~ ZHPDiag v2017.2.5.23 Par Nicolas Coolman (2017/02/05) ~ Démarré par cedric (Administrator) (2017/02/04 23:43:58) ~ Web: https://www.nicolascoolman.com ~ Blog: https://www.anti-malware.top ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\cedric\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\cedric\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8, 64-bit (Build 9200) =>.Microsoft Corporation ---\\ Navigateurs Internet (3) - 0s ~ GCIE: Google Chrome v55.0.2883.87 ~ MFIE: Mozilla Firefox 51.0.1 (x86 fr) ~ MSIE: Internet Explorer v10.0.9200.17607 ---\\ Informations sur les produits Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (1) - 6s Windows Defender W8 (Deactivate) ---\\ Surveillance de Logiciels (2) - 8s ~ Adobe Flash Player 24 NPAPI (Surveillance) ~ Adobe Reader 9.2 (Surveillance) ---\\ Logiciels de partage P2P (2) - 9s ~ µTorrent v2.2.1 (P2P) ~ µTorrent v3.4.5.41202 (P2P) ---\\ Informations sur le système (6) - 0s ~ Operating System: AMD64 Family 20 Model 2 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 5843.204 MB (61% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 291 GB (41%) free of 697 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: RAPTOR ~ User Name: cedric ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 291 GB free of 697 GB (System) ~ Drive D: has GB free of 3 GB ---\\ Etat du Centre de Sécurité Windows (11) - 1s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 7s [MD5.0E8E6463F81C80AFBED533E0F1F8895D] - 01/06/2013 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2391280] =>.Microsoft Windows® [MD5.3A6209AC494296C24C2065CB4392B5F4] - 25/07/2012 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [51712] =>.Microsoft Corporation [MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - 25/07/2012 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [132608] =>.Microsoft Corporation [MD5.513A0BEDC45862E8D89B52B272F0B4A3] - 14/12/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2240000] =>.Microsoft Corporation [MD5.88B4DA29CF8C3628F3647447FD5CDAE5] - 16/11/2015 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [578048] =>.Microsoft Corporation [MD5.9448F5740A037EC0C18F0E9177232DD0] - 25/07/2012 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [273408] =>.Microsoft Corporation [MD5.7904C03BF9C0C0337563FFAA97D0ACE8] - 08/10/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [623616] =>.Microsoft Corporation [MD5.0BE9606A1175C7400ED862991453A847] - 08/10/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [458240] =>.Microsoft Corporation [MD5.65AA2DE8787146679BB8A7D14BFFB6A3] - 15/09/2012 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [18944] =>.Microsoft Corporation [MD5.8252EE6D7F87846EA409D0DA602FB1D9] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [576512] =>.Microsoft Corporation [MD5.A721FF570C2387E383BDDEA9632863C9] - 25/07/2012 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [25840] =>.Microsoft Windows® [MD5.990B1BABE6E81FB18E65A87EBEFB1772] - 25/07/2012 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [108544] =>.Microsoft Corporation [MD5.339BFF85D788268752DA8C9644B188EE] - 25/07/2012 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [174080] =>.Microsoft Corporation [MD5.431141C6859990824D17F71C30A78728] - 15/01/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [118784] =>.Microsoft Corporation [MD5.58CC013EFA9893057160EDA018D8ADCE] - 15/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [71168] =>.Microsoft Corporation [MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - 25/07/2012 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [112640] =>.Microsoft Corporation [MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - 25/07/2012 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [145920] =>.Microsoft Corporation [MD5.6BA2A5D1C74E7CB3AFAF301A7E5D9E44] - 06/01/2015 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [403456] =>.Microsoft Corporation [MD5.7CEC25C682D319D484630B3952C31A11] - 25/07/2012 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [331776] =>.Microsoft Corporation [MD5.7BE3EDFFA3216F989A6BDCB14795DD08] - 26/01/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1939288] =>.Microsoft Windows® [MD5.4563DAF8C6A740AD7F501E219BD10766] - 25/07/2012 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [105984] =>.Microsoft Corporation [MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - 25/07/2012 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [124928] =>.Microsoft Corporation [MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - 25/07/2012 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [179712] =>.Microsoft Corporation [MD5.217AEE5DAE1BEF81A1E9A184C4C0BF6A] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [129024] =>.Microsoft Corporation [MD5.AA37946941ED3805AB3A924965907147] - 04/07/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [328000] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (9) - 1s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe =>.AMD O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc. O23 - Service: (Archer) . (...) - C:\Program Files (x86)\WinArcher\Archer.dll =>PUP.Optional.Youndoo O23 - Service: (GubedZL) . (...) - C:\Program Files (x86)\Gubed\GubedZL.dll =>.Superfluous.Elex O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® O23 - Service: Protexis Licensing V2 x64 (PSI_SVC_2_x64) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® O23 - Service: (WinSAPSvc) . (...) - C:\ProgramData\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (25) - 81s SS - Demand [10/01/2017] [ 270936] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [17/04/2014] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe =>.AMD SR - Auto [17/04/2014] [ 344064] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc. SR - Auto [04/02/2017] [ 437248] (Archer) . (...) - C:\Program Files (x86)\WinArcher\Archer.dll =>PUP.Optional.Youndoo SS - Demand [05/01/2012] [ 75624] Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) . (.Alcohol Soft Development Team.) - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe =>.Alcohol Soft® SS - Demand [08/10/2015] [ 437880] BlueStacks Android Service (BstHdAndroidSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-Service.exe =>.Bluestack Systems, Inc.® SS - Demand [08/10/2015] [ 417400] BlueStacks Log Rotator Service (BstHdLogRotatorSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe =>.Bluestack Systems, Inc.® SS - Demand [08/10/2015] [ 855672] BlueStacks Updater Service (BstHdUpdaterSvc) . (.BlueStack Systems, Inc..) - C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe =>.Bluestack Systems, Inc.® SR - Demand [30/07/2012] [ 466064] Device Fast-lane Service (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe =>.Acer Incorporated® SS - Demand [21/08/2012] [ 348784] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® SS - Demand [31/07/2012] [ 659600] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated® SR - Auto [04/02/2017] [ 118272] (GubedZL) . (...) - C:\Program Files (x86)\Gubed\GubedZL.dll =>.Superfluous.Elex SS - Auto [29/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [12/07/2012] [ 2451456] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realsil Microelectronics Inc. SS - Demand [28/03/2012] [ 140456] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® SS - Demand [04/02/2017] [ 526848] iThemes5 (iThemes5) . (...) - C:\Program Files (x86)\Common Files\Services\iThemes.dll =>Adware.Mikey SR - Auto [09/10/2015] [ 2934048] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe =>.IObit Information Technology® SS - Demand [14/07/2014] [ 786256] C:\Program Files (x86)\Nero\Update\NASvc.exe,-200 (NAUpdate) . (.Nero AG.) - C:\Program Files (x86)\Nero\Update\NASvc.exe =>.Nero AG® SR - Auto [30/11/2010] [ 336824] Protexis Licensing V2 x64 (PSI_SVC_2_x64) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® SS - Demand [14/09/2012] [ 93296] Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.® SS - Demand [03/08/2015] [ 4606976] SafeIPS (SafeIPS) . (.SafeIP.) - C:\Program Files (x86)\SafeIP\SafeIPS.exe =>.SafeIP SS - Demand [18/02/2015] [ 315488] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [18/02/2015] [ 315488] WIN-srvGA (WIN-srvGA) . (...) - C:\Windows\SysWOW64\srvany.exe =>Trojan.Downloader SR - Auto [18/02/2015] [ 315488] (WinSAPSvc) . (...) - C:\ProgramData\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo ---\\ Tâches planifiées en automatique (25) - 11s O39 - APT: Unknown - (.Adobe Inc..) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [315488] =>.Adobe Inc. O39 - APT: Unknown - (.IObit.) -- C:\Windows\Tasks\Uninstaller_SkipUac_cedric.job [315488] =>.IObit O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\79ac0a9c-21c5-4bb4-b091-6d30796f4b90-5_user [315488] =>PUP.Optional.CrossRider O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\79ac0a9c-21c5-4bb4-b091-6d30796f4b90-7 [315488] =>PUP.Optional.CrossRider O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\9097m98u69q1590 [315488] O39 - APT: Unknown - (.Adobe Inc..) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [315488] =>.Adobe Inc. O39 - APT: Unknown - (.Adobe Inc..) -- C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-raptor-cedric [315488] =>.Adobe Inc. O39 - APT: Unknown - (.IObit.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [315488] =>.IObit O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\FGRun [315488] O39 - APT: Unknown - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [315488] =>.Google Inc. O39 - APT: Unknown - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [315488] =>.Google Inc. O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\Milimili [315488] O39 - APT: Unknown - (.Acer Inc..) -- C:\Windows\System32\Tasks\Power Management [315488] =>.Acer Inc. O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_333138393934343434352d78782345572a4a3441325057 [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UNELEVATE_11682 [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UNELEVATE_14450 [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\UNELEVATE_16428 [315488] O39 - APT: Unknown - (.IObit.) -- C:\Windows\System32\Tasks\Uninstaller_SkipUac_cedric [315488] =>.IObit O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{04BA24DD-D30F-44D7-8A6D-D43B6A30936F} [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{7FA935BD-3177-412E-9E7C-EBE6B204CAE2} [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{87377D18-4B6C-4BFE-91FD-1CB92B60FA99} [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{A4B9F1EF-8AB4-4BB1-AA11-3F11C7D3CF52} [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{BF6F09C6-EFD1-4D62-96F7-82BEE90BDAF5} [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{D0656588-3BB2-4469-BA2A-B271BFDF3039} [315488] O39 - APT: Unknown - (...) -- C:\Windows\System32\Tasks\{FFA9968D-7F0A-488C-AE43-EEEA852B3AF0} [315488] ---\\ Applications lancées au démarrage du système (9) - 1s O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe =>.Alps Electric Co., LTD.® O4 - HKCU\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\cedric\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc® O4 - HKCU\..\Run: [HydraVisionDesktopManager] . (.AMD - HydraDM.) -- C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe =>.AMD O4 - HKCU\..\Run: [LOP3APXD8D] . (.XCZ - JHXA.) -- C:\Program Files\Q1AE07SUTO\X4Y00BODN.exe O4 - HKCU\..\Run: [7209UXOKVI] . (.XCZ - JHXA.) -- C:\Program Files\BRVGZSSXQG\PY7PZYL0E.exe O4 - HKUS\S-1-5-21-1910232626-965630664-352363840-1001\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\cedric\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc® O4 - HKUS\S-1-5-21-1910232626-965630664-352363840-1001\..\Run: [HydraVisionDesktopManager] . (.AMD - HydraDM.) -- C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe =>.AMD O4 - HKUS\S-1-5-21-1910232626-965630664-352363840-1001\..\Run: [LOP3APXD8D] . (.XCZ - JHXA.) -- C:\Program Files\Q1AE07SUTO\X4Y00BODN.exe O4 - HKUS\S-1-5-21-1910232626-965630664-352363840-1001\..\Run: [7209UXOKVI] . (.XCZ - JHXA.) -- C:\Program Files\BRVGZSSXQG\PY7PZYL0E.exe ---\\ Processus lancés (29) - 4s [MD5.00000000000000000000000000000000] - (. - Processus d’exécution client-serveur.) -- C:\Windows\System32\csrss.exe [0] [PID.452] [MD5.00000000000000000000000000000000] - (. - Processus d’exécution client-serveur.) -- C:\Windows\System32\csrss.exe [0] [PID.548] [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [0] [PID.836] =>.AMD [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [0] [PID.584] =>.AMD [MD5.E47998CD4E41916CE185AE262AFC83D0] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064] [PID.1596] =>.Advanced Micro Devices, Inc. [MD5.5100AE7C075C9436E9DD45F96A4A74FC] - (.IObit - Product Updater.) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2934048] [PID.1672] =>.IObit Information Technology® [MD5.788CB65D49D1162C5EE6814AFE5B0A70] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [336824] [PID.1784] =>.Arvato Digital Services Canada Inc® [MD5.01B1E0F46CA45319742F87D566FD7EEB] - (...) -- C:\Windows\Temp\g4D5.tmp.exe [240640] [PID.2204] =>Heuristic.Suspect [MD5.ABEFA4BD23329FD9BD47496BF2E58774] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456] [PID.2524] =>.Realsil Microelectronics Inc. [MD5.FE40EC349D80C0ED24A5808DCFE9A0D2] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe [288920] [PID.2608] =>.Google Inc® [MD5.B5C7D56B6DB76C66E24B4B735BB66509] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe [366232] [PID.2620] =>.Google Inc® [MD5.F5143A7CA66EB913B5463BED3D3DD8D2] - (.DT Soft Ltd - DAEMON Tools Shell Extensions Helper.) -- C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe [3120448] [PID.3820] =>.DT Soft Ltd® [MD5.732C7347A6B2D8F0FF2DF21BC82D0024] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Apoint.exe [650648] [PID.4268] =>.Alps Electric Co., LTD.® [MD5.78E70968C04DE6C85541CF70F8CF4E78] - (.AMD - HydraDM.) -- C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616] [PID.4312] =>.AMD [MD5.EA7F2C2FB7ADCE02025240EC347D9576] - (.XCZ - JHXA.) -- C:\Program Files\Q1AE07SUTO\X4Y00BODN.exe [370688] [PID.4384] [MD5.EA7F2C2FB7ADCE02025240EC347D9576] - (.XCZ - JHXA.) -- C:\Program Files\BRVGZSSXQG\PY7PZYL0E.exe [370688] [PID.4536] [MD5.3B0225762248647A5EF882B4DA91E6F0] - (.AMD - HydraDMH64.) -- C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe [27136] [PID.4624] =>.AMD [MD5.BC0A3C03E1DF23746F999F0576690B75] - (.Alps Electric Co., Ltd. - ApMsgFwd.) -- C:\Program Files\Apoint2K\ApMsgFwd.exe [69968] [PID.4884] =>.Alps Electric Co., LTD.® [MD5.1B0E5412AB8F30B8ED2AEAC2C530EB90] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\Apoint2K\Hidfind.exe [98672] [PID.4912] =>.Alps Electric Co., LTD.® [MD5.FD97807051658AE27799BE3A557D3776] - (.Alps Electric Co., Ltd. - Alps Pointing-device Driver for Windows NT/.) -- C:\Program Files\Apoint2K\ApntEx.exe [29552] [PID.4920] =>.Alps Electric Co., LTD.® [MD5.6EC5098678F3E8724A9F3E151031FEDE] - (.Acer Incorporated - DeviceFastLaneSvc.) -- C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe [466064] [PID.112] =>.Acer Incorporated® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4068] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4632] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.468] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4804] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.2364] =>.Google Inc® [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4936] =>.Google Inc® [MD5.80C904642CFB450E11404BDCE6CA9844] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\cedric\Desktop\Downloads\ZHPDiag3.exe [2660352] [PID.4416] =>.Nicolas Coolman [MD5.92B29E6BE97F5B2C5894904D1447BBFE] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [935768] [PID.4980] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (17) - 1s G2 - GCE: Preference [User Data\Default] [agoenciogemlojlhccbcpcfflicgnaak] BIODIGITAL HUMAN G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] [https://epicunitscan.info/00service/update2/crx] Google Chrome manifest =>Hijacker.Browser G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ajax.googleapis.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://mail.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Docs =>.Legitimate G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. ---\\ Comodo Dragon, Démarrage,Recherche,Extensions (18) - 1s C2 - CDE: Preference [User Data\Default] [agkocbbjgcfpodcpdfpenidadocpcmlj] C2 - CDE: Preference [User Data\Default] [aneddidibfifdpbeppmpoackniodpekj] C2 - CDE: Preference [User Data\Default] [cjnchmnibjgahjddkmcjnpggieehlpjd] save on =>PUP.Optional.SaveOn C2 - CDE: Preference [User Data\Default] [diofbihhlmhdllnaofhjabgpnckgogpm] GoSave =>PUP.Optional.GoSave C2 - CDE: Preference [User Data\Default] [encaiiljifbdbjlphpgpiimidegddhic] C2 - CDE: Preference [User Data\Default] [fnfnbeppfinmnjnjhedifcfllpcfgeea] Browse Coupon C2 - CDE: Preference [User Data\Default] [hfnbehapkchcccdlphffoehfekkocldm] Poricechopp =>PUP.Optional.PriceChop C2 - CDE: Preference [User Data\Default] [jbjdfjboenmlkmmonbdeeklokloliphb] MySearch C2 - CDE: Preference [User Data\Default] [kfphhfdokdamioolhjfdohhkodbieida] C2 - CDE: Preference [User Data\Default] [kjepeiijmflchkjgfjpopeimafiognkc] C2 - CDE: Preference [User Data\Default] [kkocmgaoibklfmejhklahodlookklfjk] C2 - CDE: Preference [User Data\Default] [lalfbopdcggfdchjfgkhgnifhippfnco] C2 - CDE: Preference [User Data\Default] [lmhacemfmaapnkiehojbhmclmdnhjhfn] C2 - CDE: Preference [User Data\Default] [lokojgmpnakopmmgkbebafijkjmjkhni] prricechOp =>PUP.Optional.PriceChop C2 - CDE: Preference [User Data\Default] [mihcahmgecmbnbcchbopgniflfhgnkff] C2 - CDE: Preference [User Data\Default] [pbehfadkcijpckdbnlkjfdfjklccoelo] pricEichop =>PUP.Optional.PriceChop C2 - CDE: Preference [User Data\Default] [pbffpbffjfiigoledmkcibcbadpbenec] C2 - CDE: Preference [User Data\Default] [pokdhgmfiahbddloocllpbjkdobcihjj] savee oon =>PUP.Optional.SaveOn ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 4s P2 - EXT FILE: (.Ghostery - __MSG_short_description__.) -- C:\Users\cedric\AppData\Roaming\Mozilla\Firefox\Profiles\t827svv9.default\extensions\firefox@ghostery.com.xpi =>.Ghostery P2 - EXT: (...) -- C:\Users\cedric\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam P2 - EXT: (.Alexey Mukienko> - Adult Blocker.) -- C:\Users\cedric\AppData\Roaming\Mozilla\Firefox\Profiles\t827svv9.default\extensions\adultblocker@myxa.org.ua P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_194.dll =>.Adobe Systems Incorporated P2 - FPN: [HKLM] [@microsoft.com/Lync,version=15.0] - (.Microsoft.) -- C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll =>.Microsoft ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (11) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (26) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: ExplorerWnd Helper [64Bits] - {10921475-03CE-4E04-90CE-E2E7EF20C814} (.Orphan.) O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Raccourcis Global Startup (138) - 24s O4 - GS\Desktop [Administrateur]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: Calculette - € - FF - XPF - Raccourci.lnk . (...) C:\Program Files (x86)\Travail\Calculette - € - FF - XPF.exe O4 - GS\Desktop [Administrateur]: Captvty - Raccourci.lnk . (...) C:\Users\cedric\Desktop\captvty-2.3.10.1\Captvty.exe O4 - GS\Desktop [Administrateur]: CCleaner64.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\Desktop [Administrateur]: chrome - Raccourci.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory="Default" =>.Google Inc® O4 - GS\Desktop [Administrateur]: chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: EXCEL - Raccourci.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office15\EXCEL.EXE =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: fba64 - Raccourci.lnk . (.Team FB Alpha - Emulator for arcade games.) C:\Users\cedric\Documents\emulateur\fba64_029731\fba64.exe O4 - GS\Desktop [Administrateur]: firefox - Raccourci.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\Desktop [Administrateur]: Fusion - Raccourci.lnk . (...) C:\Users\cedric\Documents\emulateur\Fusion_3.64_Fr\Fusion.exe O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: mainapp - Raccourci.lnk . (.EA - Salt Lake - Madden NFL 08.) C:\Program Files (x86)\EA SPORTS\Madden NFL 08\mainapp.exe O4 - GS\Desktop [Administrateur]: MSPUB - Raccourci.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office15\MSPUB.EXE =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: Project64 - Raccourci.lnk . (...) C:\Program Files (x86)\Project64 2.1\Project64.exe O4 - GS\Desktop [Administrateur]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group® O4 - GS\Desktop [Administrateur]: SafeIP.lnk . (.SafeIP - .) C:\Program Files (x86)\SafeIP\SafeIP.exe =>.My Privacy Tools, Inc.® O4 - GS\Desktop [Administrateur]: SkyrimLauncher - Raccourci.lnk . (.Bethesda Softworks - Skyrim Launcher.) C:\Program Files (x86)\The Elder Scrolls V Skyrim\SkyrimLauncher.exe =>.Bethesda Softworks O4 - GS\Desktop [Administrateur]: SkyrimLаunсher - Raсcourci.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.rehcnualmiryks.bat O4 - GS\Desktop [Administrateur]: snes9x-x64 - Raccourci.lnk . (.http://www.snes9x.com - Snes9X.) C:\Users\cedric\Documents\emulateur\Snes9x_1.53_64_Bits_Fr\snes9x-x64.exe O4 - GS\Desktop [Administrateur]: Texmod - Raccourci.lnk . (...) C:\Users\cedric\Documents\fichier original madden 08\Texmod.exe O4 - GS\Desktop [Administrateur]: TheWalkingDead2.lnk . (.Telltale Games - .) C:\Program Files (x86)\The Walking Dead Season 2\TheWalkingDead2.exe =>.Telltale Games O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\cedric\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Gооgle Сhrоmе.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.emorhc.bat O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Lаunch Internеt Exрlоrer Browser.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.emorhc.bat O4 - GS\Quicklaunch [Administrateur]: Microsoft Outlook.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle =>.Microsoft Corporation O4 - GS\Quicklaunch [Administrateur]: SafeIP.lnk . (.SafeIP - .) C:\Program Files (x86)\SafeIP\SafeIP.exe =>.My Privacy Tools, Inc.® O4 - GS\Quicklaunch [Administrateur]: Samsung Kies 3.lnk . (.Samsung - Kies.) C:\Program Files (x86)\Samsung\Kies3\Kies3.exe =>.Samsung Electronics CO., LTD.® O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\cedric\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: File Explorer.lnk . (...) C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Libraries O4 - GS\TaskBar [Administrateur]: Packard Bell Device Fast-lane.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneUI.exe =>.Acer Incorporated O4 - GS\TaskBar [Administrateur]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated O4 - GS\Programs [Administrateur]: CyberGhost 6.lnk . (...) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Intеrnet Еxрlorеr.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.erolpxei.bat O4 - GS\Programs [Administrateur]: SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) C:\Users\cedric\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Start Tor Browser.lnk . (...) C:\Users\cedric\Desktop\Tor Browser\Browser\firefox.exe O4 - GS\Programs [Administrateur]: Stаrt Tor Browser.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.xoferif.bat O4 - GS\Programs [Administrateur]: TomsInstaller.lnk . (.Internet software - Application Setup.) C:\Users\cedric\Desktop\Downloads\TomsInstaller.exe {05B8DC1B7B5897B627456007B89CEDFB} O4 - GS\Desktop [cedric]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation® O4 - GS\Desktop [cedric]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Desktop [cedric]: Calculette - € - FF - XPF - Raccourci.lnk . (...) C:\Program Files (x86)\Travail\Calculette - € - FF - XPF.exe O4 - GS\Desktop [cedric]: Captvty - Raccourci.lnk . (...) C:\Users\cedric\Desktop\captvty-2.3.10.1\Captvty.exe O4 - GS\Desktop [cedric]: CCleaner64.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd O4 - GS\Desktop [cedric]: chrome - Raccourci.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory="Default" =>.Google Inc® O4 - GS\Desktop [cedric]: chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [cedric]: EXCEL - Raccourci.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office15\EXCEL.EXE =>.Microsoft Corporation O4 - GS\Desktop [cedric]: fba64 - Raccourci.lnk . (.Team FB Alpha - Emulator for arcade games.) C:\Users\cedric\Documents\emulateur\fba64_029731\fba64.exe O4 - GS\Desktop [cedric]: firefox - Raccourci.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\Desktop [cedric]: Fusion - Raccourci.lnk . (...) C:\Users\cedric\Documents\emulateur\Fusion_3.64_Fr\Fusion.exe O4 - GS\Desktop [cedric]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [cedric]: mainapp - Raccourci.lnk . (.EA - Salt Lake - Madden NFL 08.) C:\Program Files (x86)\EA SPORTS\Madden NFL 08\mainapp.exe O4 - GS\Desktop [cedric]: MSPUB - Raccourci.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office15\MSPUB.EXE =>.Microsoft Corporation O4 - GS\Desktop [cedric]: Project64 - Raccourci.lnk . (...) C:\Program Files (x86)\Project64 2.1\Project64.exe O4 - GS\Desktop [cedric]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exe =>.VS Revo Group® O4 - GS\Desktop [cedric]: SafeIP.lnk . (.SafeIP - .) C:\Program Files (x86)\SafeIP\SafeIP.exe =>.My Privacy Tools, Inc.® O4 - GS\Desktop [cedric]: SkyrimLauncher - Raccourci.lnk . (.Bethesda Softworks - Skyrim Launcher.) C:\Program Files (x86)\The Elder Scrolls V Skyrim\SkyrimLauncher.exe =>.Bethesda Softworks O4 - GS\Desktop [cedric]: SkyrimLаunсher - Raсcourci.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.rehcnualmiryks.bat O4 - GS\Desktop [cedric]: snes9x-x64 - Raccourci.lnk . (.http://www.snes9x.com - Snes9X.) C:\Users\cedric\Documents\emulateur\Snes9x_1.53_64_Bits_Fr\snes9x-x64.exe O4 - GS\Desktop [cedric]: Texmod - Raccourci.lnk . (...) C:\Users\cedric\Documents\fichier original madden 08\Texmod.exe O4 - GS\Desktop [cedric]: TheWalkingDead2.lnk . (.Telltale Games - .) C:\Program Files (x86)\The Walking Dead Season 2\TheWalkingDead2.exe =>.Telltale Games O4 - GS\Desktop [cedric]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\cedric\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [cedric]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [cedric]: Gооgle Сhrоmе.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.emorhc.bat O4 - GS\Quicklaunch [cedric]: Launch Internet Explorer Browser.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [cedric]: Lаunch Internеt Exрlоrer Browser.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.emorhc.bat O4 - GS\Quicklaunch [cedric]: Microsoft Outlook.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office15\OUTLOOK.EXE /recycle =>.Microsoft Corporation O4 - GS\Quicklaunch [cedric]: SafeIP.lnk . (.SafeIP - .) C:\Program Files (x86)\SafeIP\SafeIP.exe =>.My Privacy Tools, Inc.® O4 - GS\Quicklaunch [cedric]: Samsung Kies 3.lnk . (.Samsung - Kies.) C:\Program Files (x86)\Samsung\Kies3\Kies3.exe =>.Samsung Electronics CO., LTD.® O4 - GS\Quicklaunch [cedric]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\cedric\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [cedric]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [cedric]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [cedric]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [cedric]: File Explorer.lnk . (...) C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Libraries O4 - GS\TaskBar [cedric]: Packard Bell Device Fast-lane.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneUI.exe =>.Acer Incorporated O4 - GS\TaskBar [cedric]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated O4 - GS\Programs [cedric]: CyberGhost 6.lnk . (...) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe O4 - GS\Programs [cedric]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [cedric]: Intеrnet Еxрlorеr.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.erolpxei.bat O4 - GS\Programs [cedric]: SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) C:\Users\cedric\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [cedric]: Start Tor Browser.lnk . (...) C:\Users\cedric\Desktop\Tor Browser\Browser\firefox.exe O4 - GS\Programs [cedric]: Stаrt Tor Browser.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.xoferif.bat O4 - GS\Programs [cedric]: TomsInstaller.lnk . (.Internet software - Application Setup.) C:\Users\cedric\Desktop\Downloads\TomsInstaller.exe {05B8DC1B7B5897B627456007B89CEDFB} O4 - GS\CommonDesktop [Public]: Adobe Reader 9.lnk . (.Adobe Systems Incorporated - Adobe Reader 9.2.) C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Beast Boxing Turbo.lnk . (...) C:\Program Files (x86)\Beast Boxing Turbo\BeastBoxingTurbo.exe O4 - GS\CommonDesktop [Public]: Canon Quick Menu.lnk . (.CANON INC. - Canon Quick Menu.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.® O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe =>.IObit Information Technology® O4 - GS\CommonDesktop [Public]: Samsung Kies 3.lnk . (.Samsung - Kies.) C:\Program Files (x86)\Samsung\Kies3\Kies3.exe =>.Samsung Electronics CO., LTD.® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}\SkypeIcon.exe =>.Skype Technologies O4 - GS\CommonDesktop [Public]: Start BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks StartLauncher.) C:\Program Files (x86)\BlueStacks\HD-StartLauncher.exe =>.Bluestack Systems, Inc.® O4 - GS\CommonDesktop [Public]: Stаrt ВlueStaсks.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.rehcnualtrats-dh.bat O4 - GS\Programs [Public]: CyberGhost 6.lnk . (...) C:\Program Files (x86)\CyberGhost 6\CyberGhost.exe O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Intеrnet Еxрlorеr.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.erolpxei.bat O4 - GS\Programs [Public]: SkyDrive.lnk . (.Microsoft Corporation - Microsoft SkyDrive.) C:\Users\cedric\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Start Tor Browser.lnk . (...) C:\Users\cedric\Desktop\Tor Browser\Browser\firefox.exe O4 - GS\Programs [Public]: Stаrt Tor Browser.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.xoferif.bat O4 - GS\Programs [Public]: TomsInstaller.lnk . (.Internet software - Application Setup.) C:\Users\cedric\Desktop\Downloads\TomsInstaller.exe {05B8DC1B7B5897B627456007B89CEDFB} O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Application Manager.lnk . (.Adobe Systems Incorporated - Adobe Application Manager.) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe --appletID=CCM_UI --appletVersion=1.0 --workflow=CCM_workflow_launch =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2014.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2014.) C:\Program Files\Adobe\Adobe Photoshop CC 2014\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Reader 9.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-A92000000001}\SC_Reader.ico =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Gоoglе Chrоmе.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.emorhc.bat O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: IObit Uninstaller.lnk . (.IObit - Uninstall Programs.) C:\Program Files (x86)\IObit\IObit Uninstaller\Uninstaler_SkipUac.exe =>.IObit Information Technology® O4 - GS\ProgramsCommon [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.exe O4 - GS\ProgramsCommon [Public]: Packard bell User's Manual.lnk . (...) C:\OEM\Preload\AutoRun\GUI\Packard Bell User's Manual\00\User_Manual.pdf O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: The Walking Dead Season 2.lnk . (.Telltale Games - .) C:\Program Files (x86)\The Walking Dead Season 2\TheWalkingDead2.exe =>.Telltale Games O4 - GS\ProgramsCommon [Public]: The Walking Dead Survival Instinct.lnk . (.Terminal Reality Inc. - The Walking Dead : Survival Instinct(TM).) C:\Program Files (x86)\The Walking Dead Survival Instinct\WalkingDead.exe O4 - GS\ProgramsCommon [Public]: The Walking Dead.lnk . (.Telltale Games - .) C:\Program Files (x86)\The Walking Dead\WalkingDead101.exe =>.Telltale Games O4 - GS\ProgramsCommon [Public]: WildTangent Games App - packardbell.lnk . (...) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp packardbelllt O4 - GS\ProgramsCommon [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Мozillа Firеfox.lnk . (...) C:\Users\cedric\AppData\Roaming\Browsers\exe.xoferif.bat ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{F9D611D2-4A6F-4168-BF28-9583C27D99C2}: DhcpDomain = lan =>.Local Domain ---\\ Protocole additionnel (27) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: livecall [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: msnim [64Bits] - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation® O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: skype4com [64Bits] - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} . (.Skype Technologies - Skype4COM.) -- C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll =>.Skype Software Sarl® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlmailhtml [64Bits] - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation® O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Enumère les données de BootExecute (1) - 0s O34 - HKLM BootExecute: (C:\Program Files\AVAST Software\Avast) ---\\ Logiciels installés (136) - 50s O42 - Logiciel: µTorrent - (..) [HKLM][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 9.20 - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} =>.Igor Pavlov O42 - Logiciel: Adobe Flash Player 24 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop CC 2014 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {D7A4F897-B20A-42D0-862D-CB5F6DB7391D} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Reader 9.2 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1033-7B44-A92000000001} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: ALPS Touch Pad Driver - (.Alps Electric.) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.® O42 - Logiciel: AMD APP SDK Runtime - (.Advanced Micro Devices Inc..) [HKLM][64Bits] -- {503F672D-6C84-448A-8F8F-4BC35AC83441} =>.Advanced Micro Devices Inc. O42 - Logiciel: AMD Catalyst Control Center - (.ATI Technologies.) [HKLM][64Bits] -- {D37C1AFD-4B44-12B5-B833-1AA7725C32A4} =>.ATI Technologies O42 - Logiciel: AMD Fuel - (.Advanced Micro Devices Inc.) [HKLM][64Bits] -- {7EE0022B-77A5-4008-BA8E-69C26F5C9955} =>.Advanced Micro Devices Inc O42 - Logiciel: Assistant Mise à niveau de Windows 10 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft Corporation® O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Atheros Communications Inc. O42 - Logiciel: Beast Boxing Turbo - (..) [HKLM][64Bits] -- Beast Boxing Turbo_is1 O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent =>.BitTorrent Inc® O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- {D7E3588F-25E6-4A93-8B1C-596F7951CA38} =>.BlueStack Systems, Inc. O42 - Logiciel: Canon Easy-WebPrint EX - (..) [HKLM][64Bits] -- Easy-WebPrint EX =>.Canon Inc.® O42 - Logiciel: Canon IJ Scan Utility - (.‪Canon Inc.‬.) [HKLM][64Bits] -- Canon_IJ_Scan_Utility =>.Canon Inc.® O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM][64Bits] -- CANONIJPLM100 =>.Canon Inc.® O42 - Logiciel: Canon MG2200 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG2200_series =>.Canon Inc. O42 - Logiciel: Canon MG2200 series On-screen Manual - (.Canon Inc..) [HKLM][64Bits] -- Canon MG2200 series On-screen Manual =>.Canon Inc.® O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM][64Bits] -- CanonMyPrinter =>.Canon Inc.® O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu =>.Canon Inc.® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.® O42 - Logiciel: Corel PaintShop Pro X6 - (.Corel Corporation.) [HKLM][64Bits] -- _{166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D} =>.Corel Corporation® O42 - Logiciel: Corel PaintShop Pro X6 - (.Corel Corporation.) [HKLM][64Bits] -- {161AB62E-65D6-46E5-B3D8-2AC15D3B920B} =>.Corel Corporation O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: DAEMON Tools Pro - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Pro =>.DT Soft Ltd® O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {446CC8CE-0E90-44F7-ADD0-774B243EF090} =>.Microsoft Corporation O42 - Logiciel: GCompris Uninstall - (..) [HKLM][64Bits] -- GCompris O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {A0C18B96-AB79-46BD-8321-6FA83E6D25B9} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {166D1CB6-DD8A-40DD-9E25-4D31D2D6DE4D} =>.Corel Corporation O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM][64Bits] -- {3D9CB654-99AD-4301-89C6-0D12A790767C} =>.Packard Bell O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall =>.IObit Information Technology® O42 - Logiciel: IPM_PSP_COM - (.Corel Corporation.) [HKLM][64Bits] -- {164D34E1-0271-4960-8A26-E8990A302DB1} =>.Corel Corporation O42 - Logiciel: IPM_PSP_COM64 - (.Corel Corporation.) [HKLM][64Bits] -- {1678F86C-889D-4198-8249-F4625058256B} =>.Corel Corporation O42 - Logiciel: Java 8 Update 60 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218060F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM][64Bits] -- {400C31E4-796F-4E86-8FDC-C3C4FACC6847} =>.Microsoft Corporation O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM][64Bits] -- LManager =>.Dritek System Inc.® O42 - Logiciel: Madden NFL 08 - (.Electronic Arts.) [HKLM][64Bits] -- {A3BC1DBD-64D6-4EBC-0091-24C811662D40} =>.Electronic Arts O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {F2508213-9989-4E85-A078-72BE483917EF} =>.Microsoft Corporation O42 - Logiciel: Microsoft Games for Windows Marketplace - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CB0307C-565E-4441-86BE-0DF2E4FB828C} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft SkyDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- SkyDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {45CD67FD-3218-4207-A0A2-BC41245189E3} =>.Microsoft O42 - Logiciel: Minecraft Cracked - (.Microsoft Corporation.) [HKLM][64Bits] -- Minecraft Cracked =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 51.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 51.0.1 (x86 fr) =>.Mozilla O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT_amd64 - (.Microsoft.) [HKLM][64Bits] -- {D0B44725-3666-492D-BEF6-587A14BD9BD9} =>.Microsoft O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft O42 - Logiciel: NCIS Game - (.Ubisoft.) [HKLM][64Bits] -- {1211F510-803E-4FEF-A718-137AAE4DCC59} =>.Ubisoft O42 - Logiciel: Nero 12 Essentials OEM.a01 - (.Nero AG.) [HKLM][64Bits] -- {9BF0D9FE-9893-4647-81B9-17B7BEA4E6FD} =>.Nero AG O42 - Logiciel: Nero 2015 - (.Nero AG.) [HKLM][64Bits] -- {763EF8DC-4CC0-47CA-BE1C-BDE731462250} =>.Nero AG O42 - Logiciel: Nero Audio Pack 1 - (.Nero AG.) [HKLM][64Bits] -- {A7A0BF2E-31CC-49E3-9913-52C503EB969D} =>.Nero AG O42 - Logiciel: Nero BackItUp - (.Nero AG.) [HKLM][64Bits] -- {E70B2F2C-94D1-4287-B5B0-CBBE618E2652} =>.Nero AG O42 - Logiciel: Nero BackItUp 12 Essentials OEM.a01 - (.Nero AG.) [HKLM][64Bits] -- {B2B0EC73-AD4A-4716-A3DE-CEA8440B309B} =>.Nero AG O42 - Logiciel: Nero BackItUp Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {EF0D1292-8FC1-41BE-9740-DBC134F66415} =>.Nero AG O42 - Logiciel: Nero Blu-ray Player - (.Nero AG.) [HKLM][64Bits] -- {22124B84-93B2-4603-B212-146665E4B6B1} =>.Nero AG O42 - Logiciel: Nero Burning Core - (.Nero AG.) [HKLM][64Bits] -- {2B3D9A2C-581B-4CE4-B16A-82BB2A8A0A39} =>.Nero AG O42 - Logiciel: Nero Burning ROM - (.Nero AG.) [HKLM][64Bits] -- {B3756FCF-13D3-460B-88D5-33CB88CE6CFA} =>.Nero AG O42 - Logiciel: Nero ControlCenter - (.Nero AG.) [HKLM][64Bits] -- {ABC88553-8770-4B97-B43E-5A90647A5B63} =>.Nero AG O42 - Logiciel: Nero ControlCenter Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {C994C746-C6D0-4EBA-B09E-DF7B18381B69} =>.Nero AG O42 - Logiciel: Nero Core Components - (.Nero AG.) [HKLM][64Bits] -- {BEBEE34D-84A2-4EDD-8BEA-96CC54371263} =>.Nero AG O42 - Logiciel: Nero Device Updates - (.Nero AG.) [HKLM][64Bits] -- {ABA7F64A-8CEB-4B59-84D9-B4D98CCD32D4} =>.Nero AG O42 - Logiciel: Nero Disc Menus Basic - (.Nero AG.) [HKLM][64Bits] -- {E17BCB76-9924-4BD5-B6D6-50D3407B4E74} =>.Nero AG O42 - Logiciel: Nero Disc to Device - (.Nero AG.) [HKLM][64Bits] -- {6662156E-31EE-4A90-A49A-26E30BF7A6F2} =>.Nero AG O42 - Logiciel: Nero Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {29F67D84-3A70-456E-806A-52301B02070B} =>.Nero AG O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {6EEF61AB-CC0B-4917-A3F2-97902CD11073} =>.Nero AG O42 - Logiciel: Nero Express - (.Nero AG.) [HKLM][64Bits] -- {848A7C68-0ADC-4193-8A89-2CEA78E56A0C} =>.Nero AG O42 - Logiciel: Nero Express Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0708FF30-78C0-47B0-81F0-C84604DC769C} =>.Nero AG O42 - Logiciel: Nero Info - (.Nero AG.) [HKLM][64Bits] -- {B791E0AB-87A9-41A4-8D98-D13C2E37D928} =>.Nero AG O42 - Logiciel: Nero Kwik Themes Basic - (.Nero AG.) [HKLM][64Bits] -- {1B6F5E51-575E-4693-BCA2-7543570D076D} =>.Nero AG O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {0E4630AF-0AB7-440E-A978-1A78FC4F43B9} =>.Nero AG O42 - Logiciel: Nero Launcher - (.Nero AG.) [HKLM][64Bits] -- {9D780839-6E97-4E2A-A5F7-711AF221B609} =>.Nero AG O42 - Logiciel: Nero MediaHome - (.Nero AG.) [HKLM][64Bits] -- {0215ACE5-DEC8-4486-A3EA-B8B08A6CF5FD} =>.Nero AG O42 - Logiciel: Nero PiP Effects Basic - (.Nero AG.) [HKLM][64Bits] -- {ACE49D50-19CD-44A6-B192-46F985283B26} =>.Nero AG O42 - Logiciel: Nero Recode - (.Nero AG.) [HKLM][64Bits] -- {0B67C0D3-AE80-40A0-8727-32D22230A693} =>.Nero AG O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {38BC5B60-4E70-470A-AE76-E06C15700C68} =>.Nero AG O42 - Logiciel: Nero RescueAgent - (.Nero AG.) [HKLM][64Bits] -- {A2D43081-CF7B-4637-A9F3-E2651AA5C4A8} =>.Nero AG O42 - Logiciel: Nero RescueAgent Help (CHM) - (.Nero AG.) [HKLM][64Bits] -- {0B311221-05A5-4766-8D03-7A6446794156} =>.Nero AG O42 - Logiciel: Nero SharedVideoCodecs - (.Nero AG.) [HKLM][64Bits] -- {2432E589-6256-4513-B0BF-EFA8E325D5F0} =>.Nero AG O42 - Logiciel: Nero Update - (.Nero AG.) [HKLM][64Bits] -- {65BB0407-4CC8-4DC7-952E-3EEFDF05602A} =>.Nero AG O42 - Logiciel: Nero Video - (.Nero AG.) [HKLM][64Bits] -- {A8E6436B-9B20-4764-98C1-5A09FD39553E} =>.Nero AG O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {80407BA7-7763-4395-AB98-5233F1B34E65} =>.NVIDIA Corporation O42 - Logiciel: Packard Bell Device Fast-lane - (.Packard Bell.) [HKLM][64Bits] -- {3F62D2FD-13C1-49A2-8B5D-47623D9460D7} =>.Packard Bell O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM][64Bits] -- {91F52DE4-B789-42B0-9311-A349F10E5479} =>.Packard Bell O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM][64Bits] -- {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} =>.Packard Bell O42 - Logiciel: Pinball FX2 version 30042014 - (.Alucard2.) [HKLM][64Bits] -- Pinball FX2_is1 =>.Alucard2 O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM][64Bits] -- {3AAB08A3-F129-4BD5-B409-AE674F93759D} =>.Nero AG O42 - Logiciel: Prerequisite installer - (.Nero AG.) [HKLM][64Bits] -- {799AFA36-4EA5-4323-8689-74C06645A26B} =>.Nero AG O42 - Logiciel: Project 64 version 2.1.0.1 - (..) [HKLM][64Bits] -- Project 64_is1 O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM][64Bits] -- {162BD2D6-6C63-41A7-8151-93188450D36A} =>.Corel Corporation O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM][64Bits] -- {16346B2A-87BC-407C-9D6B-72A4D21ABF03} =>.Corel Corporation O42 - Logiciel: PSPPro64 - (.Corel Corporation.) [HKLM][64Bits] -- {16582334-495C-4F1C-A66B-3BFD8866B674} =>.Corel Corporation O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: Revo Uninstaller 1.95 - (.VS Revo Group.) [HKLM][64Bits] -- Revo Uninstaller =>.VS Revo Group O42 - Logiciel: SafeIP - (.SafeIP.) [HKLM][64Bits] -- SAFEIP_is1 =>.SafeIP O42 - Logiciel: Samsung Kies3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {88547073-C566-4895-9005-EBE98EA3F7C7} =>.Samsung Electronics Co., Ltd. O42 - Logiciel: Samsung Kies3 - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7} =>.Samsung Electronics Co., Ltd. O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.® O42 - Logiciel: Setup - (..) [HKLM][64Bits] -- {16006EE1-DDB7-4E5F-8696-9FEF32C0151A} O42 - Logiciel: Skype™ 7.4 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7} =>.Skype Technologies S.A. O42 - Logiciel: SWAT 4 - (.Sierra Entertainment, Inc..) [HKLM][64Bits] -- {8E1CCF20-9E12-4824-BD59-7AD9E0486DD8} =>.Sierra Entertainment, Inc. O42 - Logiciel: SWAT 4 - (.Sierra Entertainment, Inc..) [HKLM][64Bits] -- InstallShield_{8E1CCF20-9E12-4824-BD59-7AD9E0486DD8} =>.Sierra Entertainment, Inc. O42 - Logiciel: The Walking Dead 400 Days - (..) [HKLM][64Bits] -- VGhlV2Fsa2luZ0RlYWQ=_is1 O42 - Logiciel: The Walking Dead Survival Instinct (c) Activision version 1 - (..) [HKLM][64Bits] -- VGhlIFdhbGtpbmcgRGVhZCBTdXJ2aXZhbCBJbnN0aW5jdCAo~1255DFC2_is1 O42 - Logiciel: The Walking Dead: Season 2 Episode 3 - (..) [HKLM][64Bits] -- VGhlV2Fsa2luZ0RlYWRTZWFzb24y_is1 O42 - Logiciel: Tux Paint 0.9.21c - (.New Breed Software.) [HKLM][64Bits] -- Tux Paint_is1 =>.New Breed Software O42 - Logiciel: Update for Skype for Business 2015 (KB3039776) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{8B3A877E-1B73-464A-AD21-9F26A0682AC6} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3141468) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{CB85A0CF-0448-43D8-8006-173A8C84A018} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3141468) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{CB85A0CF-0448-43D8-8006-173A8C84A018} =>.Microsoft Corporation® O42 - Logiciel: Update for Skype for Business 2015 (KB3141468) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{CB85A0CF-0448-43D8-8006-173A8C84A018} =>.Microsoft Corporation® O42 - Logiciel: VLC media player 2.0.4 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.01 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WinRAR 5.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (188) - 50s HKLM\SOFTWARE\Wow6432Node\618142DBFFDCF0AB46E7CA36BBBD6DD6 =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\Affinegy HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Alcohol Soft =>.Alcohol Software HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD HKLM\SOFTWARE\Wow6432Node\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\Wow6432Node\Apps Hat =>PUP.Optional.CrossRider HKLM\SOFTWARE\Wow6432Node\Atheros Communications Inc. =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Wow6432Node\Belkin =>.Belkin International HKLM\SOFTWARE\Wow6432Node\Bethesda Softworks =>.Bethesda Softworks HKLM\SOFTWARE\Wow6432Node\BlueStacks =>.BlueStack Systems, Inc. HKLM\SOFTWARE\Wow6432Node\Canon =>.Canon HKLM\SOFTWARE\Wow6432Node\CAPCOM =>.CAPCOM HKLM\SOFTWARE\Wow6432Node\Corel =>.Corel HKLM\SOFTWARE\Wow6432Node\Daedalic Entertainment =>.Daedalic Entertainment HKLM\SOFTWARE\Wow6432Node\Disc Soft =>.Disc Soft HKLM\SOFTWARE\Wow6432Node\Dritek =>.Dritek HKLM\SOFTWARE\Wow6432Node\Driver-Soft =>.Driver-Soft HKLM\SOFTWARE\Wow6432Node\DT Soft =>.DT Soft Ltd HKLM\SOFTWARE\Wow6432Node\EA Games =>.EA Games HKLM\SOFTWARE\Wow6432Node\EA Sports =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\Wow6432Node\Freemake =>.Freemake HKLM\SOFTWARE\Wow6432Node\gcompris HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\H+H Software GmbH HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\Wow6432Node\IncrediMail =>.IncrediMail HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\IObit =>.IObit HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\jhdbca HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\Wow6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Wow6432Node\MicroRay HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\msitask HKLM\SOFTWARE\Wow6432Node\NAMCO BANDAI Games =>.NAMCO BANDAI Games HKLM\SOFTWARE\Wow6432Node\Nero =>.Ahead Corporation HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\OEM =>.OEM HKLM\SOFTWARE\Wow6432Node\OldTimer Tools =>.OldTimer Tools HKLM\SOFTWARE\Wow6432Node\Origin Games =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\PluginProtect HKLM\SOFTWARE\Wow6432Node\PowerPivot =>.PowerPivot HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Rebellion =>.Rebellion HKLM\SOFTWARE\Wow6432Node\Reejach HKLM\SOFTWARE\Wow6432Node\SafeIPS HKLM\SOFTWARE\Wow6432Node\ScreenShot HKLM\SOFTWARE\Wow6432Node\Sherzoch HKLM\SOFTWARE\Wow6432Node\Sierra =>.Sierra HKLM\SOFTWARE\Wow6432Node\Sierra OnLine HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\SO_Booster =>PUP.Optional.SaveOn HKLM\SOFTWARE\Wow6432Node\Symantec =>.Symantec HKLM\SOFTWARE\Wow6432Node\Telltale Games =>.Telltale Games HKLM\SOFTWARE\Wow6432Node\Toogame HKLM\SOFTWARE\Wow6432Node\trolatunt =>PUP.Optional.Trolatunt HKLM\SOFTWARE\Wow6432Node\TuxPaint HKLM\SOFTWARE\Wow6432Node\Ubisoft =>.Ubisoft HKLM\SOFTWARE\Wow6432Node\UnlockrootPro HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve HKLM\SOFTWARE\Wow6432Node\vermech.exe HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Wow6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\Wow6432Node\WinArcher =>PUP.Optional.Youndoo HKLM\SOFTWARE\Wow6432Node\WinRAR =>.WinRAR HKLM\SOFTWARE\Wow6432Node\WinU =>.Legitimate HKLM\SOFTWARE\Wow6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! Inc. HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\1964emu HKCU\SOFTWARE\1964emu_099 HKCU\SOFTWARE\1964VIDEO HKCU\SOFTWARE\618142DBFFDCF0AB46E7CA36BBBD6DD6 =>PUP.Optional.CrossRider HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Affinegy HKCU\SOFTWARE\Alcohol Soft =>.Alcohol Software HKCU\SOFTWARE\AlcoholSoftGen =>.Alcohol Software HKCU\SOFTWARE\Alps =>.ALPS HKCU\SOFTWARE\Alucard =>.Alucard HKCU\SOFTWARE\AMD Driver Downloader HKCU\SOFTWARE\Andy =>.Android Studio HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Belkin =>.Belkin International HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Bossa Studios =>.Bossa Studios HKCU\SOFTWARE\Bugsplat =>.Bugsplat Game HKCU\SOFTWARE\Canon =>.Canon HKCU\SOFTWARE\CanonBJ =>.Canon Inc. HKCU\SOFTWARE\CaribbeanKeys HKCU\SOFTWARE\CDDB =>.Cddb Software HKCU\SOFTWARE\CeWe Color =>.CEWE COLOR HKCU\SOFTWARE\Cheat Engine =>.Dark Byte HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\Daedalic Entertainment =>.Daedalic Entertainment HKCU\SOFTWARE\Deep Silver =>.Deep Silver HKCU\SOFTWARE\Disc Soft =>.Disc Soft HKCU\SOFTWARE\Dnldstr_Aggregator HKCU\SOFTWARE\Drish HKCU\SOFTWARE\Dritek =>.Dritek HKCU\SOFTWARE\DT Soft =>.DT Soft Ltd HKCU\SOFTWARE\EaseUS =>.EaseUS Software HKCU\SOFTWARE\Echobit =>.Echobit HKCU\SOFTWARE\ej-technologies =>.ej-technologies HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts HKCU\SOFTWARE\EMU =>.Games Software HKCU\SOFTWARE\EpmNewsInfo =>.EaseUS Software HKCU\SOFTWARE\Freemake =>.Freemake HKCU\SOFTWARE\Freeware =>.VirtualDub.org HKCU\SOFTWARE\gcompris HKCU\SOFTWARE\Goodhustle Studios HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\H+H Software GmbH HKCU\SOFTWARE\Hoolapp =>.Superfluous.Hoolapp HKCU\SOFTWARE\IM =>Adware.InstallCore HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Imagination Technologies =>.Imagination Technologies HKCU\SOFTWARE\JaboSoft =>.JaboSoft HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Lake =>.Lake Sofware HKCU\SOFTWARE\LAV =>.LAV Inc HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\malavida =>.Maladiva.com HKCU\SOFTWARE\Maxis AiTemp HKCU\SOFTWARE\mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\N64 Emulation =>.Games Software HKCU\SOFTWARE\Nero =>.Ahead Corporation HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NRage HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OEM =>.OEM HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\PopCap HKCU\SOFTWARE\Raptr =>.Raptr HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\RegisteredApplicationsEx =>PUP.Optional.SfKpCouponApp HKCU\SOFTWARE\SafeIP =>.SafeIP HKCU\SOFTWARE\Sahmon Games HKCU\SOFTWARE\Samsung =>.Samsung Electronics HKCU\SOFTWARE\SecuROM =>.SecuROM HKCU\SOFTWARE\shopping blast HKCU\SOFTWARE\shoppingblast HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\sup games HKCU\SOFTWARE\supgames HKCU\SOFTWARE\Symantec =>.Symantec HKCU\SOFTWARE\Telltale Games =>.Telltale Games HKCU\SOFTWARE\TexMod HKCU\SOFTWARE\TomsGuide HKCU\SOFTWARE\Tracer HKCU\SOFTWARE\trolatunt =>PUP.Optional.Trolatunt HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Ubisoft =>.Ubisoft HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\Visual Pinball HKCU\SOFTWARE\VSRevoGroup =>.VS Revo Group HKCU\SOFTWARE\WildTangent =>.WildTangent HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\Apps Hat =>PUP.Optional.CrossRider HKCU\SOFTWARE\AppDataLow\Software\Canon =>.Canon HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Macromedia =>.Macromedia HKCU\SOFTWARE\AppDataLow\Software\Smartbar =>PUP.Optional.QuickShare ---\\ Contenu des dossiers Programmes (410) - 40s O43 - CFD: 04/02/2017 - [] D -- C:\Program Files\6z9as2n9 O43 - CFD: 10/01/2013 - [] D -- C:\Program Files\Accessory Store =>.Acer Incorporated® O43 - CFD: 25/09/2014 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 22/06/2014 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\AndyOfflineInstaller45 =>.Andy OS, inc.® O43 - CFD: 14/09/2012 - [] D -- C:\Program Files\Apoint2K =>.Alps Electric Co., LTD.® O43 - CFD: 14/09/2012 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.® O43 - CFD: 22/06/2014 - [] D -- C:\Program Files\ATI Technologies =>.ATI Technologies O43 - CFD: 01/02/2017 - [] D -- C:\Program Files\BRVGZSSXQG O43 - CFD: 26/01/2013 - [] D -- C:\Program Files\Canon =>.Canon Inc.® O43 - CFD: 19/01/2013 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc. O43 - CFD: 06/07/2014 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 11/03/2015 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 14/09/2012 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.® O43 - CFD: 15/08/2014 - [] D -- C:\Program Files\Corel =>.Corel Corporation O43 - CFD: 22/12/2014 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 13/03/2015 - [] D -- C:\Program Files\Echobit =>.Echobit O43 - CFD: 10/01/2013 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 16/01/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 13/01/2013 - [] D -- C:\Program Files\Maintenance =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 27/06/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 22/10/2014 - [] D -- C:\Program Files\Microsoft Xbox 360 Accessories =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 03/08/2012 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 12/09/2015 - [] D -- C:\Program Files\Oracle =>.Oracle O43 - CFD: 03/08/2012 - [] D -- C:\Program Files\Packard Bell =>.Packard Bell O43 - CFD: 01/02/2017 - [] D -- C:\Program Files\Q1AE07SUTO O43 - CFD: 03/08/2012 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 14/12/2015 - [] D -- C:\Program Files\SAMSUNG =>.Samsung Electronics O43 - CFD: 05/07/2014 - [] D -- C:\Program Files\Steam =>.Steam Games O43 - CFD: 13/01/2013 - [] D -- C:\Program Files\Travail O43 - CFD: 25/07/2012 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 15/08/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 11/09/2015 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation O43 - CFD: 15/09/2012 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 03/02/2013 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 10/01/2013 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 16/06/2013 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 02/02/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 10/08/2014 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 05/07/2014 - [0] D -- C:\Program Files (x86)\ The Walking Dead O43 - CFD: 03/04/2015 - [] D -- C:\Program Files (x86)\6151eaf5-caa2-46f8-8818-280ccae79789 =>PUP.Optional.CrossRider O43 - CFD: 25/01/2015 - [] D -- C:\Program Files (x86)\630b03bf-b9ec-4952-b4f6-b6d93ca2a50a =>PUP.Optional.CrossRider O43 - CFD: 30/09/2013 - [] D -- C:\Program Files (x86)\7-Zip =>.Igor Pavlov O43 - CFD: 23/01/2013 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 25/08/2014 - [0] D -- C:\Program Files (x86)\AGEIA Technologies =>.AGEIA Technologies O43 - CFD: 09/03/2013 - [] D -- C:\Program Files (x86)\Alawar.fr O43 - CFD: 01/11/2013 - [] D -- C:\Program Files (x86)\Alcohol Soft =>.Alcohol Software O43 - CFD: 14/09/2012 - [] D -- C:\Program Files (x86)\AMD APP =>.Advanced Micro Devices Inc O43 - CFD: 22/06/2014 - [] D -- C:\Program Files (x86)\AMD AVT =>.Advanced Micro Devices Inc O43 - CFD: 22/06/2014 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies O43 - CFD: 10/01/2015 - [] D -- C:\Program Files (x86)\Beast Boxing Turbo O43 - CFD: 20/09/2015 - [0] D -- C:\Program Files (x86)\Belkin =>.Belkin International O43 - CFD: 06/11/2015 - [] D -- C:\Program Files (x86)\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 31/01/2017 - [] D -- C:\Program Files (x86)\Canon =>.Canon Inc.® O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 20/07/2016 - [] D -- C:\Program Files (x86)\copiunkk O43 - CFD: 15/08/2014 - [] D -- C:\Program Files (x86)\Corel =>.Corel Corporation O43 - CFD: 10/08/2014 - [] D -- C:\Program Files (x86)\DAEMON Tools Pro =>.The DAEMON Team O43 - CFD: 20/07/2016 - [] D -- C:\Program Files (x86)\DeAlExpresse =>PUP.Optional.DealExpress O43 - CFD: 20/09/2015 - [] D -- C:\Program Files (x86)\EA SPORTS =>.Electronic Arts, Inc. O43 - CFD: 20/09/2015 - [0] D -- C:\Program Files (x86)\EaseUS =>.EaseUS Software O43 - CFD: 11/03/2015 - [0] D -- C:\Program Files (x86)\Freemake =>.Freemake O43 - CFD: 16/04/2013 - [] D -- C:\Program Files (x86)\GCompris O43 - CFD: 16/10/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 04/02/2017 - [] D -- C:\Program Files (x86)\Gubed =>.Superfluous.Elex O43 - CFD: 02/02/2017 - [0] D -- C:\Program Files (x86)\HackTools99 O43 - CFD: 19/07/2014 - [0] D -- C:\Program Files (x86)\Hi-Rez Studios =>.Hi-Rez Studios O43 - CFD: 20/07/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\IObit =>.IObit O43 - CFD: 20/09/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 31/01/2017 - [] D -- C:\Program Files (x86)\Keqokvimuph Collector O43 - CFD: 04/02/2017 - [] D -- C:\Program Files (x86)\Kerhdom O43 - CFD: 14/09/2012 - [] D -- C:\Program Files (x86)\Launch Manager =>.Legitimate O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 07/06/2014 - [] D -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 27/06/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Program Files (x86)\Microsoft SkyDrive =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 04/02/2017 - [] D -- C:\Program Files (x86)\MIO =>.Mio O43 - CFD: 03/08/2012 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 22/01/2015 - [] D -- C:\Program Files (x86)\mupen64 0.5 O43 - CFD: 21/09/2014 - [] D -- C:\Program Files (x86)\Nero =>.Ahead Corporation O43 - CFD: 25/08/2014 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 20/02/2015 - [] D -- C:\Program Files (x86)\Packard Bell =>.Packard Bell O43 - CFD: 20/09/2015 - [0] D -- C:\Program Files (x86)\Pando Networks =>.Pando Networks O43 - CFD: 20/09/2015 - [] D -- C:\Program Files (x86)\Pinball O43 - CFD: 31/01/2017 - [] D -- C:\Program Files (x86)\Project64 2.1 =>.Project64 O43 - CFD: 07/07/2014 - [] D -- C:\Program Files (x86)\Raptr =>.Raptr O43 - CFD: 14/09/2012 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 03/08/2012 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 01/02/2017 - [] D -- C:\Program Files (x86)\SafeIP =>.My Privacy Tools, Inc.® O43 - CFD: 13/12/2015 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics O43 - CFD: 20/07/2016 - [] D -- C:\Program Files (x86)\SaveeNewaAppz =>PUP.Optional.SaveNewAppz O43 - CFD: 31/01/2017 - [] D -- C:\Program Files (x86)\Sierra =>.Sierra O43 - CFD: 13/01/2015 - [0] D -- C:\Program Files (x86)\Sierra On-Line O43 - CFD: 29/05/2015 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 14/09/2012 - [] D -- C:\Program Files (x86)\Symantec =>.Symantec O43 - CFD: 03/08/2012 - [] D -- C:\Program Files (x86)\SymSilent =>.Symantec Corporation® O43 - CFD: 05/07/2014 - [] D -- C:\Program Files (x86)\Telltale Games =>.Telltale Games O43 - CFD: 15/10/2014 - [] D -- C:\Program Files (x86)\The Elder Scrolls V Skyrim O43 - CFD: 03/11/2014 - [] D -- C:\Program Files (x86)\The Walking Dead O43 - CFD: 04/11/2014 - [] D -- C:\Program Files (x86)\The Walking Dead Season 2 O43 - CFD: 10/11/2014 - [] D -- C:\Program Files (x86)\The Walking Dead Survival Instinct O43 - CFD: 16/04/2013 - [] D -- C:\Program Files (x86)\TuxPaint O43 - CFD: 19/06/2015 - [] D -- C:\Program Files (x86)\Unlockroot O43 - CFD: 22/06/2014 - [] D -- C:\Program Files (x86)\Unlockroot Pro O43 - CFD: 25/01/2015 - [] D -- C:\Program Files (x86)\uTorrent =>.BitTorrent Inc® O43 - CFD: 15/09/2013 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 02/11/2015 - [] D -- C:\Program Files (x86)\VS Revo Group =>.VS Revo Group O43 - CFD: 04/02/2017 - [] D -- C:\Program Files (x86)\WinArcher =>PUP.Optional.Youndoo O43 - CFD: 15/08/2015 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation O43 - CFD: 15/09/2012 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 03/02/2013 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 16/06/2013 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 10/08/2014 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 30/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 25/07/2012 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 18/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/10/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 01/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Alcohol 120% =>.Alcohol Software O43 - CFD: 22/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc O43 - CFD: 06/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Another World O43 - CFD: 10/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Beast Boxing Turbo O43 - CFD: 20/09/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belkin =>.Belkin International O43 - CFD: 01/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 26/01/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2200 series =>.Canon Inc. O43 - CFD: 26/01/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2200 series Manual =>.Canon Inc. O43 - CFD: 09/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities =>.Canon Inc. O43 - CFD: 30/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CAPCOM =>.CAPCOM O43 - CFD: 15/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro X6 O43 - CFD: 09/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daedalic Entertainment =>.Daedalic Entertainment O43 - CFD: 10/08/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro =>.The DAEMON Team O43 - CFD: 06/10/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deep Silver =>.Deep Silver O43 - CFD: 20/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Sports =>.Electronic Arts, Inc. O43 - CFD: 06/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 16/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GCompris O43 - CFD: 16/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth O43 - CFD: 20/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller =>.IObit O43 - CFD: 20/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 25/07/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 06/10/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAMEUIFX32 O43 - CFD: 07/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace =>.Microsoft Corporation O43 - CFD: 12/01/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation O43 - CFD: 24/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 22/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories =>.Microsoft Corporation O43 - CFD: 23/11/2013 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPlayCity.com =>.MyPlayCity.com O43 - CFD: 01/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero =>.Ahead Corporation O43 - CFD: 22/11/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell =>.Packard Bell O43 - CFD: 22/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pinball FX2 O43 - CFD: 23/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project 64 2.0 O43 - CFD: 05/06/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razor 1911 O43 - CFD: 06/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Risen 3 - Titan Lords O43 - CFD: 01/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SafeIP =>.SafeIP O43 - CFD: 13/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung =>.Samsung Electronics O43 - CFD: 20/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra =>.Sierra O43 - CFD: 26/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 02/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 03/02/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 06/10/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Walking Dead Season 2 EP 2 O43 - CFD: 16/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tux Paint O43 - CFD: 23/11/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 20/09/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual CD v10 O43 - CFD: 24/01/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation O43 - CFD: 23/11/2013 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 =>.GEAR Software, Inc. O43 - CFD: 15/07/2014 - [0] D -- C:\ProgramData\374311380 O43 - CFD: 03/04/2015 - [] D -- C:\ProgramData\3872871776 O43 - CFD: 01/02/2017 - [] HD -- C:\ProgramData\9097m98u69q1590 O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\ADasy O43 - CFD: 26/09/2014 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 20/09/2015 - [0] D -- C:\ProgramData\Affinegy O43 - CFD: 09/03/2013 - [0] D -- C:\ProgramData\AlawarWrapper =>.Alawar Entertainment O43 - CFD: 22/06/2014 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 07/02/2013 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 23/11/2013 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 25/07/2012 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 22/06/2014 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\Avg =>.AVG Software O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\Avira =>.Avira Software O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 02/06/2016 - [] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc. O43 - CFD: 14/09/2012 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 25/08/2014 - [] D -- C:\ProgramData\Browser AdBlocker =>.Superfluous.SpeedBrowser O43 - CFD: 10/01/2013 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 19/01/2013 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc. O43 - CFD: 20/01/2013 - [] HD -- C:\ProgramData\CanonIJEGV =>.Canon Inc. O43 - CFD: 20/03/2013 - [] HD -- C:\ProgramData\CanonIJMyPrinter =>.Canon Inc. O43 - CFD: 11/11/2016 - [] D -- C:\ProgramData\CanonIJPLM =>.Canon Inc. O43 - CFD: 19/01/2013 - [] HD -- C:\ProgramData\CanonIJQuickMenu =>.Canon Inc. O43 - CFD: 31/01/2013 - [] HD -- C:\ProgramData\CanonIJScan =>.Canon Inc. O43 - CFD: 26/01/2013 - [] D -- C:\ProgramData\CanonIJWSpt =>.Canon Inc. O43 - CFD: 25/05/2014 - [] D -- C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 14/09/2012 - [] D -- C:\ProgramData\CLSK =>.CLSK O43 - CFD: 21/08/2014 - [] D -- C:\ProgramData\Codemasters =>.Codemasters O43 - CFD: 10/07/2014 - [] D -- C:\ProgramData\CODEX =>.Codex O43 - CFD: 15/08/2014 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 18/09/2013 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 14/06/2014 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 10/08/2014 - [] D -- C:\ProgramData\DAEMON Tools Pro =>.The DAEMON Team O43 - CFD: 25/07/2012 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 10/06/2015 - [] D -- C:\ProgramData\DigICouupone =>PUP.Optional.DiGiCoupon O43 - CFD: 25/07/2012 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 13/03/2015 - [] D -- C:\ProgramData\Echobit =>.Echobit O43 - CFD: 28/06/2014 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts O43 - CFD: 11/03/2015 - [0] D -- C:\ProgramData\Freemake =>.Freemake O43 - CFD: 10/06/2015 - [] D -- C:\ProgramData\GreatSaave44U =>PUP.Optional.GreatSave4U O43 - CFD: 19/07/2014 - [0] D -- C:\ProgramData\Hi-Rez Studios =>.Hi-Rez Studios O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\InstallMate =>.Superfluous.Tarma O43 - CFD: 08/12/2016 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 05/03/2015 - [] D -- C:\ProgramData\LogMeIn =>.LogMeIn O43 - CFD: 11/09/2015 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 10/01/2013 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 10/03/2015 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 12/01/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\ProgramData\Microsoft SkyDrive =>.Microsoft Corporation O43 - CFD: 10/01/2013 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 30/06/2014 - [] D -- C:\ProgramData\MusicMP3Get O43 - CFD: 21/09/2014 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation O43 - CFD: 27/12/2014 - [] D -- C:\ProgramData\nmlppkcpgojgofeicgdmkhjfcpffifad =>.Electronic Arts, Inc. O43 - CFD: 17/07/2014 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 17/07/2014 - [] D -- C:\ProgramData\NortonInstaller =>.Symantec O43 - CFD: 10/01/2013 - [] D -- C:\ProgramData\OEM =>.OEM O43 - CFD: 20/09/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 18/11/2014 - [] D -- C:\ProgramData\Orbit =>.Orbit O43 - CFD: 11/03/2015 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 25/09/2014 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 03/08/2012 - [] D -- C:\ProgramData\PRICache =>.Microsoft Corporation O43 - CFD: 01/02/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 14/09/2012 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 25/09/2014 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 07/12/2014 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 05/07/2014 - [] D -- C:\ProgramData\RELOADED O43 - CFD: 12/12/2014 - [] D -- C:\ProgramData\REVOLT =>.Acclaim Entertainment O43 - CFD: 14/12/2015 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 29/05/2015 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 25/07/2012 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 14/11/2016 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 14/09/2012 - [] D -- C:\ProgramData\Symantec =>.Symantec O43 - CFD: 23/01/2015 - [] AD -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 26/01/2013 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\WinSAPSvc =>PUP.Optional.Youndoo O43 - CFD: 24/11/2015 - [0] D -- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} O43 - CFD: 25/09/2014 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 22/06/2014 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies =>.ATI Technologies O43 - CFD: 28/06/2014 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller =>.Electronic Arts, Inc. O43 - CFD: 12/07/2014 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 24/11/2015 - [] D -- C:\Program Files (x86)\Common Files\IObit =>.IObit O43 - CFD: 20/09/2015 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 07/12/2014 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 21/09/2014 - [] D -- C:\Program Files (x86)\Common Files\Nero =>.Ahead Corporation O43 - CFD: 15/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Protexis =>.Protexis Inc. O43 - CFD: 04/02/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 26/09/2014 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 14/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 14/03/2013 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared =>.Symantec Corporation O43 - CFD: 15/09/2012 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 27/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 20/09/2015 - [] D -- C:\Users\cedric\AppData\Roaming\.minecraft =>.Microsoft Corporation O43 - CFD: 25/09/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 12/09/2015 - [] RD -- C:\Users\cedric\AppData\Roaming\Andy_45_Online =>.Android.net O43 - CFD: 24/11/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 12/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\ATI =>.ATI O43 - CFD: 23/06/2014 - [0] D -- C:\Users\cedric\AppData\Roaming\Awesomium =>.Awesomium Technologies LLC O43 - CFD: 06/07/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Azureus O43 - CFD: 02/02/2017 - [] D -- C:\Users\cedric\AppData\Roaming\BitTorrent O43 - CFD: 03/02/2013 - [] D -- C:\Users\cedric\AppData\Roaming\Canon =>.Canon O43 - CFD: 09/04/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Caribbean! O43 - CFD: 15/08/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 12/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 14/07/2014 - [] D -- C:\Users\cedric\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 16/02/2015 - [] D -- C:\Users\cedric\AppData\Roaming\DAEMON Tools Pro =>.The DAEMON Team O43 - CFD: 01/08/2015 - [] D -- C:\Users\cedric\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 22/05/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Games =>.Microsoft Corporation O43 - CFD: 13/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 11/02/2015 - [] D -- C:\Users\cedric\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 24/11/2015 - [] D -- C:\Users\cedric\AppData\Roaming\IObit =>.IObit O43 - CFD: 20/09/2015 - [] D -- C:\Users\cedric\AppData\Roaming\java =>.Oracle O43 - CFD: 02/02/2017 - [0] D -- C:\Users\cedric\AppData\Roaming\Lakeingkocipy O43 - CFD: 22/06/2014 - [] D -- C:\Users\cedric\AppData\Roaming\library_dir =>.library_dir O43 - CFD: 10/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\lm O43 - CFD: 24/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 12/02/2015 - [] SD -- C:\Users\cedric\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 16/04/2013 - [] D -- C:\Users\cedric\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 21/01/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Mupen64Plus O43 - CFD: 30/06/2014 - [] D -- C:\Users\cedric\AppData\Roaming\MusicMP3Get O43 - CFD: 29/06/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Need for Speed World O43 - CFD: 21/09/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Nero =>.Ahead Corporation O43 - CFD: 28/06/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Origin =>.Electronic Arts, Inc. O43 - CFD: 20/09/2015 - [] D -- C:\Users\cedric\AppData\Roaming\ProductData =>.Microsoft Corporation O43 - CFD: 31/01/2017 - [] D -- C:\Users\cedric\AppData\Roaming\Profiles =>.Microsoft Corporation O43 - CFD: 29/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\Sahmon Games O43 - CFD: 13/12/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Samsung =>.Samsung Electronics O43 - CFD: 02/01/2017 - [] D -- C:\Users\cedric\AppData\Roaming\Skype =>.Skype O43 - CFD: 01/02/2017 - [] D -- C:\Users\cedric\AppData\Roaming\SPI O43 - CFD: 20/09/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Sun =>.Oracle O43 - CFD: 09/11/2014 - [] D -- C:\Users\cedric\AppData\Roaming\TuxPaint O43 - CFD: 15/08/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Ulead Systems =>.Ulead Systems O43 - CFD: 02/02/2017 - [] D -- C:\Users\cedric\AppData\Roaming\uTorrent O43 - CFD: 20/09/2015 - [] SD -- C:\Users\cedric\AppData\Roaming\Virtual CD v10 O43 - CFD: 24/12/2016 - [] D -- C:\Users\cedric\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 02/11/2015 - [] D -- C:\Users\cedric\AppData\Roaming\VSRevoGroup =>.VS Revo Group O43 - CFD: 29/01/2013 - [] D -- C:\Users\cedric\AppData\Roaming\WildTangent =>.WildTangent O43 - CFD: 24/01/2013 - [0] D -- C:\Users\cedric\AppData\Roaming\Windows Live Writer =>.Microsoft Corporation O43 - CFD: 14/06/2014 - [] D -- C:\Users\cedric\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 04/02/2017 - [] D -- C:\Users\cedric\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 04/02/2017 - [] D -- C:\Users\cedric\AppData\Local\Adobe =>.Adobe O43 - CFD: 22/06/2014 - [] D -- C:\Users\cedric\AppData\Local\AMD =>.AMD O43 - CFD: 07/02/2013 - [] D -- C:\Users\cedric\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 07/02/2013 - [] D -- C:\Users\cedric\AppData\Local\Apple Computer =>.Apple Inc. O43 - CFD: 10/01/2013 - [0] SHD -- C:\Users\cedric\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 30/09/2013 - [] D -- C:\Users\cedric\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 12/01/2013 - [] D -- C:\Users\cedric\AppData\Local\ATI =>.ATI O43 - CFD: 06/11/2015 - [] D -- C:\Users\cedric\AppData\Local\Bluestacks =>.BlueStack Systems, Inc. O43 - CFD: 30/06/2014 - [] D -- C:\Users\cedric\AppData\Local\Comodo =>.Comodo O43 - CFD: 15/08/2014 - [] D -- C:\Users\cedric\AppData\Local\Corel PaintShop Pro =>.Corel O43 - CFD: 02/02/2017 - [] D -- C:\Users\cedric\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 23/01/2015 - [] D -- C:\Users\cedric\AppData\Local\CrashRpt =>.Superfluous.CrashReports O43 - CFD: 21/01/2013 - [] D -- C:\Users\cedric\AppData\Local\Cyberlink =>.CyberLink Corporation O43 - CFD: 01/02/2017 - [] D -- C:\Users\cedric\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 13/12/2015 - [] D -- C:\Users\cedric\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 13/03/2015 - [] D -- C:\Users\cedric\AppData\Local\Echobit =>.Echobit O43 - CFD: 28/06/2014 - [] D -- C:\Users\cedric\AppData\Local\Electronic_Arts_Inc O43 - CFD: 01/02/2017 - [] D -- C:\Users\cedric\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 11/09/2015 - [] D -- C:\Users\cedric\AppData\Local\Google =>.Google O43 - CFD: 10/01/2013 - [0] SHD -- C:\Users\cedric\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 23/01/2015 - [] D -- C:\Users\cedric\AppData\Local\Installer O43 - CFD: 05/03/2015 - [] D -- C:\Users\cedric\AppData\Local\LogMeIn =>.LogMeIn O43 - CFD: 08/09/2015 - [] D -- C:\Users\cedric\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 02/02/2017 - [] D -- C:\Users\cedric\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2014 - [0] D -- C:\Users\cedric\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 08/09/2015 - [] D -- C:\Users\cedric\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 07/06/2014 - [] D -- C:\Users\cedric\AppData\Local\NBGI O43 - CFD: 26/03/2015 - [] D -- C:\Users\cedric\AppData\Local\Nero =>.Ahead Corporation O43 - CFD: 21/09/2014 - [] D -- C:\Users\cedric\AppData\Local\Nero_AG =>.Ahead O43 - CFD: 26/07/2016 - [] D -- C:\Users\cedric\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 31/10/2013 - [] D -- C:\Users\cedric\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 18/11/2014 - [] D -- C:\Users\cedric\AppData\Local\PunkBuster =>.PunkBuster Games O43 - CFD: 27/08/2014 - [] D -- C:\Users\cedric\AppData\Local\Risen2 O43 - CFD: 25/08/2014 - [] D -- C:\Users\cedric\AppData\Local\Risen3 O43 - CFD: 31/01/2017 - [] D -- C:\Users\cedric\AppData\Local\Shederward O43 - CFD: 22/12/2014 - [] D -- C:\Users\cedric\AppData\Local\SKIDROW =>.SKIDROW O43 - CFD: 01/04/2014 - [] D -- C:\Users\cedric\AppData\Local\Skype =>.Skype O43 - CFD: 05/06/2014 - [] D -- C:\Users\cedric\AppData\Local\Skyrim =>.Skyrim Games O43 - CFD: 31/07/2014 - [] D -- C:\Users\cedric\AppData\Local\Sniper3 O43 - CFD: 04/02/2017 - [] D -- C:\Users\cedric\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 10/01/2013 - [0] SHD -- C:\Users\cedric\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/11/2014 - [0] D -- C:\Users\cedric\AppData\Local\Ubisoft Game Launcher =>.Ubisoft O43 - CFD: 01/02/2017 - [] D -- C:\Users\cedric\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 18/12/2014 - [] D -- C:\Users\cedric\AppData\Local\Windows Live =>.Microsoft Corporation O43 - CFD: 24/01/2013 - [] D -- C:\Users\cedric\AppData\Local\Windows Live Writer =>.Microsoft Corporation O43 - CFD: 31/10/2013 - [0] D -- C:\Users\cedric\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] RD -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] RD -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 17/10/2015 - [] RD -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 20/09/2015 - [0] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Andy =>.Android.net O43 - CFD: 23/11/2013 - [] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CAPCOM =>.CAPCOM O43 - CFD: 22/06/2014 - [0] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 06/10/2015 - [0] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Jeux-Gratuits.com O43 - CFD: 25/07/2012 - [] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 18/01/2015 - [0] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MAMEUIFX32 O43 - CFD: 20/09/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft Cracked O43 - CFD: 02/11/2015 - [] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 12/07/2014 - [] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sierra =>.Sierra O43 - CFD: 02/02/2017 - [] RD -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] RD -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 06/10/2015 - [0] D -- C:\Users\cedric\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnlockRoot Pro O43 - CFD: 25/07/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 10/01/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/12/2014 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 10/01/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/12/2014 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/07/2012 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/06/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 09/10/2013 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 23/06/2014 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 01/02/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\SafeIPS =>.Safe IPS O43 - CFD: 22/06/2014 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 07/02/2013 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 25/11/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit O43 - CFD: 20/04/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 04/02/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Tencent =>.Superfluous.Tencent ---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 22s O45 - LFCP:[MD5.91273A19FF2A7F17892A586390B97665] 11/08/2014 A -- C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.Optional.SweetIM O45 - LFCP:[MD5.E9C43298DCB371B5EB04D0FB00CBC4C8] 09/02/2015 A -- C:\Windows\Prefetch\WINTHRUSTER.EXE-C247F829.pf =>.Superfluous.WinThruster ---\\ ShellExecuteHook (1) - 0s O46 - SEH:ShellExecuteHooks - (no name) - [HKLM] [64Bits] - {AB050410-DE45-11E6-BAA9-64006A5CFC23} . (...) -- (.not file.) ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 1s O106 - SIOI: UpToDateOverlayHandler Class [ SkyDrive1] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft SkyDrive Shell Extension.) -- C:\Users\cedric\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ SkyDrive2] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft SkyDrive Shell Extension.) -- C:\Users\cedric\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll =>.Microsoft Corporation® O106 - SIOI: ErrorOverlayHandler Class [ SkyDrive3] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft SkyDrive Shell Extension.) -- C:\Users\cedric\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Liste des pilotes du système (64) - 14s O58 - SDL:2012/07/25 19:00:49 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:49 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:48 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:49 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [315488] =>.Microsoft Windows® O58 - SDL:2013/12/19 06:46:22 A . (.Windows (R) Win 7 DDK provider - KSL Kernel-Mode Dll.) -- C:\Windows\System32\drivers\amdacpksl.sys [315488] =>.Windows (R) Win 7 DDK provider O58 - SDL:2012/09/22 16:17:22 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\Windows\System32\drivers\amdkmafd.sys [315488] =>.Advanced Micro Devices, Inc.® O58 - SDL:2012/07/25 19:00:49 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:49 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/04 11:44:48 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [315488] =>.Alps Electric Co., LTD.® O58 - SDL:2012/09/14 23:03:49 A . (.Dritek System Inc. - PS/2 KB to HID Device Driver.) -- C:\Windows\System32\drivers\aPs2Kb2Hid.sys [315488] =>.Dritek System Inc.® O58 - SDL:2012/07/25 19:00:49 A . (.PMC-Sierra, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/02/29 14:07:22 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [315488] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2013/12/19 06:46:20 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdW86.sys [315488] =>.Advanced Micro Devices O58 - SDL:2014/04/17 16:36:46 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [315488] =>.Advanced Micro Devices, Inc. O58 - SDL:2014/04/17 15:07:06 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [315488] =>.Advanced Micro Devices, Inc. O58 - SDL:2008/07/10 07:20:40 A . (.CSR, plc - A/V Bluetooth Device.) -- C:\Windows\System32\drivers\bthav.sys [315488] =>.CSR, plc O58 - SDL:2012/09/19 21:55:24 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/05/20 19:25:44 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\Windows\System32\drivers\CHDRT64.sys [315488] =>.Conexant Systems, Inc.® O58 - SDL:2014/08/10 17:08:15 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [315488] =>.DT Soft Ltd® O58 - SDL:2012/09/19 21:55:27 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [315488] =>.Microsoft Windows® O58 - SDL:2015/03/13 16:52:32 A . (.Echobit, LLC - Evolve Virtual Miniport Driver.) -- C:\Windows\System32\drivers\evolve.sys [315488] =>.Echobit, LLC® O58 - SDL:2015/02/17 18:21:50 AH . (.LogMeIn Inc. - LogMeIn Hamachi Virtual Miniport Driver.) -- C:\Windows\System32\drivers\Hamdrv.sys [315488] =>.LogMeIn, Inc.® O58 - SDL:2009/07/09 10:24:30 A . (.H+H Software GmbH - H+H CDROM Helper 64-Bit Driver.) -- C:\Windows\System32\drivers\hh10help.sys [315488] {6FAC61BAF2235D9B71E62BE58A37DB0A} O58 - SDL:2012/07/25 19:00:52 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:52 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:52 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/06/21 11:02:52 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\Windows\System32\drivers\L1C63x64.sys [315488] =>.Atheros Communications Inc.® O58 - SDL:2012/07/25 19:00:52 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:52 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:52 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:52 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [315488] =>.Microsoft Windows® O58 - SDL:2009/10/07 08:47:46 A . (.Logitech Inc. - Logitech Kernel Audio Improvement Filter Dr.) -- C:\Windows\System32\drivers\lvrs64.sys [315488] =>.Logitech Inc® O58 - SDL:2009/10/07 08:49:28 A . (.Logitech Inc. - Logitech USB Video Class Driver.) -- C:\Windows\System32\drivers\lvuvc64.sys [315488] =>.Logitech Inc® O58 - SDL:2012/07/25 19:00:52 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:55 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:55 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:55 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/03 16:41:58 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [315488] =>.Realtek Semiconductor Corp® O58 - SDL:2012/06/29 16:00:53 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\Windows\System32\drivers\rtwlane.sys [315488] =>.Realtek Semiconductor Corporation O58 - SDL:2012/07/25 22:11:43 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [315488] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2012/07/25 19:00:55 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:56 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [315488] =>.Microsoft Windows® O58 - SDL:2014/06/11 17:54:35 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [315488] =>.Disc Soft Ltd® O58 - SDL:2015/12/08 04:00:54 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudbus.sys [315488] =>.DEVGURU CO LTD® O58 - SDL:2015/12/08 04:00:58 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [315488] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 08:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\Windows\System32\drivers\ssudserd.sys [315488] =>.DEVGURU CO LTD® O58 - SDL:2012/07/25 19:00:55 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [315488] =>.Microsoft Windows® O58 - SDL:2016/03/11 00:21:26 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [315488] =>.GZ Systems Limited® O58 - SDL:2012/09/28 10:32:56 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [315488] =>.Apple, Inc. O58 - SDL:2012/06/18 00:07:50 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\Windows\System32\drivers\usbfilter.sys [315488] =>.Advanced Micro Devices, Inc.® O58 - SDL:2015/07/10 13:22:28 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [315488] =>.Oracle Corporation® O58 - SDL:2015/07/10 13:21:16 A . (.Oracle Corporation - VirtualBox Host-Only Network Adapter Driver.) -- C:\Windows\System32\drivers\VBoxNetAdp.sys [315488] =>.Oracle Corporation® O58 - SDL:2015/07/10 13:21:16 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [315488] =>.Oracle Corporation® O58 - SDL:2008/06/17 08:22:24 A . (.H+H Software GmbH - Virtual CD - BusEnumerator 64-Bit Driver.) -- C:\Windows\System32\drivers\vcd10bus.sys [315488] {7D7886C85A165EBFC6B7F2E32253F30A} O58 - SDL:2012/12/06 11:09:24 A . (.H+H Software GmbH - Virtual CD - XP/2003/Vista/Win7 Driver 64-B.) -- C:\Windows\System32\drivers\vdrv1000.sys [315488] {06C83693FEB935A3EB037D2880532115} O58 - SDL:2012/07/25 19:00:58 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:58 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [315488] =>.Microsoft Windows® O58 - SDL:2012/07/25 19:00:58 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [315488] =>.Microsoft Windows® O58 - SDL:2014/08/06 12:31:48 A . (.StdLib - StdLib.) -- C:\Windows\System32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys [315488] {16E5B55BC9746E627E43F6A38DDE3E80} =>PUP.Optional.LinkiDoo O58 - SDL:2015/02/09 07:00:02 A . (.StdLib - StdLib.) -- C:\Windows\System32\drivers\{81711fd0-60e8-45bb-a4ff-3004058b32b4}w64.sys [315488] {1E6F69E3F386155D988683D665483D02} =>PUP.Optional.LinkiDoo ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 11s O61 - LFC: 2017/02/01 14:20:02 A . (.BitTorrent Inc..) -- C:\Users\cedric\AppData\Roaming\BitTorrent\updates\7.9.9_43086\bittorrentie.exe [388608] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (4) - 22s O69 - SBI: prefs.js [cedric - t827svv9.default] user_pref("network.http.request.max-start-delay", 0); =>.Superfluous.MaxStart O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {80c554b9-c7f8-4a21-9471-06d606da78a2} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {F6C0B6BE-524D-4EB1-88AA-3114992CE870} - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [315488] =>.Microsoft Corporation O83 - Search Svchost Services: SystemEventsBroker (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) -- C:\Windows\System32\SystemEventsBrokerServer.dll [315488] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (6) - 10s O87 - FAEL: "TCP Query User{4D73F07F-B939-4DC6-AEF6-53361645B999}C:\program files (x86)\ea sports\madden nfl 08\mainapp.exe" [In-None-P6-TRUE] .(.EA - Salt Lake - Madden NFL 08.) -- C:\program files (x86)\ea sports\madden nfl 08\mainapp.exe O87 - FAEL: "UDP Query User{8F97A159-2333-40D2-9185-F05D467E34DD}C:\program files (x86)\ea sports\madden nfl 08\mainapp.exe" [In-None-P17-TRUE] .(.EA - Salt Lake - Madden NFL 08.) -- C:\program files (x86)\ea sports\madden nfl 08\mainapp.exe O87 - FAEL: "{CD8FFD26-00F5-4DCE-8488-1400AAF9F77C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{1C36F4A4-6B30-4285-8B59-5857CA4E250B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{785757C2-E8A6-4828-A092-F1BDAE25B089}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) O87 - FAEL: "{1E5723AC-3210-4535-BB98-7A0C8B233488}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.) ---\\ Liste des émulateurs de CD/DVD (MBR Hook) (4) - 5s HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32 =>PUP.Optional.MyPCBackup HKLM\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS =>PUP.Optional.MyPCBackup ---\\ Scan Additionnel (45) - 8s HKLM\SYSTEM\CurrentControlSet\Services\Archer =>PUP.Optional.Youndoo C:\Program Files (x86)\WinArcher\Archer.dll =>PUP.Optional.Youndoo HKLM\SYSTEM\CurrentControlSet\Services\GubedZL =>.Superfluous.Elex C:\Program Files (x86)\Gubed\GubedZL.dll =>.Superfluous.Elex HKLM\SYSTEM\CurrentControlSet\Services\WinSAPSvc =>PUP.Optional.Youndoo C:\ProgramData\WinSAPSvc\WinSAP.dll =>PUP.Optional.Youndoo HKLM\SYSTEM\CurrentControlSet\Services\iThemes5 =>Adware.Mikey C:\Program Files (x86)\Common Files\Services\iThemes.dll =>Adware.Mikey HKLM\SYSTEM\CurrentControlSet\Services\WIN-srvGA =>Trojan.Downloader C:\Windows\SysWOW64\srvany.exe =>Trojan.Downloader C:\Windows\System32\Tasks\79ac0a9c-21c5-4bb4-b091-6d30796f4b90-5_user =>PUP.Optional.CrossRider C:\Windows\System32\Tasks\79ac0a9c-21c5-4bb4-b091-6d30796f4b90-7 =>PUP.Optional.CrossRider C:\Windows\Temp\g4D5.tmp.exe =>Heuristic.Suspect C:\Users\cedric\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda =>Hijacker.Browser C:\Users\cedric\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cjnchmnibjgahjddkmcjnpggieehlpjd =>PUP.Optional.SaveOn C:\Users\cedric\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\diofbihhlmhdllnaofhjabgpnckgogpm =>PUP.Optional.GoSave C:\Users\cedric\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\hfnbehapkchcccdlphffoehfekkocldm =>PUP.Optional.PriceChop C:\Users\cedric\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\lokojgmpnakopmmgkbebafijkjmjkhni =>PUP.Optional.PriceChop C:\Users\cedric\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pbehfadkcijpckdbnlkjfdfjklccoelo =>PUP.Optional.PriceChop C:\Users\cedric\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\pokdhgmfiahbddloocllpbjkdobcihjj =>PUP.Optional.SaveOn C:\Users\cedric\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} =>PUP.Optional.Wajam HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814} =>.Superfluous.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814} =>.Superfluous.Orphan HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\Program Files (x86)\6151eaf5-caa2-46f8-8818-280ccae79789 =>PUP.Optional.CrossRider C:\Program Files (x86)\630b03bf-b9ec-4952-b4f6-b6d93ca2a50a =>PUP.Optional.CrossRider C:\Program Files (x86)\DeAlExpresse =>PUP.Optional.DealExpress C:\Program Files (x86)\Gubed =>.Superfluous.Elex C:\Program Files (x86)\SaveeNewaAppz =>PUP.Optional.SaveNewAppz C:\Program Files (x86)\WinArcher =>PUP.Optional.Youndoo C:\ProgramData\Browser AdBlocker =>.Superfluous.SpeedBrowser C:\ProgramData\DigICouupone =>PUP.Optional.DiGiCoupon C:\ProgramData\GreatSaave44U =>PUP.Optional.GreatSave4U C:\ProgramData\InstallMate =>.Superfluous.Tarma C:\ProgramData\WinSAPSvc =>PUP.Optional.Youndoo C:\Users\cedric\AppData\Local\CrashRpt =>.Superfluous.CrashReports C:\Windows\Prefetch\SWEETPACKSUPDATEMANAGER.EXE-4BA95FDA.pf =>PUP.Optional.SweetIM C:\Windows\Prefetch\WINTHRUSTER.EXE-C247F829.pf =>.Superfluous.WinThruster C:\Windows\System32\drivers\{0c0bb4a8-45a4-4685-9c1d-08d98af4b926}w64.sys =>PUP.Optional.LinkiDoo C:\Windows\System32\drivers\{81711fd0-60e8-45bb-a4ff-3004058b32b4}w64.sys =>PUP.Optional.LinkiDoo HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASAPI32 =>PUP.Optional.MyPCBackup HKLM64\SOFTWARE\Microsoft\Tracing\BackupStack_RASMANCS =>PUP.Optional.MyPCBackup HKLM64\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASAPI32 =>PUP.Optional.MyPCBackup HKLM64\SOFTWARE\Microsoft\Tracing\MyPC Backup_RASMANCS =>PUP.Optional.MyPCBackup ---\\ Récapitulatif des éléments trouvés sur votre station (29) - 0s https://www.anti-malware.top/2016/06/18/superfluous-youndoo/ =>PUP.Optional.Youndoo https://www.anti-malware.top/2016/05/18/superfluous-elex/ =>.Superfluous.Elex https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.Mikey https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.Downloader https://www.anti-malware.top/2016/04/30/pup-optional-crossrider/ =>PUP.Optional.CrossRider https://nicolascoolman.eu/2017/02/02/hijacker-browser-2/ =>Hijacker.Browser https://www.nicolascoolman.com/fr/pup-saveon/ =>PUP.Optional.SaveOn https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.GoSave https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.PriceChop https://www.anti-malware.top/2016/05/07/pup-optional-wajam/ =>PUP.Optional.Wajam https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Trolatunt https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Hoolapp https://www.anti-malware.top/2016/04/22/adware-installcore/ =>Adware.InstallCore https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SfKpCouponApp https://www.nicolascoolman.com/fr/pup-quickshare/ =>PUP.Optional.QuickShare https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.DealExpress https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SaveNewAppz https://www.anti-malware.top/2016/07/28/superfluousspeedbrowser/ =>.Superfluous.SpeedBrowser https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.DiGiCoupon https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.GreatSave4U https://www.nicolascoolman.com/fr/pup-tarma/ =>.Superfluous.Tarma https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.CrashReports https://www.nicolascoolman.com/fr/adware-tencentaddressbar/ =>.Superfluous.Tencent https://www.nicolascoolman.com/fr/pup-sweetim/ =>PUP.Optional.SweetIM https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.WinThruster https://www.nicolascoolman.com/fr/pup-linkidoo/ =>PUP.Optional.LinkiDoo https://www.anti-malware.top/2016/06/07/superfluous-maxstart/ =>.Superfluous.MaxStart https://www.nicolascoolman.com/fr/pup-mypcbackup/ =>PUP.Optional.MyPCBackup ~ Unselected Options: O82, ~ End of the scan, 54607 items in 06mn40s (1443)(0)