~ ZHPDiag v2016.1.3.3 Par Nicolas Coolman (2016/01/03) ~ Démarré par KOUADIA (Administrator) (2016/01/04 14:20:25) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\KOUADIA\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\KOUADIA\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Deactivate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v46.0.2490.86 MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0 MSIE: Internet Explorer v11.0.9600.17207 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ Logiciels de protection (2) - 7s Kaspersky Internet Security v15.0.0.463 Windows Defender W7 (Activate) ---\\ Logiciels d'optimisation (1) - 7s CCleaner v5.08 ---\\ Surveillance de Logiciels (1) - 7s Adobe Flash Player 18 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4114.708 MB (14% free) System Restore: Activé (Enable) System drive C: has 126 GB () free of 210 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: KOUADIA-HP ~ User Name: KOUADIA ~ Logged in as Administrator ---\\ Enumération des unités disques (5) - 0s ~ Drive C: has 126 GB free of 210 GB (System) ~ Drive D: has 1 GB free of 13 GB ~ Drive E: has 0 GB free of 0 GB ~ Drive G: has 197 GB free of 252 GB ~ Drive H: has 800 GB free of 953 GB ---\\ Etat du Centre de Sécurité Windows (10) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (26) - 1s [MD5.332FEAB1435662FC6C672E25BEB37BE3] - 04/12/2013 - (.Microsoft Corporation - Explorateur Windows.) -- C:\windows\Explorer.exe [2871808] © [MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\windows\System32\rundll32.exe [45568] © [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\windows\System32\Wininit.exe [129024] © [MD5.2EE102DF0EDD8A1EDD3D1E9B99A91BEC] - 14/08/2014 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\windows\System32\wininet.dll [2266112] © [MD5.88AB9B72B4BF3963A0DE0820B4B0B06C] - 27/06/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\windows\System32\Winlogon.exe [455168] © [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\windows\System32\sppcomapi.dll [232448] © [MD5.492D07D79E7024CA310867B526D9636D] - 04/12/2013 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\System32\dnsapi.dll [357888] © [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 04/12/2013 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\Syswow64\dnsapi.dll [270336] © [MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 06/01/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\windows\System32\fr-FR\user32.dll.mui [20480] © [MD5.FA886682CFC5D36718D3E436AACF10B9] - 14/08/2014 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\windows\System32\drivers\AFD.sys [497152] © [MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\Cdfs.sys [92160] © [MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\Cdrom.sys [147456] © [MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\DfsC.sys [102400] © [MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\HDAudBus.sys [122368] © [MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\windows\System32\drivers\i8042prt.sys [105472] © [MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\IpNat.sys [116224] © [MD5.A5D9106A73DC88564C825D317CAC68AC] - 04/12/2013 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\windows\System32\drivers\MRxSmb.sys [158208] © [MD5.09594D1089C523423B32A4229263F068] - 21/11/2010 - (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netBT.sys [261632] © [MD5.1A29A59A4C5BA6F8C85062A613B7E2B2] - 23/05/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\windows\System32\drivers\ntfs.sys [1684928] =>.Microsoft Windows® [MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\windows\System32\drivers\Parport.sys [97280] © [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\Rasl2tp.sys [129536] © [MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\windows\System32\drivers\rdpdr.sys [165888] © [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\windows\System32\drivers\smb.sys [93184] © [MD5.DDAD5A7AB24D8B65F8D724F5C20FD806] - 21/11/2010 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [119296] © [MD5.DF8126BD41180351A093A3AD2FC8903B] - 06/01/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\windows\System32\drivers\volsnap.sys [296320] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (18) - 1s O23 - Service: Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe =>.Kaspersky Lab® O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Absolute Software Agent Service (CtAgentService) . (.Copyright © 2013 - CtService.) - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe O23 - Service: CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink - CyberLink Media Server Monitor Service.) - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.® O23 - Service: CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink - CyberLink Media Server Service.) - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.® O23 - Service: @c:\Program Files\Hewlett-Packard\HP ProtectTools Security (DpHost) . (.DigitalPersona, Inc. - DigitalPersona Local Host.) - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe =>.DigitalPersona, Inc.® O23 - Service: PDI Display Tune Service (DTuneSrvc) . (.Portrait Displays, Inc. - DTuneSrvc.) - C:\Program Files (x86)\Common Files\Portrait Displays\Libs\DTuneSrvc.exe =>.Portrait Displays, Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe © O23 - Service: HP Device Access Manager Usage Service (HpDamServiceHost) . (.Hewlett-Packard Development Company - HP.ProtectTools.DeviceAccessManager.Service.) - c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe =>.Hewlett-Packard Company® O23 - Service: HP File Sanitizer (HPFSService) . (.Hewlett-Packard - HPFSService Application.) - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe =>.Hewlett-Packard Company® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: Nero BackItUp Scheduler 3 (Nero BackItUp Scheduler 3) . (.Nero AG - Nero BackItUp.) - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe =>.Nero AG® O23 - Service: PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) - C:\Windows\SysWOW64\IoctlSvc.exe © O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink® O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Tâches planifiées en automatique (8) - 3s [MD5.3D01BD151A423F6B7D89970E42E31E46] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6453528] =>.Piriform Ltd® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\windows\Tasks\GoogleUpdateTaskMachineCore.job [1066] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\windows\Tasks\GoogleUpdateTaskMachineUA.job [1070] © O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\windows\System32\Tasks\CCleanerSkipUAC [2798] © O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore [3814] © O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA [4066] © ---\\ Processus lancés (8) - 2s [MD5.D8B22011684EBD5CB66241FF67F8393F] - (.Copyright © 2013 - CtService.) -- C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [7168] [PID.1928] [MD5.875E4E0661F3A5994DF9E5E3A0A4F96B] - (.Prolific Technology Inc. - PLFlash DeviceIoControl Service.) -- C:\Windows\SysWOW64\IoctlSvc.exe [81920] [PID.2436] © [MD5.D16FCF262FB0A24626A80DF9DBDFFBA4] - (.Copyright (C) 2012 - KBDOSD.) -- C:\Program Files\Hewlett-Packard\HP Wireless Keyboard and Mouse Applet\KBDOSD.exe [802816] [PID.3244] [MD5.6827308ABB0BB8247D02461B7489CA1F] - (...) -- C:\Program Files\Supercopier\Supercopier.exe [2787328] [PID.3280] [MD5.B1AD855A9EE2BED8F96E5C3285EBA4AB] - (.DriverPack Solution - DRP Su Updater.) -- C:\Users\KOUADIA\AppData\Roaming\DRPSu\DrvUpdater.exe [192856] [PID.3332] {00E5C4EAB464541F8F7B626D48957E6605} [MD5.0A490DFE46754CB9799E368C778072FE] - (...) -- C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\AppService.exe [79464] [PID.3828] [MD5.5F8D5933392AA2EA6ECD5118428FFEB2] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [93184] [PID.6296] © [MD5.1D7C2E30AB7E9322F88A6C2CB5DAE923] - (.Copyright (C) 2016 Nicolas Coolman - ZHPDiag.) -- G:\Programs\ZHPDiag3.exe [2057216] [PID.2116] © ---\\ Google Chrome, Démarrage,Recherche,Extensions (10) - 2s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.ci G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] __MSG_ExtensionName__ G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ncffjdbbodifgldkcbhmiiljfcnbgjab] __MSG_extension_name__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (8) - 1s P2 - EXT: (...) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\QuickTimePlugin.class P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} © P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll © P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll P2 - FPN: [HKLM] [@kaspersky.com/content_blocker] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com © P2 - FPN: [HKLM] [@kaspersky.com/online_banking] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com © P2 - FPN: [HKLM] [@kaspersky.com/virtual_keyboard] - (.kaspersky.com.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com © ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://g.uk.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.uk.msn.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 10.100.100.100:3128 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) © F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) © F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) © ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (25) ---\\ Browser Helper Object de navigateur (BHO) (9) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: ContentBlockerBrowserHelperObject [64Bits] - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} . (.Kaspersky Lab ZAO - Content Blocker Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll =>.Kaspersky Lab® O2 - BHO: VirtualKeyboardBrowserHelperObject [64Bits] - {73455575-E40C-433C-9784-C78DC7761455} . (.Kaspersky Lab ZAO - Virtual Keyboard Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll =>.Kaspersky Lab® O2 - BHO: Safe Money Plugin [64Bits] - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} . (.Kaspersky Lab ZAO - Safe Money Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll =>.Kaspersky Lab® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: link filter bho [64Bits] - {E33CF602-D945-461A-83F0-819F76A199F8} . (.Kaspersky Lab ZAO - URL Advisor Plugin.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll =>.Kaspersky Lab® O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll =>.Hewlett-Packard Company® ---\\ Applications lancées au démarrage du système (34) - 3s O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe =>.Intel Corporation - Software and Firmware Products® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation - Software and Firmware Products® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation - Software and Firmware Products® O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [HPKBDOSD] . (.Copyright (C) 2012 - KBDOSD.) -- C:\Program Files\Hewlett-Packard\HP Wireless Keyboard and Mouse Applet\KBDOSD.exe O4 - HKCU\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKCU\..\Run: [Supercopier.exe] . (...) -- C:\Program Files\Supercopier\Supercopier.exe O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe =>.Nero AG® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKCU\..\Run: [Viber] . (. - Viber.) -- C:\Users\KOUADIA\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l® O4 - HKCU\..\Run: [DrvUpdater] . (.DriverPack Solution - DRP Su Updater.) -- C:\Users\KOUADIA\AppData\Roaming\DRPSu\DrvUpdater.exe {00E5C4EAB464541F8F7B626D48957E6605} O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel Corporation - Software and Firmware Products® O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G8] . (.CyberLink - CyberLink MediaLibrary Service.) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe =>.CyberLink Corp.® O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe =>.CyberLink Corp.® O4 - HKLM\..\Wow6432Node\Run: [YouCam Mirage] . (.CyberLink - YouCam Mirage.) -- c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe =>.CyberLink® O4 - HKLM\..\Wow6432Node\Run: [YouCam Tray] . (.CyberLink Corp. - CyberLink YouCam Tray.) -- c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe =>.CyberLink Corp.® O4 - HKLM\..\Wow6432Node\Run: [HP File Sanitizer] . (.Hewlett-Packard - CORESHREDDER.) -- C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\Coreshredder.exe =>.Hewlett-Packard Company® O4 - HKLM\..\Wow6432Node\Run: [DT_HPO] . (.Hewlett-Packard - DTStartup.) -- C:\Program Files (x86)\Hewlett-Packard\HP My Display\DTuneStartup.exe =>.Portrait Displays, Inc.® O4 - HKLM\..\Wow6432Node\Run: [NBKeyScan] . (.Nero AG - Nero BackItUp.) -- C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBKeyScan.exe =>.Nero AG® O4 - HKLM\..\Wow6432Node\Run: [FonePaw iPhone Data RecoveryAppService] . (...) -- C:\Program Files (x86)\FonePaw\FonePaw iPhone Data Recovery\AppService.exe O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe © O4 - HKUS\S-1-5-19\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-20\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files (x86)\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe © O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [Sidebar] . (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe © O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [Supercopier.exe] . (...) -- C:\Program Files\Supercopier\Supercopier.exe O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] . (.Nero AG - Nero Home.) -- C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexStoreSvr.exe =>.Nero AG® O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [Viber] . (. - Viber.) -- C:\Users\KOUADIA\AppData\Local\Viber\Viber.exe =>.Viber Media S.a.r.l® O4 - HKUS\S-1-5-21-1855555452-3621938776-1156055656-1001\..\Run: [DrvUpdater] . (.DriverPack Solution - DRP Su Updater.) -- C:\Users\KOUADIA\AppData\Roaming\DRPSu\DrvUpdater.exe {00E5C4EAB464541F8F7B626D48957E6605} ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = sndi-ci.com O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.100.100.99 10.100.100.111 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B62DD870-18F3-46B8-A802-B1C40FEADB8B}: DhcpNameServer = 10.100.100.99 10.100.100.111 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{B62DD870-18F3-46B8-A802-B1C40FEADB8B}: DhcpDomain = sndi-ci.com ---\\ Protocole additionnel (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll © O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll © O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll © O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll © O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll © O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (82) - 7s O42 - Logiciel: 64 Bit HP CIO Components Installer - (.Hewlett-Packard.) [HKLM][64Bits] -- {284F4C1C-380D-4F10-88C8-1F9E386EFE98} © O42 - Logiciel: 7-Data Android Recovery version 1.1 - (.SharpNight Co,Ltd.) [HKLM][64Bits] -- {2D32F845-CC8B-4521-8B99-E5D26665C0B6}_is1 O42 - Logiciel: Adobe Flash Player 18 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 18 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {EB879750-CCBD-4013-BFD5-0294D4DA5BD0} © O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} © O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} © O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 © O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDirector 11 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{551F492A-01B0-4DC4-866F-875EC4EDC0A8} =>.CyberLink® O42 - Logiciel: CyberLink PowerDirector 11 - (.Nom de votre société.) [HKLM][64Bits] -- {551F492A-01B0-4DC4-866F-875EC4EDC0A8} =>.CyberLink® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink Corp.® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink Corp.® O42 - Logiciel: DirectX for Managed Code Update (Summer 2004) - (.Microsoft.) [HKLM][64Bits] -- {E9E34215-82EF-4909-BE2F-F581F0DC9062} © O42 - Logiciel: DriverPack Solution Updater - (.DriverPack Solution.) [HKCU][64Bits] -- DRPSu Updater {00E5C4EAB464541F8F7B626D48957E6605} O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7} © O42 - Logiciel: FonePaw Récupération De Données iPhone 2.0.0 - (.FonePaw.) [HKLM][64Bits] -- {77B09C3A-839E-4ea7-81BA-E5864F6BF388}_is1 © O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM][64Bits] -- {5F3E0897-97AA-4FC2-A0A9-130A39D0FDFB} © O42 - Logiciel: Free M4a to MP3 Converter 9.0 - (.ManiacTools.com.) [HKLM][64Bits] -- Free M4a to MP3 Converter_is1 {00BA3FB61F18CE1B3D83829F76BADE3F7A} © O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} © O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} © O42 - Logiciel: HP Client Security Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {173D1DA9-D107-4C85-B1DA-773DB53EEA6F} © O42 - Logiciel: HP Client Security Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- HPProtectTools =>.DigitalPersona, Inc.® O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} © O42 - Logiciel: HP Device Access Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {DBE16A07-DDFF-4453-807A-212EF93916E0} © O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {9EDD5BBA-06C8-4C11-939B-DB2BA9065FA2} © O42 - Logiciel: HP Drive Encryption - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FE885DCE-4917-4E47-9881-883CBB3B8F50} © O42 - Logiciel: HP Drive Encryption - (.Hewlett-Packard Company.) [HKLM][64Bits] -- HPDriveEncryption © O42 - Logiciel: HP File Sanitizer - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6349342F-9CEF-4A70-995A-2CF3704C2603} © O42 - Logiciel: HP My Display - (.Portrait Displays, Inc..) [HKLM][64Bits] -- {448286F7-9BCC-4254-A6DC-CB40DC852F55} © O42 - Logiciel: HP PageLift - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {59202086-BEA1-411A-8AA4-A5DCD28FF537} © O42 - Logiciel: HP Setup - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {438363A8-F486-4C37-834C-4955773CB3D3} © O42 - Logiciel: HP SoftPaq Download Manager - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {68E1C9E9-1606-49AF-9978-573148CED9E4} © O42 - Logiciel: HP Software Setup - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {F6D61EC9-347B-4019-9F8E-E24169F7C330} © O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {904822F1-6C7D-4B91-B936-6A1C0810544C} © O42 - Logiciel: HP Support Information - (.Hewlett-Packard.) [HKLM][64Bits] -- {B2B7B1C8-7C8B-476C-BE2C-049731C55992} © O42 - Logiciel: HP Theft Recovery - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {49FE8EBA-CC77-484E-A4DB-DF4EFC0E5147} © O42 - Logiciel: HP Theft Recovery - (.Hewlett-Packard Company.) [HKLM][64Bits] -- InstallShield_{49FE8EBA-CC77-484E-A4DB-DF4EFC0E5147} =>.Absolute Software Corp.® O42 - Logiciel: HP Wireless Keyboard and Mouse Applet - (.Hewlett-Packard.) [HKLM][64Bits] -- {C2A98780-3B82-4056-A1FB-7377B3C80AF7} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {400C8731-632F-496B-ACDC-2F1FD98689FE} © O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {71E896B1-C4E0-4FF5-A09B-974CF9298962} © O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {C9A90201-B2DE-44D0-A618-EF8C9060D318} © O42 - Logiciel: Intel(R) USB 3.0 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {1B444AF9-1DBE-4884-8F35-969BEFCF69A8} © O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {653C1B5A-3287-47B1-8613-0745D4E771C4} © O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4} © O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} © O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} © O42 - Logiciel: Mozilla Firefox 42.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 42.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService © O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} © O42 - Logiciel: Nero 8 - (.Nero AG.) [HKLM][64Bits] -- {3C5F1B30-B10B-4579-86DD-D00F662E1036} © O42 - Logiciel: neroxml - (.Nero AG.) [HKLM][64Bits] -- {56C049BE-79E9-4502-BEA7-9754A3E60F9B} © O42 - Logiciel: Newblue Art Effects for PowerDirector - (.NewBlue.) [HKLM][64Bits] -- NewBlue Art Effects for PowerDirector © O42 - Logiciel: opensource - (.Your Company Name.) [HKLM][64Bits] -- {3677D4D8-E5E0-49FC-B86E-06541CF00BBE} © O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {0E64B098-8018-4256-BA23-C316A43AD9B0} © O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} © O42 - Logiciel: Skype™ 7.8 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} © O42 - Logiciel: Supercopier - (...) [HKLM][64Bits] -- Supercopier O42 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM][64Bits] -- Usbfix © O42 - Logiciel: Viber - (.Viber Media Inc.) [HKCU][64Bits] -- Viber =>.Viber Media S.a.r.l® O42 - Logiciel: VLC media player 2.0.8 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player © O42 - Logiciel: WampServer 2.5 - (.Hervé Leclerc (HeL).) [HKLM][64Bits] -- WampServer 2_is1 © O42 - Logiciel: WinRAR 4.01 (32 bits) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver © ---\\ HKCU & HKLM Software Keys (91) - 7s HKLM\SOFTWARE\Wow6432Node\Absolute Software HKLM\SOFTWARE\Wow6432Node\Ahead HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Audible HKLM\SOFTWARE\Wow6432Node\Canneverbe Limited HKLM\SOFTWARE\Wow6432Node\CDDB HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\DigitalPersona HKLM\SOFTWARE\Wow6432Node\Foxit Software HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard Company HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\KasperskyLab HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\MOVAVI HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\NeroDigital HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Portrait Displays HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\Sony Creative Software HKLM\SOFTWARE\Wow6432Node\SOSVirus HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7AndroidRecovery HKCU\SOFTWARE\Ahead HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Canneverbe Limited HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\DigitalPersona HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\DRPSu Updater HKCU\SOFTWARE\FonePaw HKCU\SOFTWARE\Foxit Software HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\ICSW1.14 =>Adware.InstallCore HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\Intel HKCU\SOFTWARE\KasperskyLab HKCU\SOFTWARE\KasperskyLabSetup HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\ManiacTools HKCU\SOFTWARE\MiniTool Solution Ltd. HKCU\SOFTWARE\MOVAVI HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MultimediaTools HKCU\SOFTWARE\Nero HKCU\SOFTWARE\NeroDigital HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewBlue HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Piriform HKCU\SOFTWARE\Portrait Displays HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SoftIntegrator HKCU\SOFTWARE\Software HKCU\SOFTWARE\Sony Creative Software HKCU\SOFTWARE\Supercopier HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\UsbFix HKCU\SOFTWARE\Viber HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\yahooinstall HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software ---\\ Contenu des dossiers Programmes (182) - 22s O43 - CFD: 08/09/2015 - [] D -- C:\Program Files (x86)\7-Data Android Recovery O43 - CFD: 16/09/2015 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.® O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 14/09/2015 - [] D -- C:\Program Files (x86)\CDBurnerXP =>.Canneverbe Limited® O43 - CFD: 22/09/2015 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink® O43 - CFD: 08/09/2015 - [] HD -- C:\Program Files (x86)\Dr.Fone_Temp O43 - CFD: 08/09/2015 - [] D -- C:\Program Files (x86)\FonePaw O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Foxit PhantomPDF =>.Foxit Corporation® O43 - CFD: 02/09/2015 - [] D -- C:\Program Files (x86)\Free M4a to MP3 Converter {00BA3FB61F18CE1B3D83829F76BADE3F7A} O43 - CFD: 01/12/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company® O43 - CFD: 16/09/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - Software and Firmware Products® O43 - CFD: 11/08/2015 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc.® O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab® O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Nero =>.Nero AG® O43 - CFD: 12/06/2015 - [] RD -- C:\Program Files (x86)\Online Services =>.Skype Technologies SA® O43 - CFD: 16/09/2015 - [] D -- C:\Program Files (x86)\QuickTime O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 22/09/2015 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 06/01/2015 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 12/06/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 12/06/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 12/06/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 12/06/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 12/06/2015 - [] D -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\WinRAR O43 - CFD: 16/09/2015 - [0] D -- C:\Program Files (x86)\Wondershare O43 - CFD: 08/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Data Android Recovery O43 - CFD: 03/12/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 03/12/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner O43 - CFD: 12/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat O43 - CFD: 16/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 11 O43 - CFD: 08/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FonePaw O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free M4a to MP3 Converter O43 - CFD: 21/11/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 01/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP O43 - CFD: 12/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 11/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 12/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 8 O43 - CFD: 12/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 12/06/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection O43 - CFD: 22/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 21/11/2010 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 24/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 16/09/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\Apple O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 14/09/2015 - [] D -- C:\ProgramData\Canneverbe Limited O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\Downloaded Installations O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites O43 - CFD: 08/09/2015 - [] D -- C:\ProgramData\FonePaw O43 - CFD: 12/06/2015 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 14/08/2015 - [] D -- C:\ProgramData\HP O43 - CFD: 06/01/2015 - [0] D -- C:\ProgramData\HPQLOG O43 - CFD: 10/08/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\install_clap O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\Intel O43 - CFD: 12/06/2015 - [] D -- C:\ProgramData\IsolatedStorage O43 - CFD: 04/01/2016 - [] D -- C:\ProgramData\Kaspersky Lab O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files O43 - CFD: 14/09/2015 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 15/09/2015 - [] D -- C:\ProgramData\Movavi O43 - CFD: 15/09/2015 - [] D -- C:\ProgramData\Movavi Video Suite 14 O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\Nero O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 10/08/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 22/09/2015 - [] D -- C:\ProgramData\Skype O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 16/09/2015 - [] AD -- C:\ProgramData\Temp O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 08/09/2015 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 06/01/2015 - [] D -- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44} O43 - CFD: 16/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 10/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Portrait Displays O43 - CFD: 06/01/2015 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 22/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines O43 - CFD: 12/06/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 08/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Adobe O43 - CFD: 02/11/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\AdvertismentImages O43 - CFD: 08/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Apple Computer O43 - CFD: 14/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Canneverbe Limited O43 - CFD: 16/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\CyberLink O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\DigitalPersona O43 - CFD: 04/01/2016 - [] D -- C:\Users\KOUADIA\AppData\Roaming\DMCache O43 - CFD: 01/12/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\DRPSu O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Foxit Software O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Hewlett-Packard O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\hpqlog O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Identities O43 - CFD: 30/10/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\IDM O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Macromedia O43 - CFD: 21/11/2010 - [0] D -- C:\Users\KOUADIA\AppData\Roaming\Media Center Programs O43 - CFD: 04/01/2016 - [] SD -- C:\Users\KOUADIA\AppData\Roaming\Microsoft O43 - CFD: 15/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Movavi O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Mozilla O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Nero O43 - CFD: 15/09/2015 - [0] D -- C:\Users\KOUADIA\AppData\Roaming\NeroDigital™ O43 - CFD: 27/11/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Skype O43 - CFD: 15/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Sony O43 - CFD: 04/01/2016 - [] D -- C:\Users\KOUADIA\AppData\Roaming\ViberPC O43 - CFD: 10/12/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\vlc O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\WinRAR O43 - CFD: 04/01/2016 - [] D -- C:\Users\KOUADIA\AppData\Roaming\ZHP O43 - CFD: 13/08/2015 - [0] D -- C:\Users\KOUADIA\AppData\Local\Adobe O43 - CFD: 15/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Ahead O43 - CFD: 16/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Apple O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\KOUADIA\AppData\Local\Application Data O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\CyberLink O43 - CFD: 15/09/2015 - [0] D -- C:\Users\KOUADIA\AppData\Local\Deshaker O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\DigitalPersona O43 - CFD: 03/12/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\ElevatedDiagnostics O43 - CFD: 10/08/2015 - [] SHD -- C:\Users\KOUADIA\AppData\Local\EmieSiteList O43 - CFD: 10/08/2015 - [] SHD -- C:\Users\KOUADIA\AppData\Local\EmieUserList O43 - CFD: 08/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\FonePaw O43 - CFD: 01/12/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Google O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Hewlett-Packard O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Hewlett-Packard_Company O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\KOUADIA\AppData\Local\Historique O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\IsolatedStorage O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Macromedia O43 - CFD: 03/12/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Microsoft O43 - CFD: 10/08/2015 - [0] D -- C:\Users\KOUADIA\AppData\Local\Microsoft Help O43 - CFD: 15/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Movavi O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Mozilla O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Portrait_Displays O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Power2Go8 O43 - CFD: 02/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Programs O43 - CFD: 12/06/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\RemEngine O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Skype O43 - CFD: 16/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Sony O43 - CFD: 04/01/2016 - [] D -- C:\Users\KOUADIA\AppData\Local\Temp O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\KOUADIA\AppData\Local\Temporary Internet Files O43 - CFD: 13/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Viber O43 - CFD: 12/06/2015 - [0] D -- C:\Users\KOUADIA\AppData\Local\VirtualStore O43 - CFD: 15/09/2015 - [0] D -- C:\Users\KOUADIA\AppData\Local\WMTools Downloaded Files O43 - CFD: 08/09/2015 - [] D -- C:\Users\KOUADIA\AppData\Local\Wondershare O43 - CFD: 14/07/2009 - [] RD -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 12/06/2015 - [] RD -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 11/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 14/07/2009 - [] RD -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 12/06/2015 - [] RD -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier O43 - CFD: 10/08/2015 - [] D -- C:\Users\KOUADIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 3s O45 - LFCP:[MD5.0C680FF013E158810459203F2DAB5707] 04/01/2016 A -- C:\windows\Prefetch\SPYHUNTER-INSTALLER.EXE-1596F1A2.pf =>.Superfluous.SpyHunter ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 0s O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll © O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll © ---\\ Liste des pilotes du système (72) - 9s O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows® O58 - SDL:2013/12/04 01:18:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2013/12/04 01:18:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2009/06/10 20:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\windows\System32\drivers\b57nd60a.sys [270848] © O58 - SDL:2009/06/10 20:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\windows\System32\drivers\BrFiltLo.sys [18432] © O58 - SDL:2009/06/10 20:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\windows\System32\drivers\BrFiltUp.sys [8704] © O58 - SDL:2009/07/14 01:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\windows\System32\drivers\BrSerId.sys [286720] © O58 - SDL:2009/06/10 20:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\windows\System32\drivers\BrSerWdm.sys [47104] © O58 - SDL:2009/06/10 20:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\windows\System32\drivers\BrUsbMdm.sys [14976] © O58 - SDL:2009/06/10 20:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\windows\System32\drivers\BrUsbSer.sys [14720] © O58 - SDL:2009/06/10 20:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [468480] © O58 - SDL:2011/12/27 05:37:42 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\windows\System32\drivers\CLVirtualDrive.sys [90608] =>.CyberLink® O58 - SDL:2009/07/14 01:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows® O58 - SDL:2013/10/07 19:26:54 A . (.Hewlett-Packard Company - HP ProtectTools Device Access Manager Drive.) -- C:\windows\System32\drivers\DAMDrv64.sys [65752] =>.Hewlett-Packard Company® O58 - SDL:2009/07/14 01:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2009/06/10 20:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3286016] © O58 - SDL:2009/06/10 20:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\windows\System32\drivers\hcw85cir.sys [31232] © O58 - SDL:2014/08/13 18:54:16 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\HECIx64.sys [64512] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2010/11/21 03:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2014/06/07 02:20:34 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\windows\System32\drivers\iaStorA.sys [670056] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2014/06/07 02:20:32 A . (.Intel Corporation - Intel(R) Rapid Storage Technology Filter dr.) -- C:\windows\System32\drivers\iaStorF.sys [28008] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/12/04 01:18:12 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows® O58 - SDL:2014/10/01 04:19:10 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\windows\System32\drivers\idmwfp.sys [180136] =>.Tonec Inc.® O58 - SDL:2013/06/03 19:13:44 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\windows\System32\drivers\igdkmd64.sys [4438208] © O58 - SDL:2009/07/14 01:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2013/06/03 19:19:43 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\windows\System32\drivers\IntcDAud.sys [452088] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/04/26 18:24:58 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\windows\System32\drivers\iusb3hcs.sys [20464] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/04/26 18:24:56 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\windows\System32\drivers\iusb3hub.sys [368112] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/04/26 18:24:56 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\windows\System32\drivers\iusb3xhc.sys [786416] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2014/02/20 12:59:04 A . (.Kaspersky Lab ZAO - Kaspersky Unified Driver.) -- C:\windows\System32\drivers\kl1.sys [457824] =>.Kaspersky Lab® O58 - SDL:2015/08/10 17:42:12 A . (.Kaspersky Lab ZAO - Filter Core [fre_wlh_x64].) -- C:\windows\System32\drivers\klflt.sys [141320] =>.Kaspersky Lab® O58 - SDL:2014/04/10 17:25:34 A . (.Kaspersky Lab ZAO - KLHK [fre_wlh_x64].) -- C:\windows\System32\drivers\klhk.sys [243808] =>.Kaspersky Lab® O58 - SDL:2015/08/10 17:42:13 A . (.Kaspersky Lab ZAO - Klif Mini-Filter [fre_wlh_x64].) -- C:\windows\System32\drivers\klif.sys [793800] =>.Kaspersky Lab® O58 - SDL:2014/02/25 13:09:02 A . (.Kaspersky Lab ZAO - Kaspersky Lab Intermediate Network Driver.) -- C:\windows\System32\drivers\klim6.sys [30304] =>.Kaspersky Lab® O58 - SDL:2014/03/28 17:51:04 A . (.Kaspersky Lab ZAO - KLKBDFLT Keyboard Device Filter [fre_wlh_x6.) -- C:\windows\System32\drivers\klkbdflt.sys [28768] =>.Kaspersky Lab® O58 - SDL:2013/08/08 17:11:00 A . (.Kaspersky Lab ZAO - KLMOUFLT Mouse Device Filter [fre_wlh_x64].) -- C:\windows\System32\drivers\klmouflt.sys [29280] =>.Kaspersky Lab® O58 - SDL:2013/04/12 15:34:48 A . (.Kaspersky Lab ZAO - KLPD [fre_wnet_x64].) -- C:\windows\System32\drivers\klpd.sys [15456] =>.Kaspersky Lab® O58 - SDL:2014/03/25 16:26:04 A . (.Kaspersky Lab ZAO - Network filtering component [fre_wnet_amd64.) -- C:\windows\System32\drivers\kltdi.sys [55904] =>.Kaspersky Lab® O58 - SDL:2014/03/26 17:05:28 A . (.Kaspersky Lab ZAO - KNEPS Power [fre_wnet_amd64].) -- C:\windows\System32\drivers\kneps.sys [179296] =>.Kaspersky Lab® O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2013/12/04 01:18:12 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows® O58 - SDL:2013/12/04 01:18:12 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows® O58 - SDL:2014/02/03 23:17:38 A . (.WinMagic Inc. - Drivers.) -- C:\windows\System32\drivers\PinFile.sys [49856] =>.WinMagic Inc.® O58 - SDL:2009/07/14 01:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2013/11/26 07:49:44 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\windows\System32\drivers\Rt64win7.sys [888536] =>.Realtek Semiconductor Corp® O58 - SDL:2014/01/22 03:25:26 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [3849304] =>.Realtek Semiconductor Corp® O58 - SDL:2014/01/04 00:08:00 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\windows\System32\drivers\RtsP2Stor.sys [291544] =>.Realtek Semiconductor Corp® O58 - SDL:2014/02/03 23:18:00 A . (.WinMagic Inc. - Drivers.) -- C:\windows\System32\drivers\SDDisk2K.sys [228544] =>.WinMagic Inc.® O58 - SDL:2014/02/03 23:18:30 A . (.WinMagic Inc. - Drivers.) -- C:\windows\System32\drivers\SDDToki.sys [131264] =>.WinMagic Inc.® O58 - SDL:2009/06/10 20:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] © O58 - SDL:2009/07/14 01:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2014/08/13 18:54:16 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\windows\System32\drivers\TeeDriverx64.sys [125952] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2009/07/14 01:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2014/02/03 23:18:24 A . (.WinMagic Inc. - Drivers.) -- C:\windows\System32\drivers\WMSDFVE.sys [332992] =>.WinMagic Inc.® O58 - SDL:2013/09/30 16:26:50 N . (...) -- C:\windows\System32\pwdrvio.sys [19152] =>.MiniTool Solution Ltd® O58 - SDL:2013/09/30 16:26:48 N . (...) -- C:\windows\System32\pwdspio.sys [12504] =>.MiniTool Solution Ltd® ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe © O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe © O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe © O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe © O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe © O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe © ---\\ Recherche d'infection sur les navigateurs (2) - 8s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\windows\System32\aelupsvc.dll [72192] © O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\windows\System32\certprop.dll [80384] © O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\windows\system32\srvsvc.dll [236032] © O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\windows\System32\gpsvc.dll [777728] © O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\windows\System32\ikeext.dll [859648] © O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\windows\System32\Audiosrv.dll [679424] © O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\windows\System32\rasauto.dll [99328] © O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\windows\System32\rasmans.dll [344064] © O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] © O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] © O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\windows\System32\ipnathlp.dll [359424] © O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] © O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\windows\System32\termsrv.dll [680960] © O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\windows\system32\wuaueng.dll [2420736] © O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\windows\System32\qmgr.dll [849920] © O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] © O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\windows\System32\iphlpsvc.dll [569344] © O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\windows\system32\seclogon.dll [30720] © O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\windows\System32\appinfo.dll [70144] © O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\windows\system32\iscsiexe.dll [156672] © O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\windows\system32\mmcss.dll [67584] © O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\windows\system32\wbem\WMIsvc.dll [242688] © O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] © O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\windows\System32\browser.dll [136704] © O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\windows\System32\eapsvc.dll [111104] © O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\windows\system32\schedsvc.dll [1110016] © O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\windows\system32\kmsvc.dll [90624] © O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\windows\System32\wercplsupport.dll [84480] © O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\windows\system32\profsvc.dll [209920] © O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\windows\system32\themeservice.dll [44544] © O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\windows\System32\bdesvc.dll [100864] © O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] © ---\\ Liste des exceptions du parefeu Windows (3) - 2s O87 - FAEL: "{CE0135CA-163E-47C9-B17E-BE0849407640}" [In-None-P6-TRUE] .(...) -- c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.) O87 - FAEL: "{7CC00288-1CD8-4193-BE58-1D7ED6A18E88}" [In-None-P6-TRUE] .(...) -- c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.) O87 - FAEL: "{0C934318-B0F3-4236-AE48-79785E1E3F39}" [In-None-P17-TRUE] .(...) -- C:\Program Files\CyberLink\PowerDirector11\PDR10.EXE (.not file.) ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (28) - 11s SR - Auto [20/04/2014] [ 233552] Kaspersky Anti-Virus Service 15.0.0 (AVP15.0.0) . (.Kaspersky Lab ZAO.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe =>.Kaspersky Lab® SR - Auto [31/08/2011] [ 462184] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Demand [11/06/2013] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - Software and Firmware Products® SR - Auto [15/08/2014] [ 7168] Absolute Software Agent Service (CtAgentService) . (.Copyright © 2013.) - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe SR - Auto [12/08/2013] [ 77576] CyberLink PowerDVD 12 Media Server Monitor Service (CyberLink PowerDVD 12 Media Server Monitor Service) . (.CyberLink.) - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe =>.CyberLink Corp.® SR - Auto [12/08/2013] [ 298760] CyberLink PowerDVD 12 Media Server Service (CyberLink PowerDVD 12 Media Server Service) . (.CyberLink.) - c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.® SR - Auto [04/04/2014] [ 500048] @c:\Program Files\Hewlett-Packard\HP ProtectTools Security (DpHost) . (.DigitalPersona, Inc..) - c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe =>.DigitalPersona, Inc.® SR - Auto [13/05/2014] [ 119688] PDI Display Tune Service (DTuneSrvc) . (.Portrait Displays, Inc..) - C:\Program Files (x86)\Common Files\Portrait Displays\Libs\DTuneSrvc.exe =>.Portrait Displays, Inc.® SS - Demand [20/11/2013] [ 567608] HP Device Locking / Auditing (FLCDLOCK) . (.Hewlett-Packard Company.) - c:\Windows\SysWOW64\flcdlock.exe =>.Hewlett-Packard Company® SR - Auto [30/11/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [30/11/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [22/08/2014] [ 93184] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe © SR - Auto [15/11/2013] [ 18232] HP Device Access Manager Usage Service (HpDamServiceHost) . (.Hewlett-Packard Development Company.) - c:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe =>.Hewlett-Packard Company® SR - Auto [15/05/2014] [ 1759960] HP File Sanitizer (HPFSService) . (.Hewlett-Packard.) - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe =>.Hewlett-Packard Company® SS - Demand [13/11/2013] [ 1233592] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SS - Demand [13/05/2014] [ 887256] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service® SR - Auto [13/08/2014] [ 154584] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® SR - Auto [13/08/2014] [ 405976] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Intel® Management Engine Firmware® SS - Demand [10/11/2015] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [18/02/2008] [ 877864] Nero BackItUp Scheduler 3 (Nero BackItUp Scheduler 3) . (.Nero AG.) - C:\Program Files (x86)\Nero\Nero8\Nero BackItUp\NBService.exe =>.Nero AG® SR - Demand [28/02/2008] [ 529704] NMIndexingService (NMIndexingService) . (.Nero AG.) - C:\Program Files (x86)\Common Files\Nero\Lib\NMIndexingService.exe =>.Nero AG® SR - Auto [19/12/2006] [ 81920] PLFlash DeviceIoControl Service (PLFlash DeviceIoControl Service) . (.Prolific Technology Inc..) - C:\Windows\SysWOW64\IoctlSvc.exe © SR - Auto [11/09/2012] [ 390672] Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink® SR - Auto [08/01/2014] [ 290520] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp® SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [01/05/2014] [ 22016] wampapache (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe © SS - Demand [01/05/2014] [10959360] wampmysqld (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe ---\\ Scan Additionnel (4) - 0s HKCU\SOFTWARE\ICSW1.14 =>Adware.InstallCore HKCU\SOFTWARE\TeleCharger =>.Superfluous.Downloader C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\windows\Prefetch\SPYHUNTER-INSTALLER.EXE-1596F1A2.pf =>.Superfluous.SpyHunter ---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s http://www.nicolascoolman.fr/?p=279 =>Adware.InstallCore http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.Downloader http://www.nicolascoolman.fr/?p=1804 =>HackTool.AutoKMS http://www.nicolascoolman.fr/?p=4664 =>.Superfluous.SpyHunter ~ End of the scan, 23766 items in 00h01mn54s (773)(0)