cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.6.23.102 Par Nicolas Coolman (2017/06/23)
~ Démarré par probook (Administrator) (2017/06/23 18:08:37)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\probook\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\probook\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1 Pro, 64-bit (Build 9600) =>.Microsoft Corporation

---\\ Navigateurs Internet (3) - 0s
~ MFIE: Mozilla Firefox 53.0.2 (x86 fr)
~ OPIE: Opera 46.0.2597.26
~ MSIE: Internet Explorer v11.0.9600.18427

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (1) - 5s
Windows Defender (Deactivate)

---\\ Surveillance de Logiciels (2) - 6s
~ Adobe Flash Player 26 NPAPI (Surveillance)
~ Adobe Acrobat Reader DC (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 61 Stepping 4, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4082.796 MB (43% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 94 GB (72%) free of 129 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: MILOUD
~ User Name: probook
~ Logged in as Administrator

---\\ Enumération des unités disques (5) - 0s
~ Drive C: has 94 GB free of 129 GB (System)
~ Drive D: has 5 GB free of 50 GB
~ Drive E: has 47 GB free of 49 GB
~ Drive F: has 67 GB free of 84 GB
~ Drive G: has 21 GB free of 50 GB

---\\ Etat du Centre de Sécurité Windows (10) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.81394C91B7B5A7C799E249AE82491F13] - 04/03/2014 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2373784] =>.Microsoft Windows®
[MD5.6E0BDFBEEED65B017F2E4C2C910B0520] - 22/08/2013 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [52736] =>.Microsoft Corporation
[MD5.EC302D06155F8E3C383750993FCB6B27] - 05/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [146432] =>.Microsoft Corporation
[MD5.33821B684222F236711F7F8C78AA9247] - 02/08/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2868224] =>.Microsoft Corporation
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [570880] =>.Microsoft Corporation
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/12/2013 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation
[MD5.B7E51F949ED8C3A75C1D3121AF9A4B6C] - 04/03/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [655360] =>.Microsoft Corporation
[MD5.FF0EE1B87E5DD7A82F7BB124D5CA8BB6] - 04/03/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [494592] =>.Microsoft Corporation
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 30/09/2013 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation
[MD5.A03F362C5557E238CBFA914689C77248] - 06/03/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [134144] =>.Microsoft Corporation
[MD5.03909BDBFF0DCACCABF2B2D4ADEE44DC] - 22/08/2013 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [78336] =>.Microsoft Corporation
[MD5.84CFC5EFA97D0C965EDE1D56F116A541] - 22/08/2013 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [107520] =>.Microsoft Corporation
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 27/11/2013 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation
[MD5.5DCD41F62F71519D2A46D41F60C69B0C] - 06/04/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [401920] =>.Microsoft Corporation
[MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation
[MD5.1C80517BE6836A812F6A9B99B8321351] - 20/03/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2013016] =>.Microsoft Windows®
[MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [94208] =>.Microsoft Corporation
[MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - 22/08/2013 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [120832] =>.Microsoft Corporation
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 30/09/2013 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation
[MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [108032] =>.Microsoft Corporation
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (9) - 6s
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY - ABBYY network license server.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe =>.ABBYY SOLUTIONS LIMITED®
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Background Logic Handler (backlh) . (.Copyright © 2016 - ExtManager.) - C:\ProgramData\Logic Cramble\set.exe =>PUP.Optional.LogicHandler
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG®
O23 - Service: @oem7.inf,%fpCSEvtService_SvcDesc%;fpCSEvtSvc (fpCsEvtSvc) . (.Auteurs - .) - C:\Windows\system32\fpCSEvtSvc.exe
O23 - Service: @oem5.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\system32\Hpservice.exe =>.Hewlett-Packard Company
O23 - Service: KMS Server Service (KMSServerService) . (.My Digital Life Forums - KMS Server Emulator Service.) - C:\Windows\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.®
O23 - Service: @oem7.inf,%WBFService_SvcDesc%;Synaptics FP WBF Policy Serv (valWBFPolicyService) . (.Synaptics Incorporated - SynapticsWBF Policy Service (COGENT).) - C:\Windows\system32\valWBFPolicyService.exe =>.Synaptics Incorporated

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 26s
SR - Auto [14/05/2009] [ 759048] ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) . (.ABBYY.) - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe =>.ABBYY SOLUTIONS LIMITED®
SR - Auto [25/04/2017] [ 83056] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [22/06/2017] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [23/03/2017] [ 3780096] Background Logic Handler (backlh) . (.Copyright © 2016.) - C:\ProgramData\Logic Cramble\set.exe =>PUP.Optional.LogicHandler
SR - Auto [03/12/2012] [ 2571704] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG®
SS - Demand [27/07/2016] [ 302168] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SR - Auto [28/04/2015] [ 13824] @oem7.inf,%fpCSEvtService_SvcDesc%;fpCSEvtSvc (fpCsEvtSvc) . (.Auteurs.) - C:\Windows\system32\fpCSEvtSvc.exe
SR - Auto [11/07/2015] [ 54448] @oem5.inf,%hpservice_desc%;HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\system32\Hpservice.exe =>.Hewlett-Packard Company®
SR - Auto [07/04/2017] [ 211968] KMS Server Service (KMSServerService) . (.My Digital Life Forums.) - C:\Windows\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico
SS - Demand [10/05/2017] [ 173512] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [18/12/2015] [ 308352] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.®
SR - Auto [30/07/2015] [ 76296] @oem7.inf,%WBFService_SvcDesc%;Synaptics FP WBF Policy Serv (valWBFPolicyService) . (.Synaptics Incorporated.) - C:\Windows\system32\valWBFPolicyService.exe =>.Microsoft Windows Hardware Compatibility Publisher®

---\\ Tâches planifiées en automatique (36) - 34s
[MD5.AFC094098B6D856151002051E31867D8] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1162360] (.Activate.) =>.Adobe Systems, Incorporated®
[MD5.7DE8B8AC559E16AEB388E7D098E7C288] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384] (.Activate.) =>.Adobe Systems Incorporated®
[MD5.CB54BA877CF4992BB09B0EE27FC5F9C3] [APT] [AutoKMSCustom] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [3820032] (.Activate.) =>HackTool.AutoKMS
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [cHJvYm9vaw] (.Copyright © 2017.) -- C:\Users\probook\AppData\Local\API32\dllhost86.exe [83968] (.Activate.)
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [DriverPack Notifier] (.Driver PackSolution.) -- C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe [258560] (.Activate.) =>.Driver PackSolution
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [ifgker] (...) -- C:\Users\probook\AppData\Local\ifgker\ifgker.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [NIUpdateServiceCheckTask] (...) -- C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [NIUpdateServiceStartupTask] (...) -- C:\Program Files (x86)\National Instruments\Shared\Update Service\NIUpdateService.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [Opera scheduled Autoupdate 1490694476] (.Opera Software.) -- C:\Program Files (x86)\Opera\launcher.exe [1253464] (.Activate.) =>.Opera Software AS®
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files (x86)\Ask.com\UpdateTask.exe [96136] (.Activate.) =>Toolbar.Ask
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [Update Service for E3605470-291B-44EB-8648-745EE356599A] (...) -- C:\Program Files (x86)\YoutubeAdBlockU\5l2Bzg2.dll [215552] (.Activate.) =>PUP.Optional.YouTubeAdBlock
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [Update Service for E3605470-291B-44EB-8648-745EE356599A2] (...) -- C:\Program Files (x86)\YoutubeAdBlockU\5l2Bzg2.dll [215552] (.Activate.) =>PUP.Optional.YouTubeAdBlock
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [{6D440B0D-5A97-4E63-95AA-3D7FD0D4BEB6}] (...) -- C:\Users\probook\Downloads\Programs\mobogeniemini_1002_10006.exe (.not file.) [0] (.Activate.) =>PUP.Optional.Mobogenie
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [{BC26B434-0EB8-448F-8139-A50F3C7476F2}] (...) -- F:\Mawsoaa_uP_bY_mUSLEm\ںéê袕 ، ںéں«éںêï، ںé¬ںêé،.. ê袠، ¢àê م¬©، ™éںه ê¤é§\Library.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [{DF8F192F-3B2C-43CE-934F-66DB264505E9}] (...) -- I:\step7\Setup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [{EE487B54-79F6-4250-A78C-7BE5950AF214}] (...) -- C:\Program Files (x86)\Labcenter Electronics\Proteus 7 Professional\USB Drivers\installer.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] [APT] [AVAST Software\Avast settings backup] (.AVAST Software.) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [797264] (.Activate.) =>.AVAST Software s.r.o.®
O39 - APT: Unknown - (...) -- C:\Windows\Tasks\DriverToolkit Autorun.job [376] =>.Superfluous.DriverToolkit
O39 - APT: Update Service for E3605470-291B-44EB-8648-745EE356599A - (...) -- C:\Windows\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A.job [320] =>PUP.Optional.YouTubeAdBlock
O39 - APT: Update Service for E3605470-291B-44EB-8648-745EE356599A2 - (...) -- C:\Windows\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A2.job [320] =>PUP.Optional.YouTubeAdBlock
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [4476] =>.Adobe Systems, Incorporated®
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [4460] =>.Adobe Systems Incorporated®
O39 - APT: AutoKMSCustom - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMSCustom [3238] =>HackTool.AutoKMS
O39 - APT: cHJvYm9vaw - (.Copyright © 2017.) -- C:\Windows\System32\Tasks\cHJvYm9vaw [3570]
O39 - APT: DriverPack Notifier - (.Driver PackSolution.) -- C:\Windows\System32\Tasks\DriverPack Notifier [3442] =>.Driver PackSolution
O39 - APT: ifgker - (...) -- C:\Windows\System32\Tasks\ifgker [3594] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: NIUpdateServiceCheckTask - (...) -- C:\Windows\System32\Tasks\NIUpdateServiceCheckTask [3560] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: NIUpdateServiceStartupTask - (...) -- C:\Windows\System32\Tasks\NIUpdateServiceStartupTask [3240] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: Opera scheduled Autoupdate 1490694476 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1490694476 [3868] =>.Opera Software AS®
O39 - APT: Scheduled Update for Ask Toolbar - (...) -- C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar [3818] =>Toolbar.Ask
O39 - APT: Update Service for E3605470-291B-44EB-8648-745EE356599A - (...) -- C:\Windows\System32\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A [2574] =>PUP.Optional.YouTubeAdBlock
O39 - APT: Update Service for E3605470-291B-44EB-8648-745EE356599A2 - (...) -- C:\Windows\System32\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A2 [2876] =>PUP.Optional.YouTubeAdBlock
O39 - APT: {6D440B0D-5A97-4E63-95AA-3D7FD0D4BEB6} - (...) -- C:\Windows\System32\Tasks\{6D440B0D-5A97-4E63-95AA-3D7FD0D4BEB6} [3202] (.Orphan.) =>PUP.Optional.Mobogenie
O39 - APT: {BC26B434-0EB8-448F-8139-A50F3C7476F2} - (...) -- C:\Windows\System32\Tasks\{BC26B434-0EB8-448F-8139-A50F3C7476F2} [3342] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: {DF8F192F-3B2C-43CE-934F-66DB264505E9} - (...) -- C:\Windows\System32\Tasks\{DF8F192F-3B2C-43CE-934F-66DB264505E9} [3054] (.Orphan.) =>.Superfluous.Orphan
O39 - APT: {EE487B54-79F6-4250-A78C-7BE5950AF214} - (...) -- C:\Windows\System32\Tasks\{EE487B54-79F6-4250-A78C-7BE5950AF214} [3374] (.Orphan.) =>.Superfluous.Orphan

---\\ Applications lancées au démarrage du système (18) - 10s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe =>.Ivaylo Beltchev®
O4 - HKCU\..\Run: [egnvjsbjmn] . (...) -- C:\Users\probook\AppData\Roaming\Microsoft\vrfcajdg\bvurhsfa.exe
O4 - HKCU\..\RunOnce: [*NAcHJvYm9vaw] . (.Copyright © 2017 - Python Code Gen.) -- C:\Users\probook\AppData\Local\API32\dllhost86.exe
O4 - HKLM\..\Wow6432Node\Run: [DriverPack Notifier] . (. - Software and Drivers.) -- C:\Program Files (x86)\DriverPack Notifier\DriverPackNotifier.exe =>.Driver PackSolution
O4 - HKLM\..\Wow6432Node\Run: [EEventManager] . (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe =>.SEIKO EPSON Corporation®
O4 - HKLM\..\Wow6432Node\Run: [PixelPlanet PdfPrinter-Monitor] . (.PixelPlanet - PdfPrinter monitor.) -- C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe {0CFFBD4A04713986322B391ED7FE6B02} =>.PixelPlanet
O4 - HKLM\..\Wow6432Node\RunOnce: [aresize.ocx] -- C:\Windows\System32\aresize.ocx (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [comctl32.ocx] -- C:\Windows\System32\comctl32.ocx (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [dao350.dll] . (.Microsoft Corporation - Microsoft DAO 3.51 Object Library.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\DAO\dao350.dll =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\RunOnce: [msflxgrd.ocx] -- C:\Windows\System32\MSFLXGRD.OCX (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [msinet.ocx] -- C:\Windows\System32\msinet.ocx (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [shcmb61.ocx] -- C:\Windows\System32\shcmb61.ocx (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [filevw61.ocx] -- C:\Windows\System32\filevw61.ocx (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [fldrvw61.ocx] -- C:\Windows\System32\fldrvw61.ocx (.not file.)
O4 - HKLM\..\Wow6432Node\RunOnce: [MSJet35.dll] -- C:\Windows\System32\msjet35.dll (.not file.)
O4 - HKUS\S-1-5-21-2682562677-2708070314-3179477025-1001\..\Run: [egnvjsbjmn] . (...) -- C:\Users\probook\AppData\Roaming\Microsoft\vrfcajdg\bvurhsfa.exe
O4 - HKUS\S-1-5-21-2682562677-2708070314-3179477025-1001\..\RunOnce: [*NAcHJvYm9vaw] . (.Copyright © 2017 - Python Code Gen.) -- C:\Users\probook\AppData\Local\API32\dllhost86.exe

---\\ Processus lancés (29) - 17s
[MD5.00000000000000000000000000000000] - (.Hewlett-Packard Company - HpService.) -- C:\Windows\system32\Hpservice.exe [0] [PID.668] =>.Hewlett-Packard Company
[MD5.27433722FA29D94682D89DEED7ADE1A2] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [308352] [PID.1032] =>.Realtek Semiconductor Corp.®
[MD5.FA6FCC8217FD18D0EC9F2404FD05AD4A] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744] [PID.1164] =>.Realtek Semiconductor Corp®
[MD5.FA6FCC8217FD18D0EC9F2404FD05AD4A] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744] [PID.1172] =>.Realtek Semiconductor Corp®
[MD5.B33CF4DE909A5B30F526D82053A63C8E] - (.ABBYY - ABBYY network license server.) -- C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048] [PID.1688] =>.ABBYY SOLUTIONS LIMITED®
[MD5.8D6BA8E7676038A27FD4ECF12CC744B0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83056] [PID.1740] =>.Adobe Systems, Incorporated®
[MD5.360A6648DC26A3140ACCD635455455EE] - (.Copyright © 2016 - ExtManager.) -- C:\ProgramData\Logic Cramble\set.exe [3780096] [PID.1784]
[MD5.00000000000000000000000000000000] - (.Auteurs - .) -- C:\Windows\system32\fpCSEvtSvc.exe [0] [PID.1900]
[MD5.EB4DFE1644911BD343529E28411DF416] - (.My Digital Life Forums - KMS Server Emulator Service.) -- C:\Windows\KMSServerService\KMS Server Service.exe [211968] [PID.1960] =>HackTool.AutoKMS
[MD5.00000000000000000000000000000000] - (.Synaptics Incorporated - SynapticsWBF Policy Service (COGENT).) -- C:\Windows\system32\valWBFPolicyService.exe [0] [PID.1316] =>.Synaptics Incorporated
[MD5.6FACA9C62024E14251C7ED33A8E8B660] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [2571704] [PID.1668] =>.WIBU-SYSTEMS AG®
[MD5.5917DC01B9AC1FD64136D4691FFC7987] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [161728] [PID.1700] =>.Ivaylo Beltchev®
[MD5.3FD8F7811F240DEF6C9B7CD539174AD4] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8783616] [PID.4672] =>.Realtek Semiconductor Corp®
[MD5.40A24DBC07F6645358DF32B18D701543] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3964984] [PID.4744] =>.Tonec Inc.
[MD5.BF0EE37A14144C88A9F6FDA7B44981BB] - (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328] [PID.4856] =>.SEIKO EPSON Corporation®
[MD5.357E1C64DC2EC6727F595E88B4EED09D] - (.PixelPlanet - PdfPrinter monitor.) -- C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe [6222496] [PID.4868] {0CFFBD4A04713986322B391ED7FE6B02} =>.PixelPlanet
[MD5.B289C20C10B241F6016FECD92B267098] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275512] [PID.4884] =>.Tonec Inc.®
[MD5.82674536416365FBAC2598FF623D2710] - (. - 8VYoetJFSlKYjrevwe Setup.) -- C:\Users\probook\Downloads\Programs\kaspersky_total_security.rar.exe [493002] [PID.5988]
[MD5.00000000000000000000000000000000] - (...) -- C:\Users\probook\AppData\Local\Temp\is-CBB20.tmp\kaspersky_total_security.rar.tmp [713728] [PID.1992]
[MD5.C5C4EE39952DE757E02A67B4AAD4D15C] - (.Copyright © 2017 - Python Code Gen.) -- C:\Users\probook\AppData\Local\API32\dllhost86.exe [83968] [PID.2556]
[MD5.00000000000000000000000000000000] - (...) -- C:\Users\probook\AppData\Local\Temp\BBF7.tmp.exe [176128] [PID.3656]
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.9192] =>.Opera Software AS®
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.5312] =>.Opera Software AS®
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.6972] =>.Opera Software AS®
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.7172] =>.Opera Software AS®
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.7764] =>.Opera Software AS®
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.7344] =>.Opera Software AS®
[MD5.A75C66FC14D7CB2292EDB013744DE053] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\46.0.2597.26\opera.exe [772184] [PID.9852] =>.Opera Software AS®
[MD5.7EE989C7E583E074BFED0FA2A68B12AE] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\probook\Downloads\Programs\ZHPDiag3.exe [2754432] [PID.7580] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 6s
G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [ccfifbojenkenpkmnbnndeadpfdiffof] Домашняя страница Mail.Ru
G2 - GCE: Preference [User Data\Default] [fhoibnponjcgjgcnfacekaijdbbplhib] __MSG_ExtensionName__ =>.Kaspersky Labs
G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [oelpkepjlgmehajehfeicfbjdiobdkfj] Визуальные Закладки Mail.Ru
G2 - GCE: Preference [User Data\Default] [ojlcebdkbpjdpiligkdbbkdkfjmchbfd] Поиск Mail.Ru
G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (10) - 16s
M0 - MFSP: prefs.js [probook - qjelmvnz.default] http://mail.ru/
P2 - EXT: (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\nppdf32.dll =>.Adobe Systems, Incorporated®
P2 - EXT FILE: (.Microsoft Corporation - Bing Search.) -- C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\bingsearch.full@microsoft.com.xpi =>.Microsoft Corporation
P2 - EXT FILE: (...) -- C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\searchplugins\askcom.xml
P2 - EXT FILE: (.Bing - Bing. Search by Microsoft..) -- C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\searchplugins\bing-.xml =>.Bing
P2 - EXT FILE: (...) -- C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\searchplugins\mailru.xml
P2 - EXT: (.Internet Download Manager, Tonec Inc. - IDM integration.) -- C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\mozilla_cc2@internetdownloadmanager.com =>.Internet Download Manager, Tonec Inc.
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_131.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@real.com/nppl3260;version=6.0.12.69] - (.RealNetworks.) -- C:\Program Files (x86)\Video Convert Master\codec\real\browser\plugins\nppl3260.dll =>.RealNetworks
P2 - FPN: [HKLM] [@real.com/nprpjplug;version=6.0.12.69] - (.RealNetworks.) -- C:\Program Files (x86)\Video Convert Master\codec\real\browser\plugins\nprpjplug.dll =>.RealNetworks

---\\ Opera, Démarrage,Recherche,Plugins (1) - 1s
B2 - EXT: [IDM Integration Module] C:\Users\probook\AppData\Roaming\Opera Software\Opera Stable\Extensions\ngpampappnmepgilojfohadhhmbhlaek

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (21) - 3s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mail.ru/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh2tlpbfgrogfokz2uuaum6hndz_vcjc7hyztomcvr3n6etv-tfbmgpovkkivovsgacx8udoo9ltfs9pvpb6nbp1k00fp3cbvglwsydmrfphtjyky0ea7dayhl-8nxgv6x_1exbl-havxhfcq0tghfu6hpxslyk5gysmygtaqg,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh2tlpbfgrogfokz2uuaum6hndz_vcjc7hyztomcvr3n6etv-tfbmgpovkkivovsgacx8udoo9ltfs9pvpb6nbp1k00fp3cbvglwsydmrfphtjyky0ea7dayhl-8nxgv6x_1exbl-havxhfcq0tghfu6hpxslyk5gysmygtaqg,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh2tlpbfgrogfokz2uuaum6hndz_vcjc7hyztomcvr3n6etv-tfbmgpovkkivovsgacx8udoo9ltfs9pvpb6nbp1k00fp3cbvglwsydmrfphtjyky0ea7dayhl-8nxgv6x_1exbl-havxhfcq0tghfu6hpxslyk5gysmygtaqg,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh2tlpbfgrogfokz2uuaum6hndz_vcjc7hyztomcvr3n6etv-tfbmgpovkkivovsgacx8udoo9ltfs9pvpb6nbp1k00fp3cbvglwsydmrfphtjyky0ea7dayhl-8nxgv6x_1exbl-havxhfcq0tghfu6hpxslyk5gysmygtaqg,,&q={searchterms} =>.Superfluous.Linkury
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-2682562677-2708070314-3179477025-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh2tlpbfgrogfokz2uuaum6hndz_vcjc7hyztomcvr3n6etv-tfbmgpovkkivovsgacx8udoo9ltfs9pvpb6nbp1k00fp3cbvglwsydmrfphtjyky0ea7dayhl-8nxgv6x_1exbl-havxhfcq0tghfu6hpxslyk5gysmygtaqg,,&q={searchterms} =>.Superfluous.Linkury
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object de navigateur (BHO) (5) - 1s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer32.dll =>.Ivaylo Beltchev®
O2 - BHO: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} (.Orphan.)
O2 - BHO: YoutubeAdBlock [64Bits] - {E3605470-291B-44EB-8648-745EE356599A} . (...) -- C:\Program Files (x86)\YoutubeAdBlockIE\k6PAtH8.dll =>PUP.Optional.YouTubeAdBlock
O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_32.dll =>.Ivaylo Beltchev®

---\\ Internet Explorer, Barre d'outil (1) - 1s
O3 - Toolbar: 0x00 - [HKLM]{D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask

---\\ Raccourcis Global Startup (103) - 38s
O4 - GS\Desktop [Administrateur]: Any Video Converter Ultimate.lnk . (.Anvsoft - Any Video Converter Ultimate.) C:\Program Files (x86)\Anvsoft\Any Video Converter Ultimate\AVCUltimate.exe =>.Anvsoft Inc.®
O4 - GS\Desktop [Administrateur]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: Foxit PDF Editor.lnk . (.Foxit Corporation - Foxit PDF Editor, the first REAL editor for.) C:\Program Files (x86)\Foxit Software\PDF Editor\PDFEdit.exe =>.Foxit Corporation®
O4 - GS\Desktop [Administrateur]: Internet r.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [Administrateur]: PDF Editeur 5.0.lnk . (...) C:\Program Files (x86)\PDF Editeur 5\PDFEdit.exe =>.CAD-KAS Kassler Computersoftware GbR®
O4 - GS\Desktop [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files (x86)\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\probook\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\Quicklaunch [Administrateur]: Mail.Ru.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe url,FileProtocolHandler "http://www.mail.ru/ =>.Microsoft Corporation
O4 - GS\Quicklaunch [Administrateur]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files (x86)\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\TaskBar [Administrateur]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) C:\Windows\system32\osk.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\TaskBar [Administrateur]: Outil de suppression de logiciels malveillants Microsoft Windows.lnk . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) C:\Windows\System32\MRT.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows.Defender.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Windows Defender\MSASCui.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Bibliothèques.lnk . (...) C:\Users\probook\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\Programs [Administrateur]: Bureau.lnk . (...) C:\Users\probook\Desktop
O4 - GS\Programs [Administrateur]: Documents.lnk . (...) C:\Users\probook\Documents
O4 - GS\Programs [Administrateur]: Images.lnk . (...) C:\Users\probook\Pictures =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\Programs [Administrateur]: Musique.lnk . (...) C:\Users\probook\Music
O4 - GS\Programs [Administrateur]: Téléchargements.lnk . (...) C:\Users\probook\Downloads
O4 - GS\Programs [Administrateur]: Vidéos.lnk . (...) C:\Users\probook\Videos
O4 - GS\Desktop [probook]: Any Video Converter Ultimate.lnk . (.Anvsoft - Any Video Converter Ultimate.) C:\Program Files (x86)\Anvsoft\Any Video Converter Ultimate\AVCUltimate.exe =>.Anvsoft Inc.®
O4 - GS\Desktop [probook]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation®
O4 - GS\Desktop [probook]: Foxit PDF Editor.lnk . (.Foxit Corporation - Foxit PDF Editor, the first REAL editor for.) C:\Program Files (x86)\Foxit Software\PDF Editor\PDFEdit.exe =>.Foxit Corporation®
O4 - GS\Desktop [probook]: Internet r.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - GS\Desktop [probook]: PDF Editeur 5.0.lnk . (...) C:\Program Files (x86)\PDF Editeur 5\PDFEdit.exe =>.CAD-KAS Kassler Computersoftware GbR®
O4 - GS\Desktop [probook]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files (x86)\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\Desktop [probook]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\probook\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [probook]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\Quicklaunch [probook]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\Quicklaunch [probook]: Mail.Ru.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe url,FileProtocolHandler "http://www.mail.ru/ =>.Microsoft Corporation
O4 - GS\Quicklaunch [probook]: QQ影音.lnk . (.腾讯科技(深圳)有限公司 - QQ影音.) C:\Program Files (x86)\Tencent\QQPlayer\QQPlayer.exe =>.Superfluous.Tencent
O4 - GS\sendTo [probook]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [probook]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [probook]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\TaskBar [probook]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\TaskBar [probook]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\TaskBar [probook]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\TaskBar [probook]: On-Screen Keyboard.lnk . (.Microsoft Corporation - Accessibilité au Clavier visuel.) C:\Windows\system32\osk.exe =>.Microsoft Corporation
O4 - GS\TaskBar [probook]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\TaskBar [probook]: Outil de suppression de logiciels malveillants Microsoft Windows.lnk . (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) C:\Windows\System32\MRT.exe =>.Microsoft Corporation
O4 - GS\TaskBar [probook]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\TaskBar [probook]: Windows.Defender.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Windows Defender\MSASCui.exe =>.Microsoft Corporation
O4 - GS\Programs [probook]: Bibliothèques.lnk . (...) C:\Users\probook\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\Programs [probook]: Bureau.lnk . (...) C:\Users\probook\Desktop
O4 - GS\Programs [probook]: Documents.lnk . (...) C:\Users\probook\Documents
O4 - GS\Programs [probook]: Images.lnk . (...) C:\Users\probook\Pictures =>.Microsoft Corporation
O4 - GS\Programs [probook]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\Programs [probook]: Musique.lnk . (...) C:\Users\probook\Music
O4 - GS\Programs [probook]: Téléchargements.lnk . (...) C:\Users\probook\Downloads
O4 - GS\Programs [probook]: Vidéos.lnk . (...) C:\Users\probook\Videos
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: AutoPlay Media Studio 8.lnk . (.Indigo Rose Corporation - AutoPlay Media Studio.) C:\Program Files (x86)\AutoPlay Media Studio 8\AutoPlayDesign.exe {736F484C38269BF8C442731C1FACA3ED} =>.Indigo Rose Corporation
O4 - GS\CommonDesktop [Public]: DriverToolkit.lnk . (.Megaify Software Co., Ltd. - DriverToolkit.) C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe =>.Superfluous.DriverToolkit
O4 - GS\CommonDesktop [Public]: Epson Easy Photo Print.lnk . (.SEIKO EPSON CORPORATION - .) C:\Program Files (x86)\Epson Software\Easy Photo Print\EPQuicker.exe =>.Seiko Epson Corporation
O4 - GS\CommonDesktop [Public]: Google Earth Pro.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth Pro\client\googleearth.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Guide d'utilisation %DRVNAME%.lnk . (...) C:\Program Files (x86)\Epson Software\Epson Manual\%DRVNAME%\fr\Useg\index.htm
O4 - GS\CommonDesktop [Public]: PdfGrabber.lnk . (.PixelPlanet - PdfGrabber.) C:\Program Files (x86)\PixelPlanet\PdfGrabber 8.0\PdfGrabber.exe =>.PixelPlanet
O4 - GS\CommonDesktop [Public]: المكتبة الشاملة.lnk . (.Http://www.shamela.ws - .) G:\shamela3.64\bin\shamela.exe
O4 - GS\Programs [Public]: Bibliothèques.lnk . (...) C:\Users\probook\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\Programs [Public]: Bureau.lnk . (...) C:\Users\probook\Desktop
O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\probook\Documents
O4 - GS\Programs [Public]: Images.lnk . (...) C:\Users\probook\Pictures =>.Microsoft Corporation
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://launchpage.org/?uid=oTlKGKjdhx1sXu9WkiZ5c7rBBdgvfKwqyQ2KNNbO6UOfJ2GLGG4SsRK6zfdTYJbSNy8%3D =>PUP.Optional.Salus
O4 - GS\Programs [Public]: Musique.lnk . (...) C:\Users\probook\Music
O4 - GS\Programs [Public]: Téléchargements.lnk . (...) C:\Users\probook\Downloads
O4 - GS\Programs [Public]: Vidéos.lnk . (...) C:\Users\probook\Videos
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\Windows\Camera\Camera.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\Windows\FileManager\FileManager.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://launchpage.org/ =>Hijacker.Browser
O4 - GS\ProgramsCommon [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\ProgramsCommon [Public]: PdfGrabber.lnk . (.PixelPlanet - PdfGrabber.) C:\Program Files (x86)\PixelPlanet\PdfGrabber 8.0\PdfGrabber.exe =>.PixelPlanet
O4 - GS\ProgramsCommon [Public]: PdfMerger.lnk . (.PixelPlanet - PdfMerge.) C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfMerge.exe {0CFFBD4A04713986322B391ED7FE6B02} =>.PixelPlanet
O4 - GS\ProgramsCommon [Public]: PdfPrinter Monitor starten.lnk . (.PixelPlanet - PdfPrinter monitor.) C:\Program Files (x86)\Common Files\PixelPlanet\PdfPrinter 7\PdfPrinterMonitor.exe {0CFFBD4A04713986322B391ED7FE6B02} =>.PixelPlanet
O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\Windows\FileManager\PhotosApp.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{13643D79-0AF0-4FEA-9EC1-01EEBCCCF7FD}: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{1E073B3E-06F6-486E-B3F9-A6F7A0124EB4}: DhcpNameServer = 192.168.8.1 192.168.8.1 =>.Local IP Adress

---\\ Protocole additionnel (22) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (49) - 74s
O42 - Logiciel: 7-Zip 9.20 - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- {F9000000-0018-0000-0000-074957833700} =>.ABBYY
O42 - Logiciel: ABBYY FineReader 9.0 Sprint - (.ABBYY.) [HKLM][64Bits] -- ABBYY FineReader 9.0 Sprint =>.ABBYY
O42 - Logiciel: Adobe Acrobat Reader DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 26 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824225037} =>.Adobe Systems Incorporated
O42 - Logiciel: AkelPadApp - (..) [HKCU][64Bits] -- AkelPadApp =>Adware.Razy
O42 - Logiciel: Any Video Converter Ultimate 5.9.2 - (.Any-Video-Converter.com.) [HKLM][64Bits] -- Any Video Converter Ultimate_is1 =>.Anvsoft Inc.®
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AskTBar
O42 - Logiciel: Assistant Mise à niveau de Windows 10 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft Corporation®
O42 - Logiciel: AutoPlay Media Studio 8 - (.Indigo Rose Corporation.) [HKLM][64Bits] -- AutoPlay Media Studio 8 {736F484C38269BF8C442731C1FACA3ED} =>.Indigo Rose Corporation
O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {E289B7DD-6732-4333-A47A-75A145D23EE3} =>.IvoSoft
O42 - Logiciel: Complément Office 2007 - Microsoft Enregistrer en tant que PDF ou XPS (Beta - (.Microsoft Corporation.) [HKLM][64Bits] -- {30120000-00B2-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: DriverPack Notifier - (.DriverPack Solution.) [HKLM][64Bits] -- DriverPack Notifier =>.DriverPack Solution
O42 - Logiciel: DriverToolkit version 8.5.0.0 - (.Megaify Software.) [HKLM][64Bits] -- {D66BF89F-B0A2-48F5-A2E4-242EB645AB76}_is1 =>.Megaify Software
O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {A02D7029-C4EF-44C1-9FD4-C0D3CA518113} =>.SEIKO EPSON Corporation®
O42 - Logiciel: Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {B2D55EB8-32C5-4B43-9006-9E97DECBA178} =>.Macrovision Corporation®
O42 - Logiciel: Epson Event Manager - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8A17C27D-0325-400C-8AA9-DAA6B16CBD74} =>.Seiko Epson Corporation
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner =>.SEIKO EPSON Corporation®
O42 - Logiciel: ffdshow [rev 2975] [2009-05-28] - (..) [HKLM][64Bits] -- ffdshow_is1
O42 - Logiciel: Foxit PDF Editor - (.Foxit Corporation.) [HKLM][64Bits] -- Foxit PDF Editor =>.Foxit Software Company®
O42 - Logiciel: Google Earth Pro - (.Google.) [HKLM][64Bits] -- {62D24387-9F2A-4629-BC77-1FD23BD8663A} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc.
O42 - Logiciel: Guide d'utilisation %DRVNAME% - (..) [HKLM][64Bits] -- %DRVNAME% Useg
O42 - Logiciel: Guide d'utilisation EPSON SX130 Series - (.Epson/Seico.) [HKLM][64Bits] -- EPSON SX130 Series Useg =>.Epson/Seico
O42 - Logiciel: HI-TECH C Compiler for the PIC10/12/16 MCUs V9.82PL0 - (.HI-TECH Software.) [HKLM][64Bits] -- PICC 9.82 =>.HI-TECH Software
O42 - Logiciel: HI-TECH C51-lite V9.60PL0 - (.HI-TECH Software.) [HKLM][64Bits] -- HC51 9.60PL0 =>.HI-TECH Software
O42 - Logiciel: HI-TECH PICC-Lite V9.60PL1 - (.HI-TECH Software.) [HKLM][64Bits] -- PICC 9.60PL1 =>.HI-TECH Software
O42 - Logiciel: HP Universal Camera Driver - (.SunplusIT.) [HKLM][64Bits] -- Sunplus SPUVCb =>.Sunplus Innovation Technology Inc.®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Model ChemLab - Evaluation Version - (.Model Science Software Inc.) [HKLM][64Bits] -- Model ChemLab - Evaluation Version2.6.2
O42 - Logiciel: Model ChemLab - Versiَn de evaluaciَn - (.Model Science Software Inc.) [HKLM][64Bits] -- Model ChemLab - Versiَn de evaluaciَn2.5
O42 - Logiciel: Mozilla Firefox 53.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 53.0.2 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: My Web Shield - (.My Web Shield.) [HKLM][64Bits] -- mweshield =>PUP.Optional.WebShield
O42 - Logiciel: Opera Stable 46.0.2597.26 - (.Opera Software.) [HKLM][64Bits] -- Opera 46.0.2597.26 =>.Opera Software AS®
O42 - Logiciel: PDF Editeur 5 - (..) [HKLM][64Bits] -- PDF Editeur 5 =>.CAD-KAS Kassler Computersoftware GbR®
O42 - Logiciel: PdfGrabber 8.0 (64bit) - (.PixelPlanet.) [HKLM][64Bits] -- {436B31A2-3E3B-4D6D-B589-20E7C238B7C6} =>.PixelPlanet
O42 - Logiciel: PixelPlanet PdfPrinter 7 (64bit) - (.PixelPlanet.) [HKLM][64Bits] -- {000F58F3-A544-4BB5-AF1B-761EA1C8595C} =>.PixelPlanet
O42 - Logiciel: PL-2303 USB-to-Serial - (.Prolific Technology INC.) [HKLM][64Bits] -- {ECC3713C-08A4-40E3-95F1-7D0704F1CE5E} =>.Prolific Technology INC
O42 - Logiciel: QQ影音3.9 - (.腾讯科技(深圳)有限公司.) [HKCU][64Bits] -- QQPlayer
O42 - Logiciel: Real Alternative 1.9.0 - (..) [HKLM][64Bits] -- RealAlt_is1
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: SafeZone Stable 1.51.2220.53 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 1.51.2220.53 =>.AVAST Software
O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies
O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o.
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: WinRAR 5.40 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (153) - 74s
HKLM\SOFTWARE\Wow6432Node\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\Wow6432Node\ABBYY =>.ABBYY Software
HKLM\SOFTWARE\Wow6432Node\ActMask Virtual Printer SDK
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\BCL Technologies =>.BCL Technologies
HKLM\SOFTWARE\Wow6432Node\CoreCodec
HKLM\SOFTWARE\Wow6432Node\Design Science
HKLM\SOFTWARE\Wow6432Node\drpsu =>.Driver PackSolution
HKLM\SOFTWARE\Wow6432Node\EPSON =>.EPSON
HKLM\SOFTWARE\Wow6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Wow6432Node\GNU =>.GNU
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\HI-TECH Software =>.HI-TECH Software
HKLM\SOFTWARE\Wow6432Node\Iceni Technology Limited =>.Iceni Technology Limited
HKLM\SOFTWARE\Wow6432Node\ifgker
HKLM\SOFTWARE\Wow6432Node\Infix PDF =>.Iceni Technology
HKLM\SOFTWARE\Wow6432Node\Install Options
HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\Wow6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Labcenter Electronics =>.Labcenter Electronics
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\MathWorks =>.MathWorks
HKLM\SOFTWARE\Wow6432Node\Microchip =>.Microchip
HKLM\SOFTWARE\Wow6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\mtHotfresh
HKLM\SOFTWARE\Wow6432Node\National Instruments =>.National Instruments
HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\Wow6432Node\ObviousIdea =>.ObviousIdea
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\Opera Software =>.Opera Software
HKLM\SOFTWARE\Wow6432Node\PDFescape Desktop
HKLM\SOFTWARE\Wow6432Node\ProfiCAD
HKLM\SOFTWARE\Wow6432Node\Prolific Technology INC =>.Prolific Technology INC
HKLM\SOFTWARE\Wow6432Node\QTAlternative
HKLM\SOFTWARE\Wow6432Node\RealAlternative
HKLM\SOFTWARE\Wow6432Node\RealNetworks =>.RealNetworks
HKLM\SOFTWARE\Wow6432Node\Rocket Division Software =>.Rocket Division Software
HKLM\SOFTWARE\Wow6432Node\scidot
HKLM\SOFTWARE\Wow6432Node\SEIKO EPSON CORPORATION =>.Seiko Epson Corporation
HKLM\SOFTWARE\Wow6432Node\Siemens =>.Siemens
HKLM\SOFTWARE\Wow6432Node\Sony Corporation =>.Sony Corporation
HKLM\SOFTWARE\Wow6432Node\Stardock =>.Stardock
HKLM\SOFTWARE\Wow6432Node\Tencent =>.Superfluous.Tencent
HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Wow6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\WIBU-SYSTEMS =>.Wibu-Systems
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\ABBYY =>.ABBYY Software
HKCU\SOFTWARE\Active@ File Preview
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AkelPadApp =>Adware.Razy
HKCU\SOFTWARE\Akelsoft =>Adware.Razy
HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKCU\SOFTWARE\Anvsoft =>.AnvSoft Inc
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Ask.com =>Toolbar.Ask
HKCU\SOFTWARE\Avg =>.AVG Software
HKCU\SOFTWARE\Borland =>.Borland
HKCU\SOFTWARE\BZH
HKCU\SOFTWARE\Castor-Prog
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\CoreAAC =>.Core Codec
HKCU\SOFTWARE\crocodile-clips
HKCU\SOFTWARE\Crouzet
HKCU\SOFTWARE\csastats =>Adware.InstallCore
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\Design Science
HKCU\SOFTWARE\DownloadAstro =>.Download Astro
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\DriverToolkit =>.Superfluous.DriverToolkit
HKCU\SOFTWARE\drpsu =>.Driver PackSolution
HKCU\SOFTWARE\DSP-worx =>.Microsoft Corporation
HKCU\SOFTWARE\edoceo =>.Legitimate
HKCU\SOFTWARE\Epson =>.EPSON
HKCU\SOFTWARE\FDRLab =>.FDRLab
HKCU\SOFTWARE\Foxit Corporation =>.Foxit Corporation
HKCU\SOFTWARE\Freeware =>.VirtualDub.org
HKCU\SOFTWARE\GA
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GetData =>.GetData
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hetman Software
HKCU\SOFTWARE\Iceni Technology Limited =>.Iceni Technology Limited
HKCU\SOFTWARE\ICSW1.23 =>Adware.InstallCore
HKCU\SOFTWARE\IM =>Adware.InstallCore
HKCU\SOFTWARE\Install Options
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\InterTrust
HKCU\SOFTWARE\IvoSoft =>.IvoSoft
HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKCU\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Mail.Ru =>.Mail.Ru
HKCU\SOFTWARE\MathWorks =>.MathWorks
HKCU\SOFTWARE\MediaChance =>.Mediachance
HKCU\SOFTWARE\Microchip =>.Microchip
HKCU\SOFTWARE\Mine =>.Microsoft Corporation
HKCU\SOFTWARE\Model Science
HKCU\SOFTWARE\MOVDLTool
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\mtHotfresh
HKCU\SOFTWARE\National Instruments =>.National Instruments
HKCU\SOFTWARE\NetBox
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ObviousIdea =>.ObviousIdea
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\PDFEdit =>.File Hunter Software
HKCU\SOFTWARE\PDFescape Desktop
HKCU\SOFTWARE\PixelPlanet =>.PixelPlanet
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\QElectroTech
HKCU\SOFTWARE\RealNetworks =>.RealNetworks
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Regressi =>.Legitimate
HKCU\SOFTWARE\Rtp =>.RTP Software
HKCU\SOFTWARE\scidot
HKCU\SOFTWARE\SMADΔV
HKCU\SOFTWARE\SolidDocuments =>.SolidDocuments
HKCU\SOFTWARE\Stardock =>.Stardock
HKCU\SOFTWARE\Start Page =>PUP.Optional.WidgiToolbar
HKCU\SOFTWARE\Sunplus SPUVCb
HKCU\SOFTWARE\Tencent =>.Superfluous.Tencent
HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks
HKCU\SOFTWARE\TinyCAD
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\TVideoGrabber
HKCU\SOFTWARE\undefined =>.Superfluous.Downloader
HKCU\SOFTWARE\Unity Technologies =>.Unity Technologies
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\س¦سأ³جذٍدٍµ¼ةْ³ةµؤ±¾µطس¦سأ³جذٍ
HKCU\SOFTWARE\AppDataLow\AskToolbarInfo =>Toolbar.Ask
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\AskToolbar =>Toolbar.Ask
HKCU\SOFTWARE\AppDataLow\Software\Mail.Ru =>.Mail.Ru

---\\ Contenu des dossiers Programmes (294) - 72s
O43 - CFD: 25/03/2017 - [0] D -- C:\Program Files\ByteFence =>.Superfluous.ByteFence
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files\Classic Shell =>.Ivo Beltchev
O43 - CFD: 01/05/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 25/08/2016 - [] D -- C:\Program Files\Epson Software =>.Epson/Seico
O43 - CFD: 23/05/2016 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 04/01/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 23/06/2017 - [] D -- C:\Program Files\KMSpico =>HackTool.KMSpico
O43 - CFD: 15/05/2017 - [] D -- C:\Program Files\LSoft Technologies =>.Lsoft technologies
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 23/08/2016 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 17/08/2016 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 19/01/2017 - [] D -- C:\Program Files\My Web Shield =>PUP.Optional.WebShield
O43 - CFD: 30/04/2017 - [0] D -- C:\Program Files\Pale Moon
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 17/08/2016 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 17/05/2017 - [] D -- C:\Program Files\shamela
O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 16/08/2016 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 14/08/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/08/2016 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 12/08/2016 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/06/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 19/06/2017 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 14/06/2017 - [] D -- C:\Program Files (x86)\7-Zip =>.Igor Pavlov
O43 - CFD: 25/08/2016 - [] D -- C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint =>.ABBYY Software
O43 - CFD: 04/01/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 15/05/2017 - [] D -- C:\Program Files (x86)\Anvsoft =>.AnvSoft Inc
O43 - CFD: 01/10/2016 - [] D -- C:\Program Files (x86)\Ask.com =>Toolbar.Ask
O43 - CFD: 06/10/2016 - [] D -- C:\Program Files (x86)\AutoPlay Media Studio 8 =>.Pinnacle Systems, Inc.
O43 - CFD: 03/08/2016 - [] D -- C:\Program Files (x86)\CodeMeter =>.Legitimate
O43 - CFD: 10/04/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\DriverPack Notifier =>.DriverPack Solution
O43 - CFD: 19/04/2017 - [] D -- C:\Program Files (x86)\DriverToolkit =>.Microsoft Windows®
O43 - CFD: 02/10/2016 - [0] D -- C:\Program Files (x86)\Electrical and Electronic Formulas
O43 - CFD: 25/08/2016 - [] D -- C:\Program Files (x86)\epson =>.EPSON
O43 - CFD: 30/03/2017 - [] D -- C:\Program Files (x86)\Epson Software =>.Epson/Seico
O43 - CFD: 01/10/2016 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software
O43 - CFD: 27/03/2017 - [] D -- C:\Program Files (x86)\Google =>.Google
O43 - CFD: 10/04/2017 - [] D -- C:\Program Files (x86)\HI-TECH Software =>.HI-TECH Software
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\HP Universal Camera Driver =>.RSA Security
O43 - CFD: 29/08/2016 - [] D -- C:\Program Files (x86)\Iceni
O43 - CFD: 09/04/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 01/05/2017 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc
O43 - CFD: 10/04/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 30/03/2017 - [] D -- C:\Program Files (x86)\Labcenter Electronics =>.Labcenter Electronics
O43 - CFD: 30/03/2017 - [] D -- C:\Program Files (x86)\MathType =>.Design Science
O43 - CFD: 09/04/2017 - [] D -- C:\Program Files (x86)\Microchip =>.Microchip
O43 - CFD: 08/10/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 12/11/2016 - [] D -- C:\Program Files (x86)\Model Science
O43 - CFD: 10/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 11/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation
O43 - CFD: 27/03/2017 - [] D -- C:\Program Files (x86)\NASA
O43 - CFD: 23/06/2017 - [] D -- C:\Program Files (x86)\National Instruments =>.National Instruments
O43 - CFD: 23/06/2017 - [] D -- C:\Program Files (x86)\Opera =>.Opera Software
O43 - CFD: 01/05/2017 - [0] D -- C:\Program Files (x86)\pccleanplus =>.Superfluous.PCCleanPlus
O43 - CFD: 09/02/2017 - [] D -- C:\Program Files (x86)\PDF Editeur 5 =>.CAD-KAS Kassler Computersoftware GbR®
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\PixelPlanet =>.PixelPlanet
O43 - CFD: 17/08/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files (x86)\Regener
O43 - CFD: 25/02/2017 - [] D -- C:\Program Files (x86)\Scidot =>.Pascal Georges
O43 - CFD: 24/03/2017 - [] D -- C:\Program Files (x86)\SMADAV =>.SmadAV
O43 - CFD: 13/09/2016 - [] D -- C:\Program Files (x86)\Tencent =>.Superfluous.Tencent
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 30/09/2013 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 14/08/2016 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/08/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 12/08/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 16/06/2017 - [] D -- C:\Program Files (x86)\WinRAR =>.WinRAR
O43 - CFD: 01/05/2017 - [] D -- C:\Program Files (x86)\YoutubeAdBlockIE =>PUP.Optional.YouTubeAdBlock
O43 - CFD: 01/05/2017 - [] D -- C:\Program Files (x86)\YoutubeAdBlockU =>PUP.Optional.YouTubeAdBlock
O43 - CFD: 01/05/2017 - [0] D -- C:\Program Files (x86)\YoutubeAdBlockUn =>PUP.Optional.YouTubeAdBlock
O43 - CFD: 14/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 25/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader 9.0 Sprint =>.ABBYY Software
O43 - CFD: 22/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 16/08/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 15/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft =>.AnvSoft Inc
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell =>.Ivo Beltchev
O43 - CFD: 15/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dr. Regener
O43 - CFD: 25/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverToolkit =>.Superfluous.DriverToolkit
O43 - CFD: 23/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Démarrage =>.Microsoft Corporation
O43 - CFD: 30/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON
O43 - CFD: 30/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software =>.Epson/Seico
O43 - CFD: 01/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Editor =>.Foxit Software
O43 - CFD: 23/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome =>.Google Inc.
O43 - CFD: 06/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro =>.Google Inc.
O43 - CFD: 22/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HI-TECH Software =>.HI-TECH Software
O43 - CFD: 06/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Indigo Rose Corporation =>.Indigo Rose Corporation
O43 - CFD: 29/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos =>.Microsoft Corporation
O43 - CFD: 27/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NASA
O43 - CFD: 30/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Object Desktop
O43 - CFD: 20/04/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 12/08/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 31/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TinyCAD
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 16/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 25/08/2016 - [] D -- C:\ProgramData\ABBYY =>.ABBYY Software
O43 - CFD: 17/09/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 15/12/2016 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 22/08/2013 - [0] D -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [0] D -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 29/07/2016 - [] D -- C:\ProgramData\ClassicShell =>.SourceForge
O43 - CFD: 02/12/2016 - [] D -- C:\ProgramData\CodeMeter =>.Legitimate
O43 - CFD: 23/09/2016 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation
O43 - CFD: 08/11/2016 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 30/03/2017 - [] D -- C:\ProgramData\EPSON =>.EPSON
O43 - CFD: 05/05/2017 - [] D -- C:\ProgramData\FreeHideIP =>.Free Hide IP
O43 - CFD: 27/03/2017 - [] D -- C:\ProgramData\Hotfresh
O43 - CFD: 25/03/2017 - [] D -- C:\ProgramData\Hotfreshs
O43 - CFD: 13/08/2016 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 06/10/2016 - [] D -- C:\ProgramData\IndigoRose
O43 - CFD: 23/06/2017 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab
O43 - CFD: 22/03/2017 - [] D -- C:\ProgramData\Labcenter Electronics =>.Labcenter Electronics
O43 - CFD: 25/03/2017 - [] D -- C:\ProgramData\Logic Cramble
O43 - CFD: 05/11/2016 - [] D -- C:\ProgramData\Logs =>.ABBYY Software
O43 - CFD: 23/05/2016 - [0] D -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 11/11/2016 - [] D -- C:\ProgramData\MFAData =>.AVG Software
O43 - CFD: 07/08/2016 - [] D -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/01/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 02/05/2017 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [0] D -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 23/06/2017 - [] D -- C:\ProgramData\National Instruments =>.National Instruments
O43 - CFD: 01/10/2016 - [] D -- C:\ProgramData\PDFescape Desktop =>.PDFescape
O43 - CFD: 18/09/2016 - [] D -- C:\ProgramData\PixelPlanet =>.PixelPlanet
O43 - CFD: 15/12/2016 - [0] D -- C:\ProgramData\Real =>.RealNetworks Inc.
O43 - CFD: 30/09/2013 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 19/12/2016 - [] D -- C:\ProgramData\Siemens =>.Siemens
O43 - CFD: 22/08/2013 - [0] D -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 23/06/2017 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 23/05/2016 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 13/09/2016 - [] D -- C:\ProgramData\Tencent =>.Superfluous.Tencent
O43 - CFD: 30/03/2017 - [] D -- C:\ProgramData\UDL =>.Microsoft Corporation
O43 - CFD: 25/08/2016 - [] D -- C:\Program Files (x86)\Common Files\ABBYY =>.ABBYY Software
O43 - CFD: 04/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 14/09/2016 - [] D -- C:\Program Files (x86)\Common Files\AV =>.Avast
O43 - CFD: 30/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Bamstrong
O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\Common Files\BCL Technologies =>.BCL Technologies
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 22/01/2017 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 23/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 23/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Merge Modules =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 18/09/2016 - [] D -- C:\Program Files (x86)\Common Files\PixelPlanet =>.PixelPlanet
O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 13/09/2016 - [] D -- C:\Program Files (x86)\Common Files\Tencent =>.Superfluous.Tencent
O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\Common Files\XpressUpdate =>.PixelPlanet
O43 - CFD: 05/01/2017 - [] D -- C:\Users\probook\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 21/03/2017 - [] D -- C:\Users\probook\AppData\Roaming\AkelPadApp =>Adware.Razy
O43 - CFD: 15/05/2017 - [] D -- C:\Users\probook\AppData\Roaming\Anvsoft =>.AnvSoft Inc
O43 - CFD: 29/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\Aspell =>.Aspell Dictionaries
O43 - CFD: 25/09/2016 - [] D -- C:\Users\probook\AppData\Roaming\AVG =>.AVG Software
O43 - CFD: 31/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\CAD-KAS =>.CAD-KAS Software
O43 - CFD: 12/11/2016 - [] D -- C:\Users\probook\AppData\Roaming\ChemLab
O43 - CFD: 23/05/2016 - [] D -- C:\Users\probook\AppData\Roaming\ClassicShell =>.SourceForge
O43 - CFD: 26/10/2016 - [] D -- C:\Users\probook\AppData\Roaming\Design Science =>.Design Science
O43 - CFD: 23/06/2017 - [] D -- C:\Users\probook\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 29/07/2016 - [] AD -- C:\Users\probook\AppData\Roaming\DriverPack Notifier =>.DriverPack Solution
O43 - CFD: 23/05/2016 - [] D -- C:\Users\probook\AppData\Roaming\DRPSu =>.Driver PackSolution
O43 - CFD: 25/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\Epson =>.EPSON
O43 - CFD: 24/03/2017 - [] D -- C:\Users\probook\AppData\Roaming\ESRI =>.ESRI
O43 - CFD: 24/03/2017 - [0] D -- C:\Users\probook\AppData\Roaming\EurekaLog =>.EurekaLog
O43 - CFD: 14/05/2017 - [] D -- C:\Users\probook\AppData\Roaming\FDRLab =>.FDRLab
O43 - CFD: 05/05/2017 - [] D -- C:\Users\probook\AppData\Roaming\FreeHideIP =>.Free Hide IP
O43 - CFD: 22/06/2017 - [] D -- C:\Users\probook\AppData\Roaming\IDM =>.IDM
O43 - CFD: 06/10/2016 - [] D -- C:\Users\probook\AppData\Roaming\IndigoRose
O43 - CFD: 25/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 15/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 23/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\MathWorks =>.MathWorks
O43 - CFD: 23/12/2016 - [] D -- C:\Users\probook\AppData\Roaming\Media Player Classic =>.Microsoft Corporation
O43 - CFD: 09/04/2017 - [] D -- C:\Users\probook\AppData\Roaming\Microchip =>.Microchip
O43 - CFD: 23/06/2017 - [] SD -- C:\Users\probook\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/04/2017 - [] D -- C:\Users\probook\AppData\Roaming\Moonchild Productions =>.Moonchild Productions
O43 - CFD: 26/07/2016 - [] D -- C:\Users\probook\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 10/04/2017 - [] D -- C:\Users\probook\AppData\Roaming\National Instruments =>.National Instruments
O43 - CFD: 16/06/2017 - [0] D -- C:\Users\probook\AppData\Roaming\ObviousIdea =>.ObviousIdea
O43 - CFD: 04/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 20/06/2017 - [] D -- C:\Users\probook\AppData\Roaming\PixelPlanet =>.PixelPlanet
O43 - CFD: 23/03/2017 - [] D -- C:\Users\probook\AppData\Roaming\qet
O43 - CFD: 15/12/2016 - [0] D -- C:\Users\probook\AppData\Roaming\Real =>.RealNetworks Inc.
O43 - CFD: 29/12/2016 - [] D -- C:\Users\probook\AppData\Roaming\shamela
O43 - CFD: 21/03/2017 - [0] D -- C:\Users\probook\AppData\Roaming\Smadav =>.SmadAV
O43 - CFD: 05/12/2016 - [] D -- C:\Users\probook\AppData\Roaming\SolidDocuments =>.SolidDocuments
O43 - CFD: 13/09/2016 - [] D -- C:\Users\probook\AppData\Roaming\Tencent =>.Superfluous.Tencent
O43 - CFD: 25/09/2016 - [] D -- C:\Users\probook\AppData\Roaming\TuneUp Software =>.TuneUp Software
O43 - CFD: 06/06/2017 - [] D -- C:\Users\probook\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 18/04/2017 - [] D -- C:\Users\probook\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 23/06/2017 - [] D -- C:\Users\probook\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 25/08/2016 - [] D -- C:\Users\probook\AppData\Local\ABBYY =>.ABBYY Software
O43 - CFD: 22/03/2017 - [] D -- C:\Users\probook\AppData\Local\Adobe =>.Adobe
O43 - CFD: 23/06/2017 - [] ASHD -- C:\Users\probook\AppData\Local\API32
O43 - CFD: 23/05/2016 - [0] SHD -- C:\Users\probook\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 23/09/2016 - [] D -- C:\Users\probook\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 29/08/2016 - [] D -- C:\Users\probook\AppData\Local\Aspell =>.Aspell Dictionaries
O43 - CFD: 11/11/2016 - [] D -- C:\Users\probook\AppData\Local\Avg =>.AVG Software
O43 - CFD: 19/11/2016 - [] D -- C:\Users\probook\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 14/09/2016 - [] D -- C:\Users\probook\AppData\Local\CEF =>.CEF
O43 - CFD: 01/05/2017 - [] D -- C:\Users\probook\AppData\Local\Chromium =>.Chromium
O43 - CFD: 23/06/2017 - [] D -- C:\Users\probook\AppData\Local\ClassicShell =>.SourceForge
O43 - CFD: 20/05/2017 - [] D -- C:\Users\probook\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 02/10/2016 - [] D -- C:\Users\probook\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 15/08/2016 - [0] D -- C:\Users\probook\AppData\Local\DriverToolkit =>.Superfluous.DriverToolkit
O43 - CFD: 22/04/2017 - [0] D -- C:\Users\probook\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 23/08/2016 - [0] SHD -- C:\Users\probook\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr
O43 - CFD: 23/08/2016 - [0] SHD -- C:\Users\probook\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr
O43 - CFD: 24/03/2017 - [] D -- C:\Users\probook\AppData\Local\ESRI =>.ESRI
O43 - CFD: 23/05/2016 - [] D -- C:\Users\probook\AppData\Local\Google =>.Google
O43 - CFD: 23/05/2016 - [0] SHD -- C:\Users\probook\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 29/08/2016 - [] D -- C:\Users\probook\AppData\Local\Iceni
O43 - CFD: 09/04/2017 - [] D -- C:\Users\probook\AppData\Local\IIIQF =>.Scrabblo
O43 - CFD: 22/03/2017 - [] D -- C:\Users\probook\AppData\Local\Labcenter Electronics =>.Labcenter Electronics
O43 - CFD: 31/03/2017 - [] D -- C:\Users\probook\AppData\Local\LogicCircuit
O43 - CFD: 14/09/2016 - [] D -- C:\Users\probook\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 01/05/2017 - [] D -- C:\Users\probook\AppData\Local\Mail.Ru =>.Mail.Ru
O43 - CFD: 25/09/2016 - [] D -- C:\Users\probook\AppData\Local\MFAData =>.AVG Software
O43 - CFD: 07/04/2017 - [] D -- C:\Users\probook\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/01/2017 - [] D -- C:\Users\probook\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 14/04/2017 - [] D -- C:\Users\probook\AppData\Local\Moonchild Productions =>.Moonchild Productions
O43 - CFD: 28/07/2016 - [] D -- C:\Users\probook\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 10/04/2017 - [] D -- C:\Users\probook\AppData\Local\National Instruments =>.National Instruments
O43 - CFD: 01/05/2017 - [] D -- C:\Users\probook\AppData\Local\NetBoxLogs
O43 - CFD: 04/08/2016 - [] D -- C:\Users\probook\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 22/06/2017 - [] D -- C:\Users\probook\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [] D -- C:\Users\probook\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [0] D -- C:\Users\probook\AppData\Local\Real =>.RealNetworks Inc.
O43 - CFD: 07/10/2016 - [] D -- C:\Users\probook\AppData\Local\Stardock =>.Stardock
O43 - CFD: 23/06/2017 - [] D -- C:\Users\probook\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [0] SHD -- C:\Users\probook\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Users\probook\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 01/05/2017 - [0] D -- C:\Users\probook\AppData\Local\wupdate
O43 - CFD: 23/06/2017 - [] D -- C:\Users\probook\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 01/05/2017 - [] D -- C:\Users\probook\AppData\Local\Вoйти в Интeрнет
O43 - CFD: 01/05/2017 - [] D -- C:\Users\probook\AppData\Local\Поиcк в Интeрнете
O43 - CFD: 23/05/2016 - [0] D -- C:\Users\probook\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 16/08/2016 - [] RD -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 12/11/2016 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ChemLab Eval
O43 - CFD: 14/09/2016 - [0] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Démarrage =>.Microsoft Corporation
O43 - CFD: 21/11/2016 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GRAFAUTO
O43 - CFD: 10/04/2017 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HI-TECH Software =>.HI-TECH Software
O43 - CFD: 29/08/2016 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 22/08/2013 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 09/02/2017 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PDF Editeur 5.0
O43 - CFD: 31/12/2016 - [] RD -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [] RD -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 16/06/2017 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 13/09/2016 - [] D -- C:\Users\probook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/08/2016 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 23/05/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 30/09/2013 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/08/2016 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/11/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software
O43 - CFD: 12/11/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 25/10/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\MFAData =>.AVG Software
O43 - CFD: 25/03/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 25/09/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\AVG =>.AVG Software
O43 - CFD: 15/09/2016 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/03/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Solvusoft =>.Superfluous.Solvusoft

---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 211s
O45 - LFCP:[MD5.77036DB37DBEEE1B91F1D6F5715F9593] 23/06/2017 A -- C:\Windows\Prefetch\KMS SERVER SERVICE.EXE-79009524.pf =>HackTool.AutoKMS
O45 - LFCP:[MD5.D86420F9650E82D5C9A789EFE27D61D6] 08/06/2017 A -- C:\Windows\Prefetch\TENCENTDL.EXE-25D3B717.pf =>.Superfluous.Tencent

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer32.dll =>.Ivaylo Beltchev®

---\\ Image File Execution Options (16) - 2s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ Liste des pilotes du système (51) - 16s
O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows®
O58 - SDL:2015/07/11 11:55:20 A . (.Hewlett-Packard - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [53424] =>.Hewlett-Packard Company®
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows®
O58 - SDL:2016/03/24 12:07:14 A . (.AnvSoft Inc. - AnvSoft Virtual Audio Device.) -- C:\Windows\System32\drivers\anvsnddrv.sys [34416] =>.Anvsoft Inc.®
O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows®
O58 - SDL:2013/08/13 00:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation®
O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows®
O58 - SDL:2009/09/09 10:23:46 A . (.Intel Corporation - BIOS Update Driver.) -- C:\Windows\System32\drivers\flashud.sys [51712] =>.Intel Corporation
O58 - SDL:2015/07/11 11:55:18 A . (.Hewlett-Packard - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [40624] =>.Hewlett-Packard Company®
O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows®
O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products®
O58 - SDL:2015/11/12 20:05:48 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [1467912] =>.Intel(R) Rapid Storage Technology®
O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology®
O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows®
O58 - SDL:2016/10/17 16:35:48 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [223464] =>.Tonec Inc.®
O58 - SDL:2008/07/31 09:32:24 A . (.Infineon Technologies AG - Infineon Trusted Platform Module.) -- C:\Windows\System32\drivers\ifxtpm.sys [58880] =>.Infineon Technologies AG
O58 - SDL:2016/07/27 22:40:40 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [7946328] =>.Intel(R) pGFX®
O58 - SDL:2016/05/12 17:02:26 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [481768] =>.Intel(R) OWR®
O58 - SDL:2015/12/07 18:53:18 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [51704] =>.Intel(R) Wireless Display®
O58 - SDL:2014/02/03 08:46:42 A . (.Auteurs - Intel(R) Smart Connect Technology Device Dr.) -- C:\Windows\System32\drivers\ISCTD.sys [44744] =>.Intel CASE®
O58 - SDL:2015/12/07 18:53:18 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [39920] =>.Intel(R) Wireless Display®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows®
O58 - SDL:2015/11/19 11:39:00 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [935168] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/09/21 17:25:12 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\RtkBtfilter.sys [608520] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/12/18 07:48:30 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4712704] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/10/22 13:00:46 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [762072] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/12/07 11:20:20 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 39966.) -- C:\Windows\System32\drivers\rtwlane.sys [4471000] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows®
O58 - SDL:2015/07/22 07:19:38 A . (.Sunplus - AVStream.) -- C:\Windows\System32\drivers\SPUVCBv_x64.sys [701664] =>.Sunplus Innovation Technology Inc.®
O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [40664] =>.OpenVPN Technologies, Inc.®
O58 - SDL:2015/10/08 20:16:00 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverW8x64.sys [185600] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows®
O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows®
O58 - SDL:2015/08/12 20:57:18 A . (.HP - HP Wireless Button Driver.) -- C:\Windows\System32\drivers\WirelessButtonDriver64.sys [30544] =>.Hewlett-Packard Company®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (3) - 36s
O61 - LFC: 2017/06/23 17:37:00 RASH . (.Copyright © 2017.) -- C:\Users\probook\AppData\Local\API32\dllhost86.exe [83968]
O61 - LFC: 2017/06/23 17:32:24 A . (..) -- C:\Users\probook\Downloads\Programs\kaspersky_total_security.rar.exe [493002]
O61 - LFC: 2017/06/23 17:30:23 A . (..) -- C:\Users\probook\Downloads\Programs\krt.rar.exe [487744]

---\\ Associations Shell Spawning (11) - 3s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (12) - 2s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe =>.Opera Software AS®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software

---\\ Recherche d'infection sur les navigateurs (7) - 85s
O69 - SBI: C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\searchplugins\askcom.xml
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} - (Ask Search) - http://websearch.ask.com/ =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {FFEBBF0A-C22C-4172-89FF-45215A135AC7} - (Поиск@Mail.Ru) - http://go.mail.ru/
O69 - SBI: SearchScopes [HKCU] {ielnksrch} - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoH2TlPbfGRogFokz2uUAum6HNDZ_VcjC7HyzTomCVR3n6etV-tFBmgPoVkkIvovSgacx8uDoo9ltFs9pvPb6nbp1K00fP3cbVglwsYdMRfPhTjYKY0ea7DaYhl-8nxGV6X_1ExBL-HaVXHfCq0TGhfU6hPXslyK5gYsMYGtaQg,,&q={searchTerms} =>.Superfluous.Linkury
O69 - SBI: SearchScopes [HKLM] ielnksrch - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoH2TlPbfGRogFokz2uUAum6HNDZ_VcjC7HyzTomCVR3n6etV-tFBmgPoVkkIvovSgacx8uDoo9ltFs9pvPb6nbp1K00fP3cbVglwsYdMRfPhTjYKY0ea7DaYhl-8nxGV6X_1ExBL-HaVXHfCq0TGhfU6hPXslyK5gYsMYGtaQg,,&q={searchTerms} =>.Superfluous.Linkury
O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (36) - 4s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [208896] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [155136] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [155136] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [324608] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1083904] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [903168] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [107008] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [220672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [228864] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324096] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [81408] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [491520] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1576960] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [50688] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [201728] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [164352] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [101376] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [534528] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [223744] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [71680] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [433664] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [306688] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3678720] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1017856] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [629760] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [183296] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [90464] =>.Microsoft Windows®

---\\ Liste des exceptions du parefeu Windows (116) - 66s
O87 - FAEL: "{2FD3B1E7-A4EB-480B-9DC4-5D12D09900D3}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{FDDA51A5-CEE5-42DC-AE1B-C0487D547DC8}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{12C125AB-2BC5-4295-8B14-17B3BA82E3C7}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSServer.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{86BB3903-BA5A-4ADE-A889-4238C3E63664}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSServer.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{96A72E56-94BE-45FB-9B55-7B1D34D89C41}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{2AF9041B-D7FE-491F-A39B-0AD4677A7647}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\Service_KMS.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{436BA98F-F74E-4292-9A42-40DC2D31FAD1}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.)
O87 - FAEL: "{9F6C297D-BB3F-40E3-85BB-5617AED5D47E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{A29D6445-FD6B-42FE-A05F-DA70AFA96091}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) =>HackTool.KMSpico
O87 - FAEL: "{60F3B88B-BFFD-4984-8B87-EBF1639C0EB3}" [In-None-P6-TRUE] .(...) -- C:\Users\probook\AppData\Local\Temp\nseBBB6.tmp\QQPCDetector.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "{E933FBC2-D5DD-46FF-9C40-3BD7FAFDA0F9}" [In-None-P17-TRUE] .(...) -- C:\Users\probook\AppData\Local\Temp\nseBBB6.tmp\QQPCDetector.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "{A416B81B-6AEF-4F5A-9EA5-FA4758A0BE0E}" [In-None-P6-TRUE] .(...) -- C:\Users\probook\AppData\Local\Temp\recinstalldl\RecInst.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "{8EB6E47B-961C-4721-A721-FB7ED97AF426}" [In-None-P17-TRUE] .(...) -- C:\Users\probook\AppData\Local\Temp\recinstalldl\RecInst.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "{05F5B0CE-54B7-489F-822D-7F3EB156B6FE}" [In-None-P6-TRUE] .(.版权所有 (C) 2008 Tencent - QQDeskUpdate.) -- C:\Program Files (x86)\Tencent\QQPlayer\QQDeskUpdate.exe {7FC80871A66FE6B07D8CFCA5AF93014D} =>.Superfluous.Tencent
O87 - FAEL: "{1AD0F0E6-8742-4563-88AD-06DED3A70D28}" [In-None-P17-TRUE] .(.版权所有 (C) 2008 Tencent - QQDeskUpdate.) -- C:\Program Files (x86)\Tencent\QQPlayer\QQDeskUpdate.exe {7FC80871A66FE6B07D8CFCA5AF93014D} =>.Superfluous.Tencent
O87 - FAEL: "{4B119B5C-A324-4352-9F3C-B50F59A9CB02}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgdiagex.exe (.not file.)
O87 - FAEL: "{32234CDD-7EE6-447F-B2D7-31B3EF8F914A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgdiagex.exe (.not file.)
O87 - FAEL: "{AADC3489-DFE7-44D1-8510-E5F852CEBE28}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgmfapx.exe (.not file.)
O87 - FAEL: "{B4C91771-2283-46A4-A475-70F00FC5B2B9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgmfapx.exe (.not file.)
O87 - FAEL: "{51A7206D-71E6-4A2F-9CEE-448FCAF01789}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{3CBCF903-E106-4950-B998-053E9F7005B8}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{2272D792-C252-4B23-A98F-34A74ECBF12E}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{47EB0345-B790-44A7-B2E7-2A19812CC572}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{47B4D006-FCD9-4358-8FEA-A706B3504CDE}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{5E0FCD8E-13FA-40DB-85F9-B5FD039BD744}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{35ECC78D-1526-4A90-9B4F-A1D5BACDF01E}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E02ED48A-2E3F-4489-BF0F-6DC6DE720B4D}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{B2291277-4D24-4F1F-8D7F-44735EFD1A4A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{99E3E367-334D-4AF6-960F-8F49DB49B0DB}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{719AEAA2-F61C-4413-B019-38A5263CAD0B}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{4A347961-9FB1-4C33-9723-A983BD948C22}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{F9449556-120D-404A-93B7-DF751BAA88D3}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{EB3CDE79-5479-478E-82F4-629B176F0922}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{6D553F25-7806-4169-882C-D494026AAF1B}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{BDAD510B-B056-4A60-B230-4A39C08BD678}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{64F3E8A4-F6BF-4FB4-AA47-4A6E7229DFB2}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{FB9F7831-682C-48FA-9BAA-F192451A7FC4}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E900E68C-A3ED-4F53-854D-D3AFC6CCA286}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{6E02D329-074D-4E87-815E-FA264B6D1A17}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{62A64BB2-1FED-41BF-B93B-15522B96A38C}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{C230453A-27F8-4E35-BE13-4A8290FA689B}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{C121FF48-3F75-4B83-94C3-B3EB3C4EBFF1}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{08EAE953-3F87-4810-97C0-596B8D4A734A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{65B9D6F6-2D88-4D0D-BA8C-3981ECFDF2BE}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{55613D7B-7377-424C-B575-842BF7841F43}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgmfapx.exe (.not file.)
O87 - FAEL: "{F7F2C705-C6DF-4AA2-823A-BBD9105FAD04}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AVG\Av\avgmfapx.exe (.not file.)
O87 - FAEL: "{358E2AEC-C935-4AC0-BEDC-9631C3799B71}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{3D954544-0597-4078-AB99-4F371CD90C98}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{3CCDA6DD-20D8-4B1F-BB97-A760EE65F098}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E6C5A0AE-3D6A-4E82-AA4E-1B1E43E7053F}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E91F7FC6-1794-476F-8EC6-D931ED91DAC4}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{3E9A277C-A271-4522-959C-5B3893FFD2A6}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{7C9EF574-6572-4C15-A3DA-7AC7DBE60566}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{5F3C01F2-C803-4899-A0AB-A9E0289BD824}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{F96D6791-4FC1-42CB-86F2-5235F83E0438}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{5821E192-7339-49F8-BDCA-AFA919495DD4}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{0ADAD32E-9731-4EB3-8FAF-AA40B474FE5B}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{84E72484-5AE6-4EC3-A1BD-0EEB3617DBCB}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{DF27E8CF-A8F1-4B98-BC75-5AB6160B76A0}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E0CAF36D-DE56-4A66-9D85-C08541A118EC}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{44940351-C18D-4124-9B83-5C7D88CBE41C}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{6F19B024-7422-443B-B238-CEA23CFCF331}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{ABC2E8F4-635B-4C40-AE18-A39EA250DA4D}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E512F2E8-C6DA-4C56-A4A8-9770A45412B2}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{F174C62A-01BA-4593-985C-E75DAE446175}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{0DE36B02-4638-4066-81F3-942EC75471B7}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{EC6D434C-5B92-44DD-89DB-C7F10BF80745}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{D021C8AC-4F01-4BF5-98E4-1FF53D9ADE39}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E7DC98A2-E023-4029-A3D3-BF263DEBB899}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{AD3198D3-CA06-4486-8A1B-D93E6D250E04}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{1427A9B3-7467-4C20-8DA0-3126A8C7649C}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{642DEE65-B0A2-4F22-A957-9D5D39B41514}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{680299EB-9A37-4F68-B8C0-906D5B1A04E6}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{539821FF-9CD3-420B-B19A-24B6DA39BF5A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{0999E921-F4F1-4AC9-8BEF-932E9FDCD8AE}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{3768188B-6D2D-4B8D-A7D4-2F4D6B75015B}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{E697FDF3-FCF8-4918-8267-FB7FB163D327}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{166BB92C-FC2F-428D-9D9F-99B73D6FF93D}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{90786312-088C-4EEF-ACC7-9449305D27C2}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{100552D6-3421-40EC-B36B-B3B0CD405002}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{B0142DEF-B74E-459D-B492-1E4A1C920D83}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{800CEE31-C27B-46BB-A081-3CC91EBAB5C5}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{19C6D454-1FA0-44E6-94E9-E8DB2828DF3D}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{DEAE4592-3FB1-414E-9EBA-4E8DC90C74F6}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{CE4698A8-6D04-4926-A89F-E3F2BBDD5E46}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{A2B41636-5621-4E1F-BE0A-59F00446772B}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{6DECFD26-39AA-4B07-A5CF-BAA20BD434BE}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{A368CDA7-9DFD-4855-980C-E6DAC9AA5307}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{7938C7D6-D1A6-4E5F-B55D-4137A7EA39B0}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{15FBE6D9-7F2F-4CE3-9C9D-B89F5621CA59}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{2A56CF63-F889-4547-B938-9BECD795B296}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{95E889DB-F52C-4E77-A86A-9B91F26916F0}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{F51BA1CF-D6EE-46A8-BE03-1CC4CF4E9A5D}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{0559CF4F-9F54-4369-8FB9-8925DB6D4699}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{212B770C-C655-4C40-9922-81B4BB43BA9F}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{892BF6C2-211B-4854-9D97-2FFD7C7016CC}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{5A35505B-FB2E-4138-ACBA-ABCB5EC011C6}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{B1A739DE-A4CC-4814-9DA6-AEA9ACD75510}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{AEF6F77B-A569-4C09-AC5B-5AD316B78EE5}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{76A06DA2-326F-4FC8-BF1E-8B2E3522E081}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{1B6F7536-443E-4ACC-830A-28F02632A622}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{A4A483AA-3302-429E-AE81-D2E8B0A2D236}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{A3B14478-53E0-4C5A-8A6A-8A2CF12A8D92}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{653BD562-36BA-4A59-B730-0C6E90F71F2A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{6CFF5F7B-9F75-4CB2-9C0C-484EDD84CE79}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{FF6DC239-8EB2-4354-A3BE-C669B05E09A8}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{BB3AD192-D84D-448D-88BC-53520FAD2728}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{F5B34448-C5A0-493B-A004-C31E2368499C}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{DE3C9940-C92A-49A8-AE9C-BFB02F27E91D}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{8A7A437B-47FC-42E2-A83B-10AA0B97DF1A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{F175F88F-A74A-4128-AB35-DB7EBEDEB620}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{A697B164-8899-4651-9664-61E02E9011B4}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{049DC8D8-8240-4613-86DC-2844CD40EB82}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{18720968-14FE-43B8-8242-591E47C90627}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{47706138-A1D6-437C-95F6-534BA0E46629}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer
O87 - FAEL: "{A157F585-7B26-4874-A49B-2864EFA27DF0}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe (.not file.) =>PUP.Optional.DllFilesFixer

---\\ Enumère les codes produits des logiciels (1) - 12s
O90 - PUC: "A28B4D68DEBAA244EB686953B7074FEF" . (.Ask Toolbar.) -- c:\program files (x86)\ask.com\fv_724f.ico =>Toolbar.AskTBar

---\\ Recherche des packages WindowsInstaller (1) - 4s
[MD5.] [WIS][2016/10/01 22:26:28] (.Ask.com - InstallShield® 2010 - Premier Edition 16.) -- C:\Windows\Installer\115412.msi [2983936] =>Toolbar.Ask

---\\ Liste des émulateurs de CD/DVD (MBR Hook) (6) - 10s
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\Microsoft Toolkit_RASAPI32 =>HackTool.WinActivator
HKLM\SOFTWARE\Microsoft\Tracing\Microsoft Toolkit_RASMANCS =>HackTool.WinActivator
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>.Superfluous.Tencent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASMANCS =>.Superfluous.Tencent

---\\ Scan Additionnel (193) - 2s
HKLM\SYSTEM\CurrentControlSet\Services\backlh =>PUP.Optional.LogicHandler
C:\ProgramData\Logic Cramble\set.exe =>PUP.Optional.LogicHandler
HKLM\SYSTEM\CurrentControlSet\Services\KMSServerService =>HackTool.KMSpico
C:\Windows\KMSServerService\KMS Server Service.exe =>HackTool.KMSpico
C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS
C:\Program Files (x86)\YoutubeAdBlockU\5l2Bzg2.dll =>PUP.Optional.YouTubeAdBlock
C:\Windows\Tasks\DriverToolkit Autorun.job =>.Superfluous.DriverToolkit
C:\Windows\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A.job =>PUP.Optional.YouTubeAdBlock
C:\Windows\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A2.job =>PUP.Optional.YouTubeAdBlock
C:\Windows\System32\Tasks\AutoKMSCustom =>HackTool.AutoKMS
C:\Windows\System32\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A =>PUP.Optional.YouTubeAdBlock
C:\Windows\System32\Tasks\Update Service for E3605470-291B-44EB-8648-745EE356599A2 =>PUP.Optional.YouTubeAdBlock
C:\Windows\System32\Tasks\{6D440B0D-5A97-4E63-95AA-3D7FD0D4BEB6} =>PUP.Optional.Mobogenie
C:\Windows\KMSServerService\KMS Server Service.exe =>HackTool.AutoKMS
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} =>.Superfluous.Orphan
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] =>.Superfluous.Orphan
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{9421DD08-935F-4701-A9CA-22DF90AC4EA6}] =>.Superfluous.Orphan
C:\Program Files (x86)\YoutubeAdBlockIE\k6PAtH8.dll =>PUP.Optional.YouTubeAdBlock
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E3605470-291B-44EB-8648-745EE356599A} =>PUP.Optional.YouTubeAdBlock
HKLM\Software\Classes\CLSID\{E3605470-291B-44EB-8648-745EE356599A} =>PUP.Optional.YouTubeAdBlock
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E3605470-291B-44EB-8648-745EE356599A} =>PUP.Optional.YouTubeAdBlock
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{E3605470-291B-44EB-8648-745EE356599A} =>PUP.Optional.YouTubeAdBlock
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mweshield =>PUP.Optional.WebShield
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AskTBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.AskTBar
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AkelPadApp =>Adware.Razy
C:\Program Files\ByteFence =>.Superfluous.ByteFence
C:\Program Files\KMSpico =>HackTool.KMSpico
C:\Program Files\My Web Shield =>PUP.Optional.WebShield
C:\Program Files (x86)\pccleanplus =>.Superfluous.PCCleanPlus
C:\Program Files (x86)\YoutubeAdBlockIE =>PUP.Optional.YouTubeAdBlock
C:\Program Files (x86)\YoutubeAdBlockU =>PUP.Optional.YouTubeAdBlock
C:\Program Files (x86)\YoutubeAdBlockUn =>PUP.Optional.YouTubeAdBlock
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverToolkit =>.Superfluous.DriverToolkit
C:\ProgramData\Tencent =>.Superfluous.Tencent
C:\Program Files (x86)\Common Files\Tencent =>.Superfluous.Tencent
C:\Users\probook\AppData\Roaming\AkelPadApp =>Adware.Razy
C:\Users\probook\AppData\Roaming\Tencent =>.Superfluous.Tencent
C:\Users\probook\AppData\Local\DriverToolkit =>.Superfluous.DriverToolkit
C:\Windows\Prefetch\KMS SERVER SERVICE.EXE-79009524.pf =>HackTool.AutoKMS
C:\Windows\Prefetch\TENCENTDL.EXE-25D3B717.pf =>.Superfluous.Tencent
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} =>Toolbar.Ask
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} =>.Superfluous.Linkury
HKLM\Software\Microsoft\Internet Explorer\SearchScopes\ielnksrch =>.Superfluous.Linkury
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{2FD3B1E7-A4EB-480B-9DC4-5D12D09900D3} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{FDDA51A5-CEE5-42DC-AE1B-C0487D547DC8} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{12C125AB-2BC5-4295-8B14-17B3BA82E3C7} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{86BB3903-BA5A-4ADE-A889-4238C3E63664} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{96A72E56-94BE-45FB-9B55-7B1D34D89C41} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{2AF9041B-D7FE-491F-A39B-0AD4677A7647} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{9F6C297D-BB3F-40E3-85BB-5617AED5D47E} =>HackTool.KMSpico
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A29D6445-FD6B-42FE-A05F-DA70AFA96091} =>HackTool.KMSpico
C:\Program Files (x86)\Tencent\QQPlayer\QQDeskUpdate.exe =>.Superfluous.Tencent
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{05F5B0CE-54B7-489F-822D-7F3EB156B6FE} =>.Superfluous.Tencent
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{1AD0F0E6-8742-4563-88AD-06DED3A70D28} =>.Superfluous.Tencent
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{51A7206D-71E6-4A2F-9CEE-448FCAF01789} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{3CBCF903-E106-4950-B998-053E9F7005B8} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{2272D792-C252-4B23-A98F-34A74ECBF12E} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{47EB0345-B790-44A7-B2E7-2A19812CC572} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{47B4D006-FCD9-4358-8FEA-A706B3504CDE} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{5E0FCD8E-13FA-40DB-85F9-B5FD039BD744} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{35ECC78D-1526-4A90-9B4F-A1D5BACDF01E} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E02ED48A-2E3F-4489-BF0F-6DC6DE720B4D} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{B2291277-4D24-4F1F-8D7F-44735EFD1A4A} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{99E3E367-334D-4AF6-960F-8F49DB49B0DB} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{719AEAA2-F61C-4413-B019-38A5263CAD0B} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{4A347961-9FB1-4C33-9723-A983BD948C22} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{F9449556-120D-404A-93B7-DF751BAA88D3} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{EB3CDE79-5479-478E-82F4-629B176F0922} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{6D553F25-7806-4169-882C-D494026AAF1B} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{BDAD510B-B056-4A60-B230-4A39C08BD678} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{64F3E8A4-F6BF-4FB4-AA47-4A6E7229DFB2} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{FB9F7831-682C-48FA-9BAA-F192451A7FC4} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E900E68C-A3ED-4F53-854D-D3AFC6CCA286} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{6E02D329-074D-4E87-815E-FA264B6D1A17} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{62A64BB2-1FED-41BF-B93B-15522B96A38C} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{C230453A-27F8-4E35-BE13-4A8290FA689B} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{C121FF48-3F75-4B83-94C3-B3EB3C4EBFF1} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{08EAE953-3F87-4810-97C0-596B8D4A734A} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{65B9D6F6-2D88-4D0D-BA8C-3981ECFDF2BE} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{358E2AEC-C935-4AC0-BEDC-9631C3799B71} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{3D954544-0597-4078-AB99-4F371CD90C98} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{3CCDA6DD-20D8-4B1F-BB97-A760EE65F098} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E6C5A0AE-3D6A-4E82-AA4E-1B1E43E7053F} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E91F7FC6-1794-476F-8EC6-D931ED91DAC4} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{3E9A277C-A271-4522-959C-5B3893FFD2A6} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{7C9EF574-6572-4C15-A3DA-7AC7DBE60566} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{5F3C01F2-C803-4899-A0AB-A9E0289BD824} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{F96D6791-4FC1-42CB-86F2-5235F83E0438} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{5821E192-7339-49F8-BDCA-AFA919495DD4} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{0ADAD32E-9731-4EB3-8FAF-AA40B474FE5B} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{84E72484-5AE6-4EC3-A1BD-0EEB3617DBCB} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{DF27E8CF-A8F1-4B98-BC75-5AB6160B76A0} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E0CAF36D-DE56-4A66-9D85-C08541A118EC} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{44940351-C18D-4124-9B83-5C7D88CBE41C} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{6F19B024-7422-443B-B238-CEA23CFCF331} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{ABC2E8F4-635B-4C40-AE18-A39EA250DA4D} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E512F2E8-C6DA-4C56-A4A8-9770A45412B2} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{F174C62A-01BA-4593-985C-E75DAE446175} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{0DE36B02-4638-4066-81F3-942EC75471B7} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{EC6D434C-5B92-44DD-89DB-C7F10BF80745} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{D021C8AC-4F01-4BF5-98E4-1FF53D9ADE39} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E7DC98A2-E023-4029-A3D3-BF263DEBB899} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{AD3198D3-CA06-4486-8A1B-D93E6D250E04} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{1427A9B3-7467-4C20-8DA0-3126A8C7649C} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{642DEE65-B0A2-4F22-A957-9D5D39B41514} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{680299EB-9A37-4F68-B8C0-906D5B1A04E6} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{539821FF-9CD3-420B-B19A-24B6DA39BF5A} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{0999E921-F4F1-4AC9-8BEF-932E9FDCD8AE} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{3768188B-6D2D-4B8D-A7D4-2F4D6B75015B} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{E697FDF3-FCF8-4918-8267-FB7FB163D327} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{166BB92C-FC2F-428D-9D9F-99B73D6FF93D} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{90786312-088C-4EEF-ACC7-9449305D27C2} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{100552D6-3421-40EC-B36B-B3B0CD405002} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{B0142DEF-B74E-459D-B492-1E4A1C920D83} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{800CEE31-C27B-46BB-A081-3CC91EBAB5C5} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{19C6D454-1FA0-44E6-94E9-E8DB2828DF3D} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{DEAE4592-3FB1-414E-9EBA-4E8DC90C74F6} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{CE4698A8-6D04-4926-A89F-E3F2BBDD5E46} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A2B41636-5621-4E1F-BE0A-59F00446772B} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{6DECFD26-39AA-4B07-A5CF-BAA20BD434BE} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A368CDA7-9DFD-4855-980C-E6DAC9AA5307} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{7938C7D6-D1A6-4E5F-B55D-4137A7EA39B0} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{15FBE6D9-7F2F-4CE3-9C9D-B89F5621CA59} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{2A56CF63-F889-4547-B938-9BECD795B296} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{95E889DB-F52C-4E77-A86A-9B91F26916F0} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{F51BA1CF-D6EE-46A8-BE03-1CC4CF4E9A5D} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{0559CF4F-9F54-4369-8FB9-8925DB6D4699} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{212B770C-C655-4C40-9922-81B4BB43BA9F} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{892BF6C2-211B-4854-9D97-2FFD7C7016CC} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{5A35505B-FB2E-4138-ACBA-ABCB5EC011C6} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{B1A739DE-A4CC-4814-9DA6-AEA9ACD75510} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{AEF6F77B-A569-4C09-AC5B-5AD316B78EE5} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{76A06DA2-326F-4FC8-BF1E-8B2E3522E081} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{1B6F7536-443E-4ACC-830A-28F02632A622} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A4A483AA-3302-429E-AE81-D2E8B0A2D236} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A3B14478-53E0-4C5A-8A6A-8A2CF12A8D92} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{653BD562-36BA-4A59-B730-0C6E90F71F2A} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{6CFF5F7B-9F75-4CB2-9C0C-484EDD84CE79} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{FF6DC239-8EB2-4354-A3BE-C669B05E09A8} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{BB3AD192-D84D-448D-88BC-53520FAD2728} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{F5B34448-C5A0-493B-A004-C31E2368499C} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{DE3C9940-C92A-49A8-AE9C-BFB02F27E91D} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{8A7A437B-47FC-42E2-A83B-10AA0B97DF1A} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{F175F88F-A74A-4128-AB35-DB7EBEDEB620} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A697B164-8899-4651-9664-61E02E9011B4} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{049DC8D8-8240-4613-86DC-2844CD40EB82} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{18720968-14FE-43B8-8242-591E47C90627} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{47706138-A1D6-437C-95F6-534BA0E46629} =>PUP.Optional.DllFilesFixer
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A157F585-7B26-4874-A49B-2864EFA27DF0} =>PUP.Optional.DllFilesFixer
c:\program files (x86)\ask.com\fv_724f.ico =>Toolbar.AskTBar
HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF =>Toolbar.AskTBar
HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF =>Toolbar.AskTBar
C:\Windows\Installer\115412.msi =>Toolbar.Ask
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.Superfluous.ByteFence
HKLM64\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.Superfluous.ByteFence
HKLM64\SOFTWARE\Microsoft\Tracing\Microsoft Toolkit_RASAPI32 =>HackTool.WinActivator
HKLM64\SOFTWARE\Microsoft\Tracing\Microsoft Toolkit_RASMANCS =>HackTool.WinActivator
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>.Superfluous.Tencent
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASMANCS =>.Superfluous.Tencent
C:\Users\probook\AppData\Roaming\Alphazumtip.exe =>Heuristic.Suspect
C:\Users\probook\AppData\Roaming\S--Strong.exe =>Heuristic.Suspect
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\CyberLink\YouCam\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\CyberLink\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\AVG\Zen\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\AVG\Av\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\log\AV16\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\IDS\config\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\IDS\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\avi\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\Cfg\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\lsdb\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\lsdb\prev\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\Chjw\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\$AVG\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\$AVG\$VAULT\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\AVG\AV\DB\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\AVG\Av\banners\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\defaults\preferences\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\defaults\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\chrome\content\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\chrome\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\chrome\skin\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Users\probook\AppData\Roaming\Mozilla\Firefox\Profiles\qjelmvnz.default\extensions\toolbar@ask.com\searchplugins\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\Solvusoft\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\Solvusoft\Tray\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\Solvusoft\Programs Bar\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\National Instruments\Shared\NIUninstaller\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\Program Files (x86)\National Instruments\Shared\MDF\Legal\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\Kaspersky Lab\ =>.Superfluous.Orphan
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders]:C:\ProgramData\Kaspersky Lab\UCPStorage\ =>.Superfluous.Orphan

---\\ Récapitulatif des éléments trouvés sur votre station (24) - 1s
https://nicolascoolman.eu/2017/01/04/pup-optional-logichandler/ =>PUP.Optional.LogicHandler
https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.YouTubeAdBlock
https://www.nicolascoolman.com/fr/pup-mobogenie/ =>PUP.Optional.Mobogenie
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.DriverToolkit
https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser
https://www.anti-malware.top/2016/08/02/superfluous-linkury/ =>.Superfluous.Linkury
https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.Superfluous.Tencent
https://www.nicolascoolman.com/fr/pup-salus/ =>PUP.Optional.Salus
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WebShield
https://www.nicolascoolman.com/fr/les-toolbars/ =>Toolbar.AskTBar
https://www.anti-malware.top/2016/11/04/adware-razy/ =>Adware.Razy
https://nicolascoolman.eu/2017/03/12/adware-installcore-2/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WidgiToolbar
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Downloader
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.Superfluous.ByteFence
https://www.anti-malware.top/2016/05/10/superfluous-pccleanplus/ =>.Superfluous.PCCleanPlus
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Solvusoft
https://www.nicolascoolman.com/fr/pup-optional-dllfilesfixer/ =>PUP.Optional.DllFilesFixer
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Orphan

~ Unselected Options: O82,
~ End of the scan, 34477 items in 12mn57s (1428)(0)

Publicité


Signaler le contenu de ce document

Publicité