cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.4.8.61 Par Nicolas Coolman (2017/04/08)
~ Démarré par hamdi (Administrator) (2017/04/08 21:14:53)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\hamdi\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\hamdi\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Navigateurs Internet (2) - 0s
~ GCIE: Google Chrome v57.0.2987.133
~ MSIE: Internet Explorer v11.0.9600.18617

---\\ Informations sur les produits Windows (10) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : 4RPH9
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 6132.26 MB (62% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 38 GB (41%) free of 92 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HAMDI-PC
~ User Name: hamdi
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 38 GB free of 92 GB (System)
~ Drive D: has 159 GB free of 213 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (26) - 1s
[MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.12A878FBA402BA816EE868A423613A1B] - 04/03/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3241984] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.BC204AB3FBC84E419DBC486E3CC5CE94] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [231936] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9B38580063D281A99E68EF5813022A5F] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [106496] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.819426D736BCBD31CC7CA27221954E04] - 09/02/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation
[MD5.E47D571FEC2C76E867935109AB2A770C] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262144] =>.Microsoft Corporation
[MD5.47B2D0B31BDC3EBE6090228E2BA3764D] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1684416] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (4) - 1s
O23 - Service: خدمة Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: NitroPDFDriverCreatorReadSpool10 (NitroDriverReadSpool10) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe =>.Nitro Software, Inc.®
O23 - Service: NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe =>.Nitro Software, Inc.®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (5) - 18s
SS - Auto [08/04/2017] [ 153752] خدمة Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [08/04/2017] [ 153752] خدمة Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [14/12/2016] [ 4317648] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [06/05/2015] [ 324760] NitroPDFDriverCreatorReadSpool10 (NitroDriverReadSpool10) . (.Nitro PDF Software.) - C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe =>.Nitro Software, Inc.®
SR - Auto [06/05/2015] [ 418968] NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe =>.Nitro Software, Inc.®

---\\ Tâches planifiées en automatique (22) - 19s
[MD5.00000000000000000000000000000000] [APT] [845s125s953p95] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [845s125s953p95-dll] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [Driver Booster SkipUAC (hamdi)] (...) -- C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DriverBooster.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.2D8BBF6C7241AAD9EDE7708EBB7B43A4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] (.Activate.) =>.Google Inc®
[MD5.2D8BBF6C7241AAD9EDE7708EBB7B43A4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] (.Activate.) =>.Google Inc®
[MD5.00000000000000000000000000000000] [APT] [Hulickcoeqotion Helper] (...) -- C:\Program Files (x86)\Zicasp\xghnele.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [uninst] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [{0357A1DB-CA55-44BC-BCC1-EC48BD2F40D9}] (...) -- C:\Program Files (x86)\Common Files\DingBam\uninstall.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [apps\2-0\6cen4lo9-ycq\53chz9ov-d9y\prog-] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [apps\2-0\6cen4lo9-ycq\53chz9ov-d9y\prog--] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [apps\2-0\6cen4lo9-ycq\53chz9ov-d9y\prog---app_baa8013a79450f71_0001] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [apps\2-0\6cen4lo9-ycq\53chz9ov-d9y\prog---app_baa8013a79450f71_0001-0003_b8f31f1f4ed0c425\clickonce_bootstrap] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.00000000000000000000000000000000] [APT] [apps\2-0\6cen4lo9-ycq\53chz9ov-d9y\prog---app_baa8013a79450f71_0001-0003_b8f31f1f4ed0c425\googleupdatesetup] (...) -- C:\ProgramData\845s125s953p95\845s125s953p95.dll (.not file.) [0] (.Activate.) =>.Superfluous.Empty
O39 - APT: 845s125s953p95 - (...) -- C:\Windows\System32\Tasks\845s125s953p95 [16708] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: 845s125s953p95-dll - (...) -- C:\Windows\System32\Tasks\845s125s953p95-dll [16708] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: Aneluingperfuse - (...) -- C:\Windows\System32\Tasks\Aneluingperfuse [5088] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: Driver Booster SkipUAC (hamdi) - (...) -- C:\Windows\System32\Tasks\Driver Booster SkipUAC (hamdi) [2886] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3372] =>.Google Inc®
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3500] =>.Google Inc®
O39 - APT: Hulickcoeqotion Helper - (...) -- C:\Windows\System32\Tasks\Hulickcoeqotion Helper [6042] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: uninst - (...) -- C:\Windows\System32\Tasks\uninst [16708] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: {0357A1DB-CA55-44BC-BCC1-EC48BD2F40D9} - (...) -- C:\Windows\System32\Tasks\{0357A1DB-CA55-44BC-BCC1-EC48BD2F40D9} [3572] (.Orphan.) =>.Superfluous.Orphan

---\\ Applications lancées au démarrage du système (20) - 1s
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- C:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation®
O4 - HKLM\..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) -- C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe =>.Malwarebytes Corporation®
O4 - HKCU\..\Run: [K9JP5IGOEAP4O4P] . (.ECA - E.) -- C:\Program Files\KBB1EWYF3N\EQT960OYX.exe
O4 - HKCU\..\Run: [BMVGM053R2Z1P7R] . (.ECA - E.) -- C:\Program Files\UGILI9AQY8\UGILI9AQY.exe
O4 - HKCU\..\Run: [VV62CXII4T75N17] . (.ECA - E.) -- C:\Program Files\6RQPER1MRE\6RQPER1MR.exe
O4 - HKCU\..\Run: [NIUMGJ5LQ45FD4G] . (.ECA - E.) -- C:\Program Files\9ZDUUG5G0I\9ZDUUG5G0.exe
O4 - HKCU\..\Run: [K335PP4RZUCYQNJ] . (.ECA - E.) -- C:\Program Files\NKXT31EEV1\NKXT31EEV.exe
O4 - HKCU\..\Run: [HEAIW9L11588SB0] . (.ECA - E.) -- C:\Program Files\F9KB38YK8W\SYQQB84L7.exe
O4 - HKLM\..\Wow6432Node\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation®
O4 - HKLM\..\Wow6432Node\Run: [FUJ02B1_Apps] %PROGRAMFILES(X86)%\Fujitsu\FUJ02B1\CheckBatteryPack.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2861002977-1890519726-3224064446-1000\..\Run: [K9JP5IGOEAP4O4P] . (.ECA - E.) -- C:\Program Files\KBB1EWYF3N\EQT960OYX.exe
O4 - HKUS\S-1-5-21-2861002977-1890519726-3224064446-1000\..\Run: [BMVGM053R2Z1P7R] . (.ECA - E.) -- C:\Program Files\UGILI9AQY8\UGILI9AQY.exe
O4 - HKUS\S-1-5-21-2861002977-1890519726-3224064446-1000\..\Run: [VV62CXII4T75N17] . (.ECA - E.) -- C:\Program Files\6RQPER1MRE\6RQPER1MR.exe
O4 - HKUS\S-1-5-21-2861002977-1890519726-3224064446-1000\..\Run: [NIUMGJ5LQ45FD4G] . (.ECA - E.) -- C:\Program Files\9ZDUUG5G0I\9ZDUUG5G0.exe
O4 - HKUS\S-1-5-21-2861002977-1890519726-3224064446-1000\..\Run: [K335PP4RZUCYQNJ] . (.ECA - E.) -- C:\Program Files\NKXT31EEV1\NKXT31EEV.exe
O4 - HKUS\S-1-5-21-2861002977-1890519726-3224064446-1000\..\Run: [HEAIW9L11588SB0] . (.ECA - E.) -- C:\Program Files\F9KB38YK8W\SYQQB84L7.exe

---\\ Processus lancés (18) - 1s
[MD5.666FEA598D1776C7F8EDD7746F0F7F59] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [2776528] [PID.2748] =>.Malwarebytes Corporation®
[MD5.B5189494EF18C29975586046CB280FBF] - (.ECA - E.) -- C:\Program Files\KBB1EWYF3N\EQT960OYX.exe [922624] [PID.2764]
[MD5.B5189494EF18C29975586046CB280FBF] - (.ECA - E.) -- C:\Program Files\UGILI9AQY8\UGILI9AQY.exe [922624] [PID.2784]
[MD5.B5189494EF18C29975586046CB280FBF] - (.ECA - E.) -- C:\Program Files\6RQPER1MRE\6RQPER1MR.exe [922624] [PID.2792]
[MD5.B5189494EF18C29975586046CB280FBF] - (.ECA - E.) -- C:\Program Files\9ZDUUG5G0I\9ZDUUG5G0.exe [922624] [PID.2804]
[MD5.B5189494EF18C29975586046CB280FBF] - (.ECA - E.) -- C:\Program Files\NKXT31EEV1\NKXT31EEV.exe [922624] [PID.2812]
[MD5.B5189494EF18C29975586046CB280FBF] - (.ECA - E.) -- C:\Program Files\F9KB38YK8W\SYQQB84L7.exe [922624] [PID.2820]
[MD5.5E67C6702A4737099784F9332D9880A4] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Nitro\Pro 10\NitroPDFDriverService10x64.exe [324760] [PID.720] =>.Nitro Software, Inc.®
[MD5.7A507571FAFB37674575AA95EA91EEE7] - (...) -- C:\Program Files\Nitro\Pro 10\Nitro_UpdateService.exe [418968] [PID.2708] =>.Nitro Software, Inc.®
[MD5.28E521A6ABA9DE062A3719452816F495] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648] [PID.3176] =>.Malwarebytes Corporation®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.5940] =>.Google Inc®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.5780] =>.Google Inc®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.4700] =>.Google Inc®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.5732] =>.Google Inc®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.6172] =>.Google Inc®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.6700] =>.Google Inc®
[MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.6116] =>.Google Inc®
[MD5.7E12323AA0EBB07FBDF07CC10FA9ADDB] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hamdi\Downloads\ZHPDiag3.exe [2716672] [PID.6048] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (14) - 0s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ads.servebom.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ajax.googleapis.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://m.bestofmedia.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.tomshardware.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://img.purch.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.tn =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Docs =>.Legitimate
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-2861002977-1890519726-3224064446-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc.
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (32)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation®

---\\ Raccourcis Global Startup (61) - 1s
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hamdi\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: SQL Server Management Studio.lnk . (.Microsoft Corporation - SSMS - SQL Server Management Studio.) C:\Program Files (x86)\Microsoft SQL Server\100\Tools\Binn\VSShell\Common7\IDE\Ssms.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Visual Studio 2013.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2013.) C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [hamdi]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hamdi\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [hamdi]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [hamdi]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [hamdi]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [hamdi]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [hamdi]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [hamdi]: SQL Server Management Studio.lnk . (.Microsoft Corporation - SSMS - SQL Server Management Studio.) C:\Program Files (x86)\Microsoft SQL Server\100\Tools\Binn\VSShell\Common7\IDE\Ssms.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [hamdi]: Visual Studio 2013.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2013.) C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [hamdi]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [hamdi]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [hamdi]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Nitro Pro 10.lnk . (.Nitro PDF - .) C:\Program Files (x86)\Nitro\Pro 10\NitroPDF.exe =>.Nitro PDF
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Security Essentials.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Security Client\msseces.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Nitro Pro 10.lnk . (.Nitro PDF - .) C:\Program Files (x86)\Nitro\Pro 10\NitroPDF.exe =>.Nitro PDF
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{33B75098-BAD1-4FFA-9DCD-29A6DEAFB348}: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress

---\\ Protocole additionnel (22) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (101) - 7s
O42 - Logiciel: AzureTools.Notifications - (.Microsoft Corporation.) [HKLM][64Bits] -- {3FBFCF2C-392A-4632-9442-14C305B44D5E} =>.Microsoft Corporation
O42 - Logiciel: Behaviors SDK (XAML) for Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B5E43C7-965D-4AF4-A33E-5FA35B6660C8} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EBC890A6-DE7C-44B4-AA03-119B6190D3E1} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio 2013 FRA resources - (.Microsoft Corporation.) [HKLM][64Bits] -- {ECFA0084-5700-4B99-92F7-934470EF3C51} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio SDK for .NET 4.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37E53780-3944-4A6A-842F-727128E8616E} =>.Microsoft Corporation
O42 - Logiciel: Blend for Visual Studio SDK for Silverlight 5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0C03A66F-1FF0-45F9-8D67-0D806EBFFBA1} =>.Microsoft Corporation
O42 - Logiciel: Build Tools - amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F74753A3-C93C-34F5-A199-993CAF602B7D} =>.Microsoft Corporation
O42 - Logiciel: Build Tools - x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FB3A15FD-FC67-3A2F-892B-6890B0C56EA9} =>.Microsoft Corporation
O42 - Logiciel: Composants requis pour SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {D2B694C7-21FB-4E7C-B207-EBC1CB0EBA79} =>.Microsoft Corporation
O42 - Logiciel: Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM][64Bits] -- {2386192E-D6DB-4AD2-9564-65586A0AE53E} =>.PreEmptive Solutions
O42 - Logiciel: Entity Framework Tools for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {08AEF86A-1956-4846-B906-B01350E96E30} =>.Microsoft Corporation
O42 - Logiciel: Fichiers support d'instal. Microsoft SQL Server 2008 (français) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F2A14C39-FE6E-4F68-8CD5-C1F86A342464} =>.Microsoft Corporation
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: IIS 8.0 Express - (.Microsoft Corporation.) [HKLM][64Bits] -- {7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7} =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb =>.Microsoft Corporation
O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet =>.Intel
O42 - Logiciel: JavaScript Tooling - (.Microsoft Corporation.) [HKLM][64Bits] -- {2044FC4C-4EA3-4113-BC1E-962DF568D201} =>.Microsoft Corporation
O42 - Logiciel: JavaScript Tooling - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB37C117-9C83-4696-A493-8AFBAC8F9FFC} =>.Microsoft Corporation
O42 - Logiciel: JavaScript Tooling - (.Microsoft Corporation.) [HKLM][64Bits] -- {F65CC1F0-D1AD-4396-AEF2-81B9F34175FF} =>.Microsoft Corporation
O42 - Logiciel: LocalESPC Dev12 - (.Microsoft Corporation.) [HKLM][64Bits] -- {492498A3-F88C-FE2F-755C-9B1B91724CA5} =>.Microsoft Corporation
O42 - Logiciel: LocalESPCui for fr-fr Dev12 - (.Microsoft.) [HKLM][64Bits] -- {CB1D5B0B-5F6C-D267-8729-494D5B676E37} =>.Microsoft
O42 - Logiciel: Malwarebytes version 3.0.5.1299 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Microsoft Advertising SDK for Windows 8.1 - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {6AB13C21-C3EC-46E1-8009-6FD5EBEE515B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Advertising Service Extension for Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {CDECCD37-EBCE-4AF8-8D1C-5DF13194FEA1} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft C++ REST SDK for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A2CCB3C1-3DF9-4E3E-8D3F-DDBBCDDB28B5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Exchange Web Services Managed API 2.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6EE9E2DF-2CD7-4952-A649-95DEA8697BD8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Expression Blend SDK for .NET 4 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7B6B35D5-404D-498E-95D0-3CCB2B2FC6F9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Identity Extensions - (.Microsoft Corporation.) [HKLM][64Bits] -- {F99F24BF-0B90-463E-9658-3FD2EFC3C992} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 Core - (.Microsoft Corporation.) [HKLM][64Bits] -- {0099B899-7894-3B1D-9FF3-5992F84E631F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 v4.0 Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {9E673C3F-423B-458E-8EA4-9AE87C49AFC8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch for Visual Studio 2013 v4.0 ToolsRes - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1E0FE1-4650-4EA4-A460-00007C18925A} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch pour Visual Studio 2013 CoreRes - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {EA047240-4BE6-3BD8-8D1E-5E39D3590A46} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LightSwitch v4.0 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {B86C786E-11A2-4CAB-BB2E-D7CD5D65D552} =>.Microsoft Corporation
O42 - Logiciel: Microsoft NuGet - Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3E456233-1EA5-42ED-8556-0481BA728B41} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {9027FE9C-5488-30C3-AA42-7330D25BF92D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - fra - (.Microsoft Corporation.) [HKLM][64Bits] -- {A6470BAB-48CD-3A97-AA41-78597F85E7FC} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Report Viewer Add-On for Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C00453B2-27AD-4858-A20D-F44E39481C7D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {2AA3C13E-0531-41B8-AE48-AE28C940A809} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client =>.Microsoft Corporation®
O42 - Logiciel: Microsoft SharePoint 2013 Developer Tools for Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {16A901BB-CD8E-3B48-9932-5927FB13508D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {97592A5E-6A50-38E0-885C-7334BA7A43D8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight 5 SDK - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {80125E8C-304D-4637-974A-2547049B0E24} =>.Microsoft Corporation
O42 - Logiciel: Microsoft SQL Server Compact 3.5 SP1 - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {58FD9176-17BF-4D9A-8773-5ECA2947D391} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Sync Framework Runtime v1.0 (x64) fr - (.Microsoft Corporation.) [HKLM][64Bits] -- {5D0FE842-2D9B-487B-B3F6-9EE8D3E75060} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Sync Services for ADO.NET v2.0 (x64) fr - (.Microsoft Corporation.) [HKLM][64Bits] -- {CB761A24-9535-4841-A966-A569377E7EE6} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types pour SQL Server 2012 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F6DA7ACD-4377-477F-9422-6A7AB9E6DF1E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Team Foundation Server 2013 Object Model (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {65C91666-C3E8-3A42-BDA8-87932DD34F89} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Web Deploy 3.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3674F088-9B90-473A-AAC3-20A00D8D810C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Web Developer Tools 2013 - Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD63060C-F4C7-4E86-9C2A-4A102E7EE12C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Web Developer Tools 2013 - Visual Studio 2013 - fra - (.Microsoft Corporation.) [HKLM][64Bits] -- {0F70109C-C3A7-45B9-9026-3DFA425C71AD} =>.Microsoft Corporation
O42 - Logiciel: Modèle de redirection de Python Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {39BEF737-7A15-4021-BFD9-3E50D29DDADB} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique de Dotfuscator and Analytics Community Edition - (.PreEmptive Solutions.) [HKLM][64Bits] -- {C59A62B8-8CA8-4DEC-843B-E7E0F72CCE75} =>.PreEmptive Solutions
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {4727EDB7-0478-31CF-AD6C-346D29254144} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA =>.Microsoft Corporation
O42 - Logiciel: Module linguistique des outils de développement Microsoft SharePoint 2013 p - (.Microsoft Corporation.) [HKLM][64Bits] -- {DC5E1DDB-4511-38AB-8A32-CEDCE4098861} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique du modèle objet Microsoft Team Foundation Server 2013 ( - (.Microsoft Corporation.) [HKLM][64Bits] -- {58204E66-0706-35C3-A70B-A1A26D1D1E4B} =>.Microsoft Corporation
O42 - Logiciel: Module Microsoft Report Viewer pour Visual Studio 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {54EC8906-56FE-4D5F-8F40-A9F65543B119} =>.Microsoft Corporation
O42 - Logiciel: Nitro Pro 10 - (.Nitro.) [HKLM][64Bits] -- {04E5F670-B6DF-4559-8B05-070106C44F2C} =>.Nitro
O42 - Logiciel: Outils de requête de SQL Server Compact 3.5 SP1 - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {625437A1-D012-4D96-8A93-25814E980439} =>.Microsoft Corporation
O42 - Logiciel: PreEmptive Analytics Client French Language Pack - (.PreEmptive Solutions.) [HKLM][64Bits] -- {6C78BF87-3840-401B-A8CE-6BC30496A75D} =>.PreEmptive Solutions
O42 - Logiciel: PreEmptive Analytics Visual Studio Components - (.PreEmptive Solutions.) [HKLM][64Bits] -- {943F3FB1-3F9C-4FB7-A4E2-6D53617068C3} =>.PreEmptive Solutions
O42 - Logiciel: Ressources linguistiques des outils de génération - amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A4915194-437A-3B02-8EB6-327F9A096C05} =>.Microsoft Corporation
O42 - Logiciel: Ressources linguistiques des outils de génération - x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {57F2B5B9-FF5E-3098-8A7C-7995ED5F46B2} =>.Microsoft Corporation
O42 - Logiciel: Samsung ML-1640 Series - (.Samsung Electronics CO.,LTD.) [HKLM][64Bits] -- Samsung ML-1640 Series =>.Samsung Electronics CO.,LTD
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95150001-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Sql Server Customer Experience Improvement Program - (.Microsoft Corporation.) [HKLM][64Bits] -- {2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF} =>.Microsoft Corporation
O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1690CE56-2231-4E59-9006-A0876D949EA8} =>.Microsoft Corporation
O42 - Logiciel: Tools for .Net 3.5 - FRA Lang Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {C37962EE-EE24-4E9F-8A41-514ACD79177C} =>.Microsoft Corporation
O42 - Logiciel: Types CLR du système Microsoft pour SQL Server 2012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {06E862CA-3920-4745-9C26-2DE51B50057E} =>.Microsoft Corporation
O42 - Logiciel: Update for (KB2504637) - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637 =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {06EEE072-B561-38E5-85D9-485ABCBE8342} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 SDK Language Pack - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB5BF5DA-F4DC-3C75-A818-14E9545544B5} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 VS - (.Microsoft Corporation.) [HKLM][64Bits] -- {6321F2D4-366B-3AE4-877A-8E539EC3331A} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 3.1 VS Language Pack - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {2F00A3D0-6FB3-3DD5-A2AD-DCC199AD84D5} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2013 Prerequisites - (.Microsoft Corporation.) [HKLM][64Bits] -- {0B6BDD27-3097-4FE1-BDE6-1D5EC7399563} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio 2013 Prerequisites - FRA Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {458BDC23-1138-4694-B030-4553A9094956} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio Extensions for Windows Library for JavaScript - (.Microsoft Corporation.) [HKLM][64Bits] -- {FF39514D-E2EB-40BA-A23F-C83B8E0ED110} =>.Microsoft Corporation
O42 - Logiciel: WCF Data Services 5.6.0 FRA Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {35BCEC03-6257-4E45-8C63-FDA427202ADD} =>.Microsoft Corporation
O42 - Logiciel: WCF Data Services 5.6.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {46910786-E4AC-41E4-A4A0-C086EA85242D} =>.Microsoft Corporation
O42 - Logiciel: WCF RIA Services V1.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5D8DD6A8-C4D7-4554-93F9-F1CC28C72600} =>.Microsoft Corporation
O42 - Logiciel: Windows App Certification Kit Native Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D2CEC61-C3F0-C27E-7280-F9D6B10378BE} =>.Microsoft Corporation
O42 - Logiciel: Windows App Certification Kit x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F395FD4F-40E5-7B56-2BCB-B3CF52B3B52C} =>.Microsoft Corporation
O42 - Logiciel: Windows Runtime Intellisense Content - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- {EA9520C3-B047-4B93-72A6-F94E25762421} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit - (.Microsoft Corporation.) [HKLM][64Bits] -- {5D5CFAD6-9F93-8C63-3EB0-B6A0D3D4BD12} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit - (.Microsoft Corporation.) [HKLM][64Bits] -- {984022F2-9BCA-A41D-6A38-1AE658F01415} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {B74B199A-EDD4-B657-E055-327D454402D2} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {A1CB8286-CFB3-A985-D799-721A0F2A27F3} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {A6030DAD-1600-F767-C8DD-C722ADFE8FBC} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps - (.Microsoft Corporation.) [HKLM][64Bits] -- {37464E70-B0B9-9DFF-649A-CBE169BAD657} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {96F4525A-470D-F15C-796E-58D9988C3E5F} =>.Microsoft Corporation
O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {56AD3004-0B49-967F-F682-B05650B61A78} =>.Microsoft Corporation
O42 - Logiciel: Windows XP Targeting with C++ - (.Microsoft Corporation.) [HKLM][64Bits] -- {993F6DDC-63F8-4BCD-9B28-D941971A9CAC} =>.Microsoft Corporation
O42 - Logiciel: Windows XP Targeting with C++ - (.Microsoft Corporation.) [HKLM][64Bits] -- {F361FE04-789E-42F3-BBAB-E7B380AA5E06} =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.10 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Workflow Manager Client 1.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F392A0CC-3507-45FB-ABAB-FF2CB70DC42F} =>.Microsoft Corporation
O42 - Logiciel: Workflow Manager Tools 1.0 for Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFBDAF56-3230-4D63-94EA-B1493911923A} =>.Microsoft Corporation

---\\ HKCU & HKLM Software Keys (43) - 7s
HKLM\SOFTWARE\Wow6432Node\258D48510F8863BC0C78E0C129E1E1BA =>Adware.CrossRider
HKLM\SOFTWARE\Wow6432Node\Erjatneried
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\IObit =>.IObit
HKLM\SOFTWARE\Wow6432Node\Kerkeleghugitain
HKLM\SOFTWARE\Wow6432Node\MicroRay
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\msServer
HKLM\SOFTWARE\Wow6432Node\NuGet =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\PreEmptive Solutions =>.PreEmptive Solutions
HKLM\SOFTWARE\Wow6432Node\Samsung =>.Samsung Electronics
HKLM\SOFTWARE\Wow6432Node\ToughQueen
HKLM\SOFTWARE\Wow6432Node\UCBrowserPID =>.UCWeb Inc.
HKLM\SOFTWARE\Wow6432Node\xghnele.exe
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\258D48510F8863BC0C78E0C129E1E1BA =>Adware.CrossRider
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\AutoTime =>Adware.TopTools
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\DriverBooster
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Installer
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nitro =>.Nitro
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\P2PDownloader =>.Unknow
HKCU\SOFTWARE\PopWnd =>.Lenovo Group Limited
HKCU\SOFTWARE\Rtp =>.RTP Software
HKCU\SOFTWARE\SNDA =>.SNDA Software
HKCU\SOFTWARE\SSPrint =>.Sprint Software
HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc.
HKCU\SOFTWARE\UpgSvr
HKCU\SOFTWARE\VideoBox =>Adware.Amonetize
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation

---\\ Contenu des dossiers Programmes (189) - 2s
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\6RQPER1MRE
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\9ZDUUG5G0I
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Application Verifier =>.Microsoft Corporation
O43 - CFD: 04/04/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 16/03/2017 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\F9KB38YK8W
O43 - CFD: 12/03/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\IIS =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\IIS Express =>.Microsoft Corporation®
O43 - CFD: 16/03/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\KBB1EWYF3N
O43 - CFD: 08/04/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Microsoft Identity Extensions =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Microsoft Visual Studio 9.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 04/04/2017 - [] D -- C:\Program Files\Nitro =>.Nitro
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\NKXT31EEV1
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\SharePoint Client Components =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\UGILI9AQY8
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\Windows Identity Foundation =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Application Verifier =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Fujitsu =>.FUJITSU LIMITED®
O43 - CFD: 08/04/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\HTML Help Workshop =>.Microsoft Corporation®
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\IIS =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\IIS Express =>.Microsoft Corporation®
O43 - CFD: 16/03/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Help Viewer =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Security Client =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Sync Framework =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 12/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 9.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft WCF Data Services =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Web Tools =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 04/04/2017 - [] D -- C:\Program Files (x86)\Nitro =>.Nitro
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\NuGet =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Open XML SDK =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 29/03/2017 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Windows Identity Foundation =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Windows Kits =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Workflow Manager Tools =>.Microsoft Corporation®
O43 - CFD: 12/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 12/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Français =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 =>.Microsoft Corporation
O43 - CFD: 29/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung ML-1640 Series =>.Samsung Electronics
O43 - CFD: 13/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2013 =>.Pinnacle Systems, Inc.
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 08/04/2017 - [] HD -- C:\ProgramData\845s125s953p95
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 07/04/2017 - [] D -- C:\ProgramData\Logic Cramble
O43 - CFD: 08/04/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 12/03/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/03/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 04/04/2017 - [] D -- C:\ProgramData\Nitro =>.Nitro
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\NuGet =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\PreEmptive Solutions =>.PreEmptive Solutions
O43 - CFD: 07/04/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\Windows App Certification Kit =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [] SHD -- C:\ProgramData\WindowsMsg
O43 - CFD: 14/03/2017 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Merge Modules =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 04/04/2017 - [] D -- C:\Program Files (x86)\Common Files\Nitro =>.Nitro
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 07/04/2017 - [0] D -- C:\Users\hamdi\AppData\Roaming\Coazakjdertain
O43 - CFD: 04/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\IObit =>.IObit
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\hamdi\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] SD -- C:\Users\hamdi\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 04/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Nitro =>.Nitro
O43 - CFD: 17/03/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\NuGet =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Profiles =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [0] D -- C:\Users\hamdi\AppData\Roaming\Softlink =>.Softlink
O43 - CFD: 12/03/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 08/04/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 12/03/2017 - [0] SHD -- C:\Users\hamdi\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Users\hamdi\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 25/03/2017 - [] D -- C:\Users\hamdi\AppData\Local\assembly =>.Assembly
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\CEF =>.CEF
O43 - CFD: 08/04/2017 - [0] D -- C:\Users\hamdi\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Fercuty
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Google =>.Google
O43 - CFD: 12/03/2017 - [0] SHD -- C:\Users\hamdi\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\kemgadeojglibflomicgnfeopkdfflnw
O43 - CFD: 08/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] D -- C:\Users\hamdi\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [] D -- C:\Users\hamdi\AppData\Local\Microsoft_Corporation =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [0] SHD -- C:\Users\hamdi\AppData\Local\svchost
O43 - CFD: 08/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] SHD -- C:\Users\hamdi\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\Threrghtverjedom
O43 - CFD: 12/03/2017 - [0] D -- C:\Users\hamdi\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 08/04/2017 - [] D -- C:\Users\hamdi\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 07/04/2017 - [0] D -- C:\Users\hamdi\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\hamdi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 26/03/2017 - [] RD -- C:\Users\hamdi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\hamdi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 26/03/2017 - [] RD -- C:\Users\hamdi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Users\hamdi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/03/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/03/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/03/2017 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/04/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (4) - 0s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation

---\\ Liste des pilotes du système (57) - 3s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/06/09 04:18:20 N . (.Samsung Electronics Co., Ltd. - Windows 2k,XP IEEE-1284 parallel class driv.) -- C:\Windows\System32\drivers\DGIVECP.SYS [53816] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2011/11/30 07:09:34 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1c62x64.sys [358576] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2017/04/08 14:49:21 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\Windows\System32\drivers\farflt.sys [111544] =>.Malwarebytes Corporation®
O58 - SDL:2016/05/11 10:24:22 A . (.FUJITSU LIMITED - WDM driver for FUJ02B1 PnP device.) -- C:\Windows\System32\drivers\fuj02b1.sys [59152] =>.FUJITSU LIMITED®
O58 - SDL:2006/11/01 11:59:24 A . (.FUJITSU LIMITED - WDM driver for FUJ02E3 PnP device.) -- C:\Windows\System32\drivers\fuj02e3.sys [7296] =>.FUJITSU LIMITED
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2011/11/09 17:04:14 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [60184] =>.Intel Corporation®
O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2012/02/06 02:18:28 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [356120] =>.Intel Corporation®
O58 - SDL:2012/02/06 02:18:28 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [787736] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2017/04/08 01:15:04 A . (.Auteurs - .) -- C:\Windows\System32\drivers\mbae64.sys [77408] =>.Malwarebytes Corporation®
O58 - SDL:2017/04/08 14:49:19 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [43968] =>.Malwarebytes Corporation®
O58 - SDL:2017/04/08 14:49:30 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MBAMChameleon.sys [186304] =>.Malwarebytes Corporation®
O58 - SDL:2017/04/08 14:49:18 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [251840] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2017/04/08 19:52:40 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [82208] =>.Malwarebytes Corporation®
O58 - SDL:2011/12/01 14:51:00 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwNs64.sys [11417088] =>.Intel Corporation
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2011/03/11 07:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2011/12/13 07:00:32 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsP2Stor.sys [259176] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2008/01/10 19:34:52 N . (.Samsung Electronics - Port Contention Driver.) -- C:\Windows\System32\drivers\SSPORT.SYS [11576] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 1s
O61 - LFC: 2017/04/07 20:13:18 A . (.深圳市史宾赛科技有限公司.) -- C:\Users\hamdi\AppData\Local\FlowSprit.dll [797672] {6274BCC996A322D6FD7A194701878545}

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (3) - 0s
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] {ielnksrch} [DefaultScope] - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGIjVkxlyIP4NYe17aVLWv3E6lQ11TXxwEQBFr5r69rReCZYywIB3hK025BE_RHIgagYEm1q2mw40UtwyjOZ7Dx2XlwZKjBxWg8nEGP7WpwuJzEGKxoIGrNXePnAN0FaddU7XQpRWsJl727-Rlc2cH68D5wIW58QT1M2_pz-oNkhM_n-cQ8ZyFrUV_46f&q={searchTerms} =>.Superfluous.Linkury
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680448] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2607104] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (2) - 0s
O87 - FAEL: "{C397F97A-CF86-4114-9D82-3C146B846F9A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Maoha\MaohaAP\MaohaWifiSvr.exe (.not file.)
O87 - FAEL: "{756C2706-9F14-4383-9201-E0795EDA470F}" [In-None-P6-TRUE] .(...) -- C:\Users\hamdi\AppData\Local\Temp\FlowSpritSetup_slnt_5016.exe (.not file.) =>.Temporary file not necessary

---\\ Scan Additionnel (6) - 1s
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} =>.Superfluous.Linkury
C:\Users\hamdi\AppData\Local\Temp\g211D.tmp.exe =>.Superfluous.CDNReader
C:\Users\hamdi\AppData\Local\Temp\g4534.tmp.exe =>.Superfluous.CDNReader
C:\Users\hamdi\AppData\Local\Temp\g45FC.tmp.exe =>.Superfluous.CDNReader
C:\Users\hamdi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage =>.Superfluous.AkamaiHD
C:\Users\hamdi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_cdncache-a.akamaihd.net_0.localstorage-journal =>.Superfluous.AkamaiHD

---\\ Récapitulatif des éléments trouvés sur votre station (6) - 0s
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/01/01/adware-toptools/ =>Adware.TopTools
https://www.anti-malware.top/2016/05/24/adware-amonetize/ =>Adware.Amonetize
https://www.anti-malware.top/2016/08/02/superfluous-linkury/ =>.Superfluous.Linkury
https://www.anti-malware.top/2016/09/30/superfluous-cdnreader/ =>.Superfluous.CDNReader
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.AkamaiHD

~ Unselected Options: O82,
~ End of the scan, 88230 items in 01mn55s (812)(0)

Publicité


Signaler le contenu de ce document

Publicité