\System32\drivers\farflt.sys [111544] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
O58 - SDL:2017/02/24 06:23:20 A . (...) -- C:\Windows\System32\drivers\mbae64.sys [77408] {044E3BF58976880FFD074448A8F7A058}
O58 - SDL:2017/03/11 23:27:54 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [43968] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
O58 - SDL:2017/03/11 23:28:10 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MBAMChameleon.sys [186304] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
O58 - SDL:2017/03/11 23:27:51 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [251840] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
O58 - SDL:2017/03/11 23:27:59 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [92088] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes
O58 - SDL:2017/03/11 23:30:05 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [92088] {044E3BF58976880FFD074448A8F7A058} =>.Malwarebytes

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (10) - 11s
O61 - LFC: 2017/03/04 11:17:41 A . (.BitTorrent Inc..) -- C:\Users\RUBEN ESPADA\Downloads\uTorrent.exe [2400960] {0CF35369A9710762C36F6805FC9E45D6}
O61 - LFC: 2017/03/04 11:17:41 A . (.BitTorrent Inc..) -- C:\Users\RUBEN ESPADA\Desktop\uTorrent.exe [2400960] {0CF35369A9710762C36F6805FC9E45D6}
O61 - LFC: 2017/03/11 22:45:40 A . (..) -- C:\Users\RUBEN ESPADA\Desktop\FixExeLnk\fixexelnk\EXECUTE.cmd [71]
O61 - LFC: 2017/03/04 11:17:41 A . (.BitTorrent Inc..) -- C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent\uTorrent.exe [2400960] {0CF35369A9710762C36F6805FC9E45D6}
O61 - LFC: 2017/03/04 11:17:41 A . (.BitTorrent Inc..) -- C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent\updates\3.4.9_43295.exe [2400960] {0CF35369A9710762C36F6805FC9E45D6}
O61 - LFC: 2017/03/04 11:20:47 A . (.BitTorrent Inc..) -- C:\Users\RUBEN ESPADA\AppData\Roaming\uTorrent\updates\3.4.9_43295\utorrentie.exe [390848] {0CF35369A9710762C36F6805FC9E45D6}
O61 - LFC: 2017/03/09 18:40:18 A . (..) -- C:\Users\RUBEN ESPADA\AppData\Roaming\NVIDIA\GLCache\d3ad55196d669ae0de51466502eb93d3\60e0070ed705e609\262c9baf66c5a26c.bin [1337795]
O61 - LFC: 2017/03/06 07:29:04 A . (..) -- C:\Users\RUBEN ESPADA\AppData\Roaming\Intel\Wireless\Settings\AlertHistory.bin [7962]
O61 - LFC: 2017/03/04 12:25:47 A . (..) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin [1]
O61 - LFC: 2017/03/04 11:27:50 A . (..) -- C:\Users\RUBEN ESPADA\AppData\Local\Microsoft\Windows\1036\StructuredQuerySchema.bin [411415]

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {2A9C21ACAAA63A3C58A7B9322BEE948D} =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (6) - 3s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {2211d4a5-48d0-47f5-a7cd-81e861470f7f} - (Bing) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - (Google) - http://www.google.com/
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Yahoo! Powered) - http://uk.search.yahoo.com/ =>.Yahoo Search
O69 - SBI: SearchScopes [HKLM] {2211d4a5-48d0-47f5-a7cd-81e861470f7f} - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKLM] {67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - (Google) - http://www.google.com/

---\\ Enumère les services démarrés par Svchost (36) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1080320] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [927744] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [228864] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [342528] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542720] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3667968] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [187904] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [92992] =>.Microsoft Windows®

---\\ Liste des exceptions du parefeu Windows (45) - 4s
O87 - FAEL: "TCP Query User{E81DFABC-87A3-4A62-BEC8-9C0D01EAFBBD}C:\users\ruben espada\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\users\ruben espada\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{1872C293-8601-449F-8785-CEA566D12C52}C:\users\ruben espada\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\users\ruben espada\desktop\runtime\jre-x64\1.8.0_25\bin\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{17B7F1EC-E76F-4775-B549-762C04CE2FFA}C:\program files\java\jre1.8.0_51\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre1.8.0_51\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{104A1090-D3E8-4224-A4FF-C1226661CC66}C:\program files\java\jre1.8.0_51\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre1.8.0_51\bin\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{3BBB302C-7172-4BB0-976B-8932265E8A8D}C:\program files\java\jre1.8.0_51\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre1.8.0_51\bin\java.exe (.not file.)
O87 - FAEL: "UDP Query User{F53F6832-B574-40E2-8EF7-E4BBFD56BC6C}C:\program files\java\jre1.8.0_51\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre1.8.0_51\bin\java.exe (.not file.)
O87 - FAEL: "{7D00A675-3EA6-4E45-A9C5-8B7E2ABA2B93}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.)
O87 - FAEL: "{DACCDFF0-B2DF-4E68-A2AF-4D83A75B149D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (.not file.)
O87 - FAEL: "TCP Query User{E55B2D4B-84D7-4A0C-B472-F35E5F338F79}C:\program files\java\jre1.8.0_60\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre1.8.0_60\bin\java.exe (.not file.)
O87 - FAEL: "UDP Query User{65BEB200-4294-4ACC-97A7-3A308F5BEC10}C:\program files\java\jre1.8.0_60\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre1.8.0_60\bin\java.exe (.not file.)
O87 - FAEL: "TCP Query User{72E45AEB-DCE5-4E80-96AA-C365D0FAEEE9}C:\program files\java\jre1.8.0_60\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre1.8.0_60\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{64695D00-6499-47DA-A19C-A807F6E1CBB3}C:\program files\java\jre1.8.0_60\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre1.8.0_60\bin\javaw.exe (.not file.)
O87 - FAEL: "{EB409CDC-4A29-4605-9B54-977B1FE132A7}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe (.not file.)
O87 - FAEL: "{1F8040D3-728C-41A8-BCC2-851DC417D265}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Rockstar Games\Grand Theft Auto V\GTA5.exe (.not file.)
O87 - FAEL: "TCP Query User{7EE2531A-4154-4C06-8078-8EC8304E2A0A}C:\users\ruben espada\desktop\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\ruben espada\desktop\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{23B06C1A-7984-4F7C-AC88-EBF280B1B8AF}C:\users\ruben espada\desktop\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\ruben espada\desktop\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "TCP Query User{FAE5621B-1991-4181-9FC8-34882A358731}C:\users\ruben espada\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\ruben espada\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "UDP Query User{372C1B7C-1D3D-4B33-8CF6-2A40E6BEEF37}C:\users\ruben espada\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\ruben espada\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb
O87 - FAEL: "TCP Query User{45611E0D-6F9B-43AC-9DB0-75336B52E1E3}C:\program files\java\jre1.8.0_66\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre1.8.0_66\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{0AE62711-826C-4D40-98BB-6EAD6417FFC4}C:\program files\java\jre1.8.0_66\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre1.8.0_66\bin\javaw.exe (.not file.)
O87 - FAEL: "TCP Query User{B2BDE4BF-1A9D-4114-BAA6-7741EFDC149F}C:\program files (x86)\cube world\server.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cube world\server.exe
O87 - FAEL: "UDP Query User{2D8F9B73-1C81-48AE-AD44-98874F867CE8}C:\program files (x86)\cube world\server.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cube world\server.exe
O87 - FAEL: "TCP Query User{0E45E997-36FD-45F4-ADD0-6B41D9EC21D2}C:\program files\java\jre1.8.0_73\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files\java\jre1.8.0_73\bin\javaw.exe (.not file.)
O87 - FAEL: "UDP Query User{498C9843-A5F9-4791-8E91-6B3DA28BE294}C:\program files\java\jre1.8.0_73\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files\java\jre1.8.0_73\bin\javaw.exe (.not file.)
O87 - FAEL: "{7906D1F7-02DE-4C15-A93C-E4ECEC6C894E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
O87 - FAEL: "{EB683D4F-5AA8-4043-AD48-AD74B1BEE9D3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Unturned\Unturned.exe
O87 - FAEL: "TCP Query User{48F1FA16-0F37-46F2-8530-41EFCF0D189B}C:\users\ruben espada\appdata\roaming\gameranger\gameranger\gameranger.exe" [In-None-P6-TRUE] .(...) -- C:\users\ruben espada\appdata\roaming\gameranger\gameranger\gameranger.exe (.not file.)
O87 - FAEL: "UDP Query User{6199398C-CACA-42E4-AC2A-10557BCDE1D5}C:\users\ruben espada\appdata\roaming\gameranger\gameranger\gameranger.exe" [In-None-P17-TRUE] .(...) -- C:\users\ruben espada\appdata\roaming\gameranger\gameranger\gameranger.exe (.not file.)
O87 - FAEL: "{A160D66C-04D5-43E9-8AF6-9C55BD0602A1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe (.not file.)
O87 - FAEL: "{6304B1A1-E6F9-496C-9825-B0308DED5214}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe (.not file.)
O87 - FAEL: "{2AB3B6A6-B50C-4214-8D60-795DFAF303E6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O87 - FAEL: "{677C9806-B637-4800-9A75-9E2D4F89819C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O87 - FAEL: "{19141B19-1489-41F5-945B-9DC84E72020D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound.exe (.not file.)
O87 - FAEL: "{0A3DBE42-D53C-4DC3-9F51-8D0E6108AD9D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound.exe (.not file.)
O87 - FAEL: "{BD36098C-D035-4C3A-BD06-B4A28F6C418D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound_server.exe (.not file.)
O87 - FAEL: "{BADD5771-16D0-408F-9670-C1B54A004DAD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound_server.exe (.not file.)
O87 - FAEL: "{CEB97815-82FB-46F6-BAC0-791D637B7F8B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\mod_uploader.exe (.not file.)
O87 - FAEL: "{848F5CE9-7E69-40EE-8957-4607290ABFD7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\mod_uploader.exe (.not file.)
O87 - FAEL: "{0F002A10-CDC2-4368-A1D6-6705A8D125D8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win32\starbound.exe (.not file.)
O87 - FAEL: "{734E9C70-2812-4AD1-B760-4DFB717F4AD5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Starbound\win32\starbound.exe (.not file.)
O87 - FAEL: "{B2ABE4D7-471F-4085-BCE7-B70C2EF54AD2}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Double Action\bin\hammer.exe
O87 - FAEL: "{16293C5D-2589-43B9-845A-2ADD77D2DC7D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Double Action\bin\hammer.exe
O87 - FAEL: "{240E777E-49C1-4901-A659-3524FE03E3F1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation Titans\bin_x64\server.exe
O87 - FAEL: "{C0A0B3FC-CB3E-47F9-AED5-8C4CCBEBD4A8}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Planetary Annihilation Titans\bin_x64\server.exe
O87 - FAEL: "{6CFD45D8-0C2C-41DB-9AB4-5AE49EBC52A5}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Battle.net\Agent.2328\Agent.exe (.not file.)

---\\ Scan Additionnel (1) - 0s
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore

---\\ Récapitulatif des éléments trouvés sur votre station (2) - 0s
http://www.nicolascoolman.fr/?p=338 =>.Superfluous.CacaoWeb
http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore

~ End of the scan, 106700 items in 00h03mn32s (1414)(0)

Publicité


Signaler le contenu de ce document

Publicité