~ ZHPDiag v2016.6.18.105 Par Nicolas Coolman (2016/06/18) ~ Démarré par hp (Administrator) (2016/06/22 18:19:32) ~ Site: http://www.nicolascoolman.com ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\hp\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 10586) ---\\ Navigateurs Internet (2) - 0s GCIE: Google Chrome v51.0.2704.103 MSIE: Internet Explorer v11.420.10586.0 ---\\ Informations sur les produits Windows (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (1) - 23s Windows Defender (Activate) ---\\ Informations sur le système (6) - 0s ~ Operating System: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3770.644 MB (54% free) System Restore: Activé (Enable) System drive C: has 212 GB () free of 288 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC ~ User Name: hp ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 2s ~ Drive C: has 212 GB free of 288 GB (System) ~ Drive D: has 1 GB free of 15 GB ~ Drive E: has GB free of 0 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.E15BEB03592BA12C5C99E2BA46146BDD] - 28/05/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4515264] =>.Microsoft Windows® [MD5.0DCB89B1F3689BC6262FF30BBD603171] - 30/10/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] =>.Microsoft Corporation [MD5.C1C81AAF533552B3C4D9F11A5FF97700] - 23/04/2016 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [291360] =>.Microsoft Windows Publisher® [MD5.75CC21C976BFF286E706AA2D133EB9D4] - 28/05/2016 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2755584] =>.Microsoft Corporation [MD5.5C156EC4E44E30331BCC865A3B61D839] - 23/04/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [585728] =>.Microsoft Corporation [MD5.9EEAA1B69DC3FD620AE576CC8F4147DC] - 30/10/2015 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] =>.Microsoft Corporation [MD5.9A3E17CDB177913C2A111C80F3D0DBB4] - 29/03/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [686976] =>.Microsoft Windows® [MD5.6A7ACABAE92C837F5C1330188EAE36AE] - 29/03/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [535080] =>.Microsoft Windows® [MD5.CE50037751671682D1FDBBE7C9B37F4A] - 30/10/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.70148EFA9A562E7185B75BBE7D376BF7] - 05/11/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [578912] =>.Microsoft Windows® [MD5.492B99D2E3D5D7BFD5F0AE1BE7BD37DD] - 30/10/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] =>.Microsoft Windows® [MD5.7F9C7226D743B232907ED2537B8A574F] - 30/10/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] =>.Microsoft Corporation [MD5.82D97776BF982AA143BDC7DFB5054EA8] - 30/10/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [173568] =>.Microsoft Corporation [MD5.935823F79CBEDB91637B63D37E3A5A36] - 29/03/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [148480] =>.Microsoft Corporation [MD5.84BC034B6BB763733C1949B7B9BAF976] - 30/10/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [79872] =>.Microsoft Corporation [MD5.53FDD9E69189E546DE4740F8C4D8AB2F] - 30/10/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] =>.Microsoft Corporation [MD5.9E5E8F2A1996F23B7E9687846AA81B01] - 30/10/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] =>.Microsoft Corporation [MD5.0B3B0C1D86050355676640488FA897D3] - 23/02/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [430944] =>.Microsoft Windows® [MD5.C03E926B0E7D66D68994067231DC3246] - 28/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [278528] =>.Microsoft Corporation [MD5.19BD8A88AAC580592668B070AC0727D9] - 29/03/2016 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2152280] =>.Microsoft Windows® [MD5.7D0FC96264C0F8F2C1321E33E8EB646C] - 30/10/2015 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] =>.Microsoft Corporation [MD5.E3C82823B22463BC38AA4F8ADA852624] - 23/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] =>.Microsoft Corporation [MD5.1DC2CC74B51E4DC4CD5A20C1021E4010] - 30/10/2015 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [173056] =>.Microsoft Corporation [MD5.91D3F2A6253EF83EFBD7903028F58C4D] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [118624] =>.Microsoft Windows® [MD5.E1F91A727A04C9F8199D04FF3BBBF63C] - 30/10/2015 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [414560] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (10) - 14s O23 - Service: (ADSkipSvc) . (. - ADSkip 32 Bit Application.) - C:\Program Files (x86)\ADSKIP\ADSkipSvc.exe {11AE41C83CE032AEB9711D21E8900AF9} O23 - Service: Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc. O23 - Service: Bonjour-service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Link Frame (dixedywuzbt) . (...) - C:\Program Files (x86)\545C7A89-1465193392-FAB3-C032-D89D67CC09DC\knsd1A61.tmp (.not file.) =>PUP.Optional.CrossRider O23 - Service: MPC Core Protect Service (MPCProtectService) . (.DotC United Inc - MPC Protect Service.) - C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe =>.Superfluous.MPCCleaner O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV® O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare AppService.) - C:\Program Files (x86)\Wondershare\WAF\2.2.0.5\WsAppService.exe =>.Wondershare ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (17) - 174s SR - Auto [11/05/2016] [ 129144] (ADSkipSvc) . (...) - C:\Program Files (x86)\ADSKIP\ADSkipSvc.exe {11AE41C83CE032AEB9711D21E8900AF9} SR - Auto [18/11/2009] [ 98208] Andrea RT Filters Service (AERTFilters) . (.Andrea Electronics Corporation.) - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe =>.Andrea Electronics® SR - Auto [21/10/2015] [ 255472] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD SR - Auto [06/08/2012] [ 361984] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc. SR - Auto [30/08/2011] [ 462184] Bonjour-service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Demand [01/01/2016] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [01/01/2016] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [28/04/2015] [ 1102472] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SS - Demand [26/04/2016] [ 28552] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.Hewlett-Packard Company® SS - Demand [09/07/2012] [ 35232] HPWMISVC (HPWMISVC) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe =>.Hewlett-Packard Company® SS - Demand [14/07/2012] [ 2451456] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. SR - Auto [06/06/2016] [ 350688] MPC Core Protect Service (MPCProtectService) . (.DotC United Inc.) - C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe =>.Superfluous.MPCCleaner SR - Auto [28/04/2016] [ 253960] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Auto [13/07/2015] [ 93040] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV® SS - Auto [31/03/2016] [ 411648] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.2.0.5\WsAppService.exe =>.Wondershare SS - Demand [25/05/2016] [ 116368] Wondershare Driver Install Service (WsDrvInst) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\Dr.Fone for Android\DriverInstall.exe =>.Wondershare software CO., LIMITED® ---\\ Tâches planifiées en automatique (2) - 10s [MD5.00000000000000000000000000000000] [APT] [AdBlock] (...) -- AdBlock.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty O39 - APT: AdBlock - (...) -- C:\WINDOWS\System32\Tasks\AdBlock [3286] (.Orphan.) =>.Superfluous.Orphan ---\\ Processus lancés (22) - 9s [MD5.521248FA26458669BAAE6AB7DB21F3AC] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [255472] [PID.1172] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1876] =>.Apple Inc.® [MD5.8DE38AF0B0C159A6A4522051A4A69B40] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984] [PID.1884] =>.Advanced Micro Devices, Inc. [MD5.1B97AF3D24E4BD18952AD3F792402EF6] - (. - ADSkip 32 Bit Application.) -- C:\Program Files (x86)\ADSKIP\ADSkipSvc.exe [129144] [PID.1896] {11AE41C83CE032AEB9711D21E8900AF9} [MD5.D1E343BC00136CE03C4D403194D06A80] - (.Andrea Electronics Corporation - Andrea filters APO access service (64-bit).) -- C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208] [PID.1904] =>.Andrea Electronics® [MD5.0FE2FC59C0B9A3CA3EC2B18E1CCCF2DD] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [93040] [PID.2012] =>.TomTom International BV® [MD5.B811CD167596F904F68026058C293BD5] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [253960] [PID.1160] =>.Synaptics Incorporated® [MD5.E5F8E0143A8B64F2ED68674909B14075] - (.DotC United Inc - MPC Protect Service.) -- C:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688] [PID.1360] =>.Superfluous.MPCCleaner [MD5.88FBBB1C601A6BC42054E57C2897FA45] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] [PID.3836] =>.Google Inc® [MD5.B96BD9F5B2B0CD6549EE59FD242A6D56] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [683504] [PID.3100] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.0AF24553D8D4C581B7E2462269FF97AA] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954352] [PID.6680] =>.Synaptics Incorporated® [MD5.1FFA6109931746D9810778F628DF5CDE] - (.DotC United Inc - MPC Tray.) -- C:\Program Files (x86)\MPC Cleaner\MPCTray.exe [167392] [PID.6740] =>.Superfluous.MPCCleaner [MD5.32CFC37FA01EC93047E82555C6610B67] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [218808] [PID.4652] =>.Synaptics Incorporated® [MD5.AF04B6DDF123991C625472494BC1221C] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112] [PID.3920] =>.Realtek Semiconductor Corp® [MD5.028A1DBA1D2F9FAA6CECFBD6052928A3] - (. - ADSkip 32 Bit Application.) -- C:\Program Files (x86)\ADSKIP\ADSkip.exe [2807208] [PID.5536] {11AE41C83CE032AEB9711D21E8900AF9} [MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\CleanBrowser\app\bin\nw.exe [46344704] [PID.3960] =>.Superfluous.CleanBrowser [MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\CleanBrowser\app\bin\nw.exe [46344704] [PID.4168] =>.Superfluous.CleanBrowser [MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\CleanBrowser\app\bin\nw.exe [46344704] [PID.4780] =>.Superfluous.CleanBrowser [MD5.34B2C7330223936153E420910608CCBA] - (...) -- C:\Program Files (x86)\CleanBrowser\app\bin\nw.exe [46344704] [PID.7356] =>.Superfluous.CleanBrowser [MD5.C3EF139378171D8BB852BEB6E759B7F1] - (...) -- C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe [144384] [PID.9016] [MD5.61BAC510D29A8B0D2DF7E3C383593621] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [17920] [PID.9100] =>.Copyright Microsoft Corporation [MD5.FA59BB3FBF850907A676699B335C4271] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag3.exe [2219008] [PID.8764] =>.Nicolas Coolman ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 0s P2 - EXT: (...) -- C:\Users\hp\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 1s R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohumfa2edxzyc7yrkmgg5mj8dfx0x8nh1tyghl7y0_x-ggzjdyhuthydvqvxs82jt28g0wnqle9s-04urhla-hy3keoxwfzzw4jyeuti5zv165_dnf3hyd6ncymumpnwmn6zjlkrrdhxs3z1rvrienxqd0q59c1dhxd4tbvqww,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://g.uk.msn.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohumfa2edxzyc7yrkmgg5mj8dfx0x8nh1tyghl7y0_x-ggzjdyhuthydvqvxs82jt28g0wnqle9s-04urhla-hy3keoxwfzzw4jyeuti5zv165_dnf3hyd6ncymumpnwmn6zjlkrrdhxs3z1rvrienxqd0q59c1dhxd4tbvqww,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohumfa2edxzyc7yrkmgg5mj8dfx0x8nh1tyghl7y0_x-ggzjdyhuthydvqvxs82jt28g0wnqle9s-04urhla-hy3keoxwfzzw4jyeuti5zv165_dnf3hyd6ncymumpnwmn6zjlkrrdhxs3z1rvrienxqd0q59c1dhxd4tbvqww,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohumfa2edxzyc7yrkmgg5mj8dfx0x8nh1tyghl7y0_x-ggzjdyhuthydvqvxs82jt28g0wnqle9s-04urhla-hy3keoxwfzzw4jyeuti5zv165_dnf3hyd6ncymumpnwmn6zjlkrrdhxs3z1rvrienxqd0q59c1dhxd4tbvqww,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKEY_USERS\S-1-5-21-3822524679-2729506154-1840115479-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohumfa2edxzyc7yrkmgg5mj8dfx0x8nh1tyghl7y0_x-ggzjdyhuthydvqvxs82jt28g0wnqle9s-04urhla-hy3keoxwfzzw4jyeuti5zv165_dnf3hyd6ncymumpnwmn6zjlkrrdhxs3z1rvrienxqd0q59c1dhxd4tbvqww,,&q={searchterms} =>PUP.Optional.Linkury R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=wscript C:\WINDOWS\run.vbs F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (31) ---\\ Browser Helper Object de navigateur (BHO) (4) - 1s O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (Orphean) O2 - BHO: TSWebMon [64Bits] - {7C260B4B-F7A0-40B5-B403-BEFCDC6A4C3B} (Orphean) O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (Orphean) O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.HP - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll =>.Hewlett-Packard Company® ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: 0xE3EFEB7F196B494398D2FFB09D4B49CA003A050000 - [HKCU]{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} . (...) -- (.not file.) ---\\ Applications lancées au démarrage du système (6) - 1s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [SynTPEnh] . (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated® O4 - HKLM\..\Wow6432Node\Run: [PCFIXTRAYOKEBV] . (...) -- c:\pcfiXtraydnujt.lnk O4 - HKLM\..\Wow6432Node\RunOnce: [AdBlock2] (Orphean) O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® ---\\ Raccourcis Global Startup (35) - 20s O4 - GS\Desktop [Administrateur]: adsl TV.lnk . (.adsl TV / FM - adsl TV.) C:\Program Files (x86)\adslTV\adsltv.exe =>.adsl TV/FM (adsl prod)® O4 - GS\Desktop [Administrateur]: adwcleaner_5.200 - Raccourci.lnk . (.ToolsLib - AdwCleaner is a free Adware/PUP removal too.) C:\Users\hp\Downloads\adwcleaner_5.200.exe =>.ToolsLib® O4 - GS\Desktop [Administrateur]: Usenet.nl.lnk . (.Copyright © 2009 - Usenet.nl.) C:\Program Files (x86)\Usenet.nl\Usenet.nl.exe O4 - GS\Desktop [Administrateur]: XnViewMP.lnk . (.XnView, http://www.xnview.com - XnViewMP.) C:\Program Files (x86)\XnViewMP\xnviewmp.exe =>.XnView, http://www.xnview.com O4 - GS\Desktop [Administrateur]: Zattoo.lnk . (.Zattoo Inc. - Zattoo4.) C:\Program Files (x86)\Zattoo4\Zattoo.exe O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\hp\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: UC浏览器.lnk . (.UCWeb Inc. - UC浏览器.) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\Quicklaunch [Administrateur]: XnViewMP.lnk . (.XnView, http://www.xnview.com - XnViewMP.) C:\Program Files (x86)\XnViewMP\xnviewmp.exe =>.XnView, http://www.xnview.com O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: HP Utility Center.lnk . (.Hewlett-Packard Development Company, L.P. - HP Premium Utilities.) C:\Program Files (x86)\Hewlett-Packard\HP Utility Center\HPPU.exe =>.Hewlett-Packard Company® O4 - GS\Desktop [hp]: adsl TV.lnk . (.adsl TV / FM - adsl TV.) C:\Program Files (x86)\adslTV\adsltv.exe =>.adsl TV/FM (adsl prod)® O4 - GS\Desktop [hp]: adwcleaner_5.200 - Raccourci.lnk . (.ToolsLib - AdwCleaner is a free Adware/PUP removal too.) C:\Users\hp\Downloads\adwcleaner_5.200.exe =>.ToolsLib® O4 - GS\Desktop [hp]: Usenet.nl.lnk . (.Copyright © 2009 - Usenet.nl.) C:\Program Files (x86)\Usenet.nl\Usenet.nl.exe O4 - GS\Desktop [hp]: XnViewMP.lnk . (.XnView, http://www.xnview.com - XnViewMP.) C:\Program Files (x86)\XnViewMP\xnviewmp.exe =>.XnView, http://www.xnview.com O4 - GS\Desktop [hp]: Zattoo.lnk . (.Zattoo Inc. - Zattoo4.) C:\Program Files (x86)\Zattoo4\Zattoo.exe O4 - GS\Desktop [hp]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\hp\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [hp]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [hp]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [hp]: UC浏览器.lnk . (.UCWeb Inc. - UC浏览器.) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O4 - GS\Quicklaunch [hp]: XnViewMP.lnk . (.XnView, http://www.xnview.com - XnViewMP.) C:\Program Files (x86)\XnViewMP\xnviewmp.exe =>.XnView, http://www.xnview.com O4 - GS\TaskBar [hp]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [hp]: HP Utility Center.lnk . (.Hewlett-Packard Development Company, L.P. - HP Premium Utilities.) C:\Program Files (x86)\Hewlett-Packard\HP Utility Center\HPPU.exe =>.Hewlett-Packard Company® O4 - GS\CommonDesktop [Public]: Bezoek eBay.be.lnk . (.Copyright (C) 2008 - WizLink Application.) C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe O4 - GS\CommonDesktop [Public]: Connected Music powered by Universal Music Group.lnk . (.Copyright 2012 - HP Connected Music.) C:\Program Files (x86)\Connected Music powered by Universal Music Group\Connected Music powered by Universal Music Group.exe O4 - GS\CommonDesktop [Public]: CyberLink YouCam.lnk . (.CyberLink Corp. - YouCam.) C:\Program Files (x86)\CyberLink\YouCam\Youcam_webcam_camera_video.exe =>.CyberLink® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: HP Support Assistant.lnk . (.Hewlett-Packard Company - HP Support Assistant.) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe =>.Hewlett-Packard Company® O4 - GS\CommonDesktop [Public]: Photos Snapfish.lnk . (.Copyright (C) 2008 - WizLink Application.) C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe O4 - GS\CommonDesktop [Public]: Readon TV Movie Radio Player.lnk . (...) C:\WINDOWS\Installer\{80074966-5231-428D-9AE7-B7D5D2DC3246}\_55F11AB420338FF650F1F4.exe O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\CommonDesktop [Public]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) C:\Program Files (x86)\WinRAR\WinRAR.exe =>.win.rar GmbH® O4 - GS\CommonDesktop [Public]: ZedTV.lnk . (.zedsoft - ZedTV.) C:\Program Files (x86)\ZedTV\zedtv.exe =>.ZedSoft O4 - GS\Programs [Public]: UC浏览器.lnk . (.UCWeb Inc. - UC浏览器.) C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = coova.org O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 195.238.2.21 195.238.2.22 O17 - HKLM\System\CCS\Services\Tcpip\..\{aef9dab0-6cda-4505-b84f-4690ed48c78b}: DhcpNameServer = 195.238.2.21 195.238.2.22 O17 - HKLM\System\CCS\Services\Tcpip\..\{d0fe9b10-9d93-4ccd-8594-479063d90236}: DhcpNameServer = 10.106.12.27 O17 - HKLM\System\CCS\Services\Tcpip\..\{aef9dab0-6cda-4505-b84f-4690ed48c78b}: DhcpDomain = coova.org ---\\ Protocole additionnel (27) - 2s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation ---\\ Logiciels installés (66) - 59s O42 - Logiciel: ¿ìѹ - (.上海广乐网络科技有限公司.) [HKLM][64Bits] -- KuaiZip =>.Superfluous.Tencent O42 - Logiciel: 7-Zip 9.20 - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: Adobe Shockwave Player 11.6 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM][64Bits] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768} =>.adsl TV / FM O42 - Logiciel: AdsToolBar version 1.0584 - (...) [HKLM][64Bits] -- AdsToolBar_is1 O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} =>.Advanced Micro Devices Inc. O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM][64Bits] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: AMD Fuel - (.Uw bedrijfsnaam.) [HKLM][64Bits] -- {A79A9231-0A5A-9384-21D0-DB753C2BE59B} =>.Uw bedrijfsnaam O42 - Logiciel: AMD VISION Engine Control Center - (.Uw bedrijfsnaam.) [HKLM][64Bits] -- {CF8C33C1-C978-527D-E0AF-530882DEB146} =>.Uw bedrijfsnaam O42 - Logiciel: anote (v1.37) - (...) [HKCU][64Bits] -- {EB4165C3-2F3C-4449-8BBB-C7C9A0EFF79E} =>.北京鸿达万方科技有限公司® O42 - Logiciel: Body Text Feathering - (.Body Text Feathering.) [HKLM][64Bits] -- PopupProduct =>.Body Text Feathering O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: Compress - (...) [HKLM][64Bits] -- ZipTool O42 - Logiciel: Connected Music powered by Universal Music Group version 1.0 - (.Snowite.) [HKLM][64Bits] -- {46037DC7-F927-46DF-935F-D6F122BDD34B}_is1 =>.Snowite O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink® O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink® O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink® O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink® O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} =>.CyberLink® O42 - Logiciel: CyberLink PowerDVD - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} =>.CyberLink® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- {01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink® O42 - Logiciel: CyberLink YouCam - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D} =>.CyberLink® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: Energy Star - (.Hewlett-Packard.) [HKLM][64Bits] -- {0FA995CC-C849-4755-B14B-5404CC75DC24} =>.Hewlett-Packard O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.0.0 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {C9EF1AAF-B542-41C8-A537-1142DA5D4AEC} =>.Hewlett-Packard O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {8E7CB625-076C-4812-87B9-A2695C2CFABF} =>.Hewlett-Packard O42 - Logiciel: HP Postscript Converter - (.Hewlett-Packard.) [HKLM][64Bits] -- {6E14E6D6-3175-4E1A-B934-CAB5A86367CD} =>.Hewlett-Packard O42 - Logiciel: HP Quick Launch - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {4ED7050C-9332-4FB2-AB07-E94F25A53D39} =>.Hewlett-Packard Company O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {528AB81B-D65A-4AB0-A2B6-82B51A087D01} =>.Hewlett-Packard O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA} =>.Hewlett-Packard O42 - Logiciel: HP Software Framework - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {4983EBE7-5117-43C9-8DE1-FFEBFDBD35DB} =>.Hewlett-Packard Company O42 - Logiciel: HP Support Solutions Framework - (.HP.) [HKLM][64Bits] -- {C18278AC-049A-4F02-A97F-4FD7294CC4F5} =>.HP O42 - Logiciel: HP Utility Center - (.Hewlett-Packard.) [HKLM][64Bits] -- {0C57987A-A03A-4B95-A309-D23F78F406CA} =>.Hewlett-Packard O42 - Logiciel: HP Wireless Button Driver - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {941DE69D-6CEE-4171-8F1F-3D7E352AA498} =>.Hewlett-Packard Company O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Plex Media Server - (.Plex, Inc..) [HKLM][64Bits] -- {4083e0fa-f188-4146-a257-61608ff30764} =>.Plex, Inc.® O42 - Logiciel: Plex Media Server - (.Plex, Inc..) [HKLM][64Bits] -- {D25B8260-DE45-48FB-8858-29E665EFA8B4} =>.Plex, Inc. O42 - Logiciel: Ralink RT5390R 802.11bgn Wi-Fi Adapter - (.Ralink.) [HKLM][64Bits] -- {8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF} =>.Ralink Technology Corporation® O42 - Logiciel: Readon TV Movie Radio Player 7.6.0.0 - (.Readon Technology.) [HKLM][64Bits] -- {80074966-5231-428D-9AE7-B7D5D2DC3246} =>.Readon Technology O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: TomTom HOME - (.Nom de votre société.) [HKLM][64Bits] -- {5DCB2EB3-87AD-426E-8D74-8B92C9D731C4} O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} =>.TomTom International B.V. O42 - Logiciel: UC浏览器 - (.广州市动景计算机科技有限公司.) [HKLM][64Bits] -- UCBrowser =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O42 - Logiciel: Usenet.nl - (...) [HKLM][64Bits] -- Usenet.nl_is1 =>.TangySoft Ltd.® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.30 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wondershare Dr.Fone for Android(Build 6.1.0.26) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- {1DB91A95-C548-4BA5-9D4C-18C7DEAAC39F}_is1 =>.Wondershare software CO., LIMITED® O42 - Logiciel: XnViewMP 0.76 - (.Gougelet Pierre-e.) [HKLM][64Bits] -- XnViewMP_is1 =>.Gougelet Pierre-e O42 - Logiciel: Zattoo4 4.0.5 - (.Zattoo Inc..) [HKLM][64Bits] -- Zattoo4 O42 - Logiciel: ZedTV version 2.9.3 - (.zedsoft.) [HKLM][64Bits] -- {7B4E06B9-2FA4-4F3E-85C5-1DCF1BA4B999}_is1 =>.ZedSoft ---\\ HKCU & HKLM Software Keys (91) - 59s HKLM\SOFTWARE\Wow6432Node\7-Zip HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AMD HKLM\SOFTWARE\Wow6432Node\anote HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\como HKLM\SOFTWARE\Wow6432Node\CyberLink HKLM\SOFTWARE\Wow6432Node\Fav HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\Lake HKLM\SOFTWARE\Wow6432Node\Licenses HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MPC HKLM\SOFTWARE\Wow6432Node\MPC AdCleaner =>.Superfluous.MPCCleaner HKLM\SOFTWARE\Wow6432Node\mtQuoteex HKLM\SOFTWARE\Wow6432Node\Notepad++ HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\Ralink HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Reg HKLM\SOFTWARE\Wow6432Node\Symantec HKLM\SOFTWARE\Wow6432Node\UCBrowser HKLM\SOFTWARE\Wow6432Node\UCBrowserPID HKLM\SOFTWARE\Wow6432Node\VideoLAN HKLM\SOFTWARE\Wow6432Node\Volatile HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\Wow6432Node HKLM\SOFTWARE\Wow6432Node\XnViewMP HKLM\SOFTWARE\Wow6432Node\ZipTool HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\7-Zip HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\ATI HKCU\SOFTWARE\Bluetooth Driver Installer HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\CyberLink HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\Installer HKCU\SOFTWARE\InstallPath HKCU\SOFTWARE\KuaiZip HKCU\SOFTWARE\KuaiZipSFX HKCU\SOFTWARE\Licenses HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mine HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\mtQuoteex HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\Plex, Inc. HKCU\SOFTWARE\PopWnd HKCU\SOFTWARE\PrtScr HKCU\SOFTWARE\QGuan72564 HKCU\SOFTWARE\QGuan90132 HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\Reg HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Rtp HKCU\SOFTWARE\SNDA HKCU\SOFTWARE\Symantec HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\UCBrowser HKCU\SOFTWARE\UCBrowserPID HKCU\SOFTWARE\VB and VBA Program Settings HKCU\SOFTWARE\windows_utilities HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wizzlabs HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\XnView HKCU\SOFTWARE\Zattoo HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\ZipTool HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe HKCU\SOFTWARE\AppDataLow\Software\Norton ---\\ Contenu des dossiers Programmes (259) - 86s O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\AMD =>.Microsoft Windows Hardware Compatibility Publisher® O43 - CFD: 03/09/2014 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.® O43 - CFD: 03/09/2014 - [] AD -- C:\Program Files\ATI Technologies O43 - CFD: 03/09/2014 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.® O43 - CFD: 06/06/2016 - [] D -- C:\Program Files\Common Files O43 - CFD: 24/01/2016 - [0] SHD -- C:\Program Files\Fichiers communs O43 - CFD: 03/09/2014 - [] D -- C:\Program Files\Hewlett-Packard O43 - CFD: 21/06/2016 - [] D -- C:\Program Files\Internet Explorer O43 - CFD: 23/01/2016 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation® O43 - CFD: 19/01/2016 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\MSBuild O43 - CFD: 03/09/2014 - [] RD -- C:\Program Files\Online Services O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Realtek =>.Andrea Electronics® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Reference Assemblies O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 26/07/2012 - [0] HD -- C:\Program Files\Uninstall Information O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Defender O43 - CFD: 13/05/2016 - [] D -- C:\Program Files\Windows Journal O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Windows Mail O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\Windows Media Player O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\Windows Multimedia Platform O43 - CFD: 24/01/2016 - [] D -- C:\Program Files\Windows NT O43 - CFD: 30/10/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 17/03/2016 - [] D -- C:\Program Files\Windows Portable Devices O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files\Windows Sidebar O43 - CFD: 22/06/2016 - [] HD -- C:\Program Files\WindowsApps =>.Symantec Corporation® O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files\WindowsPowerShell O43 - CFD: 06/06/2016 - [] AD -- C:\Program Files\ZipTool {589DAFF5A2E11006D30F250FCEB95B37} O43 - CFD: 17/06/2016 - [] D -- C:\Program Files\¿ìѹ =>.Superfluous.Tencent O43 - CFD: 03/01/2016 - [] AD -- C:\Program Files (x86)\7-Zip O43 - CFD: 06/06/2016 - [] D -- C:\Program Files (x86)\ADSKIP {11AE41C83CE032AEB9711D21E8900AF9} O43 - CFD: 05/04/2016 - [] AD -- C:\Program Files (x86)\adslTV =>.adsl TV/FM (adsl prod)® O43 - CFD: 09/06/2016 - [] AD -- C:\Program Files (x86)\AdsToolBar O43 - CFD: 03/09/2014 - [] AD -- C:\Program Files (x86)\AMD APP O43 - CFD: 06/06/2016 - [] D -- C:\Program Files (x86)\anote =>.北京鸿达万方科技有限公司® O43 - CFD: 24/01/2016 - [] AD -- C:\Program Files (x86)\ATI Technologies O43 - CFD: 06/06/2016 - [] D -- C:\Program Files (x86)\badu O43 - CFD: 08/06/2016 - [0] D -- C:\Program Files (x86)\Bmotain O43 - CFD: 03/09/2014 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 21/06/2016 - [0] D -- C:\Program Files (x86)\Chulot O43 - CFD: 21/06/2016 - [] D -- C:\Program Files (x86)\CleanBrowser =>.Superfluous.CleanBrowser O43 - CFD: 21/06/2016 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 22/08/2012 - [] AD -- C:\Program Files (x86)\Connected Music powered by Universal Music Group O43 - CFD: 03/09/2014 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink® O43 - CFD: 22/06/2016 - [] HD -- C:\Program Files (x86)\DrFoneAndroid_Temp O43 - CFD: 01/01/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 27/03/2016 - [] AD -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard Company® O43 - CFD: 27/03/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.Macrovision Corporation® O43 - CFD: 21/06/2016 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 05/04/2016 - [0] D -- C:\Program Files (x86)\JLC's Software O43 - CFD: 05/04/2016 - [] D -- C:\Program Files (x86)\Kodi O43 - CFD: 27/05/2016 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation® O43 - CFD: 23/01/2016 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation® O43 - CFD: 19/01/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 22/08/2012 - [] AD -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 21/06/2016 - [] D -- C:\Program Files (x86)\MPC AdCleaner =>.Superfluous.MPCCleaner O43 - CFD: 21/06/2016 - [] D -- C:\Program Files (x86)\MPC Cleaner =>.Superfluous.MPCCleaner O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 24/03/2016 - [] D -- C:\Program Files (x86)\NortonInstaller O43 - CFD: 11/06/2016 - [] D -- C:\Program Files (x86)\Notepad++ O43 - CFD: 03/09/2014 - [] RD -- C:\Program Files (x86)\Online Services O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\Plex =>.Plex, Inc.® O43 - CFD: 08/06/2016 - [] D -- C:\Program Files (x86)\Puntehesy O43 - CFD: 05/04/2016 - [] D -- C:\Program Files (x86)\Readon Technology O43 - CFD: 03/09/2014 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 03/09/2014 - [] D -- C:\Program Files (x86)\SymSilent =>.Symantec Corporation® O43 - CFD: 03/09/2014 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 31/01/2016 - [] AD -- C:\Program Files (x86)\TomTom HOME 2 =>.TomTom International BV® O43 - CFD: 31/01/2016 - [] D -- C:\Program Files (x86)\TomTom International B.V O43 - CFD: 08/06/2016 - [] D -- C:\Program Files (x86)\Totisp O43 - CFD: 07/06/2016 - [] D -- C:\Program Files (x86)\UCBrowser =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O43 - CFD: 01/06/2016 - [] AD -- C:\Program Files (x86)\Usenet.nl =>.TangySoft Ltd.® O43 - CFD: 03/01/2016 - [] D -- C:\Program Files (x86)\VideoLAN O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 22/08/2012 - [] AD -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation® O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 17/03/2016 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows NT O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation® O43 - CFD: 17/03/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 30/10/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 30/10/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 23/01/2016 - [] AD -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 22/06/2016 - [] D -- C:\Program Files (x86)\Wondershare O43 - CFD: 03/01/2016 - [] AD -- C:\Program Files (x86)\XnViewMP O43 - CFD: 05/04/2016 - [] D -- C:\Program Files (x86)\Zattoo4 O43 - CFD: 05/04/2016 - [] AD -- C:\Program Files (x86)\ZedTV O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat O43 - CFD: 06/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Compress O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink LabelPrint O43 - CFD: 27/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 30/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight O43 - CFD: 22/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plex Media Server O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 30/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC O43 - CFD: 31/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom O43 - CFD: 01/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Usenet.nl O43 - CFD: 05/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 24/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 22/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnViewMP O43 - CFD: 05/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZedTV O43 - CFD: 06/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\腾讯软件 O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\AMD O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\Apple O43 - CFD: 24/01/2016 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\ATI O43 - CFD: 24/01/2016 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 03/09/2014 - [0] SHD -- C:\ProgramData\Bureaublad O43 - CFD: 10/06/2016 - [] D -- C:\ProgramData\CloudPrinter O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms O43 - CFD: 10/01/2016 - [] D -- C:\ProgramData\CyberLink O43 - CFD: 06/06/2016 - [] D -- C:\ProgramData\did O43 - CFD: 03/09/2014 - [0] SHD -- C:\ProgramData\Documenten O43 - CFD: 24/01/2016 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 29/03/2016 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 20/02/2016 - [] D -- C:\ProgramData\HP O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\install_clap O43 - CFD: 06/06/2016 - [] D -- C:\ProgramData\kingsoft O43 - CFD: 24/01/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 03/09/2014 - [0] SHD -- C:\ProgramData\Menu Start O43 - CFD: 24/01/2016 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 23/01/2016 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 24/01/2016 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 24/03/2016 - [] D -- C:\ProgramData\Norton O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\NortonInstaller O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\PassMark O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\PRICache O43 - CFD: 09/06/2016 - [] D -- C:\ProgramData\Quoteex O43 - CFD: 06/06/2016 - [] D -- C:\ProgramData\Quoteexs O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\Ralink Driver O43 - CFD: 05/04/2016 - [] D -- C:\ProgramData\Readon O43 - CFD: 27/05/2016 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 16/06/2016 - [] D -- C:\ProgramData\RogueKiller O43 - CFD: 03/09/2014 - [0] SHD -- C:\ProgramData\Sjablonen O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 03/09/2014 - [] D -- C:\ProgramData\Temp O43 - CFD: 31/01/2016 - [] D -- C:\ProgramData\TomTom O43 - CFD: 09/06/2016 - [] D -- C:\ProgramData\TXQMPC O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\USOShared O43 - CFD: 22/06/2016 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 22/08/2012 - [] D -- C:\ProgramData\{BE4DD016-EE56-4AC8-9832-69281423A3D4} O43 - CFD: 03/09/2014 - [] D -- C:\Program Files (x86)\Common Files\CyberLink O43 - CFD: 27/05/2016 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 03/09/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield O43 - CFD: 27/05/2016 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared O43 - CFD: 30/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 11/06/2016 - [] D -- C:\Program Files (x86)\Common Files\SuperEx O43 - CFD: 24/03/2016 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared O43 - CFD: 24/01/2016 - [] D -- C:\Program Files (x86)\Common Files\System O43 - CFD: 22/08/2012 - [] D -- C:\Program Files (x86)\Common Files\Windows Live O43 - CFD: 03/09/2014 - [] D -- C:\Users\hp\AppData\Roaming\Adobe O43 - CFD: 22/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\ADSKIP O43 - CFD: 03/09/2014 - [] D -- C:\Users\hp\AppData\Roaming\ATI O43 - CFD: 10/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\CyberLink O43 - CFD: 09/06/2016 - [0] D -- C:\Users\hp\AppData\Roaming\DJ6kR O43 - CFD: 09/06/2016 - [0] D -- C:\Users\hp\AppData\Roaming\dX5gq O43 - CFD: 01/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\Hewlett-Packard O43 - CFD: 27/03/2016 - [] D -- C:\Users\hp\AppData\Roaming\hpqlog O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\InstallShield O43 - CFD: 05/04/2016 - [0] D -- C:\Users\hp\AppData\Roaming\JLC's Software O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\kingsoft O43 - CFD: 03/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\Kodi O43 - CFD: 16/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Kuaizip O43 - CFD: 01/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\Macromedia O43 - CFD: 11/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\MCorp O43 - CFD: 27/05/2016 - [] SD -- C:\Users\hp\AppData\Roaming\Microsoft O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Mozilla O43 - CFD: 08/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Notepad++ O43 - CFD: 06/06/2016 - [0] D -- C:\Users\hp\AppData\Roaming\Softlink O43 - CFD: 03/09/2014 - [] D -- C:\Users\hp\AppData\Roaming\Synaptics O43 - CFD: 31/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\TomTom O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\UPUpdata O43 - CFD: 03/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Usenet.nl O43 - CFD: 15/05/2016 - [] D -- C:\Users\hp\AppData\Roaming\vlc O43 - CFD: 23/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\WinRAR O43 - CFD: 22/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Wondershare O43 - CFD: 08/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\XGTV0 O43 - CFD: 05/04/2016 - [] D -- C:\Users\hp\AppData\Roaming\XnViewMP O43 - CFD: 22/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\ZHP O43 - CFD: 08/06/2016 - [] D -- C:\Users\hp\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108 O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Local\545C7A89-1465238196-FAB3-C032-D89D67CC09DC O43 - CFD: 09/06/2016 - [] D -- C:\Users\hp\AppData\Local\545C7A89-1465463203-FAB3-C032-D89D67CC09DC O43 - CFD: 09/06/2016 - [] D -- C:\Users\hp\AppData\Local\545C7A89-1465498244-FAB3-C032-D89D67CC09DC O43 - CFD: 17/06/2016 - [] D -- C:\Users\hp\AppData\Local\545C7A89-1466198704-FAB3-C032-D89D67CC09DC O43 - CFD: 24/01/2016 - [0] D -- C:\Users\hp\AppData\Local\ActiveSync O43 - CFD: 20/04/2016 - [] D -- C:\Users\hp\AppData\Local\adslTV O43 - CFD: 03/09/2014 - [] D -- C:\Users\hp\AppData\Local\AMD O43 - CFD: 21/06/2016 - [] D -- C:\Users\hp\AppData\Local\app =>PUP.Optional.CrossRider O43 - CFD: 24/01/2016 - [0] SHD -- C:\Users\hp\AppData\Local\Application Data O43 - CFD: 01/01/2016 - [] D -- C:\Users\hp\AppData\Local\Apps O43 - CFD: 03/09/2014 - [] D -- C:\Users\hp\AppData\Local\ATI O43 - CFD: 11/05/2016 - [] D -- C:\Users\hp\AppData\Local\Comms O43 - CFD: 20/06/2016 - [] D -- C:\Users\hp\AppData\Local\CrashDumps O43 - CFD: 10/01/2016 - [] D -- C:\Users\hp\AppData\Local\CyberLink O43 - CFD: 18/06/2016 - [] D -- C:\Users\hp\AppData\Local\Diagnostics O43 - CFD: 31/01/2016 - [] D -- C:\Users\hp\AppData\Local\Downloaded Installations O43 - CFD: 23/05/2016 - [0] D -- C:\Users\hp\AppData\Local\ElevatedDiagnostics O43 - CFD: 01/01/2016 - [] D -- C:\Users\hp\AppData\Local\Google O43 - CFD: 02/04/2016 - [] D -- C:\Users\hp\AppData\Local\Hewlett-Packard O43 - CFD: 24/01/2016 - [0] SHD -- C:\Users\hp\AppData\Local\Historique O43 - CFD: 27/01/2016 - [] D -- C:\Users\hp\AppData\Local\Microsoft O43 - CFD: 25/01/2016 - [] D -- C:\Users\hp\AppData\Local\MicrosoftEdge O43 - CFD: 24/01/2016 - [0] D -- C:\Users\hp\AppData\Local\NetworkTiles O43 - CFD: 22/06/2016 - [] D -- C:\Users\hp\AppData\Local\node-webkit O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Local\Packages O43 - CFD: 04/06/2016 - [] D -- C:\Users\hp\AppData\Local\Plex Media Server O43 - CFD: 03/09/2014 - [] D -- C:\Users\hp\AppData\Local\Power2Go8 O43 - CFD: 03/01/2016 - [] D -- C:\Users\hp\AppData\Local\Programs O43 - CFD: 24/01/2016 - [] D -- C:\Users\hp\AppData\Local\Publishers O43 - CFD: 11/05/2016 - [] D -- C:\Users\hp\AppData\Local\quicklz.com_outssider O43 - CFD: 05/04/2016 - [] D -- C:\Users\hp\AppData\Local\Readon_Technology O43 - CFD: 22/06/2016 - [] D -- C:\Users\hp\AppData\Local\Temp O43 - CFD: 24/01/2016 - [0] SHD -- C:\Users\hp\AppData\Local\Temporary Internet Files O43 - CFD: 24/01/2016 - [] D -- C:\Users\hp\AppData\Local\TileDataLayer O43 - CFD: 31/01/2016 - [] D -- C:\Users\hp\AppData\Local\TomTom O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Local\UCBrowser O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Local\VirtualStore O43 - CFD: 05/04/2016 - [] D -- C:\Users\hp\AppData\Local\Zattoo O43 - CFD: 03/01/2016 - [0] D -- C:\Users\hp\AppData\Local\Programs\Common O43 - CFD: 30/10/2015 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 24/01/2016 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 21/06/2016 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 05/04/2016 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV O43 - CFD: 05/04/2016 - [0] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JLC's Software O43 - CFD: 30/10/2015 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 21/06/2016 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 30/10/2015 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UC浏览器 O43 - CFD: 30/10/2015 - [] RSD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 24/01/2016 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 05/04/2016 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zattoo4 O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\¶à²Ê±ãÇ© O43 - CFD: 06/06/2016 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\腾讯软件 O43 - CFD: 11/06/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing O43 - CFD: 31/01/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft O43 - CFD: 0 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 2s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\hp\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileSyncShell.dll =>.Microsoft Corporation® ---\\ Liste des pilotes du système (63) - 29s O58 - SDL:2015/10/30 09:17:22 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:22 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:22 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:22 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:22 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] =>.Microsoft Windows® O58 - SDL:2012/07/23 23:35:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\WINDOWS\System32\drivers\amd_sata.sys [79528] =>.Advanced Micro Devices, Inc.® O58 - SDL:2012/07/23 23:35:12 A . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\WINDOWS\System32\drivers\amd_xata.sys [26280] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/10/30 09:17:22 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] =>.Microsoft Windows® O58 - SDL:2016/05/11 07:31:13 A . (...) -- C:\WINDOWS\System32\drivers\askProtect64.sys [208776] {11AE41C83CE032AEB9711D21E8900AF9} O58 - SDL:2012/07/17 18:59:12 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdW86.sys [98472] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/10/21 03:14:48 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [21648880] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/10/21 03:14:46 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [674288] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/10/30 09:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2015/10/30 09:17:22 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2016/05/11 07:56:01 N . (. - ADSkip.) -- C:\WINDOWS\System32\drivers\blNetFilter.sys [54664] {11AE41C83CE032AEB9711D21E8900AF9} O58 - SDL:2015/10/30 09:17:22 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2012/06/25 10:24:50 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [92536] =>.CyberLink® O58 - SDL:2015/10/30 09:17:22 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:22 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:18 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation O58 - SDL:2015/10/30 09:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [165888] =>.Intel Corporation O58 - SDL:2015/10/30 09:17:18 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2015/10/30 09:17:18 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2012/08/01 12:22:00 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] =>.Intel Corporation® O58 - SDL:2015/10/30 09:17:22 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:22 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] =>.Microsoft Windows® O58 - SDL:2016/06/11 18:15:30 A . (.WinMount International Inc - WinMount Driver for x64.) -- C:\WINDOWS\System32\drivers\KuaiZipDrive.sys [92872] =>.Superfluous.Tencent O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108888] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] =>.Microsoft Windows® O58 - SDL:2016/06/06 08:35:26 A . (.DotC United Inc - MPC Driver.) -- C:\WINDOWS\System32\drivers\MPCKpt.sys [60136] =>.Superfluous.MPCCleaner O58 - SDL:2015/10/30 09:17:23 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:18 A . (.MediaTek Inc. - MediaTek 802.11 Wireless Adapter Driver.) -- C:\WINDOWS\System32\drivers\netr28x.sys [2504192] =>.MediaTek Inc. O58 - SDL:2015/10/30 09:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] =>.Microsoft Windows® O58 - SDL:2015/09/25 07:29:44 A . (.QUALCOMM Incorporated - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\qcusbser.sys [252448] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/10/30 09:17:23 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [589824] =>.Realtek O58 - SDL:2012/06/20 02:54:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4065296] =>.Realtek Semiconductor Corp® O58 - SDL:2012/07/04 00:09:08 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsP2Stor.sys [269968] =>.Realtek Semiconductor Corp® O58 - SDL:2015/10/30 09:17:23 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2012/08/24 10:38:26 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [41272] =>.Synaptics Incorporated® O58 - SDL:2016/04/28 00:53:48 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [52392] =>.Synaptics Incorporated® O58 - SDL:2012/08/24 10:38:28 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [43832] =>.Synaptics Incorporated® O58 - SDL:2016/04/28 00:53:48 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [52904] =>.Synaptics Incorporated® O58 - SDL:2015/10/30 09:17:23 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2016/04/28 00:53:48 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [622784] =>.Synaptics Incorporated® O58 - SDL:2016/06/17 18:56:16 A . (...) -- C:\WINDOWS\System32\drivers\TrueSight.sys [28272] =>.Adlice® O58 - SDL:2016/06/06 10:27:56 A . (.Huorong Borui (Beijing) Technology Co., Ltd. - Huorong Network Security Core Kext.) -- C:\WINDOWS\System32\drivers\ucguard.sys [81792] =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O58 - SDL:2012/06/19 04:07:50 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\WINDOWS\System32\drivers\usbfilter.sys [57000] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/10/30 09:17:23 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] =>.Microsoft Windows® O58 - SDL:2015/10/30 09:17:23 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] =>.Microsoft Windows® O58 - SDL:2012/08/03 14:07:30 A . (.Hewlett-Packard Development Company, L.P. - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [20288] =>.Hewlett-Packard Company® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (9) - 3472s O61 - LFC: 2016/06/22 18:24:52 A . (.Copyright (C) 2015.) -- C:\Users\hp\AppData\Roaming\Kuaizip\KuaizipSetup_jiuzhuan_001.exe [635704] {30D3C167265B520CB87F25844F95CB04} O61 - LFC: 2016/06/22 05:14:47 A . (.上海广乐网络科技有限公司. Copyright 2010-2013.) -- C:\Users\hp\AppData\Roaming\Kuaizip\KuaiZip_Setup.exe [7846328] {43730490130E3331C7A5D978F426E9A0} O61 - LFC: 2016/06/22 11:54:25 A . (..) -- C:\Users\hp\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192] O61 - LFC: 2016/06/22 14:07:10 A . (..) -- C:\Users\hp\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\UrlBlock\urlblock_636021910606347135.bin [125833] O61 - LFC: 2016/06/22 18:16:55 A . (..) -- C:\Users\hp\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148] O61 - LFC: 2016/06/16 05:31:03 A . (..) -- C:\Users\hp\AppData\Local\Microsoft\Windows\INetCache\IE\YQ930K4E\windows_utilities[1].exe [873204] O61 - LFC: 2016/06/17 18:31:13 A . (..) -- C:\Users\hp\AppData\Local\Microsoft\Windows\INetCache\IE\EX0EC8WY\windows_utilities[1].exe [873204] O61 - LFC: 2016/06/19 12:16:39 A . (..) -- C:\Users\hp\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_636019249961158711.bin [126761] O61 - LFC: 2016/06/17 21:25:34 A . (..) -- C:\Users\hp\AppData\Local\545C7A89-1466198704-FAB3-C032-D89D67CC09DC\Uninstall.exe [51270] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.TAOBAO (CHINA) SOFTWARE CO.,LTD.® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.UCWeb Inc. - UC浏览器.) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe =>.UCWeb Inc. ---\\ Recherche d'infection sur les navigateurs (8) - 1s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {0644EE93-D778-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (MPC Safe Search) - http://search.mpc.am/index/search?q={searchTerms}&cx=partner-pub-3796753109442372:3837783968&ie=UTF-8 =>.Superfluous.MPCCleaner O69 - SBI: SearchScopes [HKCU] {B43ABAD3-BD6E-40F0-975A-17ACED801BB7} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/ O69 - SBI: SearchScopes [HKCU] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKCU] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ O69 - SBI: SearchScopes [HKLM] {B43ABAD3-BD6E-40F0-975A-17ACED801BB7} - (Propositions de recherche Amazon.fr) - http://www.amazon.fr/ O69 - SBI: SearchScopes [HKLM] {b7fca997-d0fb-4fe0-8afd-255e89cf9671} - (Yahoo) - http://fr.search.yahoo.com/ =>.Yahoo Search O69 - SBI: SearchScopes [HKLM] {D944BB61-2E34-4DBF-A683-47E505C587DC} - (eBay) - http://rover.ebay.com/ ---\\ Enumère les services démarrés par Svchost (41) - 5s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192000] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [283136] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1339904] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [957952] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [963072] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [94720] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [112640] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [997376] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [225280] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [134656] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [372736] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [96256] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\system32\dcpsvc.dll [186880] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2057216] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [207360] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\system32\RDXService.dll [1073152] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [27136] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [106496] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [696320] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [507904] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73216] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [456704] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [311808] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2281472] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1144320] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [608768] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [361472] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1035776] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [368640] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1139712] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [278016] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [205824] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [912384] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [948736] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (4) - 14s O87 - FAEL: "{BEC45D23-EC5D-41B0-8F89-A3C454D43E73}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\ADSKIP\ADSkipSvc.exe {11AE41C83CE032AEB9711D21E8900AF9} O87 - FAEL: "{A4AA22BE-70E3-4EED-B5FE-A5483303B3D3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\ADSKIP\ADSkip.exe {11AE41C83CE032AEB9711D21E8900AF9} O87 - FAEL: "{EF68919B-A73C-45DD-A672-480BDF56F40C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\ADSKIP\ADSkip.exe {11AE41C83CE032AEB9711D21E8900AF9} O87 - FAEL: "{AFAC3003-43B5-4E40-8A85-69BFF103D085}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\ADSKIP\ADSkipSvc.exe {11AE41C83CE032AEB9711D21E8900AF9} ---\\ Scan Additionnel (7) - 0s HKLM\SYSTEM\CurrentControlSet\Services\dixedywuzbt =>PUP.Optional.CrossRider C:\Program Files (x86)\CleanBrowser\app\bin\nw.exe =>.Superfluous.CleanBrowser HKLM\SOFTWARE\Wow6432Node\MPC AdCleaner =>.Superfluous.MPCCleaner C:\Program Files (x86)\CleanBrowser =>.Superfluous.CleanBrowser C:\Program Files (x86)\MPC AdCleaner =>.Superfluous.MPCCleaner C:\Users\hp\AppData\Local\app =>PUP.Optional.CrossRider HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0644EE93-D778-472f-A0FF-E1416B8B2E3A} =>.Superfluous.MPCCleaner ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s https://www.nicolascoolman.info/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider http://www.nicolascoolman.fr/superfluous-mpccleaner/ =>.Superfluous.MPCCleaner http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CleanBrowser http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Linkury http://www.nicolascoolman.fr/?p=368 =>.Superfluous.Tencent ~ End of the scan, 160263 items in 01h42mn19s (829)(0)