~ ZHPDiag v2015.12.11.183 Par Nicolas Coolman (2015/12/11) ~ Démarré par anime_000 (Administrator) (2015/12/12 17:01:49) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\anime_000\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\anime_000\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 10586) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v47.0.2526.80 MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0 MSIE: Internet Explorer v11.11.10586.0 ---\\ Informations sur les produits Windows (3) - 4s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (1) - 1s Windows Defender (Activate) ---\\ Surveillance de Logiciels (1) - 2s Adobe Flash Player 20 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 55 Stepping 8, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4073.54 MB (43% free) System Restore: Activé (Enable) System drive C: has 145 GB () free of 199 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: SHINUNA ~ User Name: anime_000 ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 145 GB free of 199 GB (System) ~ Drive D: has 23 GB free of 25 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.4572EB3DDBD2DFA10DE7A037A6CC6D53] - 30/10/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4502864] =>.Microsoft Windows® [MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] © [MD5.CAD491DD9EC00BB841EA407D9C498C4A] - 30/10/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [290856] =>.Microsoft Windows Publisher® [MD5.AB4C1A9F37C0B8467AC923ED4AD727D6] - 22/11/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2647552] © [MD5.46C8E60DEDBDA95C102D1B2E74676578] - 30/10/2015 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [584704] © [MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] © [MD5.E7B524818100B0FDE2B057C74B0C0DCD] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [686984] =>.Microsoft Windows® [MD5.2796C0957F6F05A528DD64B8591371B6] - 30/10/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535088] =>.Microsoft Windows® [MD5.CE50037751671682D1FDBBE7C9B37F4A] - 30/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] © [MD5.70148EFA9A562E7185B75BBE7D376BF7] - 23/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows® [MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] © [MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] © [MD5.C9478D7DB7BE5D7ACE65CB1167F07320] - 30/10/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] © [MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] © [MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] © [MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] © [MD5.61F9F27A8C3D7BCD287FE98A440421CE] - 30/10/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows® [MD5.F51C02D992A8D6BC5EC4D990F227D4C7] - 30/10/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [279552] © [MD5.F6A2D0EC594A1039B0F9D42BB8EC0BD3] - 30/10/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152800] =>.Microsoft Windows® [MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] © [MD5.381B8F2311A0375676B635EA5E7C8AB0] - 30/10/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] © [MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 30/10/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] © [MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 23/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows® [MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (10) - 3s O23 - Service: @oem22.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAM (DptfParticipantAcpiProcessorService) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\WINDOWS\system32\DptfParticipantProcessorService.exe © O23 - Service: @oem22.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME (DptfPolicyCriticalService) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\System32\DptfPolicyCriticalService.exe {3300009D4320E74C7AF0250102000300009D43} © O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe © O23 - Service: Lenovo Settings Service (Lenovo Settings Service) . (.Lenovo Group Limited - Lenovo Settings Service.) - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe =>.LENOVO® O23 - Service: LenovoSetSvr (LenovoSetSvr) . (.Lenovo(beijing) Limited - Lenovo Settings.) - C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe =>.Lenovo (Beijing) Limited® O23 - Service: Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited - Lenovo Settings.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe =>.Lenovo (Beijing) Limited® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Wacom Professional Service (WTabletServicePro) . (.Wacom Technology, Corp. - Tablet Service.) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe {4CD0FF117A776E398FDBF875CA016698} © ---\\ Tâches planifiées en automatique (13) - 3s [MD5.F54564025D2284AE498E51D7C139F971] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] =>.Adobe Systems Incorporated® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [PDVDServ Task] (...) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE (.not file.) [0] [MD5.E9A46FCB53833669A4AECABD60BAEE87] [APT] [Lenovo\Lenovo Customer Feedback Program 64] (.Lenovo.) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [17184] =>.LENOVO® [MD5.E3238CA9101C670556B636C8F4FCE358] [APT] [Lenovo\Lenovo Customer Feedback Program 64 35] (.Lenovo.) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [17184] =>.LENOVO® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [1002] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [1088] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [1092] © O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3988] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3918] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4150] © O39 - APT: PDVDServ Task - (...) -- C:\WINDOWS\System32\Tasks\PDVDServ Task [2060] ---\\ Processus lancés (11) - 5s [MD5.9350624A7EC64A6F25EBE9771C8FF337] - (.Wacom Technology, Corp. - Tablet Service.) -- C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [730304] [PID.1812] {4CD0FF117A776E398FDBF875CA016698} © [MD5.30F681B9BEC4822A9CB3B886152CC5A2] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\DptfParticipantProcessorService.exe [115656] [PID.1864] {3300009D4320E74C7AF0250102000300009D43} © [MD5.BBBDF36952D6D49AEEEC4025E23FB197] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\DptfPolicyCriticalService.exe [148160] [PID.2308] {3300009D4320E74C7AF0250102000300009D43} © [MD5.768DD5CB66952BC4A3BD474757AEE34F] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696] [PID.2324] © [MD5.40FEF0E6B4D36CE8EEFCE62BAF1A9563] - (.Wacom Technology, Corp. - Tablet user module for professional driver.) -- C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe [1765056] [PID.4700] {4CD0FF117A776E398FDBF875CA016698} © [MD5.05E66056C03BC28466D8206EF786A5B6] - (.Wacom Technology, Corp. - Tablet Service for professional driver.) -- C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [12624064] [PID.6488] {4CD0FF117A776E398FDBF875CA016698} © [MD5.CEFBBDD14D0ABA72CE52182BA6E5192A] - (.Wacom Technology, Corp. - Touch User Mode Driver.) -- C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe [5409472] [PID.824] {4CD0FF117A776E398FDBF875CA016698} © [MD5.B8734145CE721EFC15B615092EAE3001] - (.Development Media 73 - Emotiplus.) -- C:\Users\anime_000\AppData\Local\Emotiplus\Emotiplus.exe [571632] [PID.2716] {6A6DDD1D5DBA6906C8E35D9F72325B1E} [MD5.82BA979332BF2C82A419E5ED1E8E77D9] - (.Lenovo Corporation - Lenovo® Multimedia and Comm Subsystem Nativ.) -- C:\Program Files\Lenovo\Communications Utility\tpknrres.exe [521672] [PID.7232] {6B07BE5BB572250021042BB149CD9A8E} © [MD5.63C59CC5FEADFC8C7A49CBDC1A44A409] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.3796] [MD5.7D0AB167F1F58F6A5CC88F0A1AC3A1E6] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\anime_000\Downloads\ZHPDiag3.exe [2008064] [PID.4320] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (10) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] __MSG_extName__ G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] AdBlock G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s M0 - MFSP: prefs.js [anime_000 - dswl2uy4.default] https://www.google.fr/ P2 - EXT FILE: (...) -- C:\Users\anime_000\AppData\Roaming\Mozilla\Firefox\Profiles\dswl2uy4.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi P2 - EXT FILE: (...) -- C:\Users\anime_000\AppData\Roaming\Mozilla\Firefox\Profiles\dswl2uy4.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo13.msn.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (4) - 1s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office 15\root\office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Applications lancées au démarrage du système (22) - 2s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [RtHDVBg_LENOVO_MICPKEY] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [LMCSSTART1] . (.Lenovo Corporation - Lenovo® Multimedia Subsystem Generic Contro.) -- C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe {6B07BE5BB572250021042BB149CD9A8E} © O4 - HKLM\..\Run: [LMCSSTART2] . (.Lenovo Corporation - Lenovo® Multimedia Subsystem Generic Contro.) -- C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe {6B07BE5BB572250021042BB149CD9A8E} © O4 - HKLM\..\Run: [LMCSSTART3] . (.Lenovo Corporation - Lenovo® Multimedia Subsystem Generic Contro.) -- C:\Program Files\Lenovo\Communications Utility\lmcsctrl.exe {6B07BE5BB572250021042BB149CD9A8E} © O4 - HKLM\..\Run: [LenovoUtility] C:\Program Files\Lenovo\LenovoUtility\utility.exe (.not file.) O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe (.not file.) O4 - HKLM\..\RunOnce: [ZHPCleaner_File1] CMD /c DEL "C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe" /F /Q (.not file.) =>PUP.Optional.SearchProtect O4 - HKLM\..\RunOnce: [ZHPCleaner_Folder1] CMD /c DEL "C:\Program Files (x86)\SearchProtect" /F /Q (.not file.) =>PUP.Optional.SearchProtect O4 - HKLM\..\RunOnce: [ZHPCleaner_Folder2] CMD /c DEL "C:\Users\anime_000\AppData\Local\SearchProtect" /F /Q (.not file.) =>PUP.Optional.SearchProtect O4 - HKLM\..\RunOnce: [ZHPCleaner] Notepad C:\Users\anime_000\AppData\Roaming\ZHP\ZHPCleaner.txt (.not file.) O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe © O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\RunOnce: [Uninstall C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe © O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2148580588-2278822498-4083315943-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2148580588-2278822498-4083315943-1001\..\Run: [RESTART_STICKY_NOTES] . (.Microsoft Corporation - Pense-bête.) -- C:\Windows\System32\StikyNot.exe © O4 - HKUS\S-1-5-21-2148580588-2278822498-4083315943-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-2148580588-2278822498-4083315943-1001\..\RunOnce: [Uninstall C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe © ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Protocole additionnel (24) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll © O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll © ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 1s O20 - AppInit_DLLs: . (.Client Connect LTD - Search Protect.) - C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64Loader.dll =>PUP.Optional.SearchProtect ---\\ Logiciels installés (64) - 7s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {7B77622E-DE90-48EA-B2C7-227B1DE58A01} © O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR © O42 - Logiciel: Adobe Flash Player 20 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI © O42 - Logiciel: Audacity 2.1.1 - (.Audacity Team.) [HKLM][64Bits] -- Audacity®_is1 © O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} © O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} © O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} © O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {3117B53D-A409-4D99-A0DE-11A1A40696FA} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {4430150F-61B3-4142-BE04-EAC68C8DDA18} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {4ABFEC28-1554-493D-A84D-BEA21D8E6D6F} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {4AF6C9BC-D8DB-4286-94D9-474CE54ADAA2} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {503B47A9-E34A-4841-ADD7-417191D5DB5E} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {546FF45D-2467-4950-AAFB-0A06ACBB6B2C} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {5BEFE1E1-F597-4B79-913B-15FFDB25B744} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {63DE35C9-B080-4D03-B110-99E14FD35BCE} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {65316098-0220-4D5C-B37A-6136083A0897} © O42 - Logiciel: Dependency Package Update - (.Lenovo Group Limited.) [HKLM][64Bits] -- {E966DBE4-5075-465E-BA81-BC9A3A3204B3} © O42 - Logiciel: Emotiplus - (.Development Media 73.) [HKCU][64Bits] -- Emotiplus O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome © O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C © O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} © O42 - Logiciel: Intel(R) Sideband Fabric Device Driver - (.Intel Corporation.) [HKLM][64Bits] -- C5A8BC6E-723A-4C0F-96E1-C426D1A4BCA9 © O42 - Logiciel: Intel(R) Trusted Execution Engine - (.Intel Corporation.) [HKLM][64Bits] -- {176E2755-0A17-42C6-88E2-192AB2131278} © O42 - Logiciel: Intel(R) Trusted Execution Engine - (.Intel Corporation.) [HKLM][64Bits] -- {2D6248C0-4693-4CAB-9922-F05E4015F62A} © O42 - Logiciel: Intel(R) Trusted Execution Engine Driver - (.Intel Corporation.) [HKLM][64Bits] -- {6307E820-0317-4DCE-AAE0-7B6CAD867055} © O42 - Logiciel: LAME v3.99.3 (for Windows) - (...) [HKLM][64Bits] -- LAME_is1 O42 - Logiciel: Lenovo EasyCamera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC} © O42 - Logiciel: Lenovo Patch Utility - (.Lenovo Group Limited.) [HKLM][64Bits] -- {E8F27ADF-B1ED-41AF-A7EF-D5E71778480C} © O42 - Logiciel: Lenovo Patch Utility 64 bit - (.Lenovo Group Limited.) [HKLM][64Bits] -- {49A09C2C-FFF4-478E-B397-5E0979F67F5D} © O42 - Logiciel: Lenovo Settings - (.Lenovo.) [HKLM][64Bits] -- {D14CCBF5-1A3A-4C08-955B-BE6D519835C4}_is1 © O42 - Logiciel: Lenovo Settings - Camera Audio - (.Lenovo Corporation.) [HKLM][64Bits] -- {88C6A6D9-324C-46E8-BA87-563D14021442}_is1 © O42 - Logiciel: Lenovo Settings Dependency Package - (.Lenovo Group Limited.) [HKLM][64Bits] -- {3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1 © O42 - Logiciel: Lenovo Settings Service - (.Lenovo Group Limited.) [HKLM][64Bits] -- {8C6F1EBA-17F1-4481-B688-9777E63E985F}_is1 © O42 - Logiciel: Lenovo Settings UMDF driver - (.Lenovo Group Limited.) [HKLM][64Bits] -- {2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1 © O42 - Logiciel: Lenovo Settings WiFi - (.Lenovo.) [HKLM][64Bits] -- {86045A6C-C156-4349-A3E2-47A88A42F5C2}_is1 © O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} © O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} © O42 - Logiciel: Mozilla Firefox 42.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 42.0 (x86 fr) © O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} © O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} © O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} © O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} © O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} © O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} © O42 - Logiciel: osu! - (.ppy Pty Ltd.) [HKLM][64Bits] -- {e97b880d-eec7-44cd-8f14-17233a97bf08} © O42 - Logiciel: Package de pilotes Windows - Lenovo (ACPIVPC) System (09/24/2013 19.29.2.3 - (.Lenovo.) [HKLM][64Bits] -- EE9B1F2037C580F36D92FA431CC02BFF04C31F15 © O42 - Logiciel: Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30. - (.Lenovo.) [HKLM][64Bits] -- 6BCA401E9CBEED970D75F55FA5320F60D11984E9 © O42 - Logiciel: REALTEK Bluetooth Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A5EF-4123-B2B9-172095903AB} © O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} © O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} © O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9DAABC60-A5EF-41FF-B2B9-17329590CD5} © O42 - Logiciel: Search Protect - (.Client Connect LTD.) [HKLM][64Bits] -- SearchProtect =>PUP.Optional.SearchProtect O42 - Logiciel: Skype™ 7.16 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} © O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey © O42 - Logiciel: Tablette Wacom - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom Tablet Driver © O42 - Logiciel: WebTablet FB Plugin 32 bit - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Internet Explorer and Netscape © O42 - Logiciel: WebTablet FB Plugin 64 bit - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Internet Explorer and Netscape © O42 - Logiciel: WinRAR 5.21 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © ---\\ HKCU & HKLM Software Keys (57) - 7s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\DellShared HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\Lame For Audacity HKLM\SOFTWARE\Wow6432Node\Lenovo HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Network Associates HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RtWLan HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SPPDCOM =>.Superfluous.PCSpeedUp HKLM\SOFTWARE\Wow6432Node\SRS Labs HKLM\SOFTWARE\Wow6432Node\Wacom HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Emotiplus HKCU\SOFTWARE\Google HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\Lake HKCU\SOFTWARE\Lenovo HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\osu! HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Skype HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\SYSTEMAX Software Development HKCU\SOFTWARE\TVPaint Developpement HKCU\SOFTWARE\Unity HKCU\SOFTWARE\Wacom HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\YandereDev HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software ---\\ Contenu des dossiers Programmes (133) - 9s O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\Adobe O43 - CFD: 02/12/2015 - [] AD -- C:\Program Files (x86)\Audacity O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\Cisco O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Google O43 - CFD: 24/11/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\Intel O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 02/12/2015 - [] AD -- C:\Program Files (x86)\Lame For Audacity O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Lenovo O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\Microsoft Office O43 - CFD: 08/12/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 24/11/2015 - [] AD -- C:\Program Files (x86)\Mozilla Firefox O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 23/11/2015 - [] AD -- C:\Program Files (x86)\Realtek O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\SearchProtect =>PUP.Optional.SearchProtect O43 - CFD: 12/12/2015 - [] RD -- C:\Program Files (x86)\Skype O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\TabletPlugins O43 - CFD: 29/08/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 23/11/2015 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 08/12/2015 - [] D -- C:\Program Files (x86)\Windows Live O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 24/11/2015 - [] AD -- C:\Program Files (x86)\WinRAR O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 23/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 25/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablette Wacom O43 - CFD: 09/12/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TVPaint Developpement O43 - CFD: 08/12/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 23/11/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 23/11/2015 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 23/11/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\install_clap O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Intel O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Lenovo O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\McAfee O43 - CFD: 23/11/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 08/12/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 23/11/2015 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 24/11/2015 - [0] D -- C:\ProgramData\Office2013 O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\OneKey Recovery O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Realtek O43 - CFD: 25/11/2015 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\SYSTEMAX Software Development O43 - CFD: 29/08/2015 - [] D -- C:\ProgramData\Temp O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 29/08/2015 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR O43 - CFD: 25/11/2015 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Lenovo O43 - CFD: 24/11/2015 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 08/12/2015 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 23/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Adobe O43 - CFD: 09/12/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Audacity O43 - CFD: 23/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\LSC O43 - CFD: 29/08/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Macromedia O43 - CFD: 29/11/2015 - [] SD -- C:\Users\anime_000\AppData\Roaming\Microsoft O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Mozilla O43 - CFD: 12/12/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Skype O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\SYSTEMAX Software Development O43 - CFD: 25/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\tvp animation 11 pro demo O43 - CFD: 01/12/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\uTorrent O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\WinRAR O43 - CFD: 05/12/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\WTablet O43 - CFD: 12/12/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\ZHP O43 - CFD: 24/11/2015 - [0] D -- C:\Users\anime_000\AppData\Local\ActiveSync O43 - CFD: 30/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Adobe O43 - CFD: 23/11/2015 - [0] SHD -- C:\Users\anime_000\AppData\Local\Application Data O43 - CFD: 12/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\bvxvyxxvcy O43 - CFD: 27/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Comms O43 - CFD: 11/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Emotiplus O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Google O43 - CFD: 23/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\GWX O43 - CFD: 23/11/2015 - [0] SHD -- C:\Users\anime_000\AppData\Local\Historique O43 - CFD: 23/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Lenovo O43 - CFD: 30/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Macromedia O43 - CFD: 08/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Microsoft O43 - CFD: 05/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Microsoft Help O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\MicrosoftEdge O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Mozilla O43 - CFD: 24/11/2015 - [0] D -- C:\Users\anime_000\AppData\Local\NetworkTiles O43 - CFD: 12/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\osu! O43 - CFD: 11/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Packages O43 - CFD: 23/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Power2Go8 O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Programs O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\Publishers O43 - CFD: 11/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect O43 - CFD: 12/12/2015 - [0] D -- C:\Users\anime_000\AppData\Local\Skype O43 - CFD: 12/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Temp O43 - CFD: 23/11/2015 - [0] SHD -- C:\Users\anime_000\AppData\Local\Temporary Internet Files O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Local\TileDataLayer O43 - CFD: 23/11/2015 - [0] D -- C:\Users\anime_000\AppData\Local\VirtualStore O43 - CFD: 05/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Wacom O43 - CFD: 08/12/2015 - [] D -- C:\Users\anime_000\AppData\Local\Windows Live O43 - CFD: 30/10/2015 - [] RD -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 24/11/2015 - [] RD -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 24/11/2015 - [] RD -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 30/10/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 08/12/2015 - [] RD -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 30/10/2015 - [] RD -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 24/11/2015 - [] D -- C:\Users\anime_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 2s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\anime_000\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Liste des pilotes du système (65) - 10s O58 - SDL:2015/10/30 08:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2015/08/29 11:08:18 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [35064] =>.Lenovo (Beijing) Limited® O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] © O58 - SDL:2015/10/30 08:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] © O58 - SDL:2015/10/30 08:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2014/06/24 15:38:58 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevAcpiProc.sys [198808] {3300009D4320E74C7AF0250102000300009D43} © O58 - SDL:2014/06/24 15:38:58 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfDevGen.sys [78504] {3300009D4320E74C7AF0250102000300009D43} © O58 - SDL:2014/06/24 15:39:00 A . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\drivers\DptfManager.sys [493240] {3300009D4320E74C7AF0250102000300009D43} © O58 - SDL:2015/10/30 08:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2015/08/19 19:09:12 A . (.Windows (R) Win 7 DDK provider - Filter Driver for HID-KMDF Interface.) -- C:\WINDOWS\System32\drivers\hidkmdf.sys [14016] {4CD0FF117A776E398FDBF875CA016698} © O58 - SDL:2015/10/30 08:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] © O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] © O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/10/30 08:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] © O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2015/09/09 08:20:48 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3797416] =>.Intel Corporation - pGFX® O58 - SDL:2014/10/03 06:35:54 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [454416] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [50240] =>.Intel(R) Wireless Display® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [38976] =>.Intel(R) Wireless Display® O58 - SDL:2014/08/04 14:03:02 A . (...) -- C:\WINDOWS\System32\drivers\KMDFVirtualKbd.sys [22264] =>.Lenovo (Beijing) Limited® O58 - SDL:2014/08/04 14:04:10 A . (...) -- C:\WINDOWS\System32\drivers\KMDFVirtualMouse.sys [21240] =>.Lenovo (Beijing) Limited® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2013/10/10 16:44:38 A . (.Intel Corporation - MBI driver.) -- C:\WINDOWS\System32\drivers\MBI.sys [29464] {3300009D4320E74C7AF0250102000300009D43} © O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/02/13 14:05:18 A . (.McAfee, Inc. - McAfee ELAM Driver.) -- C:\WINDOWS\System32\drivers\mfeelamk.sys [80160] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2015/01/16 00:48:02 N . (.McAfee, Inc. - Event Driver.) -- C:\WINDOWS\System32\drivers\mfencbdc.sys [482600] =>.McAfee, Inc.® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2015/07/22 18:56:22 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [886528] =>.Realtek Semiconductor Corp® O58 - SDL:2015/03/11 01:33:24 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\RtkBtfilter.sys [593624] =>.Realtek Semiconductor Corp® O58 - SDL:2015/03/10 03:08:31 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4423896] =>.Realtek Semiconductor Corp® O58 - SDL:2015/06/05 02:12:54 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [310528] =>.Realtek Semiconductor Corp® O58 - SDL:2015/01/29 09:52:27 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for Vista/Win7/Win8/Win8.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [2982104] =>.Realtek Semiconductor Corp® O58 - SDL:2015/10/30 08:17:19 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 37343.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [3445248] © O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2015/08/14 03:26:00 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [43704] =>.Synaptics Incorporated® O58 - SDL:2015/08/14 03:26:00 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [44216] =>.Synaptics Incorporated® O58 - SDL:2015/08/14 03:26:00 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [44216] =>.Synaptics Incorporated® O58 - SDL:2015/10/30 08:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2015/08/14 03:26:00 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [620744] =>.Synaptics Incorporated® O58 - SDL:2014/01/15 13:21:46 A . (.Intel Corporation - Intel(R) Trusted Execution Engine Interface.) -- C:\WINDOWS\System32\drivers\TXEIx64.sys [88592] {2FF5E57A000100005FEF} © O58 - SDL:2015/10/30 08:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/08/19 19:09:12 A . (.Wacom Technology - Wacom HID Router.) -- C:\WINDOWS\System32\drivers\wachidrouter.sys [103616] {4CD0FF117A776E398FDBF875CA016698} © O58 - SDL:2015/08/19 19:09:12 A . (.Wacom Technology - Wacom Router Filter Driver.) -- C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [15040] {4CD0FF117A776E398FDBF875CA016698} © O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/10/30 08:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (32) - 30s O61 - LFC: 2015/12/08 17:30:14 A . (.Development Media 73.) -- C:\Users\anime_000\Downloads\Emotiplus_skype.exe [685320] {6A6DDD1D5DBA6906C8E35D9F72325B1E} O61 - LFC: 2015/12/09 16:34:05 A . (..) -- C:\Users\anime_000\Desktop\YandereSimDec2nd\YandereSimDec2nd.exe [11629568] O61 - LFC: 2015/12/05 09:41:58 A . (..) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\LocalState\FancyCollagesStore\236041e1-3d4a-443d-b535-3d0100124380\PersistedCollage.bin [1063] O61 - LFC: 2015/12/05 19:26:14 A . (.Schulte Software Development.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\WriteableBi1788e114#\5fde7b1b9dca12c52904fbf74deecfcd\WriteableBitmapEx.WinRT.ni.dll [224256] O61 - LFC: 2015/12/05 19:26:13 A . (.Copyright © 2014.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeys.Imaging\0f6337a471c3df9b489cb8182bf16b25\Thumbmunkeys.Imaging.ni.dll [130560] O61 - LFC: 2015/12/05 19:25:49 A . (.Copyright © 2013.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeys.Dx\6870c4c9510e27f052448c9c7f59d7a8\Thumbmunkeys.Dx.ni.dll [1122304] O61 - LFC: 2015/12/05 19:25:44 A . (.Copyright © 2013.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeyee07b3d3#\b06117b613063d208736acba334780da\Thumbmunkeys.Cloud.Portable.ni.dll [258048] O61 - LFC: 2015/12/05 19:25:33 A . (.Copyright © 2012.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeye988ab43#\e8e1ed435b8c0c90c5f137f549db7996\Thumbmunkeys.Common.Windows.ni.dll [1462272] O61 - LFC: 2015/12/05 19:25:55 A . (.Copyright © 2013.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeyd1c7ab84#\ad55cb5069eabe7d1ddc42534a90092c\Thumbmunkeys.Adverts.WinRT.ni.dll [231936] O61 - LFC: 2015/12/05 19:25:38 A . (.Copyright © 2015.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeyb4d0953f#\f8473182a562499ab845bf6d3d7aadf6\Thumbmunkeys.ParseAnalyticsListener.Portable.ni.dll [45056] O61 - LFC: 2015/12/05 19:26:13 A . (.Copyright © 2015.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkeyaff586f3#\8d2c436c310d8f0620dc53c856947a85\Thumbmunkeys.Imaging.NokiaFilters.Windows.ni.dll [171008] O61 - LFC: 2015/12/05 19:25:54 A . (.Copyright © 2014.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkey8977da66#\624d8a9d33e1936cb3707b9c4b82031f\Thumbmunkeys.InAppPurchasing.Windows.ni.dll [194560] O61 - LFC: 2015/12/05 19:25:27 A . (.Copyright © 2012.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkey71a5b92b#\38ec1d2f6b1070ce7a37c99ebec70239\Thumbmunkeys.Phototastic.ni.exe [4186112] O61 - LFC: 2015/12/05 19:25:41 A . (.Copyright © 2013.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Thumbmunkey67f0e9af#\cf81f31fe1b398ae79be73982e1beae1\Thumbmunkeys.Common.Portable.ni.dll [1716224] O61 - LFC: 2015/12/05 19:25:46 A . (.Marc Gravell.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\protobuf-net\ac73cd8702776e7342d77c7e13fe99ba\protobuf-net.ni.dll [402432] O61 - LFC: 2015/12/05 19:25:47 A . (.Copyright © 2014.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Phototastic1237824b#\34f5dbef9e2622e27665ac0ff718c8a5\Phototastic.Shared.Portable.ni.dll [19456] O61 - LFC: 2015/12/05 19:25:46 A . (.Copyright © 2013.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\PCLStorage.0cbfed36#\17b31b57eddd95d77d899d67e7d64eda\PCLStorage.Abstractions.ni.dll [68096] O61 - LFC: 2015/12/05 19:25:53 A . (.Copyright © 2013.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\PCLStorage\416de07505e604534c3fc858aa0f2308\PCLStorage.ni.dll [133632] O61 - LFC: 2015/12/05 19:25:43 A . (.Copyright © Parse 2012.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Parse.WinRT\c9dbb609bb977235b51f6caa184931cb\Parse.WinRT.ni.dll [154112] O61 - LFC: 2015/12/05 19:25:42 A . (.Copyright © Parse 2012.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Parse\04659b52d6f5cbd88547230e993b35d4\Parse.ni.dll [716288] O61 - LFC: 2015/12/05 19:25:52 A . (.Stephen Cleary.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Nito.AsyncEx\0b3a25bebcb7c8f249dca88e713c6a71\Nito.AsyncEx.ni.dll [429056] O61 - LFC: 2015/12/05 19:26:03 A . (.Fortumo.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\FortumoWindows\dc8e504dc6226123404027ed810e0815\FortumoWindows.ni.dll [1288192] O61 - LFC: 2015/12/05 19:25:45 A . (.Autofac Project - http://autofac.org.) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\Autofac\0d7bc07856acf2d2cf87dbb88c867d1c\Autofac.ni.dll [745984] O61 - LFC: 2015/12/05 19:25:56 A . (..) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\AdvertsSerializer\6c75e32d60cb16cfd675f87b274ea6c5\AdvertsSerializer.ni.dll [25600] O61 - LFC: 2015/12/05 19:25:56 A . (..) -- C:\Users\anime_000\AppData\Local\Packages\ThumbmunkeysLtd.PhototasticCollage_nfy108tqq3p12\AC\Microsoft\CLR_v4.0_32\NativeImages\AdvertsDto\093b6cc4e67d19ef18e46d87c9fbc58e\AdvertsDto.ni.dll [28672] O61 - LFC: 2015/12/12 10:29:29 A . (..) -- C:\Users\anime_000\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2015/12/12 16:23:53 A . (..) -- C:\Users\anime_000\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148] O61 - LFC: 2015/12/11 21:23:10 A . (.Development Media 73.) -- C:\Users\anime_000\AppData\Local\Microsoft\Windows\INetCache\IE\MMV4HLGE\WebInstaller1165hl_fr[1].exe [225008] {6A6DDD1D5DBA6906C8E35D9F72325B1E} O61 - LFC: 2015/12/07 19:56:33 A . (..) -- C:\Users\anime_000\AppData\Local\Microsoft\Windows\1033\StructuredQuerySchema.bin [405013] O61 - LFC: 2015/12/11 21:23:17 A . (.Development Media 73.) -- C:\Users\anime_000\AppData\Local\Emotiplus\Emotiplus.exe [571632] {6A6DDD1D5DBA6906C8E35D9F72325B1E} O61 - LFC: 2015/12/11 21:23:20 A . (.Development Media 73.) -- C:\Users\anime_000\AppData\Local\Emotiplus\Resources.dll [9734384] {6A6DDD1D5DBA6906C8E35D9F72325B1E} O61 - LFC: 2015/12/11 21:23:23 A . (.Development Media 73.) -- C:\Users\anime_000\AppData\Local\Emotiplus\Uninstaller.exe [206064] {6A6DDD1D5DBA6906C8E35D9F72325B1E} ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (1) - 8s O69 - SBI: prefs.js [anime_000 - dswl2uy4.default] user_pref("browser.newtab.url", "http://www.trovi.com/?gd=&ctid=CT3333673&octid=EB_ORIGINAL_CTID&ISID=035BE6A2-1C4F-495C-BA18-DA63[...] =>PUP.Optional.Trovigo ---\\ Enumère les services démarrés par Svchost (41) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1338368] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [957952] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [958464] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [94720] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [112640] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1012224] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134656] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [372736] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] © O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] © O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2058240] © O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [168960] © O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [203776] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] © O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] © O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [696320] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [507904] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73216] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [457728] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2280448] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1144320] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [608768] © O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [360448] © O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] © O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [360960] © O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1130496] © O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] © O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] © O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] © O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948224] © ---\\ Liste des exceptions du parefeu Windows (2) - 2s O87 - FAEL: "TCP Query User{DF711023-0D2D-4287-9D24-C96022293EF1}C:\program files\tvpaint developpement\tvpaint animation 11 pro (64bits) (demo)\tvpaint animation 11 pro (64bits) (demo).exe" [In-None-P6-TRUE] .(...) -- C:\program files\tvpaint developpement\tvpaint animation 11 pro (64bits) (demo)\tvpaint animation 11 pro (64bits) (demo).exe (.not file.) O87 - FAEL: "UDP Query User{5099CE34-7A65-4905-A829-A14A0C00D65C}C:\program files\tvpaint developpement\tvpaint animation 11 pro (64bits) (demo)\tvpaint animation 11 pro (64bits) (demo).exe" [In-None-P17-TRUE] .(...) -- C:\program files\tvpaint developpement\tvpaint animation 11 pro (64bits) (demo)\tvpaint animation 11 pro (64bits) (demo).exe (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (21) - 48s SS - Demand [09/12/2015] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Demand [09/09/2015] [ 291736] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SR - Auto [24/06/2014] [ 115656] @oem22.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAM (DptfParticipantAcpiProcessorService) . (.Intel Corporation.) - C:\Windows\System32\DptfParticipantProcessorService.exe © SR - Auto [24/06/2014] [ 148160] @oem22.inf,%WIN32_DPTF_POLICY_CRITICAL_SERVICE_DISPLAY_NAME (DptfPolicyCriticalService) . (.Intel Corporation.) - C:\WINDOWS\system32\DptfPolicyCriticalService.exe © SS - Auto [24/11/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [24/11/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation® SR - Auto [09/09/2015] [ 330144] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe © SR - Auto [01/07/2013] [ 733696] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe © SS - Demand [01/07/2013] [ 822232] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe =>.Intel® Trusted Connect Service® SR - Auto [10/04/2015] [ 2016040] Lenovo Settings Service (Lenovo Settings Service) . (.Lenovo Group Limited.) - C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe =>.LENOVO® SS - Demand [23/03/2015] [ 456136] Lenovo AVFramework Camera Privacy Controller (LENOVO.CAMMUTE) . (.Lenovo Corporation.) - C:\Program Files\Lenovo\Communications Utility\cammute.exe {6B07BE5BB572250021042BB149CD9A8E} © SS - Demand [23/03/2015] [ 453576] Lenovo AVFramework Microphone Volume Controller and Dolby I (LENOVO.TPKNRSVC) . (.Lenovo Group Limited.) - C:\Program Files\Lenovo\Communications Utility\tpknrsvc.exe {6B07BE5BB572250021042BB149CD9A8E} © SS - Demand [23/03/2015] [ 625608] Lenovo AVFramework Virtual Camera Controller Service (LENOVO.TVTVCAM) . (.Lenovo Corporation.) - C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe {6B07BE5BB572250021042BB149CD9A8E} © SR - Auto [19/06/2014] [ 258544] LenovoSetSvr (LenovoSetSvr) . (.Lenovo(beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo Settings\x86\LenovoSetSvr.exe =>.Lenovo (Beijing) Limited® SR - Demand [10/12/2015] [ 26608] lupdate (LenovoUpdate) . (.Lenovo.) - C:\WINDOWS\System32\LenovoUpdate.exe © SR - Auto [25/08/2014] [ 218952] Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe © SS - Demand [30/10/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [02/10/2015] [ 730304] Wacom Professional Service (WTabletServicePro) . (.Wacom Technology, Corp..) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe {4CD0FF117A776E398FDBF875CA016698} © ---\\ Scan Additionnel (6) - 0s C:\Program Files (x86)\SearchProtect\SearchProtect\bin\VC64Loader.dll =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\SearchProtect =>PUP.Optional.SearchProtect HKLM\SOFTWARE\Wow6432Node\SPPDCOM =>.Superfluous.PCSpeedUp C:\Program Files (x86)\SearchProtect =>PUP.Optional.SearchProtect C:\Users\anime_000\AppData\Local\SearchProtect =>PUP.Optional.SearchProtect ---\\ Récapitulatif des éléments trouvés sur votre station (3) - 0s http://www.nicolascoolman.fr/?p=1633 =>PUP.Optional.SearchProtect http://www.nicolascoolman.fr/?p=1255 =>.Superfluous.PCSpeedUp http://www.nicolascoolman.fr/?p=1042 =>PUP.Optional.Trovigo ~ End of the scan, 26362 items in 259 seconds (670)(0)