cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.11.28.204 Par Nicolas Coolman (2017/11/28)
~ Démarré par hp (Administrator) (2017/11/27 23:24:28)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\hp\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 32-bit (Build 15063) =>.Microsoft Corporation

---\\ Navigateurs Internet (4) - 0s
~ GCIE: Google Chrome v62.0.3202.94
~ MFIE: Mozilla Firefox 57.0 (x86 fr)
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.726.15063.0

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (1) - 9s
Windows Defender (Deactivate)

---\\ Surveillance de Logiciels (1) - 10s
~ Adobe Acrobat Reader DC - Français (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 15 Stepping 11, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2066.736 MB (48% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 95 GB (62%) free of 152 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: HP-PC
~ User Name: hp
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 95 GB free of 152 GB (System)

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (24) - 2s
[MD5.176EF3831ADD9AC33662B6D0CACBA74A] - 05/09/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4471888] =>.Microsoft Windows®
[MD5.F57886ACE1AB4972B0308F69B1A0029C] - 18/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [60928] =>.Microsoft Corporation
[MD5.878225BA34912B486A585E286704680F] - 28/07/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [216504] =>.Microsoft Windows Publisher®
[MD5.D5703CA7A3070185DEA091561668C988] - 02/11/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2859520] =>.Microsoft Corporation
[MD5.AB83E9ECD515DA9FA584D7BEFA9E0500] - 05/09/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [610816] =>.Microsoft Corporation
[MD5.B22AD46C2B25CD3702509E5176195BF0] - 18/03/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [403456] =>.Microsoft Corporation
[MD5.1F4909406532C2FFCBD3683A65F7198F] - 30/09/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [508344] =>.Microsoft Windows®
[MD5.70E14A01193D817004C0F88E767BC59B] - 18/03/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.FD5D312EAB2E57CAB7245A02B91C47EA] - 05/09/2017 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [498592] =>.Microsoft Windows®
[MD5.883E5FE9DE963844524EDA458C262D11] - 18/03/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [22944] =>.Microsoft Windows®
[MD5.5C85476E66A8C0E64413C49645E50774] - 18/03/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74240] =>.Microsoft Corporation
[MD5.628374594CFA6764E67F86D46CEC7BEA] - 18/03/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [117248] =>.Microsoft Corporation
[MD5.7851086E5188D976C9CD4DBDED399F4D] - 18/03/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [111616] =>.Microsoft Corporation
[MD5.C14A55F1079AFDB1F2E4165B42129FB0] - 22/07/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [68608] =>.Microsoft Corporation
[MD5.1BDF52F43A7F112A9E117236AF3309D2] - 18/03/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [89600] =>.Microsoft Corporation
[MD5.C33C560A42C158DBABCC67DF60341DAD] - 18/03/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [185856] =>.Microsoft Corporation
[MD5.741503D7A6EE4B5D3207DFED5CCF171E] - 18/03/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [412576] =>.Microsoft Windows®
[MD5.E874D401AEC8DE462256CF13C53ABA25] - 05/09/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [239616] =>.Microsoft Corporation
[MD5.2C0EF1DE781BC7382744AEE30F686363] - 02/11/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1972120] =>.Microsoft Windows®
[MD5.60C4D2254BF9EDDAF80776BC5C9DC428] - 18/03/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [81920] =>.Microsoft Corporation
[MD5.2FBAFDB8F2807B61D5FDA0995ECC7162] - 18/03/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [79360] =>.Microsoft Corporation
[MD5.CF822ED4ECE10FE1C53E1C490A4E2430] - 19/03/2017 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [130560] =>.Microsoft Corporation
[MD5.43168AD2A4D667F440A936A1C01ADB73] - 01/08/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [95648] =>.Microsoft Windows®
[MD5.74648E3F919A2CBA68BADBC8E6C7CC03] - 18/03/2017 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [349600] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (5) - 2s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
O23 - Service: Avast Firewall Service (avast! Firewall) . (.AVAST Software - Avast firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software s.r.o.®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 29s
SS - Auto [27/09/2017] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Demand [31/08/2017] [ 5830352] aswbIDSAgent (aswbIDSAgent) . (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\aswidsagent.exe =>.AVAST Software s.r.o.®
SR - Auto [31/08/2017] [ 275208] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
SR - Auto [31/08/2017] [ 322976] Avast Firewall Service (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.AVAST Software s.r.o.®
SS - Demand [10/07/2017] [ 369720] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\HD-LogRotatorService.exe =>.BlueStack Systems, Inc.®
SS - Auto [16/04/2015] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [16/04/2015] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Auto [29/07/2016] [ 3046688] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology®
SS - Demand [09/12/2016] [ 172488] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Disabl [27/06/2007] [ 279848] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe =>.Nero AG®
SS - Demand [01/05/2014] [ 22016] wampapache (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe =>.Apache Software Foundation
SS - Demand [01/05/2014] [10959360] wampmysqld (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe =>.MySQL

---\\ Tâches planifiées en automatique (Registre) (110) - 9s
O38 - TASK: {040BF123-6F2F-4F88-8C0E-5E262FB4F9C7}[\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup] - (.Microsoft Corporation - DLL du client de déploiement d’AppX.) -- C:\Windows\System32\AppxDeploymentClient.dll [519680] =>.Microsoft Windows®
O38 - TASK: {05225334-6B5A-4CC7-AE42-E5270DAC444B}[\Microsoft\Windows\WwanSvc\NotificationTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\WINDOWS\System32\WiFiTask.exe [347552] =>.Microsoft Windows®
O38 - TASK: {09E87E6F-928E-47D7-AC2F-FAD73196C244}[\microsoft\windows\applicationdata\appuriverifierdaily] - (.Microsoft Corporation - Vérificateur de l’inscription des gestionna.) -- C:\Windows\System32\AppHostRegistrationVerifier.exe [81920] =>.Microsoft Corporation
O38 - TASK: {0AA45072-A9A9-49CF-8051-B1A5E30B9E9B}[\Microsoft\Windows\Autochk\Proxy] - (.Microsoft Corporation - DLL de proxy Autochk.) -- C:\Windows\System32\acproxy.dll [10752] =>.Microsoft Corporation
O38 - TASK: {0AD1AB89-E2C3-4408-8345-06D9CD945D2E}[\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector] - (.Microsoft Corporation - Module de diagnostics des erreurs de disque.) -- C:\Windows\System32\dfdts.dll [38912] =>.Microsoft Corporation
O38 - TASK: {0B1C6989-6D5C-4E89-967F-AD4E7FE4DF80}[\Microsoft\Windows\Management\Provisioning\Logon] - (.Microsoft Corporation - Provisioning package runtime processing too.) -- C:\WINDOWS\system32\ProvTool.exe [51712] =>.Microsoft Corporation
O38 - TASK: {12B4582A-CECD-4C44-978B-936A9940605D}[\Microsoft\Windows\Media Center\MediaCenterRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {13550F2C-A475-475F-AE32-F8D7682F8C40}[\Microsoft\Windows\UpdateOrchestrator\Policy Install] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [28672] =>.Microsoft Corporation
O38 - TASK: {15503535-9D1B-4AA0-8719-ABD21BE05751}[\Microsoft\Windows\Time Zone\SynchronizeTimeZone] - (.Microsoft Corporation - TimeZone Sync Task.) -- C:\Windows\System32\tzsync.exe [61440] =>.Microsoft Corporation
O38 - TASK: {1575399D-D747-407C-9E60-9166C41F4A04}[\Microsoft\Windows\UpdateOrchestrator\Refresh Settings] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [28672] =>.Microsoft Corporation
O38 - TASK: {1A1D134B-071C-4499-953F-5F60FEACEF36}[\Microsoft\Windows\UNP\RunCampaignManager] - (.Microsoft Corporation - UNP CampaignManager.) -- C:\Windows\System32\UNP\UNPCampaignManager.exe [669024] =>.Microsoft Windows®
O38 - TASK: {1B233891-5A20-4E21-AA6A-97F8C1B60F21}[\Microsoft\Windows\Media Center\RegisterSearch] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {1F597F83-4134-4287-BAC1-9FA033B9D610}[\Microsoft\Windows\ApplicationData\DsSvcCleanup] - (.Microsoft Corporation - Data Sharing Service Maintenance Driver.) -- C:\Windows\System32\dstokenclean.exe [11264] =>.Microsoft Corporation
O38 - TASK: {2355B6E4-73A8-4C5B-ABE1-976EA5BB6096}[\avastBCLRestart_chrome.exe] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1323352] =>.Google Inc®
O38 - TASK: {25337DC0-11D8-4527-BDBD-5E30FA5BE002}[\Microsoft\Windows Defender\MP Scheduled Scan] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- c:\program files\windows defender\MpCmdRun.exe [379224] =>.Microsoft Corporation®
O38 - TASK: {2557E00F-2FED-4219-B7DC-86307C2A17CE}[\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\WINDOWS\system32\defrag.exe [179712] =>.Microsoft Corp.
O38 - TASK: {2EC21448-4817-4072-A317-C557F26769D4}[\Microsoft\Windows\Media Center\UpdateRecordPath] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {30905543-734D-4C32-A928-F5461D1BBF38}[\Microsoft\Windows\Application Experience\StartupAppTask] - (.Microsoft Corporation - DLL de tâche d’analyse de démarrage.) -- C:\Windows\System32\Startupscan.dll [16384] =>.Microsoft Corporation
O38 - TASK: {32F1F3AE-2B8C-4BB9-980B-AB6BBF77D4F2}[\Microsoft\Windows\Bluetooth\UninstallDeviceTask] - (.Microsoft Corporation - Tâche de désinstallation du périphérique Bl.) -- C:\Windows\System32\BthUdTask.exe [37888] =>.Microsoft Corporation
O38 - TASK: {33442B59-19E9-4CC8-A1BA-0A5D7F0E8C6A}[\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] - (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [73216] =>.Microsoft Corporation
O38 - TASK: {33E73EFD-848F-43BA-919A-AB548F3CCB7D}[\Microsoft\Windows\NlaSvc\WiFiTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\WINDOWS\System32\WiFiTask.exe [347552] =>.Microsoft Windows®
O38 - TASK: {362E5046-0574-45A9-9997-FF5BA3F49C49}[\Microsoft\Windows\Media Center\PBDADiscoveryW1] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {3750655B-7114-4C99-B012-E20767E922EC}[\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration] - (.Microsoft Corporation - This task initiates Office Background Task .) -- C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [24264] =>.Microsoft Corporation®
O38 - TASK: {3A66BE11-119C-4DFF-BB7B-7C3F05DBC6F5}[\Microsoft\Windows\WindowsUpdate\Scheduled Start] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\Windows\System32\sc.exe [60416] =>.Microsoft Corporation
O38 - TASK: {3C972B5C-86C3-438B-AD1F-ECCDA6D8BD49}[\Microsoft\Windows\Media Center\ActivateWindowsSearch] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {3DB9DF2F-0B22-469E-8576-41BAFCEB041C}[\Microsoft\Windows\Application Experience\ProgramDataUpdater] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\WINDOWS\system32\compattelrunner.exe [116120] =>.Microsoft Windows®
O38 - TASK: {3F44580C-845C-4F96-8F58-4EB581303F3A}[\Microsoft\Windows\UpdateOrchestrator\Reboot] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\WINDOWS\System32\MusNotification.exe [247808] =>.Microsoft Corporation
O38 - TASK: {4761C646-FC66-4F99-BB65-0F0873EFCFDC}[\Microsoft\Windows\Media Center\OCURActivate] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {48B9A43F-C0C5-42D0-AEDB-A647F4F952A2}[\Microsoft\Windows\Clip\License Validation] - (.Microsoft Corporation - Client License Platform migration tool.) -- C:\WINDOWS\System32\ClipUp.exe [1135336] =>.Microsoft Windows Publisher®
O38 - TASK: {4C7CD4A5-4D44-4DB9-BC3C-EF22DB6A51FE}[\Microsoft\Windows\Speech\SpeechModelDownloadTask] - (.Microsoft Corporation - Speech Model Download Executable.) -- C:\Windows\System32\speech_onecore\Common\SpeechModelDownload.exe [133120] =>.Microsoft Corporation
O38 - TASK: {4EA666C6-F8F1-4820-A2AF-90218167BFB9}[\Microsoft\Windows\UpdateOrchestrator\Schedule Scan] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [28672] =>.Microsoft Corporation
O38 - TASK: {4FAF1CB0-B659-4435-A23B-BABAF352F3BD}[\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\Windows\System32\compattelrunner.exe [116120] =>.Microsoft Windows®
O38 - TASK: {5643CE7A-F782-40F7-A9F2-36676031C481}[\Microsoft\Windows\Subscription\LicenseAcquisition] - (.Microsoft Corporation - Acquire License From Store.) -- C:\Windows\System32\ClipRenew.exe [128416] =>.Microsoft Windows®
O38 - TASK: {580D5161-01A5-4BA3-9158-FBFBF058A466}[\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] - (.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\System32\raserver.exe [108032] =>.Microsoft Corporation
O38 - TASK: {591AC7FF-CD6E-4D51-93B1-DA5592867528}[\Microsoft\Windows\UPnP\UPnPHostConfig] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\Windows\System32\sc.exe [60416] =>.Microsoft Corporation
O38 - TASK: {59C896C5-273A-440E-B28C-7B4E4C602BF3}[\Microsoft\Windows\WindowsUpdate\sihboot] - (.Microsoft Corporation - Client SIH.) -- C:\WINDOWS\System32\sihclient.exe [177664] =>.Microsoft Corporation
O38 - TASK: {5B7F650B-62E4-45B9-AE3B-2D829892D1B9}[\Microsoft\Windows\DiskCleanup\SilentCleanup] - (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\WINDOWS\system32\cleanmgr.exe [209920] =>.Microsoft Corporation
O38 - TASK: {5CFC6547-F84F-4299-A6D9-75E2E9304389}[\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\Windows\System32\MusNotification.exe [247808] =>.Microsoft Corporation
O38 - TASK: {6017028E-1109-40FB-A075-9CB197135BFA}[\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser] - (.Microsoft Corporation - Tâche de l’analyseur d’expérience de compte.) -- C:\Windows\System32\MbaeParserTask.exe [97792] =>.Microsoft Corporation
O38 - TASK: {62B50A0A-B032-4C57-A07F-DA9FB50DE8CC}[\Microsoft\Windows\Shell\FamilySafetyMonitor] - (.Microsoft Corporation - Moniteur du contrôle parental.) -- C:\Windows\System32\WpcMon.exe [1234000] =>.Microsoft Windows®
O38 - TASK: {62CE7572-3E16-4766-B788-BF428838C010}[\Microsoft\Windows\MUI\LPRemove] - (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\System32\lpremove.exe [53248] =>.Microsoft Corporation
O38 - TASK: {6321D395-0181-4283-9917-BF245CB3F472}[\Microsoft\Windows\Sysmain\WsSwapAssessmentTask] - (.Microsoft Corporation - Hôte de service Superfetch.) -- C:\Windows\System32\sysmain.dll [787456] =>.Microsoft Corporation
O38 - TASK: {63CDC9D8-58CF-435C-90DB-822378A747CE}[\Microsoft\Windows\Subscription\EnableLicenseAcquisition] - (.Microsoft Corporation - Acquire License From Store.) -- C:\WINDOWS\System32\ClipRenew.exe [128416] =>.Microsoft Windows®
O38 - TASK: {63CF6B40-EAC2-4AA4-8AD3-52413EB1E045}[\Microsoft\Windows\Location\Notifications] - (.Microsoft Corporation - Notification d'emplacement.) -- C:\Windows\System32\LocationNotificationWindows.exe [57344] =>.Microsoft Corporation
O38 - TASK: {6B7653A3-EF5B-43DE-8A69-476A7CDC3387}[\Microsoft\Windows\Media Center\mcupdate] - (...) -- C:\WINDOWS\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {6DF61F45-4A01-47EE-9E3B-D811E173446D}[\Microsoft\Office\Office ClickToRun Service Monitor] - (.Microsoft Corporation - Microsoft Office Click-to-Run Client.) -- C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [14649000] =>.Microsoft Corporation®
O38 - TASK: {6E87E35E-093B-4A51-B478-1EA6559F9CD4}[\Microsoft\XblGameSave\XblGameSaveTaskLogon] - (.Microsoft Corporation - XblGameSave Standby Task.) -- C:\WINDOWS\System32\XblGameSaveTask.exe [24576] =>.Microsoft Corporation
O38 - TASK: {71261290-99A4-4B03-843F-E2028F8C8550}[\Microsoft\Windows\SpacePort\SpaceManagerTask] - (.Microsoft Corporation - Storage Spaces Manager.) -- C:\WINDOWS\system32\spaceman.exe [28672] =>.Microsoft Corporation
O38 - TASK: {7135AB65-C102-40AF-8A95-750F84E26CA4}[\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\Windows\System32\MusNotification.exe [247808] =>.Microsoft Corporation
O38 - TASK: {713E1DD5-8F9C-43DA-8D10-FE4D6F9C764B}[\Microsoft\Windows\Media Center\PBDADiscoveryW2] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {73705A63-97F5-4D3B-965F-8F2E865A962D}[\Microsoft\Windows\UpdateOrchestrator\Combined Scan Download Install] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [28672] =>.Microsoft Corporation
O38 - TASK: {75220630-CE4E-42AA-A4D1-28A5197F8884}[\Microsoft\Windows\SpacePort\SpaceAgentTask] - (.Microsoft Corporation - Paramètres des espaces de stockage.) -- C:\Windows\System32\SpaceAgent.exe [111616] =>.Microsoft Corporation
O38 - TASK: {797930BC-B506-4F11-9896-4C928674405C}[\Microsoft\Windows\UpdateOrchestrator\Resume On Boot] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [28672] =>.Microsoft Corporation
O38 - TASK: {7B658A76-BF28-44D3-965B-27229A9D62D7}[\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver] - (.Microsoft Corporation - Outil de résolution des défaillances disque.) -- C:\Windows\System32\DFDWiz.exe [45568] =>.Microsoft Corporation
O38 - TASK: {807FD0B5-CE46-4ED2-AD0C-74DA63AB6A03}[\Microsoft\Windows\Media Center\PvrScheduleTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {81B50B84-8464-413A-9247-D593F1D19F21}[\Microsoft\Windows\Device Information\Device] - (.Microsoft Corporation - Device Census.) -- C:\Windows\System32\devicecensus.exe [30616] =>.Microsoft Windows®
O38 - TASK: {82824A2B-B0C1-4C8A-BBF2-C2B9A810C272}[\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-1150521578-218415679-3112026969-1000] - (.Alcatel Lucent - .) -- C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {82ABF6F1-3A4C-409A-B3E8-DAA142C3478A}[\microsoft\windows\applicationdata\appuriverifierinstall] - (.Microsoft Corporation - Vérificateur de l’inscription des gestionna.) -- C:\Windows\System32\AppHostRegistrationVerifier.exe [81920] =>.Microsoft Corporation
O38 - TASK: {833A148A-DCDE-4A47-97D2-5557F26A19FB}[\Microsoft\Windows\Media Center\PBDADiscovery] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {88667995-56C9-46EC-A769-BA53B6F10B85}[\Microsoft\Windows\DiskFootprint\Diagnostics] - (.Microsoft Corporation - DiskSnapshot.exe.) -- C:\WINDOWS\system32\disksnapshot.exe [68608] =>.Microsoft Corporation
O38 - TASK: {88742C4E-AF27-4EC0-AA61-61526B2F4601}[\Microsoft\Windows\UpdateOrchestrator\Maintenance Install] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [28672] =>.Microsoft Corporation
O38 - TASK: {892EEE51-0668-4943-97B3-E93ED0A62177}[\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {8A953B5F-512A-4EA2-A726-F34F9E659D17}[\Microsoft\Windows\WCM\WiFiTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\Windows\System32\wifitask.exe [347552] =>.Microsoft Windows®
O38 - TASK: {8E14BD2E-40C6-4C1A-BB45-747A93331858}[\Microsoft\Windows\Workplace Join\Automatic-Device-Join] - (.Microsoft Corporation - Outil de ligne de commande DSREG.) -- C:\Windows\System32\dsregcmd.exe [468992] =>.Microsoft Corporation
O38 - TASK: {95B38061-B57F-4CF4-A463-F4ACD9057D31}[\RealDownloaderRealUpgradeLogonTaskS-1-5-21-1150521578-218415679-3112026969-1000] - (.Alcatel Lucent - .) -- C:\Program Files\RealNetworks\RealDownloader\RealUpgrade.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {96C3DBFA-6294-4F6A-AC85-64C1643AB950}[\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask] - (.Microsoft Corporation - MDMAgent.) -- C:\Windows\System32\MDMAgent.exe [55296] =>.Microsoft Corporation
O38 - TASK: {96EEC010-93A6-48E9-8735-FD36676B8C96}[\Microsoft\Windows\DUSM\dusmtask] - (.Microsoft Corporation - DUSM Task.) -- C:\Windows\System32\dusmtask.exe [28160] =>.Microsoft Corporation
O38 - TASK: {97B046C2-28C2-4895-8FFC-3F65CE26E730}[\Microsoft\Office\Office Automatic Updates] - (.Microsoft Corporation - Microsoft Office Click-to-Run Client.) -- C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [14649000] =>.Microsoft Corporation®
O38 - TASK: {9808F5CB-878C-4680-81B2-FDC02567A9F6}[\AVAST Software\Avast settings backup] - (.AVAST Software - .) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {99A19F06-9AF3-4C49-BA4D-A0290D63D2DA}[\Microsoft\Windows\AppID\PolicyConverter] - (.Microsoft Corporation - AppID Policy Converter Task.) -- C:\Windows\System32\appidpolicyconverter.exe [116736] =>.Microsoft Corporation
O38 - TASK: {99C7D959-6A4F-49BA-AE4C-999915C34029}[\Microsoft\XblGameSave\XblGameSaveTask] - (.Microsoft Corporation - XblGameSave Standby Task.) -- C:\WINDOWS\System32\XblGameSaveTask.exe [24576] =>.Microsoft Corporation
O38 - TASK: {9AF4B3C6-760D-43A1-BA20-1DDA2DC6FB9F}[\Microsoft\Windows\Media Center\ReindexSearchRoot] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {9CCBCC4C-DF80-4843-B5B7-DBDBBAF1B0D0}[\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] - (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe [61952] =>.Microsoft Corporation
O38 - TASK: {9FB86356-B7C3-4F3F-BD91-D5C9F440E4D2}[\OneDrive Standalone Update Task-S-1-5-21-1150521578-218415679-3112026969-1000] - (.Microsoft Corporation - Standalone Updater.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [2296008] =>.Microsoft Corporation®
O38 - TASK: {A3D8D5B7-C656-409D-B339-74D2DA66345E}[\Microsoft\Windows\Media Center\OCURDiscovery] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {A55E47FF-8A63-4ADA-9945-6C8C466B3A6F}[\HPCustParticipation HP Deskjet 1010 series] - (.Hewlett-Packard Co. - HP Customer Participation..) -- C:\Program Files\HP\HP Deskjet 1010 series\Bin\HPCustPartic.exe [3976712] =>.Hewlett Packard®
O38 - TASK: {A6E1DFA0-72B1-4510-911C-6C48AC4C21BA}[\Microsoft\Windows\Defrag\ScheduledDefrag] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\WINDOWS\system32\defrag.exe [179712] =>.Microsoft Corp.
O38 - TASK: {ADC62FAF-7BF5-429A-BB83-C056880D9BB3}[\Microsoft\Windows\Media Center\PeriodicScanRetry] - (...) -- C:\WINDOWS\ehome\MCUpdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {AF013C1B-EDC8-4E32-A453-D9DA97C7588D}[\SafeZone scheduled Autoupdate 1463360460] - (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [1057824] =>.AVAST Software s.r.o.®
O38 - TASK: {AF2F8C0A-F94E-411F-A4D2-E7E25A57754D}[\Microsoft\Windows\Media Center\mcupdate_scheduled] - (. - Check for Media Center updates..) -- C:\WINDOWS\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {AF984434-EA18-4197-AEE6-76E182D4CEC5}[\Microsoft\Windows\Media Center\ehDRMInit] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {B29E822C-4B4E-4ECC-B111-367124C21ED3}[\klcp_update] - (.KLite Inc - Application.) -- C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1173504] =>.KLite Inc
O38 - TASK: {B3D4967A-88B7-42D6-A788-8DD186A9FC63}[\User_Feed_Synchronization-{6313C54D-2381-492A-8DD6-8E6C853DD9B1}] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\System32\msfeedssync.exe [13824] =>.Microsoft Corporation
O38 - TASK: {B4369D06-54D3-4391-9356-47E854E755DF}[\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] - (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [571904] =>.Microsoft Corporation
O38 - TASK: {B487C406-E81E-4524-8BEE-7C2ECD1F4887}[\Microsoft\Windows\Management\Provisioning\Cellular] - (.Microsoft Corporation - Provisioning package runtime processing too.) -- C:\WINDOWS\system32\ProvTool.exe [51712] =>.Microsoft Corporation
O38 - TASK: {B5AFB0AB-71DA-4B8F-B522-D446D7878306}[\Microsoft\Windows\Location\WindowsActionDialog] - (.Microsoft Corporation - Service Broker pour la boîte de dialogue Ac.) -- C:\Windows\System32\WindowsActionDialog.exe [47104] =>.Microsoft Corporation
O38 - TASK: {B66143C0-D6D8-45C6-B4EE-CFDBE3AA7995}[\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload] - (.Microsoft Corporation - Microsoft Feedback SIUF Deployment Manager.) -- C:\WINDOWS\system32\dmclient.exe [75776] =>.Microsoft Corporation
O38 - TASK: {B86321B5-99ED-446E-871E-E7AB5C7635ED}[\Microsoft\Windows\Feedback\Siuf\DmClient] - (.Microsoft Corporation - Microsoft Feedback SIUF Deployment Manager.) -- C:\Windows\System32\dmclient.exe [75776] =>.Microsoft Corporation
O38 - TASK: {BB81D513-4E07-4E6C-B9A7-B5F65620A0D8}[\Microsoft\Windows\WindowsUpdate\sih] - (.Microsoft Corporation - Client SIH.) -- C:\Windows\System32\sihclient.exe [177664] =>.Microsoft Corporation
O38 - TASK: {BBB465D7-2E74-49EA-B6B2-295E8C39574F}[\Microsoft\Windows\Time Synchronization\SynchronizeTime] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\WINDOWS\system32\sc.exe [60416] =>.Microsoft Corporation
O38 - TASK: {C1DE6489-50EE-4E79-938C-E32C903FA8F8}[\Microsoft\Windows\Media Center\ConfigureInternetTimeService] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {C25B5739-54D7-42D9-AA64-6C370DC1C187}[\Microsoft\Windows\ApplicationData\CleanupTemporaryState] - (.Microsoft Corporation - Windows Application Data API Server.) -- C:\Windows\System32\Windows.Storage.ApplicationData.dll [267112] =>.Microsoft Windows®
O38 - TASK: {C5D1923F-8FC9-425B-9560-EED661F4D83E}[\Microsoft\Windows\Media Center\RecordingRestart] - (...) -- C:\WINDOWS\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {C772EB70-DF95-41FD-9642-6D713531901D}[\AutoKMS] - (.CODYQX4 - AutoKMS.) -- C:\Windows\AutoKMS\AutoKMS.exe [3738624] =>HackTool.AutoKMS
O38 - TASK: {CBF9177A-E13B-4ADD-98F2-304C1C35B705}[\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] - (.Microsoft Corporation - AppID Certificate Store Verification Task.) -- C:\Windows\System32\appidcertstorecheck.exe [16896] =>.Microsoft Corporation
O38 - TASK: {CE0E175A-49A8-45A0-BA58-49CFAFC79A6C}[\Microsoft\Windows\Windows Error Reporting\QueueReporting] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\WINDOWS\system32\wermgr.exe [172952] =>.Microsoft Windows®
O38 - TASK: {D2D3038E-3467-4274-BED4-8BC24730E830}[\Microsoft\Office\OfficeBackgroundTaskHandlerLogon] - (.Microsoft Corporation - This task initiates Office Background Task .) -- C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [24264] =>.Microsoft Corporation®
O38 - TASK: {D8E6EF8A-CDEB-4441-987A-8D11418F8386}[\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1171480] =>.Adobe Systems, Incorporated®
O38 - TASK: {DD4740A3-8E0A-48C2-91DD-D167C877CE81}[\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2388056] =>.AVAST Software s.r.o.®
O38 - TASK: {DED23E09-6E84-4A8B-A5DF-D62F1F4A9EE4}[\WPD\SqmUpload_S-1-5-21-1150521578-218415679-3112026969-1000] - (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\portabledeviceapi.dll [519680] =>.Microsoft Corporation
O38 - TASK: {E1A1A0E0-6085-4C32-A20D-36BD131EF568}[\Microsoft\Windows\SharedPC\Account Cleanup] - (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [140800] =>.Microsoft Corporation
O38 - TASK: {E9B03897-1B10-4206-A2B9-F8D21A56B5FE}[\Microsoft\Windows\SystemRestore\SR] - (.Microsoft Corporation - Tâches de fond de la protection du système.) -- C:\WINDOWS\system32\srtasks.exe [50176] =>.Microsoft Corporation
O38 - TASK: {EA034E0A-8F65-46C5-801F-69AE4482C916}[\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers] - (.Microsoft Corporation - Module d’installation de pilotes.) -- C:\WINDOWS\System32\drvinst.exe [135680] =>.Microsoft Corporation
O38 - TASK: {EF91870E-5F6B-4F93-8D4E-787196FFB4E8}[\Microsoft\Windows\Media Center\SqlLiteRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {EFB678C0-BC19-40E8-9E92-B5E57A81C7E4}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc®
O38 - TASK: {F06F7A02-91C1-4A78-A1E3-E7F2CC02767E}[\Microsoft\Windows\Media Center\InstallPlayReady] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {F100B660-C3F8-4FA8-80BE-50AC9B5DBF67}[\Microsoft\Windows\Media Center\PvrRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {F3D3927D-5177-442A-8886-40E6EAB1F902}[\Uninstaller_SkipUac_hp] - (.IObit - Uninstall Programs.) -- C:\Program Files\IObit\IObit Uninstaller\IObitUninstaler.exe [4580640] =>.IObit Information Technology®
O38 - TASK: {F7CEDE7A-ABB2-4E06-A5A1-B9990FF06F25}[\Microsoft\Windows\Media Center\DispatchRecoveryTasks] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {F9F7207A-DF1D-4D5B-976B-864057E17D1F}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc®

---\\ Applications lancées au démarrage du système (11) - 1s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft Corporation®
O4 - HKLM\..\Run: [BlueStacks Agent] . (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe =>.BlueStack Systems, Inc.®
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe =>.Nero AG®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-1150521578-218415679-3112026969-1000\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe =>.Nero AG®
O4 - HKUS\S-1-5-21-1150521578-218415679-3112026969-1000\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®

---\\ Processus lancés (5) - 3s
[MD5.E1B44A75947137F4143308D566889837] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [107848] [PID.2692] =>.Google Inc®
[MD5.E088940ABCC6B7DE13BEA1CE1B7D1EC5] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x86__kzf8qxf38zg5c\SkypeHost.exe [75264] [PID.4192] =>.Skype Technologies
[MD5.92308D03D89E5DBE6BE7578BD199A5C0] - (.AVAST Software - Avast Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastui.exe [9366576] [PID.6032] =>.AVAST Software s.r.o.®
[MD5.A8D7FFA043EE38DA0CB696723549F15A] - (.BlueStack Systems, Inc. - BlueStacks Agent.) -- C:\Program Files\BlueStacks\HD-Agent.exe [160824] [PID.5192] =>.BlueStack Systems, Inc.®
[MD5.D10ACB64AC52562CF007465CD3F6BAAE] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hp\Desktop\ZHPDiag3.exe [2937728] [PID.4400] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (20) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://service.prsstobe.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com =>.Google Inc.
G2 - GCE: Preference [hp][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [hp][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [hp][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [hp][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [hp][User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] http://www.google.com/ =>.Google Inc. {Hidden Chrome extensions}
G2 - GCE: Preference [hp][User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat}
G2 - GCE: Preference [hp][User Data\Default] [emhginjpijfggbofeediiojmdlmlkoik] Avast Passwords =>.Avast Software s.r.o
G2 - GCE: Preference [hp][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [hp][User Data\Default] [flohajbbpjlbphjgeffnhlopdhoonghc] Search the web! =>PUP.Optional.BlpSearch
G2 - GCE: Preference [hp][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [hp][User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] Michael Gundlach =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [hp][User Data\Default] [iphahelpmejkbidhiecfeicblienleon] MyStart New Tab =>.SUP.StartSearch
G2 - GCE: Preference [hp][User Data\Default] [lgcpmapfelgmalkdemnmjhfeikcfkchh] Search the web! =>PUP.Optional.BlpSearch
G2 - GCE: Preference [hp][User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [hp][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [hp][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [hp][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (17) - 3s
M0 - MFSP: prefs.js [hp - ktkoz2xp.default] http://hp.myway.com/
P2 - EXT FILE: (.Avast SafePrice - Avast SafePrice - safe shopping extens.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\extensions\sp@avast.com.xpi =>.Avast SafePrice
P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\extensions\wrc@avast.com.xpi =>.Avast Online Security
P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus
P2 - EXT FILE: (.Yahoo! (Avast) - Yahoo! (Avast).) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\searchplugins\yahoo-avast.xml =>.Yahoo! (Avast)
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT: (.Mindspark - FromDocToPDF.) -- C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\extensions\_65Members_@download.fromdoctopdf.com =>.SUP.MindSpark
C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\FromDocToPDF_65 =>PUP.Optional.MyClearSearch

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ar.yahoo.com/ =>.Yahoo! Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://ar.search.yahoo.com/ =>.Yahoo! Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://ar.yahoo.com/ =>.Yahoo! Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://ar.search.yahoo.com/ =>.Yahoo! Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.15063.608 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (23)

---\\ Browser Helper Object de navigateur (BHO) (6) - 1s
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.®
O2 - BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} . (.IObit - Uninstall for explorer.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallExplorer.dll =>.IObit Information Technology®
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Raccourcis Global Startup (65) - 5s
O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - GS\Desktop [Administrateur]: lettre 1 - Raccourci.lnk . (...) C:\Users\hp\Documents\lettre 1.docx
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: [Www.VoirFilms.info]-Science.Fiction.Volume.One.The.Osiris.Child.2016.FRENCH.WEBRiP.XViD - Raccourci.lnk . (...) C:\Users\hp\Downloads\Video\[Www.VoirFilms.info]-Science.Fiction.Volume.One.The.Osiris.Child.2016.FRENCH.WEBRiP.XViD.avi
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: Video Converter Studio.lnk . (.Apowersoft - Video Converter Studio.) C:\Program Files\Apowersoft\Video Converter Studio\Video Converter Studio.exe =>.Apowersoft Ltd®
O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [Administrateur]: 1 annàe bac.lnk . (...) C:\Users\hp\Desktop\1 annàe bac
O4 - GS\Programs [Administrateur]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [hp]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc.®
O4 - GS\Desktop [hp]: lettre 1 - Raccourci.lnk . (...) C:\Users\hp\Documents\lettre 1.docx
O4 - GS\Desktop [hp]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [hp]: [Www.VoirFilms.info]-Science.Fiction.Volume.One.The.Osiris.Child.2016.FRENCH.WEBRiP.XViD - Raccourci.lnk . (...) C:\Users\hp\Downloads\Video\[Www.VoirFilms.info]-Science.Fiction.Volume.One.The.Osiris.Child.2016.FRENCH.WEBRiP.XViD.avi
O4 - GS\Quicklaunch [hp]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [hp]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [hp]: Video Converter Studio.lnk . (.Apowersoft - Video Converter Studio.) C:\Program Files\Apowersoft\Video Converter Studio\Video Converter Studio.exe =>.Apowersoft Ltd®
O4 - GS\sendTo [hp]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [hp]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [hp]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [hp]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [hp]: 1 annàe bac.lnk . (...) C:\Users\hp\Desktop\1 annàe bac
O4 - GS\Programs [hp]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [hp]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [hp]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Avast Premium.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.®
O4 - GS\CommonDesktop [Public]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks 3.) C:\ProgramData\BlueStacks\Client\BlueStacks.exe =>.BlueStack Systems, Inc.®
O4 - GS\CommonDesktop [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) C:\Program Files\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe =>.IObit Information Technology®
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Programs [Public]: 1 annàe bac.lnk . (...) C:\Users\hp\Desktop\1 annàe bac
O4 - GS\Programs [Public]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\hp\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\WINDOWS\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\WINDOWS\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Avast Premium.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.®
O4 - GS\ProgramsCommon [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.®
O4 - GS\ProgramsCommon [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Skype Entreprise 2016.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{f829668b-321b-470c-830c-2841286ae532}: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress

---\\ Protocole additionnel (25) - 0s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (67) - 14s
O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {739A853C-D71F-404B-9E6A-012D3918ED57} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824245926} =>.Adobe Systems Incorporated
O42 - Logiciel: Any Video Converter 5.9.1 - (.Any-Video-Converter.com.) [HKLM] -- Any Video Converter_is1 =>.Anvsoft Inc.®
O42 - Logiciel: Apowersoft Convertisseur Vidéo V4.4.9 - (.APOWERSOFT LIMITED.) [HKLM] -- {195E8D7F-292B-4B04-A6E7-E96CAF04C767}_is1 =>.APOWERSOFT LIMITED
O42 - Logiciel: Avast Premium - (.AVAST Software.) [HKLM] -- Avast Antivirus =>.AVAST Software s.r.o.®
O42 - Logiciel: BlueStacks 3 - (.BlueStack Systems, Inc..) [HKLM] -- BlueStacks =>.BlueStack Systems, Inc.®
O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.CDBurnerXP
O42 - Logiciel: Convertisseur YouTube 2.02 - (.Convertir.co.) [HKLM] -- Convertisseur YouTube_is1 =>.convertir.Co
O42 - Logiciel: Étude pour l'amélioration du produit HP Deskjet 1010 series - (.Hewlett-Packard Co..) [HKLM] -- {032F290A-C615-4787-B268-190B075CC98B} =>.Hewlett-Packard Co.
O42 - Logiciel: Free Video Converter - (.Extensoft.) [HKLM] -- Free Video Converter =>.Extensoft
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: HP Deskjet 1010 series Aide - (.Hewlett Packard.) [HKLM] -- {20451C0E-ECE2-4D34-A9EC-10297B89F3CD} =>.Hewlett Packard
O42 - Logiciel: HP FWUpdateEDO2 - (.Hewlett-Packard.) [HKLM] -- {415FA9AD-DA10-4ABE-97B6-5051D4795C90} =>.Hewlett-Packard
O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM] -- HP Photo Creations =>.Visan Industries®
O42 - Logiciel: HP Update - (.Hewlett-Packard.) [HKLM] -- {912D30CF-F39E-4B31-AD9A-123C6B794EE2} =>.Hewlett-Packard
O42 - Logiciel: HPDiagnosticAlert - (.Microsoft.) [HKLM] -- {B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D} =>.Microsoft
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM] -- IObitUninstall =>.IObit Information Technology®
O42 - Logiciel: Java 8 Update 101 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180101F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 111 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180111F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 121 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180121F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 131 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180131F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 141 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180141F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 144 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180144F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 151 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180151F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 72 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218072F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 74 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218074F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 77 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218077F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 91 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83218091F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: K-Lite Codec Pack 11.1.0 Full - (.KLite Inc.) [HKLM] -- KLiteCodecPack_is1 =>.KLite Inc
O42 - Logiciel: LAV Filters 0.55.3 - (.Hendrik Leppkes.) [HKLM] -- lavfilters_is1 =>.Hendrik Leppkes
O42 - Logiciel: LavasoftTcpService - (.Lavasoft.) [HKLM] -- {5916A24B-59A4-4FDB-9753-499CB1F65362} =>.Lavasoft
O42 - Logiciel: Logiciel de base du périphérique HP Deskjet 1010 series - (.Hewlett-Packard Co..) [HKLM] -- {3D22CA19-95B1-49A9-8986-FC00048B4082} =>.Hewlett-Packard Co.
O42 - Logiciel: MFC RunTime files - (.Extensoft.) [HKLM] -- {70C592EC-AE9B-4734-928B-676E824FB41E} =>.Extensoft
O42 - Logiciel: Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291. - (.Microsoft Corporation.) [HKLM] -- {25E80DAA-FD87-DCE5-202C-CC02F6673002} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 57.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 57.0 (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} =>.Nokia
O42 - Logiciel: MSVC90_x86 - (.Nokia.) [HKLM] -- {AF111648-99A1-453E-81DD-80DBBF6DAD0D} =>.Nokia
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: Nero 7 Ultra Edition - (.Nero AG.) [HKLM] -- {CF097717-F174-4144-954A-FBC4BF301036} =>.Nero AG
O42 - Logiciel: neroxml - (.Nero AG.) [HKLM] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} =>.Nero AG
O42 - Logiciel: Nokia Connectivity Cable Driver - (.Nokia Inc..) [HKLM] -- {BC4AE628-81A4-4FC6-863A-7A9BA2E2531F} =>.Nokia Inc.
O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM] -- Notepad++ =>.Notepad++ Team
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM] -- {90160000-007E-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: PhotoFiltre Studio X - (.Antonio Da Cruz.) [HKCU] -- PhotoFiltre Studio X =>.Antonio Da Cruz
O42 - Logiciel: Real Alternative 2.0.2 - (.Freecodecs.) [HKLM] -- RealAlt_is1 =>.Freecodecs
O42 - Logiciel: Registry Trash Keys Finder (Freeware) - (.SNC.) [HKLM] -- Registry Trash Keys Finder =>.SNC
O42 - Logiciel: SafeZone Stable 4.58.2552.909 - (.Avast Software.) [HKLM] -- SafeZone 4.58.2552.909 =>.AVAST Software s.r.o.®
O42 - Logiciel: Skype Entreprise Basic 2016 - fr-fr - (.Microsoft Corporation.) [HKLM] -- SkypeforBusinessEntryRetail - fr-fr =>.Microsoft Corporation®
O42 - Logiciel: System Requirements Lab - (.Husdawg, LLC.) [HKLM] -- {A92D0DBB-834A-4CAD-A434-F2232C692516} =>.Husdawg, LLC
O42 - Logiciel: Video to Video - (.Media Converters.) [HKLM] -- {7F95A744-78DA-4AED-A8F0-A0AF330B8411}_is1 =>.Media Converters
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: WampServer 2.5 - (.Hervé Leclerc (HeL).) [HKLM] -- WampServer 2_is1 =>.Hervé Leclerc (HeL)
O42 - Logiciel: Windows 10 Update and Privacy Settings - (.Microsoft Corporation.) [HKLM] -- {542CC2C2-ABAF-4604-8723-DA296AF74540} =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.50 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (115) - 14s
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\Ahead =>.Ahead
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Audible =>.Audible.com
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Avisynth =>.Ben Rudiak-Gold
HKLM\SOFTWARE\AVS4YOU =>.AVS4YOU
HKLM\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\BlueStacksGP =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKLM\SOFTWARE\CBSTEST =>.CBS Test
HKLM\SOFTWARE\CDDB =>.Cddb Software
HKLM\SOFTWARE\Extensoft =>.Extensoft
HKLM\SOFTWARE\FSPro Labs =>.FSPro Labs
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\Icaros =>.Icaros
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\IObit =>.IObit
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\LAV =>.LAV Inc
HKLM\SOFTWARE\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Nokia =>.Nokia
HKLM\SOFTWARE\Notepad++ =>.Don Ho
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\Opera Software =>.Opera Software
HKLM\SOFTWARE\Ourscreensavers
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\RealAlternative =>.Freecodecs
HKLM\SOFTWARE\RealNetworks =>.RealNetworks
HKLM\SOFTWARE\Reason =>.Propellerhead
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Reimage =>.SUP.ReimageRepair
HKLM\SOFTWARE\RocketLife =>.RocketLife
HKLM\SOFTWARE\SNC =>.SNC
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\SpeedCat =>.SUP.PCSpeedCat
HKLM\SOFTWARE\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Visan =>.Visan Software
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Xing Technology Corp. =>.Xing Technology Corp.
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Ahead =>.Ahead
HKCU\SOFTWARE\Anvsoft =>.AnvSoft Inc
HKCU\SOFTWARE\Apowersoft =>.Apowersoft
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\ASProtect =>.ASPack Software
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU
HKCU\SOFTWARE\BitTorrent
HKCU\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc.
HKCU\SOFTWARE\Bytescout =>.ByteScout
HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Clubic =>.Clubic
HKCU\SOFTWARE\Convertir.co =>.convertir.Co
HKCU\SOFTWARE\csastats =>Adware.InstallCore
HKCU\SOFTWARE\DMGR1.25
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\Extensoft =>.Extensoft
HKCU\SOFTWARE\FlvtoConverter
HKCU\SOFTWARE\FSPro Labs =>.FSPro Labs
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Haali =>.Haali Media
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\hotger =>.Hotger
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\Icaros =>.Icaros
HKCU\SOFTWARE\INTEL =>.Intel
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\LAV =>.LAV Inc
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Maelstrom
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\MCAFEE =>.McAfee Inc.
HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKCU\SOFTWARE\Mine =>.Microsoft Corporation
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\MPEG4E.COM
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz
HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore
HKCU\SOFTWARE\RealNetworks =>.RealNetworks
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Reimage =>.SUP.ReimageRepair
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\System Requirements Lab =>.System Requirements Lab
HKCU\SOFTWARE\undefined =>.SUP.Downloader
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\VideoConverter-Media =>.ZJMedia Digital Technology Ltd.
HKCU\SOFTWARE\Visan =>.Visan Software
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft

---\\ Contenu des dossiers Programmes (276) - 14s
O43 - CFD: 12/07/2017 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Anvsoft =>.AnvSoft Inc
O43 - CFD: 28/05/2016 - [] D -- C:\Program Files\Apowersoft =>.Apowersoft
O43 - CFD: 16/05/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 11/03/2016 - [0] D -- C:\Program Files\AVS4YOU =>.AVS4YOU
O43 - CFD: 15/07/2017 - [] AD -- C:\Program Files\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 15/06/2015 - [] AD -- C:\Program Files\CDBurnerXP =>.Stefan Haglund
O43 - CFD: 24/10/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 11/03/2016 - [] AD -- C:\Program Files\Convertisseur YouTube
O43 - CFD: 31/07/2015 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 15/04/2015 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 07/03/2016 - [] D -- C:\Program Files\Free Video Converter
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 17/12/2016 - [] D -- C:\Program Files\GUM4897.tmp
O43 - CFD: 17/04/2015 - [] D -- C:\Program Files\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 17/04/2015 - [] AD -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 17/04/2015 - [] D -- C:\Program Files\HP Photo Creations =>.Visan Industries®
O43 - CFD: 08/11/2017 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/09/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 12/07/2017 - [] D -- C:\Program Files\IObit =>.IObit
O43 - CFD: 24/10/2017 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\JCA2000
O43 - CFD: 08/05/2015 - [] AD -- C:\Program Files\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 01/06/2015 - [] D -- C:\Program Files\Lavasoft =>.Lavasoft
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 18/11/2017 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 31/05/2017 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 15/06/2017 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] AD -- C:\Program Files\Microsoft Visual Studio 8 =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 15/11/2017 - [] AD -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 27/01/2017 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 22/07/2017 - [] AD -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 05/07/2015 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation
O43 - CFD: 03/07/2015 - [] D -- C:\Program Files\Nero =>.Ahead Corporation
O43 - CFD: 05/05/2015 - [0] D -- C:\Program Files\Nokia =>.Nokia
O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\Notepad++ =>.Don Ho
O43 - CFD: 06/07/2015 - [] D -- C:\Program Files\Opera =>.Opera Software
O43 - CFD: 21/03/2016 - [] AD -- C:\Program Files\OxelonMedia
O43 - CFD: 23/04/2015 - [] D -- C:\Program Files\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Real =>.RealNetworks Inc.
O43 - CFD: 09/05/2015 - [] AD -- C:\Program Files\Real Alternative
O43 - CFD: 22/07/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 12/01/2017 - [] D -- C:\Program Files\SpeedCat =>.SUP.PCSpeedCat
O43 - CFD: 18/04/2015 - [] AD -- C:\Program Files\SystemRequirementsLab =>.System Requirements Lab
O43 - CFD: 12/07/2017 - [] AD -- C:\Program Files\TrashReg =>.Alexander Asyabrik
O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 07/07/2017 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 14/02/2016 - [] AD -- C:\Program Files\Video to Video =>.Media Converters
O43 - CFD: 21/04/2015 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 22/07/2017 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 19/03/2017 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 14/09/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 19/03/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 17/11/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 23/11/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 10/10/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 14/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft =>.AnvSoft Inc
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Convertisseur YouTube
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Video Converter
O43 - CFD: 12/04/2011 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller =>.IObit
O43 - CFD: 24/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters =>.Hendrik Leppkes
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft
O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video =>.Media Converters
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer =>.WAMP Server
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 13/09/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 03/07/2015 - [] D -- C:\ProgramData\Ahead =>.Ahead Software
O43 - CFD: 28/05/2016 - [] D -- C:\ProgramData\Apowersoft =>.Apowersoft
O43 - CFD: 22/07/2017 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 17/03/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 09/03/2016 - [] D -- C:\ProgramData\AVS4YOU =>.AVS4YOU
O43 - CFD: 15/07/2017 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 25/09/2017 - [] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc.
O43 - CFD: 15/04/2015 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 15/06/2015 - [] D -- C:\ProgramData\Canneverbe Limited =>.Canneverbe Limited
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 12/01/2017 - [0] D -- C:\ProgramData\DumpFiles
O43 - CFD: 15/04/2015 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 17/04/2015 - [] AD -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 17/04/2015 - [] AD -- C:\ProgramData\HP Photo Creations =>.HP Photo Creations
O43 - CFD: 16/04/2015 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 12/07/2017 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 12/07/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 15/04/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 05/10/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/11/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 29/04/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation
O43 - CFD: 15/04/2015 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 03/07/2015 - [] AD -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\NokiaInstallerCache =>.Nokia Inc.
O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Real =>.RealNetworks Inc.
O43 - CFD: 09/05/2015 - [0] D -- C:\ProgramData\RealNetworks =>.RealNetworks
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 18/11/2017 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 18/04/2015 - [] D -- C:\ProgramData\Sun =>.Oracle
O43 - CFD: 27/11/2017 - [0] D -- C:\ProgramData\SWCUTemp
O43 - CFD: 18/04/2015 - [] D -- C:\ProgramData\SystemRequirementsLab =>.System Requirements Lab
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 07/03/2016 - [] D -- C:\ProgramData\VideoConverter
O43 - CFD: 17/04/2015 - [] D -- C:\ProgramData\Visan =>.Visan Industries
O43 - CFD: 12/07/2017 - [] AD -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 13/09/2017 - [] AD -- C:\Program Files\Common Files\Adobe AIR =>.Adobe Inc.
O43 - CFD: 03/07/2015 - [] AD -- C:\Program Files\Common Files\Ahead =>.Ahead Software
O43 - CFD: 28/01/2017 - [] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 11/03/2016 - [] D -- C:\Program Files\Common Files\AVSMedia =>.AVSMedia
O43 - CFD: 18/11/2017 - [] AD -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 12/07/2017 - [] D -- C:\Program Files\Common Files\IObit =>.IObit
O43 - CFD: 24/10/2017 - [] D -- C:\Program Files\Common Files\Java =>.Oracle
O43 - CFD: 18/11/2017 - [] AD -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 12/09/2015 - [] D -- C:\Users\hp\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 10/02/2016 - [] D -- C:\Users\hp\AppData\Roaming\Ahead =>.Ahead Software
O43 - CFD: 03/09/2016 - [] D -- C:\Users\hp\AppData\Roaming\Anvsoft =>.AnvSoft Inc
O43 - CFD: 28/05/2016 - [] D -- C:\Users\hp\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 16/04/2015 - [] D -- C:\Users\hp\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 09/03/2016 - [] D -- C:\Users\hp\AppData\Roaming\AVS4YOU =>.AVS4YOU
O43 - CFD: 11/02/2016 - [] D -- C:\Users\hp\AppData\Roaming\BitTorrent
O43 - CFD: 28/09/2015 - [] D -- C:\Users\hp\AppData\Roaming\BitTorrent Maelstrom
O43 - CFD: 15/06/2015 - [] D -- C:\Users\hp\AppData\Roaming\Canneverbe Limited =>.Canneverbe Limited
O43 - CFD: 11/03/2016 - [] D -- C:\Users\hp\AppData\Roaming\Convertisseur YouTube
O43 - CFD: 10/08/2017 - [] D -- C:\Users\hp\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 25/04/2015 - [] D -- C:\Users\hp\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 02/07/2015 - [] D -- C:\Users\hp\AppData\Roaming\FlvtoConverter =>.Hotger
O43 - CFD: 12/07/2017 - [] D -- C:\Users\hp\AppData\Roaming\Google =>.Google
O43 - CFD: 01/05/2015 - [] D -- C:\Users\hp\AppData\Roaming\HpUpdate =>.Hewlett-Packard
O43 - CFD: 23/04/2015 - [] D -- C:\Users\hp\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 08/11/2017 - [] D -- C:\Users\hp\AppData\Roaming\IDM =>.IDM
O43 - CFD: 12/07/2017 - [] D -- C:\Users\hp\AppData\Roaming\IObit =>.IObit
O43 - CFD: 22/01/2017 - [] SHD -- C:\Users\hp\AppData\Roaming\Latas
O43 - CFD: 09/07/2015 - [] D -- C:\Users\hp\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\hp\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 26/04/2016 - [0] D -- C:\Users\hp\AppData\Roaming\Media Player Classic =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] SD -- C:\Users\hp\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/11/2017 - [] D -- C:\Users\hp\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 26/04/2016 - [0] D -- C:\Users\hp\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 12/09/2015 - [] D -- C:\Users\hp\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 06/02/2016 - [] D -- C:\Users\hp\AppData\Roaming\OpenCandy =>Adware.OpenCandy
O43 - CFD: 06/07/2015 - [0] D -- C:\Users\hp\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 21/03/2016 - [0] D -- C:\Users\hp\AppData\Roaming\OxelonMC
O43 - CFD: 12/09/2015 - [] D -- C:\Users\hp\AppData\Roaming\PDAppFlex =>Trojan.Elpman
O43 - CFD: 23/04/2015 - [] D -- C:\Users\hp\AppData\Roaming\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 22/01/2017 - [] SHD -- C:\Users\hp\AppData\Roaming\Pr
O43 - CFD: 12/07/2017 - [] D -- C:\Users\hp\AppData\Roaming\ProductData =>.Microsoft Corporation
O43 - CFD: 08/05/2015 - [] D -- C:\Users\hp\AppData\Roaming\Real =>.RealNetworks Inc.
O43 - CFD: 08/05/2015 - [] D -- C:\Users\hp\AppData\Roaming\RealNetworks =>.RealNetworks
O43 - CFD: 20/07/2015 - [] D -- C:\Users\hp\AppData\Roaming\RPEng =>PUP.Optional.Generic
O43 - CFD: 31/05/2017 - [] D -- C:\Users\hp\AppData\Roaming\Skype =>.Skype
O43 - CFD: 29/08/2015 - [] D -- C:\Users\hp\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 28/09/2015 - [] D -- C:\Users\hp\AppData\Roaming\uTorrent
O43 - CFD: 21/11/2017 - [] D -- C:\Users\hp\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 16/04/2015 - [] D -- C:\Users\hp\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 27/11/2017 - [] D -- C:\Users\hp\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 22/12/2015 - [0] D -- C:\Users\hp\AppData\Local\ActiveSync =>.Microsoft Corporation
O43 - CFD: 12/07/2017 - [] D -- C:\Users\hp\AppData\Local\Adobe =>.Adobe
O43 - CFD: 03/07/2015 - [] D -- C:\Users\hp\AppData\Local\Ahead =>.Ahead Software
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\hp\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] D -- C:\Users\hp\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 31/08/2017 - [] D -- C:\Users\hp\AppData\Local\AVAST Software =>.AVAST Software
O43 - CFD: 15/07/2017 - [] D -- C:\Users\hp\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 09/09/2015 - [] D -- C:\Users\hp\AppData\Local\CEF =>.CEF
O43 - CFD: 05/08/2015 - [] D -- C:\Users\hp\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\Users\hp\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 08/08/2017 - [0] D -- C:\Users\hp\AppData\Local\DBG =>.DBG
O43 - CFD: 17/11/2017 - [] D -- C:\Users\hp\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 22/02/2017 - [0] D -- C:\Users\hp\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 06/07/2015 - [0] SHD -- C:\Users\hp\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr
O43 - CFD: 06/07/2015 - [0] SHD -- C:\Users\hp\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr
O43 - CFD: 06/07/2015 - [0] SHD -- C:\Users\hp\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr
O43 - CFD: 18/05/2016 - [] D -- C:\Users\hp\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 11/11/2016 - [] D -- C:\Users\hp\AppData\Local\Google =>.Google
O43 - CFD: 01/06/2015 - [] D -- C:\Users\hp\AppData\Local\GWX =>.GWX
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\hp\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 02/07/2015 - [] D -- C:\Users\hp\AppData\Local\Hotger =>.Hotger
O43 - CFD: 17/04/2015 - [] D -- C:\Users\hp\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 09/07/2015 - [] D -- C:\Users\hp\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 28/09/2015 - [] D -- C:\Users\hp\AppData\Local\Maelstrom
O43 - CFD: 22/07/2017 - [] D -- C:\Users\hp\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 30/06/2016 - [] D -- C:\Users\hp\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 06/08/2015 - [] D -- C:\Users\hp\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 16/04/2015 - [] D -- C:\Users\hp\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 06/07/2015 - [0] D -- C:\Users\hp\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 08/08/2017 - [] D -- C:\Users\hp\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 01/08/2015 - [0] D -- C:\Users\hp\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 23/04/2015 - [] D -- C:\Users\hp\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 31/07/2015 - [] D -- C:\Users\hp\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 27/11/2017 - [] D -- C:\Users\hp\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\hp\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 31/07/2015 - [] D -- C:\Users\hp\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 08/07/2017 - [] D -- C:\Users\hp\AppData\Local\UNP =>.Microsoft Corporation
O43 - CFD: 07/03/2016 - [] D -- C:\Users\hp\AppData\Local\Video Converter
O43 - CFD: 16/12/2016 - [] D -- C:\Users\hp\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 27/11/2017 - [] D -- C:\Users\hp\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 23/04/2015 - [0] D -- C:\Users\hp\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 22/11/2017 - [] D -- C:\Users\hp\Desktop\1 annàe bac
O43 - CFD: 09/07/2017 - [] D -- C:\Users\hp\Desktop\9oran karim
O43 - CFD: 12/11/2017 - [] D -- C:\Users\hp\Desktop\dialogue 7 parties
O43 - CFD: 15/11/2017 - [] D -- C:\Users\hp\Desktop\dialogues
O43 - CFD: 10/10/2017 - [] D -- C:\Users\hp\Desktop\do3a
O43 - CFD: 27/10/2017 - [] D -- C:\Users\hp\Desktop\document zaina
O43 - CFD: 26/11/2017 - [] D -- C:\Users\hp\Desktop\les lettres
O43 - CFD: 14/11/2016 - [] D -- C:\Users\hp\Desktop\nature
O43 - CFD: 10/11/2017 - [] D -- C:\Users\hp\Desktop\video
O43 - CFD: 22/07/2017 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 17/11/2017 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 07/03/2016 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Video Converter
O43 - CFD: 08/11/2017 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 24/06/2016 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lock My PC 4
O43 - CFD: 18/03/2017 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 12/09/2015 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 22/07/2017 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre Studio X =>.Antonio Da Cruz
O43 - CFD: 22/07/2017 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Registry Trash Keys Finder =>.SNC
O43 - CFD: 17/11/2017 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 13/10/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/03/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/01/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 13/10/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 19/03/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/01/2017 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 18/03/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 24/07/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing =>.DataSharing
O43 - CFD: 09/08/2017 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DBG =>.DBG
O43 - CFD: 05/10/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 23/11/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 27/11/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 22/07/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 27/11/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 1s
O106 - SIOI: IDM Shell Extension [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files\Internet Download Manager\IDMShellExt.dll =>.Tonec Inc.®
O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation

---\\ Raccourcis de menus conceptuels (SCMH) (35) - 2s
O108 - CMH1: ANotepad++ - {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593} . (.Copyright © 2010 - ShellHandler for Notepad++.) -- C:\Program Files\Notepad++\NppShell_06.dll
O108 - CMH1: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH1: IObitUnstaler - {B19ED566-D419-470b-B111-3C89040BC027} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallMenuRight.dll =>.IObit Information Technology®
O108 - CMH1: ModernSharing - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH1: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH2: IObitUnstaler - {B19ED566-D419-470b-B111-3C89040BC027} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallMenuRight.dll =>.IObit Information Technology®
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: 00asw - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH4: IObitUnstaler - {B19ED566-D419-470b-B111-3C89040BC027} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallMenuRight.dll =>.IObit Information Technology®
O108 - CMH4: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH4: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Orphan.)
O108 - CMH5: igfxcui - {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} . (.Orphan.)
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH6: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH6: IObitUnstaler - {B19ED566-D419-470b-B111-3C89040BC027} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Uninstaller\UninstallMenuRight.dll =>.IObit Information Technology®
O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH6: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH6: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (19) - 3s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Microsoft Windows Third Party Application Component®
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation®
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ Liste des pilotes du système (57) - 17s
O58 - SDL:2017/03/18 18:18:17 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [85920] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038240] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [75168] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215456] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [22944] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116632] =>.Microsoft Windows®
O58 - SDL:2017/08/31 19:59:33 A . (.AVAST Software s.r.o. - IDS Application Activity Monitor Driver..) -- C:\WINDOWS\System32\drivers\aswbidsdriverx.sys [267520] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 19:59:33 A . (.AVAST Software s.r.o. - Application Activity Monitor Helper Driver.) -- C:\WINDOWS\System32\drivers\aswbidshx.sys [157416] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 19:59:33 A . (.AVAST Software s.r.o. - Logging Driver.) -- C:\WINDOWS\System32\drivers\aswblogx.sys [276736] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 19:59:33 A . (.AVAST Software s.r.o. - Universal Driver.) -- C:\WINDOWS\System32\drivers\aswbunivx.sys [50384] =>.AVAST Software s.r.o.®
O58 - SDL:2017/03/22 21:11:18 A . (.AVAST Software - Home Network Security.) -- C:\WINDOWS\System32\drivers\aswHdsKe.sys [70008] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 20:00:03 A . (.AVAST Software - Avast HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [42856] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/08/31 19:59:42 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [39784] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 20:00:03 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [124952] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 19:59:34 A . (.AVAST Software - Avast Firewall Driver.) -- C:\WINDOWS\System32\drivers\aswNetSec.sys [408072] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 20:00:03 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [99568] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 20:00:04 A . (.AVAST Software - Avast Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [70864] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/08/31 19:59:42 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [773800] =>.AVAST Software s.r.o.®
O58 - SDL:2017/08/31 20:00:04 A . (.AVAST Software - Avast self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [500136] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/19 11:06:57 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswstm.sys [148232] =>.AVAST Software s.r.o.®
O58 - SDL:2017/09/25 12:36:18 A . (.AVAST Software - Avast VM Monitor.) -- C:\WINDOWS\System32\drivers\aswvmm.sys [296192] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/03/18 18:18:17 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [8192] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2017/03/18 18:18:17 A . (.Intel Corporation - Intel(R) PRO/1000 Adapter NDIS 6 deserializ.) -- C:\WINDOWS\System32\drivers\e1e6032.sys [214016] =>.Intel Corporation
O58 - SDL:2017/03/18 18:18:17 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56736] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:19 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [25600] =>.Intel(R) Corporation
O58 - SDL:2017/03/18 18:18:19 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [66560] =>.Intel(R) Corporation
O58 - SDL:2017/03/18 18:18:18 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] =>.Intel Corporation
O58 - SDL:2017/03/18 18:18:17 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [61936] =>.Intel Corporation
O58 - SDL:2017/03/18 18:18:18 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [524704] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:18 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333728] =>.Microsoft Windows®
O58 - SDL:2017/08/05 16:26:42 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [149224] =>.Tonec Inc.®
O58 - SDL:2012/03/23 02:29:58 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd32.sys [4815872] =>.Intel Corporation
O58 - SDL:2007/10/08 23:59:18 A . (.FSPro Labs - LMPC keyboard filter for Win32.) -- C:\WINDOWS\System32\drivers\lmpc4.sys [10096] {0080BFAF635421F01F5FBF784912F11AE7} =>.FSPro Labs
O58 - SDL:2017/08/31 20:00:45 A . (...) -- C:\WINDOWS\System32\drivers\lpsport.sys [55160] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2017/03/18 18:18:17 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94112] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [102808] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [84384] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69536] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52128] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [56736] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464800] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58264] =>.Microsoft Windows®
O58 - SDL:2015/10/12 11:05:14 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.®
O58 - SDL:2017/03/18 18:18:17 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119200] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142232] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51616] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [54688] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41376] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79264] =>.Microsoft Windows®
O58 - SDL:2017/05/18 21:17:58 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [109456] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2017/05/18 21:18:04 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [147344] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2016/04/24 23:36:20 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Mobile OBEX Device Driver (MSS.) -- C:\WINDOWS\System32\drivers\ssudobex.sys [199936] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2015/12/08 03:01:24 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\WINDOWS\System32\drivers\ssudserd.sys [192944] =>.DEVGURU CO LTD®
O58 - SDL:2017/03/18 18:18:17 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [27040] =>.Microsoft Windows®
O58 - SDL:2016/07/15 19:10:46 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\usb2ser.sys [119952] =>.NGO®
O58 - SDL:2017/03/18 18:18:17 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [149912] =>.Microsoft Windows®
O58 - SDL:2017/03/18 18:18:17 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [276896] =>.Microsoft Windows®

---\\ Associations Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (16) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software

---\\ Recherche d'infection sur les navigateurs (60) - 9s
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("browser.startup.homepage", "http://hp.myway.com/fromdoctopdf/LMFRFR/index.html?coId=undefined&subId=COCnpunqisUCFUQojgo[...] =>.SUP.MindSpark
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.mywebsearch.prevKwdEnabled", true); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.mywebsearch.prevKwdURL", "https://ar.search.yahoo.com/yhs/search"); =>PUP.Optional.MyWebSearch
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.BUTTON_STRUCTURE", "[{\"b\":232130312,\"c\":\"mindspark.magnify\",\"p\":\"L.0\[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.search.defaultenginename.prev", "Google"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.search.defaultenginename.savedPrev", "true"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.search.defaultenginename.tb", "Ask Web Search"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.search.selectedEngine.prev", "Google"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.search.selectedEngine.savedPrev", "true"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.search.selectedEngine.tb", "Ask Web Search"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.startup.homepage.savedPrev", "true"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.startup.homepage.tb", "http://hp.myway.com/fromdoctopdf/LMFRFR/index.h[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.startup.page.savedPrev", 1); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.startup.page.tb", 1); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.browser.version.last", "54.0"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.firstKnownVersion", "6.85.5.64986"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.homepage", "http://home.tb.ask.com/index.jhtml?ptb=8C2B5128-E950-4442-9302-9E0[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.hp.enabled", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.hp.guardType", "HPR"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.hp.user.defined", false); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.initialized", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installKeysSource", "Cookies"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installType", "XPI"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.contextKey", ""); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.installDate", "2015042210"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.partnerId", "^Y6^xdm222^YYA^ma"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.partnerSubId", "COCnpunqisUCFUQojgodfrcA_w"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.pixelUrl", "http://download.fromdoctopdf.com/install_pixels.jhtml[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.success", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.installation.toolbarId", "8C2B5128-E950-4442-9302-9E04E38607B8"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.isCompliantUninstallImplementation", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.lastActivePing", "1499887908173"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.lastKnownVersion", "7.800.11.26973"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.lostEngine", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.lssState", "{\"previousLocales\":[\"fr\",\"fr-FR\",\"en-US\",\"en\"],\"support[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.options.defaultSearch", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.options.homePageEnabled", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.options.keywordEnabled", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.options.tabEnabled", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.partnerPixelFired", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.productDeliveryOption.language", "fr"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.productDeliveryOption.newTabURL", "http://hp.myway.com/fromdoctopdf/LMFRFR/ind[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.productDeliveryOption.type", "ToolTab"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.searchHistory", "google"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.successUrl", "http://download.fromdoctopdf.com/installComplete.jhtml"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.toolbar.ownSearch", false); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.toolbar.versionChanged", false); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.toolbarCollapsed", false); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.uninstallSurveyUrl", "http://www.research.net/r/GBT6YQG?c="); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._6[...] =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark._65Members_.weather.location", "10001"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark.hp.enabled", true); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark.hp.enabled.guid", "fromdoctopdf@mindspark.com"); =>Adware.Bandoo
O69 - SBI: prefs.js [hp - ktkoz2xp.default] user_pref("extensions.toolbar.mindspark.lastInstalled", "fromdoctopdf@mindspark.com"); =>Adware.Bandoo
O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU]{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} - (Search The Web) - http://www.mystart.com/ =>.SUP.StartSearch
O69 - SBI: SearchScopes [HKCU]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} - (Yahoo! (Avast)) - http://ar.search.yahoo.com/ =>.Yahoo! Inc.
O69 - SBI: SearchScopes [HKCU]{C0C3A6C6-03BC-4195-8FCB-AEA091301353} - (Yahoo!) - http://search.yahoo.com/ =>.Yahoo! Inc.
O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM]{9CB96984-43C3-4D44-90EF-01466EFCF7BB} [DefaultScope] - (Yahoo! (Avast)) - http://ar.search.yahoo.com/ =>.Yahoo! Inc.

---\\ Enumère les services démarrés par Svchost (48) - 0s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [182272] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [182272] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1121792] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [720896] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [879616] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [24064] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [111616] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\System32\iscsiexe.dll [116224] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [89600] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\System32\schedsvc.dll [694272] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\System32\wbem\WMIsvc.dll [183808] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [106496] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\System32\profsvc.dll [313856] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\WINDOWS\System32\sessenv.dll [337408] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [71680] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\System32\Windows.SharedPC.AccountManager.dll [140800] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\WINDOWS\System32\XboxGipSvc.dll [15360] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [176640] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [329216] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\System32\dmwappushsvc.dll [45568] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\WINDOWS\System32\flightsettings.dll [605184] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [394240] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [578560] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [185856] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [144896] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\WINDOWS\System32\NaturalAuth.dll [247296] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\System32\themeservice.dll [53760] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\WINDOWS\System32\TokenBroker.dll [798720] =>.Microsoft Corporation
O83 - Search Svchost Services: xbgm (xbgm) . (.Microsoft Corporation - Xbox Game Monitoring Service.) -- C:\WINDOWS\System32\xbgmsvc.dll [224248] =>.Microsoft Windows Publisher®
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\System32\XboxNetApiSvc.dll [868352] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\WINDOWS\System32\WpnService.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\System32\wlidsvc.dll [1646592] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\WINDOWS\System32\irmon.dll [20480] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [92160] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [780288] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\WINDOWS\System32\mprdim.dll [406528] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [56320] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [478720] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [252416] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [2125824] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [873472] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [564224] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\System32\usocore.dll [535040] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [713216] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\WINDOWS\System32\lfsvc.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\WINDOWS\System32\appmgmts.dll [163840] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (8) - 3s
O87 - FAEL: "{02BAE5F5-FFF9-4F81-9C37-0045D72171BF}" [In-None-P17-TRUE] .(...) -- C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{FEEC449E-268A-421B-84D8-ABDA1076B1FE}" [In-None-P6-TRUE] .(...) -- C:\Users\hp\AppData\Roaming\uTorrent\uTorrent.exe (.not file.)
O87 - FAEL: "{77A9D373-B8C1-4F0E-A84D-74C198CE146D}" [In-None-P17-TRUE] .(...) -- C:\Users\hp\AppData\Local\Maelstrom\Application\chrome.native.torrent.exe (.not file.)
O87 - FAEL: "{A97A918F-8CFF-4EF0-A29B-2490496AFFF6}" [In-None-P6-TRUE] .(...) -- C:\Users\hp\AppData\Local\Maelstrom\Application\chrome.native.torrent.exe (.not file.)
O87 - FAEL: "{C381E31A-C42C-4693-AA64-984A4EA77AB9}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.)
O87 - FAEL: "{23FB677F-D1D0-4EB1-A96A-1E4927B55316}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.)
O87 - FAEL: "{BCE784C2-70D5-4661-8322-4DAFAE2AAC2A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\mystarttb\ToolbarCleaner.exe (.not file.) =>.SUP.StartSearch
O87 - FAEL: "{4A1981F4-B123-4D48-AFE7-DFFCA28645B8}" [In-None-P17-TRUE] .(...) -- C:\Program Files\mystarttb\ToolbarCleaner.exe (.not file.) =>.SUP.StartSearch

---\\ Enumère les codes produits des logiciels (1) - 1s
O90 - PUC: "B42A61954A95BDF4793594C91B6F3526" . (.LavasoftTcpService.) -- C:\Windows\Installer\{5916A24B-59A4-4FDB-9753-499CB1F65362}\ARPPRODUCTICON.exe =>PUP.Optional.LavasoftWebCompanion

---\\ Recherche des packages WindowsInstaller (31) - 19s
[MD5.E4EECA96E08781FA6F948A70EDE0C458] [WIS][2017/07/28 17:25:12] (.Oracle Corporation - Java SE Runtime Environment 8 Update 144.) -- C:\WINDOWS\Installer\10a58f2.msi [56287232] =>.Oracle Corporation
[MD5.4EA97303A236E99AD7EE06E2A807C4DC] [WIS][2016/01/24 22:48:46] (.Oracle Corporation - Java SE Runtime Environment 8 Update 72.) -- C:\WINDOWS\Installer\14543e44.msi [49778688] =>.Oracle Corporation
[MD5.7023871CD73F849AA66BDBB8C4DBC3A1] [WIS][2016/04/25 20:55:27] (.Oracle Corporation - Java SE Runtime Environment 8 Update 91.) -- C:\WINDOWS\Installer\1a48a268.msi [49852416] =>.Oracle Corporation
[MD5.8EA71EBCC207DD1AB200ECC2CFEE5411] [WIS][2016/03/31 14:26:04] (.Oracle Corporation - Java SE Runtime Environment 8 Update 77.) -- C:\WINDOWS\Installer\1ceac0bf.msi [49786880] =>.Oracle Corporation
[MD5.C0C34AB8A6DAB9B7A09804E76E07EF3F] [WIS][2017/01/25 15:18:11] (.Oracle Corporation - Java SE Runtime Environment 8 Update 121.) -- C:\WINDOWS\Installer\1e155d.msi [55508992] =>.Oracle Corporation
[MD5.6871D1EF3A4CAA8B545C66CA7653ADA8] [WIS][2017/05/05 17:38:36] (.Oracle Corporation - Java SE Runtime Environment 8 Update 131.) -- C:\WINDOWS\Installer\2131ef.msi [56561664] =>.Oracle Corporation
[MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 08:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\238569.msi [2805760] =>.Adobe Systems Incorporated
[MD5.1BE55AA37AEF668604EDF87E1B213E00] [WIS][2016/07/25 09:10:00] (.Oracle Corporation - Java SE Runtime Environment 8 Update 101.) -- C:\WINDOWS\Installer\279aef74.msi [54116352] =>.Oracle Corporation
[MD5.6B3B407E30E7D4C46F0F2327D63789FA] [WIS][2015/05/05 10:11:07] (.Nokia - MSVC80_x86_v2.) -- C:\WINDOWS\Installer\2b517d5.msi [12815360] =>.Nokia
[MD5.19A665988BA2E2C24261EEA6AFD1B353] [WIS][2015/05/05 10:11:35] (.Nokia - MSVC90_x86.) -- C:\WINDOWS\Installer\2b517da.msi [28236288] =>.Nokia
[MD5.44AC5FA411BDC34CF17DB30422612742] [WIS][2015/05/05 10:11:38] (.Nokia - Microsoft_VC100_CRT_SP1.) -- C:\WINDOWS\Installer\2b517df.msi [503808] =>.Nokia
[MD5.FA818A63A49C821FD9746BB4F239DDB5] [WIS][2007/07/03 19:35:55] (.Nero AG - Nero 7, Copyright 2007 Nero AG and its lice.) -- C:\WINDOWS\Installer\2f0e85.msi [6425640] =>.Nero AG
[MD5.F401EEF624F009F8F2C6CFDB1D965001] [WIS][2007/03/06 17:47:26] (.Nero AG.) -- C:\WINDOWS\Installer\2f0e8a.msi [1404416] =>.Nero AG
[MD5.80B0233046C94D6EEFF4C409E7109671] [WIS][2016/02/12 01:22:06] (.Oracle Corporation - Java SE Runtime Environment 8 Update 74.) -- C:\WINDOWS\Installer\36c72fb.msi [49774592] =>.Oracle Corporation
[MD5.6D26AC031A53B7E7ED352A57132E7CE8] [WIS][2017/09/13 17:23:54] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\WINDOWS\Installer\43ea03e.msi [45056] =>.Adobe Systems Incorporated
[MD5.EC4950061A77A371AFC2579C4AB68035] [WIS][2016/10/24 10:36:06] (.Oracle Corporation - Java SE Runtime Environment 8 Update 111.) -- C:\WINDOWS\Installer\4d1e564.msi [55205888] =>.Oracle Corporation
[MD5.8579487CE404DCD868A3B767DC765111] [WIS][2015/04/18 21:35:30] (.Husdawg, LLC - System Requirements Lab.) -- C:\WINDOWS\Installer\59fa6.msi [262144] =>.Husdawg, LLC
[MD5.482E9C4F4E866E8AA0B5C036CE419A68] [WIS][2015/11/06 19:53:42] (.Oracle Corporation - Java SE Runtime Environment 8 Update 66.) -- C:\WINDOWS\Installer\6797b.msi [49532928] =>.Oracle Corporation
[MD5.224AF3A0CDA3591BB2012C265EE33CF0] [WIS][2013/07/05 08:58:06] (.Hewlett-Packard - HP FWUpdateEDO2.) -- C:\WINDOWS\Installer\8a7e6.msi [819200] =>.Hewlett-Packard
[MD5.A666B14C461CC7207C0C9B3D0D2D28F3] [WIS][2017/11/15 15:27:25] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\8af3c.msi [880128] =>.Adobe Systems Incorporated
[MD5.5FFCC828741666CBCDCE637A18F46E2F] [WIS][2015/06/01 19:05:37] (.Lavasoft - TcpService.) -- C:\WINDOWS\Installer\919047.msi [3661312] =>.Lavasoft
[MD5.50D800CD418D056C99F3C7D07468D7B1] [WIS][2015/08/29 10:15:46] (.Oracle Corporation - Java SE Runtime Environment 8 Update 60.) -- C:\WINDOWS\Installer\9ad7d.msi [22368256] =>.Oracle Corporation
[MD5.F81C825CFA8E4FF460B7863B6B44B8A2] [WIS][2009/01/27 12:42:11] (.Extensoft.) -- C:\WINDOWS\Installer\a4d40e9.msi [4222976] =>.Extensoft
[MD5.9A863E7D1620AF0930B7AAF7CE76D753] [WIS][2017/10/24 13:41:40] (.Oracle Corporation - Java SE Runtime Environment 8 Update 151.) -- C:\WINDOWS\Installer\b1673.msi [61034496] =>.Oracle Corporation
[MD5.D181C3EC418B36FD41F61937E31C66A1] [WIS][2017/10/24 13:43:10] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\b167c.msi [761856] =>.Oracle Corporation
[MD5.D3A084933A9C89FD06F2C080E0ADAB10] [WIS][2014/03/07 03:25:40] (.Hewlett-Packard Co. - HP Deskjet 1010 series Basic Device Softwar.) -- C:\WINDOWS\Installer\b4944.msi [4042752] =>.Hewlett-Packard Co.
[MD5.36593BE89130436C4A1EAA81CF8E06A9] [WIS][2014/03/07 03:25:42] (.Hewlett-Packard Co. - Product Improvement Study for HP Deskjet 10.) -- C:\WINDOWS\Installer\b494a.msi [245760] =>.Hewlett-Packard Co.
[MD5.E9733D6B3EB399E973C28D72CA4BE15F] [WIS][2014/03/07 03:25:43] (.Hewlett-Packard - HP Update.) -- C:\WINDOWS\Installer\b4950.msi [967168] =>.Hewlett-Packard
[MD5.3A4BA0D7F7411E5A49EF1054BBFA3939] [WIS][2014/03/07 03:25:45] (.Hewlett Packard - HP Deskjet 1010 series Get product specific.) -- C:\WINDOWS\Installer\b4956.msi [139264] =>.Hewlett Packard
[MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/17 10:32:13] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\b857b.msi [40960] =>.Google Inc.
[MD5.CF14970E84D5F2832AA9733D9A7C73F6] [WIS][2017/07/22 14:18:14] (.Oracle Corporation - Java SE Runtime Environment 8 Update 141.) -- C:\WINDOWS\Installer\fe2a9.msi [56287232] =>.Oracle Corporation

---\\ Scan Additionnel (15) - 0s
C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS
C:\WINDOWS\System32\Tasks\AutoKMS =>HackTool.AutoKMS
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\flohajbbpjlbphjgeffnhlopdhoonghc =>PUP.Optional.BlpSearch
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iphahelpmejkbidhiecfeicblienleon =>.SUP.StartSearch
C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lgcpmapfelgmalkdemnmjhfeikcfkchh =>PUP.Optional.BlpSearch
C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\ktkoz2xp.default\extensions\_65Members_@download.fromdoctopdf.com =>.SUP.MindSpark
C:\Users\hp\AppData\Roaming\OpenCandy =>Adware.OpenCandy
C:\Users\hp\AppData\Roaming\PDAppFlex =>Trojan.Elpman
C:\Users\hp\AppData\Roaming\RPEng =>PUP.Optional.Generic
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets =>.SUP.Orphan
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui =>.SUP.Orphan
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3BD44F0E-0596-4008-AEE0-45D47E3A8F0E} =>.SUP.StartSearch
C:\Windows\Installer\{5916A24B-59A4-4FDB-9753-499CB1F65362}\ARPPRODUCTICON.exe =>PUP.Optional.LavasoftWebCompanion
HKLM\Software\Classes\Installer\Products\B42A61954A95BDF4793594C91B6F3526 =>PUP.Optional.LavasoftWebCompanion
HKLM\Software\Classes\Installer\Features\B42A61954A95BDF4793594C91B6F3526 =>PUP.Optional.LavasoftWebCompanion

---\\ Récapitulatif des éléments trouvés sur votre station (16) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS
https://nicolascoolman.eu/2017/09/09/pup-optional-blpsearch/ =>PUP.Optional.BlpSearch
https://nicolascoolman.eu/2017/09/11/sup-startsearch/ =>.SUP.StartSearch
https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>.SUP.MindSpark
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.MyClearSearch
https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.SUP.ReimageRepair
https://nicolascoolman.eu/2017/10/24/sup-pcspeedcat/ =>.SUP.PCSpeedCat
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Downloader
https://nicolascoolman.eu/2017/02/24/adware-opencandy/ =>Adware.OpenCandy
https://nicolascoolman.eu/2017/09/23/trojan-elpman/ =>Trojan.Elpman
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic
https://www.nicolascoolman.com/fr/adware-mywebsearch/ =>PUP.Optional.MyWebSearch
https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo
https://nicolascoolman.eu/2017/03/12/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion

~ Unselected Options: O82,
~ End of the scan, 37137 items in 03mn02s (1226)(0)

Publicité


Signaler le contenu de ce document

Publicité