cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.11.28.204 Par Nicolas Coolman (2017/11/28)
~ Démarré par Barrow 5 & Widen (Administrator) (2017/11/28 17:45:25)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\Barrow 5 & Widen\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Sans échec avec prise en charge du réseau (Fail-safe with network boot)
Windows 7 Starter, 32-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Navigateurs Internet (2) - 1s
~ MSIE: Internet Explorer v11.0.9600.17843
~ OBIE: Comodo Dragon v52.15.25.664

---\\ Informations sur les produits Windows (4) - 3s
~ Windows Server License Manager Script : OK
System - VBScript Engine not found
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (2) - 14s
COMODO Internet Security Complete v10.0.1.6294 (Protection)
Malwarebytes version 3.0.6.1469 v3.0.6.1469 (Protection)

---\\ Logiciels d'optimisation (1) - 20s
~ Wise Registry Cleaner 9.5.1 v9.5.1 (Optimize)

---\\ Surveillance de Logiciels (2) - 20s
~ Adobe Flash Player 10 ActiveX (Surveillance)
~ Adobe Reader 9.1 MUI (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 6 Model 28 Stepping 10, GenuineIntel
~ Operating System: 32-bit
~ Boot mode: Sans échec avec prise en charge du réseau (Fail-safe with network boot)
Total RAM: 1037.408 MB (34% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 125 GB (76%) free of 164 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: YOUCAM8WAIT
~ User Name: Barrow 5 & Widen
~ Logged in as Administrator

---\\ Enumération des unités disques (4) - 0s
~ Drive A: has 4 GB free of 4 GB
~ Drive C: has 125 GB free of 164 GB (System)
~ Drive D: has 18 GB free of 51 GB
~ Drive X: has 1 GB free of 4 GB

---\\ Etat du Centre de Sécurité Windows (11) - 2s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 9s
[MD5.40D777B7A95E00593EB1568C68514493] - 20/11/2010 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation
[MD5.51138BEEA3E2C21EC44D0932C71762A8] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation
[MD5.E4EB138060BAE0DBAB1A3B71A3141FE7] - 18/12/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [1950720] =>.Microsoft Corporation
[MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation
[MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation
[MD5.59DF156711A76BCB993253EC6C9BBF41] - 20/11/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.F81BB7E487EDCEAB630A7EE66CF23913] - 18/12/2016 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation
[MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows®
[MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation
[MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation
[MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation
[MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation
[MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation
[MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation
[MD5.E900BD16B9EE8F09609D7FBE2027B376] - 22/01/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation
[MD5.A00996C9BFEF29A93B9F21DBE1DC502D] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [188928] =>.Microsoft Corporation
[MD5.978E7A2E4BF4E8E70D0776EF0D9E97FB] - 11/01/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1212352] =>.Microsoft Windows®
[MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation
[MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation
[MD5.B459575348C20E8121D6039DA063C704] - 20/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation
[MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (12) - 11s
O23 - Service: AnviStartupTime ( AnviStartupTime) . (.Anvisoft - The Anvi StartupBooster Service.) - C:\Program Files\Anvisoft\StartupBooster\StartupTimeSrv.exe =>.Anvei Technology Co., LTD®
O23 - Service: COMODO Internet Security Helper Service (CmdAgent) . (.COMODO - COMODO Internet Security.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe =>.Comodo Security Solutions, Inc.®
O23 - Service: csssrv (csssrv) . (.COMODO - COMODO Secure Shopping.) - C:\Program Files\COMODO\COMODO Secure Shopping\csssrv.exe =>.Comodo Security Solutions, Inc.®
O23 - Service: DokanMounter (DokanMounter) . (.Paragon Software - Paragon ExtFS for Windows service.) - C:\Program Files\Paragon Software\ExtFS for Windows\extservice.exe {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
O23 - Service: COMODO Dragon Update Service (DragonUpdater) . (.Comodo - Comodo Dragon.) - C:\Program Files\Comodo\Dragon\dragon_updater.exe =>.Comodo Security Solutions®
O23 - Service: Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Agent Application.) - C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation®
O23 - Service: isesrv (isesrv) . (.COMODO - Internet Security Essentials.) - C:\Program Files\COMODO\Internet Security Essentials\isesrv.exe =>.Comodo Security Solutions, Inc.®
O23 - Service: Macrium Service (MacriumService) . (.Paramount Software UK Ltd - Macrium Reflect Utility Service.) - C:\Program Files\Macrium\Common\MacriumService.exe =>.Paramount Software UK Ltd®
O23 - Service: ParagonMounter (ParagonMounter) . (.Paragon Software - Paragon ExtFS for Windows service.) - C:\Program Files\Paragon Software\ExtFS for Windows\extservice.exe {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
O23 - Service: Updater Service (Updater Service) . (.Acer Group - Updater Service.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe =>.Acer Incorporated®
O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) . (.Crystal Rich Ltd - USB Safely Remove assistant service.) - C:\Program Files\USB Safely Remove\USBSRService.exe =>.Crystal Rich Ltd®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (26) - 230s
SS - Auto [24/04/2013] [ 193256] AnviStartupTime ( AnviStartupTime) . (.Anvisoft.) - C:\Program Files\Anvisoft\StartupBooster\StartupTimeSrv.exe =>.Anvei Technology Co., LTD®
SS - Demand [14/01/2016] [ 2140656] Acronis Remote Agent Service (AcronisAgent) . (.Acronis.) - C:\Program Files\Common Files\Acronis\Agent\agent.exe =>.Acronis International GmbH®
SS - Demand [17/03/2016] [ 917984] Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis International GmbH.) - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe =>.Acronis International GmbH®
SS - Demand [24/04/2013] [ 193256] AnviStartupTime (AnviStartupTime) . (.Anvisoft.) - C:\Program Files\Anvisoft\StartupBooster\StartupTimeSrv.exe =>.Anvei Technology Co., LTD®
SS - Auto [29/08/2017] [ 8150344] COMODO Internet Security Helper Service (CmdAgent) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe =>.Comodo Security Solutions, Inc.®
SS - Demand [29/08/2017] [ 2080448] COMODO Virtual Service Manager (cmdvirth) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe =>.Comodo Security Solutions, Inc.®
SS - Auto [30/06/2017] [ 2306232] csssrv (csssrv) . (.COMODO.) - C:\Program Files\COMODO\COMODO Secure Shopping\csssrv.exe =>.Comodo Security Solutions, Inc.®
SS - Auto [09/10/2017] [ 1699008] DokanMounter (DokanMounter) . (.Paragon Software.) - C:\Program Files\Paragon Software\ExtFS for Windows\extservice.exe {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
SS - Auto [29/09/2016] [ 2272904] COMODO Dragon Update Service (DragonUpdater) . (.Comodo.) - C:\Program Files\Comodo\Dragon\dragon_updater.exe =>.Comodo Security Solutions®
SS - Demand [10/08/2010] [ 321104] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.®
SS - Auto [30/08/2017] [ 40080] Service Agent EaseUS (EaseUS Agent) . (.CHENGDU YIWO Tech Development Co., Ltd.) - C:\Program Files\EaseUS\Todo Backup\bin\Agent.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
SS - Demand [11/06/2010] [ 735776] Acer ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe =>.Acer Incorporated®
SS - Auto [08/06/2010] [ 13336] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation®
SS - Auto [08/08/2017] [ 133840] isesrv (isesrv) . (.COMODO.) - C:\Program Files\COMODO\Internet Security Essentials\isesrv.exe =>.Comodo Security Solutions, Inc.®
SS - Auto [12/12/2016] [ 3121832] Macrium Service (MacriumService) . (.Paramount Software UK Ltd.) - C:\Program Files\Macrium\Common\MacriumService.exe =>.Paramount Software UK Ltd®
SS - Demand [20/01/2017] [ 3303888] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [08/11/2016] [10887328] Acronis Managed Machine Service (MMS) . (...) - C:\Program Files\BackupClient\BackupAndRecovery\mms.exe =>.Acronis International GmbH®
SS - Demand [27/05/2010] [ 305520] MyWinLocker Service (MWLService) . (.Egis Technology Inc..) - C:\Program Files\EgisTec MyWinLocker\x86\MWLService.exe =>.EGIS TECHNOLOGY INC.®
SS - Auto [09/10/2017] [ 1699008] ParagonMounter (ParagonMounter) . (.Paragon Software.) - C:\Program Files\Paragon Software\ExtFS for Windows\extservice.exe {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
SS - Demand [07/11/2017] [ 293656] rscp (rscp) . (.Reason Software Company Inc..) - C:\Program Files\Reason\Security\Protection\rscp\bin\rscp_svc.exe =>.Reason Software Company Inc.®
SS - Demand [30/01/2010] [ 260640] Raw Socket Service (RS_Service) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer VCM\RS_Service.exe =>.Acer Incorporated®
SS - Auto [28/11/2017] [ 113624] Sophos Clean Scheduler (SophosCleanScheduler) . (.Sophos Limited.) - C:\Program Files\Sophos\Clean\scsched.exe =>.SurfRight B.V.®
SS - Auto [29/01/2010] [ 243232] Updater Service (Updater Service) . (.Acer Group.) - C:\Program Files\Acer\Acer Updater\UpdaterService.exe =>.Acer Incorporated®
SS - Auto [03/06/2017] [ 1172576] USB Safely Remove Assistant (USBSafelyRemoveService) . (.Crystal Rich Ltd.) - C:\Program Files\USB Safely Remove\USBSRService.exe =>.Crystal Rich Ltd®
SS - Demand [01/03/2017] [ 474768] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files\Wondershare\WAF\2.4.2.222\WsAppService.exe =>.Wondershare software CO., LIMITED®
SS - Demand [05/05/2017] [ 111328] Wondershare Driver Install Service (WsDrvInst) . (.Wondershare.) - C:\Program Files\Wondershare\MirrorGo\DriverInstall.exe =>.Wondershare Technology Co.,Ltd®

---\\ Tâches planifiées en automatique (Registre) (31) - 18s
O38 - TASK: {0D9B5D92-3A22-486D-A887-3AA21597CF27}[\Microsoft\Windows\Time Synchronization\SynchronizeTime] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\system32\sc.exe [37376] =>.Microsoft Corporation
O38 - TASK: {107C8B37-D91D-4198-A796-138C59BAE6A7}[\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [4011712] =>.Comodo Security Solutions, Inc.®
O38 - TASK: {15382135-FF77-448D-A276-F4F4217C8750}[\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cistray.exe [1390784] =>.Comodo Security Solutions, Inc.®
O38 - TASK: {18E6D428-D26C-4169-BEDF-3B5BDDC952F6}[\Microsoft\Windows\Application Experience\ProgramDataUpdater] - (.Microsoft Corporation - Mise à jour des données de compatibilité de.) -- C:\Windows\System32\aepdu.dll [321536] =>.Microsoft Corporation
O38 - TASK: {1EC9510D-A439-4950-9399-B6399EDF9EA7}[\Microsoft\Windows\Autochk\Proxy] - (.Microsoft Corporation - DLL de proxy Autochk.) -- C:\Windows\System32\acproxy.dll [9216] =>.Microsoft Corporation
O38 - TASK: {2375F586-1009-41FB-B54E-30D8AF2B781D}[\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] - (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe [65024] =>.Microsoft Corporation
O38 - TASK: {2B6C967F-2D94-4EC0-A742-D3194ED518FA}[\Microsoft\Windows\Setup\EOSNotify] - (.Microsoft Corporation - EOS Notification.) -- C:\Windows\System32\EOSNotify.exe [301056] =>.Microsoft Corporation
O38 - TASK: {2C59ECAF-3A27-4640-9F4B-519B05BDD70F}[\Microsoft\Windows\MUI\LPRemove] - (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\System32\lpremove.exe [61952] =>.Microsoft Corporation
O38 - TASK: {32FD5D09-6EB8-4C1C-9E59-B0D3EEEBD5AA}[\ReasonSecurityStart] - (.Reason Software Company Inc. - Reason Core Security UI.) -- C:\Program Files\Reason\Security\rsUI.exe [2350360] =>.Reason Software Company Inc.®
O38 - TASK: {42502681-4C75-41C3-844F-1EFCC115A1E5}[\WPD\SqmUpload_S-1-5-21-4183021106-2149456055-877251859-1000] - (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\portabledeviceapi.dll [547840] =>.Microsoft Corporation
O38 - TASK: {4BC96598-1F9C-499C-B112-383DECF9DB58}[\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [4011712] =>.Comodo Security Solutions, Inc.®
O38 - TASK: {5B184694-64C3-4633-94C5-945B3FA561D6}[\Microsoft\Windows\WindowsBackup\ConfigNotification] - (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdclt.exe [1131008] =>.Microsoft Corporation
O38 - TASK: {5C2C622F-70E9-4194-A7DA-033E827365AD}[\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] - (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [494592] =>.Microsoft Corporation
O38 - TASK: {600F00C8-83AE-4215-B434-997B2DF544CC}[\ReasonSecurityScheduledScan] - (.Reason Software Company Inc. - Reason Core Security UI.) -- C:\Program Files\Reason\Security\rsUI.exe [2350360] =>.Reason Software Company Inc.®
O38 - TASK: {60158C7A-6808-42CD-95EE-AFD9A57925DB}[\Microsoft\Windows\AppID\PolicyConverter] - (.Microsoft Corporation - AppID Policy Converter Task.) -- C:\Windows\System32\appidpolicyconverter.exe [96768] =>.Microsoft Corporation
O38 - TASK: {6AEF0C98-2CB4-4B67-8C70-4C977C7355CC}[\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [37376] =>.Microsoft Corporation
O38 - TASK: {6B7AC694-8D6D-481B-9DD8-2A3A741ADA6D}[\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem] - (.Microsoft Corporation - Outil de ligne de commande des paramètres d.) -- C:\Windows\System32\powercfg.exe [59392] =>.Microsoft Corporation
O38 - TASK: {731E9C62-95B5-4C8C-AB64-4CC591C9FF5B}[\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] - (.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\System32\raserver.exe [101888] =>.Microsoft Corporation
O38 - TASK: {7D3C7871-A917-4EF0-82E8-5F0A96423051}[\Microsoft\Windows\Bluetooth\UninstallDeviceTask] - (.Microsoft Corporation - Tâche de désinstallation du périphérique Bl.) -- C:\Windows\System32\BthUdTask.exe [35328] =>.Microsoft Corporation
O38 - TASK: {82DA93F4-C788-4F69-9ABB-DF895A3A9EA1}[\COMODO\COMODO CMC {06A09C0F-DD9C-4191-A670-71115CD78627}] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [4011712] =>.Comodo Security Solutions, Inc.®
O38 - TASK: {8A719DFB-8A2E-4632-B2FA-A1FD93FBAB33}[\ExtFS Updater] - (.Paragon Software Group - Paragon Updater.) -- C:\Program Files\Paragon Software\ExtFS for Windows\Updater.exe [322240] {247D157352D5671A5E44263793DF43D2} =>.Paragon Software Group
O38 - TASK: {9334C323-F100-4656-9BA0-E4AA69C0F9C2}[\Microsoft\Windows\SystemRestore\SR] - (.Microsoft Corporation - Bibliothèque de configuration de la protect.) -- C:\Windows\System32\srrstr.dll [257024] =>.Microsoft Corporation
O38 - TASK: {A6394592-54CE-4E93-8D64-1A068F462632}[\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] - (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [254976] =>.Microsoft Corporation
O38 - TASK: {B9BEE219-C29E-4310-819C-147A5A0E045E}[\Microsoft\Windows\Defrag\ScheduledDefrag] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\system32\defrag.exe [176128] =>.Microsoft Corp.
O38 - TASK: {BE80F31A-8BD3-4E5C-A0FB-8FEDCAA4B94E}[\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [4011712] =>.Comodo Security Solutions, Inc.®
O38 - TASK: {C90440A0-6D8F-423F-8F42-83EEF05CE708}[\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] - (.Microsoft Corporation - AppID Certificate Store Verification Task.) -- C:\Windows\System32\appidcertstorecheck.exe [16896] =>.Microsoft Corporation
O38 - TASK: {D622195C-D680-4FEA-9C56-59660C7C9E94}[\Microsoft\Windows\UPnP\UPnPHostConfig] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [37376] =>.Microsoft Corporation
O38 - TASK: {DE8699D2-8A05-42F7-8A85-5162AF47D26A}[\Microsoft\Windows\Windows Error Reporting\QueueReporting] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\system32\wermgr.exe [53760] =>.Microsoft Corporation
O38 - TASK: {EAC0F44D-87D8-4B43-8CF6-D39E46009E27}[\ExtFS GUI] - (.Paragon Software - Graphic user interface for Paragon ExtFS fo.) -- C:\Program Files\Paragon Software\ExtFS for Windows\Paragon ExtFS for Windows.exe [4057792] {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
O38 - TASK: {F7B2FDDE-00BB-4BE3-B88B-43B50FC8DD02}[\FreeDownloadManagerNetworkMonitor] - (.FreeDownloadManager.org - Free Download Manager Edge Integration Modu.) -- C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\winwfpmonitor.exe [694472] =>.Softdeluxe Ltd.®
O38 - TASK: {F93C7104-998A-4A38-B935-775A3138B3C3}[\Microsoft\Windows\Location\Notifications] - (.Microsoft Corporation - Activité de la localisation.) -- C:\Windows\System32\LocationNotifications.exe [89600] =>.Microsoft Corporation

---\\ Applications lancées au démarrage du système (10) - 4s
O4 - HKLM\..\Run: [COMODO Internet Security] . (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cistray.exe =>.Comodo Security Solutions, Inc.®
O4 - HKLM\..\Run: [vdcss] . (.COMODO - COMODO Secure Shopping.) -- C:\Program Files\COMODO\COMODO Secure Shopping\vdcss.exe =>.Comodo Security Solutions, Inc.®
O4 - HKLM\..\Run: [IseUI] . (.COMODO - Internet Security Essentials.) -- C:\Program Files\Comodo\Internet Security Essentials\vkise.exe =>.Comodo Security Solutions, Inc.®
O4 - HKCU\..\RunOnce: [Report] . (...) -- C:\AdwCleaner\AdwCleaner[C2].txt
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-4183021106-2149456055-877251859-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\widen-finalis\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKUS\S-1-5-21-4183021106-2149456055-877251859-1000\..\Run: [Spotify] . (. - .) -- --minimized =>.SUP.Orphan

---\\ Processus lancés (2) - 5s
[MD5.D10ACB64AC52562CF007465CD3F6BAAE] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Barrow 5 & Widen\Desktop\ZHPDiag3.exe [2937728] [PID.1888] =>.Nicolas Coolman
[MD5.584AAD4705BF020487CE2D2B16094909] - (.Sophos Limited - SophosClean.) -- C:\Users\Barrow 5 & Widen\Downloads\SophosClean.exe [10752368] [PID.996] =>.SurfRight B.V.®

---\\ Comodo Dragon, Démarrage,Recherche,Extensions (7) - 2s
C2 - CDE: Preference [User Data\Default] [aneodkojaglhnkkdbbdnmmmgimlcaogo] Comodo Drag&Drop Service =>.Comodo Inc.
C2 - CDE: Preference [User Data\Default] [bdngekjahnmlkinegnhdmmbcfnmbclnn] Comodo Web Inspector =>.Comodo Inc.
C2 - CDE: Preference [User Data\Default] [dihmnpngfonlhjmgkflpnibiaaliendo] Comodo Media Downloader =>.Comodo Inc.
C2 - CDE: Preference [User Data\Default] [ejodbgfcaefpfbfgakjpjoppmkgmcpjp] PriceSuggester =>.Pricesuggester.com
C2 - CDE: Preference [User Data\Default] [kglppafajjeikfgmjjegogphhkjnnmgc] Comodo Dragon Browser Light Theme =>.Comodo Inc.
C2 - CDE: Preference [User Data\Default] [mcmdgbiocnkpnaccjkailibfgepaccgf] Comodo Share Page Service =>.Comodo Inc.
C2 - CDE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Comodo Dragon manifest =>.Comodo Inc. =>.Comodo Inc.

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (8) - 0s
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr =>.Google Inc.
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.16428 (winblue_gdr.131013-1700)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (20)

---\\ Browser Helper Object de navigateur (BHO) (2) - 0s
O2 - BHO: IeUrlFilter Class - {2DD257A3-5028-41AE-A1E7-A12F76A08893} . (.COMODO - COMODO Secure Shopping.) -- C:\Program Files\Comodo\COMODO Secure Shopping\cssbho32.dll =>.Comodo Security Solutions, Inc.®
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corporation - WindowsLiveLogin.dll.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®

---\\ Raccourcis Global Startup (82) - 55s
O4 - GS\Desktop [Acronis Agent User]: AdsFix_Donate.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://www.paypal.com/ =>.Microsoft Corporation
O4 - GS\Desktop [Acronis Agent User]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Acronis Agent User]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Acronis Agent User]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [Acronis Agent User]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Acronis Agent User]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Acer\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated®
O4 - GS\TaskBar [Acronis Agent User]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Acronis Agent User]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Acronis Agent User]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Administrateur]: AdsFix_Donate.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://www.paypal.com/ =>.Microsoft Corporation
O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Acer\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Barrow 5 & Widen]: AdsFix_Donate.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://www.paypal.com/ =>.Microsoft Corporation
O4 - GS\Desktop [Barrow 5 & Widen]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Barrow 5 & Widen]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Barrow 5 & Widen]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [Barrow 5 & Widen]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Barrow 5 & Widen]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Acer\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated®
O4 - GS\TaskBar [Barrow 5 & Widen]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Barrow 5 & Widen]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [Barrow 5 & Widen]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [widen-finalis]: AdsFix_Donate.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://www.paypal.com/ =>.Microsoft Corporation
O4 - GS\Desktop [widen-finalis]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [widen-finalis]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [widen-finalis]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\sendTo [widen-finalis]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [widen-finalis]: Welcome Center.lnk . (.Acer Incorporated - Welcome Center.) C:\Program Files\Acer\Welcome Center\OEMWelcomeCenter.exe =>.Acer Incorporated®
O4 - GS\TaskBar [widen-finalis]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\TaskBar [widen-finalis]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Programs [widen-finalis]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Acer Configuration Manager for Android(TM).lnk . (.Macrovision Corporation - InstallShield.) C:\Windows\Installer\{523281E5-91DD-49F5-9D85-954148F7596A}\AndroidManager.exe_EDE5AF10CF5B4DA1B61C039E5CAD3FA5.exe =>.Macrovision Corporation
O4 - GS\CommonDesktop [Public]: Comodo Dragon.lnk . (.Comodo - Comodo Dragon.) C:\Program Files\Comodo\Dragon\dragon.exe =>.Comodo Security Solutions®
O4 - GS\CommonDesktop [Public]: COMODO Internet Security Complete 10.lnk . (.COMODO - COMODO Internet Security.) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe --shortcut =>.Comodo Security Solutions, Inc.®
O4 - GS\CommonDesktop [Public]: EaseUS Partition Master 12.5.lnk . (.EaseUS - EaseUS Partition Master Loader Application.) C:\Program Files\EaseUS\EaseUS Partition Master 12.5\bin\epm0.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O4 - GS\CommonDesktop [Public]: EaseUS Todo Backup Free 10.6.lnk . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Todo Backup Application.) C:\Program Files\EaseUS\Todo Backup\bin\Loader.exe =>.CHENGDU YIWO Tech Development Co., Ltd.®
O4 - GS\CommonDesktop [Public]: Free Download Manager 5.lnk . (.FreeDownloadManager.org - Free Download Manager.) C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\fdm.exe =>.Softdeluxe Ltd.®
O4 - GS\CommonDesktop [Public]: Laplink PCmover Express.lnk . (.Laplink Software Inc. - PCmover.) C:\Program Files\Laplink\PCmover\PCmover.exe {092F06993183E6FABE58CE129451D6BE} =>.Laplink Software Inc.
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Music Recorder.lnk . (.Audials AG - SplashScreenStarter.) C:\Program Files\Music Recorder\Music Recorder 2016\AudialsStarter.exe =>.Audials AG
O4 - GS\CommonDesktop [Public]: Paragon ExtFS for Windows.lnk . (.Paragon Software - Graphic user interface for Paragon ExtFS fo.) C:\Windows\Installer\{F0CF025B-D6F3-4F7C-939B-23291F52875C}\ParagonExtFSforWindows.exe {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
O4 - GS\CommonDesktop [Public]: Reason Core Security.lnk . (.Reason Software Company Inc. - Reason Core Security UI.) C:\Program Files\Reason\Security\rsUI.exe =>.Reason Software Company Inc.®
O4 - GS\CommonDesktop [Public]: Sophos Clean.lnk . (.Sophos Limited - SophosClean.) C:\Program Files\Sophos\Clean\SophosClean.exe =>.SurfRight B.V.®
O4 - GS\CommonDesktop [Public]: Spotify Ad Remover.lnk . (...) C:\Program Files\SecurityXploded\Spotify Ad Remover\SpotifyAdRemover.exe
O4 - GS\CommonDesktop [Public]: StartupBooster.lnk . (.Anvisoft - Anvi Startup Booster Application.) C:\Program Files\Anvisoft\StartupBooster\StartupBooster.exe =>.Anvei Technology Co., LTD®
O4 - GS\CommonDesktop [Public]: UTILILAB SystemOPTIMIZER.lnk . (.UTILILAB GmbH, (www.utililab.com) - UTILILAB SystemOPTIMIZER - UAC Launcher.) C:\Program Files\UTILILAB\SystemOPTIMIZER\HighestAvailable.exe C:\Program Files\UTILILAB\SystemOPTIMIZER\USO.exe {00B233BC32FCEFAC7A7B4F96557686C278}
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-FFFF-7B44-A91000000001}\SC_Reader.ico =>.Adobe Inc.
O4 - GS\ProgramsCommon [Public]: Microsoft Office 2010.lnk . (...) C:\Windows\Installer\{95140000-0070-0000-0000-0000000FF1CE}\oobeicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Music Recorder.lnk . (.Audials AG - SplashScreenStarter.) C:\Program Files\Music Recorder\Music Recorder 2016\AudialsStarter.exe =>.Audials AG
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{CFB4C46D-1B8B-4FB1-A605-36FA4CB6F2AA}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ Protocole additionnel (21) - 3s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype for COM API.) -- C:\Program Files\Acer\Acer VCM\Skype4COM.dll =>.Skype Technologies SA®
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Logiciels installés (85) - 310s
O42 - Logiciel: Acer Crystal Eye webcam Ver:1.1.192.810 - (.Chicony Electronics Co.,Ltd..) [HKLM] -- {D0ACE89D-EC7F-470F-80BE-4C98ED366B32} =>.Chicony Electronics Co., Ltd.®
O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM] -- {3DB0448D-AD82-4923-B305-D001E521A964} =>.Acer Incorporated
O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated®
O42 - Logiciel: Acer VCM - (.Acer Incorporated.) [HKLM] -- {047F790A-7A2A-4B6A-AD02-38092BA63DAC} =>.Acer Incorporated
O42 - Logiciel: Acrobat.com - (.Adobe Systems Incorporated.) [HKLM] -- {287ECFA4-719A-2143-A09B-D6A12DE54E40} =>.Adobe Systems Incorporated
O42 - Logiciel: Acronis Backup Agent - (.Acronis.) [HKLM] -- {0BFB76C9-9A5B-4C12-A2FF-9ED9640F1436} =>.Acronis
O42 - Logiciel: Acronis Backup Agent - (.Acronis.) [HKLM] -- 9EBDE6F5-EAE6-4326-A3A1-DEAA29F32D1D_BackupAndRecovery =>.Acronis International GmbH®
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- {A2BCA9F1-566C-4805-97D1-7FDC93386723} =>.Adobe Systems Inc.
O42 - Logiciel: Adobe AIR - (.Adobe Systems Inc..) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 10 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader 9.1 MUI - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-FFFF-7B44-A91000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: AndroidInstaller - (..) [HKLM] -- {523281E5-91DD-49F5-9D85-954148F7596A}
O42 - Logiciel: AndroidInstaller - (..) [HKLM] -- InstallShield_{523281E5-91DD-49F5-9D85-954148F7596A}
O42 - Logiciel: Apowersoft Enregistreur d'écran Pro V2.2.5 - (.APOWERSOFT LIMITED.) [HKLM] -- {dc9006db-6b05-4f0f-833b-79ef3f284c24}_is1 =>.APOWERSOFT LIMITED
O42 - Logiciel: Ashampoo Burning Studio 2017 - (.Ashampoo GmbH & Co. KG.) [HKLM] -- {91B33C97-C878-6579-69BA-23E5405C7AAB}_is1 =>.Ashampoo GmbH & Co. KG®
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Atheros Communications Inc.®
O42 - Logiciel: Auslogics Registry Cleaner - (.Auslogics Labs Pty Ltd.) [HKLM] -- {8D8024F1-2945-49A5-9B78-5AB7B11D7942}_is1 =>.Auslogics Labs Pty Ltd
O42 - Logiciel: Comodo Dragon - (.Comodo.) [HKLM] -- Comodo Dragon =>.Comodo Security Solutions®
O42 - Logiciel: COMODO Internet Security Complete - (.COMODO Security Solutions Inc..) [HKLM] -- {67DA4459-33A8-4E69-9C7B-FB5CBADA60AB} =>.COMODO Security Solutions Inc.
O42 - Logiciel: COMODO Internet Security Complete - (.COMODO Security Solutions Inc..) [HKLM] -- COMODO Internet Security =>.Comodo Security Solutions, Inc.®
O42 - Logiciel: COMODO Secure Shopping - (.COMODO.) [HKLM] -- {D15DF9B0-3A98-4BEF-B7D5-FC3AEA421657} =>.Comodo
O42 - Logiciel: COMODO Secure Shopping - (.Comodo.) [HKLM] -- Comodo Secure_Shopping_list_uninstall =>.Comodo Security Solutions, Inc.®
O42 - Logiciel: Copy Handler 1.40 - (.Józef Starosczyk.) [HKLM] -- {9CF6A157-F0E8-4216-B229-C0CA8204BE2C}_is1
O42 - Logiciel: EaseUS EverySync 3.0 - (.EaseUS.) [HKLM] -- EaseUS EverySync_is1 =>.EaseUS
O42 - Logiciel: EaseUS Partition Master 12.5 - (.EaseUS.) [HKLM] -- EaseUS Partition Master_is1 =>.EaseUS
O42 - Logiciel: EaseUS Todo Backup Free 10.6 - (.CHENGDU YIWO Tech Development Co., Ltd.) [HKLM] -- EaseUS Todo Backup_is1 =>.CHENGDU YIWO Tech Development Co., Ltd
O42 - Logiciel: EaseUS Todo PCTrans 9.8 - (.EaseUS.) [HKLM] -- EaseUS Todo PCTrans_is1 =>.EaseUS
O42 - Logiciel: Eassos System Restore 2.0.3 - (.Eassos Co., Ltd..) [HKLM] -- {37E567C7-EB03-4349-B068-1FD0A2CD55FE}_is1 {2676A425C48F8FCD31CB309981AE133D} =>.Eassos Co., Ltd.
O42 - Logiciel: EF StartUp Manager - (.EFSoftware.) [HKLM] -- EF StartUp Manager {57B62C426785DEFAF068A37F08BC0F5C}
O42 - Logiciel: ENE USB Card Reader Driver - (.ENE.) [HKLM] -- 3B29FD3CCF1F5B855DA0C521597413EBABE97DFB =>.ENE Technology Inc.®
O42 - Logiciel: ETDWare PS/2-x86 7.0.6.5_WHQL - (.ELAN Microelectronics Corp..) [HKLM] -- Elantech =>.ELAN Microelectronics Corporation®
O42 - Logiciel: Free Download Manager - (.FreeDownloadManager.ORG.) [HKLM] -- {43781dff-e0df-49ce-a6d2-47da96a485e7}}_is1 =>.FreeDownloadManager.org
O42 - Logiciel: Identity Card - (.Acer Incorporated.) [HKLM] -- Identity Card =>.Acer Incorporated®
O42 - Logiciel: IM-Magic Partition Resizer Free 2016 - (.IM-Magic Inc..) [HKLM] -- IM_Magic_PR =>.IM-Magic Inc.
O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI =>.Intel Corporation®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation®
O42 - Logiciel: Internet Security Essentials - (.Comodo.) [HKLM] -- ComodoIse =>.Comodo Security Solutions, Inc.®
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM] -- IObitUninstall =>.IObit
O42 - Logiciel: IObit Unlocker - (.IObit.) [HKLM] -- IObit Unlocker_is1 =>.IObit Information Technology®
O42 - Logiciel: KeyScrambler - (.QFX Software Corporation.) [HKLM] -- KeyScrambler =>.QFX Software Corporation
O42 - Logiciel: Laplink PCmover Express - (.Laplink Software, Inc..) [HKLM] -- {2B2E26CD-10BC-40EE-9101-012818950369} =>.Laplink Software, Inc.
O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM] -- LManager =>.Dritek System Inc.®
O42 - Logiciel: lfs hyper setup november - (.widen-finalis.) [HKLM] -- lfs hyper setup november
O42 - Logiciel: Macrium Reflect Free Edition - (.Paramount Software (UK) Ltd..) [HKLM] -- {94572F25-AB01-4EF7-A1FB-60A35C984F4F} =>.Paramount Software (UK) Ltd.
O42 - Logiciel: Macrium Reflect Free Edition - (.Paramount Software (UK) Ltd..) [HKLM] -- MacriumReflect =>.Paramount Software UK Ltd®
O42 - Logiciel: Malwarebytes version 3.0.6.1469 - (.Malwarebytes.) [HKLM] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Moo0 Clic Droit 1.53 - (..) [HKLM] -- Moo0 RightClicker
O42 - Logiciel: Moo0 FFmpeg 1.05 - (.FFmpeg Group.) [HKLM] -- Moo0 FFmpeg =>.FFmpeg Group
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {22B775E7-6C42-4FC5-8E10-9A5E3257BD94} =>.Microsoft
O42 - Logiciel: Music Recorder - (.Audials AG.) [HKLM] -- {F1F805B8-92AC-4EEF-8CCE-4538F6EBEBA0} =>.Audials AG
O42 - Logiciel: MyWinLocker - (.Egis Technology Inc..) [HKLM] -- {0D7CD0D9-4A88-4A63-8F91-3F4E8F371768} =>.Egis Technology Inc.
O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM] -- {738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE} =>.Egis Technology Inc.
O42 - Logiciel: MyWinLocker Suite - (.Egis Technology Inc..) [HKLM] -- InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE} =>.Egis Technology Inc.
O42 - Logiciel: Paragon ExtFS for Windows - (.Paragon Software GmbH.) [HKLM] -- {F0CF025B-D6F3-4F7C-939B-23291F52875C}
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Macrovision Corporation®
O42 - Logiciel: Reason Core Security - (.Reason Software Company Inc..) [HKLM] -- Reason Core Security =>.Reason Software Company Inc.®
O42 - Logiciel: Scadarlia version 1.1.2 - (.Kalidor WEB, Ltd..) [HKLM] -- {AAC7A336-EC23-4829-865A-EAE041171023}_is1
O42 - Logiciel: Shredder - (.Egis Technology Inc..) [HKLM] -- {C2695E83-CF1D-43D1-84FE-B3BEC561012A} =>.Egis Technology Inc.
O42 - Logiciel: Silent Install Builder 5 - (.Aprel Tech, LLC.) [HKLM] -- {2452C59D-5120-4A9A-A97F-B925390619E1}
O42 - Logiciel: Software Informer 1.5.1324.0 - (.Informer Technologies, Inc..) [HKLM] -- Software Informer_is1 =>.Softdeluxe Ltd.®
O42 - Logiciel: Sophos Clean 3.7 - (.Sophos Limited.) [HKLM] -- SophosClean =>.SurfRight B.V.®
O42 - Logiciel: Spotify Ad Remover - (.SecurityXploded.) [HKLM] -- {F3E11FFD-31F3-4D97-BFFE-D6700EC3173D} =>.SecurityXploded
O42 - Logiciel: Spotify Ad Remover - (.SecurityXploded.) [HKLM] -- Spotify Ad Remover 1.0 =>.SecurityXploded
O42 - Logiciel: StartupBooster 1.0 - (.anvisoft.) [HKLM] -- StartupBooster =>.Anvisoft
O42 - Logiciel: Supercopier 1.2.1.0 - (.Supercopier.) [HKLM] -- Supercopier =>.Supercopier
O42 - Logiciel: TeraCopy 2.3 - (.Code Sector.) [HKLM] -- TeraCopy_is1 =>.Code Sector®
O42 - Logiciel: TunesKit Spotify Converter 1.2.2.108 - (.TunesKit, Inc..) [HKLM] -- TunesKit Spotify Converter_is1
O42 - Logiciel: TweakBit PCRepairKit - (.Auslogics Labs Pty Ltd.) [HKLM] -- {5AEA8CFE-B238-4D0A-9362-D55F38ECB795}_is1 =>.Auslogics Labs Pty Ltd
O42 - Logiciel: Ultracopier 1.2.1.0 - (.Ultracopier.) [HKLM] -- Ultracopier =>.Ultracopier
O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM] -- Unlocker =>.Cedrick Collomb
O42 - Logiciel: USB Safely Remove 6.0 - (.SafelyRemove.com.) [HKLM] -- USB Safely Remove_is1 =>.SafelyRemove.com
O42 - Logiciel: UsbFix Premium 2016 - (.SOSVirus (SOSVirus.Net).) [HKLM] -- Usbfix
O42 - Logiciel: UTILILAB DriverUPDATER - (.UTILILAB GmbH.) [HKLM] -- {25F316ED-9D34-4741-A3A4-847F2642FEF4}_is1
O42 - Logiciel: UTILILAB SystemOPTIMIZER - (.UTILILAB GmbH.) [HKLM] -- {B80101BC-D0EE-45e3-AD9A-50AE7B834EB0}_is1
O42 - Logiciel: Watermark Software 8.3 - (.watermark-software.com.) [HKLM] -- Watermark Software =>.watermark-software.com
O42 - Logiciel: Welcome Center - (.Acer Incorporated.) [HKLM] -- Acer Welcome Center =>.Acer Incorporated®
O42 - Logiciel: Wise AD Cleaner 1.1.1 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise AD Cleaner_is1 =>.Lespeed Technology Ltd.®
O42 - Logiciel: Wise Disk Cleaner 9.5.7 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Disk Cleaner_is1 =>.WiseCleaner.com, Inc.
O42 - Logiciel: Wise Registry Cleaner 9.5.1 - (.WiseCleaner.com, Inc..) [HKLM] -- Wise Registry Cleaner_is1 =>.Lespeed Technology Ltd.®
O42 - Logiciel: Wondershare Filmora(Build 7.8.1) - (.Wondershare Software.) [HKLM] -- Wondershare Filmora_is1 =>.Wondershare Software
O42 - Logiciel: Wondershare Helper Compact 2.5.2 - (.Wondershare.) [HKLM] -- {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 =>.Wondershare
O42 - Logiciel: Wondershare MirrorGo(Version 1.9.0) - (.Wondershare.) [HKLM] -- {EE843B49-D9BC-4A9E-A8A7-B9F14C0381C7}_is1 =>.Wondershare Technology Co.,Ltd®

---\\ HKCU & HKLM Software Keys (74) - 312s
HKLM\SOFTWARE\Acer =>.Acer
HKLM\SOFTWARE\Acer Incorporated =>.Acer Incorporated
HKLM\SOFTWARE\ACLEngine
HKLM\SOFTWARE\Acronis =>.Acronis
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AdsFix =>.g3n-h@ckm@n
HKLM\SOFTWARE\America Online =>.America Online
HKLM\SOFTWARE\Ashampoo =>.Ashampoo
HKLM\SOFTWARE\Atheros Communications Inc. =>.Qualcomm Atheros
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\AVC3
HKLM\SOFTWARE\Benchmarking
HKLM\SOFTWARE\BenVista =>.BenVista
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\Chicony Electronics Co.,Ltd. =>.Chicony Electronics Co.,Ltd.
HKLM\SOFTWARE\Code Sector =>.Code Sector
HKLM\SOFTWARE\COMODO =>.Comodo
HKLM\SOFTWARE\ComodoGroup =>.ComodoGroup
HKLM\SOFTWARE\Disc Soft =>.Disc Soft
HKLM\SOFTWARE\Dritek =>.Dritek
HKLM\SOFTWARE\DTS =>.Creative Technology
HKLM\SOFTWARE\EaseUS =>.EaseUS Software
HKLM\SOFTWARE\EaseUS Todo Backup =>.EaseUS Software
HKLM\SOFTWARE\Eassos
HKLM\SOFTWARE\EgisTec =>.EgisTec
HKLM\SOFTWARE\EgisTec IPS =>.EgisTec
HKLM\SOFTWARE\EgisTec Shredder =>.EgisTec
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Ignis
HKLM\SOFTWARE\Insyde Software
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\KillSoft =>.Killsoft
HKLM\SOFTWARE\Laplink =>.Laplink
HKLM\SOFTWARE\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\LogMeInRescueCallingCard =>.LogMeIn Entreprise
HKLM\SOFTWARE\macrium =>.Macrium
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins-BackupByVivaldiPortable
HKLM\SOFTWARE\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Oberon Media =>.Oberon Media
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OemSetup =>.Microsoft Corporation
HKLM\SOFTWARE\OOBEOffer
HKLM\SOFTWARE\Paragon Software =>.Paragon Software
HKLM\SOFTWARE\QFX Software =>.QFX Software
HKLM\SOFTWARE\RapidSolution =>.RapidSolution
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Reason =>.Propellerhead
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\SophosClean
HKLM\SOFTWARE\SOSVirus =>.SosVirus
HKLM\SOFTWARE\Spearit
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Steganos =>.Steganos
HKLM\SOFTWARE\utililab
HKLM\SOFTWARE\WafCX =>.WafCX
HKLM\SOFTWARE\Waves Audio =>.Waves Audio
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Zemana =>.Zemana
HKLM\SOFTWARE\ZmnGlobalSDK =>.Zemana Ltd
HKCU\SOFTWARE\Anvisoft =>.Anvisoft
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Code Sector =>.Code Sector
HKCU\SOFTWARE\Comodo =>.Comodo
HKCU\SOFTWARE\ComodoGroup =>.ComodoGroup
HKCU\SOFTWARE\EaseUS =>.EaseUS Software
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation

---\\ Contenu des dossiers Programmes (221) - 115s
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Acer =>.Acer Incorporated®
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Acer Accessory Store =>.Acer Inc.
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Acer GameZone =>.Acer Inc.
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Anvisoft =>.Anvisoft
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\AoaoPhoto Digital Studio =>.E-Mig Technology, Inc.®
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Apowersoft =>.Apowersoft
O43 - CFD: 08/11/2017 - [] D -- C:\Program Files\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 04/02/2017 - [] D -- C:\Program Files\BackupClient =>.Acronis International GmbH®
O43 - CFD: 04/02/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 04/02/2017 - [] D -- C:\Program Files\Comodo =>.Comodo Group.
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Copy Handler {6A8CA74C28DB4978F2ACE8BC61A3BDEA}
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 08/11/2017 - [] D -- C:\Program Files\EaseUS =>.EaseUS Software
O43 - CFD: 25/11/2017 - [] D -- C:\Program Files\Eassos System Restore {2676A425C48F8FCD31CB309981AE133D}
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\EF StartUp Manager {57B62C426785DEFAF068A37F08BC0F5C}
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\EgisTec IPS =>.EgisTec
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\EgisTec MyWinLocker =>.EgisTec
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\EgisTec MyWinLockerSuite =>.EgisTec
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\EgisTec Shredder =>.EgisTec
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation®
O43 - CFD: 04/02/2017 - [0] D -- C:\Program Files\eSobi =>.eSobi Inc
O43 - CFD: 12/12/2016 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Franzis =>.BenVista Ltd.®
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\FreeDownloadManager.ORG =>.Softdeluxe Ltd.®
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\IM-Magic
O43 - CFD: 05/02/2017 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 21/12/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] D -- C:\Program Files\IObit =>.IObit
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\KeyScrambler =>.QFX Software
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\KillSoft
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Laplink =>.Laplink
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Launch Manager =>.Legitimate
O43 - CFD: 25/11/2017 - [] D -- C:\Program Files\Lavasoft =>.Lavasoft
O43 - CFD: 21/12/2016 - [] D -- C:\Program Files\Macrium =>.Paramount Software UK Ltd®
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Moo0 =>.Moo0
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Music Recorder =>.Audial AG
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Paragon Software {247D157352D5671A5E44263793DF43D2} =>.Paragon Software
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Preload =>.Skype Technologies SA®
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\Reason =>.Reason Software Company Inc.®
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\Scadarlia
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Sidify =>.Sidify
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Silent Install Builder 5 {2682C59A635E544C4D3A4CF79146DB63}
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\Software Informer
O43 - CFD: 28/11/2017 - [] D -- C:\Program Files\Sophos =>.SurfRight B.V.®
O43 - CFD: 04/02/2017 - [] D -- C:\Program Files\Steganos Privacy Suite 18
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Supercopier =>.SFX Team
O43 - CFD: 17/09/2010 - [0] HD -- C:\Program Files\Temp =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\TeraCopy =>.Code Sector Inc.
O43 - CFD: 08/11/2017 - [] D -- C:\Program Files\TunesKit Spotify Converter {5B2D41E0FC0064B3DFDD7717E45CE426}
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Ultracopier =>.Herman Brule
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\USB Safely Remove =>.Crystal Rich Ltd
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\UTILILAB {00B233BC32FCEFAC7A7B4F96557686C278}
O43 - CFD: 21/12/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Windows Live SkyDrive =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 15/12/2016 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Wise =>.Legitimate
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Wondershare =>.Wondershare
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer =>.Acer
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Crystal Eye webcam =>.Acer Inc.
O43 - CFD: 07/11/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone =>.Acer Inc.
O43 - CFD: 12/12/2016 - [] AD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AcerSystem =>.Acer Inc.
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft =>.Anvisoft
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft
O43 - CFD: 20/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo =>.Comodo Group.
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Copy Handler
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0 =>.EaseUS Software
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 12.5 =>.EaseUS Software
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 10.6 =>.EaseUS Software
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo PCTrans =>.EaseUS Software
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eassos System Restore
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EF StartUp Manager
O43 - CFD: 17/09/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec =>.EgisTec
O43 - CFD: 04/02/2017 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSobi v2 =>.eSobi Inc
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Download Manager =>.FreeDownloadManager.com
O43 - CFD: 14/12/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 17/09/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker =>.IObit
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyScrambler =>.QFX Software
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KillCopy
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Laplink PCmover Express
O43 - CFD: 25/11/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft
O43 - CFD: 21/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium =>.Macrium
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 17/09/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon ExtFS for Windows
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reason Core Security
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scadarlia
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Install Builder 5
O43 - CFD: 17/09/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software Informer
O43 - CFD: 28/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos =>.Sophos
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotify Ad Remover
O43 - CFD: 07/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steganos Privacy Suite 18
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeraCopy =>.Code Sector Inc.
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TunesKit Spotify Converter
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UTILILAB
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise AD Cleaner
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner =>.WiseCleaner.com, Inc
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Registry Cleaner =>.WiseCleaner Inc.
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare
O43 - CFD: 17/09/2010 - [] D -- C:\ProgramData\Acer =>.Acer
O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\Acronis =>.Acronis
O43 - CFD: 17/09/2010 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Anvisoft =>.Anvisoft
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Ashampoo =>.Ashampoo GmbH
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Benchmarking.exe
O43 - CFD: 12/12/2016 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Caphyon =>.Caphyon
O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\Comodo =>.Comodo Group.
O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\Comodo Downloader
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\EgisTec IPS =>.EgisTec
O43 - CFD: 17/09/2010 - [] D -- C:\ProgramData\eSobi =>.eSobi Inc
O43 - CFD: 12/12/2016 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Informer Technologies, Inc =>.Informer Technologies, Inc
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\install_backup
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\IObit =>.IObit
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Laplink =>.Laplink
O43 - CFD: 25/11/2017 - [0] D -- C:\ProgramData\Lavasoft =>.Lavasoft
O43 - CFD: 21/12/2016 - [] D -- C:\ProgramData\Macrium =>.Macrium
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 12/12/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 21/12/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 04/02/2017 - [0] D -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\oem =>.OEM
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\OO Software =>.O&O Software GmbH
O43 - CFD: 15/12/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Paragon =>.Paragon
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\QFX Software =>.QFX Software
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\RapidSolution =>.RapidSolution
O43 - CFD: 05/02/2017 - [] D -- C:\ProgramData\Reason
O43 - CFD: 04/02/2017 - [0] D -- C:\ProgramData\Shared Space =>.Comodo Group.
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\SharewareOnSale Notifier
O43 - CFD: 28/11/2017 - [] D -- C:\ProgramData\Sophos =>.Sophos
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\SystemAcCrux
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\USBSRService =>.Crystal Rich Ltd
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Wondershare Video Editor =>.Wondershare Inc
O43 - CFD: 07/11/2017 - [0] D -- C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A}
O43 - CFD: 04/02/2017 - [] D -- C:\Program Files\Common Files\Acronis =>.Acronis
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Common Files\Adobe AIR =>.Adobe Inc.
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield
O43 - CFD: 25/11/2017 - [] D -- C:\Program Files\Common Files\IObit =>.IObit
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 17/09/2010 - [] D -- C:\Program Files\Common Files\Oberon Media =>.Oberon Media
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Common Files\Steganos =>.Steganos
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 14/12/2016 - [] D -- C:\Program Files\Common Files\Wondershare =>.Wondershare
O43 - CFD: 25/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 25/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] SD -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 24/11/2017 - [0] SHD -- C:\Users\Barrow 5 & Widen\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 24/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Local\Chromium =>.Chromium
O43 - CFD: 24/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Local\Comodo =>.Comodo Group.
O43 - CFD: 24/11/2017 - [0] SHD -- C:\Users\Barrow 5 & Widen\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 24/11/2017 - [0] SHD -- C:\Users\Barrow 5 & Widen\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [0] D -- C:\Users\Barrow 5 & Widen\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 28/11/2017 - [] D -- C:\Users\Barrow 5 & Widen\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] RD -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] RD -- C:\Users\Barrow 5 & Widen\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 25/11/2017 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit
O43 - CFD: 14/07/2009 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 5s
O106 - SIOI: SyncedIcon Class [ EaseUSEverySyncedOverlay] - {52103F52-9856-43F7-B5C4-A026FD84288C}. (.TODO: - TODO: .) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlay.dll
O106 - SIOI: SyncFailedIcon Class [ EaseUSEverySyncFailedOverlay] - {A6D755FC-42D6-46BF-8A5D-1F810C3FCEA6}. (.TODO: - TODO: .) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlay.dll
O106 - SIOI: SyncingIcon Class [ EaseUSEverySyncingOverlay] - {0F45C9C8-E236-4CEC-A858-BFEB47D8CD3C}. (.TODO: - TODO: .) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlay.dll
O106 - SIOI: DragDropProtect Class [egisPSDP] - {30A0A3F6-38AC-4C53-BB8B-0D95238E25BA}. (.Egis Technology Inc. - PSD DragDrop Protection.) -- C:\Program Files\EgisTec MyWinLocker\x86\psdprotect.dll =>.EGIS TECHNOLOGY INC.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Raccourcis de menus conceptuels (SCMH) (58) - 22s
O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: Comodo Antivirus - {4255A182-CAD9-4214-A19B-7BA7FB633BBD} . (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cavshell.dll =>.Comodo Security Solutions, Inc.®
O108 - CMH1: EDSshellExt - {29FF7AB0-BE34-4992-A30B-53A9D86EE239} . (.Egis Technology Inc. - Shell Extention.) -- C:\Program Files\EgisTec MyWinLocker\x86\mwlshellext.dll =>.EGIS TECHNOLOGY INC.®
O108 - CMH1: EUFileSyncShlMenu - {9BE7BF64-6790-4873-8704-606E622B3E8C} . (.CHENGDU Yiwo Tech Development Co., Ltd. - EverySync.) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll =>.CHENGDU Yiwo Tech Development Co., Ltd.
O108 - CMH1: KillCopy - {A5C2457A-87BC-324E-8124-0025DC10AA03} . (.Killer{R} - KillCopy Shell Extension DLL.) -- C:\Program Files\KillSoft\KillCopy\killcopy.dll
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: ReflectShellExt - {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} . (.Paramount Software UK Ltd - Reflect Shell Extension Context Menu.) -- C:\Program Files\Macrium\Reflect\RContextMenu.dll =>.Paramount Software UK Ltd®
O108 - CMH1: SecureExt - {AB31A0D4-4437-4389-8054-A9338DF771AA} . (.UTILILAB GmbH, (www.utililab.com) - UTILILAB SystemOPTIMIZER - Secure Delete Sh.) -- C:\Program Files\UTILILAB\SystemOPTIMIZER\USOSecureShell.dll {00B233BC32FCEFAC7A7B4F96557686C278}
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: SimpleShlExt - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application.) -- C:\Program Files\EaseUS\Todo Backup\bin\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.®
O108 - CMH1: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH1: UnLockerMenu - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology®
O108 - CMH1: ~ShellExtBridge118 - {CACD94AB-314B-4792-A34F-B5902F7E8750} . (.Moo0 - Moo0 Shell Extension Bridge.) -- C:\Windows\System32\ShellExtBridge\ShellExtBridge118.dll =>.Moo0
O108 - CMH2: Comodo Antivirus - {4255A182-CAD9-4214-A19B-7BA7FB633BBD} . (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cavshell.dll =>.Comodo Security Solutions, Inc.®
O108 - CMH2: Compatibility - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH2: ShredderContextMenu - {521065F1-DE6C-4E46-BBCB-89B0D0BE860D} . (.Egis Technology Inc. - ShredderContextMenu.) -- C:\Program Files\EgisTec Shredder\x86\ShredderContextMenu.dll =>.EGIS TECHNOLOGY INC.®
O108 - CMH2: UnLockerMenu - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology®
O108 - CMH2: ~ShellExtBridge118 - {CACD94AB-314B-4792-A34F-B5902F7E8750} . (.Moo0 - Moo0 Shell Extension Bridge.) -- C:\Windows\System32\ShellExtBridge\ShellExtBridge118.dll =>.Moo0
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: ShredderContextMenu - {521065F1-DE6C-4E46-BBCB-89B0D0BE860D} . (.Egis Technology Inc. - ShredderContextMenu.) -- C:\Program Files\EgisTec Shredder\x86\ShredderContextMenu.dll =>.EGIS TECHNOLOGY INC.®
O108 - CMH3: UnlockerShellExtension - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll
O108 - CMH4: EDSshellExt - {29FF7AB0-BE34-4992-A30B-53A9D86EE239} . (.Egis Technology Inc. - Shell Extention.) -- C:\Program Files\EgisTec MyWinLocker\x86\mwlshellext.dll =>.EGIS TECHNOLOGY INC.®
O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: EUFileSyncShlMenu - {9BE7BF64-6790-4873-8704-606E622B3E8C} . (.CHENGDU Yiwo Tech Development Co., Ltd. - EverySync.) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll =>.CHENGDU Yiwo Tech Development Co., Ltd.
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: SimpleShlExt - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application.) -- C:\Program Files\EaseUS\Todo Backup\bin\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.®
O108 - CMH4: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH4: UnLockerMenu - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology®
O108 - CMH4: ~ShellExtBridge118 - {CACD94AB-314B-4792-A34F-B5902F7E8750} . (.Moo0 - Moo0 Shell Extension Bridge.) -- C:\Windows\System32\ShellExtBridge\ShellExtBridge118.dll =>.Moo0
O108 - CMH5: EUFileSyncShlMenu - {9BE7BF64-6790-4873-8704-606E622B3E8C} . (.CHENGDU Yiwo Tech Development Co., Ltd. - EverySync.) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll =>.CHENGDU Yiwo Tech Development Co., Ltd.
O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: igfxcui - {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} . (.Intel Corporation - igfxpph Module.) -- C:\Windows\System32\igfxpph.dll =>.Intel Corporation
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: ~ShellExtBridge118 - {CACD94AB-314B-4792-A34F-B5902F7E8750} . (.Moo0 - Moo0 Shell Extension Bridge.) -- C:\Windows\System32\ShellExtBridge\ShellExtBridge118.dll =>.Moo0
O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Comodo Antivirus - {4255A182-CAD9-4214-A19B-7BA7FB633BBD} . (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cavshell.dll =>.Comodo Security Solutions, Inc.®
O108 - CMH6: EUFileSyncShlMenu - {9BE7BF64-6790-4873-8704-606E622B3E8C} . (.CHENGDU Yiwo Tech Development Co., Ltd. - EverySync.) -- C:\Program Files\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll =>.CHENGDU Yiwo Tech Development Co., Ltd.
O108 - CMH6: KillCopy - {A5C2457A-87BC-324E-8124-0025DC10AA03} . (.Killer{R} - KillCopy Shell Extension DLL.) -- C:\Program Files\KillSoft\KillCopy\killcopy.dll
O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: SecureExt - {AB31A0D4-4437-4389-8054-A9338DF771AA} . (.UTILILAB GmbH, (www.utililab.com) - UTILILAB SystemOPTIMIZER - Secure Delete Sh.) -- C:\Program Files\UTILILAB\SystemOPTIMIZER\USOSecureShell.dll {00B233BC32FCEFAC7A7B4F96557686C278}
O108 - CMH6: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll
O108 - CMH6: UnLockerMenu - {410BF280-86EF-4E0F-8279-EC5848546AD3} . (.IObit - IObitUnlockerExtension.) -- C:\Program Files\IObit\IObit Unlocker\IObitUnlockerExtension.dll =>.IObit Information Technology®
O108 - CMH6: UnlockerShellExtension - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll
O108 - CMH6: ~ShellExtBridge118 - {CACD94AB-314B-4792-A34F-B5902F7E8750} . (.Moo0 - Moo0 Shell Extension Bridge.) -- C:\Windows\System32\ShellExtBridge\ShellExtBridge118.dll =>.Moo0
O108 - CMH7: Comodo Antivirus - {4255A182-CAD9-4214-A19B-7BA7FB633BBD} . (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cavshell.dll =>.Comodo Security Solutions, Inc.®
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: KillCopy - {A5C2457A-87BC-324E-8124-0025DC10AA03} . (.Killer{R} - KillCopy Shell Extension DLL.) -- C:\Program Files\KillSoft\KillCopy\killcopy.dll
O108 - CMH7: ReflectShellExt - {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} . (.Paramount Software UK Ltd - Reflect Shell Extension Context Menu.) -- C:\Program Files\Macrium\Reflect\RContextMenu.dll =>.Paramount Software UK Ltd®
O108 - CMH7: SecureExt - {AB31A0D4-4437-4389-8054-A9338DF771AA} . (.UTILILAB GmbH, (www.utililab.com) - UTILILAB SystemOPTIMIZER - Secure Delete Sh.) -- C:\Program Files\UTILILAB\SystemOPTIMIZER\USOSecureShell.dll {00B233BC32FCEFAC7A7B4F96557686C278}
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: SimpleShlExt - {45203D3B-3D73-4497-8AFE-D29950AC6C55} . (.CHENGDU YIWO Tech Development Co.,Ltd - EaseUS Todo Backup Application.) -- C:\Program Files\EaseUS\Todo Backup\bin\ImageSh.dll =>.CHENGDU YIWO Tech Development Co., Ltd.®
O108 - CMH7: TeraCopy - {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} . (...) -- C:\Program Files\TeraCopy\TeraCopyExt.dll

---\\ Image File Execution Options (4) - 0s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation

---\\ Liste des pilotes du système (102) - 244s
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:13 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:29:15 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation
O58 - SDL:2017/06/30 07:07:06 A . (.COMODO - COMODO Secure Shopping Driver.) -- C:\Windows\System32\drivers\cmdcss.sys [95976] =>.Comodo Security Solutions, Inc.®
O58 - SDL:2017/08/08 05:50:08 A . (.COMODO - COMODO Internet Security Eradication Driver.) -- C:\Windows\System32\drivers\cmderd.sys [27504] =>.Comodo Security Solutions, Inc.®
O58 - SDL:2017/08/08 05:50:14 A . (.COMODO - COMODO Internet Security Sandbox Driver.) -- C:\Windows\System32\drivers\cmdguard.sys [658704] =>.Comodo Security Solutions, Inc.®
O58 - SDL:2017/08/08 05:50:20 A . (.COMODO - COMODO Internet Security Helper Driver.) -- C:\Windows\System32\drivers\cmdhlp.sys [53344] =>.Comodo Security Solutions, Inc.®
O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows®
O58 - SDL:2017/10/09 16:28:36 A . (.Windows (R) Win 7 DDK provider - Dokan Filesystem Driver.) -- C:\Windows\System32\drivers\dokan.sys [56000] {247D157352D5671A5E44263793DF43D2} =>.Windows (R) Win 7 DDK provider
O58 - SDL:2016/12/15 08:36:10 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtultrascsibus.sys [26168] =>.Disc Soft Ltd®
O58 - SDL:2016/12/15 08:38:24 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtultrausbbus.sys [40504] =>.Disc Soft Ltd®
O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows®
O58 - SDL:2010/04/13 11:15:44 A . (.ELAN Microelectronic Corp. - ETD Control Center.) -- C:\Windows\System32\drivers\ETD.sys [109960] =>.ELAN Microelectronics Corporation®
O58 - SDL:2016/12/06 02:45:50 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\Windows\System32\drivers\eubakup.sys [56824] =>.CHENGDU YIWO Tech Development Co., Ltd
O58 - SDL:2016/12/06 02:45:50 A . (...) -- C:\Windows\System32\drivers\EUBKMON.sys [46584] =>.Microsoft Corporation
O58 - SDL:2010/06/17 07:50:38 A . (.ENE Technology Inc. - ENE USB Memory Card Reader Driver.) -- C:\Windows\System32\drivers\EUCR6SK.sys [82768] =>.ENE Technology Inc.®
O58 - SDL:2016/12/06 02:45:52 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\Windows\System32\drivers\eudskacs.sys [20984] =>.CHENGDU YIWO Tech Development Co., Ltd
O58 - SDL:2016/12/06 02:45:52 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\Windows\System32\drivers\EuFdDisk.sys [195576] =>.CHENGDU YIWO Tech Development Co., Ltd
O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation
O58 - SDL:2017/11/07 07:12:56 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\Windows\System32\drivers\farflt.sys [94656] =>.Malwarebytes Corporation®
O58 - SDL:2017/02/04 17:41:34 A . (.Acronis International GmbH - Acronis Storage Filter Management Driver.) -- C:\Windows\System32\drivers\fltsrv.sys [139096] =>.ACRONIS INTERNATIONAL GMBH®
O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2017/11/28 17:47:24 A . (.© 2017 SurfRight B.V. - HitmanPro 3.7 Support Driver.) -- C:\Windows\System32\drivers\hitmanpro37.sys [47552] =>.SurfRight B.V.®
O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows®
O58 - SDL:2010/06/08 18:23:34 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [435736] =>.Intel Corporation®
O58 - SDL:2010/11/20 13:29:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows®
O58 - SDL:2010/04/19 02:12:58 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [4806144] =>.Intel Corporation
O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows®
O58 - SDL:2017/08/08 05:50:26 A . (.COMODO - COMODO Internet Security Firewall Driver.) -- C:\Windows\System32\drivers\inspect.sys [106864] =>.Comodo Security Solutions, Inc.®
O58 - SDL:2017/08/08 03:46:21 A . (.COMODO - Internet Security Essentials Driver.) -- C:\Windows\System32\drivers\isedrv.sys [40952] =>.Comodo Security Solutions, Inc.®
O58 - SDL:2015/08/18 17:25:30 A . (.QFX Software Corporation - KeyScrambler Keyboard Encryption Driver.) -- C:\Windows\System32\drivers\keyscrambler.sys [211536] =>.QFX Software Corporation®
O58 - SDL:2010/08/24 10:55:52 A . (.Atheros Communications, Inc. - Atheros L1c PCI-E Gigabit Ethernet Controll.) -- C:\Windows\System32\drivers\L1C62x86.sys [68208] =>.Atheros Communications Inc.®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows®
O58 - SDL:2017/01/20 07:47:44 A . (...) -- C:\Windows\System32\drivers\mbae.sys [59976] =>.Malwarebytes Corporation®
O58 - SDL:2017/11/07 07:12:55 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [39360] =>.Malwarebytes Corporation®
O58 - SDL:2017/02/05 12:53:07 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MBAMChameleon.sys [152512] =>.Malwarebytes Corporation®
O58 - SDL:2017/11/07 12:40:05 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [219584] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows®
O58 - SDL:2017/11/07 07:12:55 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [63264] =>.Malwarebytes Corporation®
O58 - SDL:2009/06/03 03:15:34 A . (.Egis Technology Inc. - PSD Filter Driver.) -- C:\Windows\System32\drivers\mwlPSDFilter.sys [18992] =>.EGIS TECHNOLOGY INC.®
O58 - SDL:2009/06/03 03:15:38 A . (.Egis Technology Inc. - MyWinLocker PSD Named Pipe Driver.) -- C:\Windows\System32\drivers\mwlPSDNserv.sys [16432] =>.EGIS TECHNOLOGY INC.®
O58 - SDL:2009/06/03 03:15:40 A . (.Egis Technology Inc. - MyWinLocker PSD Virtual Disk Driver.) -- C:\Windows\System32\drivers\mwlPSDVDisk.sys [60976] =>.EGIS TECHNOLOGY INC.®
O58 - SDL:2010/05/31 05:04:30 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETw5s32.sys [6766080] =>.Intel Corporation
O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:06 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows®
O58 - SDL:2010/11/20 13:30:06 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows®
O58 - SDL:2015/10/12 14:39:04 A . (.Windows (R) Win 7 DDK provider - Paramount Software Image Mounting Driver.) -- C:\Windows\System32\drivers\psmounterex.sys [156048] =>.Paramount Software UK Ltd®
O58 - SDL:2015/10/12 14:56:24 A . (.Windows (R) Win 7 DDK provider - Fallback Snapshot Driver.) -- C:\Windows\System32\drivers\pssnap.sys [16016] =>.Paramount Software UK Ltd®
O58 - SDL:2015/02/23 13:41:38 A . (.Paramount Software UK Ltd - Volume Access driver.) -- C:\Windows\System32\drivers\PSVolAcc.sys [11728] =>.Paramount Software UK Ltd®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows®
O58 - SDL:2010/08/03 11:07:44 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [3158120] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows®
O58 - SDL:2014/10/24 09:12:00 A . (.Softwareentwicklung Remus - ArchiCrypt - - ArchiCrypt Live Engine.) -- C:\Windows\System32\drivers\SleeN19.sys [99928] {1121BBB266E9958ED68E2A17AF4FA41BDF8E}
O58 - SDL:2017/02/04 17:41:38 A . (.Acronis International GmbH - Acronis Snapshot API.) -- C:\Windows\System32\drivers\snapman.sys [271704] =>.ACRONIS INTERNATIONAL GMBH®
O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows®
O58 - SDL:2017/02/04 17:41:49 A . (.Acronis International GmbH - Acronis Backup Archive Explorer.) -- C:\Windows\System32\drivers\tib.sys [802648] =>.ACRONIS INTERNATIONAL GMBH®
O58 - SDL:2017/02/04 17:41:45 A . (.Acronis International GmbH - Acronis TIB Mounter Driver.) -- C:\Windows\System32\drivers\tib_mounter.sys [166232] =>.ACRONIS INTERNATIONAL GMBH®
O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows®
O58 - SDL:2017/02/04 17:41:42 A . (.Acronis International GmbH - Acronis Volume Tracker Driver.) -- C:\Windows\System32\drivers\volume_tracker.sys [171352] =>.ACRONIS INTERNATIONAL GMBH®
O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows®
O58 - SDL:2015/04/30 00:01:06 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\drivers\wdcsam.sys [20256] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2017/10/26 02:30:36 A . (.WiseCleaner.com - Process Monitor.) -- C:\Windows\System32\drivers\WiseProcessMonitor.sys [37448] {0B847F536116FD6D5A31DBF8F6AD8AA1} =>.WiseCleaner.com
O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation
O58 - SDL:2016/01/14 10:05:18 A . (...) -- C:\Windows\System32\epmntdrv.sys [21496] =>.Microsoft Corporation
O58 - SDL:2016/07/11 10:01:24 A . (...) -- C:\Windows\System32\EuGdiDrv.sys [10208] =>.Intel Corporation
O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation
O58 - SDL:2016/05/20 09:50:26 A . (...) -- C:\Windows\System32\MDA_NTDRV.sys [44032] =>.Bada Technology Co.,Ltd®
O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation
O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation

---\\ Associations Shell Spawning (10) - 2s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Comodo - Comodo Dragon.) -- C:\Program Files\Comodo\Dragon\dragon.exe =>.Comodo Security Solutions®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Comodo - Comodo Dragon.) -- C:\Program Files\Comodo\Dragon\dragon.exe =>.Comodo
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Comodo - Comodo Dragon.) -- C:\Program Files\Comodo\Dragon\dragon.exe =>.Comodo
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Comodo - Comodo Dragon.) -- C:\Program Files\Comodo\Dragon\dragon.exe =>.Comodo
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (1) - 0s
O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com

---\\ Enumère les services démarrés par Svchost (32) - 3s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [593408] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [679424] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [473600] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1973728] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [21504] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [750592] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [71168] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\sessenv.dll [113664] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation

---\\ Recherche des packages WindowsInstaller (18) - 19s
[MD5.1241B1FFF74416EEC4084FF25DEECE43] [WIS][2017/11/07 08:50:00] (.Aprel Tech, LLC - Silent Install Builder 5.) -- C:\Windows\Installer\132935.msi [11403264]
[MD5.E63E80B688F3C7D8F3156569CE1DFC5E] [WIS][2010/07/21 03:28:52] (.Insyde - MSI Database.) -- C:\Windows\Installer\13ccf3.msi [625152] =>.Insyde
[MD5.A65CB434A310B69BE9CECED30754007F] [WIS][2016/12/21 14:22:38] (.Paramount Software (UK) Ltd. - Paramount Software (UK) Ltd.) -- C:\Windows\Installer\20566370.msi [41943040] =>.Paramount Software (UK) Ltd.
[MD5.E22C90880367EF173C9C3C9F48A65CD2] [WIS][2017/11/08 05:37:33] (.SecurityXploded - Spotify Ad Remover.) -- C:\Windows\Installer\2c50493.msi [1591808] =>.SecurityXploded
[MD5.990A236C7EBF5D46024672B9F2FB4F8E] [WIS][2016/11/08 18:50:16] (.Acronis - Acronis Backup Agent.) -- C:\Windows\Installer\34edd9.msi [35278848] =>.Acronis
[MD5.8A9053F3E730DEE376BE8834A5CE53EB] [WIS][2016/12/30 19:02:23] (.COMODO Security Solutions Inc. - COMODO Internet Security Installer.) -- C:\Windows\Installer\34ede2.msi [112336896] =>.COMODO Security Solutions Inc.
[MD5.C555B7BE179B1E472AE5E946BA5B3066] [WIS][2010/09/17 08:17:21] (.esobi Inc. - eSobi.) -- C:\Windows\Installer\3c5f1.msi [12495872] =>.esobi Inc.
[MD5.6C7AD05B75C7AC06071FD463C0391392] [WIS][2017/06/30 07:10:36] (.COMODO - COMODO Secure Shopping.) -- C:\Windows\Installer\599ca9.msi [51613696] =>.COMODO
[MD5.DDC250D795361108EA065498137C2DF3] [WIS][2017/11/07 16:42:26] (.Paragon Software GmbH - Paragon ExtFS for Windows.) -- C:\Windows\Installer\5fa5b5.msi [44376064]
[MD5.9FD08D11364F56C4DB1EBA4C65191CEC] [WIS][2010/09/17 08:33:39] (.Egis Technology Inc. - MyWinLocker Suite.) -- C:\Windows\Installer\7cce4.msi [58998784] =>.Egis Technology Inc.
[MD5.B8C9111399484FBF81E5F4C7D04AB8AF] [WIS][2010/09/17 08:34:30] (.Egis Technology Inc. - MyWinLocker.) -- C:\Windows\Installer\7ccea.msi [35421984] =>.Egis Technology Inc.
[MD5.45C7EF7FF8E87EA3856AC919ABD36DC9] [WIS][2010/09/17 08:35:46] (.Egis Technology Inc..) -- C:\Windows\Installer\7cd19.msi [11447808] =>.Egis Technology Inc.
[MD5.82791FB5F7DE17E78E4B22B54265FB29] [WIS][2009/02/27 13:58:08] (.Adobe Systems Incorporated - ADOBER~1.0Adobe Reader 9.) -- C:\Windows\Installer\7cd25.msi [21356032] =>.Adobe Systems Incorporated
[MD5.862598186405E18F74E20D856631A657] [WIS][2010/09/17 08:38:55] (.Adobe Systems Inc. - Adobe AIR Installer.) -- C:\Windows\Installer\7cd2a.msi [29696] =>.Adobe Systems Inc.
[MD5.C714313C5B319707475D6CF852249231] [WIS][2010/09/17 08:39:07] (.Adobe Systems Incorporated - Acrobat.com.) -- C:\Windows\Installer\7cd2f.msi [20480] =>.Adobe Systems Incorporated
[MD5.C1C23E3A09161DE34D458B256C8D1034] [WIS][2016/12/14 19:40:01] (.Laplink Software, Inc. - Laplink PCmover Express.) -- C:\Windows\Installer\b82726.msi [22010880] =>.Laplink Software, Inc.
[MD5.13A521D7D26D5CBD37BCD2D79E42D18C] [WIS][2016/07/01 03:40:00] (.Audials AG - Music Recorder.) -- C:\Windows\Installer\d675bc.msi [2852352] =>.Audials AG

---\\ Scan Additionnel (1) - 1s
~ Aucun élément malicieux ou superflu trouvé.

---\\ Récapitulatif des éléments trouvés sur votre station (1) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan

~ Unselected Options:
~ End of the scan, 20549 items in 18mn59s (984)(0)

Publicité


Signaler le contenu de ce document

Publicité