~ ZHPDiag v2016.5.9.95 Par Nicolas Coolman (2016/05/09) ~ Démarré par nil08 (Administrator) (2016/05/11 23:10:26) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Users\nil08\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\nil08\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 10240) ---\\ Navigateurs Internet (4) - 1s GCIE: Google Chrome v50.0.2661.94 MFIE: Mozilla Firefox 44.0 (x86 fr) OPIE: Opera 38.0.2213.0 MSIE: Internet Explorer v11.0.10240.16766 ---\\ Informations sur les produits Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 9s Malwarebytes Anti-Malware ÇáäÓÎÉ 2.2.0.1024 Windows Defender (Deactivate) ---\\ Surveillance de Logiciels (1) - 10s Adobe Flash Player 21 NPAPI ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4083.2 MB (75% free) System Restore: Activé (Enable) System drive C: has 35 GB () free of 152 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: DESKTOP-MOF7UOQ ~ User Name: nil08 ~ Logged in as Administrator ---\\ Enumération des unités disques (5) - 0s ~ Drive C: has 35 GB free of 152 GB (System) ~ Drive F: has 30 GB free of 151 GB ~ Drive G: has 58 GB free of 164 GB ~ Drive H: has 2 GB free of 8 GB ~ Drive L: has 391 GB free of 953 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.D2EAEC106F183572317AF7D68E381063] - 25/11/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [4532304] =>.Microsoft Windows® [MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [59392] =>.Microsoft Corporation [MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 18/07/2015 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [290312] =>.Microsoft Windows Publisher® [MD5.71EF55BA035CD459D8230501D067D2F8] - 31/01/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2849792] =>.Microsoft Corporation [MD5.DA32F9BFA7851AD4247353EA03755DE6] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [578560] =>.Microsoft Corporation [MD5.ECB1943967424DFB96E03F6A098434EF] - 19/07/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [430592] =>.Microsoft Corporation [MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [680256] =>.Microsoft Windows® [MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [534064] =>.Microsoft Windows® [MD5.8C795953726C7D2DE72CE4748208C5ED] - 10/07/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [577888] =>.Microsoft Windows® [MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation [MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation [MD5.55D5C5B0B9F9B65BD452136A384E6EAC] - 23/02/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [138240] =>.Microsoft Corporation [MD5.27E248CD861AFED4DF0C48F4C853E7F0] - 25/11/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [80896] =>.Microsoft Corporation [MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation [MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation [MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [415232] =>.Microsoft Corporation [MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [273408] =>.Microsoft Corporation [MD5.BA8DC96D1DD7785EB0589CB1777208B7] - 01/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2115936] =>.Microsoft Windows® [MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.2521520142F7853E39028AE6BD66E072] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.A32AED8C644734B283A7C9D08D76064D] - 10/07/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [176128] =>.Microsoft Corporation [MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [116064] =>.Microsoft Windows® [MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [378720] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (11) - 2s O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - AGS Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: Service Mise à jour Dropbox (dbupdate) (dbupdate) . (...) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (.not file.) O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: خدمة Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HiSuiteOuc64.exe (HiSuiteOuc64.exe) . (.Copyright (C) 2008 - HiSuite Update Service.) - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe =>.Huawei Software Technologies Co., LTD.® O23 - Service: HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (.Copyright (C) 2008 - HuaweiHiSuiteService.) - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe =>.Huawei Software Technologies Co., LTD.® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® O23 - Service: JumpStart Push-Button Service (jswpbapi) . (.Atheros Communications, Inc. - JumpStart PushButton Service.) - C:\Program Files (x86)\Jumpstart\jswpbapi.exe =>.Atheros Communications, Inc. O23 - Service: C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG - NeroUpdate.) - C:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG® O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 14s SS - Demand [08/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [05/04/2016] [ 2021592] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SS - Demand [05/11/2015] [ 291744] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SR - Auto [13/04/2016] [ 2519904] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Smart Security\ekrn.exe =>.ESET, spol. s r.o.® SS - Auto [28/01/2016] [ 144200] خدمة Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/01/2016] [ 144200] خدمة Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Auto [20/05/2015] [ 138544] HiSuiteOuc64.exe (HiSuiteOuc64.exe) . (.Copyright (C) 2008.) - C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe =>.Huawei Software Technologies Co., LTD.® SR - Auto [20/05/2015] [ 192304] HuaweiHiSuiteService64.exe (HuaweiHiSuiteService64.exe) . (.Copyright (C) 2008.) - C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe =>.Huawei Software Technologies Co., LTD.® SR - Auto [05/11/2015] [ 330136] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation SR - Auto [26/09/2008] [ 265216] JumpStart Push-Button Service (jswpbapi) . (.Atheros Communications, Inc..) - C:\Program Files (x86)\Jumpstart\jswpbapi.exe =>.Atheros Communications, Inc. SS - Demand [24/01/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SS - Auto [15/07/2014] [ 786256] C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG® SR - Auto [13/09/2013] [ 277360] Protexis Licensing V2 (PSI_SVC_2) . (.arvato digital services llc.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.® SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [31/03/2016] [ 835664] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® ---\\ Tâches planifiées en automatique (28) - 4s [MD5.28FFB14117CCEDD7D2F124596AA9B785] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated® [MD5.5A9CDFF0CEDFA8061D0DE6B6C2547F51] [APT] [AdobeAAMUpdater-1.0-MicrosoftAccount-nil08_yasser@hotmail.com] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104] (.Activate.) =>.Adobe Systems Incorporated® [MD5.582F07F389C28CE5A511269AF927F0A3] [APT] [AutoKMS] (.CODYQX4.) -- C:\Windows\AutoKMS\AutoKMS.exe [5196288] (.Activate.) =>HackTool.AutoKMS [MD5.00000000000000000000000000000000] [APT] [DropboxUpdateTaskMachineCore] (...) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.00000000000000000000000000000000] [APT] [DropboxUpdateTaskMachineUA] (...) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.88FBBB1C601A6BC42054E57C2897FA45] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.88FBBB1C601A6BC42054E57C2897FA45] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.00000000000000000000000000000000] [APT] [GoogleUpdateTaskUserS-1-5-21-1279365335-2947345665-2852925367-1001Core] (...) -- C:\Users\nil08\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.F9B4EE36A57ABC5EFCD4A58446E2A378] [APT] [Opera scheduled Autoupdate 1461372631] (.Opera Software.) -- C:\Program Files (x86)\Opera developer\launcher.exe [1009704] (.Activate.) =>.Opera Software ASA® [MD5.2BA722640EF00284BD99C637F6225B72] [APT] [UCBrowserUpdater] (.UCWeb Inc.) -- C:\Program Files (x86)\UCBrowser\Application\update_task.exe [385016] (.Activate.) =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® [MD5.3E7C835EFDBF140AE54D703AD1DC1C59] [APT] [{594DC440-CBC1-411D-B943-1D5D33E8A71F}] (...) -- C:\Program Files (x86)\QSocial\QSocial_Installer.exe [7700992] (.Activate.) [MD5.00000000000000000000000000000000] [APT] [{793AAEE9-6F4E-43B3-993A-87973597FBE3}] (...) -- C:\Users\nil08\Desktop\Tech 4 All Wi-Fi Hack\1winpcap.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated® O39 - APT: DropboxUpdateTaskMachineCore - (...) -- C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job [1212] (.Orphean.) =>.Superfluous.Orphean O39 - APT: DropboxUpdateTaskMachineUA - (...) -- C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job [1216] (.Orphean.) =>.Superfluous.Orphean O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1104] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1108] =>.Google Inc® O39 - APT: UCBrowserUpdater - (.UCWeb Inc.) -- C:\Windows\Tasks\UCBrowserUpdater.job [488] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [3988] =>.Adobe Systems Incorporated® O39 - APT: AdobeAAMUpdater-1.0-MicrosoftAccount-nil08_yasser@hotmail.com - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-nil08_yasser@hotmail.com [3674] =>.Adobe Systems Incorporated® O39 - APT: AutoKMS - (.CODYQX4.) -- C:\Windows\System32\Tasks\AutoKMS [3808] =>HackTool.AutoKMS O39 - APT: DropboxUpdateTaskMachineCore - (...) -- C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore [4044] (.Orphean.) =>.Superfluous.Orphean O39 - APT: DropboxUpdateTaskMachineUA - (...) -- C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA [4276] (.Orphean.) =>.Superfluous.Orphean O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3934] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [4166] =>.Google Inc® O39 - APT: GoogleUpdateTaskUserS-1-5-21-1279365335-2947345665-2852925367-1001Core - (...) -- C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1279365335-2947345665-2852925367-1001Core [3626] (.Orphean.) =>.Superfluous.Orphean O39 - APT: Opera scheduled Autoupdate 1461372631 - (.Opera Software.) -- C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1461372631 [4006] =>.Opera Software ASA® O39 - APT: UCBrowserUpdater - (.UCWeb Inc.) -- C:\Windows\System32\Tasks\UCBrowserUpdater [3506] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® ---\\ Processus lancés (14) - 3s [MD5.66F584549EDBA3935632FDB17DBA6184] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2519904] [PID.836] =>.ESET, spol. s r.o.® [MD5.75909533EECD0CD9D5974B59474AA6C0] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [330136] [PID.1288] =>.Intel Corporation - pGFX® [MD5.258A11B27A9CC70D85B01BBD94389B2F] - (.Atheros Communications, Inc. - JumpStart PushButton Service.) -- C:\Program Files (x86)\Jumpstart\jswpbapi.exe [265216] [PID.1800] =>.Atheros Communications, Inc. [MD5.2BA04F29B844F3757D1E73B2637BBA9F] - (.Copyright (C) 2008 - HuaweiHiSuiteService.) -- C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [192304] [PID.1816] =>.Huawei Software Technologies Co., LTD.® [MD5.C17171E63E84F5711DF23B8F1E7A100E] - (.Adobe Systems, Incorporated - AGS Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2021592] [PID.1844] =>.Adobe Systems Incorporated® [MD5.066C6CCCF670D9BBCAECC781FB8D7EB9] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360] [PID.1940] =>.Arvato Digital Services Canada Inc® [MD5.9CD2D6FFEBFE63DFA340C724CE3373A7] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Smart Security\egui.exe [5564576] [PID.3732] =>.ESET, spol. s r.o.® [MD5.80A11F070E9EEFCB48B357E9E0E2C7D1] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [541600] [PID.2564] =>.Intel Corporation - pGFX® [MD5.B6C52FADECE225339D02B6923E930B5C] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [258456] [PID.1352] =>.Intel Corporation - pGFX® [MD5.65E8545F1297CD83534C354A7BED1848] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696] [PID.6660] =>.Realtek Semiconductor Corp® [MD5.5881014FEADC6E65C08586D6E33CB8C7] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3907152] [PID.4780] =>.Tonec Inc. [MD5.E9C6EF9437ECB30911488F9313AD821A] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [269848] [PID.2984] =>.Tonec Inc.® [MD5.4CB9134ADBB2CF83BF8BDDB10775B5F1] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\nil08\Desktop\ZHPDiag3.exe [2204160] [PID.4928] =>.Nicolas Coolman [MD5.88FBBB1C601A6BC42054E57C2897FA45] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [PID.996] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (21) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://plus.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://s3.amazonaws.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [opnbmdkdflhjiclaoiiifmheknpccalb] Instagram for Chrome G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 1s P2 - EXT: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation® P2 - EXT FILE: (...) -- C:\Users\nil08\AppData\Roaming\Mozilla\Firefox\Profiles\dlcdni2u.default-1453909041086\searchplugins\facebook.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (2) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (4) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll =>.Tonec Inc.® O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: SkypeIEPluginBHO [64Bits] - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Applications lancées au démarrage du système (23) - 1s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [Qsocial] C:\Program Files (x86)\QSocial\QSocial.exe (.not file.) O4 - HKCU\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files\Supercopier\supercopier.exe =>.ultracopier.first-world.info O4 - HKCU\..\Run: [EPSON Stylus CX4300 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_IATICAR.EXE =>.Seiko Epson Corporation O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- c:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.® O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- c:\Program Files (x86)\QuickTime\QTTask.exe =>.Apple Inc. O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Qsocial] C:\Program Files (x86)\QSocial\" /auto (.not file.) O4 - HKLM\..\Wow6432Node\Run: [jswtrayutil] C:\Program Files (x86)\Jumpstart\jswtrayutil.exe (.not file.) O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [Qsocial] C:\Program Files (x86)\QSocial\QSocial.exe (.not file.) O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [ultracopier] . (.ultracopier.first-world.info - Supercopier under GPL3.) -- C:\Program Files\Supercopier\supercopier.exe =>.ultracopier.first-world.info O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [EPSON Stylus CX4300 Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_IATICAR.EXE =>.Seiko Epson Corporation O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-1279365335-2947345665-2852925367-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® ---\\ Raccourcis Global Startup (45) - 6s O4 - GS\Desktop [Administrateur]: $R3LOU3C.lnk . (...) C:\Program Files (x86)\GISolution\GIArabic\GIArabic.exe O4 - GS\Desktop [Administrateur]: Core FTP LE.lnk . (.Core FTP - Core FTP client.) C:\Program Files (x86)\CoreFTP\coreftp.exe O4 - GS\Desktop [Administrateur]: EPSON Scan.lnk . (.SEIKO EPSON CORP. - EPSON Scan.) C:\Windows\twain_32\escndv\escndv.exe =>.SEIKO EPSON CORPORATION® O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\Desktop [Administrateur]: FramePhotoEditor.lnk . (.Kigosoft Inc. - FramePhotoEditor.) C:\Program Files (x86)\FramePhotoEditor\FramePhotoEditor.exe O4 - GS\Desktop [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [Administrateur]: Nero 2015.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{9D780839-6E97-4E2A-A5F7-711AF221B609}\NeroLauncher.ex_06255901E67449719980557FAA5EC1C6.exe =>.Nero AG® O4 - GS\Desktop [Administrateur]: WebAcappella4.lnk . (...) C:\Program Files (x86)\Intuisphere\WebAcappella4\WebAcappella4.exe O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nil08\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\sendTo [Administrateur]: Picosmos Shows.lnk . (.Free Time - Picosmos Picture Explorer.) C:\Program Files (x86)\PicosmosTools\PicosmosShows.exe =>.chen jun hao® O4 - GS\sendTo [Administrateur]: Picosmos Tools.lnk . (.Picosmos - Picosmos Pictures Viewer.) C:\Program Files (x86)\PicosmosTools\PicosmosTools.exe =>.chen jun hao® O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\Startup [Administrateur]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\ProgramData\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\Desktop [nil08]: $R3LOU3C.lnk . (...) C:\Program Files (x86)\GISolution\GIArabic\GIArabic.exe O4 - GS\Desktop [nil08]: Core FTP LE.lnk . (.Core FTP - Core FTP client.) C:\Program Files (x86)\CoreFTP\coreftp.exe O4 - GS\Desktop [nil08]: EPSON Scan.lnk . (.SEIKO EPSON CORP. - EPSON Scan.) C:\Windows\twain_32\escndv\escndv.exe =>.SEIKO EPSON CORPORATION® O4 - GS\Desktop [nil08]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\Desktop [nil08]: FramePhotoEditor.lnk . (.Kigosoft Inc. - FramePhotoEditor.) C:\Program Files (x86)\FramePhotoEditor\FramePhotoEditor.exe O4 - GS\Desktop [nil08]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [nil08]: Nero 2015.lnk . (.Acresso Software Inc. - InstallShield.) C:\Windows\Installer\{9D780839-6E97-4E2A-A5F7-711AF221B609}\NeroLauncher.ex_06255901E67449719980557FAA5EC1C6.exe =>.Nero AG® O4 - GS\Desktop [nil08]: WebAcappella4.lnk . (...) C:\Program Files (x86)\Intuisphere\WebAcappella4\WebAcappella4.exe O4 - GS\Desktop [nil08]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\nil08\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [nil08]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [nil08]: UC Browser.lnk . (.UCWeb Inc. - UC Browser.) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\sendTo [nil08]: Format Factory.lnk . (.Free Time - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.chen jun hao® O4 - GS\sendTo [nil08]: Picosmos Shows.lnk . (.Free Time - Picosmos Picture Explorer.) C:\Program Files (x86)\PicosmosTools\PicosmosShows.exe =>.chen jun hao® O4 - GS\sendTo [nil08]: Picosmos Tools.lnk . (.Picosmos - Picosmos Pictures Viewer.) C:\Program Files (x86)\PicosmosTools\PicosmosTools.exe =>.chen jun hao® O4 - GS\sendTo [nil08]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [nil08]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\Startup [nil08]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\ProgramData\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\CommonDesktop [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - GS\CommonDesktop [Public]: Avidemux 2.6 - 64 bits.lnk . (.Free Software Foundation - Avidemux 2.6.10.) C:\Program Files\Avidemux 2.6 - 64 bits\avidemux.exe =>.Free Software Foundation O4 - GS\CommonDesktop [Public]: Corel FastFlick X7.lnk . (.Corel TW Corp. - FastFlick.) C:\Program Files (x86)\Corel\Corel VideoStudio Pro X7\MWizard.exe =>.Corel Corporation® O4 - GS\CommonDesktop [Public]: Corel ScreenCap X7.lnk . (.Corel TW Corp. - Corel VideoStudio Screen Capture.) C:\Program Files (x86)\Corel\Corel VideoStudio Pro X7\VSSCap.exe =>.Corel Corporation® O4 - GS\CommonDesktop [Public]: EaseUS Data Recovery Wizard.lnk . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Data Recovery Wizard.) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRW.exe =>.CHENGDU YIWO Tech Development Co., Ltd.® O4 - GS\CommonDesktop [Public]: HiSuite.lnk . (.Huawei - Huawei PC suite.) C:\Program Files (x86)\HiSuite\HiSuite.exe =>.Huawei Software Technologies Co., LTD.® O4 - GS\CommonDesktop [Public]: Kelk2010.lnk . (...) C:\Program Files (x86)\SinaSoft\Kelk2010\Kelk2KR.exe O4 - GS\CommonDesktop [Public]: Nero Express.lnk . (.Nero AG - NeroExpress Starter.) C:\Program Files (x86)\Nero\Nero 2015\Nero Burning ROM\StartNE.exe =>.Nero AG® O4 - GS\CommonDesktop [Public]: RonyaSoft Poster Printer (ProPoster).lnk . (.RonyaSoft - RonyaSoft Poster Printer (ProPoster).) C:\Program Files (x86)\RonyaSoft\Poster Printer\PosterPrinter.exe =>.RonyaSoft® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{65BE34C4-DC9F-4F1A-9117-C0AC75AEE487}: NameServer = 41.110.32.3 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\..\{72f803a3-1c48-4800-b644-f21e8df64217}: DhcpNameServer = 192.168.1.1 ---\\ Protocole additionnel (24) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skypec2c [64Bits] - {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation - Skype Click to Call IE Add-on.) -- C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll =>.Skype Software Sarl® O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (96) - 14s O42 - Logiciel: Adobe After Effects CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {147EC100-14BE-45EF-AB42-35BAEE7D02F0} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Dreamweaver CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {EE2A0AA8-0386-11E5-8603-BC82F5DB1A71} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 21 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Illustrator CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ILST_19_1_1 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Media Encoder CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {0FAC7130-BEC5-47A5-8813-1D339B8326ED} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {793C2BF7-A4FE-4608-91C9-9282C5801C21} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Premiere Pro CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {38C72D42-0672-43B1-9E05-E7631684F9A1} =>.Adobe Systems Incorporated® O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {5D09C772-ECB3-442B-9CC6-B4341C78FDC2} =>.Apple Inc. O42 - Logiciel: ASIO4ALL - (.Michael Tippach.) [HKLM][64Bits] -- ASIO4ALL =>.Michael Tippach O42 - Logiciel: Avidemux 2.6 - 64 bits - (...) [HKLM][64Bits] -- Avidemux 2.6 - 64 bits (64-bit) O42 - Logiciel: Contents - (.Corel Corporation.) [HKLM][64Bits] -- {CC17740C-FD9D-4025-BD75-99ED1A9DA22E} =>.Corel Corporation O42 - Logiciel: Core FTP LE - (...) [HKLM][64Bits] -- CoreFTP O42 - Logiciel: Corel VideoStudio Pro Title Pack - (.Corel Corporation.) [HKLM][64Bits] -- {2DD67752-A84F-493D-884B-A857CEE14A88} =>.Corel Corporation O42 - Logiciel: Corel VideoStudio Pro Title Pack - (.Nom de votre société.) [HKLM][64Bits] -- {1F57FEF3-3E49-4252-B977-B98D3A7C89D0} O42 - Logiciel: Corel VideoStudio Pro Title Pack - (.Nom de votre société.) [HKLM][64Bits] -- {466B8FC6-8D80-4DA1-BA2D-EC7094BD3C31} O42 - Logiciel: Corel VideoStudio Pro X7 - (.Corel Corporation.) [HKLM][64Bits] -- _{77B3BEA9-835C-4DDF-BCE7-1510271E4E37} =>.Corel Corporation® O42 - Logiciel: Cs 1.6 [2013] by PKN 2013 - (...) [HKLM][64Bits] -- Cs 1.6 [2013] by PKN 2013 O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: EaseUS Data Recovery Wizard - (.EaseUS.) [HKLM][64Bits] -- EaseUS Data Recovery Wizard_is1 =>.CHENGDU YIWO Tech Development Co., Ltd.® O42 - Logiciel: EPSON Printer Software - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON Printer and Utilities =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner =>.SEIKO EPSON Corporation® O42 - Logiciel: ESET Smart Security - (.ESET, spol. s r.o..) [HKLM][64Bits] -- {BE1D36A7-0315-4B19-878F-ECCC9E4B05ED} =>.ESET, spol. s r.o. O42 - Logiciel: Find and Mount 2.32 - (.A-FF Data Recovery.) [HKLM][64Bits] -- Find and Mount_is1 =>.A-FF Data Recovery O42 - Logiciel: FlowStone FL 3.0 - (...) [HKLM][64Bits] -- FlowStone O42 - Logiciel: FormatFactory 3.7.0.0 - (.Format Factory.) [HKLM][64Bits] -- FormatFactory =>.Format Factory O42 - Logiciel: GI-Arabic Now - (.Global Integrated Solutions.) [HKLM][64Bits] -- GI-Arabic Now O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Haali Media Splitter - (...) [HKLM][64Bits] -- HaaliMkx O42 - Logiciel: HiSuite - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- Hi Suite =>.Huawei Technologies Co.,Ltd O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {77B3BEA9-835C-4DDF-BCE7-1510271E4E37} =>.Corel Corporation O42 - Logiciel: IL Download Manager - (.Image-Line.) [HKLM][64Bits] -- IL Download Manager =>.Image Line® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: IPM_VS_Pro - (.Corel Corporation.) [HKLM][64Bits] -- {0662B4EB-B027-4D10-B49C-B6433FE81C07} =>.Corel Corporation O42 - Logiciel: Jumpstart Installation Program - (.Atheros.) [HKLM][64Bits] -- {B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13} =>.Atheros O42 - Logiciel: Kelk2010 (SSL) - (...) [HKLM][64Bits] -- Kelk2010 (SSL) O42 - Logiciel: Malwarebytes Anti-Malware ÇáäÓÎÉ 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync =>.Mega Limited® O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 44.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 44.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Nero - (...) [HKLM][64Bits] -- Nero O42 - Logiciel: Nero Burning Core - (.Nero AG.) [HKLM][64Bits] -- {228B6C3A-A712-4972-AEB0-E37E83E881E9} =>.Nero AG O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM][64Bits] -- {B3756FCF-13D3-460B-88D5-33CB88CE6CFA} =>.Nero AG O42 - Logiciel: Nero BurningROM 2015 - (.Nero AG.) [HKLM][64Bits] -- {F5A59864-8193-4D58-B8C4-B9EFD0CE4F03} =>.Nero AG O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} =>.Nero AG O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} =>.Nero AG O42 - Logiciel: Nero Info - (.Nero AG.) [HKLM][64Bits] -- {F030BFE8-8476-4C08-A553-233DE80A2BE1} =>.Nero AG O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {9D780839-6E97-4E2A-A5F7-711AF221B609} =>.Nero AG O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} =>.Nero AG O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} =>.Nero AG O42 - Logiciel: Opera developer 38.0.2213.0 - (.Opera Software.) [HKLM][64Bits] -- Opera 38.0.2213.0 =>.Opera Software ASA® O42 - Logiciel: oursurfing uninstall - (.oursurfing.) [HKLM][64Bits] -- oursurfing uninstall =>PUP.Optional.OurSurfing O42 - Logiciel: PAD Product Tool - (.Actions.) [HKLM][64Bits] -- {18745E12-6FC9-4719-83BD-CFC7D4A9EFD1} O42 - Logiciel: pdfFactory Pro - (.FinePrint Software, LLC.) [HKLM][64Bits] -- pdfFactory Pro {731CAFC8B4392A7657EBDA49500FF144} O42 - Logiciel: PicosmosTools 1.0.1.0 - (.Free Time.) [HKLM][64Bits] -- PicosmosTools =>.Free Time O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2E0C1D31-8FEC-411E-97FB-6E56BD429A98} =>.Microsoft Corporation O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM][64Bits] -- {799AFA36-4EA5-4323-8689-74C06645A26B} =>.Nero AG O42 - Logiciel: QuickTime - (.Apple Inc..) [HKLM][64Bits] -- {B67BAFBA-4C9F-48FA-9496-933E3B255044} =>Riskware.QuickTime O42 - Logiciel: RE:Vision Effects Twixtor AE - (.Team V.R.) [HKLM][64Bits] -- Twixtor AE 6.1.0_is1 =>.Team V.R O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: RonyaSoft Poster Printer (ProPoster) 3.01 - (.RonyaSoft.) [HKLM][64Bits] -- RonyaSoft Poster Printer (ProPoster) =>.RonyaSoft® O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation® O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation® O42 - Logiciel: Security Update for Skype for Business 2015 (KB3114944) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{3A452E83-222D-4C9E-A80A-CB5F306824DF} =>.Microsoft Corporation® O42 - Logiciel: Setup - (.Corel Corporation.) [HKLM][64Bits] -- {EE1DF8F8-24D8-4287-816B-E67B03460CEE} =>.Corel Corporation O42 - Logiciel: Share - (.Corel Corporation.) [HKLM][64Bits] -- {5F5C5CC6-3457-4D8B-A716-85CC964C4533} =>.Corel Corporation O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation O42 - Logiciel: Skype™ 7.22 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- {B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} =>.SmartSound Software Inc. O42 - Logiciel: SmartSound Common Data - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{B8A2869E-30CA-40C5-9CF8-BD7354E57EF8} =>.SmartSound Software, Inc.® O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- {2F8BA3FD-1FA9-4279-B696-712ABB12F09F} =>.SmartSound Software Inc. O42 - Logiciel: SmartSound Quicktracks 5 - (.SmartSound Software Inc..) [HKLM][64Bits] -- InstallShield_{2F8BA3FD-1FA9-4279-B696-712ABB12F09F} =>.SmartSound Software, Inc.® O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: Supercopier 1.2.1.0 - (.Supercopier.) [HKLM][64Bits] -- Supercopier =>.Supercopier O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{8B3A877E-1B73-464A-AD21-9F26A0682AC6} =>.Microsoft Corporation® O42 - Logiciel: USB Disk Storage Format Tool 5.1 - (.Authorsoft Corporation.) [HKLM][64Bits] -- USB Disk Storage Format Tool_is1 =>.Authorsoft Corporation O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VSClassic - (.Corel Corporation.) [HKLM][64Bits] -- {AE666608-C3B5-46F0-BAFA-B0A7BEE058F5} =>.Corel Corporation O42 - Logiciel: VSPro - (.Corel Corporation.) [HKLM][64Bits] -- {5BB9ED3F-A86C-46F5-A362-3F2F0591AC51} =>.Corel Corporation O42 - Logiciel: WebAcappella4 - (.Intuisphere.) [HKLM][64Bits] -- WebAcappella4_is1 =>.Intuisphere O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst =>.Riverbed Technology, Inc. O42 - Logiciel: WinRAR 5.30 beta 1 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (136) - 14s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AFPL Ghostscript HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ASIO HKLM\SOFTWARE\Wow6432Node\ASIO4ALL HKLM\SOFTWARE\Wow6432Node\AS_Mubashir HKLM\SOFTWARE\Wow6432Node\Atheros HKLM\SOFTWARE\Wow6432Node\Avidemux 2.6 - 64 bits (64-bit) HKLM\SOFTWARE\Wow6432Node\AviSynth HKLM\SOFTWARE\Wow6432Node\Baidu HKLM\SOFTWARE\Wow6432Node\Baidu_Drp_pos HKLM\SOFTWARE\Wow6432Node\Corel HKLM\SOFTWARE\Wow6432Node\Cygwin HKLM\SOFTWARE\Wow6432Node\Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\DRWDemo HKLM\SOFTWARE\Wow6432Node\DSPRobotics HKLM\SOFTWARE\Wow6432Node\EASEUS HKLM\SOFTWARE\Wow6432Node\EPSON HKLM\SOFTWARE\Wow6432Node\ESET HKLM\SOFTWARE\Wow6432Node\FTPWare HKLM\SOFTWARE\Wow6432Node\GNU HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\HaaliMkx HKLM\SOFTWARE\Wow6432Node\IM Providers HKLM\SOFTWARE\Wow6432Node\Image-Line HKLM\SOFTWARE\Wow6432Node\Innovative Solutions HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager HKLM\SOFTWARE\Wow6432Node\InterVideo HKLM\SOFTWARE\Wow6432Node\intuisphere HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Opera Software HKLM\SOFTWARE\Wow6432Node\Overwolf HKLM\SOFTWARE\Wow6432Node\PicosmosShows HKLM\SOFTWARE\Wow6432Node\PowerPivot HKLM\SOFTWARE\Wow6432Node\Propellerhead Software HKLM\SOFTWARE\Wow6432Node\Protexis HKLM\SOFTWARE\Wow6432Node\RonyaSoft HKLM\SOFTWARE\Wow6432Node\Skype HKLM\SOFTWARE\Wow6432Node\SmartSound Software HKLM\SOFTWARE\Wow6432Node\SoftVoice HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKLM\SOFTWARE\Wow6432Node\UCBrowser HKLM\SOFTWARE\Wow6432Node\UCBrowserPID HKLM\SOFTWARE\Wow6432Node\Ulead Systems HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\WinPcap HKLM\SOFTWARE\Wow6432Node\Wise Solutions HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\AC3Filter HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. HKCU\SOFTWARE\Atheros HKCU\SOFTWARE\Atola HKCU\SOFTWARE\Authorsoft HKCU\SOFTWARE\Baidu HKCU\SOFTWARE\Baidu Security HKCU\SOFTWARE\Baidu WiFiHotspot HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\Corel HKCU\SOFTWARE\DownloadManager HKCU\SOFTWARE\Dropbox HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\EPSON HKCU\SOFTWARE\ESET HKCU\SOFTWARE\FinePrint Software HKCU\SOFTWARE\FreeTime HKCU\SOFTWARE\FTPWare HKCU\SOFTWARE\Gabest HKCU\SOFTWARE\GNU HKCU\SOFTWARE\Google HKCU\SOFTWARE\Haali HKCU\SOFTWARE\IGA HKCU\SOFTWARE\IM Providers HKCU\SOFTWARE\iMacros HKCU\SOFTWARE\Image-Line HKCU\SOFTWARE\Innovative Solutions HKCU\SOFTWARE\Intel HKCU\SOFTWARE\InterVideo HKCU\SOFTWARE\Intuisphere HKCU\SOFTWARE\Local AppWizard-Generated Applications HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\MainConcept HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\MozillaPlugins HKCU\SOFTWARE\MTK HKCU\SOFTWARE\Nero HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NewBlue HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Opera Software HKCU\SOFTWARE\Picosmos HKCU\SOFTWARE\PopCap HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\RonyaSoft HKCU\SOFTWARE\SinaSoft HKCU\SOFTWARE\Skype HKCU\SOFTWARE\SmartSound Software HKCU\SOFTWARE\SoftVoice HKCU\SOFTWARE\Softwrap HKCU\SOFTWARE\SpinTop HKCU\SOFTWARE\Sven Co-op Team HKCU\SOFTWARE\TAdvCheckList HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\UCBrowser HKCU\SOFTWARE\UCBrowserPID HKCU\SOFTWARE\Ulead HKCU\SOFTWARE\Ulead Systems HKCU\SOFTWARE\Ultracopier HKCU\SOFTWARE\Valve HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\VirtualDub.org HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\Ó¦ÓóÌÐòÏòµ¼Éú³ÉµÄ±¾µØÓ¦ÓóÌÐò HKCU\SOFTWARE\AppDataLow\Software ---\\ Contenu des dossiers Programmes (289) - 71s O43 - CFD: 19/01/2016 - [] D -- C:\Program Files\A-FF Find and Mount O43 - CFD: 20/11/2015 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 09/09/2015 - [] D -- C:\Program Files\Avidemux 2.6 - 64 bits O43 - CFD: 31/08/2015 - [] D -- C:\Program Files\Common Files O43 - CFD: 03/09/2015 - [] D -- C:\Program Files\EaseUS =>.CHENGDU YIWO Tech Development Co., Ltd.® O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 21/08/2015 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 31/08/2015 - [] D -- C:\Program Files\Image-Line O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Intel O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 22/08/2015 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 12/04/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files\Microsoft SQL Server O43 - CFD: 22/08/2015 - [] D -- C:\Program Files\Microsoft.NET O43 - CFD: 29/08/2015 - [] D -- C:\Program Files\MSBuild O43 - CFD: 27/01/2016 - [] D -- C:\Program Files\PlayReady O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 29/08/2015 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Supercopier O43 - CFD: 10/07/2015 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 22/01/2016 - [] D -- C:\Program Files\USB Disk Storage Format Tool O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files\Windows Sidebar O43 - CFD: 11/05/2016 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation® O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files\WindowsPowerShell O43 - CFD: 21/08/2015 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\Actions O43 - CFD: 24/09/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 04/04/2016 - [0] D -- C:\Program Files (x86)\ApeeeGoSoft O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\ASIO4ALL v2 O43 - CFD: 08/05/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 20/11/2015 - [] D -- C:\Program Files (x86)\CoreFTP O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\Corel =>.COREL TW CORP.® O43 - CFD: 20/10/2015 - [0] D -- C:\Program Files (x86)\Dropbox O43 - CFD: 08/09/2015 - [] D -- C:\Program Files (x86)\DSPRobotics O43 - CFD: 07/05/2016 - [] D -- C:\Program Files (x86)\EASEUS O43 - CFD: 20/03/2016 - [0] D -- C:\Program Files (x86)\Embratoria O43 - CFD: 02/09/2015 - [] D -- C:\Program Files (x86)\epson =>.SEIKO EPSON CORPORATION® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\FormatFactory =>.chen jun hao® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\FramePhotoEditor O43 - CFD: 25/08/2015 - [] D -- C:\Program Files (x86)\GISolution O43 - CFD: 28/01/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Haali O43 - CFD: 23/01/2016 - [] D -- C:\Program Files (x86)\HiSuite =>.Huawei Software Technologies Co., LTD.® O43 - CFD: 04/04/2016 - [] D -- C:\Program Files (x86)\Image-Line =>.Image Line® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Innovative Solutions O43 - CFD: 08/05/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.SmartSound Software, Inc.® O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation - pGFX® O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Internet Download Manager O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 23/11/2015 - [] D -- C:\Program Files (x86)\Intuisphere O43 - CFD: 17/03/2016 - [] D -- C:\Program Files (x86)\Jumpstart O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes Corporation® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Microsoft SQL Server O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 28/01/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla Corporation® O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla Corporation® O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 11/09/2015 - [] D -- C:\Program Files (x86)\Nero O43 - CFD: 28/01/2016 - [] D -- C:\Program Files (x86)\Opera O43 - CFD: 03/05/2016 - [] D -- C:\Program Files (x86)\Opera developer =>.Opera Software ASA® O43 - CFD: 14/11/2015 - [] D -- C:\Program Files (x86)\Phyxion.net O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\PicosmosTools O43 - CFD: 28/12/2015 - [] D -- C:\Program Files (x86)\Pucajte Kod Nas O43 - CFD: 30/09/2015 - [] D -- C:\Program Files (x86)\QSocial O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\QuickTime =>Riskware.QuickTime O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 04/12/2015 - [] D -- C:\Program Files (x86)\RonyaSoft =>.RonyaSoft® O43 - CFD: 16/11/2015 - [] D -- C:\Program Files (x86)\SinaSoft O43 - CFD: 06/05/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype Software Sarl® O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\SmartSound Software O43 - CFD: 07/05/2016 - [] D -- C:\Program Files (x86)\Steam =>.Valve® O43 - CFD: 27/01/2016 - [] D -- C:\Program Files (x86)\UCBrowser =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 29/08/2015 - [] D -- C:\Program Files (x86)\VideoZip pro O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 10/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 10/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 10/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology, Inc.® O43 - CFD: 02/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atheros O43 - CFD: 09/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux (64 bits) O43 - CFD: 23/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel VideoStudio Pro X7 O43 - CFD: 07/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard O43 - CFD: 20/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embratoria O43 - CFD: 27/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON O43 - CFD: 02/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET O43 - CFD: 19/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Find and Mount O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite O43 - CFD: 31/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware O43 - CFD: 26/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEGAsync O43 - CFD: 11/05/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 11/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime O43 - CFD: 24/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REVisionEffects O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RonyaSoft O43 - CFD: 16/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SinaSoft O43 - CFD: 31/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 17/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 10/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 27/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UC Browser O43 - CFD: 22/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Storage Format Tool 5.1 O43 - CFD: 09/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 23/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WebAcappella4 O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Adobe O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Apple O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Apple Computer O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Atheros O43 - CFD: 03/05/2016 - [] D -- C:\ProgramData\boost_interprocess O43 - CFD: 21/08/2015 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 10/07/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Corel O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Desktop O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 14/11/2015 - [] D -- C:\ProgramData\EPSON O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\eSellerate O43 - CFD: 04/11/2015 - [] D -- C:\ProgramData\ESET O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\HandSetService O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\HiSuiteOuc O43 - CFD: 21/08/2015 - [0] D -- C:\ProgramData\IDM O43 - CFD: 14/09/2015 - [] D -- C:\ProgramData\InterVideo O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\KONAMI O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Malwarebytes O43 - CFD: 18/03/2016 - [] D -- C:\ProgramData\MEGAsync O43 - CFD: 21/08/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 02/03/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 11/05/2016 - [] D -- C:\ProgramData\Microsoft Help O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS O43 - CFD: 21/08/2015 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Nero O43 - CFD: 18/03/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 02/01/2016 - [] D -- C:\ProgramData\PC Faster O43 - CFD: 12/04/2016 - [] D -- C:\ProgramData\Protexis O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Protexis64 O43 - CFD: 07/12/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 24/08/2015 - [] D -- C:\ProgramData\REVisionEffects O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\RonyaSoft O43 - CFD: 27/04/2016 - [] D -- C:\ProgramData\Skype O43 - CFD: 03/05/2016 - [] D -- C:\ProgramData\SmartSound Software Inc O43 - CFD: 27/02/2016 - [] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 28/09/2015 - [] D -- C:\ProgramData\SpinTop Games O43 - CFD: 07/03/2016 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Start Menu O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Steam O43 - CFD: 28/09/2015 - [0] D -- C:\ProgramData\TEMP O43 - CFD: 10/07/2015 - [0] SHD -- C:\ProgramData\Templates O43 - CFD: 21/08/2015 - [] D -- C:\ProgramData\Thunder Network O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\USOShared O43 - CFD: 20/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Apple O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 22/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 21/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Nero O43 - CFD: 31/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Propellerhead Software O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Protexis O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 26/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype O43 - CFD: 23/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 10/07/2015 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 24/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\AdbDriverInstaller O43 - CFD: 12/12/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Adobe O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Apple Computer O43 - CFD: 23/09/2015 - [] D -- C:\Users\nil08\AppData\Roaming\AS O43 - CFD: 06/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\avidemux O43 - CFD: 23/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Baidu O43 - CFD: 23/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\BaiduYunGuanjia O43 - CFD: 23/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\BaiduYunKernel O43 - CFD: 21/11/2015 - [] D -- C:\Users\nil08\AppData\Roaming\CoreFTP O43 - CFD: 23/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Corel O43 - CFD: 08/05/2016 - [0] D -- C:\Users\nil08\AppData\Roaming\COWON O43 - CFD: 11/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\DMCache O43 - CFD: 19/10/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Dropbox O43 - CFD: 09/02/2016 - [] D -- C:\Users\nil08\AppData\Roaming\dvdcss O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\ESET O43 - CFD: 30/10/2015 - [] D -- C:\Users\nil08\AppData\Roaming\ExtremeCopy O43 - CFD: 08/09/2015 - [] D -- C:\Users\nil08\AppData\Roaming\FlowStone O43 - CFD: 30/04/2016 - [] D -- C:\Users\nil08\AppData\Roaming\IDM O43 - CFD: 31/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Image-Line O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Innovative Solutions O43 - CFD: 19/10/2015 - [] D -- C:\Users\nil08\AppData\Roaming\InstallShield O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Macromedia O43 - CFD: 24/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Maxthon3 O43 - CFD: 14/01/2016 - [] SD -- C:\Users\nil08\AppData\Roaming\Microsoft O43 - CFD: 16/09/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Mozilla O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Nero O43 - CFD: 23/04/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Opera Software O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\PDAppFlex O43 - CFD: 29/09/2015 - [] D -- C:\Users\nil08\AppData\Roaming\QSocial O43 - CFD: 27/04/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Skype O43 - CFD: 02/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\SmartSteamEmu O43 - CFD: 23/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\SSN =>PUP.Optional.SaveSerpNow O43 - CFD: 29/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\TS3Client O43 - CFD: 02/10/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Ulead Systems O43 - CFD: 11/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\vlc O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\WinRAR O43 - CFD: 11/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\ZHP O43 - CFD: 11/05/2016 - [] D -- C:\Users\nil08\AppData\Local\Adobe O43 - CFD: 31/10/2015 - [] D -- C:\Users\nil08\AppData\Local\Apple Computer O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nil08\AppData\Local\Application Data O43 - CFD: 17/03/2016 - [] D -- C:\Users\nil08\AppData\Local\CEF O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\Comms O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Local\CrashDumps O43 - CFD: 09/05/2016 - [] D -- C:\Users\nil08\AppData\Local\Diagnostics O43 - CFD: 19/10/2015 - [] D -- C:\Users\nil08\AppData\Local\Dropbox O43 - CFD: 09/05/2016 - [] D -- C:\Users\nil08\AppData\Local\ElevatedDiagnostics O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\ESET O43 - CFD: 20/03/2016 - [] D -- C:\Users\nil08\AppData\Local\Geckofx O43 - CFD: 28/01/2016 - [] D -- C:\Users\nil08\AppData\Local\Google O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nil08\AppData\Local\Historique O43 - CFD: 12/04/2016 - [] D -- C:\Users\nil08\AppData\Local\HiSuite O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Local\Innovative Solutions O43 - CFD: 22/09/2015 - [] D -- C:\Users\nil08\AppData\Local\Macromedia O43 - CFD: 26/02/2016 - [] D -- C:\Users\nil08\AppData\Local\Mega Limited O43 - CFD: 12/04/2016 - [] D -- C:\Users\nil08\AppData\Local\Microsoft O43 - CFD: 22/08/2015 - [0] D -- C:\Users\nil08\AppData\Local\Microsoft Help O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\MicrosoftEdge O43 - CFD: 16/09/2015 - [] D -- C:\Users\nil08\AppData\Local\Mozilla O43 - CFD: 02/03/2016 - [0] D -- C:\Users\nil08\AppData\Local\NetworkTiles O43 - CFD: 23/04/2016 - [] D -- C:\Users\nil08\AppData\Local\Opera Software O43 - CFD: 11/05/2016 - [] D -- C:\Users\nil08\AppData\Local\Packages O43 - CFD: 21/08/2015 - [0] D -- C:\Users\nil08\AppData\Local\PeerDistRepub O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\Programs O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\Publishers O43 - CFD: 31/12/2015 - [0] D -- C:\Users\nil08\AppData\Local\Skype O43 - CFD: 17/03/2016 - [] D -- C:\Users\nil08\AppData\Local\Steam O43 - CFD: 11/05/2016 - [] D -- C:\Users\nil08\AppData\Local\Temp O43 - CFD: 21/08/2015 - [0] SHD -- C:\Users\nil08\AppData\Local\Temporary Internet Files O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\TileDataLayer O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Local\UCBrowser O43 - CFD: 23/01/2016 - [] D -- C:\Users\nil08\AppData\Local\VirtualStore O43 - CFD: 21/08/2015 - [0] D -- C:\Users\nil08\AppData\Local\Programs\Common O43 - CFD: 10/07/2015 - [] RD -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 21/08/2015 - [] RD -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 24/01/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Actions Tools O43 - CFD: 14/04/2016 - [] RD -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 04/04/2016 - [0] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ApeeeGoSoft O43 - CFD: 31/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 O43 - CFD: 20/11/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Core FTP O43 - CFD: 02/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Counter-Strike O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory O43 - CFD: 22/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FramePhotoEditor O43 - CFD: 28/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GISolution O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter O43 - CFD: 02/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Half-Life O43 - CFD: 02/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLDS O43 - CFD: 03/09/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager O43 - CFD: 10/07/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 16/11/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\pdfFactory Pro O43 - CFD: 23/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools O43 - CFD: 14/04/2016 - [] RD -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 07/05/2016 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 30/10/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier O43 - CFD: 10/07/2015 - [] RD -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 10/07/2015 - [] RSD -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 21/08/2015 - [] D -- C:\Users\nil08\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (11) - 1s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\nil08\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: ###MegaShellExtPending [###MegaShellExtPending] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\ProgramData\MEGAsync\ShellExtX32.dll O106 - SIOI: ###MegaShellExtSynced [###MegaShellExtSynced] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\ProgramData\MEGAsync\ShellExtX32.dll O106 - SIOI: ###MegaShellExtSyncing [###MegaShellExtSyncing] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\ProgramData\MEGAsync\ShellExtX32.dll ---\\ Liste des pilotes du système (65) - 10s O58 - SDL:2015/07/10 11:59:38 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2008/08/07 02:08:46 A . (.D-Link Corporation - Driver for D-Link Wireless Network Adapter.) -- C:\Windows\System32\drivers\AGUx64.sys [1077760] =>.D-Link Corporation O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2006/11/27 09:13:50 A . (.Pinnacle Systems - Pinnacle Bender Series Driver.) -- C:\Windows\System32\drivers\bender64.sys [253568] =>.Pinnacle Systems O58 - SDL:2015/07/10 11:59:38 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2016/04/13 19:48:15 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [264552] =>.ESET, spol. s r.o.® O58 - SDL:2015/09/23 09:30:22 A . (.ESET - ESET ELAM driver.) -- C:\Windows\System32\drivers\eelam.sys [14976] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2016/04/13 19:48:15 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [186784] =>.ESET, spol. s r.o.® O58 - SDL:2016/04/13 19:48:15 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\Windows\System32\drivers\ekbdflt.sys [142976] =>.ESET, spol. s r.o.® O58 - SDL:2016/04/13 19:48:15 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfw.sys [198096] =>.ESET, spol. s r.o.® O58 - SDL:2016/04/13 19:48:15 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\epfwlwf.sys [53384] =>.ESET, spol. s r.o.® O58 - SDL:2016/04/13 19:48:15 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfwwfp.sys [84800] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/10 11:59:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/05/07 12:40:30 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\hw_quusbmdm.sys [223232] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/05/07 12:40:30 A . (.Huawei Technologies Co., Ltd. - USB NDIS Miniport Driver.) -- C:\Windows\System32\drivers\hw_quusbnet.sys [287232] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/05/07 12:40:30 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\hw_usbdev.sys [116864] =>.Huawei Technologies Co., Ltd. O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/10 11:59:36 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [122608] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\Windows\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\Windows\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2015/06/12 03:00:58 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [197616] =>.Tonec Inc.® O58 - SDL:2015/11/05 00:28:22 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [3797424] =>.Intel Corporation - pGFX® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [50240] =>.Intel(R) Wireless Display® O58 - SDL:2015/12/07 07:52:30 A . (.Initio Corporation - Initio Default Vendor Specific Device Drive.) -- C:\Windows\System32\drivers\ivusb.sys [29720] =>.Initio Corporation® O58 - SDL:2015/07/20 20:45:04 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [38976] =>.Intel(R) Wireless Display® O58 - SDL:2008/05/15 03:28:52 A . (.Atheros Communications, Inc. - Atheros Security NDIS 6.0 Filter Driver.) -- C:\Windows\System32\drivers\jswpslwfx.sys [26624] =>.Atheros Communications, Inc. O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [108896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:38 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] =>.Malwarebytes Corporation® O58 - SDL:2015/11/05 00:43:43 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - MLX4 Bus Driver.) -- C:\Windows\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2015/10/05 09:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64216] =>.Malwarebytes Corporation® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\Windows\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2013/03/01 02:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2015/10/04 14:15:11 A . (.QUALCOMM Incorporated - Filter Driver for the Qualcomm USB Driver S.) -- C:\Windows\System32\drivers\qcusbfilter.sys [48672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/10/04 14:14:57 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\qcusbser.sys [252448] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2013/09/09 14:56:54 A . (.Fuzhou Rockchip Electronics Co,Ltd. - Fuzhou Rockchip USB Driver.) -- C:\Windows\System32\drivers\rockusb.sys [66704] {1FC4FA81235DA93D0A13713984069C35} O58 - SDL:2015/07/10 11:59:39 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\Windows\System32\drivers\rt640x64.sys [587264] =>.Realtek O58 - SDL:2015/08/21 18:45:49 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4504320] =>.Realtek Semiconductor Corp® O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2015/08/21 18:46:40 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverW8x64.sys [193336] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O58 - SDL:2015/07/10 11:59:48 A . (...) -- C:\Windows\System32\drivers\Udecx.sys [44032] O58 - SDL:2015/07/10 11:59:39 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinMad.) -- C:\Windows\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/07/10 11:59:39 A . (.Mellanox - Kernel WinVerbs.) -- C:\Windows\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 63s O61 - LFC: 2016/05/11 22:30:01 A . (.The Windows Club.) -- C:\Users\nil08\Desktop\FixWin 10.0.1.0\FixWin 10.exe [285696] O61 - LFC: 2016/05/10 21:41:18 A . (..) -- C:\Users\nil08\AppData\Roaming\IDM\DwnlData\nil08\en_windows_10_multiple_edition_1642\en_windows_10_multiple_edition.iso [354800] O61 - LFC: 2016/05/11 16:02:18 A . (..) -- C:\Users\nil08\AppData\Local\UCBrowser\User Data_i18n\ev_hashes_whitelist.bin [674082] O61 - LFC: 2016/05/07 21:15:49 A . (..) -- C:\Users\nil08\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [27112] O61 - LFC: 2016/05/11 23:01:14 A . (..) -- C:\Users\nil08\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_635985954594578139.bin [108623] O61 - LFC: 2016/05/07 22:37:16 A . (..) -- C:\Users\nil08\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_635982482875980434.bin [85243] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (20) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Opera Software - Opera developer Internet Browser.) -- C:\Program Files (x86)\Opera developer\Launcher.exe =>.Opera Software ASA® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.UCWeb Inc. - UC Browser.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera developer Internet Browser.) -- C:\Program Files (x86)\Opera developer\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera developer Internet Browser.) -- C:\Program Files (x86)\Opera developer\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera developer Internet Browser.) -- C:\Program Files (x86)\Opera developer\launcher.exe =>.Opera Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.UCWeb Inc. - UC Browser.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. ---\\ Recherche d'infection sur les navigateurs (2) - 4s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (42) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [283136] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1335296] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [954368] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [954880] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [93696] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1008640] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [226304] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [133120] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [324096] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [371200] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [95744] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [2093056] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\system32\dcpsvc.dll [196096] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [167424] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [189952] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [680448] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497152] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [72192] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [2237952] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1168896] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [593920] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\system32\dmwappushsvc.dll [63488] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1149440] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\system32\XboxNetApiSvc.dll [1019392] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\system32\usocore.dll [348672] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [712704] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [918016] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\system32\RDXService.dll [1016832] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [359936] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [237568] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [58368] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [200192] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (18) - 2s O87 - FAEL: "TCP Query User{95C2DAD0-E118-4107-89F7-294106B3B26A}C:\program files (x86)\konami\pro evolution soccer 2016\pes2016.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\konami\pro evolution soccer 2016\pes2016.exe (.not file.) O87 - FAEL: "UDP Query User{699CBDE7-F7B6-44C3-AEEF-BB0F93BC7E47}C:\program files (x86)\konami\pro evolution soccer 2016\pes2016.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\konami\pro evolution soccer 2016\pes2016.exe (.not file.) O87 - FAEL: "{4B889CCE-4F9A-46A6-8BEC-4DD5262DB3D1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Baidu WiFiHotspot\WifiHotspot.exe (.not file.) O87 - FAEL: "{2C4AA364-6B01-4B10-B34C-64FBFA5A2E63}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Baidu WiFiHotspot\WifiHotspot.exe (.not file.) O87 - FAEL: "{B6CF97CA-A071-468B-A30A-9DDC84BA16A3}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\MxUp.exe (.not file.) O87 - FAEL: "{2645D99B-831B-419B-98CA-31FE4E65F221}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe (.not file.) O87 - FAEL: "{BD16DDF9-A315-4BAE-91CB-D766AE0CA9EA}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\MxUp.exe (.not file.) O87 - FAEL: "{152BEEC0-2357-41DE-BA6F-D678AB5614CE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe (.not file.) O87 - FAEL: "TCP Query User{422CA253-618B-471A-9830-D570FEF16E31}C:\program files (x86)\embratoria\embratoriag1\http.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\embratoria\embratoriag1\http.exe (.not file.) O87 - FAEL: "UDP Query User{13A702F8-AEDD-4286-8A64-8689B387D65D}C:\program files (x86)\embratoria\embratoriag1\http.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\embratoria\embratoriag1\http.exe (.not file.) O87 - FAEL: "TCP Query User{28A98881-6BB9-4333-BB07-A09D89B86B5B}C:\program files (x86)\embratoria\embratoriag1\embrastreamer.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\embratoria\embratoriag1\embrastreamer.exe (.not file.) O87 - FAEL: "UDP Query User{D30A106E-6582-43EE-A2D8-5F3BF7E46C25}C:\program files (x86)\embratoria\embratoriag1\embrastreamer.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\embratoria\embratoriag1\embrastreamer.exe (.not file.) O87 - FAEL: "TCP Query User{A1FA6EBA-3EAD-4D36-972F-90CBCD3F2730}C:\users\nil08\desktop\gxtool\boot_file\boot.exe" [In-None-P6-TRUE] .(...) -- C:\users\nil08\desktop\gxtool\boot_file\boot.exe (.not file.) O87 - FAEL: "UDP Query User{E72D8550-AA00-44F0-A6BC-58E086A9808B}C:\users\nil08\desktop\gxtool\boot_file\boot.exe" [In-None-P17-TRUE] .(...) -- C:\users\nil08\desktop\gxtool\boot_file\boot.exe (.not file.) O87 - FAEL: "TCP Query User{1A0ECD51-0807-4CDB-AFFB-46536A04A356}D:\cs 1.6 [2013] by pkn\hl.exe" [In-None-P6-TRUE] .(...) -- D:\cs 1.6 [2013] by pkn\hl.exe (.not file.) O87 - FAEL: "UDP Query User{A2698A36-FD81-4C22-9143-17C8C8508D02}D:\cs 1.6 [2013] by pkn\hl.exe" [In-None-P17-TRUE] .(...) -- D:\cs 1.6 [2013] by pkn\hl.exe (.not file.) O87 - FAEL: "TCP Query User{948328CF-E9E5-4DB1-9A1C-9E9200E5746C}G:\hlds.exe" [In-None-P6-TRUE] .(...) -- G:\hlds.exe (.not file.) O87 - FAEL: "UDP Query User{487D1863-D302-4E62-8F84-AD25EAEE0CBD}G:\hlds.exe" [In-None-P17-TRUE] .(...) -- G:\hlds.exe (.not file.) ---\\ Scan Additionnel (11) - 0s C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\oursurfing uninstall =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B67BAFBA-4C9F-48FA-9496-933E3B255044} =>Riskware.QuickTime HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\oursurfing uninstall =>PUP.Optional.OurSurfing HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B67BAFBA-4C9F-48FA-9496-933E3B255044} =>Riskware.QuickTime HKLM\SOFTWARE\Wow6432Node\SupDp =>PUP.Optional.SupTab HKCU\SOFTWARE\APN PIP =>.Superfluous.Conduit C:\Program Files (x86)\QuickTime =>Riskware.QuickTime C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS C:\Users\nil08\AppData\Roaming\SSN =>PUP.Optional.SaveSerpNow ---\\ Récapitulatif des éléments trouvés sur votre station (6) - 0s http://www.nicolascoolman.info/2016/05/04/hacktool-autokms/ =>HackTool.AutoKMS http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.OurSurfing http://www.nicolascoolman.info/2016/04/21/riskware-quicktime/ =>Riskware.QuickTime http://www.nicolascoolman.fr/?p=297 =>PUP.Optional.SupTab http://www.nicolascoolman.fr/?p=210 =>.Superfluous.Conduit http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.SaveSerpNow ~ End of the scan, 37662 items in 00h06mn25s (1023)(0)