~ ZHPDiag v2017.4.11.63 Par Nicolas Coolman (2017/04/11) ~ Démarré par Utilisateur (Administrator) (2017/04/14 23:16:04) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Utilisateur\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1 Connected, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ Navigateurs Internet (2) - 0s ~ MFIE: Mozilla Firefox 43.0.1 (x86 fr) ~ MSIE: Internet Explorer v11.0.9600.18639 ---\\ Informations sur les produits Windows (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 5s Malwarebytes Anti-Malware version 2.2.0.1024 (Protection) Windows Defender (Deactivate) ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 69 Stepping 1, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4115.736 MB (41% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 728 GB (77%) free of 936 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC ~ User Name: Utilisateur ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 0s ~ Drive C: has 728 GB free of 936 GB (System) ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 5s [MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2755504] =>.Microsoft Windows® [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [54784] =>.Microsoft Corporation [MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [146944] =>.Microsoft Corporation [MD5.1C5E7DFE2DF454E1C04C8A6B0CCF8297] - 25/03/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3241472] =>.Microsoft Corporation [MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [570880] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 18/03/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation [MD5.CF5FA7E4FB587B0F09BB0C143EB49797] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [658432] =>.Microsoft Corporation [MD5.F2E67F682DDCFE2C2C170F2AA3650ED6] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [499200] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 20/01/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation [MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows® [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation [MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation [MD5.4FED6AD69C9EE1EE7FD3C88437138855] - 11/01/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [138752] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 18/03/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation [MD5.E2FC654EC895E92A022794329BFC53EC] - 01/02/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation [MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation [MD5.9980B262DBE439AE6BDC91AA985F19EE] - 30/12/2015 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2017624] =>.Microsoft Windows® [MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation [MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 18/03/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation [MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [108032] =>.Microsoft Corporation [MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (15) - 3s O23 - Service: @oem18.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Man (BcmBtRSupport) . (.Broadcom Corporation. - Bluetooth Radio Management Support.) - C:\Windows\system32\BtwRSupportService.exe =>.Broadcom Corporation. O23 - Service: Bluetooth Service (btwdins) . (.Broadcom Corporation. - Bluetooth Support Server.) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe =>.Broadcom Corporation® O23 - Service: CCDMonitorService (CCDMonitorService) . (.Acer Incorporated - CCD Monitor Service.) - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe =>.Acer Incorporated® O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\system32\igfxCUIService.exe =>.Intel Corporation O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products® O23 - Service: (MBAMService) . (.Malwarebytes - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: McAfee Boot Delay Start Service (mcbootdelaystartsvc) . (...) - C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O23 - Service: McAfee CSP Service (mccspsvc) . (...) - C:\Program Files\Common Files\McAfee\CSP\1.3.374.0\McCSPServiceHost.exe (.not file.) O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe =>.CyberLink® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 41s SS - Auto [14/11/2013] [ 2251992] @oem18.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Man (BcmBtRSupport) . (.Broadcom Corporation..) - C:\Windows\system32\BtwRSupportService.exe =>.Broadcom Corporation® SR - Auto [18/02/2014] [ 980184] Bluetooth Service (btwdins) . (.Broadcom Corporation..) - C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe =>.Broadcom Corporation® SR - Auto [15/08/2016] [ 2267352] CCDMonitorService (CCDMonitorService) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe =>.Acer Incorporated® SS - Demand [18/03/2014] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - Software and Firmware Products® SR - Auto [08/07/2015] [ 1353720] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe =>.ESET, spol. s r.o.® SR - Demand [22/07/2014] [ 2573032] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe =>.Acer Incorporated® SR - Auto [26/05/2016] [ 350064] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® SS - Demand [26/05/2016] [ 210288] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc® SS - Auto [26/11/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [26/11/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [18/03/2014] [ 282096] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\system32\igfxCUIService.exe =>.Intel Corporation - Software and Firmware Products® SR - Auto [27/08/2013] [ 747520] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel(R) Corporation SS - Demand [27/08/2013] [ 828376] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service® SR - Auto [10/12/2013] [ 169432] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Intel® Management Engine Firmware® SR - Auto [10/12/2013] [ 390616] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Software and Firmware Products® SS - Auto [05/10/2015] [ 1135416] (MBAMService) . (.Malwarebytes.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [04/05/2016] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Demand [17/10/2014] [ 458984] Quick Access Service (QASvc) . (.Acer Incorporate.) - C:\Program Files\Acer\Acer Quick Access\QASvc.exe =>.Acer Incorporated® SR - Auto [24/04/2012] [ 254512] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe =>.CyberLink® SR - Demand [17/10/2014] [ 449768] Quick Access RadioMgr Service (RMSvc) . (.Acer Incorporate.) - C:\Program Files\Acer\Acer Quick Access\RMSvc.exe =>.Acer Incorporated® SS - Auto [27/02/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Demand [27/02/2017] [ 317400] User Experience Improvement Program (UEIPSvc) . (.acer.) - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe =>.Acer Incorporated® ---\\ Tâches planifiées en automatique (20) - 5s [MD5.D246B77DF1B4302BDC1332986F26815C] [APT] [abDocsDllLoader] (...) -- C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312] (.Activate.) =>.Acer Incorporated® [MD5.BD65571DB1C13947E47A9759E0E6F94A] [APT] [ACC] (.(C) All rights reserved.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [100608] (.Activate.) =>.Acer Incorporated® [MD5.192551432A694B27E9EEBDA5794CCB12] [APT] [ACCAgent] (.(C) All rights reserved.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41728] (.Activate.) =>.Acer Incorporated® [MD5.B722E9FE97542EEB2A611DF37E73AEB2] [APT] [BacKGroundAgent] (.Acer Incorporated.) -- C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752] (.Activate.) =>.Acer Incorporated® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200] (.Activate.) =>.Google Inc® [MD5.EAB3CD3E7FBB4BE203BDC44007FE4162] [APT] [Power Management] (.Acer Incorporated.) -- C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [384232] (.Activate.) =>.Acer Incorporated® [MD5.0AF60557A104CD19C746EEFA4778AE08] [APT] [Quick Access] (.Acer Incorporate.) -- C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [324328] (.Activate.) =>.Acer Incorporated® [MD5.0AF60557A104CD19C746EEFA4778AE08] [APT] [Quick Access Quick Launcher] (.Acer Incorporate.) -- C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [324328] (.Activate.) =>.Acer Incorporated® [MD5.6C531EBEFA4718C279D1C1729C77D230] [APT] [UbtFrameworkService] (.TODO: .) -- C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [216296] (.Activate.) =>.Acer Incorporated® O39 - APT: abDocsDllLoader - (...) -- C:\Windows\System32\Tasks\abDocsDllLoader [3338] =>.Acer Incorporated® O39 - APT: ACC - (.(C) All rights reserved.) -- C:\Windows\System32\Tasks\ACC [3804] =>.Acer Incorporated® O39 - APT: ACCAgent - (.(C) All rights reserved.) -- C:\Windows\System32\Tasks\ACCAgent [4562] =>.Acer Incorporated® O39 - APT: BacKGroundAgent - (.Acer Incorporated.) -- C:\Windows\System32\Tasks\BacKGroundAgent [3442] =>.Acer Incorporated® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3372] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3500] =>.Google Inc® O39 - APT: Power Management - (.Acer Incorporated.) -- C:\Windows\System32\Tasks\Power Management [2930] =>.Acer Incorporated® O39 - APT: Quick Access - (.Acer Incorporate.) -- C:\Windows\System32\Tasks\Quick Access [2896] =>.Acer Incorporated® O39 - APT: Quick Access Quick Launcher - (.Acer Incorporate.) -- C:\Windows\System32\Tasks\Quick Access Quick Launcher [3016] =>.Acer Incorporated® O39 - APT: UbtFrameworkService - (.TODO: .) -- C:\Windows\System32\Tasks\UbtFrameworkService [3268] =>.Acer Incorporated® ---\\ Applications lancées au démarrage du système (10) - 2s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe =>.Ivaylo Beltchev® O4 - HKLM\..\Run: [egui] . (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe =>.ESET, spol. s r.o.® O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe =>.Spotify AB® O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKCU\..\RunOnce: [Application Restart #2] C:\Users\Utilisateur\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe (.not file.) O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-21-2848196857-3988955299-235287549-1001\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe =>.Spotify AB® O4 - HKUS\S-1-5-21-2848196857-3988955299-235287549-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKUS\S-1-5-21-2848196857-3988955299-235287549-1001\..\RunOnce: [Application Restart #2] C:\Users\Utilisateur\AppData\Local\SweetLabs App Platform\Engine\ServiceHostApp.exe (.not file.) ---\\ Processus lancés (44) - 5s [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\system32\igfxCUIService.exe [0] [PID.296] =>.Intel Corporation [MD5.9E1A7582DD37E41D304E5918E1835E5D] - (.Broadcom Corporation. - Bluetooth Support Server.) -- C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe [980184] [PID.1344] =>.Broadcom Corporation® [MD5.CFEC5277906AE50E1FC486150A098078] - (.Acer Incorporated - CCD Monitor Service.) -- C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2267352] [PID.1380] =>.Acer Incorporated® [MD5.0F32048BF3EA2A85FE3AC48E8E7B7C85] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe [1353720] [PID.1456] =>.ESET, spol. s r.o.® [MD5.DAE6C3099D291EED8922A65C29ABCF52] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520] [PID.1668] =>.Intel(R) Corporation [MD5.41DDCF1ADD1FB7DE23DCF671740DDBE6] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512] [PID.1912] =>.CyberLink® [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\system32\igfxHK.exe [0] [PID.3164] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxTray.exe [0] [PID.3172] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\system32\igfxEM.exe [0] [PID.3236] =>.Intel Corporation [MD5.889E56C58F5AC4242E395E3AD5F7780C] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [161728] [PID.3452] =>.Ivaylo Beltchev® [MD5.8F9343E9015DA92CDC455A92FE320AB0] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13674712] [PID.80] =>.Realtek Semiconductor Corp® [MD5.A118C52E94780AEBFA52D05A3313CCF6] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [5595848] [PID.3416] =>.ESET, spol. s r.o.® [MD5.4860117DA2E6E9B300144902629B09AC] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1168896] [PID.1476] =>.Spotify AB® [MD5.E4203B7B3D3434FE280770E0F95E3810] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [27545048] [PID.4120] =>.Skype Software Sarl® [MD5.992DBEEC25BC2535B03B564367A3B652] - (.Acer Incorporate - QASvc.) -- C:\Program Files\Acer\Acer Quick Access\QASvc.exe [458984] [PID.4148] =>.Acer Incorporated® [MD5.912542B69521CE9963AA5F18CC0F1652] - (.Broadcom Corporation. - Bluetooth Tray Application.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe [534232] [PID.4156] =>.Broadcom Corporation® [MD5.4549618C96FD6EC3056BA16634EB9D54] - (.Acer Incorporate - QAEvent.) -- C:\Program Files\Acer\Acer Quick Access\QAEvent.exe [528616] [PID.4184] =>.Acer Incorporated® [MD5.793D7221E5EC69EA615349A13B702B8C] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596528] [PID.4420] =>.Oracle America, Inc.® [MD5.0D515EA69D377C2763CB3AE1B7C77331] - (.Acer Incorporate - QAMsg.) -- C:\Program Files\Acer\Acer Quick Access\QAMsg.exe [447720] [PID.4496] =>.Acer Incorporated® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.3572] =>.Google Inc® [MD5.F15FB6917435F714F31604FAE64BF254] - (.Acer Incorporate - RMSvc.) -- C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768] [PID.5016] =>.Acer Incorporated® [MD5.6066FDFF6E02A0F1F2584EBC9D4A1E63] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573032] [PID.4080] =>.Acer Incorporated® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.140] =>.Google Inc® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.5116] =>.Google Inc® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.1284] =>.Google Inc® [MD5.2ACFEA2E5E88CEBCD3800FB1AEB77F9E] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [5474536] [PID.2088] =>.Acer Incorporated® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.4984] =>.Google Inc® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.2096] =>.Google Inc® [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxext Module.) -- C:\Windows\system32\igfxext.exe [0] [PID.836] =>.Intel Corporation [MD5.11A0FF3516138A7299412FF11408D81F] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe [395496] [PID.2992] =>.Acer Incorporated® [MD5.96420506C025EF2A7B0B4EEC3226418F] - (.Acer Incorporated - ePowerWinMonitor.) -- C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe [259304] [PID.3924] =>.Acer Incorporated® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.1840] =>.Google Inc® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.2620] =>.Google Inc® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.3608] =>.Google Inc® [MD5.722C18CC8C7F5E2A2FDF35F7892C91C0] - (.WildTangent - WildTangent Games App Integration Service.) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350064] [PID.5548] =>.WildTangent Inc® [MD5.52069AEB42D3D0F97CBCA1085EBF55E6] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432] [PID.5620] =>.Intel Corporation - Intel® Management Engine Firmware® [MD5.E2952760B05A256FB1412D20A41C89C1] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [390616] [PID.5672] =>.Intel Corporation - Software and Firmware Products® [MD5.D246B77DF1B4302BDC1332986F26815C] - (...) -- C:\Program Files (x86)\Acer\abDocs\abDocsDllLoaderMonitor.exe [1769312] [PID.5792] =>.Acer Incorporated® [MD5.B722E9FE97542EEB2A611DF37E73AEB2] - (.Acer Incorporated - Background Agent.) -- C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752] [PID.5804] =>.Acer Incorporated® [MD5.9F4CC4AEE1C769864882D11D9787180F] - (.Acer Cloud Technology - AcerCloud Client.) -- C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe [9105112] [PID.5928] =>.Acer Incorporated® [MD5.EC820250BBF2AC99B27DD3A6F3A995EB] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1111896] [PID.5656] =>.Google Inc® [MD5.9B445E1FEDB1A7BF8BF136512C0B4E73] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Utilisateur\Downloads\ZHPDiag3.exe [2717696] [PID.5992] =>.Nicolas Coolman [MD5.EB7E8BF35D31BC9F111E282C2F263854] - (.acer - UEIPSvc.) -- C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240] [PID.4016] =>.Acer Incorporated® [MD5.3787A24B4F4CE8A8D053D95948D0DEF8] - (.Oracle Corporation - Java Update Checker.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe [923184] [PID.4720] =>.Oracle America, Inc.® ---\\ Google Chrome, Démarrage,Recherche,Extensions (22) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://forum-images.hardware.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://forum.hardware.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://nsa33.casimages.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://nsa37.casimages.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://nsa38.casimages.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://partner.googleadservices.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.digidip.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://survey.g.doubleclick.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.hardware.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://securepubads.g.doubleclick.net G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name__ =>.Adblock G2 - GCE: Preference [User Data\Default] [clellnciejhoedgepbdilbkdkaoecgpc] __MSG_search_string__ =>.ecosia.org G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 4s M0 - MFSP: prefs.js [Utilisateur - qb0vuuyi.default] http://www.malwarebytes.org/ P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\qb0vuuyi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL =>.McAfee Total Protection MIME Plugin P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll =>.WildTangent ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_66\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_66\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ Raccourcis Global Startup (91) - 9s O4 - GS\Desktop [Administrateur]: Aide Grenouille.lnk . (.TeamViewer GmbH - .) C:\Aide Grenouille\Aide Grenouille.exe =>.TeamViewer GmbH® O4 - GS\Desktop [Administrateur]: ESET NOD32 Antivirus.lnk . (.ESET - .) C:\Program Files (x86)\ESET\ESET NOD32 Antivirus\egui.exe =>.ESET O4 - GS\Desktop [Administrateur]: Images - Raccourci.lnk . (...) C:\Users\Utilisateur\Pictures =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: LibreOffice Calc.lnk . (.The Document Foundation - .) C:\Program Files (x86)\LibreOffice 5\program\scalc.exe =>.The Document Foundation O4 - GS\Desktop [Administrateur]: LibreOffice Writer.lnk . (.The Document Foundation - .) C:\Program Files (x86)\LibreOffice 5\program\swriter.exe =>.The Document Foundation O4 - GS\Desktop [Administrateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Programs [Administrateur]: Documents.lnk . (...) C:\Users\Utilisateur\Desktop\Documents O4 - GS\Programs [Administrateur]: Gestionnaire audio HD.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Pictures.lnk . (...) C:\Users\Utilisateur\Pictures =>.Microsoft Corporation O4 - GS\Desktop [Utilisateur]: Aide Grenouille.lnk . (.TeamViewer GmbH - .) C:\Aide Grenouille\Aide Grenouille.exe =>.TeamViewer GmbH® O4 - GS\Desktop [Utilisateur]: ESET NOD32 Antivirus.lnk . (.ESET - .) C:\Program Files (x86)\ESET\ESET NOD32 Antivirus\egui.exe =>.ESET O4 - GS\Desktop [Utilisateur]: Images - Raccourci.lnk . (...) C:\Users\Utilisateur\Pictures =>.Microsoft Corporation O4 - GS\Desktop [Utilisateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [Utilisateur]: LibreOffice Calc.lnk . (.The Document Foundation - .) C:\Program Files (x86)\LibreOffice 5\program\scalc.exe =>.The Document Foundation O4 - GS\Desktop [Utilisateur]: LibreOffice Writer.lnk . (.The Document Foundation - .) C:\Program Files (x86)\LibreOffice 5\program\swriter.exe =>.The Document Foundation O4 - GS\Desktop [Utilisateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre O4 - GS\Desktop [Utilisateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Utilisateur\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Utilisateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\sendTo [Utilisateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Utilisateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\TaskBar [Utilisateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Utilisateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Utilisateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Programs [Utilisateur]: Documents.lnk . (...) C:\Users\Utilisateur\Desktop\Documents O4 - GS\Programs [Utilisateur]: Gestionnaire audio HD.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Utilisateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Utilisateur]: Pictures.lnk . (...) C:\Users\Utilisateur\Pictures =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: abDocs.lnk . (.acer - abDocs.) C:\Program Files (x86)\Acer\abDocs\abDocs.exe =>.Acer Incorporated® O4 - GS\CommonDesktop [Public]: abMusic.lnk . (.Acer Incorporated - abMusic.) C:\Program Files (x86)\Acer\abMusic\abMusic.exe =>.Acer Incorporated® O4 - GS\CommonDesktop [Public]: abPhoto.lnk . (.Acer Incorporated - abPhoto.) C:\Program Files (x86)\Acer\abPhoto\abPhoto.exe =>.Acer Incorporated® O4 - GS\CommonDesktop [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team O4 - GS\CommonDesktop [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Les Sims 2.lnk . (.Maxis, a division of Electronic Arts Inc. - The Sims 2.) C:\Program Files (x86)\EA GAMES\Les Sims 2\TSBin\Sims2.exe =>.Maxis, a division of Electronic Arts Inc. O4 - GS\CommonDesktop [Public]: Les Sims™ 2 Tout pour les ados Kit.lnk . (.Electronic Arts - The Sims 2 Launcher.) C:\Program Files (x86)\EA GAMES\Les Sims 2 Tout pour les ados Kit\TSBin\Sims2Launcher.exe =>.Electronic Arts O4 - GS\CommonDesktop [Public]: Les Sims™ 2 Au fil des saisons.lnk . (.Maxis, a division of Electronic Arts Inc. - The Sims 2 EP5.) C:\Program Files (x86)\EA GAMES\Les Sims 2 Au fil des saisons\TSBin\Sims2EP5.exe =>.Maxis, a division of Electronic Arts Inc. O4 - GS\CommonDesktop [Public]: LibreOffice 5.0.lnk . (.The Document Foundation - .) C:\Program Files (x86)\LibreOffice 5\program\soffice.exe =>.The Document Foundation O4 - GS\CommonDesktop [Public]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: PDFCreator.lnk . (.pdfforge - PDFCreator.) C:\Program Files\PDFCreator\PDFCreator.exe =>.pdfforge GmbH® O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN O4 - GS\CommonDesktop [Public]: WildTangent Games App - wildgames.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src desktop /dp wildgames =>.WildTangent Inc® O4 - GS\CommonDesktop [Public]: WinRAR.lnk . (.Alexander Roshal - .) C:\Program Files (x86)\WinRAR\WinRAR.exe =>.Alexander Roshal O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\Utilisateur\Desktop\Documents O4 - GS\Programs [Public]: Gestionnaire audio HD.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\Utilisateur\Pictures =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: Bluetooth.lnk . (.Broadcom Corporation. - .) C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe =>.Broadcom Corporation. O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\Windows\Camera\Camera.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: CDBurnerXP.lnk . (.Canneverbe Limited - CDBurnerXP.) C:\Program Files\CDBurnerXP\cdbxpp.exe =>.Canneverbe Limited® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\Windows\FileManager\FileManager.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files (x86)\Google\Google Earth\client\googleearth.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Microsoft Office.lnk . (.Microsoft Corporation - Microsoft Office.) C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE /OEM =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\Windows\FileManager\PhotosApp.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Spotify.lnk . (.Spotify Ltd - SpotifyLauncher.) C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify AB® O4 - GS\ProgramsCommon [Public]: Visionneuse Microsoft PowerPoint .lnk . (...) C:\Windows\Installer\{95140000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: WildTangent Games App - acer.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp Acerlt =>.WildTangent Inc® O4 - GS\ProgramsCommon [Public]: WildTangent Games App - wildgames.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp wildgames =>.WildTangent Inc® O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{D0D15F1F-44B6-4387-887D-F75A1919227E}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress ---\\ Protocole additionnel (21) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: wlpg [64Bits] - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation ---\\ Logiciels installés (82) - 15s O42 - Logiciel: abDocs - (.Acer Incorporated.) [HKLM][64Bits] -- {CA4FE8B0-298C-4E5D-A486-F33B126D6A0A} =>.Acer Incorporated® O42 - Logiciel: abDocs Office AddIn - (.Acer Incorporated.) [HKLM][64Bits] -- {DCBF3379-246B-47E1-8173-639B63940838} =>.Acer Incorporated O42 - Logiciel: abFiles - (.Acer Incorporated.) [HKLM][64Bits] -- {13885028-098C-4799-9B71-27DAC96502D5} =>.Acer Incorporated® O42 - Logiciel: abMusic - (.Acer Incorporated.) [HKLM][64Bits] -- {E9AF1707-3F3A-49E2-8345-4F2D629D0876} =>.Acer Incorporated® O42 - Logiciel: abPhoto - (.Acer Incorporated.) [HKLM][64Bits] -- {B5AD89F2-03D3-4206-8487-018298007DD0} =>.Acer Incorporated® O42 - Logiciel: Acer Care Center - (.Acer Incorporated.) [HKLM][64Bits] -- {A424844F-CDB3-45E2-BB77-1DDE4A091E76} =>.Acer Incorporated O42 - Logiciel: Acer Explorer Agent - (.Acer Incorporated.) [HKLM][64Bits] -- {4D0F42CF-1693-43D9-BDC8-19141D023EE0} =>.Acer Incorporated O42 - Logiciel: Acer Power Management - (.Acer Incorporated.) [HKLM][64Bits] -- {91F52DE4-B789-42B0-9311-A349F10E5479} =>.Acer Incorporated O42 - Logiciel: Acer Quick Access - (.Acer Incorporated.) [HKLM][64Bits] -- {C1FA525F-D701-4B31-9D32-504FC0CF0B98} =>.Acer Incorporated O42 - Logiciel: Acer Recovery Management - (.Acer Incorporated.) [HKLM][64Bits] -- {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} =>.Acer Incorporated O42 - Logiciel: Acer User Experience Improvement Program App Monitor Plugin - (.Acer Incorporated.) [HKLM][64Bits] -- {978724F6-1863-4DD5-9E66-FB77F5AB5613} =>.Acer Incorporated O42 - Logiciel: Acer User Experience Improvement Program Framework - (.Acer Incorporated.) [HKLM][64Bits] -- {12A718F2-2357-4D41-9E1F-18583A4745F7} =>.Acer Incorporated O42 - Logiciel: Acer Video Player - (.Acer Incorporated.) [HKLM][64Bits] -- {B6846F20-4821-11E3-8F96-0800200C9A66} =>.Acer Incorporated® O42 - Logiciel: Aloha TriPeaks - (.WildTangent.) [HKLM][64Bits] -- WTA-4af549e0-e854-49e7-b1a6-7aa046f53e49 =>.WildTangent Inc® O42 - Logiciel: AOP Framework - (.Acer Incorporated.) [HKLM][64Bits] -- {4A37A114-702F-4055-A4B6-16571D4A5353} =>.Acer Incorporated® O42 - Logiciel: Audacity 2.1.2 - (.Audacity Team.) [HKLM][64Bits] -- Audacity®_is1 =>.Audacity Team O42 - Logiciel: Bejeweled 2 Deluxe - (.WildTangent.) [HKLM][64Bits] -- WTA-31fdbb5f-816c-47c3-86b5-67e8b6ce4c06 =>.WildTangent Inc® O42 - Logiciel: Broadcom 802.11 Network Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Network Adapter =>.Broadcom Corporation O42 - Logiciel: CDBurnerXP - (.CDBurnerXP.) [HKLM][64Bits] -- {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 =>.CDBurnerXP O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {D4B3454F-7529-4F5F-851D-2C36933F7D64} =>.IvoSoft O42 - Logiciel: CyberLink PhotoDirector 3 - (.CyberLink Corp..) [HKLM][64Bits] -- {39337565-330E-4ab6-A9AE-AC81E0720B10} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PhotoDirector 3 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM][64Bits] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft O42 - Logiciel: eBay Worldwide - (.OEM.) [HKLM][64Bits] -- {91589413-6675-4C27-8AFC-EFB9103B90A5} =>.OEM O42 - Logiciel: ESET NOD32 Antivirus - (.ESET, spol s r. o..) [HKLM][64Bits] -- {8175D51C-4E72-4E8B-9169-99B80B81B691} =>.ESET, spol s r. o. O42 - Logiciel: Farm to Fork Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-640ecbdd-d5c2-4cdc-9969-3886e1fa0fb9 =>.WildTangent Inc® O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM][64Bits] -- {D4DF5498-C95C-4A02-9951-725FB2D7BC0D} =>.Foxit Corporation O42 - Logiciel: Galerie de photos - (.Microsoft Corporation.) [HKLM][64Bits] -- {439B34FF-F74E-4807-B5E2-4B758551DA6B} =>.Microsoft Corporation O42 - Logiciel: Game Explorer Categories - genres - (.WildTangent, Inc..) [HKLM][64Bits] -- WildTangentGameProvider-acer-genres =>.WildTangent, Inc. O42 - Logiciel: Game Explorer Categories - main - (.WildTangent, Inc..) [HKLM][64Bits] -- WildTangentGameProvider-acer-main =>.WildTangent, Inc. O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM][64Bits] -- {DC7D9EC9-2AD1-33A7-92CF-5F5051E62843} =>.Google, Inc. O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {817750FA-EC6A-485D-9901-0683AE6FFDF1} =>.Google O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-6dbc6db4-9319-45a3-af5f-79537eca8b37 =>.WildTangent Inc® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - Software and Firmware Products® O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {9FD91C5C-44AE-4D9D-85BE-AE52816B0294} =>.Intel Corporation O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {B7368FC9-A295-4A95-A9EB-AFD659BA7B71} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {B5E06417-A4AC-4225-B36E-7E34C91616E7} =>.Intel Corporation O42 - Logiciel: Java 8 Update 66 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218066F0} =>.Oracle Corporation O42 - Logiciel: Java 8 Update 66 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418066F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-17f61a8c-3694-412c-80ce-57acf4713ca8 =>.WildTangent Inc® O42 - Logiciel: King Oddball - (.WildTangent.) [HKLM][64Bits] -- WTA-d8cdc33f-416a-4452-ba93-c68607066b7a =>.WildTangent Inc® O42 - Logiciel: Les Sims 2 - (..) [HKLM][64Bits] -- {6E7DD182-9FC6-4651-0095-2E666CC6AF35} O42 - Logiciel: Les Sims™ 2 Tout pour les ados Kit - (.Electronic Arts.) [HKLM][64Bits] -- {5C648FDB-0138-4619-B66E-230EF53E8E2C} =>.Electronic Arts O42 - Logiciel: Les Sims™ 2 Au fil des saisons - (..) [HKLM][64Bits] -- {DFEF49D9-FC95-4301-99B9-2FB91C6ABA06} O42 - Logiciel: LibreOffice 5.0.3.2 - (.The Document Foundation.) [HKLM][64Bits] -- {F6536765-3E8F-4D1E-9833-0A89F4681D79} =>.The Document Foundation O42 - Logiciel: LUXOR Evolved - (.WildTangent.) [HKLM][64Bits] -- WTA-8cb35981-f26f-4ae5-8c54-877a57ed99a6 =>.WildTangent Inc® O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-30745cd1-4ef1-4752-b7cd-ac1a786b77c9 =>.WildTangent Inc® O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 43.0.1 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 43.0.1 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM][64Bits] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM][64Bits] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: MSVCRT110_amd64 - (.Microsoft.) [HKLM][64Bits] -- {E9FA781F-3E80-4399-825A-AD3E11C28C77} =>.Microsoft O42 - Logiciel: PDFCreator - (.pdfforge.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge O42 - Logiciel: Peggle Nights - (.WildTangent.) [HKLM][64Bits] -- WTA-e1bb05c8-038e-4a1f-9b2c-ebaf2d5b655d =>.WildTangent Inc® O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 =>.Antonio Da Cruz O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-e95d5a68-e1e4-437b-b067-f01bdcd0c718 =>.WildTangent Inc® O42 - Logiciel: Polar Bowler 1st Frame - (.WildTangent.) [HKLM][64Bits] -- WTA-73882902-d7f5-4708-b0b1-6678ee179055 =>.WildTangent Inc® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp. O42 - Logiciel: Skype™ 7.33 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A. O42 - Logiciel: Spotify - (.Spotify AB.) [HKLM][64Bits] -- Spotify =>.Spotify AB® O42 - Logiciel: The Chronicles of Emerland Solitaire - (.WildTangent.) [HKLM][64Bits] -- WTA-647e1266-8b87-453b-a976-ace2d0d429f7 =>.WildTangent Inc® O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-c191f061-28b9-4f9e-96e9-06492242d6f5 =>.WildTangent Inc® O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc® O42 - Logiciel: Visionneuse Microsoft PowerPoint - (.Microsoft Corporation.) [HKLM][64Bits] -- {95140000-00AF-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WIDCOMM Bluetooth Software - (.Broadcom Corporation.) [HKLM][64Bits] -- {C6D9ED03-6FCF-4410-9CB7-45CA285F9E11} =>.Broadcom Corporation O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent Inc® O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer =>.WildTangent Inc® O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-wildgames =>.WildTangent Inc® O42 - Logiciel: WinRAR 5.30 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Zuma's Revenge - (.WildTangent.) [HKLM][64Bits] -- WTA-d7d96036-b709-467d-9587-818ab6637b06 =>.WildTangent Inc® ---\\ HKCU & HKLM Software Keys (66) - 16s HKLM\SOFTWARE\Wow6432Node\Clearfi =>.Samsung Electronics HKLM\SOFTWARE\Wow6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Wow6432Node\EA GAMES =>.EA Games HKLM\SOFTWARE\Wow6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\Wow6432Node\ESET =>.ESET HKLM\SOFTWARE\Wow6432Node\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\OEM =>.OEM HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\Software =>.Unknow HKLM\SOFTWARE\Wow6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Acer =>.Acer HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\Fair Play labs HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\GameHouse =>.GameHouse HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\IvoSoft =>.IvoSoft HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Mine =>.Microsoft Corporation HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\OEM =>.OEM HKCU\SOFTWARE\pdfforge =>.pdfforge HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKCU\SOFTWARE\PopCap HKCU\SOFTWARE\ProtectedStorage HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\skypeapp-e6396a56e176 HKCU\SOFTWARE\TeamViewer =>.TeamViewer HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Widcomm =>.Widcomm HKCU\SOFTWARE\WildTangent =>.WildTangent HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft ---\\ Contenu des dossiers Programmes (213) - 30s O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\Accessory Store =>.Acer Incorporated® O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\Acer =>.Acer Incorporated® O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Broadcom =>.Broadcom O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\CDBurnerXP =>.Canneverbe Limited® O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\Classic Shell =>.Ivo Beltchev O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Dropbox =>.Acer Incorporated® O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 20/01/2015 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 13/04/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\LibreOffice 5 =>.LibreOffice O43 - CFD: 28/10/2014 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\PDFCreator =>.Philip Chinery O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 28/10/2014 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\WIDCOMM =>.Broadcom Corporation® O43 - CFD: 13/04/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 15/03/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 18/08/2016 - [] D -- C:\Program Files (x86)\Acer =>.Acer Incorporated® O43 - CFD: 15/01/2017 - [] D -- C:\Program Files (x86)\Audacity =>.Audacity O43 - CFD: 23/03/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 09/06/2016 - [] D -- C:\Program Files (x86)\EA GAMES =>.EA Games O43 - CFD: 28/10/2014 - [] D -- C:\Program Files (x86)\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 20/01/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 13/04/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 26/11/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes O43 - CFD: 28/11/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 17/01/2016 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 11/08/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 11/08/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 28/10/2014 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 28/11/2015 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\OEM =>.OEM O43 - CFD: 28/11/2015 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 28/10/2014 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 23/03/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\Spotify =>.Spotify AB® O43 - CFD: 20/01/2015 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 28/10/2014 - [] D -- C:\Program Files (x86)\WildGames =>.WildTangent Inc® O43 - CFD: 26/05/2016 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games O43 - CFD: 13/04/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 17/01/2016 - [] D -- C:\Program Files (x86)\Windows Live =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 13/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 18/08/2016 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer =>.Acer O43 - CFD: 25/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell =>.Ivo Beltchev O43 - CFD: 28/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 3 =>.CyberLink Corporation O43 - CFD: 28/10/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 10 =>.CyberLink Corporation O43 - CFD: 20/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12 =>.CyberLink Corporation O43 - CFD: 09/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES =>.EA Games O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET =>.ESET O43 - CFD: 28/10/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 22/05/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 26/11/2015 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.0 =>.LibreOffice O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware =>.Malwarebytes O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator =>.Philip Chinery O43 - CFD: 28/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 09/06/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/05/2016 - [] D -- C:\ProgramData\10tons O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\Acer =>.Acer O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 20/01/2015 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\ProgramData\CLSK =>.CLSK O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\ESET =>.ESET O43 - CFD: 20/01/2015 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 20/01/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 17/01/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\OEM =>.OEM O43 - CFD: 25/11/2015 - [] D -- C:\ProgramData\OEM_YAHOO =>.OEM Yahoo O43 - CFD: 26/11/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 22/05/2016 - [] D -- C:\ProgramData\PopCap Games =>.PopCap Games O43 - CFD: 20/01/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\VisualShape O43 - CFD: 22/05/2016 - [] D -- C:\ProgramData\Wild Tangent =>.Wild Tangent O43 - CFD: 25/12/2015 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 28/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 28/10/2014 - [] D -- C:\Program Files (x86)\Common Files\Nikon =>.Nikon O43 - CFD: 20/01/2015 - [] D -- C:\Program Files (x86)\Common Files\postureAgent =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 23/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 25/11/2015 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 17/01/2016 - [] D -- C:\Program Files (x86)\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 22/05/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\10tons O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 15/01/2017 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Audacity =>.Audacity O43 - CFD: 26/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Canneverbe Limited =>.Canneverbe Limited O43 - CFD: 26/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ClassicShell =>.SourceForge O43 - CFD: 26/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 18/09/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 08/01/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 25/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\funkitron =>.Funkitron Games O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 22/05/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Jewel Match 3 O43 - CFD: 27/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 25/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Magic Academy =>.Big Fish O43 - CFD: 07/09/2016 - [] SD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 28/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 23/05/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Rainbow O43 - CFD: 14/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Skype =>.Skype O43 - CFD: 22/05/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Spotify =>.Spotify O43 - CFD: 26/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Sun =>.Oracle O43 - CFD: 06/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\TeamViewer =>.TeamViewer O43 - CFD: 25/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\VisualShape O43 - CFD: 08/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 21/02/2016 - [] D -- C:\Users\Utilisateur\AppData\Roaming\WildTangent =>.WildTangent O43 - CFD: 12/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 14/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Acer Aspire R7 Tutorial =>.Acer Inc. O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\AOP SDK =>.Acer Inc. O43 - CFD: 25/11/2015 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 15/01/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\Audacity =>.Audacity O43 - CFD: 14/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\ClassicShell =>.SourceForge O43 - CFD: 18/08/2016 - [] D -- C:\Users\Utilisateur\AppData\Local\clear.fi =>.CyberLink Corporation O43 - CFD: 21/03/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 26/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\CyberLink =>.CyberLink Corporation O43 - CFD: 27/03/2017 - [0] D -- C:\Users\Utilisateur\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 31/10/2016 - [] D -- C:\Users\Utilisateur\AppData\Local\Google =>.Google O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\GWX =>.GWX O43 - CFD: 25/11/2015 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 28/06/2016 - [0] D -- C:\Users\Utilisateur\AppData\Local\MediaShow =>.CyberLink Corporation O43 - CFD: 29/04/2016 - [] D -- C:\Users\Utilisateur\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/01/2016 - [] D -- C:\Users\Utilisateur\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 27/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\MumboJumbo =>.MumboJumbo O43 - CFD: 25/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\OEM =>.OEM O43 - CFD: 11/02/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 23/04/2016 - [0] D -- C:\Users\Utilisateur\AppData\Local\PDFCreator =>.Philip Chinery O43 - CFD: 26/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 15/12/2015 - [0] D -- C:\Users\Utilisateur\AppData\Local\Skype =>.Skype O43 - CFD: 25/12/2015 - [] D -- C:\Users\Utilisateur\AppData\Local\Spotify =>.Spotify O43 - CFD: 14/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\SweetLabs App Platform O43 - CFD: 14/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [0] SHD -- C:\Users\Utilisateur\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [0] D -- C:\Users\Utilisateur\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 21/08/2016 - [] D -- C:\Users\Utilisateur\AppData\Local\Windows Live =>.Microsoft Corporation O43 - CFD: 14/04/2017 - [] D -- C:\Users\Utilisateur\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 26/11/2015 - [0] D -- C:\Users\Utilisateur\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 12/10/2016 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 22/08/2013 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 28/11/2015 - [0] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 12/10/2016 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 28/10/2014 - [] RD -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 26/11/2015 - [] D -- C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 20/01/2015 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 18/08/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\clear.fi =>.CyberLink Corporation O43 - CFD: 25/11/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 25/11/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\acer =>.Acer O43 - CFD: 03/08/2016 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 28/10/2014 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent ---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 28s O45 - LFCP:[MD5.BCF7D31A8240F79A9CFC0F5715E5E2E5] 14/04/2017 A -- C:\Windows\Prefetch\CACAOWEB.EXE-88D25C98.pf =>.Superfluous.CacaoWeb O45 - LFCP:[MD5.E44F0941A0821C7A9B7EF94041E1C999] 12/04/2017 A -- C:\Windows\Prefetch\CACAOWEB.EXE-C4281E51.pf =>.Superfluous.CacaoWeb ---\\ Image File Execution Options (16) - 1s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Liste des pilotes du système (63) - 14s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows® O58 - SDL:2013/11/14 04:59:42 A . (.Broadcom Corporation. - Broadcom Bluetooth Firmware Download Filter.) -- C:\Windows\System32\drivers\bcbtums.sys [170712] =>.Broadcom Corporation® O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2014/02/25 07:33:50 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL63a.SYS [7549616] =>.Broadcom Corporation® O58 - SDL:2014/02/03 18:28:46 A . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter for Windo.) -- C:\Windows\System32\drivers\btwampfl.sys [166616] =>.Broadcom Corporation® O58 - SDL:2014/02/03 11:28:34 A . (.Broadcom Corporation. - Bluetooth Audio Device.) -- C:\Windows\System32\drivers\btwaudio.sys [190168] =>.Broadcom Corporation® O58 - SDL:2013/12/11 09:53:30 A . (.Broadcom Corporation. - Broadcom Bluetooth AVDT Service.) -- C:\Windows\System32\drivers\btwavdt.sys [230104] =>.Broadcom Corporation® O58 - SDL:2012/07/26 18:48:26 A . (.Broadcom Corporation. - Broadcom Bluetooth L2CAP Service.) -- C:\Windows\System32\drivers\btwl2cap.sys [40248] =>.Broadcom Corporation® O58 - SDL:2013/12/11 09:53:28 A . (.Broadcom Corporation. - Bluetooth Remote Control HID Minidriver.) -- C:\Windows\System32\drivers\btwrchid.sys [38616] =>.Broadcom Corporation® O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2015/07/14 16:29:08 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [255240] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/14 16:29:08 A . (.ESET - Devmon monitor.) -- C:\Windows\System32\drivers\edevmon.sys [251632] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/14 16:29:08 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [178520] =>.ESET, spol. s r.o.® O58 - SDL:2015/07/14 16:29:08 A . (.ESET - ESET Personal Firewall driver.) -- C:\Windows\System32\drivers\epfwwfpr.sys [168208] =>.ESET, spol. s r.o.® O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows® O58 - SDL:2013/09/23 14:49:22 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\Windows\System32\drivers\HipShieldK.sys [197704] =>.McAfee, Inc.® O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2014/06/10 16:40:24 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\drivers\iaLPSS_I2C.sys [120312] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2014/03/07 18:18:24 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [3729920] =>.Intel Corporation O58 - SDL:2014/03/07 18:26:44 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [450520] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2014/03/01 22:32:31 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [38296] =>.Intel Wireless Display® O58 - SDL:2014/03/01 22:32:31 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [27032] =>.Intel Wireless Display® O58 - SDL:2013/07/17 18:59:00 A . (.Acer Incorporated - LMDriver.) -- C:\Windows\System32\drivers\LMDriver.sys [21360] =>.Acer Incorporated® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2015/10/05 10:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\mbam.sys [25816] =>.Malwarebytes Corporation® O58 - SDL:2015/10/05 10:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\Windows\System32\drivers\mbamchameleon.sys [109272] =>.Malwarebytes Corporation® O58 - SDL:2017/04/07 18:29:25 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2014/09/19 03:45:12 A . (.McAfee, Inc. - McAfee Driver Cleaning Driver.) -- C:\Windows\System32\drivers\mfeclnrk.sys [11336] =>.McAfee, Inc.® O58 - SDL:2014/09/19 03:43:24 A . (.McAfee, Inc. - Event Driver.) -- C:\Windows\System32\drivers\mfencbdc.sys [447440] =>.McAfee, Inc.® O58 - SDL:2014/09/19 03:44:18 A . (.McAfee, Inc. - Detection driver.) -- C:\Windows\System32\drivers\mfencrk.sys [96600] =>.McAfee, Inc.® O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2015/10/05 10:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\Windows\System32\drivers\mwac.sys [64216] =>.Malwarebytes Corporation® O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows® O58 - SDL:2013/07/17 18:59:00 A . (.Acer Incorporated - RadioShim.) -- C:\Windows\System32\drivers\RadioShim.sys [14680] =>.Acer Incorporated® O58 - SDL:2014/06/17 14:14:10 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [873688] =>.Realtek Semiconductor Corp® O58 - SDL:2014/07/22 12:57:38 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4018136] =>.Realtek Semiconductor Corp® O58 - SDL:2014/06/20 04:12:22 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [506072] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2016/09/05 06:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/09/05 06:47:12 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [165504] =>.Samsung Electronics CO., LTD.® O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2014/02/19 13:20:30 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\Windows\System32\drivers\SynRMIHID.sys [42224] =>.Synaptics Incorporated® O58 - SDL:2013/12/10 01:27:36 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [100312] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 1s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (3) - 10s O69 - SBI: prefs.js [Utilisateur - qb0vuuyi.default] user_pref("extensions.xpiState", "{\"app-profile\":{\"cacaoweb@cacaoweb.org\":{\"d\":\"C:\\\\Users\\\\Utilisateur\\\\AppData\\\\Ro[...] =>.Superfluous.CacaoWeb O69 - SBI: SearchScopes [HKCU] {E6C8E4C0-DEBA-45EF-8D5B-7F1DD719481C} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1080320] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [927744] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [228864] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [342016] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542720] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3714560] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (35) - 9s O87 - FAEL: "{537BE150-4154-4AD9-87A9-7D8FB8392C1E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{9E4E8448-7D02-4D08-B2CE-3DE1DC265751}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe (.not file.) O87 - FAEL: "{FA04BFDF-A82F-475E-AECF-A9801986C486}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe (.not file.) O87 - FAEL: "{29A2BA26-90CC-43E0-8F85-7DB807529872}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (.not file.) O87 - FAEL: "{984D3A40-B658-4B97-95AD-59BF16F509E2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe (.not file.) O87 - FAEL: "{8F69719D-6E3F-4CE0-B99A-46594257A31A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{0E7F543B-77FE-4FB2-B75A-03573270DA5A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{A70672A3-1725-4226-8BCF-DB0B16359BC6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{F155EA77-C9F2-4FC5-B397-35FE35CA9C45}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{E3B2E293-2632-4059-BC80-5CE3A8D4E13C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{37C71D6B-2A9B-4CD5-9CA6-0C1EFED866DD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{2405D9FC-3617-4005-84A5-AF3CC3D8812C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{35346540-EAB0-4ECB-98DC-218DD40E7BA2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{BD080CF8-0225-4B42-A5BC-4135301B0566}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{2A335182-1E99-47FF-8C0F-140D8880FA4E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{AEC7B103-552A-417E-8463-5F89F9362763}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{FF5840BA-C92E-4F76-827E-A39A1B5E8EBD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{6AC3BBA5-4921-4B9F-8370-0D17E0DE342B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{D47C9209-A412-4E2C-B3C2-4E3CAC95A591}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{D227012D-8197-4A73-A9C2-D15B5A0E1EE7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{1E940C2E-88CD-4E68-9F1E-B0745F580BDD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{54B29CEB-5B2D-4451-8FF9-3A85E2B24CAD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{F52A7A9E-A6DD-4BC6-ACFA-5E252BC37282}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{AD491A85-16B1-4FFC-8E76-EBD22AA73C9A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{808BFD35-6AF6-40B3-8A7C-945D1636EECD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "TCP Query User{32E98BB4-E97D-4323-A4AC-234E2E0A8837}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb O87 - FAEL: "UDP Query User{F1D433E9-D2C8-4983-A8FA-358737530067}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb O87 - FAEL: "{E396311F-4EB7-4978-8EF8-B3FD5F11B360}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{254700B4-514F-40A5-924A-E7D2D367BBD0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe (.not file.) O87 - FAEL: "{03392DF4-08D4-4F7A-BE51-D2CB7B064751}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "{A9CFD2A5-6272-4F9C-96F6-46E52F64C86B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe (.not file.) O87 - FAEL: "TCP Query User{FCEB882F-CE4A-4672-83FB-86BC440AC024}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb O87 - FAEL: "UDP Query User{544E64D9-6B2E-4BC2-90B1-FB1043206025}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb O87 - FAEL: "TCP Query User{8AE233F3-4755-4DDC-9B1F-A13FCA03C0DA}C:\users\utilisateur\desktop\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\utilisateur\desktop\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb O87 - FAEL: "UDP Query User{DCC4BBDC-862F-4B49-A541-B6BDEC652744}C:\users\utilisateur\desktop\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\utilisateur\desktop\cacaoweb.exe (.not file.) =>.Superfluous.CacaoWeb ---\\ Scan Additionnel (22) - 94s C:\Windows\Prefetch\CACAOWEB.EXE-88D25C98.pf =>.Superfluous.CacaoWeb C:\Windows\Prefetch\CACAOWEB.EXE-C4281E51.pf =>.Superfluous.CacaoWeb [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:TCP Query User{32E98BB4-E97D-4323-A4AC-234E2E0A8837}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:UDP Query User{F1D433E9-D2C8-4983-A8FA-358737530067}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:TCP Query User{FCEB882F-CE4A-4672-83FB-86BC440AC024}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:UDP Query User{544E64D9-6B2E-4BC2-90B1-FB1043206025}C:\users\utilisateur\appdata\roaming\cacaoweb\cacaoweb.exe =>.Superfluous.CacaoWeb [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:TCP Query User{8AE233F3-4755-4DDC-9B1F-A13FCA03C0DA}C:\users\utilisateur\desktop\cacaoweb.exe =>.Superfluous.CacaoWeb [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:UDP Query User{DCC4BBDC-862F-4B49-A541-B6BDEC652744}C:\users\utilisateur\desktop\cacaoweb.exe =>.Superfluous.CacaoWeb C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d26opx5dl8t69i.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d26opx5dl8t69i.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d26opx5dl8t69i.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d26opx5dl8t69i.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.similarsites.com_0.localstorage =>PUP.Optional.SimilarSites C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fr.similarsites.com_0.localstorage-journal =>PUP.Optional.SimilarSites C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage =>PUP.Optional.Chatango C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_st.chatango.com_0.localstorage-journal =>PUP.Optional.Chatango ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.Superfluous.CacaoWeb https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.Superfluous.CloudfrontNet https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://www.nicolascoolman.com/fr/adware-similarsites/ =>PUP.Optional.SimilarSites https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Chatango ~ Unselected Options: O82, ~ End of the scan, 36844 items in 07mn55s (986)(0)