cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.11.19.201 Par Nicolas Coolman (2017/11/19)
~ Démarré par PLAY (Administrator) (2017/11/22 12:18:26)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\PLAY\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\PLAY\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Navigateurs Internet (3) - 0s
~ GCIE: Google Chrome v62.0.3202.94
~ MFIE: Mozilla Firefox (3.6) v3.6 (fr)
~ MSIE: Internet Explorer v11.0.9600.18449

---\\ Informations sur les produits Windows (10) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Windows(R) 7, OEM_SLP channel
System Locked Preinstallation (OEM_SLP) : OK
Windows ID Activation : OK
~ Windows Partial Key : HYRR2
Windows License : OK
~ Windows Remaining Initializations Number : 3
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (4) - 1s
Avast Antivirus Gratuit v17.8.2318 (Protection)
Malwarebytes version 3.3.1.2183 v3.3.1.2183 (Protection)
Microsoft Security Client v4.10.0205.0 (Protection)
Microsoft Security Essentials v4.10.205.0 (Protection)

---\\ Logiciels d'optimisation (1) - 2s
~ CCleaner v5.36 (Optimize)

---\\ Surveillance de Logiciels (2) - 2s
~ Adobe Flash Player 10 Plugin (Surveillance)
~ Adobe Reader 8.1.0 - Français (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: AMD64 Family 21 Model 16 Stepping 1, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 5660.196 MB (48% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 356 GB (74%) free of 476 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: UTILISA-YOEHSQZ
~ User Name: PLAY
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 356 GB free of 476 GB (System)

---\\ Etat du Centre de Sécurité Windows (15) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center] AntiVirusDisableNotify: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center] FirewallDisableNotify: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center] UacDisableNotify: Modified
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (26) - 2s
[MD5.AC4C51EB24AA95B77F705AB159189E24] - 18/07/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2872320] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 18/07/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 18/07/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.F28B26DE031D6C7AC3F393417191A22F] - 18/07/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2921472] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 18/07/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 18/07/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.A52B6CC24063CC83C78C0E6F24DEEC01] - 18/07/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.59DF156711A76BCB993253EC6C9BBF41] - 18/07/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 18/07/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 18/07/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 18/07/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
[MD5.B8BD2BB284668C84865658C77574381A] - 18/07/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 18/07/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 18/07/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 18/07/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 18/07/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 18/07/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.341C65D6D4E9AB705258AC83511F7ADD] - 18/07/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation
[MD5.E47D571FEC2C76E867935109AB2A770C] - 18/07/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262144] =>.Microsoft Corporation
[MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - 18/07/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1659776] =>.Microsoft Windows®
[MD5.0086431C29C35BE1DBC43F52CC273887] - 18/07/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 18/07/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 18/07/2017 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 18/07/2017 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 18/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 18/07/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (8) - 2s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.AMD
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe =>.Cybelsoft®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: PDAgent (PDAgent) . (.Raxco Software, Inc. - PDAgent Module.) - C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe =>.Raxco Software, Inc.®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc.

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 25s
SS - Demand [18/07/2017] [ 317408] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [18/07/2017] [ 317408] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD
SR - Demand [18/07/2017] [ 317408] aswbIDSAgent (aswbIDSAgent) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe =>.AVAST Software s.r.o.®
SR - Auto [18/07/2017] [ 317408] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
SS - Auto [18/07/2017] [ 317408] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [18/07/2017] [ 317408] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [18/07/2017] [ 317408] Ma-Config Agent (MaConfigAgent) . (.CybelSoft.) - C:\Program Files\ma-config.com\MaConfigAgent.exe =>.Cybelsoft®
SR - Auto [18/07/2017] [ 317408] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SR - Auto [18/07/2017] [ 317408] PDAgent (PDAgent) . (.Raxco Software, Inc..) - C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe =>.Raxco Software, Inc.®
SS - Demand [18/07/2017] [ 317408] PDEngine (PDEngine) . (.Raxco Software, Inc..) - C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe =>.Raxco Software, Inc.®
SS - Auto [18/07/2017] [ 317408] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl®
SR - Auto [18/07/2017] [ 317408] @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc.

---\\ Tâches planifiées en automatique (Registre) (57) - 4s
O38 - TASK: {014F0D9D-1BFF-417B-B8AE-259EFA72C012} [64Bits][\Microsoft\Windows\Media Center\RegisterSearch] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {025697ED-7EB7-49C6-9CFE-575901FE127E} [64Bits][\AVAST Software\Avast settings backup] - (...) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {026CA03E-3182-4F86-96EF-F57DD8D942CB} [64Bits][\Microsoft\Windows\Media Center\SqlLiteRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation
O38 - TASK: {044A6734-E90E-4F8F-B357-B2DC8AB3B5EC} [64Bits][\Microsoft\Windows\Time Synchronization\SynchronizeTime] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\system32\sc.exe [45056] =>.Microsoft Corporation
O38 - TASK: {04FC796A-ED32-448D-AF6F-F9A0CD088B4A} [64Bits][\Microsoft\Windows\Media Center\PBDADiscoveryW1] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {05294866-EFF6-4B80-B53A-516668D2B483} [64Bits][\SafeZone scheduled Autoupdate 1462291555] - (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [1057824] =>.AVAST Software s.r.o.®
O38 - TASK: {07488C28-7E74-4A57-B23B-70126694F5AB} [64Bits][\Microsoft\Windows\Media Center\InstallPlayReady] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {09C5B8AD-2031-4C8F-9F6C-67D0576749AD} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216] =>.Google Inc®
O38 - TASK: {0DDFCC8C-F79B-4F59-A5F5-3949CBCB6704} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7814656] =>.Piriform Ltd®
O38 - TASK: {1153F090-5BEC-4F28-AB9A-A5950D411F92} [64Bits][\Microsoft\Windows\Media Center\DispatchRecoveryTasks] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {1BB890BA-ADE5-4285-AAD5-BE015AE10308} [64Bits][\Microsoft\Windows\Media Center\OCURDiscovery] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} [64Bits][\Microsoft\Windows\WindowsBackup\ConfigNotification] - (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdclt.exe [1264640] =>.Microsoft Corporation
O38 - TASK: {2F91155A-9A03-4052-B1CB-96BB1D8508A5} [64Bits][\{299D9C95-89AD-489F-93C4-307EB37FDA81}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\google\chrome\application\chrome.exe [1556312] =>.Google Inc®
O38 - TASK: {36517DA5-A71A-4733-B97C-6893DBD48E9E} [64Bits][\Microsoft\Windows\Media Center\ehDRMInit] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {3CBD668D-9326-44FA-894C-DE10733ECBAA} [64Bits][\Microsoft\Windows\Media Center\PBDADiscovery] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {3CEF8E3F-0253-4681-AEAD-B37A8C5FD65A} [64Bits][\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector] - (.Microsoft Corporation - Module de diagnostics des erreurs de disque.) -- C:\Windows\System32\dfdts.dll [45568] =>.Microsoft Corporation
O38 - TASK: {4609CFDB-2ADA-4DCE-B786-AEF09E2C1FA4} [64Bits][\Microsoft\Windows\Media Center\PvrScheduleTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation
O38 - TASK: {46A007B3-8A1B-46E0-AF0D-C56084556C08} [64Bits][\Microsoft\Windows Defender\MP Scheduled Scan] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- c:\program files\windows defender\MpCmdRun.exe [190976] =>.Microsoft Corporation
O38 - TASK: {489A22CE-512A-4A94-A611-39AAAD6A551F} [64Bits][\Microsoft\Windows\Media Center\PeriodicScanRetry] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\MCUpdate.exe [198656] =>.Microsoft Corporation
O38 - TASK: {541E4FEC-0CC7-45C5-A612-8DBEBE9625A2} [64Bits][\Microsoft\Windows\Media Center\mcupdate] - (...) -- C:\Windows\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {5A40E926-9E86-4B89-9CFD-B12311724371} [64Bits][\Microsoft\Windows\UPnP\UPnPHostConfig] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [45056] =>.Microsoft Corporation
O38 - TASK: {5C0AEEEA-C154-45BE-8499-BEA5F11BAFF6} [64Bits][\Microsoft\Windows\Defrag\ScheduledDefrag] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\system32\defrag.exe [183296] =>.Microsoft Corp.
O38 - TASK: {60E493DA-E301-4691-8F54-B6BF84EB42EF} [64Bits][\Microsoft\Windows\Media Center\ActivateWindowsSearch] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {640D5070-7D34-43EB-BA1A-B58C8E39540C} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 27.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated®
O38 - TASK: {6DF710C3-F785-43E0-A16A-A5C98948E22D} [64Bits][\Microsoft\Windows\Media Center\StartRecording] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {72DB7465-BC54-491B-A92A-4637A28C9BBF} [64Bits][\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] - (.Microsoft Corporation - AppID Certificate Store Verification Task.) -- C:\Windows\system32\appidcertstorecheck.exe [17920] =>.Microsoft Corporation
O38 - TASK: {753C47AE-EC5E-44B3-95A9-2C8E553F0E39} [64Bits][\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] - (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe [70656] =>.Microsoft Corporation
O38 - TASK: {76BB8F04-0016-459B-BB67-2356523E583E} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216] =>.Google Inc®
O38 - TASK: {7C8E19B7-29E9-404C-BF05-E89E7D95DC2A} [64Bits][\WPD\SqmUpload_S-1-5-21-480081248-448449324-4229664033-1000] - (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\portabledeviceapi.dll [758272] =>.Microsoft Corporation
O38 - TASK: {7F5B90F6-5799-4304-B9EA-64928D1CE6B8} [64Bits][\Microsoft\Windows\Media Center\ConfigureInternetTimeService] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {8AF15BB5-7467-4D48-A80C-3903B938ED51} [64Bits][\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation
O38 - TASK: {8BA220A0-E771-45DD-B26F-F58C6035CE2E} [64Bits][\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver] - (.Microsoft Corporation - Outil de résolution des défaillances disque.) -- C:\Windows\system32\DFDWiz.exe [79360] =>.Microsoft Corporation
O38 - TASK: {90664A3B-EBB3-4180-A011-14CA5C4DC6F8} [64Bits][\Opera scheduled suite Autoupdate 1493482748] - (...) -- C:\Users\PLAY\AppData\Local\Programs\Opera\launcher.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {9111B489-7A99-4BA2-8B9E-5B309DD56CE8} [64Bits][\Microsoft\Windows\Media Center\MediaCenterRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation
O38 - TASK: {98A4A9C6-C97A-4D95-B398-645A040512EF} [64Bits][\CCleaner Update] - (.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [498480] =>.Piriform Ltd®
O38 - TASK: {994C86AD-A929-4B2C-88A0-4E25A107A029} [64Bits][\Microsoft\Windows\SystemRestore\SR] - (.Microsoft Corporation - Bibliothèque de configuration de la protect.) -- C:\Windows\System32\srrstr.dll [270848] =>.Microsoft Corporation
O38 - TASK: {9CEE3B62-9B05-437C-8E90-30E36F98F68C} [64Bits][\Microsoft\Windows\Media Center\OCURActivate] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {A48CABBF-24C8-4B87-B00F-9261807C3B43} [64Bits][\Microsoft\Windows\AppID\PolicyConverter] - (.Microsoft Corporation - AppID Policy Converter Task.) -- C:\Windows\system32\appidpolicyconverter.exe [148480] =>.Microsoft Corporation
O38 - TASK: {A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D} [64Bits][\Microsoft\Windows\Location\Notifications] - (.Microsoft Corporation - Activité de la localisation.) -- C:\Windows\System32\LocationNotifications.exe [90112] =>.Microsoft Corporation
O38 - TASK: {A7C73732-9F11-4281-8D19-764D4EC9D94D} [64Bits][\Microsoft\Windows\Application Experience\ProgramDataUpdater] - (.Microsoft Corporation - Mise à jour des données de compatibilité de.) -- C:\Windows\System32\aepdu.dll [412160] =>.Microsoft Corporation
O38 - TASK: {A9675D5D-AC7F-4DB8-8385-C4694BEE02F0} [64Bits][\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2425968] =>.AVAST Software s.r.o.®
O38 - TASK: {AD31FC87-1A5D-4253-AAD6-5050A68E0814} [64Bits][\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- c:\Program Files\Microsoft Security Client\MpCmdRun.exe [411352] =>.Microsoft Corporation®
O38 - TASK: {AD97FF2D-A732-4511-9C5E-1435DE6FDC41} [64Bits][\Microsoft\Windows\Media Center\PvrRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation
O38 - TASK: {B7AE82B1-D48D-4909-9D00-9D55EAD556F5} [64Bits][\Microsoft\Windows\Media Center\ReindexSearchRoot] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {BE1968E7-F4A7-4AF4-A076-E80564843347} [64Bits][\Opera scheduled Autoupdate 1493482742] - (...) -- C:\Users\PLAY\AppData\Local\Programs\Opera\launcher.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {C016366B-7126-46CA-B36B-592A3D95A60B} [64Bits][\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] - (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [293888] =>.Microsoft Corporation
O38 - TASK: {C20A62FB-CC56-4AF9-9F26-768A8A05016A} [64Bits][\Microsoft\Windows\Media Center\RecordingRestart] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {CB3D64BF-C0C9-45FF-BFB0-FF1A8F680186} [64Bits][\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] - (.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\System32\raserver.exe [125952] =>.Microsoft Corporation
O38 - TASK: {CFE442AD-6FC1-499B-B641-1519A52EB1FF} [64Bits][\Microsoft\Windows\Media Center\PBDADiscoveryW2] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {D0250F3F-6480-484F-B719-42F659AC64D5} [64Bits][\Microsoft\Windows\Windows Error Reporting\QueueReporting] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\system32\wermgr.exe [50688] =>.Microsoft Corporation
O38 - TASK: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} [64Bits][\Microsoft\Windows\Autochk\Proxy] - (.Microsoft Corporation - DLL de proxy Autochk.) -- C:\Windows\System32\acproxy.dll [11264] =>.Microsoft Corporation
O38 - TASK: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} [64Bits][\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [45056] =>.Microsoft Corporation
O38 - TASK: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} [64Bits][\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] - (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\bfe.dll [705024] =>.Microsoft Corporation
O38 - TASK: {E3163C33-301D-4730-A266-5518C5ED3967} [64Bits][\Microsoft\Windows\Bluetooth\UninstallDeviceTask] - (.Microsoft Corporation - Tâche de désinstallation du périphérique Bl.) -- C:\Windows\System32\BthUdTask.exe [36864] =>.Microsoft Corporation
O38 - TASK: {EB02381F-D652-4B1C-894A-712498C62C51} [64Bits][\Microsoft\Windows\MUI\LPRemove] - (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\system32\lpremove.exe [71168] =>.Microsoft Corporation
O38 - TASK: {F9780F13-7EDC-4A0C-9D43-8F5B863F2FCA} [64Bits][\Microsoft\Windows\Media Center\UpdateRecordPath] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation
O38 - TASK: {FB3C354D-297A-4EB2-9B58-090F6361906B} [64Bits][\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem] - (.Microsoft Corporation - Outil de ligne de commande des paramètres d.) -- C:\Windows\System32\powercfg.exe [71168] =>.Microsoft Corporation

---\\ Applications lancées au démarrage du système (14) - 2s
O4 - HKLM\..\Run: [NUSB3MON] . (.Advanced Micro Devices, Inc. - AMD USB 3.0 Device Detector.) -- C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe =>.Advanced Micro Devices, Inc.
O4 - HKLM\..\Run: [MSC] . (.Microsoft Corporation - Microsoft Security Client User Interface.) -- c:\Program Files\Microsoft Security Client\msseces.exe =>.Microsoft Corporation®
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe =>.IDT, Inc.
O4 - HKLM\..\Run: [BeatsOSDApp] . (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\beats64.exe =>.Hewlett-Packard
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.®
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\Sidebar.exe =>.Microsoft Corporation
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-480081248-448449324-4229664033-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®

---\\ Processus lancés (28) - 2s
[MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [0] [PID.1048] =>.AMD
[MD5.605ECCCE95ACF7AF12CBCCDAB55B8DD0] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [318464] [PID.1248] =>.IDT, Inc.
[MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [0] [PID.1600] =>.AMD
[MD5.34652C171663396C26E8C1E15A710B36] - (.AVAST Software - Avast Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [281416] [PID.1756] =>.AVAST Software s.r.o.®
[MD5.4257432C3CA4C157CEF4048D80A76E4C] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [2818888] [PID.2240] =>.Cybelsoft®
[MD5.89A0CFBAD42E6C34E25AFADB569F1621] - (.Raxco Software, Inc. - PDAgent Module.) -- C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe [1488136] [PID.2316] =>.Raxco Software, Inc.®
[MD5.053C93D5967E08748DBA0E132EAEC0B3] - (.Advanced Micro Devices, Inc. - AMD USB 3.0 Device Detector.) -- C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280] [PID.2344] =>.Advanced Micro Devices, Inc.
[MD5.734B435E1693386213EEFD4D17A70DEB] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056] [PID.2704] =>.Malwarebytes Corporation®
[MD5.AD6C376374C21EC68DF33884613D0A05] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe [1425408] [PID.2960] =>.IDT, Inc.
[MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.2972] =>.Google Inc®
[MD5.F107219B133E7E574DA052C5C88FFBF3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe [366672] [PID.3012] =>.Google Inc®
[MD5.6381DC9BEC1C205A36C390616F919EE6] - (.Raxco Software, Inc. - PDAgentS1 Module.) -- C:\Program Files\Raxco\PerfectDisk10\PDAgentS1.exe [72968] [PID.3460] =>.Raxco Software, Inc.®
[MD5.0D997D69A624B2A04EED0B64F2092642] - (.Hewlett-Packard - HP Beats.) -- C:\Program Files\IDT\WDM\beats64.exe [37888] [PID.3680] =>.Hewlett-Packard
[MD5.215220465FA5D356A444E42B84D16271] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3458504] [PID.4076] =>.Malwarebytes Corporation®
[MD5.DDF2CBFA4CF36ADD6C910F94D49EA2D2] - (.AVAST Software - Avast Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [9238192] [PID.212] =>.AVAST Software s.r.o.®
[MD5.AC581685C4CC890B42E9E9700014543D] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288] [PID.3760] =>.Oracle America, Inc.®
[MD5.ED5DEE709F009CB1F9B35ACCAAE2AF0D] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [10021040] [PID.3196] =>.Piriform Ltd®
[MD5.B6EA756B2FD8CCA5DD63F09A372C417F] - (.AVAST Software - Avast Behavior Shield.) -- C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7549928] [PID.4312] =>.AVAST Software s.r.o.®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.3136] =>.Google Inc®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.1356] =>.Google Inc®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.4852] =>.Google Inc®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.1272] =>.Google Inc®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.780] =>.Google Inc®
[MD5.1F4EE6DA6125565EA271E2DE10089A23] - (.AVAST Software - Avast remediation exe.) -- C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504] [PID.5156] =>.AVAST Software s.r.o.®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.1556] =>.Google Inc®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.1752] =>.Google Inc®
[MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.5312] =>.Google Inc®
[MD5.579D44335F9A686047EA77F20C8DC12C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\PLAY\Desktop\Downloads\ZHPDiag3 (1).exe [2929536] [PID.5608] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (24) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://cdnjs.cloudflare.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://media.zeturf.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://websdk.accengage.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.zebet.fr
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.zeturf.fr
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
G2 - GCE: Preference [PLAY][User Data\Default][ifipegfhpemcmdmfkaandbglgppnkhgj]
G2 - GCE: Preference [PLAY][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [PLAY][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [PLAY][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [PLAY][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [PLAY][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [PLAY][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [PLAY][User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
G2 - GCE: Preference [PLAY][User Data\Default] [kpmleklkkbobaonglkhkedkjofilkfjk] Solitaire Games - World Collection =>.Games Software
G2 - GCE: Preference [PLAY][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [PLAY][User Data\Default] [opmonmpnlegnelddekgpmmhileohhpma] http://www.webfungames.com/
G2 - GCE: Preference [PLAY][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [PLAY][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (28) - 7s
M0 - MFSP: prefs.js [PLAY - y9bqbldi.default] http://www.malwarebytes.org/
M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
M1 - SPR:Search Page Redirection - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
P2 - EXT FILE: (.mozilla.org - Default Plug-in.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npnul32.dll =>.Mozilla Corporation®
P2 - EXT: (.Amin E - Auto Shutdown.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\amin.eft_Shutdown@gmail.com
P2 - EXT: (.dou dehou - StatusbarEx.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\doudehou@gmail.com =>.dou dehou
P2 - EXT: (.Wladimir Palant - Adblock Plus: Element Hiding Helper.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\elemhidehelper@adblockplus.org =>.Wladimir Palant
P2 - EXT: (.Cooliris Inc. - Cooliris.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\piclens@cooliris.com =>.Cooliris Inc.
P2 - EXT: (.aldreneo and mrtech - Splash.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\splash@aldreneo.com =>.aldreneo and mrtech
P2 - EXT: (.Martin Meissnitzer - Strata RELOADED.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\stratareloaded@addons.mozilla.org =>.Martin Meissnitzer
P2 - EXT: (.Dave Garrett - Flagfox.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} =>.Dave Garrett
P2 - EXT: (.Neil Bird - URL Link.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{139a120b-c2ea-41d2-bf70-542d9f063dfd} =>.Neil Bird
P2 - EXT: (.Jason Adams - Image Zoom.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68} =>.Jason Adams
P2 - EXT: (.Jivko Evgeniev - Blue Fox.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{241aae70-0022-11de-87af-0800200c9a66} =>.Jivko Evgeniev
P2 - EXT: (.Giorgio Maone - NoScript.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232} =>.Giorgio Maone
P2 - EXT: (.Bodizzle - Aquatint Black Gloss.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{7694c49c-9fbd-11dc-8314-0800200c9a66} =>.Bodizzle
P2 - EXT: (.Hong Jen Yee (PCMan) - IE Tab.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9} =>.Hong Jen Yee (PCMan)
P2 - EXT: (.Todd Long <longfocus@gmail.com> - Update Notifier.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{95f24680-9e31-11da-a746-0800200c9a66}
P2 - EXT: (.MichaelB. - Download status.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{9fb8c270-7124-11dd-ad8b-0800200c9a66}
P2 - EXT: (.Michel Gutierrez - DownloadHelper.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} =>.Michel Gutierrez
P2 - EXT: (.Wladimir Palant - Adblock Plus.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} =>.Wladimir Palant
P2 - EXT: (. - d57c9ff1638948fcb770f78bd89b6e8a.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{d57c9ff1-6389-48fc-b770-f78bd89b6e8a}
P2 - EXT: (.Grayson Mixon - IE View Lite.) -- C:\Users\PLAY\AppData\Roaming\Mozilla\Firefox\Profiles\y9bqbldi.default\extensions\{FDD8ECF0-451A-414D-8C8F-7B7F78B0ECD3} =>.Grayson Mixon
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll =>.Adobe Systems Incorporated
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.3] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.1] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.3] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll =>.VideoLAN
P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.2.4] - (.VideoLAN.) -- C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll =>.VideoLAN

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (24) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-480081248-448449324-4229664033-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ =>.Google Inc.
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.18450 (winblue_ltsb_escrow.160831-1243)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer,Proxy Management (6) - 1s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (60)

---\\ Browser Helper Object de navigateur (BHO) (1) - 0s
O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll =>.AVAST Software s.r.o.®

---\\ Raccourcis Global Startup (69) - 8s
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\PLAY\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\PLAY\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\PLAY\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Windows 7 Logon Background Changer.lnk . (...) C:\Users\PLAY\AppData\Roaming\Microsoft\Installer\{2E6044C5-3495-485F-91BC-46D1B6430E51}\_38CF379FC0A8080C8E407C.exe
O4 - GS\Desktop [PLAY]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\PLAY\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [PLAY]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\PLAY\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Quicklaunch [PLAY]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [PLAY]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [PLAY]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\sendTo [PLAY]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [PLAY]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\TaskBar [PLAY]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [PLAY]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [PLAY]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\PLAY\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [PLAY]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [PLAY]: Windows 7 Logon Background Changer.lnk . (...) C:\Users\PLAY\AppData\Roaming\Microsoft\Installer\{2E6044C5-3495-485F-91BC-46D1B6430E51}\_38CF379FC0A8080C8E407C.exe
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\Programs [Public]: Chromium.lnk . (.The Chromium Authors - Chromium.) C:\Users\PLAY\AppData\Local\chromium\Application\chrome.exe =>.The Chromium Authors
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Windows 7 Logon Background Changer.lnk . (...) C:\Users\PLAY\AppData\Roaming\Microsoft\Installer\{2E6044C5-3495-485F-91BC-46D1B6430E51}\_38CF379FC0A8080C8E407C.exe
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: RocketDock.lnk . (...) C:\Program Files (x86)\RocketDock\RocketDock.exe
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Reader 8.lnk . (.Adobe Systems Incorporated - Adobe Reader 8.1.) C:\Program Files (x86)\Adobe\Reader 8.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated®
O4 - GS\ProgramsCommon [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Security Essentials.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Security Client\msseces.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PerfectDisk 10.lnk . (.Macrovision Corporation - InstallShield.) C:\Windows\Installer\{7B738CD9-D107-48C7-8E65-2E6639A39C8D}\MenuStartPD10_7B738CD9D10748C78E652E6639A39C8D.exe =>.Macrovision Corporation
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B7C7A18-AA7B-47DC-97D6-01B36ABC3599}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ Protocole additionnel (21) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll =>.Skype Software Sarl®
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ Enumère les données de BootExecute (1) - 0s
O34 - HKLM BootExecute: (PDBoot.exe) (.Copyright © 2008 - PerfectDisk Boot Time Defragmentation.) -- PDBoot.exe

---\\ Logiciels installés (47) - 15s
O42 - Logiciel: AAC Decoder - (.DivX, Inc..) [HKLM][64Bits] -- {AEF9DC35ADDF4825B049ACBFD1C6EB37} =>.DivX, Inc.
O42 - Logiciel: ACDSee Pro 3 - (.ACD Systems International Inc..) [HKLM][64Bits] -- {1B280FAF-AE10-4E31-A41A-DB3917D651DC} =>.ACD Systems International Inc.
O42 - Logiciel: Adobe Flash Player 10 Plugin - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player Plugin =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 27 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Reader 8.1.0 - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-A81000000003} =>.Adobe Systems Incorporated
O42 - Logiciel: AutoUpdate - (..) [HKLM][64Bits] -- {18D10072035C4515918F7E37EAFAACFC}
O42 - Logiciel: Avast Antivirus Gratuit - (.AVAST Software.) [HKLM][64Bits] -- Avast Antivirus =>.AVAST Software s.r.o.®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: DivX Codec - (.DivX, Inc..) [HKLM][64Bits] -- {7B63B2922B174135AFC0E1377DD81EC2} =>.DivX, Inc.
O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM][64Bits] -- {13F3917B56CD4C25848BDC69916971BB} =>.DivX, Inc.
O42 - Logiciel: DivX Converter - (.DivX, Inc..) [HKLM][64Bits] -- {B13A7C41581B411290FBC0395694E2A9} =>.DivX, Inc.
O42 - Logiciel: DivX Player - (.DivX, Inc..) [HKLM][64Bits] -- {8ADFC4160D694100B5B8A22DE9DCABD9} =>.DivX, Inc.
O42 - Logiciel: DivX Plus DirectShow Filters - (.DivX, Inc..) [HKLM][64Bits] -- DivX Plus DirectShow Filters =>.DivX, Inc.
O42 - Logiciel: DivX Version Checker - (.DivX, Inc..) [HKLM][64Bits] -- {3FC7CBBC4C1E11DCA1A752EA55D89593} =>.DivX, Inc.
O42 - Logiciel: DivX Web Player - (.DivX,Inc..) [HKLM][64Bits] -- {B7050CBDB2504B34BC2A9CA0A692CC29} =>.DivX,Inc.
O42 - Logiciel: FileZilla (remove only) - (..) [HKLM][64Bits] -- FileZilla
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: H.264 Decoder - (.DivX, Inc..) [HKLM][64Bits] -- {A96E97134CA649888820BCDE5E300BBD} =>.DivX, Inc.
O42 - Logiciel: HashCheck Shell Extension (x86-32) - (.Kai Liu.) [HKLM][64Bits] -- HashCheck Shell Extension =>.Kai Liu
O42 - Logiciel: HashCheck Shell Extension (x86-64) - (.Kai Liu.) [HKLM][64Bits] -- HashCheck Shell Extension =>.Kai Liu
O42 - Logiciel: Java 8 Update 151 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180151F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: Java(TM) 6 Update 18 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216018FF} =>.Sun Microsystems, Inc.
O42 - Logiciel: Logiciel d'archivage WinRAR - (.RarLab.) [HKLM][64Bits] -- WinRAR archiver =>.RarLab
O42 - Logiciel: Ma-Config.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {19D411B5-350C-4DEA-BCA3-9E7B632A642D} =>.CybelSoft
O42 - Logiciel: Malwarebytes version 3.3.1.2183 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Maxi Puzzles - (.Games Software.) [HKLM][64Bits] -- Maxi Puzzles_is1 =>.Games Software
O42 - Logiciel: Microsoft Choice Guard - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0E12BBA-AD66-4022-A453-A1C8A0C4D570} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Client - (.Microsoft Corporation.) [HKLM][64Bits] -- {5A8BF42D-86C1-459E-929A-BE3D67A60029} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Security Essentials - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Security Client =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: MKV Splitter - (.DivX, Inc..) [HKLM][64Bits] -- {AAC389499AEF40428987B3D30CFC76C9} =>.DivX, Inc.
O42 - Logiciel: Mozilla Firefox (3.6) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox (3.6) =>.Mozilla Corporation®
O42 - Logiciel: Notepad++ - (.Don Ho.) [HKLM][64Bits] -- Notepad++ =>.Don Ho
O42 - Logiciel: OpenOffice 4.1.0 - (.Apache Software Foundation.) [HKLM][64Bits] -- {B3B009FC-6909-4E00-9F43-FFB5CA93D606} =>.Apache Software Foundation
O42 - Logiciel: PerfectDisk 10 Professional - (.Raxco Software Inc..) [HKLM][64Bits] -- {7B738CD9-D107-48C7-8E65-2E6639A39C8D} =>.Raxco Software Inc.
O42 - Logiciel: PowerISO - (.PowerISO Computing, Inc..) [HKLM][64Bits] -- PowerISO =>.PowerISO Computing, Inc.
O42 - Logiciel: Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Qualcomm Atheros Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Qualcomm Atheros®
O42 - Logiciel: Resource Hacker - (..) [HKLM][64Bits] -- ResourceHacker
O42 - Logiciel: SafeZone Stable 4.58.2552.909 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 4.58.2552.909 =>.AVAST Software s.r.o.®
O42 - Logiciel: Shockwave Player - (.Adobe.) [HKLM][64Bits] -- {103906AD-C60E-4E65-BC84-CE980D19CE41} =>.Adobe
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.40 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Winamax Installer - (.Winamax.) [HKCU][64Bits] -- Winamax Installer 2.0 =>.Winamax
O42 - Logiciel: Windows 7 Logon Background Changer - (.Julien MANICI.) [HKLM][64Bits] -- {2E6044C5-3495-485F-91BC-46D1B6430E51} =>.Julien MANICI
O42 - Logiciel: ZHPFix 2015 - (.Nicolas Coolman.) [HKLM][64Bits] -- ZHPFix_is1 =>.Nicolas Coolman

---\\ HKCU & HKLM Software Keys (85) - 15s
HKLM\SOFTWARE\Wow6432Node\ACD Systems =>.ACD Systems
HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner =>.Malwarebytes
HKLM\SOFTWARE\Wow6432Node\Ahead =>.Ahead
HKLM\SOFTWARE\Wow6432Node\ALWIL Software =>.ALWIL Software
HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD
HKLM\SOFTWARE\Wow6432Node\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI
HKLM\SOFTWARE\Wow6432Node\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Wow6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Wow6432Node\DivXNetworks =>.DivXNetworks
HKLM\SOFTWARE\Wow6432Node\FileZilla =>.FileZilla
HKLM\SOFTWARE\Wow6432Node\Google =>.Google
HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel
HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\Wow6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Micro Application =>.Micro Application
HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Nero =>.Ahead Corporation
HKLM\SOFTWARE\Wow6432Node\Notepad++ =>.Don Ho
HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Wow6432Node\OpenOffice =>.SourceForge
HKLM\SOFTWARE\Wow6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\Wow6432Node\PowerISO =>.PowerISO Computing
HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros Inc. =>.Qualcomm Atheros
HKLM\SOFTWARE\Wow6432Node\S3R521
HKLM\SOFTWARE\Wow6432Node\ScreenShot
HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype
HKLM\SOFTWARE\Wow6432Node\Software =>.Unknown
HKLM\SOFTWARE\Wow6432Node\Sun Microsystems =>.Sun Microsystems
HKLM\SOFTWARE\Wow6432Node\Sysinternals =>.Sysinternals
HKLM\SOFTWARE\Wow6432Node\TuneUp =>.TuneUp
HKLM\SOFTWARE\Wow6432Node\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\ACD Systems =>.ACD Systems
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\ALWIL Software =>.ALWIL Software
HKCU\SOFTWARE\AOL =>.America On Line Inc.
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Clubic =>.Clubic
HKCU\SOFTWARE\DivXNetworks =>.DivXNetworks
HKCU\SOFTWARE\DMGR1.25
HKCU\SOFTWARE\FileZilla =>.FileZilla
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Nero =>.Ahead Corporation
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\OpenOffice =>.SourceForge
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\Plex, Inc. =>.Plex, Inc.
HKCU\SOFTWARE\PowerISO =>.PowerISO Computing
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\Raxco =>.Raxco
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-eeb0c25a95d3
HKCU\SOFTWARE\Software =>.Unknown
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\TuneUp =>.TuneUp
HKCU\SOFTWARE\undefined =>.SUP.Downloader
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\Macromedia =>.Macromedia

---\\ Contenu des dossiers Programmes (219) - 7s
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Alwil Software =>.ALWIL Software
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files\AMD =>.AMD
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.®
O43 - CFD: 12/06/2014 - [0] D -- C:\Program Files\ATI Technologies =>.ATI Technologies
O43 - CFD: 03/05/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 03/12/2015 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 12/06/2014 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files\IDT =>.IDT
O43 - CFD: 15/09/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files\ma-config.com =>.Ma-Config.com
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 28/09/2016 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation
O43 - CFD: 15/09/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\Raxco =>.Raxco
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/05/2016 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 05/05/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files\WinRAR =>.WinRAR
O43 - CFD: 05/09/2016 - [] D -- C:\Program Files (x86)\ACD Systems =>.ACD Systems Ltd
O43 - CFD: 21/04/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\DivX =>.DivX
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\FileZilla =>.FileZilla
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 12/06/2014 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 15/09/2016 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files (x86)\Julien MANICI =>.Julien MANICI
O43 - CFD: 07/11/2017 - [0] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes
O43 - CFD: 28/07/2014 - [] D -- C:\Program Files (x86)\Micro Application =>.Micro Application
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/09/2016 - [] D -- C:\Program Files (x86)\Microsoft Security Client =>.Microsoft Corporation
O43 - CFD: 15/09/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 20/06/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\My Company Name =>.My Company Name
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Nero =>.Ahead Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Notepad++ =>.Don Ho
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\PowerISO =>.PowerISO Computing
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Raxco =>.Raxco
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Resource Hacker =>.Angus Johnson
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\RocketDock =>.Punk Software
O43 - CFD: 05/09/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 30/08/2014 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [0] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Windows Live SkyDrive =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 05/05/2016 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/08/2014 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 20/06/2016 - [] D -- C:\Program Files (x86)\ZHPFix =>.Nicolas Coolman
O43 - CFD: 15/02/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems =>.ACD Systems Ltd
O43 - CFD: 29/08/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX =>.DivX
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla =>.FileZilla
O43 - CFD: 15/02/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 12/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ma-config.com =>.Ma-Config.com
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 28/07/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application =>.Micro Application
O43 - CFD: 14/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 21/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox =>.Mozilla
O43 - CFD: 12/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero =>.Ahead Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 12/06/2014 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0 =>.SourceForge
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO =>.PowerISO Computing
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Hacker =>.Angus Johnson
O43 - CFD: 10/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 29/04/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip =>.WinZip
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\ACD Systems =>.ACD Systems Ltd
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 12/06/2014 - [0] D -- C:\ProgramData\Alwil Software =>.ALWIL Software
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 11/10/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 12/06/2014 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\ProgramData\ma-config.com =>.Ma-Config.com
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\MB2Migration
O43 - CFD: 12/06/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 13/06/2014 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Raxco =>.Raxco
O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 12/06/2014 - [] D -- C:\ProgramData\SonicFocus =>.Sonic Focus
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\ProgramData\Sun =>.Oracle
O43 - CFD: 22/11/2017 - [0] D -- C:\ProgramData\SWCUTemp
O43 - CFD: 21/04/2015 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\ProgramData\TuneUp Software =>.TuneUp Software
O43 - CFD: 29/04/2017 - [0] D -- C:\ProgramData\WinZip =>.WinZip
O43 - CFD: 15/02/2010 - [] SHD -- C:\ProgramData\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Common Files\ACD Systems =>.ACD Systems Ltd
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 13/04/2017 - [] D -- C:\Program Files (x86)\Common Files\AV =>.Avast
O43 - CFD: 07/11/2017 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle
O43 - CFD: 12/06/2014 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Common Files\Nero =>.Ahead Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Common Files\PX Storage Engine =>.Sonic Solutions
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 05/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\ACD Systems =>.ACD Systems Ltd
O43 - CFD: 01/07/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 30/04/2015 - [] D -- C:\Users\PLAY\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 13/09/2016 - [] D -- C:\Users\PLAY\AppData\Roaming\com.winamax.chat =>.Winamax
O43 - CFD: 28/07/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\DivX =>.DivX
O43 - CFD: 20/04/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\Google =>.Google
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 15/12/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\IDT =>.IDT
O43 - CFD: 21/11/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\LiveCAD3
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\PLAY\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 20/06/2016 - [] SD -- C:\Users\PLAY\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 07/08/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\Nero =>.Ahead Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\Notepad++ =>.Don Ho
O43 - CFD: 12/06/2014 - [] D -- C:\Users\PLAY\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 29/04/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 19/11/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\Skype =>.Skype
O43 - CFD: 07/11/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\TuneUp Software =>.TuneUp Software
O43 - CFD: 07/11/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\uTorrent
O43 - CFD: 29/04/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 13/09/2016 - [] D -- C:\Users\PLAY\AppData\Roaming\wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 22/11/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 02/08/2014 - [] D -- C:\Users\PLAY\AppData\Local\ACD Systems =>.ACD Systems Ltd
O43 - CFD: 01/07/2014 - [] D -- C:\Users\PLAY\AppData\Local\Adobe =>.Adobe
O43 - CFD: 15/02/2010 - [0] SHD -- C:\Users\PLAY\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 19/07/2016 - [] D -- C:\Users\PLAY\AppData\Local\CEF =>.CEF
O43 - CFD: 29/04/2017 - [] D -- C:\Users\PLAY\AppData\Local\chromium =>.Chromium
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Local\Cooliris =>.Cooliris Inc
O43 - CFD: 12/06/2014 - [0] D -- C:\Users\PLAY\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 31/01/2017 - [] D -- C:\Users\PLAY\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 23/06/2015 - [0] SHD -- C:\Users\PLAY\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr
O43 - CFD: 23/06/2015 - [0] SHD -- C:\Users\PLAY\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr
O43 - CFD: 23/06/2015 - [0] SHD -- C:\Users\PLAY\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr
O43 - CFD: 20/12/2016 - [] D -- C:\Users\PLAY\AppData\Local\Google =>.Google
O43 - CFD: 15/02/2010 - [0] SHD -- C:\Users\PLAY\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] D -- C:\Users\PLAY\AppData\Local\http___www.julien-manici
O43 - CFD: 05/05/2017 - [] D -- C:\Users\PLAY\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 09/07/2014 - [] D -- C:\Users\PLAY\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/04/2017 - [] D -- C:\Users\PLAY\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 01/11/2017 - [] D -- C:\Users\PLAY\AppData\Local\Plex Media Server =>.Plex Inc.
O43 - CFD: 29/04/2017 - [] D -- C:\Users\PLAY\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 15/01/2016 - [0] D -- C:\Users\PLAY\AppData\Local\Skype =>.Skype
O43 - CFD: 22/11/2017 - [] D -- C:\Users\PLAY\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [0] SHD -- C:\Users\PLAY\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 03/05/2016 - [] D -- C:\Users\PLAY\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 08/11/2017 - [] D -- C:\Users\PLAY\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 02/08/2014 - [0] D -- C:\Users\PLAY\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 05/05/2017 - [] D -- C:\Users\PLAY\AppData\Local\Programs\Opera =>.Opera Software
O43 - CFD: 22/11/2017 - [] RD -- C:\Users\PLAY\Desktop\Downloads
O43 - CFD: 15/02/2010 - [] RD -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [] RD -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 15/02/2010 - [0] D -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cooliris =>.Cooliris Inc
O43 - CFD: 15/02/2010 - [0] D -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla =>.FileZilla
O43 - CFD: 26/08/2017 - [] D -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 15/02/2010 - [0] D -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho
O43 - CFD: 14/05/2015 - [] RD -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 13/09/2016 - [] D -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamax =>.Winamax
O43 - CFD: 15/02/2010 - [] D -- C:\Users\PLAY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 28/06/2014 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google
O43 - CFD: 14/07/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 01/11/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Plex Media Server =>.Plex Inc.
O43 - CFD: 10/10/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 21/06/2016 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/06/2014 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\TuneUp Software =>.TuneUp Software

---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s
O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShA64.dll =>.AVAST Software s.r.o.®
O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShA64.dll =>.AVAST Software s.r.o.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Raccourcis de menus conceptuels (SCMH) (40) - 2s
O108 - CMH1: avast [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShA64.dll =>.AVAST Software s.r.o.®
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- c:\Program Files\Microsoft Security Client\shellext.dll =>.Microsoft Corporation®
O108 - CMH1: Notepad++ [64Bits] - {AE6B1055-0490-4142-AE3F-5C3F0B32E223} . (.Burgaud.com - Context Handler Menu for Notepad++.) -- C:\Program Files (x86)\Notepad++\nppcm.dll
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.PowerISO Computing, Inc. - PowerISOShell DLL.) -- C:\Program Files (x86)\PowerISO\PWRISOSH.DLL =>.PowerISO Computing, Inc.
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: 00asw [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShA64.dll =>.AVAST Software s.r.o.®
O108 - CMH3: Copy To [64Bits] - {C2FBB630-2971-11D1-A18C-00C04FD75D13} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: HashCheck Shell Extension [64Bits] - {705977C7-86CB-4743-BFAF-6908BD19B7B0} . (.code.kliu.org - HashCheck Shell Extension (x86-64).) -- C:\Windows\System32\ShellExt\HashCheck.dll
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: Move To [64Bits] - {C2FBB631-2971-11D1-A18C-00C04FD75D13} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: SendTo [64Bits] - . (.Orphan.)
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- c:\Program Files\Microsoft Security Client\shellext.dll =>.Microsoft Corporation®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.PowerISO Computing, Inc. - PowerISOShell DLL.) -- C:\Program Files (x86)\PowerISO\PWRISOSH.DLL =>.PowerISO Computing, Inc.
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll
O108 - CMH4: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH6: avast [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShA64.dll =>.AVAST Software s.r.o.®
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.PowerISO Computing, Inc. - PowerISOShell DLL.) -- C:\Program Files (x86)\PowerISO\PWRISOSH.DLL =>.PowerISO Computing, Inc.
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- c:\Program Files\Microsoft Security Client\shellext.dll =>.Microsoft Corporation®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (4) - 0s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation

---\\ Enumération des clés StartupReg (5) - 0s
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] [64Bits] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\avast5 [Key] [64Bits] . (...) -- C:\Program Files\Alwil Software\Avast5\avastUI.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] [64Bits] . (...) -- C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\PWRISOVM.EXE [Key] [64Bits] . (.PowerISO Computing, Inc. - PowerISO Virtual Drive Manager.) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE =>.PowerISO Computing, Inc.
O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] [64Bits] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation

---\\ Liste des pilotes du système (80) - 9s
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2014/05/23 03:24:24 A . (.Advanced Micro Devices - AMD ACP Kernel Service Driver.) -- C:\Windows\System32\drivers\amdacpksd.sys [276192] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2012/03/30 02:44:52 A . (.Advanced Micro Devices, INC. - AMD USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\amdhub30.sys [105088] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2010/11/20 14:32:46 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:32:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2012/03/30 02:44:54 A . (.Advanced Micro Devices, INC. - AMD USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\amdxhc.sys [223872] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2013/11/06 04:40:46 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amd_sata.sys [83176] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2013/11/06 04:40:46 A . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\Windows\System32\drivers\amd_xata.sys [43240] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2017/11/10 09:32:11 A . (.AVAST Software - Avast anti rootkit.) -- C:\Windows\System32\drivers\aswArPot.sys [183584] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:30:43 A . (.AVAST Software s.r.o. - IDS Application Activity Monitor Driver..) -- C:\Windows\System32\drivers\aswbidsdrivera.sys [321032] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:30:44 A . (.AVAST Software s.r.o. - Application Activity Monitor Helper Driver.) -- C:\Windows\System32\drivers\aswbidsha.sys [198968] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:30:44 A . (.AVAST Software s.r.o. - Logging Driver.) -- C:\Windows\System32\drivers\aswbloga.sys [343288] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:30:44 A . (.AVAST Software s.r.o. - Universal Driver.) -- C:\Windows\System32\drivers\aswbuniva.sys [57728] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:32:11 A . (.AVAST Software - Avast HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [47008] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/09/07 20:06:33 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [41832] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:32:12 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\Windows\System32\drivers\aswMonFlt.sys [148288] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:32:10 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [110376] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:32:12 A . (.AVAST Software - Avast Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [84416] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/11/10 09:31:01 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1026232] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/15 21:33:06 A . (.AVAST Software - Avast self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [455376] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:32:14 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [203976] =>.AVAST Software s.r.o.®
O58 - SDL:2017/11/10 09:32:13 A . (.AVAST Software - Avast VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [364464] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2014/05/23 03:22:08 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [15950336] =>.Advanced Micro Devices, Inc.
O58 - SDL:2014/05/23 02:11:52 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [557056] =>.Advanced Micro Devices, Inc.
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/06/08 10:00:58 A . (.Raxco Software, Inc. - Defragmentation Support Driver.) -- C:\Windows\System32\drivers\DefragFs.sys [100880] =>.Raxco Software, Inc.®
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/20 14:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2013/07/18 09:24:52 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\Windows\System32\drivers\L1C62x64.sys [129224] =>.Qualcomm Atheros®
O58 - SDL:2009/06/20 03:09:57 A . (.Atheros Communications, Inc. - Atheros AR8121/AR8113/AR8114 PCI-E Ethernet.) -- C:\Windows\System32\drivers\L1E62x64.sys [54272] =>.Atheros Communications, Inc.
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2017/11/01 08:54:56 A . (...) -- C:\Windows\System32\drivers\mbae64.sys [77432] =>.Malwarebytes Corporation®
O58 - SDL:2017/11/07 12:08:32 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [253880] =>.Malwarebytes Corporation®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:37:25 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [11572512] =>.NVIDIA Corporation®
O58 - SDL:2010/11/20 14:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2013/03/06 07:14:45 A . (.Realtek Semiconductor Corporation - Realtek WLAN USB NDIS Driver.) -- C:\Windows\System32\drivers\RTWlanU.sys [1528976] =>.Realtek Semiconductor Corp®
O58 - SDL:2009/11/09 04:28:08 A . (.PowerISO Computing, Inc. - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [91568] =>.Fenghua Lee®
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2011/05/13 02:21:02 A . (.MCCI Corporation - SAMSUNG Android USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssadbus.sys [157672] =>.MCCI Corporation
O58 - SDL:2011/05/13 02:21:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcm.sys [13288] =>.MCCI Corporation
O58 - SDL:2011/05/13 02:21:02 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadcmnt.sys [13288] =>.MCCI Corporation
O58 - SDL:2011/05/13 02:21:02 A . (.MCCI Corporation - SAMSUNG Android USB Modem Filter Driver.) -- C:\Windows\System32\drivers\ssadmdfl.sys [16872] =>.MCCI Corporation
O58 - SDL:2011/05/13 02:21:04 A . (.MCCI Corporation - SAMSUNG Android USB Modem.) -- C:\Windows\System32\drivers\ssadmdm.sys [177640] =>.MCCI Corporation
O58 - SDL:2011/05/13 02:21:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwh.sys [13800] =>.MCCI Corporation
O58 - SDL:2011/05/13 02:21:04 A . (.MCCI Corporation - Windows 2000/XP support functions.) -- C:\Windows\System32\drivers\ssadwhnt.sys [13800] =>.MCCI Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2012/04/24 16:08:30 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt64.sys [536576] =>.IDT, Inc.
O58 - SDL:2012/03/30 15:49:08 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\System32\drivers\usbfilter.sys [56448] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2015/04/29 23:01:06 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\drivers\wdcsam64.sys [23200] =>.Microsoft Windows Hardware Compatibility Publisher®

---\\ Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (20) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.The Chromium Authors - Chromium.) -- C:\Users\PLAY\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- iexplore.exe
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\PLAY\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.The Chromium Authors - Chromium.) -- C:\Users\PLAY\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.The Chromium Authors - Chromium.) -- C:\Users\PLAY\AppData\Local\Chromium\Application\chrome.exe =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software

---\\ Recherche d'infection sur les navigateurs (4) - 8s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{2211d4a5-48d0-47f5-a7cd-81e861470f7f} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{2211d4a5-48d0-47f5-a7cd-81e861470f7f} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{EB676AEC-3837-4AE8-B4C9-96D426D9C30D} - (Google) - http://www.google.com/ =>.Google Inc.

---\\ Enumère les services démarrés par Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\Audiosrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2610688] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\sessenv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136192] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\kmsvc.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (9) - 2s
O87 - FAEL: "{2BD9E9FE-4C12-488D-989A-C49579368D87}" [In-None-P6-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.)
O87 - FAEL: "{24E91108-A804-4788-A738-0B5FAC6E3ACD}" [In-None-P17-TRUE] .(...) -- C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe (.not file.)
O87 - FAEL: "TCP Query User{488C5693-9311-4ADA-B28E-0B724851F651}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe (.not file.) =>.VideoLan Team
O87 - FAEL: "UDP Query User{9DE3C95D-D598-4496-94B4-9AFA313FB8EE}C:\program files (x86)\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\videolan\vlc\vlc.exe (.not file.) =>.VideoLan Team
O87 - FAEL: "{2073FEF0-6F98-4FD3-B83F-72092B8E49B5}" [In-None-P17-TRUE] .(...) -- C:\Users\PLAY\AppData\Local\Programs\Opera\44.0.2510.1449\opera.exe (.not file.)
O87 - FAEL: "TCP Query User{5A98F2AD-A81A-4A5D-AB38-1F05A7A58009}C:\users\play\appdata\roaming\spotify\spotify.exe" [In-None-P6-TRUE] .(...) -- C:\users\play\appdata\roaming\spotify\spotify.exe (.not file.)
O87 - FAEL: "UDP Query User{2508D131-4E17-4DD5-8F9E-FC641B8ABB57}C:\users\play\appdata\roaming\spotify\spotify.exe" [In-None-P17-TRUE] .(...) -- C:\users\play\appdata\roaming\spotify\spotify.exe (.not file.)
O87 - FAEL: "TCP Query User{BDCEE34E-1349-471F-BAED-8B854FC08A82}C:\users\play\appdata\roaming\spotify\spotify.exe" [In-None-P6-TRUE] .(...) -- C:\users\play\appdata\roaming\spotify\spotify.exe (.not file.)
O87 - FAEL: "UDP Query User{D7981A1A-A18F-428F-A6CF-F8D3F09C2451}C:\users\play\appdata\roaming\spotify\spotify.exe" [In-None-P17-TRUE] .(...) -- C:\users\play\appdata\roaming\spotify\spotify.exe (.not file.)

---\\ Recherche des packages WindowsInstaller (17) - 4s
[MD5.9A863E7D1620AF0930B7AAF7CE76D753] [WIS][2017/11/07 12:36:43] (.Oracle Corporation - Java SE Runtime Environment 8 Update 151.) -- C:\Windows\Installer\101068.msi [61034496] =>.Oracle Corporation
[MD5.D181C3EC418B36FD41F61937E31C66A1] [WIS][2017/11/07 12:38:32] (.Oracle Corporation - Java Auto Updater.) -- C:\Windows\Installer\101076.msi [761856] =>.Oracle Corporation
[MD5.16F6D765A6FB792EF45C0319D14DAF10] [WIS][2017/11/14 09:40:53] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\158d13.msi [45527040] =>.Skype Technologies S.A.
[MD5.53FB0397B082259F582651D1266FCA9E] [WIS][2015/04/29 19:40:46] (.Julien MANICI.) -- C:\Windows\Installer\1f9bc.msi [779264] =>.Julien MANICI
[MD5.FE09392FDE3A4AC1B180B02CB4AC53B3] [WIS][2015/04/29 19:40:46] (.Cybelsoft - Hardware Detection Ma-Config.com.) -- C:\Windows\Installer\21b9a3.msi [6115328] =>.Cybelsoft
[MD5.F3969504ABF8C10AC2162F8076EE91CD] [WIS][2015/04/29 19:40:46] (.Advanced Micro Devices, Inc. - AMD USB 3.0 Device Detector Installation package.) -- C:\Windows\Installer\353f8a.msi [1365504] =>.Advanced Micro Devices, Inc.
[MD5.EE04BFB72A89FC3D77857FE889486B24] [WIS][2015/04/29 19:40:46] (.Advanced Micro Devices, Inc. - AMD Catalyst Install Manager Installer (64 bit).) -- C:\Windows\Installer\35400d.msi [8563712] =>.Advanced Micro Devices, Inc.
[MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/15 23:38:33] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\36d5d82.msi [40960] =>.Google Inc.
[MD5.EF88B0888F1EA293029A813B8F98F63B] [WIS][2015/04/29 19:40:47] (.Shark007 - Shockwave Player.) -- C:\Windows\Installer\482f9.msi [393728] =>.Shark007
[MD5.72888A4512084F0DF9B4D02EA508679F] [WIS][2015/04/29 19:40:47] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\693cc.msi [26112] =>.Google Inc.
[MD5.494C93C6EE56A9E4700ED8EF454D848C] [WIS][2015/04/29 19:40:47] (.OpenOffice - OpenOffice 4.1.0.) -- C:\Windows\Installer\82b04.msi [2314240] =>.OpenOffice
[MD5.75E732075774F88A4BB92D6633B0FE24] [WIS][2015/04/29 19:40:47] (.ACD Systems International Inc. - ACDSee Pro.) -- C:\Windows\Installer\99b0a.msi [59215360] =>.ACD Systems International Inc.
[MD5.FA9ACAE08FA20B535BCFFAF9EC627FF3] [WIS][2015/04/29 19:40:48] (.Adobe Systems Incorporated - ADOBER~1.0Adobe Reader 8.) -- C:\Windows\Installer\99b10.msi [3597824] =>.Adobe Systems Incorporated
[MD5.765ECADF0307CABDE34451D7807DF634] [WIS][2015/04/29 19:40:48] (.Raxco Software Inc. - PerfectDisk 10 Professional.) -- C:\Windows\Installer\f26a0.msi [2219008] =>.Raxco Software Inc.
[MD5.53DF295A99335D837423249E600C78AC] [WIS][2015/04/29 19:40:48] (.Sun Microsystems, Inc. - Java(TM) SE Runtime Environment 6.0.) -- C:\Windows\Installer\f26fb.msi [12321280] =>.Sun Microsystems, Inc.
[MD5.EF88B0888F1EA293029A813B8F98F63B] [WIS][2015/04/29 19:54:04] (.Shark007 - Shockwave Player.) -- C:\Windows\Installer\SwInstall.msi [393728] =>.Shark007

---\\ Scan Additionnel (5) - 0s
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\SendTo =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan

---\\ Récapitulatif des éléments trouvés sur votre station (2) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Downloader

~ Unselected Options: O82,
~ End of the scan, 17874 items in 02mn15s (1054)(0)

Publicité


Signaler le contenu de ce document

Publicité