cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.9.22.166 Par Nicolas Coolman (2017/09/22)
~ Démarré par moi (Administrator) (2017/09/24 11:54:36)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\moi\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\moi\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 15063) =>.Microsoft Corporation

---\\ Navigateurs Internet (3) - 0s
~ MFIE: Mozilla Firefox 55.0.2 (x86 fr)
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.608.15063.0

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : QRQ32
Windows License : OK
~ Windows Remaining Initializations Number : 998
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 30s
Avast Antivirus Gratuit v17.6.2310 (Protection)
Windows Defender (Activate) (Protection)

---\\ Surveillance de Logiciels (1) - 32s
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 3613.68 MB (30% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 324 GB (68%) free of 473 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: LORRIS
~ User Name: moi
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 324 GB free of 473 GB (System)

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 10s
[MD5.3AF6D6F752EDE013ED15DFD2D44F8EF9] - 01/06/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4848960] =>.Microsoft Windows®
[MD5.ECB702B8C5650381C0784F1EEABB97BC] - 01/06/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [68608] =>.Microsoft Corporation
[MD5.0242626678C83AE788C655C1990A3CC3] - 01/06/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [318232] =>.Microsoft Windows Publisher®
[MD5.9AA7516745C98B81FC10227FF2652391] - 01/06/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3307008] =>.Microsoft Corporation
[MD5.9CDA170849A4F66F4D68B3DBB3AC8394] - 01/06/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [706560] =>.Microsoft Corporation
[MD5.50CDF68A8EA8A2A9165CD573FA6C42D8] - 01/06/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [414208] =>.Microsoft Corporation
[MD5.0F9FA6A2D4EAE50393DCE473759A9845] - 01/06/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [661224] =>.Microsoft Windows®
[MD5.3F969D5ADEAB3284ABD500B37D74A8F8] - 01/06/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [508344] =>.Microsoft Windows®
[MD5.70E14A01193D817004C0F88E767BC59B] - 01/06/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.5A6D591D56791BA63CE73FCAD60D89A1] - 01/06/2017 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [610720] =>.Microsoft Windows®
[MD5.01733BEEE02E51F712330D5909BD701C] - 01/06/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [29088] =>.Microsoft Windows®
[MD5.B6E5AD7C83A5254DEE9D86023C0E5A81] - 01/06/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation
[MD5.ABE77AD954BC3D72F559CF0C381E50BC] - 01/06/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [160256] =>.Microsoft Corporation
[MD5.185A4519B7764F4DEF714D890A7A9FD2] - 01/06/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [150528] =>.Microsoft Corporation
[MD5.02B9639D9997E95CDF2F4C4F3BDCC73D] - 01/06/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86528] =>.Microsoft Corporation
[MD5.C6C8315E3262FAE460529C6DA2951682] - 01/06/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [115200] =>.Microsoft Corporation
[MD5.DCC05E5EAA580C97F13B434FAFACED85] - 01/06/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214528] =>.Microsoft Corporation
[MD5.F2AD1B72C5A6475FB5FF332E1980DF88] - 01/06/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [467352] =>.Microsoft Windows®
[MD5.BAD3C424788BC071C3EC82CFCDA954D2] - 01/06/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [305152] =>.Microsoft Corporation
[MD5.075F8C81457804BB79DD33FE69A96C57] - 01/06/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2327456] =>.Microsoft Windows®
[MD5.2CC6C325B271C7CA60F374F8F868CB45] - 01/06/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [97792] =>.Microsoft Corporation
[MD5.5279EC98F6218D29EADDFECCC0D80E9A] - 01/06/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [107008] =>.Microsoft Corporation
[MD5.53A01D3FDB701AC5D9DDE4140227E3D9] - 01/06/2017 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [183296] =>.Microsoft Corporation
[MD5.D74756DD1518D28A09CDA99696273FA4] - 01/06/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [119712] =>.Microsoft Windows®
[MD5.E3429DBBEA3965BB96E24B16EF4A2551] - 01/06/2017 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [397216] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (17) - 15s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE =>.Andrea Electronics®
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe =>.AMD
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc. - BlueStacks Log Rotator Service.) - C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe =>.BlueStack Systems, Inc.®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Leawo common service. (Leawo_service) . (...) - C:\Program Files (x86)\Common Files\Appkeys\yytool64.exe (.not file.)
O23 - Service: nordvpn-service (nordvpn-service) . (.Copyright © 2017 - nordvpn-service.) - C:\Program Files (x86)\NordVPN\nordvpn-service.exe =>.Datasec Holding Ltd.®
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
O23 - Service: SetupARService (SetupARService) . (.Copyright © 2012 - SetupAfterRebootService.) - C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe =>.Realtek Semiconductor Corp.
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
O23 - Service: TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 12.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare Passport.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.228\WsAppService.exe =>.Wondershare Technology Co.,Ltd®
O23 - Service: Wondershare Driver Install Service (WsDrvInst) . (...) - C:\Program Files (x86)\Wondershare\Wondershare Dr.Fone pour iOS\Library\DriverInstaller\DriverInstall.exe (.not file.)

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (23) - 312s
SR - Auto [01/06/2017] [ 317400] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [01/06/2017] [ 317400] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE =>.Andrea Electronics®
SR - Auto [01/06/2017] [ 317400] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher®
SR - Auto [01/06/2017] [ 317400] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Demand [01/06/2017] [ 317400] aswbIDSAgent (aswbIDSAgent) . (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe =>.AVAST Software s.r.o.®
SR - Auto [01/06/2017] [ 317400] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
SR - Auto [01/06/2017] [ 317400] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Demand [01/06/2017] [ 317400] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\Bluestacks\HD-Service.exe =>.BlueStack Systems, Inc.®
SR - Auto [01/06/2017] [ 317400] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe =>.BlueStack Systems, Inc.®
SS - Demand [01/06/2017] [ 317400] BlueStacks Plus Android Service (BstHdPlusAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe =>.BlueStack Systems, Inc.®
SS - Auto [01/06/2017] [ 317400] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [01/06/2017] [ 317400] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [01/06/2017] [ 317400] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SS - Disabl [01/06/2017] [ 317400] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Auto [01/06/2017] [ 317400] nordvpn-service (nordvpn-service) . (.Copyright © 2017.) - C:\Program Files (x86)\NordVPN\nordvpn-service.exe =>.Datasec Holding Ltd.®
SS - Demand [01/06/2017] [ 317400] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.®
SR - Auto [01/06/2017] [ 317400] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
SS - Auto [01/06/2017] [ 317400] SetupARService (SetupARService) . (.Copyright © 2012.) - C:\Program Files (x86)\Realtek\Audio\SetupAfterRebootService.exe =>.Realtek Semiconductor Corp.
SS - Auto [01/06/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SS - Demand [01/06/2017] [ 317400] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [01/06/2017] [ 317400] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
SR - Auto [01/06/2017] [ 317400] TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
SS - Auto [01/06/2017] [ 317400] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.228\WsAppService.exe =>.Wondershare Technology Co.,Ltd®

---\\ Tâches planifiées en automatique (Registre) (24) - 43s
O40 - TASK: {057DB585-8786-4040-9889-AF28518A0683} [64Bits][\Advanced-PC-Care_Logon] - (...) -- C:\Program Files\Advanced-PC-Care\apc.exe (.not file.) [0] (.Orphan.) =>.SUP.AdvancedPCCare
O40 - TASK: {122121CD-D694-4CA9-BE42-8E1DF1215F72} [64Bits][\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320] =>.Apple Inc.®
O40 - TASK: {15A43139-C8FB-4F75-B894-B45A5AFC4FEC} [64Bits][\ytwCrdxEYP2G] - (. - ytwCrdxEYP2G.) -- ytwcrdxeyp2g.exe [0] =>Adware.Wizzcaster
O40 - TASK: {29E46E0C-2B35-4B77-91A3-9BD476748A2C} [64Bits][\{3729CAEC-ECE6-487C-A45D-256B1FB079AF}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\google\chrome\application\chrome.exe [1301848] =>.Google Inc®
O40 - TASK: {37B82B0B-2EDC-4EC7-A43F-6C841E1BC191} [64Bits][\8e582091e04489bc5a75bce9742b08bd] - (.moi - .) -- sc start 8e582091e04489bc5a75bce9742b08bd [0]
O40 - TASK: {46CC2A19-8911-4AE2-A626-4DFB0F76A182} [64Bits][\Opera scheduled Autoupdate 1499187961] - (.LORRIS\moi - Mettre Opera à jour automatiquement..) -- C:\Users\moi\AppData\Local\Programs\Opera\launcher.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {4F912FC3-A76F-4587-8DD4-4213164B7E55} [64Bits][\{7D455F16-884D-4E29-A7F4-D6D08EAB05CA}] - (...) -- C:\Program Files (x86)\Common Files\Ronstock\uninstall.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {508FF55A-8C42-4698-9477-7AE65F4CFD91} [64Bits][\{94A1AC37-F110-42F1-81C0-D2D07A75F39D}] - (...) -- C:\Program Files\ByteFence\ByteFence.exe (.not file.) [0] (.Orphan.) =>.SUP.ByteFence
O40 - TASK: {54949D6A-F1AA-4CFD-AEFB-8BE883A4757E} [64Bits][\Updater_Online_Application] - (.WORKGROUP\LORRIS$ - .) -- C:\Program Files (x86)\Microleaves\Online Application\Online Application Updater.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {62EFF016-97B7-49C1-A77A-FE74E3E11F5F} [64Bits][\{7BC6BFFC-8559-4352-8B41-2CCD0CDFCB5F}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\google\chrome\application\chrome.exe [1301848] =>.Google Inc®
O40 - TASK: {690B49B5-F8A7-4D9C-9474-12B80625A076} [64Bits][\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2388056] =>.AVAST Software s.r.o.®
O40 - TASK: {69BAF7CB-8A15-4D1E-A07C-BFACB5BCEFBE} [64Bits][\{1BB229ED-B88F-4D96-B42F-03030CC88DA4}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\google\chrome\application\chrome.exe [1301848] =>.Google Inc®
O40 - TASK: {7E4E2EEB-2C19-48C0-9E20-6161870E8C14} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
O40 - TASK: {7F29B5DB-7DB3-42A3-9A58-8C205AA815A1} [64Bits][\SafeZone scheduled Autoupdate 1502743906] - (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [1057824] =>.AVAST Software s.r.o.®
O40 - TASK: {87E05A6E-4BAC-4FD6-9D06-4CD5DCA15311} [64Bits][\Online Application V2G1] - (.WORKGROUP\LORRIS$ - .) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe (.not file.) [0] (.Orphan.) =>.SUP.Microleaves
O40 - TASK: {93DDABE3-9F7D-4BE5-82A6-69A173E53FB1} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc®
O40 - TASK: {9BA36F23-47B4-44D8-9C00-01309AE2BCEF} [64Bits][\Opera scheduled Autoupdate 1487598990] - (.ki\moi - Mettre Opera à jour automatiquement..) -- C:\Users\moi\AppData\Local\Programs\Opera\launcher.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {9CA394A7-58ED-4515-9B0A-411FAF049AD6} [64Bits][\Online Application V2G2] - (.WORKGROUP\LORRIS$ - .) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe (.not file.) [0] (.Orphan.) =>.SUP.Microleaves
O40 - TASK: {A91F61CD-E266-4E0B-A054-8A38D26D6914} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1165920] =>.Adobe Systems, Incorporated®
O40 - TASK: {B67F7D89-0C3C-4C5A-8D46-6E70BA830B5A} [64Bits][\{B226164F-2294-428B-90CB-B771386051C1}] - (...) -- C:\Users\moi\AppData\Roaming\Nox\bin\Nox_unload.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {D2DDE435-BED4-4194-80FF-4CF6B006AFF4} [64Bits][\Online Application V2G3] - (.WORKGROUP\LORRIS$ - .) -- C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe (.not file.) [0] (.Orphan.) =>.SUP.Microleaves
O40 - TASK: {D783F94E-5E6E-4E04-A4E3-AE6B46008E29} [64Bits][\{E45A16EB-151F-4AF7-A8A8-71614E3A6ECE}] - (...) -- C:\Users\moi\AppData\Local\{A8979ECB-8C3F-F273-E1A7-D79BC5CF2B03}\uninst.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {F98CD36F-2C2C-4C7B-9CB2-BEB448CF9355} [64Bits][\Opera scheduled suite Autoupdate 1487599054] - (.ki\moi - Keeps Opera Browser Assistant up to date.) -- C:\Users\moi\AppData\Local\Programs\Opera\launcher.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O40 - TASK: {FF4411C6-C3E8-4593-B4CF-EBEE34C49099} [64Bits][\SoftUpgrade] - (...) -- C:\Program Files (x86)\SoftUpgrade\softup.exe (.not file.) [0] (.Orphan.) =>.SUP.Elex

---\\ Applications lancées au démarrage du système (20) - 11s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [MouseDriver] . (. - Windows Defender notification icon.) -- TiltWheelMouse.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [RtHDVBg] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [NordVPN] . (.NordVPN - NordVPN.) -- C:\Program Files (x86)\NordVPN\NordVPN.exe =>.Datasec Holding Ltd.®
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\steam.exe =>.Valve®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (. - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-3754130952-2800011334-1616764230-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-3754130952-2800011334-1616764230-1001\..\Run: [NordVPN] . (.NordVPN - NordVPN.) -- C:\Program Files (x86)\NordVPN\NordVPN.exe =>.Datasec Holding Ltd.®
O4 - HKUS\S-1-5-21-3754130952-2800011334-1616764230-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\steam.exe =>.Valve®
O4 - HKUS\S-1-5-21-3754130952-2800011334-1616764230-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-3754130952-2800011334-1616764230-1001\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.®

---\\ Google Chrome, Démarrage,Recherche,Extensions (13) - 3s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ui.ff.avast.com =>.Avast Software s.r.o
G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://sstats.adobe.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
G2 - GCE: Preference [User Data\Default][icfhggboopebcohpcffdgnbmodalpbic]
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.eyeo GmbH {AdBlock Plus}
G2 - GCE: Preference [User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat}
G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (15) - 26s
P2 - EXT FILE: (.Tables - .) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\378507@extcorp.net.xpi =>Adware.CloudAtlas
P2 - EXT FILE: (.Microsoft Corporation - Bing Search.) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\bingsearch.full@microsoft.com.xpi =>.Microsoft Corporation
P2 - EXT FILE: (.Avast SafePrice - Avast SafePrice - safe shopping extens.) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\sp@avast.com.xpi =>.Avast SafePrice
P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\wrc@avast.com.xpi =>.Avast Online Security
P2 - EXT FILE: (.Bing - Bing. Search by Microsoft..) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\searchplugins\bing-.xml =>.Bing
P2 - EXT FILE: (.Yahoo! - Yahoo Search.) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\searchplugins\yahoo_ff.xml =>.Yahoo!
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\clicktoplay-rollout@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT: (.Quick Searcher - 'Quick Searcher' extansion is used for simplify th.) -- C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233 =>.SUP.Extension

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (19) - 3s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoH_F-zjl_VoQxUNiHBENA421zzi7q5dl2D_-NsT4MNkG8-R4d4wim6QnrV0FAQzhM6wqO3rqY8RiVt-pI1ObiNQ8z5rbfxA1PfBc4hBxA-zybF_u-jP-HRj8IbS8qLLbCEZ4zVFojeR2_qljyX4i7xDrOnVyeuV6-G37DgRrZw,, =>.SUP.Linkury
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh_f-zjl_voqxunihbena421zzi7q5dl2d_-nst4mnkg8-r4d4wim6qnrv0faqzhm6wqo3rqy8rivt-ltzq6zirbctwjbtmxddczva-gdmeuvpxeocrbxcfyyywopolzswfjmpwnpinrlnz36ps-b83v8w4tdl1fjonf1ldpna,,&q={searchterms} =>.SUP.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh_f-zjl_voqxunihbena421zzi7q5dl2d_-nst4mnkg8-r4d4wim6qnrv0faqzhm6wqo3rqy8rivt-ltzq6zirbctwjbtmxddczva-gdmeuvpxeocrbxcfyyywopolzswfjmpwnpinrlnz36ps-b83v8w4tdl1fjonf1ldpna,,&q={searchterms} =>.SUP.Linkury
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh_f-zjl_voqxunihbena421zzi7q5dl2d_-nst4mnkg8-r4d4wim6qnrv0faqzhm6wqo3rqy8rivt-ltzq6zirbctwjbtmxddczva-gdmeuvpxeocrbxcfyyywopolzswfjmpwnpinrlnz36ps-b83v8w4tdl1fjonf1ldpna,,&q={searchterms} =>.SUP.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh_f-zjl_voqxunihbena421zzi7q5dl2d_-nst4mnkg8-r4d4wim6qnrv0faqzhm6wqo3rqy8rivt-ltzq6zirbctwjbtmxddczva-gdmeuvpxeocrbxcfyyywopolzswfjmpwnpinrlnz36ps-b83v8w4tdl1fjonf1ldpna,,&q={searchterms} =>.SUP.Linkury
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-3754130952-2800011334-1616764230-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snoh_f-zjl_voqxunihbena421zzi7q5dl2d_-nst4mnkg8-r4d4wim6qnrv0faqzhm6wqo3rqy8rivt-ltzq6zirbctwjbtmxddczva-gdmeuvpxeocrbxcfyyywopolzswfjmpwnpinrlnz36ps-b83v8w4tdl1fjonf1ldpna,,&q={searchterms} =>.SUP.Linkury
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.15063.608 (WinBuild.160101.0800)) -- C:\Windows\SysWOW64\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (115)

---\\ Browser Helper Object de navigateur (BHO) (6) - 2s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_144\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software s.r.o.®
O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_144\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Raccourcis Global Startup (104) - 58s
O4 - GS\Desktop [Administrateur]: Auslogics Disk Defrag.lnk . (.Auslogics - Disk Defrag.) C:\Program Files (x86)\Auslogics\Disk Defrag\DiskDefrag.exe =>.Auslogics Labs Pty Ltd®
O4 - GS\Desktop [Administrateur]: cmd.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - GS\Desktop [Administrateur]: Multi-Drive.lnk . (...) C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O4 - GS\Desktop [Administrateur]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O4 - GS\Desktop [Administrateur]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\moi\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation
O4 - GS\Desktop [Administrateur]: Vuze Downloads - Raccourci.lnk . (...) C:\Users\moi\Documents\Vuze Downloads
O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\moi\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\moi\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [Administrateur]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - .) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\Quicklaunch [Administrateur]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [Administrateur]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH®
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\WINDOWS\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Nox (2).lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O4 - GS\TaskBar [Administrateur]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\moi\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [Administrateur]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\moi\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation
O4 - GS\Desktop [moi]: Auslogics Disk Defrag.lnk . (.Auslogics - Disk Defrag.) C:\Program Files (x86)\Auslogics\Disk Defrag\DiskDefrag.exe =>.Auslogics Labs Pty Ltd®
O4 - GS\Desktop [moi]: cmd.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - GS\Desktop [moi]: Multi-Drive.lnk . (...) C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O4 - GS\Desktop [moi]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O4 - GS\Desktop [moi]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\moi\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation
O4 - GS\Desktop [moi]: Vuze Downloads - Raccourci.lnk . (...) C:\Users\moi\Documents\Vuze Downloads
O4 - GS\Desktop [moi]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\moi\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [moi]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\moi\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [moi]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - .) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\Quicklaunch [moi]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\Quicklaunch [moi]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\sendTo [moi]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [moi]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [moi]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [moi]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH®
O4 - GS\sendTo [moi]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [moi]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\WINDOWS\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\TaskBar [moi]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [moi]: Nox (2).lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O4 - GS\TaskBar [moi]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Programs [moi]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\moi\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [moi]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [moi]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [moi]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\moi\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation
O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Avast Antivirus Gratuit.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software s.r.o.®
O4 - GS\CommonDesktop [Public]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks App Player.) C:\ProgramData\Bluestacks\BluestacksGameManager\BlueStacks.exe =>.BlueStack Systems, Inc.®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: KingRoot.lnk . (.KingRoot - KingRoot.) C:\Program Files (x86)\KingRoot\KingRoot.exe =>.KingRoot
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: NordVPN.lnk . (.NordVPN - NordVPN.) C:\Program Files (x86)\NordVPN\NordVPN.exe =>.Datasec Holding Ltd.®
O4 - GS\CommonDesktop [Public]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - .) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\CommonDesktop [Public]: PhotoStage - Créateur de diaporamas.lnk . (.NCH Software - PhotoStage - Créateur de diaporamas.) C:\Program Files (x86)\NCH Software\PhotoStage\photostage.exe =>.NCH Software®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.®
O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\CommonDesktop [Public]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe =>.TeamSpeak Systems GmbH®
O4 - GS\CommonDesktop [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\Programs [Public]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\moi\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\moi\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\moi\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\Root\Office16\MSACCESS.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\WINDOWS\Installer\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.®
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\Root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://www%2dsearching.com/ =>PUP.Optional.SearchingCom
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://www-searching.com/ =>PUP.Optional.SearchingCom
O4 - GS\ProgramsCommon [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive for Business.) C:\Program Files (x86)\Microsoft Office\Root\Office16\GROOVE.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\Root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PhotoStage - Créateur de diaporamas.lnk . (.NCH Software - PhotoStage - Créateur de diaporamas.) C:\Program Files (x86)\NCH Software\PhotoStage\photostage.exe =>.NCH Software®
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\Root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\Root\Office16\MSPUB.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Skype Entreprise 2016.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\Root\Office16\lync.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O4 - GS\ProgramsCommon [Public]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\Root\Office16\WINWORD.EXE =>.Microsoft Corporation®

---\\ Modification Domaine/Adresses DNS (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = numericable.fr =>.numericable
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2 =>.France Numéricable
O17 - HKLM\System\CCS\Services\Tcpip\..\{d493c8d2-b172-475f-af13-f53079a99846}: DhcpNameServer = 89.2.0.1 89.2.0.2 =>.France Numéricable
O17 - HKLM\System\CCS\Services\Tcpip\..\{d493c8d2-b172-475f-af13-f53079a99846}: DhcpDomain = numericable.fr =>.numericable

---\\ Protocole additionnel (27) - 4s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl®
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation

---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 1s
O20 - AppInit_DLLs: . (...) - C:\ProgramData\Hotfresh\Mathtom.dll (.not file.)

---\\ Logiciels installés (68) - 92s
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8C9AA2C1-D07A-48E8-9DD8-471A072947F4} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824237067} =>.Adobe Systems Incorporated
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {3D1290E6-1F77-46D5-A715-A56679C8D4E3} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D0E45DEC-F4B9-4370-A9DF-66837789C2EF} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8} =>.Apple Inc.
O42 - Logiciel: Auslogics Disk Defrag - (.Auslogics Labs Pty Ltd.) [HKLM][64Bits] -- {DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1 =>.Auslogics Labs Pty Ltd®
O42 - Logiciel: Avast Antivirus Gratuit - (.AVAST Software.) [HKLM][64Bits] -- Avast Antivirus =>.AVAST Software s.r.o.®
O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks =>.BlueStack Systems, Inc.®
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
O42 - Logiciel: Combined Community Codec Pack 64bit 2015-10-18 - (.CCCP Project.) [HKLM][64Bits] -- Combined Community Codec Pack 64bit_is1 =>.Open Source Developer, Jernej Simončič®
O42 - Logiciel: DragonBoost - (..) [HKCU][64Bits] -- 119
O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM][64Bits] -- {DF020713-7627-387D-8E62-A41807B5AAE2} =>.Google, Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {C510BB61-AE0B-4420-87AF-9CF646E86364} =>.Apple Inc.
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {89B08926-B965-43B5-8C71-C10433760B14} =>.Apple Inc.
O42 - Logiciel: Java 8 Update 101 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180101F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 101 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180101F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 121 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180121F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 121 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180121F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 131 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180131F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 131 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180131F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 144 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180144F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 144 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180144F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 71 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218071F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 71 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418071F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: KingRoot °æ±¾ 3.4.0.1142 - (.KingRoot.) [HKLM][64Bits] -- {FA3B7324-9EB4-4ADC-84D0-5461BE113832}_is1 =>.KingRoot
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 55.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 55.0.2 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {86EA7940-9ACF-11E6-9A6B-ACEBFA271E79} =>.MAGIX Computer Products Intl. Co.
O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {F6698AB0-1A2A-11E7-B816-C2A106E0D44C} =>.MAGIX Computer Products Intl. Co.
O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation
O42 - Logiciel: NordVPN - (.NordVPN.) [HKLM][64Bits] -- {399A1E19-38E5-40C5-8ACD-BF007782F59A} =>.NordVPN
O42 - Logiciel: NordVPN - (.NordVPN.) [HKLM][64Bits] -- NordVPN 6.6.11 =>.Datasec Holding Ltd.®
O42 - Logiciel: Nox APP Player - (.Duodian Technology Co. Ltd..) [HKLM][64Bits] -- Nox =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: OpenOffice 4.1.2 - (.Apache Software Foundation.) [HKLM][64Bits] -- {DCB1B348-C94E-4D6D-8CE0-7D9DA5CF663E} =>.Apache Software Foundation
O42 - Logiciel: Oracle VM VirtualBox 5.1.28 - (.Oracle Corporation.) [HKLM][64Bits] -- {11BAF690-37C7-4A56-B518-3696BD15592F} =>.Oracle Corporation
O42 - Logiciel: Package de pilotes Windows - Silicon Laboratories Inc. (silabser) Ports (1 - (.Silicon Laboratories Inc..) [HKLM][64Bits] -- E1147FA244B18EE02F4294E28EB7EA5D477F56F7 =>.Silicon Laboratories Inc.®
O42 - Logiciel: PhotoStage - Créateur de diaporamas - (.NCH Software.) [HKLM][64Bits] -- PhotoStage =>.NCH Software®
O42 - Logiciel: Python 2.7.13 - (.Python Software Foundation.) [HKLM][64Bits] -- {4A656C6C-D24A-473F-9747-3A8D00907A03} =>.Python Software Foundation
O42 - Logiciel: Python Launcher - (.Python Software Foundation.) [HKLM][64Bits] -- {323AC113-C6CE-4F99-842F-4936332D055A} =>.Python Software Foundation
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: SafeZone Stable 4.58.2552.909 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 4.58.2552.909 =>.AVAST Software s.r.o.®
O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.DEVGURU CO LTD®
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.40 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Smart Switch - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {74FA5314-85C8-4E2A-907D-D9ECCCB770A7} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Smart Switch - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7} =>.Samsung Electronics Co., Ltd.
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated®
O42 - Logiciel: Team Fortress 2 - (.Valve.) [HKLM][64Bits] -- Steam App 440 =>.Valve®
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH
O42 - Logiciel: TeamViewer 12 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer GmbH®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Vuze - (.Azureus Software, Inc..) [HKLM][64Bits] -- 8461-7759-5462-8226 =>.Azureus Software, Inc.®
O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst =>.Riverbed Technology, Inc.
O42 - Logiciel: WinRAR 5.40 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (133) - 92s
HKLM\SOFTWARE\Wow6432Node\2345Explorer
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD
HKLM\SOFTWARE\Wow6432Node\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI
HKLM\SOFTWARE\Wow6432Node\Auslogics =>.Auslogics
HKLM\SOFTWARE\Wow6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Wow6432Node\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\Wow6432Node\BSAddins
HKLM\SOFTWARE\Wow6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\Wow6432Node\CDDB =>.Cddb Software
HKLM\SOFTWARE\Wow6432Node\DuoDianOnline =>.DuoDian Online
HKLM\SOFTWARE\Wow6432Node\EFGSoft
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\IObit =>.IObit
HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Wow6432Node\Jawego =>.SUP.JawegoPartners
HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Leawo =>.Leawo
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\Magix =>.Magix
HKLM\SOFTWARE\Wow6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\mtHotfresh
HKLM\SOFTWARE\Wow6432Node\NCH Software =>.NCH Software
HKLM\SOFTWARE\Wow6432Node\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\Wow6432Node\NordVPN =>.NordVPN
HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\OpenOffice =>.SourceForge
HKLM\SOFTWARE\Wow6432Node\OpenVPN-GUI =>.OpenVPN Technologie
HKLM\SOFTWARE\Wow6432Node\Overwolf =>.Overwolf
HKLM\SOFTWARE\Wow6432Node\PC =>Adware.Wizzcaster
HKLM\SOFTWARE\Wow6432Node\Python =>.Python
HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\Syncios =>.AnvSoft Inc
HKLM\SOFTWARE\Wow6432Node\TeamSpeak 3 Client =>.TeamSpeak
HKLM\SOFTWARE\Wow6432Node\TeamViewer =>.TeamViewer
HKLM\SOFTWARE\Wow6432Node\TVInstallTemp =>.TeamViewer GmbH
HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve
HKLM\SOFTWARE\Wow6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\Wow6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\Wow6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\Wow6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\2345.com
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AkDrivers =>.Unknown
HKCU\SOFTWARE\Amigo
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\Avast Software =>.AVAST Software
HKCU\SOFTWARE\Azureus
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKCU\SOFTWARE\C84E
HKCU\SOFTWARE\Cain
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Convertir.co =>.convertir.Co
HKCU\SOFTWARE\CoreJpeg =>.Corel Corporation
HKCU\SOFTWARE\David Esperalta =>.David Esperalta
HKCU\SOFTWARE\DMGR1.25
HKCU\SOFTWARE\DuoDianApp
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\ElcomSoft =>.Elcomsoft
HKCU\SOFTWARE\FonePaw =>.FonePaw
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\Genius =>.Genius Games
HKCU\SOFTWARE\Genius2
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\IMDownloader =>.Legitimate
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Leawo =>.Leawo
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MAGIX =>.Magix
HKCU\SOFTWARE\Magnet =>.Magnet
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mine =>.Microsoft Corporation
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MPC-HC64 =>.MPC-HC Team
HKCU\SOFTWARE\msaver
HKCU\SOFTWARE\mtHotfresh
HKCU\SOFTWARE\NCH Software =>.NCH Software
HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nilings =>.Nilings
HKCU\SOFTWARE\NordVPN =>.NordVPN
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\OpenOffice =>.SourceForge
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Oracle =>.Oracle
HKCU\SOFTWARE\PC =>Adware.Wizzcaster
HKCU\SOFTWARE\Pinnacle Systems =>.Pinnacle Systems, Inc.
HKCU\SOFTWARE\Pixart =>.Pixart Imaging Inc
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Rtp =>.RTP Software
HKCU\SOFTWARE\Samsung =>.Samsung Electronics
HKCU\SOFTWARE\Settings =>.Samsung Electronics
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-239591ae0444
HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\Syncios =>.AnvSoft Inc
HKCU\SOFTWARE\Syncios Data Transfer =>.AnvSoft Inc
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TeamSpeak 3 Client =>.TeamSpeak
HKCU\SOFTWARE\TeamViewer =>.TeamViewer
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft

---\\ Contenu des dossiers Programmes (305) - 118s
O43 - CFD: 09/09/2017 - [0] D -- C:\Program Files\Advanced-PC-Care =>.SUP.AdvancedPCCare
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files\AMD =>.AMD
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 29/06/2016 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files\CloneDae for AHC
O43 - CFD: 29/01/2016 - [] AD -- C:\Program Files\Combined Community Codec Pack 64bit =>.CCCP
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 14/06/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 13/09/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 19/09/2017 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 19/09/2017 - [] AD -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 23/05/2017 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 20/08/2017 - [] D -- C:\Program Files\Oracle =>.Oracle
O43 - CFD: 12/09/2017 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 02/06/2017 - [] D -- C:\Program Files\SAMSUNG =>.Samsung Electronics
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 22/10/2016 - [] D -- C:\Program Files\TAP-Windows =>.OpenVPN Technologie
O43 - CFD: 03/09/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 16/08/2017 - [0] D -- C:\Program Files\Unlocker =>.Cedrick Collomb
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 19/08/2016 - [] AD -- C:\Program Files\Vuze =>.Azureus Software, Inc.®
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 13/09/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 13/09/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 24/09/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 20/10/2016 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 14/08/2017 - [0] D -- C:\Program Files (x86)\Anvsoft =>.AnvSoft Inc
O43 - CFD: 19/09/2017 - [] AD -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
O43 - CFD: 31/10/2016 - [] D -- C:\Program Files (x86)\Auslogics =>.Auslogics
O43 - CFD: 24/08/2017 - [] D -- C:\Program Files (x86)\Bignox =>.BigNox
O43 - CFD: 09/08/2016 - [] D -- C:\Program Files (x86)\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 29/06/2016 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 13/06/2017 - [] D -- C:\Program Files (x86)\Cain
O43 - CFD: 19/09/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 31/10/2016 - [0] D -- C:\Program Files (x86)\ConsumerSoft =>.ConsumerSoft
O43 - CFD: 09/09/2017 - [] D -- C:\Program Files (x86)\Convertisseur MP3 =>.Legitimate
O43 - CFD: 18/12/2016 - [] D -- C:\Program Files (x86)\Doulci iCloud
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files (x86)\FonePaw =>.FonePaw
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 24/10/2016 - [] D -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 13/09/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files (x86)\IObit =>.IObit
O43 - CFD: 31/08/2017 - [] D -- C:\Program Files (x86)\IVT Corporation =>.IVT Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 18/06/2017 - [] D -- C:\Program Files (x86)\Kepard
O43 - CFD: 24/10/2016 - [] AD -- C:\Program Files (x86)\KingRoot =>.Kingosoft Technology Ltd
O43 - CFD: 19/09/2017 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] AD -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 24/08/2017 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 29/01/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 15/06/2017 - [] AD -- C:\Program Files (x86)\MSXML 4.0 =>.Microsoft Corporation
O43 - CFD: 04/07/2017 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software
O43 - CFD: 24/08/2017 - [] AD -- C:\Program Files (x86)\NordVPN =>.Datasec Holding Ltd.®
O43 - CFD: 24/08/2017 - [] D -- C:\Program Files (x86)\Nox =>.FFmpeg Project
O43 - CFD: 29/01/2016 - [] AD -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org
O43 - CFD: 22/10/2016 - [0] D -- C:\Program Files (x86)\OpenVPN Technologies =>.OpenVPN Technologies
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files (x86)\ProxyGate =>.SUP.GoldClick
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 24/10/2016 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics
O43 - CFD: 06/09/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 12/09/2017 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games
O43 - CFD: 14/07/2017 - [] AD -- C:\Program Files (x86)\TeamSpeak 3 Client =>.TeamSpeak
O43 - CFD: 03/09/2017 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 12/09/2017 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 23/05/2017 - [] D -- C:\Program Files (x86)\VEGAS =>.VEGAS
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 13/09/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 02/09/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 13/09/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 25/03/2017 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology
O43 - CFD: 06/09/2017 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 02/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 13/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 12/09/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced-PC-Care =>.SUP.AdvancedPCCare
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>.Auslogics
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software
O43 - CFD: 13/06/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cain
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Combined Community Codec Pack 64bit =>.CCCP
O43 - CFD: 04/07/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 05/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc.
O43 - CFD: 19/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kepard
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KingRoot =>.Kingosoft Technology Ltd
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 12/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NordVPN =>.NordVPN
O43 - CFD: 03/09/2017 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2 =>.SourceForge
O43 - CFD: 21/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox =>.Oracle
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7 =>.Python
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung =>.Samsung Electronics
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client =>.TeamSpeak
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 06/09/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare
O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 29/06/2016 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 29/06/2016 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 03/09/2017 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 31/10/2016 - [] D -- C:\ProgramData\Auslogics =>.Auslogics
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 14/09/2016 - [] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc.
O43 - CFD: 03/09/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 25/07/2017 - [] D -- C:\ProgramData\Caphyon =>.Caphyon
O43 - CFD: 03/09/2017 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\FonePaw =>.FonePaw
O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Hotfresh
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\Hotfreshs
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\Leawo =>.Leawo
O43 - CFD: 15/06/2017 - [] D -- C:\ProgramData\MAGIX =>.Magix
O43 - CFD: 03/09/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 04/07/2017 - [] D -- C:\ProgramData\NCH Software =>.NCH Software
O43 - CFD: 25/07/2017 - [] D -- C:\ProgramData\NordVpn =>.NordVPN
O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 04/07/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 16/03/2016 - [] D -- C:\ProgramData\Pinnacle =>.Pinnacle Systems, Inc.
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 19/09/2017 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 24/10/2016 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics
O43 - CFD: 15/06/2017 - [0] D -- C:\ProgramData\simplitec =>.Simplitec
O43 - CFD: 06/09/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 18/03/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 03/09/2016 - [0] D -- C:\ProgramData\sozy
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 15/06/2017 - [] D -- C:\ProgramData\VEGAS =>.VEGAS
O43 - CFD: 20/03/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\ProgramData\WindSolutions =>.WindSolutions
O43 - CFD: 05/09/2017 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 16/08/2017 - [] D -- C:\ProgramData\{C1D504B6-4B97-8E70-CD51-103257139BFC}
O43 - CFD: 29/01/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 14/08/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc.
O43 - CFD: 20/09/2017 - [0] D -- C:\Program Files (x86)\Common Files\Appkeys
O43 - CFD: 04/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 14/08/2017 - [0] D -- C:\Program Files (x86)\Common Files\Apps =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [0] D -- C:\Program Files (x86)\Common Files\AV =>.Avast
O43 - CFD: 19/09/2017 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 16/08/2017 - [] D -- C:\Program Files (x86)\Common Files\IObit =>.IObit
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 19/09/2017 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Ronstock
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 06/09/2017 - [] AD -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 09/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games
O43 - CFD: 20/03/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 03/02/2016 - [] D -- C:\Users\moi\AppData\Roaming\.ascentia =>.Ascentia
O43 - CFD: 23/06/2017 - [] D -- C:\Users\moi\AppData\Roaming\.minecraft =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\321350f1b23a487c9d55df3ef5ead24f
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\7a6ad955abb641ddba8c385d02a23e84
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\ab03726f7a17469083a3092a61550510
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 03/02/2016 - [] D -- C:\Users\moi\AppData\Roaming\AMD =>.AMD
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 09/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Azureus
O43 - CFD: 14/09/2016 - [] D -- C:\Users\moi\AppData\Roaming\BitTorrent
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\com.leawo.imediago
O43 - CFD: 09/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Convertisseur MP3 =>.Legitimate
O43 - CFD: 29/06/2017 - [] D -- C:\Users\moi\AppData\Roaming\dclogs
O43 - CFD: 02/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\DS4Windows =>.DSDCS
O43 - CFD: 16/05/2017 - [] D -- C:\Users\moi\AppData\Roaming\Google =>.Google
O43 - CFD: 31/10/2016 - [] D -- C:\Users\moi\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 16/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\IObit =>.IObit
O43 - CFD: 15/02/2016 - [] D -- C:\Users\moi\AppData\Roaming\java =>.Oracle
O43 - CFD: 24/10/2016 - [] D -- C:\Users\moi\AppData\Roaming\KingRoot =>.Kingosoft Technology Ltd
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\Leawo =>.Leawo
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/11/2016 - [] D -- C:\Users\moi\AppData\Roaming\MAGIX =>.Magix
O43 - CFD: 03/09/2017 - [] SD -- C:\Users\moi\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 16/03/2016 - [] D -- C:\Users\moi\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 04/07/2017 - [] D -- C:\Users\moi\AppData\Roaming\NCH Software =>.NCH Software
O43 - CFD: 24/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\NordVPN =>.NordVPN
O43 - CFD: 03/09/2016 - [0] D -- C:\Users\moi\AppData\Roaming\Nox =>.FFmpeg Project
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 09/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 26/10/2016 - [] D -- C:\Users\moi\AppData\Roaming\Samsung =>.Samsung Electronics
O43 - CFD: 16/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\Skype =>.Skype
O43 - CFD: 15/06/2017 - [] D -- C:\Users\moi\AppData\Roaming\Sony =>.Sony
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Synaptics =>.Synaptics
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\SyncDroid =>.Games Software
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\Syncios =>.AnvSoft Inc
O43 - CFD: 15/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\tiger-k =>.Legitimate
O43 - CFD: 14/07/2017 - [] D -- C:\Users\moi\AppData\Roaming\TS3Client =>.TeamSpeak
O43 - CFD: 23/10/2016 - [] D -- C:\Users\moi\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Roaming\WindSolutions =>.WindSolutions
O43 - CFD: 09/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\winfo =>.SUP.AdvancedPCCare
O43 - CFD: 03/02/2016 - [] D -- C:\Users\moi\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 06/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Wondershare =>.Wondershare
O43 - CFD: 24/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Local\2345Explorer
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\53a51dafddfe4a1e95b2bc70d76082fa
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\5f8dad3a7ab246cbb6b30692168463be
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\a0926e9edef94c6d98ffcfeabcdc8c17
O43 - CFD: 05/09/2017 - [] D -- C:\Users\moi\AppData\Local\A0F415DD-5735-4F92-9B17-6570D2AE12D3.aplzod
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Local\Adobe =>.Adobe
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 05/09/2017 - [] D -- C:\Users\moi\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\Apple Inc =>.Apple Inc.
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\moi\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 09/08/2016 - [] D -- C:\Users\moi\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 29/01/2016 - [] D -- C:\Users\moi\AppData\Local\CEF =>.CEF
O43 - CFD: 03/09/2016 - [] D -- C:\Users\moi\AppData\Local\chromium =>.Chromium
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 06/09/2017 - [0] D -- C:\Users\moi\AppData\Local\DBG =>.DBG
O43 - CFD: 14/09/2016 - [0] D -- C:\Users\moi\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 16/03/2016 - [] D -- C:\Users\moi\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 02/09/2017 - [] D -- C:\Users\moi\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\FonePaw =>.FonePaw
O43 - CFD: 08/08/2016 - [] D -- C:\Users\moi\AppData\Local\GMap.NET =>.GMap.NET
O43 - CFD: 14/11/2016 - [] D -- C:\Users\moi\AppData\Local\Google =>.Google
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\moi\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/06/2017 - [] D -- C:\Users\moi\AppData\Local\IIIQF =>.Scrabblo
O43 - CFD: 25/07/2017 - [] D -- C:\Users\moi\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\Leawo =>.Leawo
O43 - CFD: 09/08/2016 - [] D -- C:\Users\moi\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 21/12/2016 - [] D -- C:\Users\moi\AppData\Local\Mega Limited =>.MEGA Limited
O43 - CFD: 05/09/2017 - [] D -- C:\Users\moi\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 06/09/2017 - [] D -- C:\Users\moi\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 25/07/2017 - [] D -- C:\Users\moi\AppData\Local\NordVPN =>.NordVPN
O43 - CFD: 25/08/2017 - [] D -- C:\Users\moi\AppData\Local\Nox =>.FFmpeg Project
O43 - CFD: 04/07/2017 - [0] D -- C:\Users\moi\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 20/09/2017 - [] D -- C:\Users\moi\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 05/09/2017 - [0] D -- C:\Users\moi\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 14/08/2016 - [] D -- C:\Users\moi\AppData\Local\PokemonGo =>.Games Software
O43 - CFD: 14/08/2017 - [] D -- C:\Users\moi\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 03/09/2016 - [] D -- C:\Users\moi\AppData\Local\Setup9816093
O43 - CFD: 09/09/2017 - [] D -- C:\Users\moi\AppData\Local\Steam =>.Steam Games
O43 - CFD: 15/08/2017 - [] D -- C:\Users\moi\AppData\Local\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 24/09/2017 - [] D -- C:\Users\moi\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\moi\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 28/01/2016 - [0] D -- C:\Users\moi\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 03/04/2017 - [] D -- C:\Users\moi\AppData\Local\Virus_Maker
O43 - CFD: 16/03/2016 - [0] D -- C:\Users\moi\AppData\Local\WMTools Downloaded Files =>.WMTools
O43 - CFD: 05/09/2017 - [] D -- C:\Users\moi\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 22/08/2017 - [] D -- C:\Users\moi\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 03/09/2016 - [] D -- C:\Users\moi\AppData\Local\{A8CA9E71-8D98-F307-E6AE-D4D53A7C29EB}
O43 - CFD: 29/01/2016 - [0] D -- C:\Users\moi\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 04/07/2017 - [] D -- C:\Users\moi\AppData\Local\Programs\Opera =>.Opera Software
O43 - CFD: 29/01/2016 - [0] D -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\2345王牌软件
O43 - CFD: 02/09/2017 - [] RD -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] RD -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 19/09/2017 - [] RD -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc.
O43 - CFD: 18/03/2017 - [] D -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 19/09/2017 - [] RD -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Syncios =>.AnvSoft Inc
O43 - CFD: 18/03/2017 - [] RD -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\moi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 20/03/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 20/03/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 19/09/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (11) - 4s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: ReadOnlyOverlayHandler Class [ OneDrive6] - {9AA2F32D-362A-42D9-9328-24A483E2CCC3}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\moi\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®

---\\ Image File Execution Options (18) - 3s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ Liste des pilotes du système (94) - 85s
O58 - SDL:2017/03/18 22:56:25 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107424] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows®
O58 - SDL:2015/08/01 09:51:28 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\WINDOWS\System32\drivers\amdacpksd.sys [315120] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2017/06/12 14:07:20 A . (.Advanced Micro Devices, Inc. - amdkmcsp sys.) -- C:\WINDOWS\System32\drivers\amdkmcsp.sys [95080] =>.Advanced Micro Devices Inc.®
O58 - SDL:2015/08/01 09:51:28 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [91400] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2017/06/12 14:07:22 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [239976] =>.Advanced Micro Devices Inc.®
O58 - SDL:2017/03/18 22:56:25 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259488] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27040] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132000] =>.Microsoft Windows®
O58 - SDL:2017/09/01 05:44:02 A . (.AVAST Software s.r.o. - IDS Application Activity Monitor Driver..) -- C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [320528] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:44:02 A . (.AVAST Software s.r.o. - Application Activity Monitor Helper Driver.) -- C:\WINDOWS\System32\drivers\aswbidsha.sys [198976] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:44:03 A . (.AVAST Software s.r.o. - Logging Driver.) -- C:\WINDOWS\System32\drivers\aswbloga.sys [343296] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:44:03 A . (.AVAST Software s.r.o. - Universal Driver.) -- C:\WINDOWS\System32\drivers\aswbuniva.sys [57736] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:45:02 A . (.AVAST Software - Avast HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [47016] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/09/01 05:44:21 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [41832] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:45:02 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [147784] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:45:01 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [110376] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:45:02 A . (.AVAST Software - Avast Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [84416] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/09/01 05:44:22 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1016384] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:45:02 A . (.AVAST Software - Avast self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [590880] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/19 17:48:57 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswstm.sys [199312] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/01 05:45:02 A . (.AVAST Software - Avast VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [361336] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/03/18 22:56:19 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [4233728] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2015/05/28 16:00:44 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [102912] =>.Advanced Micro Devices
O58 - SDL:2015/08/01 09:51:32 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [21637664] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/08/01 09:51:32 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [682016] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2017/03/18 22:56:25 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2016/07/14 02:47:38 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [610336] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2014/08/13 01:27:38 A . (.IVT Corporation. - Bluetooth HID BUS Driver.) -- C:\WINDOWS\System32\drivers\BtHidBus.sys [22568] =>.IVT CORPORATION®
O58 - SDL:2012/12/25 01:42:26 A . (.IVT Corporation. - Bluetooth PAN Network Bus Driver.) -- C:\WINDOWS\System32\drivers\btnetBus.sys [31480] =>.IVT CORPORATION®
O58 - SDL:2017/03/18 22:56:23 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533920] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [102816] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [347032] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T4 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [2104224] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:23 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419040] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64416] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:28 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [33280] =>.Intel(R) Corporation
O58 - SDL:2017/03/18 22:56:28 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation
O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [70656] =>.Intel Corporation
O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [85504] =>.Intel Corporation
O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165376] =>.Intel Corporation
O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [168448] =>.Intel Corporation
O58 - SDL:2017/03/18 22:56:23 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/03/18 22:56:19 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2017/03/18 22:56:26 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673184] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412064] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526240] =>.Microsoft Windows®
O58 - SDL:2012/12/25 01:45:48 A . (.IVT Corporation. - IVT Bluetooth Bus Device Driver.) -- C:\WINDOWS\System32\drivers\IvtBtBus.sys [27256] =>.IVT CORPORATION®
O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108960] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [123808] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [103328] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82848] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59808] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [64416] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575904] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842656] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63904] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108960] =>.Microsoft Windows®
O58 - SDL:2013/03/01 03:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.®
O58 - SDL:2017/03/18 22:56:25 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150432] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166304] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58784] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2016/06/15 08:02:46 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\ptun0901.sys [27136] =>.The OpenVPN Project
O58 - SDL:2015/01/15 08:42:24 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\WINDOWS\System32\drivers\Rt64win7.sys [977624] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/07/04 06:21:48 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4515584] =>.Realtek Semiconductor Corp®
O58 - SDL:2015/06/05 11:12:54 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [310528] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/05/19 09:02:50 A . (.Scarlet.Crush Productions - Scp Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\ScpVBus.sys [39168] =>.Bruce James®
O58 - SDL:2017/03/18 22:56:26 A . (...) -- C:\WINDOWS\System32\drivers\SDFRd.sys [31128] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44960] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81824] =>.Microsoft Windows®
O58 - SDL:2016/12/27 12:38:00 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [68704] =>.Synaptics Incorporated®
O58 - SDL:2016/12/27 12:38:02 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [72792] =>.Synaptics Incorporated®
O58 - SDL:2017/05/19 07:17:28 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [131984] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2017/05/19 07:17:30 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [166288] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2017/03/18 22:56:25 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31136] =>.Microsoft Windows®
O58 - SDL:2016/12/27 12:38:18 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [66144] =>.Synaptics Incorporated®
O58 - SDL:2016/12/27 12:38:22 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [910944] =>.Synaptics Incorporated®
O58 - SDL:2016/04/21 11:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project
O58 - SDL:2016/08/24 01:23:02 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc®
O58 - SDL:2017/03/29 14:21:42 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapnordvpn.sys [75088] {34B904AC4F7B9FCAF192B36D} =>.The OpenVPN Project
O58 - SDL:2013/04/09 19:42:06 A . (...) -- C:\WINDOWS\System32\drivers\t_mouse.sys [6144] =>.iBall
O58 - SDL:2015/11/06 01:23:52 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2017/09/13 11:04:46 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\VBoxDrv.sys [965984] =>.Oracle Corporation®
O58 - SDL:2017/09/13 11:04:46 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Host-Only Network Adapt.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [196040] =>.Oracle Corporation®
O58 - SDL:2017/09/13 11:04:30 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Lightweight Filter Driv.) -- C:\WINDOWS\System32\drivers\VBoxNetLwf.sys [206976] =>.Oracle Corporation®
O58 - SDL:2017/09/13 11:04:30 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\WINDOWS\System32\drivers\VBoxUSBMon.sys [149816] =>.Oracle Corporation®
O58 - SDL:2017/03/18 22:56:25 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166816] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305568] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32160] =>.Microsoft Windows®
O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®
O58 - SDL:2016/03/24 13:05:42 A . (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [31840] =>.Hewlett-Packard Company®
O58 - SDL:2015/09/16 05:29:46 A . (.BigNox Corporation - VirtualBox Support Driver.) -- C:\WINDOWS\System32\drivers\XQHDrv.sys [253384] =>.Duodian Online Technology Co. Ltd.®

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (16) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software

---\\ Recherche d'infection sur les navigateurs (4) - 69s
O69 - SBI: SearchScopes [HKCU] [64Bits]{2f23ab71-4ac6-41f2-a955-ea576e553146} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{C29A5EC3-ACEA-4BE9-82C5-F046C5770482} - (Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo! Inc.
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{2f23ab71-4ac6-41f2-a955-ea576e553146} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (48) - 6s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [189952] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [189952] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [303104] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1269248] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [934912] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [996864] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [138752] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\System32\iscsiexe.dll [150016] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [108032] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\System32\schedsvc.dll [877568] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\System32\wbem\WMIsvc.dll [221696] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [133120] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\System32\profsvc.dll [413184] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\WINDOWS\System32\sessenv.dll [385536] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [93184] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\System32\Windows.SharedPC.AccountManager.dll [192512] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1135104] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\WINDOWS\System32\NaturalAuth.dll [723968] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\System32\wlidsvc.dll [2153984] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [877568] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [1015296] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [536064] =>.Microsoft Corporation
O83 - Search Svchost Services: xbgm (xbgm) . (.Microsoft Corporation - Xbox Game Monitoring Service.) -- C:\WINDOWS\System32\xbgmsvc.dll [301216] =>.Microsoft Windows Publisher®
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\WINDOWS\System32\TokenBroker.dll [1052160] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\WINDOWS\System32\lfsvc.dll [43520] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\WINDOWS\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [104448] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [874496] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\WINDOWS\System32\mprdim.dll [490496] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [537600] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [306688] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [2445824] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1159680] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [612864] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\System32\dmwappushsvc.dll [55296] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\WINDOWS\System32\flightsettings.dll [699904] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\WINDOWS\System32\WpnService.dll [276480] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [385536] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\System32\XboxNetApiSvc.dll [1067008] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\System32\usocore.dll [681984] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [261632] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [233984] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [167424] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\WINDOWS\System32\XboxGipSvc.dll [18944] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\System32\appmgmts.dll [196096] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (22) - 30s
O87 - FAEL: "{D4781B37-F933-47F7-86FB-06AD92DD091D}" [In-None-P17-TRUE] .(...) -- C:\Program Files\DriversCloud.com\DriversCloud.exe (.not file.)
O87 - FAEL: "{4D547BCB-DD84-43C2-B47B-7070D54352F5}" [In-None-P6-TRUE] .(...) -- C:\Program Files\DriversCloud.com\DriversCloud.exe (.not file.)
O87 - FAEL: "{1C31195F-287C-4E1F-9441-D955DD240A29}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\cPhoneSDKCS.exe (.not file.)
O87 - FAEL: "{E80FB2DB-680B-473A-92DA-794429B9DD1A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\cPhoneSDKCS.exe (.not file.)
O87 - FAEL: "{B3FDD47F-82CA-4399-8FE9-73D1904E33E9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe (.not file.)
O87 - FAEL: "{7C9404AE-368B-4C35-91A4-6D243D44B241}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\IVT Corporation\BlueSoleil\BlueSoleilCS.exe (.not file.)
O87 - FAEL: "{6EFE7855-B5D5-446E-B35C-E0BC3AEF0964}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnvSoft\Syncios Data Transfer\SynciosTransfer.exe (.not file.)
O87 - FAEL: "{D1881618-D52E-4906-8BCC-DD120C03DD5B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Anvsoft\Syncios\pdt_syncios.exe (.not file.)
O87 - FAEL: "{02617EDE-09AD-4E00-AD71-C2E352434218}" [In-None-P17-TRUE] .(...) -- C:\Users\moi\AppData\Local\Programs\Opera\46.0.2597.26229\opera.exe (.not file.)
O87 - FAEL: "UDP Query User{DE8B10C9-1AB3-487E-AFCA-11EE7BAFF5C2}C:\program files (x86)\cain\cain.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\cain\cain.exe (.not file.)
O87 - FAEL: "TCP Query User{D8D582DD-2B7B-47E8-A342-8427F08868BE}C:\program files (x86)\cain\cain.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\cain\cain.exe (.not file.)
O87 - FAEL: "{314D8D50-587F-4189-8702-AED496122840}" [In-None-P17-TRUE] .(...) -- C:\Users\moi\AppData\Local\Programs\Opera\43.0.2442.806\opera.exe (.not file.)
O87 - FAEL: "UDP Query User{3DF7D219-90C4-4EE9-9990-F15A919624F5}C:\users\moi\desktop\pokesniper\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe" [In-None-P17-TRUE] .(...) -- C:\users\moi\desktop\pokesniper\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe (.not file.)
O87 - FAEL: "TCP Query User{463D94F3-1E4B-4BE6-A84A-1D8B50181461}C:\users\moi\desktop\pokesniper\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe" [In-None-P6-TRUE] .(...) -- C:\users\moi\desktop\pokesniper\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe (.not file.)
O87 - FAEL: "UDP Query User{DB149BAE-17A1-462D-BBAE-8AE257C6E849}C:\users\moi\desktop\pokesniper2\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe" [In-None-P17-TRUE] .(...) -- C:\users\moi\desktop\pokesniper2\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe (.not file.)
O87 - FAEL: "TCP Query User{28C0B527-AD89-4F3F-B9C7-B4617B493B5A}C:\users\moi\desktop\pokesniper2\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe" [In-None-P6-TRUE] .(...) -- C:\users\moi\desktop\pokesniper2\pogolocationfeeder.v0.1.8\pogolocationfeeder.gui.exe (.not file.)
O87 - FAEL: "{13D41142-3C9A-4B71-8455-3EAA16CA0B06}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe (.not file.)
O87 - FAEL: "{36DDDA38-E10B-47DB-A879-4354D0A107CD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe (.not file.)
O87 - FAEL: "{78AE0877-87FC-4AA8-A81B-3C55403A80D6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe (.not file.)
O87 - FAEL: "{DFAF588E-3D63-4E6C-93E9-2E5ED9D25134}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe (.not file.)
O87 - FAEL: "{B7A020AB-E226-4637-A8AA-C3A3404FB84E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe (.not file.)
O87 - FAEL: "{FC7D450A-5F2F-4226-86F6-5A1BD110E3C4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe (.not file.)

---\\ Scan Additionnel (12) - 128s
C:\WINDOWS\System32\Tasks\Advanced-PC-Care_Logon =>.SUP.AdvancedPCCare
C:\WINDOWS\System32\Tasks\ytwCrdxEYP2G =>Adware.Wizzcaster
C:\WINDOWS\System32\Tasks\{94A1AC37-F110-42F1-81C0-D2D07A75F39D} =>.SUP.ByteFence
C:\WINDOWS\System32\Tasks\Online Application V2G1 =>.SUP.Microleaves
C:\WINDOWS\System32\Tasks\Online Application V2G2 =>.SUP.Microleaves
C:\WINDOWS\System32\Tasks\Online Application V2G3 =>.SUP.Microleaves
C:\WINDOWS\System32\Tasks\SoftUpgrade =>.SUP.Elex
C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\378507@extcorp.net.xpi =>Adware.CloudAtlas
C:\Users\moi\AppData\Roaming\Mozilla\Firefox\Profiles\hualgota.default\extensions\mefhakmgclhhfbdadeojlkbllmecialg@chrome-store-foxified-1132576233 =>.SUP.Extension
C:\Program Files\Advanced-PC-Care =>.SUP.AdvancedPCCare
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced-PC-Care =>.SUP.AdvancedPCCare
C:\Users\moi\AppData\Roaming\winfo =>.SUP.AdvancedPCCare

---\\ Récapitulatif des éléments trouvés sur votre station (11) - 1s
https://www.anti-malware.top/2016/04/23/superfluous-advancedpccare/ =>.SUP.AdvancedPCCare
https://nicolascoolman.eu/2017/09/15/adware-wizzcaster/ =>Adware.Wizzcaster
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Microleaves
https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.SUP.Elex
https://nicolascoolman.eu/2017/08/10/adware-cloudatlas/ =>Adware.CloudAtlas
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Extension
https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>.SUP.Linkury
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SearchingCom
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.JawegoPartners

~ Unselected Options: O82,
~ End of the scan, 25137 items in 22mn21s (1181)(0)

Publicité


Signaler le contenu de ce document

Publicité