~ ZHPDiag v2017.5.16.82 Par Nicolas Coolman (2017/05/16) ~ Démarré par Calimerotte (Administrator) (2017/05/17 17:00:03) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Calimerotte\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Calimerotte\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ Navigateurs Internet (3) - 1s ~ GCIE: Google Chrome v58.0.3029.110 ~ MFIE: Mozilla Firefox 53.0.2 (x86 fr) ~ MSIE: Internet Explorer v11.0.9600.18666 ---\\ Informations sur les produits Windows (3) - 6s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ Logiciels de protection (4) - 4s Malwarebytes Anti-Malware version 2.2.1.1043 (Protection) Panda Devices Agent v1.08.00 (Protection) Panda Free Antivirus v17.00.01.0000 (Protection) Windows Defender (Deactivate) ---\\ Surveillance de Logiciels (2) - 5s ~ Adobe Flash Player 25 NPAPI (Surveillance) ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8268.052 MB (68% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 614 GB (65%) free of 938 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: CALI ~ User Name: Calimerotte ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 614 GB free of 938 GB (System) ~ Drive D: has GB free of 8 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2755504] =>.Microsoft Windows® [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 21/11/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [54784] =>.Microsoft Corporation [MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [146944] =>.Microsoft Corporation [MD5.4A60B440DC5D2BFAD65B55926BC2C292] - 16/04/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3241472] =>.Microsoft Corporation [MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [570880] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/11/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] =>.Microsoft Corporation [MD5.CF5FA7E4FB587B0F09BB0C143EB49797] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [658432] =>.Microsoft Corporation [MD5.F2E67F682DDCFE2C2C170F2AA3650ED6] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [499200] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 21/11/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation [MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft Windows® [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation [MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation [MD5.4FED6AD69C9EE1EE7FD3C88437138855] - 11/01/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138752] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 21/11/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 23/08/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 21/11/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation [MD5.DE1513C338189348F6934A25CF6E4D19] - 11/03/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation [MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation [MD5.E6E90E10CE26DD04868AED601091A124] - 11/03/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2017624] =>.Microsoft Windows® [MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation [MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 21/11/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation [MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [108032] =>.Microsoft Corporation [MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (34) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® O23 - Service: DbxSvc (DbxSvc) . (.Dropbox, Inc. - Dropbox Service.) - C:\WINDOWS\system32\DbxSvc.exe =>.Dropbox, Inc. O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® O23 - Service: Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2015 Intel Corporation. All rights rese - Intel(R) System Usage Report.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe =>.Intel(R) Software Development Products® O23 - Service: FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe =>.MAGIX AG O23 - Service: GoPro Device Detection Service (GoProDeviceDetectionService) . (...) - C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe =>.GoPro, Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realtek Semiconductor Corp® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\system32\igfxCUIService.exe =>.Intel Corporation O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: Panda Protection Service (NanoServiceMain) . (.Panda Security, S.L. - Application Host Service.) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe =>.Panda Security S.L® O23 - Service: Online Games Manager (ogmservice) . (.RealNetworks, Inc. - Online Games Manager.) - C:\Program Files (x86)\Online Games Manager\ogmservice.exe =>.GameHouse Europe B.V.® O23 - Service: Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts - OriginWebHelperService.) - C:\Program Files (x86)\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.® O23 - Service: Panda Devices Agent (PandaAgent) . (.Panda Security, S.L. - Agent Service.) - C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe =>.Panda Security S.L® O23 - Service: PDF Architect 4 Creator (PDF Architect 4 Creator) . (.pdfforge GmbH - PDF Architect 4.) - C:\Program Files\PDF Architect 4\creator-ws.exe =>.pdfforge GmbH® O23 - Service: PDF Architect 4 Manager (PDF Architect 4 Manager) . (.© pdfforge GmbH. - Manager service.) - C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe =>.pdfforge GmbH® O23 - Service: Panda Product Service (PSUAService) . (.Panda Security, S.L. - PSUAService.) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe =>.Panda Security S.L® O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC. - RfBtnSvc Application.) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.® O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_W (SystemUsageReportSvc_WILLAMETTE) . (.Copyright (C) 2015 Intel Corporation. All rights rese - Intel(R) System Usage Report.) - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe =>.Intel(R) Software Development Products® O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® O23 - Service: ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe =>.Atheros ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (47) - 30s SR - Auto [25/04/2017] [ 83056] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [09/05/2017] [ 271864] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [28/01/2016] [ 693440] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [27/02/2017] [ 2227312] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SR - Auto [17/03/2017] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Demand [01/10/2014] [ 281488] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SS - Auto [20/03/2016] [ 143144] Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Demand [20/03/2016] [ 143144] Service Mise à jour Dropbox (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SR - Auto [01/05/2017] [ 48944] DbxSvc (DbxSvc) . (.Dropbox, Inc..) - C:\WINDOWS\system32\DbxSvc.exe =>.Dropbox, Inc® SS - Demand [16/11/2012] [ 469648] Device Fast-lane Service (DeviceFastLaneService) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Device Fast-lane\DeviceFastLaneSvc.exe =>.Acer Incorporated® SR - Auto [10/12/2012] [ 350544] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® SS - Demand [15/03/2013] [ 662088] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe =>.Acer Incorporated® SR - Auto [14/09/2015] [ 414360] Energy Server Service WILLAMETTE (ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2015 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe =>.Intel(R) Software Development Products® SR - Auto [23/01/2012] [ 1858048] FABS - Helping agent for MAGIX media database (Fabs) . (.MAGIX AG.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe =>.MAGIX AG SS - Demand [26/04/2011] [ 2702848] Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) . (.MAGIX®.) - C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe =>.MAGIX® SR - Auto [12/05/2016] [ 37808] GoPro Device Detection Service (GoProDeviceDetectionService) . (...) - C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe =>.GoPro, Inc.® SS - Auto [22/04/2017] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [22/04/2017] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [24/07/2012] [ 2457232] IconMan_R (IconMan_R) . (.Realsil Microelectronics Inc..) - C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe =>.Realtek Semiconductor Corp® SR - Auto [01/10/2014] [ 319376] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\system32\igfxCUIService.exe =>.Intel Corporation - pGFX® SR - Auto [20/04/2012] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SS - Demand [22/03/2017] [ 689464] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SR - Auto [17/07/2012] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® SR - Auto [17/07/2012] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Demand [06/05/2017] [ 173512] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [05/08/2016] [ 153096] Panda Protection Service (NanoServiceMain) . (.Panda Security, S.L..) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe =>.Panda Security S.L® SR - Auto [13/07/2016] [ 582544] Online Games Manager (ogmservice) . (.RealNetworks, Inc..) - C:\Program Files (x86)\Online Games Manager\ogmservice.exe =>.GameHouse Europe B.V.® SS - Demand [24/01/2017] [ 2122248] Origin Client Service (Origin Client Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginClientService.exe =>.Electronic Arts, Inc.® SS - Auto [24/01/2017] [ 2184208] Origin Web Helper Service (Origin Web Helper Service) . (.Electronic Arts.) - C:\Program Files (x86)\Origin\OriginWebHelperService.exe =>.Electronic Arts, Inc.® SR - Auto [19/07/2016] [ 86104] Panda Devices Agent (PandaAgent) . (.Panda Security, S.L..) - C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe =>.Panda Security S.L® SS - Demand [05/08/2016] [ 2438880] PDF Architect 4 (PDF Architect 4) . (.pdfforge GmbH.) - C:\Program Files\PDF Architect 4\ws.exe =>.pdfforge GmbH® SS - Demand [05/08/2016] [ 1038048] PDF Architect 4 CrashHandler (PDF Architect 4 CrashHandler) . (.pdfforge GmbH.) - C:\Program Files\PDF Architect 4\crash-handler-ws.exe =>.pdfforge GmbH® SR - Auto [05/08/2016] [ 851168] PDF Architect 4 Creator (PDF Architect 4 Creator) . (.pdfforge GmbH.) - C:\Program Files\PDF Architect 4\creator-ws.exe =>.pdfforge GmbH® SR - Auto [18/05/2016] [ 972056] PDF Architect 4 Manager (PDF Architect 4 Manager) . (.© pdfforge GmbH..) - C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe =>.pdfforge GmbH® SR - Auto [05/08/2016] [ 48584] Panda Product Service (PSUAService) . (.Panda Security, S.L..) - C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe =>.Panda Security S.L® SR - Auto [10/12/2013] [ 93296] Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.® SS - Auto [25/07/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SR - Auto [25/07/2016] [ 324224] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.® SR - Auto [25/07/2016] [ 324224] Intel(R) System Usage Report Service SystemUsageReportSvc_W (SystemUsageReportSvc_WILLAMETTE) . (.Copyright (C) 2015 Intel Corporation. All rights rese.) - C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe =>.Intel(R) Software Development Products® SR - Auto [25/07/2016] [ 324224] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SS - Demand [25/07/2016] [ 324224] User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) . (.Copyright (C) 2015 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe =>.Intel(R) Software Development Products® SR - Auto [25/07/2016] [ 324224] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® SR - Auto [25/07/2016] [ 324224] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® SR - Auto [25/07/2016] [ 324224] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® SR - Auto [25/07/2016] [ 324224] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® SR - Auto [25/07/2016] [ 324224] ZAtheros Wlan Agent (ZAtheros Wlan Agent) . (.Atheros.) - C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe =>.Atheros ---\\ Tâches planifiées en automatique (8) - 5s [MD5.7245B4C192D20107B4A3E887AED3F76E] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6490904] (.Activate.) =>.Piriform Ltd® [MD5.2AEDCCA604B6A8808DBA746AFC5D9B4A] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [570240] (.Activate.) =>.Apple Inc.® [MD5.C72865DE00C0B7E4B4C3DEBCB347FC36] [APT] [AVAST Software\Avast settings backup] (.AVAST Software.) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [797264] (.Activate.) =>.AVAST Software s.r.o.® [MD5.7D5060999E9264C1993134411497F76B] [APT] [Microsoft\Windows\orangeinside] (.Orange.) -- C:\Users\Calimerotte\AppData\Roaming\Orange\OrangeInside\OrangeInside.exe [622592] (.Activate.) =>.Orange [MD5.FA8F87E6DE90B76E651CF7553077F405] [APT] [Microsoft\Windows\orangeinstaller] (.Orange SA.) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe [476760] (.Activate.) =>.Orange SA O39 - APT: Unknown - (.Dropbox Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job [1202] =>.Dropbox Inc. O39 - APT: Unknown - (.Dropbox Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job [1206] =>.Dropbox Inc. O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2794] =>.Piriform Ltd® ---\\ Applications lancées au démarrage du système (28) - 1s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation® O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [GoPro Tray App] . (.Copyright © 2015 - GoProDesktopSystemTray.) -- C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe =>.GoPro, Inc.® O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - HKCU\..\Run: [AdobeBridge] (.Orphan.) =>.Superfluous.Orphan O4 - HKCU\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.® O4 - HKCU\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.® O4 - HKCU\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.® O4 - HKCU\..\Run: [931080] . (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\268411\799930.exe =>Trojan.GenericKD O4 - HKCU\..\Run: [365841] . (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\244319\817873.exe =>Trojan.GenericKD O4 - HKCU\..\Run: [434382] . (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\529905\481297.exe =>Trojan.GenericKD O4 - HKLM\..\Wow6432Node\Run: [LManager] (.Orphan.) =>.Superfluous.Orphan O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc® O4 - HKLM\..\Wow6432Node\Run: [PSUAMain] . (.Panda Security, S.L. - AV Console.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe =>.Panda Security S.L® O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [EADM] . (.Electronic Arts - Origin.) -- C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [AdobeBridge] (.Orphan.) =>.Superfluous.Orphan O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [iCloudServices] . (.Apple Inc. - iCloud Services.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [iCloudDrive] . (.Apple Inc. - iCloud Drive.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [iCloudPhotos] . (.Apple Inc. - iCloud Photo Library.) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe =>.Apple Inc.® O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [931080] . (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\268411\799930.exe =>Trojan.GenericKD O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [365841] . (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\244319\817873.exe =>Trojan.GenericKD O4 - HKUS\S-1-5-21-3249639774-1326141858-1622726986-1001\..\Run: [434382] . (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\529905\481297.exe =>Trojan.GenericKD ---\\ Processus lancés (56) - 2s [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxCUIService Module.) -- C:\WINDOWS\system32\igfxCUIService.exe [0] [PID.1200] =>.Intel Corporation [MD5.8D6BA8E7676038A27FD4ECF12CC744B0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83056] [PID.1724] =>.Adobe Systems, Incorporated® [MD5.6A90FF6FFDB8DB97F7E0F730A3582794] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [693440] [PID.1768] =>.Adobe Systems Incorporated® [MD5.A32EA26C90A47B2BC93D7B0B94994B11] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312] [PID.1788] =>.Adobe Systems Incorporated® [MD5.A5E8EB3B4244358F62DADF769DB59567] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.1824] =>.Apple Inc.® [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.1852] =>.Apple Inc.® [MD5.00000000000000000000000000000000] - (.Dropbox, Inc. - Dropbox Service.) -- C:\WINDOWS\system32\DbxSvc.exe [0] [PID.2004] =>.Dropbox, Inc. [MD5.D2BCDD6BBFCD068090C109854FCEE079] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [350544] [PID.1832] =>.Dritek System Inc.® [MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.1696] =>.Intel® Upgrade Service® [MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.1924] =>.Intel Corporation® [MD5.984A6039BC06C2857599AF2CF8A40AD8] - (.Panda Security, S.L. - Application Host Service.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [153096] [PID.2036] =>.Panda Security S.L® [MD5.6EECE59EA8BF0FDA859E8D5962081EF2] - (.RealNetworks, Inc. - Online Games Manager.) -- C:\Program Files (x86)\Online Games Manager\ogmservice.exe [582544] [PID.2108] =>.GameHouse Europe B.V.® [MD5.302337967FBA91C40745B96A42A39CC5] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [475984] [PID.3012] =>.Dritek System Inc.® [MD5.FA8F87E6DE90B76E651CF7553077F405] - (...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe [476760] [PID.2648] =>.Orange SA [MD5.7D5060999E9264C1993134411497F76B] - (.Orange - Executable Orange Inside.) -- C:\Users\Calimerotte\AppData\Roaming\Orange\OrangeInside\OrangeInside.exe [622592] [PID.2796] =>.Orange [MD5.2D8BBF6C7241AAD9EDE7708EBB7B43A4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] [PID.2992] =>.Google Inc® [MD5.823079C4FF6CE5AB1C61A332FFA8918E] - (.Panda Security, S.L. - Agent Service.) -- C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [86104] [PID.2664] =>.Panda Security S.L® [MD5.5F83EDC4A22BC7CC9507E43335C3524E] - (.pdfforge GmbH - PDF Architect 4.) -- C:\Program Files\PDF Architect 4\creator-ws.exe [851168] [PID.3056] =>.pdfforge GmbH® [MD5.06B2368D9B342AE8E02C929B72E07804] - (.© pdfforge GmbH. - Manager service.) -- C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [972056] [PID.2724] =>.pdfforge GmbH® [MD5.D6BB4A20AED4C85645494C1B0C2D1472] - (.Panda Security, S.L. - PSUAService.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48584] [PID.2768] =>.Panda Security S.L® [MD5.CF59781FCB68F859EB6C835ED285211D] - (.Dritek System INC. - RfBtnSvc Application.) -- C:\Windows\RfBtnSvc64.exe [93296] [PID.2864] =>.Dritek System Inc.® [MD5.7DB9E612A2742ACEAB080B882E83141C] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784] [PID.1972] =>.Samsung Electronics CO., LTD.® [MD5.900819F34432BD3FB11FF68FACA0A141] - (.Copyright (C) 2015 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [112792] [PID.1556] =>.Intel(R) Software Development Products® [MD5.DF89A1667D769377CA5441A6F62F9031] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [392896] [PID.2644] =>.VMware, Inc.® [MD5.BB1842E3AA602B401F7692718B0D0F9A] - (.Atheros - Atheros Coex Service Application.) -- C:\Program Files (x86)\Qualcomm Atheros\Ath_WlanAgent.exe [81536] [PID.2808] =>.Atheros [MD5.5F9CBD6D40E32CAEB55DB4A0799EBA72] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [89792] [PID.2236] =>.VMware, Inc.® [MD5.0EFF23C3D910380746D4F56BA5C746C4] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1192784] [PID.4024] =>.Dritek System Inc.® [MD5.C84A6FA836262BD7CBE611F08B554E8B] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [358080] [PID.4040] =>.VMware, Inc.® [MD5.B30B940E999CC59A701B564A7E359D09] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [906944] [PID.4088] =>.VMware, Inc.® [MD5.33E6E5822E22A5E1DEA523C06155FD07] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe [288848] [PID.3420] =>.Google Inc® [MD5.27BEAF3F308ED2276F3863C2F2597556] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe [366672] [PID.3500] =>.Google Inc® [MD5.C832579FBB3B17A5856ADE4082782D25] - (.Dritek System Inc. - MMDx64Fx Application.) -- C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe [229200] [PID.4072] =>.Dritek System Inc.® [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxext Module.) -- C:\WINDOWS\system32\igfxext.exe [0] [PID.2428] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxEM Module.) -- C:\WINDOWS\system32\igfxEM.exe [0] [PID.2856] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxHK Module.) -- C:\WINDOWS\system32\igfxHK.exe [0] [PID.2468] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxTray Module.) -- C:\WINDOWS\system32\igfxTray.exe [0] [PID.3416] =>.Intel Corporation [MD5.9BB8368CAAB57E0431ADBA1D13DC4ED5] - (.Copyright (C) 2015 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe [458904] [PID.2284] =>.Intel(R) Software Development Products® [MD5.B0666DF6D554879AE8A7C91E26A5972F] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872] [PID.5944] =>.Realtek Semiconductor Corp® [MD5.0123FBB29F13E45CF1925F562709AC89] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [2874256] [PID.6060] =>.ELAN Microelectronics Corporation® [MD5.FED5748537443CFE27BDA3FA00FB9DB0] - (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\268411\799930.exe [7168] [PID.2544] [MD5.861DFF426EB33D82A320490825396E13] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2249104] [PID.6000] =>.ELAN Microelectronics Corporation® [MD5.FED5748537443CFE27BDA3FA00FB9DB0] - (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\244319\817873.exe [7168] [PID.3812] [MD5.FED5748537443CFE27BDA3FA00FB9DB0] - (.Copyright © 2017 - Directory Manager.) -- C:\Users\Calimerotte\AppData\Roaming\529905\481297.exe [7168] [PID.5996] [MD5.8C9E624E902A40A8FCDEB35D676455BC] - (.Panda Security, S.L. - AV Console.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [109824] [PID.5772] =>.Panda Security S.L® [MD5.FB5B78A3DE88FD3B725DA574497BC225] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8455960] [PID.5728] =>.Piriform Ltd® [MD5.359818737539FFA646FD8EFB75378AAF] - (.Copyright (C) 2015 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360] [PID.5156] =>.Intel(R) Software Development Products® [MD5.8FDA65209157144C3E28809D75A47526] - (.MAGIX AG - Verzeichnisüberwachung und Hilfsaufgaben fü.) -- C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048] [PID.1592] =>.MAGIX AG [MD5.BDA6549A7E5255396A5CB41CE2905668] - (...) -- C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe [37808] [PID.4228] =>.GoPro, Inc.® [MD5.5AD5A7781BE907D6E2D75CA1DADAA97B] - (.Realsil Microelectronics Inc. - Realtek Card Reader Patch Tool..) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2457232] [PID.2892] =>.Realtek Semiconductor Corp® [MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.3592] =>.Intel Corporation® [MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.5060] =>.Intel Corporation® [MD5.FA00CF07F06E45BCAB9B9B3312128C5E] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [517064] [PID.4120] =>.Mozilla Corporation® [MD5.8C9E624E902A40A8FCDEB35D676455BC] - (.Panda Security, S.L. - AV Console.) -- C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [109824] [PID.4220] =>.Panda Security S.L® [MD5.1571299F3BF7E35FD2BAD3F66497C733] - (.Malwarebytes - AdwCleaner is a free Adware/PUP removal too.) -- C:\Users\Calimerotte\Downloads\adwcleaner_6.046(2).exe [4102600] [PID.3644] =>.Malwarebytes Corporation® [MD5.8E98E3EC16D2641005B4748CD330FB45] - (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe [9926112] [PID.5776] =>.Malwarebytes Corporation® [MD5.DE2B799E5A321887AD1C53E7C225E7AE] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Calimerotte\Downloads\ZHPDiag3.exe [2728960] [PID.5524] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (20) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://a.ligatus.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://all.orfr.adgtw.orangeads.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://c.woopic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://cdn.adgtw.orangeads.fr G0 - GCSP: Preferences [User Data\Default][HomePage] http://hp5.a.woopic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://hp5.d.woopic.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://i.ligatus.com =>.Superfluous.Browser G0 - GCSP: Preferences [User Data\Default][HomePage] http://r.orange.fr =>.Orange SA G0 - GCSP: Preferences [User Data\Default][HomePage] http://s.gstat.orange.fr =>.Orange SA G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.criteo.net G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. =>.Google Inc. G2 - GCE: Preference [User Data\Default] [lifbcibllhkdhoafpjfnlhfpfgnpldfl] Skype =>.Skype Technologies G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 2s M0 - MFSP: prefs.js [Calimerotte - h750j1se.default-1466411656533] http://r.orange.fr/ =>.Orange SA P2 - EXT FILE: (.Chris Pederick - Adds a menu and a toolbar with various.) -- C:\Users\Calimerotte\AppData\Roaming\Mozilla\Firefox\Profiles\h750j1se.default-1466411656533\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi =>.Chris Pederick P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\Calimerotte\AppData\Roaming\Mozilla\Firefox\Profiles\h750j1se.default-1466411656533\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi =>.Adblock Plus P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_171.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (20) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://r.orange.fr/ =>.Orange SA R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKEY_USERS\S-1-5-21-3249639774-1326141858-1622726986-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ =>.Google Inc. R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\SysWOW64\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 1s ~ Le fichier hôte est sain (The hosts file is clean) (0) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Panda Safe Web [64Bits] - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} . (...) -- C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll (.not file.) O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Internet Explorer, Barre d'outil (1) - 0s O3 - Toolbar: Panda Safe Web - [HKLM]{B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} . (...) -- C:\Program Files (x86)\pandasecuritytb\pandasecurityDx.dll (.not file.) ---\\ Raccourcis Global Startup (159) - 25s O4 - GS\Desktop [Administrateur]: GIF Movie Gear.lnk . (.gamani productions - GIF Movie Gear.) C:\Program Files (x86)\GIF Movie Gear\movgear.exe =>.Gamani Productions O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Calimerotte\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Quicklaunch [Administrateur]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: PokerStars.fr.lnk . (.Rational Intellectual Holdings Ltd. - Rational Updater Client Software.) C:\Program Files (x86)\PokerStars.FR\PokerStarsUpdate.exe =>.Amaya Services Limited® O4 - GS\Quicklaunch [Administrateur]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.® O4 - GS\Quicklaunch [Administrateur]: vanBasco's Karaoke Player.lnk . (...) C:\Program Files (x86)\vanBasco's Karaoke Player\vmidi.exe O4 - GS\sendTo [Administrateur]: Dropbox.lnk . (...) C:\Users\Calimerotte\Dropbox O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: IsoBuster.lnk . (.Smart Projects - The Ultimate Data Recovery tool.) C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe =>.Smart Projects® O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [Administrateur]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\TaskBar [Administrateur]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\TaskBar [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: MAGIX Music Maker 2016.lnk . (.MAGIX Software GmbH - MAGIX Music Maker 2016.) C:\Program Files (x86)\MAGIX\Music Maker 2016\MusicMaker.exe =>.MAGIX Software GmbH® O4 - GS\TaskBar [Administrateur]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://r.orange.fr/ =>.Mozilla Corporation O4 - GS\TaskBar [Administrateur]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - GS\TaskBar [Administrateur]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated O4 - GS\TaskBar [Administrateur]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe =>.Antonio Da Cruz O4 - GS\TaskBar [Administrateur]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Documents.lnk . (...) C:\Users\Calimerotte\Documents O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Calimerotte\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Photoshop.lnk . (...) C:\Windows.old\Program Files\Adobe\Adobe Photoshop CC 2014\Photoshop.exe O4 - GS\Programs [Administrateur]: Pictures.lnk . (...) C:\Users\Calimerotte\Pictures =>.Microsoft Corporation O4 - GS\Desktop [Calimerotte]: GIF Movie Gear.lnk . (.gamani productions - GIF Movie Gear.) C:\Program Files (x86)\GIF Movie Gear\movgear.exe =>.Gamani Productions O4 - GS\Desktop [Calimerotte]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Calimerotte\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Calimerotte]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\Quicklaunch [Calimerotte]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Quicklaunch [Calimerotte]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation® O4 - GS\Quicklaunch [Calimerotte]: PokerStars.fr.lnk . (.Rational Intellectual Holdings Ltd. - Rational Updater Client Software.) C:\Program Files (x86)\PokerStars.FR\PokerStarsUpdate.exe =>.Amaya Services Limited® O4 - GS\Quicklaunch [Calimerotte]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.® O4 - GS\Quicklaunch [Calimerotte]: vanBasco's Karaoke Player.lnk . (...) C:\Program Files (x86)\vanBasco's Karaoke Player\vmidi.exe O4 - GS\sendTo [Calimerotte]: Dropbox.lnk . (...) C:\Users\Calimerotte\Dropbox O4 - GS\sendTo [Calimerotte]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Calimerotte]: IsoBuster.lnk . (.Smart Projects - The Ultimate Data Recovery tool.) C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe =>.Smart Projects® O4 - GS\sendTo [Calimerotte]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\TaskBar [Calimerotte]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [Calimerotte]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation O4 - GS\TaskBar [Calimerotte]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\TaskBar [Calimerotte]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Calimerotte]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\TaskBar [Calimerotte]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\TaskBar [Calimerotte]: MAGIX Music Maker 2016.lnk . (.MAGIX Software GmbH - MAGIX Music Maker 2016.) C:\Program Files (x86)\MAGIX\Music Maker 2016\MusicMaker.exe =>.MAGIX Software GmbH® O4 - GS\TaskBar [Calimerotte]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [Calimerotte]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://r.orange.fr/ =>.Mozilla Corporation O4 - GS\TaskBar [Calimerotte]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - GS\TaskBar [Calimerotte]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Calimerotte]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated O4 - GS\TaskBar [Calimerotte]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe =>.Antonio Da Cruz O4 - GS\TaskBar [Calimerotte]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Calimerotte]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Calimerotte]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\TaskBar [Calimerotte]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [Calimerotte]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [Calimerotte]: Documents.lnk . (...) C:\Users\Calimerotte\Documents O4 - GS\Programs [Calimerotte]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Programs [Calimerotte]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Calimerotte\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Calimerotte]: Photoshop.lnk . (...) C:\Windows.old\Program Files\Adobe\Adobe Photoshop CC 2014\Photoshop.exe O4 - GS\Programs [Calimerotte]: Pictures.lnk . (...) C:\Users\Calimerotte\Pictures =>.Microsoft Corporation O4 - GS\Desktop [virginie]: GIF Movie Gear.lnk . (.gamani productions - GIF Movie Gear.) C:\Program Files (x86)\GIF Movie Gear\movgear.exe =>.Gamani Productions O4 - GS\Desktop [virginie]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Calimerotte\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [virginie]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\Quicklaunch [virginie]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Quicklaunch [virginie]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation® O4 - GS\Quicklaunch [virginie]: PokerStars.fr.lnk . (.Rational Intellectual Holdings Ltd. - Rational Updater Client Software.) C:\Program Files (x86)\PokerStars.FR\PokerStarsUpdate.exe =>.Amaya Services Limited® O4 - GS\Quicklaunch [virginie]: Smart Switch.lnk . (.Samsung - Smart Switch PC.) C:\Program Files (x86)\Samsung\Smart Switch PC\SmartSwitchPC.exe =>.Samsung Electronics CO., LTD.® O4 - GS\Quicklaunch [virginie]: vanBasco's Karaoke Player.lnk . (...) C:\Program Files (x86)\vanBasco's Karaoke Player\vmidi.exe O4 - GS\sendTo [virginie]: Dropbox.lnk . (...) C:\Users\Calimerotte\Dropbox O4 - GS\sendTo [virginie]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [virginie]: IsoBuster.lnk . (.Smart Projects - The Ultimate Data Recovery tool.) C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe =>.Smart Projects® O4 - GS\sendTo [virginie]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\TaskBar [virginie]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [virginie]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation O4 - GS\TaskBar [virginie]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\TaskBar [virginie]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [virginie]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\TaskBar [virginie]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\TaskBar [virginie]: MAGIX Music Maker 2016.lnk . (.MAGIX Software GmbH - MAGIX Music Maker 2016.) C:\Program Files (x86)\MAGIX\Music Maker 2016\MusicMaker.exe =>.MAGIX Software GmbH® O4 - GS\TaskBar [virginie]: Malwarebytes Anti-Malware.lnk . (.Malwarebytes - Malwarebytes Anti-Malware.) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\TaskBar [virginie]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://r.orange.fr/ =>.Mozilla Corporation O4 - GS\TaskBar [virginie]: Origin.lnk . (.Electronic Arts - Origin.) C:\Program Files (x86)\Origin\Origin.exe =>.Electronic Arts, Inc.® O4 - GS\TaskBar [virginie]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [virginie]: Packard Bell Power Button.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Packard Bell\Packard Bell Power Management\ePowerButton.exe =>.Acer Incorporated O4 - GS\TaskBar [virginie]: PhotoFiltre.lnk . (.Antonio Da Cruz - PhotoFiltre.) C:\Program Files (x86)\PhotoFiltre\PhotoFiltre.exe =>.Antonio Da Cruz O4 - GS\TaskBar [virginie]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [virginie]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [virginie]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\TaskBar [virginie]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\TaskBar [virginie]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [virginie]: Documents.lnk . (...) C:\Users\Calimerotte\Documents O4 - GS\Programs [virginie]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Programs [virginie]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Calimerotte\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [virginie]: Photoshop.lnk . (...) C:\Windows.old\Program Files\Adobe\Adobe Photoshop CC 2014\Photoshop.exe O4 - GS\Programs [virginie]: Pictures.lnk . (...) C:\Users\Calimerotte\Pictures =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\CommonDesktop [Public]: PDF Architect 4.lnk . (.pdfforge GmbH - PDF Architect 4.) C:\Program Files\PDF Architect 4\architect.exe =>.pdfforge GmbH® O4 - GS\CommonDesktop [Public]: PDFCreator.lnk . (.pdfforge - PDFCreator.) C:\Program Files\PDFCreator\PDFCreator.exe =>.pdfforge GmbH® O4 - GS\CommonDesktop [Public]: PokerStars.fr.lnk . (.Rational Intellectual Holdings Ltd. - Rational Updater Client Software.) C:\Program Files (x86)\PokerStars.FR\PokerStarsUpdate.exe =>.Amaya Services Limited® O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\Calimerotte\Documents O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://r.orange.fr/ =>.Microsoft Corporation O4 - GS\Programs [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Calimerotte\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Photoshop.lnk . (...) C:\Windows.old\Program Files\Adobe\Adobe Photoshop CC 2014\Photoshop.exe O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\Calimerotte\Pictures =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: HandyAndy.lnk . (...) C:\Program Files\Andy\HandyAndy.exe O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\WINDOWS\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Adobe Bridge CC (64bit).lnk . (.Adobe Systems Incorporated - Adobe Bridge CC.) C:\Program Files\Adobe\Adobe Bridge CC (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Illustrator CC 2015.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2015.) C:\Program Files\Adobe\Adobe Illustrator CC 2015\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Lightroom.lnk . (.Adobe Systems - Adobe Photoshop Lightroom.) C:\Program Files\Adobe\Adobe Lightroom\lightroom.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2015.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\WINDOWS\Installer\{52D87F32-70E4-4348-8148-C0B9F35B1314}\AppleSoftwareUpdateIco.exe =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\WINDOWS\Camera\Camera.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\WINDOWS\FileManager\FileManager.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP Developmen - GNU Image Manipulation Program.) C:\Program Files\GIMP 2\bin\gimp-2.8.exe =>.Jernej Simoncic® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe http://r.orange.fr/ =>.Google Inc. O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe http://r.orange.fr/ =>.Mozilla Corporation O4 - GS\ProgramsCommon [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Panda Free Antivirus.lnk . (.Panda Security, S.L. - AV Console.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe =>.Panda Security S.L® O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\WINDOWS\FileManager\PhotosApp.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\WINDOWS\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Skype Entreprise 2016.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Spotify.lnk . (...) C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify Ltd® O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\WINDOWS\WinStore\WinStore.htm =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7C8A4A4B-04EB-4622-A67A-CC00761B5C10}: DhcpNameServer = 127.0.0.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{F49169DC-DEA9-468B-A071-A1C88A337304}: DhcpNameServer = 192.168.1.1 192.168.1.1 =>.Local IP Adress ---\\ Protocole additionnel (24) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation ---\\ Logiciels installés (144) - 15s O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Bridge CC (64 Bit) - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {359F8007-6486-429C-A8C5-D67F6897C88C} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 25 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Illustrator CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ILST_19_2_1 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Lightroom - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {793C2BF7-A4FE-4608-91C9-9282C5801C21} =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824225037} =>.Adobe Systems Incorporated O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {05E07D23-91E9-4E70-A4CC-EF505088F967} =>.Apple Inc. O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {741291DA-2B34-4D44-8FB6-58EDE21261D8} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {DB18F1C0-846F-46F5-A074-5B97C8AF5C8E} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {52D87F32-70E4-4348-8148-C0B9F35B1314} =>.Apple Inc. O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc. O42 - Logiciel: Canon MP270 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series =>.Canon Inc. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDVD 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: ETDWare PS/2-X64 11.6.17.002_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation® O42 - Logiciel: Firebird SQL Server - MAGIX Edition - (.MAGIX AG.) [HKLM][64Bits] -- {39AB2E37-1A55-4292-A5D3-971E9F70D0F8} =>.MAGIX AG O42 - Logiciel: GIF Movie Gear 4.3.0 - (.gamani productions.) [HKLM][64Bits] -- GIF Movie Gear_is1 =>.Gamani Productions O42 - Logiciel: GIMP 2.8.14 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 =>.Jernej Simoncic® O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: GoPro - (.GoPro, Inc..) [HKLM][64Bits] -- {1E92618C-EB66-4C4C-9F45-93EC6EF53273} =>.GoPro, Inc. O42 - Logiciel: GoPro for Desktop - (.GoPro, Inc..) [HKLM][64Bits] -- {88734dc7-c200-4ad3-b29f-bb5e436cb30f} =>.GoPro, Inc.® O42 - Logiciel: GoPro Studio - (.GoPro, Inc..) [HKLM][64Bits] -- {99502BF0-655A-425D-8754-9EEC557D3D73} =>.GoPro, Inc. O42 - Logiciel: iCloud - (.Apple Inc..) [HKLM][64Bits] -- {7F40A9A7-B3BE-4EA8-B052-60449F6C3C02} =>.Apple Inc. O42 - Logiciel: Identity Card - (.Packard Bell.) [HKLM][64Bits] -- {3D9CB654-99AD-4301-89C6-0D12A790767C} =>.Packard Bell O42 - Logiciel: Intel Driver Update Utility - (.Intel.) [HKLM][64Bits] -- {fe92d390-13ee-4660-a2f8-39a066fdffe0} =>.Intel(R) Driver Update Utility® O42 - Logiciel: Intel(R) Driver Update Utility 2.2.0.5 - (.Intel.) [HKLM][64Bits] -- {C4FB3CF4-C845-4746-A9F5-476908266433} =>.Intel O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} =>.Intel Corporation O42 - Logiciel: IsoBuster 3.6 - (.Smart Projects.) [HKLM][64Bits] -- IsoBuster_is1 =>.Smart Projects® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {6C01A0A7-7440-4D48-93C6-2927A1E93FE6} =>.Apple Inc. O42 - Logiciel: KaraFun Player 2 - (.Recisio.) [HKLM][64Bits] -- KaraFun Player 2_is1 =>.Recisio O42 - Logiciel: Launch Manager - (.Packard Bell.) [HKLM][64Bits] -- LManager =>.Dritek System Inc.® O42 - Logiciel: Les Sims™ 3 - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8} =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Ambitions - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Ambitions =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Animaux & Cie - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Pets =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Destination Aventure - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 World Adventures =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Générations - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Generations =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Île de Rêve - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Island Paradise =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Saisons - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Seasons =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Super-pouvoirs - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Supernatural =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 University - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 University Life =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 3 Vie Citadine Kit - (.Electronic Arts Inc..) [HKLM][64Bits] -- {C05D8CDB-417D-4335-A38C-A0659EDFD6B8}_The Sims 3 Town Life Stuff =>.Electronic Arts, Inc.® O42 - Logiciel: Les Sims™ 4 - (.Electronic Arts Inc..) [HKLM][64Bits] -- {48EBEBBF-B9F8-4520-A3CF-89A730721917} =>.Electronic Arts, Inc.® O42 - Logiciel: Live Updater - (.Packard Bell.) [HKLM][64Bits] -- {EE26E302-876A-48D9-9058-3129E5B99999} =>.Packard Bell O42 - Logiciel: MAGIX Contenu et Soundpools - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MAGIX_GlobalContent =>.MAGIX Software GmbH® O42 - Logiciel: MAGIX Goya burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {3689AA05-75B1-453A-8A03-1D0A14EF5FA9} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Goya burnR (MSI) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{3689AA05-75B1-453A-8A03-1D0A14EF5FA9} =>.MAGIX Software GmbH® O42 - Logiciel: MAGIX Music Maker 2016 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {EE479868-1735-4815-A145-5F656FE29CCB} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{EE479868-1735-4815-A145-5F656FE29CCB} =>.MAGIX Software GmbH® O42 - Logiciel: MAGIX Music Maker 2016 (Chansons démos) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {D0BED437-333F-4EC3-A67A-F6EE9EC3C686} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 (Chansons démos) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{D0BED437-333F-4EC3-A67A-F6EE9EC3C686} =>.MAGIX Software GmbH® O42 - Logiciel: MAGIX Music Maker 2016 (Effets visuels) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {847015F0-7379-4EF7-B01D-3C86911800C3} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 (Effets visuels) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{847015F0-7379-4EF7-B01D-3C86911800C3} =>.MAGIX Software GmbH® O42 - Logiciel: MAGIX Music Maker 2016 (Synthétiseurs et effets) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {47BFB1E6-F10E-4146-B0CB-29C353362068} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 (Synthétiseurs et effets) - (.MAGIX Software GmbH.) [HKLM][64Bits] -- MX.{47BFB1E6-F10E-4146-B0CB-29C353362068} =>.MAGIX Software GmbH® O42 - Logiciel: MAGIX Music Maker 2016 Soundpools - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {38BB23A3-A522-4D3C-90C2-426DAF58B056} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 Update - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {44E4A984-AE70-4898-B530-A65F801EE27B} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 Update - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {5CC03033-AD91-4596-9664-551C83BC2571} =>.MAGIX Software GmbH O42 - Logiciel: MAGIX Music Maker 2016 Update - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {F62E1910-C4B2-490D-AB86-6B10309BB915} =>.MAGIX Software GmbH O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.1.1043 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 =>.Malwarebytes O42 - Logiciel: Manager - (.2015 pdfforge GmbH. All rights reserved.) [HKLM][64Bits] -- {38251B9A-C44B-42D9-9A6A-0697986E334A} =>.2015 pdfforge GmbH. All rights reserved O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 53.0.2 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 53.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Online Games Manager v1.50 - (.Real Networks, Inc..) [HKLM][64Bits] -- Online Games Manager =>.Real Networks, Inc. O42 - Logiciel: OpenAL - (.Open Audio Library.) [HKLM][64Bits] -- OpenAL =>.Creative Labs Inc® O42 - Logiciel: Orange Inside - (.Orange.) [HKCU][64Bits] -- Orange Inside =>.Orange O42 - Logiciel: Orange Installer - (.Orange.) [HKLM][64Bits] -- Orange Installer =>.Orange O42 - Logiciel: Origin - (.Electronic Arts, Inc..) [HKLM][64Bits] -- Origin =>.Electronic Arts, Inc.® O42 - Logiciel: Packard Bell Device Fast-lane - (.Packard Bell.) [HKLM][64Bits] -- {3F62D2FD-13C1-49A2-8B5D-47623D9460D7} =>.Packard Bell O42 - Logiciel: Packard Bell Power Management - (.Packard Bell.) [HKLM][64Bits] -- {91F52DE4-B789-42B0-9311-A349F10E5479} =>.Packard Bell O42 - Logiciel: Packard Bell Recovery Management - (.Packard Bell.) [HKLM][64Bits] -- {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} =>.Packard Bell O42 - Logiciel: Panda Devices Agent - (.Panda Security.) [HKLM][64Bits] -- {3F9548B2-0B34-4453-A92E-35056B053F19} =>.Panda Security O42 - Logiciel: Panda Devices Agent - (.Panda Security.) [HKLM][64Bits] -- Panda Devices Agent =>.Panda Security O42 - Logiciel: Panda Free Antivirus - (.Panda Security.) [HKLM][64Bits] -- {456A8117-2915-414D-8435-AC57447C4E2D} =>.Panda Security O42 - Logiciel: Panda Free Antivirus - (.Panda Security.) [HKLM][64Bits] -- Panda Universal Agent Endpoint =>.Panda Security S.L® O42 - Logiciel: Panda Safe Web - (.Panda Security and Visicom Media Inc..) [HKLM][64Bits] -- pandasecuritytb O42 - Logiciel: PDF Architect 4 - (.pdfforge GmbH.) [HKLM][64Bits] -- PDF Architect 4 =>.pdfforge GmbH® O42 - Logiciel: PDF Architect 4 Create Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {72B9DF2C-76FA-40B5-A469-16EAB159CE72} =>.pdfforge GmbH O42 - Logiciel: PDF Architect 4 Edit Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {BDF7326B-7ED4-4034-B867-F4E88D4E628B} =>.pdfforge GmbH O42 - Logiciel: PDF Architect 4 View Module - (.pdfforge GmbH.) [HKLM][64Bits] -- {03E04B47-9270-4613-8D7E-DA4AD2B259A0} =>.pdfforge GmbH O42 - Logiciel: PDFCreator - (.pdfforge GmbH.) [HKLM][64Bits] -- {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} =>.pdfforge GmbH O42 - Logiciel: PhotoFiltre - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre =>.Antonio Da Cruz O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 =>.Antonio Da Cruz O42 - Logiciel: PokerStars.fr - (.PokerStars.fr.) [HKLM][64Bits] -- PokerStars.fr =>.PokerStars.fr O42 - Logiciel: Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Dr - (.Qualcomm Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} =>.Qualcomm Atheros Communications Inc. O42 - Logiciel: Qualcomm Atheros WiFi Driver Installation - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek PCIE Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {C1594429-8296-4652-BF54-9DBE4932A44C} =>.Realtek Semiconductor Corp® O42 - Logiciel: Samsung USB Driver for Mobile Phones - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.® O42 - Logiciel: SimCity 4 Deluxe - (.Games Software.) [HKLM][64Bits] -- {3F0D0ABE-CDAF-431A-00BC-CBBE018EA74E} =>.Games Software O42 - Logiciel: SimCity™ - (.Electronic Arts.) [HKLM][64Bits] -- {F70FDE4B-8F86-4eb6-8C8E-636EC89F6419} =>.Electronic Arts® O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B} =>.Microsoft Corporation O42 - Logiciel: Skype™ 7.27 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Smart Switch - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- {74FA5314-85C8-4E2A-907D-D9ECCCB770A7} =>.Samsung Electronics Co., Ltd. O42 - Logiciel: Smart Switch - (.Samsung Electronics Co., Ltd..) [HKLM][64Bits] -- InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7} =>.Samsung Electronics Co., Ltd. O42 - Logiciel: Software Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect O42 - Logiciel: Spotify - (.Spotify AB.) [HKLM][64Bits] -- Spotify =>.Spotify Ltd® O42 - Logiciel: Text-To-Speech-Runtime - (.Magix Development GmbH.) [HKLM][64Bits] -- {7B3F0113-E63C-4D6D-AF19-111A3165CCA2} =>.Magix Development GmbH O42 - Logiciel: vanBasco's Karaoke Player - (..) [HKLM][64Bits] -- VMidi O42 - Logiciel: VFW_Codec32 - (.GoPro, Inc..) [HKLM][64Bits] -- {4275850F-4E2E-4F60-9E73-8BD8F70891D3} =>.GoPro, Inc. O42 - Logiciel: VFW_Codec64 - (.GoPro, Inc..) [HKLM][64Bits] -- {7010885D-3378-4C9B-B330-88271728EDE5} =>.GoPro, Inc. O42 - Logiciel: Vita 2 - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {E0CF0134-98F1-46CA-87F1-AE887D0CFEFB} =>.MAGIX Software GmbH O42 - Logiciel: Vita Accordion - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8B5A3B68-83FA-4BB7-B39E-D6AE70DB6B95} =>.MAGIX Software GmbH O42 - Logiciel: Vita Bass Machine - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {DEC4841A-A0C5-4DF8-9AD0-8E0B9189B5C3} =>.MAGIX Software GmbH O42 - Logiciel: Vita Century Guitar - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {71654E46-669F-4C00-AD83-F5CE757E7CCD} =>.MAGIX Software GmbH O42 - Logiciel: Vita Century Keys - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {F621A6D1-9E9C-4F18-8489-8C81AA31213C} =>.MAGIX Software GmbH O42 - Logiciel: Vita Cinematic Synth - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {12DAEB4D-6E7F-46B3-AFEB-69A505EEE322} =>.MAGIX Software GmbH O42 - Logiciel: Vita Concert Guitar - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {C26BCF04-73A5-4450-832B-E84D562B2702} =>.MAGIX Software GmbH O42 - Logiciel: Vita Drum Engine - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {D8737C77-D36E-426D-A881-76C96369D325} =>.MAGIX Software GmbH O42 - Logiciel: Vita Electric Bass - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {73ABF20F-F63F-40C0-A774-6D0ED0C3323A} =>.MAGIX Software GmbH O42 - Logiciel: Vita Electric Piano - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {006525CA-C051-46CC-9BC2-23B9A5937F54} =>.MAGIX Software GmbH O42 - Logiciel: Vita Jazz Drums - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {E85DCED3-6737-4576-9309-581475219586} =>.MAGIX Software GmbH O42 - Logiciel: Vita Lead Synth - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {CE8823C4-4111-413F-98C4-4B91FAA28290} =>.MAGIX Software GmbH O42 - Logiciel: Vita Pop Brass - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8C552461-06A8-49BC-9B29-F50EE432CE05} =>.MAGIX Software GmbH O42 - Logiciel: Vita Power Guitar - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {3EF3EE12-C752-451F-B61C-6DEF07CD548A} =>.MAGIX Software GmbH O42 - Logiciel: Vita Rock Drums - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {F1EDAEF5-8B6A-4178-A59B-F0727BB00BA1} =>.MAGIX Software GmbH O42 - Logiciel: Vita Saxophonia - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {2BA224C6-BA54-486D-8C13-B4EB96137605} =>.MAGIX Software GmbH O42 - Logiciel: Vita Soundtrack Percussion - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {4B8CAFD5-6B8A-41D1-8623-BF409E2EB1C9} =>.MAGIX Software GmbH O42 - Logiciel: Vita Space Pad - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {869C83AF-CEB3-4726-89B9-4C1545E47D62} =>.MAGIX Software GmbH O42 - Logiciel: Vita String Ensemble - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {96086C90-6320-416B-92B2-4ADC88169967} =>.MAGIX Software GmbH O42 - Logiciel: Vita Upright Bass - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8D0C5F51-3D98-4153-B249-F3FA091E87D5} =>.MAGIX Software GmbH O42 - Logiciel: Vita Vibraphone - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8013FF4A-1D6C-4315-B176-430BE182078A} =>.MAGIX Software GmbH O42 - Logiciel: Vita Vintage Organ - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {8CC42C87-C619-4A63-A034-912961F6FA9D} =>.MAGIX Software GmbH O42 - Logiciel: Vita World Percussion - (.MAGIX Software GmbH.) [HKLM][64Bits] -- {C5969FCB-6894-4857-A85B-D0E45CD262DE} =>.MAGIX Software GmbH O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VMware Player - (.VMware, Inc..) [HKLM][64Bits] -- {57AA4E8A-E2C9-4F1C-B3F1-762C36E34472} =>.VMware, Inc. O42 - Logiciel: VMware VIX - (.VMware, Inc..) [HKLM][64Bits] -- {F99FC179-EA67-4BBC-8955-BDDA0CB94B88} =>.VMware, Inc. O42 - Logiciel: WinRAR 5.31 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (115) - 15s HKLM\SOFTWARE\Wow6432Node\Ada2 HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\AdwCleaner =>.Malwarebytes HKLM\SOFTWARE\Wow6432Node\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Wow6432Node\ASIO =>.Steinberg Media Technologies HKLM\SOFTWARE\Wow6432Node\ATHEROS =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Canon =>.Canon HKLM\SOFTWARE\Wow6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\Wow6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Wow6432Node\Dritek =>.Dritek HKLM\SOFTWARE\Wow6432Node\Dropbox =>.Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate =>.Dropbox Inc. HKLM\SOFTWARE\Wow6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\GoPro =>.GoPro HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\iSumsoft =>.DNSoft HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\MAGIX =>.Magix HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\Maxis =>.Maxis HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Nero =>.Ahead Corporation HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\OEM =>.OEM HKLM\SOFTWARE\Wow6432Node\OpenAL =>.Open Audio Library HKLM\SOFTWARE\Wow6432Node\Origin =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\Origin Games =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\Panda Security =>.Panda Security HKLM\SOFTWARE\Wow6432Node\Panda Software =>.Panda Software HKLM\SOFTWARE\Wow6432Node\pandasecuritytb HKLM\SOFTWARE\Wow6432Node\PDF Architect 4 =>.pdfforge GmbH HKLM\SOFTWARE\Wow6432Node\Piriform =>.Piriform HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros Communications Inc. =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros WiFi Driver Installation =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RECISIO =>.Recisio HKLM\SOFTWARE\Wow6432Node\Samsung =>.Samsung Electronics HKLM\SOFTWARE\Wow6432Node\simplitec =>.Simplitec HKLM\SOFTWARE\Wow6432Node\Sims =>.Electronic Arts, Inc. HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\Smart Projects =>.Smart Projects HKLM\SOFTWARE\Wow6432Node\Software =>.Unknow HKLM\SOFTWARE\Wow6432Node\Symantec =>.Symantec HKLM\SOFTWARE\Wow6432Node\ThinPrint =>.ThinPrint HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Wow6432Node\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\Wow6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Adobe Lightroom =>.Adobe Inc. HKCU\SOFTWARE\Andy =>.Android Studio HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CineForm =>.CineForm HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Dritek =>.Dritek HKCU\SOFTWARE\Dropbox =>.Dropbox HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts HKCU\SOFTWARE\gamani HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GoPro =>.GoPro HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\InstallTools HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\JollyBear =>.JollyBear Games Inc HKCU\SOFTWARE\Loani HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Macrovision =>.Macrovision HKCU\SOFTWARE\MAGIX =>.Magix HKCU\SOFTWARE\Magix Low Latency 2016 HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\Nero =>.Ahead Corporation HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OEM =>.OEM HKCU\SOFTWARE\Orange =>.Orange HKCU\SOFTWARE\OrangeInside =>.Orange SA HKCU\SOFTWARE\PDF Architect 4 =>.pdfforge GmbH HKCU\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKCU\SOFTWARE\pdfforge =>.pdfforge HKCU\SOFTWARE\PhotoFiltre =>.Antonio Da Cruz HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RECISIO =>.Recisio HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Samsung =>.Samsung Electronics HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\Smart Projects =>.Smart Projects HKCU\SOFTWARE\Software =>.Unknow HKCU\SOFTWARE\SYNCJM =>.SYNCJM HKCU\SOFTWARE\vanBasco HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\pandasecuritytb ---\\ Contenu des dossiers Programmes (317) - 54s O43 - CFD: 03/03/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 05/11/2015 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 08/09/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 21/02/2016 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 11/12/2015 - [] D -- C:\Program Files\Easy Music Composer Free O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation® O43 - CFD: 17/08/2015 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 22/09/2015 - [] D -- C:\Program Files\GIMP 2 =>.Jernej Simoncic® O43 - CFD: 09/08/2016 - [] D -- C:\Program Files\GoPro =>.GoPro, Inc.® O43 - CFD: 19/12/2015 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 12/05/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 07/04/2017 - [] D -- C:\Program Files\iTunes =>.Apple Inc. O43 - CFD: 18/10/2015 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 15/04/2017 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 10/12/2013 - [] D -- C:\Program Files\Packard Bell =>.Packard Bell O43 - CFD: 08/05/2017 - [] D -- C:\Program Files\PDF Architect 4 =>.pdfforge GmbH O43 - CFD: 08/05/2017 - [] D -- C:\Program Files\PDFCreator =>.Philip Chinery O43 - CFD: 17/05/2017 - [] D -- C:\Program Files\RAIYGVAF5D O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 26/07/2012 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 15/04/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 15/03/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 28/03/2016 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 27/02/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 07/04/2017 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc. O43 - CFD: 05/11/2015 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 09/08/2016 - [] D -- C:\Program Files (x86)\CineForm =>.CineForm O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 02/05/2017 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 09/04/2017 - [] D -- C:\Program Files (x86)\EasyPHP-Webserver-14.1b2 =>.Emmanuel Faivre O43 - CFD: 09/05/2017 - [] D -- C:\Program Files (x86)\GIF Movie Gear O43 - CFD: 22/04/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 09/08/2016 - [] D -- C:\Program Files (x86)\GoPro =>.GoPro O43 - CFD: 28/08/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 19/12/2015 - [] D -- C:\Program Files (x86)\Intel Driver Update Utility =>.Intel Corporation O43 - CFD: 12/05/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 19/01/2016 - [] D -- C:\Program Files (x86)\iSumsoft RAR Password Refixer =>.DNSoft O43 - CFD: 23/04/2016 - [] D -- C:\Program Files (x86)\KaraFun Player 2 =>.Heaven Software O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Launch Manager =>.Legitimate O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\MAGIX =>.MAGIX Software GmbH® O43 - CFD: 13/04/2016 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware =>.Malwarebytes O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Maxis =>.Maxis O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 15/04/2017 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Toolkit Final =>.Microsoft Corporation O43 - CFD: 18/10/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 10/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 10/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 12/12/2015 - [] D -- C:\Program Files (x86)\MSXML 4.0 =>.Microsoft Corporation O43 - CFD: 31/12/2015 - [] D -- C:\Program Files (x86)\Online Games Manager =>.GameHouse Europe B.V.® O43 - CFD: 09/08/2016 - [] D -- C:\Program Files (x86)\OpenAL =>.Open Audio Library O43 - CFD: 02/09/2016 - [] D -- C:\Program Files (x86)\Orange =>.Orange O43 - CFD: 21/02/2017 - [] D -- C:\Program Files (x86)\Origin =>.Electronic Arts, Inc. O43 - CFD: 28/01/2016 - [] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts, Inc. O43 - CFD: 19/06/2013 - [] D -- C:\Program Files (x86)\Packard Bell =>.Packard Bell O43 - CFD: 20/10/2016 - [] D -- C:\Program Files (x86)\Panda Security =>.Panda Security S.L® O43 - CFD: 08/05/2017 - [] D -- C:\Program Files (x86)\PDF Architect 4 =>.pdfforge GmbH O43 - CFD: 08/09/2015 - [] D -- C:\Program Files (x86)\PhotoFiltre =>.Antonio Da Cruz O43 - CFD: 18/08/2015 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 23/04/2017 - [] D -- C:\Program Files (x86)\PokerStars.FR =>.Amaya Services Limited® O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 28/08/2016 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics O43 - CFD: 21/10/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Smart Projects =>.Smart Projects® O43 - CFD: 06/11/2015 - [] D -- C:\Program Files (x86)\Software =>.Unknow O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Spotify =>.Spotify Ltd® O43 - CFD: 19/06/2013 - [] D -- C:\Program Files (x86)\SymSilent =>.Symantec Corporation® O43 - CFD: 10/12/2013 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 23/04/2016 - [] D -- C:\Program Files (x86)\vanBasco's Karaoke Player O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.® O43 - CFD: 18/08/2015 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games O43 - CFD: 15/04/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 14/09/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 30/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Andy =>.Android.net O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP270 series =>.Canon Inc. O43 - CFD: 08/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 23/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 12 =>.CyberLink Corporation O43 - CFD: 02/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox =>.Dropbox O43 - CFD: 09/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyPHP Devserver 14.1 beta 2 =>.Emmanuel Faivre O43 - CFD: 23/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 09/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIF Movie Gear O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoPro =>.GoPro O43 - CFD: 07/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc. O43 - CFD: 23/08/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 19/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility =>.Intel Corporation O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster =>.Peter Van Hove O43 - CFD: 19/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iSumsoft RAR Password Refixer =>.DNSoft O43 - CFD: 07/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc. O43 - CFD: 02/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jeux sur Orange.fr =>.Orange SA O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaraFun Player 2 =>.Heaven Software O43 - CFD: 28/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Sims 3 =>.Electronic Arts, Inc. O43 - CFD: 12/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Les Sims 4 =>.Electronic Arts, Inc. O43 - CFD: 12/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX =>.Magix O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 13/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware =>.Malwarebytes O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxis =>.Maxis O43 - CFD: 12/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 12/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin =>.Electronic Arts, Inc. O43 - CFD: 23/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation O43 - CFD: 12/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Packard Bell =>.Packard Bell O43 - CFD: 20/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Free Antivirus O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect 4 =>.pdfforge GmbH O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator =>.Philip Chinery O43 - CFD: 08/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre =>.Antonio Da Cruz O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 23/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PokerStars.FR =>.PokerStars.fr O43 - CFD: 28/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung =>.Samsung Electronics O43 - CFD: 17/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimCity™ O43 - CFD: 10/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 21/02/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware =>.VMware O43 - CFD: 28/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 24/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zylom =>.Zylom O43 - CFD: 09/09/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 05/11/2015 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 05/11/2015 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 21/09/2016 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 06/12/2015 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 17/08/2015 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc. O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\CLSK =>.CLSK O43 - CFD: 28/12/2015 - [] D -- C:\ProgramData\com.gamehouse.acid O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 20/03/2016 - [] D -- C:\ProgramData\Dropbox =>.Dropbox O43 - CFD: 12/09/2015 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 19/12/2015 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 02/09/2016 - [] D -- C:\ProgramData\JollyBear O43 - CFD: 13/12/2015 - [] D -- C:\ProgramData\MAGIX =>.Magix O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 11/12/2015 - [] D -- C:\ProgramData\MCS EMCF D O43 - CFD: 17/08/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 02/05/2016 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 24/09/2015 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 17/08/2015 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 26/12/2016 - [] D -- C:\ProgramData\Nero =>.Ahead Corporation O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\NortonInstaller =>.Symantec O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\OEM =>.OEM O43 - CFD: 17/08/2015 - [] D -- C:\ProgramData\OEM_YAHOO =>.OEM Yahoo O43 - CFD: 03/03/2017 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 09/08/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 19/06/2013 - [] D -- C:\ProgramData\Packard Bell =>.Packard Bell O43 - CFD: 20/10/2016 - [] D -- C:\ProgramData\Panda Security =>.Panda Security O43 - CFD: 10/05/2017 - [] D -- C:\ProgramData\panda_url_filtering =>PUP.Optional.StartSearch O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\PDF Architect 4 =>.pdfforge GmbH O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\pdfforge =>.pdfforge O43 - CFD: 17/01/2016 - [] D -- C:\ProgramData\PlayFirst O43 - CFD: 23/08/2015 - [] D -- C:\ProgramData\PRICache =>.Microsoft Corporation O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 23/04/2016 - [] D -- C:\ProgramData\Recisio =>.Recisio O43 - CFD: 03/03/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 17/05/2017 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 28/08/2016 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 15/07/2016 - [0] D -- C:\ProgramData\simplitec =>.Simplitec O43 - CFD: 30/08/2016 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 10/12/2013 - [] D -- C:\ProgramData\Symantec =>.Symantec O43 - CFD: 02/09/2016 - [] AD -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 17/05/2017 - [] D -- C:\ProgramData\VMware =>.VMware O43 - CFD: 18/08/2015 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 03/03/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 26/08/2016 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 03/12/2015 - [] D -- C:\Program Files (x86)\Common Files\AV =>.Avast O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 28/01/2016 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller =>.Electronic Arts, Inc. O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 23/08/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 14/12/2015 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services =>.MAGIX_Software_GmbH O43 - CFD: 17/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 02/09/2016 - [] D -- C:\Program Files (x86)\Common Files\Oberon Media =>.Oberon Media O43 - CFD: 08/05/2017 - [] D -- C:\Program Files (x86)\Common Files\PDF Software =>.PDF Software O43 - CFD: 10/12/2013 - [] D -- C:\Program Files (x86)\Common Files\postureAgent =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 10/04/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 17/08/2015 - [0] D -- C:\Program Files (x86)\Common Files\Symantec Shared =>.Symantec Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint O43 - CFD: 21/02/2016 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\244319 O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\268411 O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\529905 O43 - CFD: 03/03/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 21/02/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Andy =>.Android.net O43 - CFD: 12/11/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 09/09/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 20/03/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 22/02/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 28/12/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\GameHouse =>.GameHouse O43 - CFD: 09/08/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\GoPro =>.GoPro O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\lm O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 13/12/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\MAGIX =>.Magix O43 - CFD: 17/05/2017 - [] SD -- C:\Users\Calimerotte\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 15/07/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Nero =>.Ahead Corporation O43 - CFD: 01/10/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Orange =>.Orange O43 - CFD: 12/03/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Origin =>.Electronic Arts, Inc. O43 - CFD: 20/10/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Panda Security =>.Panda Security O43 - CFD: 19/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\PDAppFlex O43 - CFD: 08/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\PDF Architect 4 =>.pdfforge GmbH O43 - CFD: 09/09/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\PhotoFiltre =>.Antonio Da Cruz O43 - CFD: 18/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 17/01/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\PlayFirst O43 - CFD: 28/08/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Samsung =>.Samsung Electronics O43 - CFD: 06/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Skype =>.Skype O43 - CFD: 08/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 21/02/2016 - [0] D -- C:\Users\Calimerotte\AppData\Roaming\VMware =>.VMware O43 - CFD: 18/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\Adobe =>.Adobe O43 - CFD: 05/11/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 26/08/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\Apple Computer =>.Apple Inc. O43 - CFD: 28/08/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\Apple Inc =>.Apple Inc. O43 - CFD: 23/08/2015 - [0] SHD -- C:\Users\Calimerotte\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 22/04/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\C8775F27-4554-4411-B4F5-F1D8DC50518D.aplzod O43 - CFD: 19/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\CEF =>.CEF O43 - CFD: 17/01/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\com.gamehouse.acid O43 - CFD: 08/09/2015 - [0] D -- C:\Users\Calimerotte\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 19/05/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\CyberLink =>.CyberLink Corporation O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 30/09/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 01/03/2016 - [0] D -- C:\Users\Calimerotte\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 22/09/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\fontconfig =>.Portable Apps O43 - CFD: 22/09/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\gegl-0.2 =>.Portable Apps O43 - CFD: 28/04/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\Google =>.Google O43 - CFD: 29/10/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\GoPro =>.GoPro O43 - CFD: 27/04/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\gtk-2.0 =>.GTK Project O43 - CFD: 31/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\GWX =>.GWX O43 - CFD: 23/08/2015 - [0] SHD -- C:\Users\Calimerotte\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 19/12/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Intel =>.Intel Corporation O43 - CFD: 02/09/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\JollyBear O43 - CFD: 18/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 10/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 24/09/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 20/01/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\Nero_AG =>.Ahead O43 - CFD: 18/10/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\OfficeBSCache-MyComputer O43 - CFD: 12/10/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\Origin =>.Electronic Arts, Inc. O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 08/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\PDFCreator =>.Philip Chinery O43 - CFD: 24/04/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\PokerStars.FR =>.PokerStars.fr O43 - CFD: 17/08/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 10/04/2016 - [0] D -- C:\Users\Calimerotte\AppData\Local\Skype =>.Skype O43 - CFD: 08/09/2015 - [] D -- C:\Users\Calimerotte\AppData\Local\Software =>.Unknow O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [0] SHD -- C:\Users\Calimerotte\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 05/04/2016 - [] D -- C:\Users\Calimerotte\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 17/05/2017 - [] D -- C:\Users\Calimerotte\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 17/08/2015 - [0] D -- C:\Users\Calimerotte\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] RD -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 15/10/2016 - [] RD -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 21/02/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Andy =>.Android.net O43 - CFD: 28/08/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc. O43 - CFD: 19/01/2016 - [0] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iSumsoft RAR Password Refixer =>.DNSoft O43 - CFD: 22/08/2013 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 01/10/2015 - [0] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My Application =>.My Application O43 - CFD: 08/09/2015 - [0] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre =>.Antonio Da Cruz O43 - CFD: 18/08/2015 - [0] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 15/10/2016 - [] RD -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [] RD -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/04/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vanBasco's Karaoke Player O43 - CFD: 28/03/2016 - [] D -- C:\Users\Calimerotte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/08/2015 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 24/09/2015 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 05/11/2016 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 20/04/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 15/04/2016 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 21/09/2016 - [] SD -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 17/05/2017 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware ---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 17s O45 - LFCP:[MD5.A16E42277BF3390ECC6675F95BE63B62] 17/05/2017 A -- C:\WINDOWS\Prefetch\SPEEDOWNLOADER.EXE-2FD44F61.pf =>Adware.SpeeDownloader O45 - LFCP:[MD5.38FDFED372AB420D160CB1F8319D71E8] 17/05/2017 A -- C:\WINDOWS\Prefetch\SPEEDOWNLOADER.TMP-A0E8525C.pf =>Adware.SpeeDownloader ---\\ ShellIconOverlayIdentifiers (SIOI) (13) - 0s O106 - SIOI: DropboxExt1 Class [ DropboxExt01] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class [ DropboxExt02] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt9 Class [ DropboxExt03] - {FB314EE1-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [ DropboxExt04] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [ DropboxExt05] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [ DropboxExt06] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class [ DropboxExt07] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class [ DropboxExt08] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt10 Class [ DropboxExt09] - {FB314EE2-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class [ DropboxExt10] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt.16.0.dll =>.Dropbox, Inc® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Image File Execution Options (16) - 1s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Liste des pilotes du système (82) - 11s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows® O58 - SDL:2013/12/10 20:09:58 A . (.Dritek System Inc. - PS/2 KB to HID Device Driver.) -- C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [26736] =>.Dritek System Inc.® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows® O58 - SDL:2013/06/18 16:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [3680256] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2017/03/22 03:42:10 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-canary.sys [45672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/03/22 03:42:10 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-dev.sys [45672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/03/22 03:42:10 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-stable.sys [45672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2012/12/07 11:19:12 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\WINDOWS\System32\drivers\ETD.sys [331664] =>.ELAN Microelectronics Corporation® O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows® O58 - SDL:2015/11/06 12:57:44 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [57536] =>.VMware, Inc.® O58 - SDL:2012/07/02 09:16:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] =>.Intel Corporation® O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2012/08/16 07:33:42 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] =>.Intel Corporation® O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2014/10/01 19:54:16 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [3828152] =>.Intel Corporation - pGFX® O58 - SDL:2012/06/19 01:40:50 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] =>.Intel(R) Corporation O58 - SDL:2014/08/01 22:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296] =>.Intel Wireless Display® O58 - SDL:2014/08/01 22:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] =>.Intel Wireless Display® O58 - SDL:2013/06/18 16:44:59 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [129224] =>.Qualcomm Atheros® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:08:54 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [27008] =>.Malwarebytes Corporation® O58 - SDL:2016/03/10 14:08:58 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [140672] =>.Malwarebytes Corporation® O58 - SDL:2017/05/17 16:54:36 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] =>.Malwarebytes Corporation® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2016/03/10 14:09:10 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [65408] =>.Malwarebytes Corporation® O58 - SDL:2015/12/04 11:47:50 A . (.Panda Security, S.L. - Application Layer Protocol Colorizer.) -- C:\WINDOWS\System32\drivers\NNSAlpc.sys [94456] =>.Panda Security S.L.® O58 - SDL:2015/12/04 11:47:51 A . (.Panda Security, S.L. - Http Parser.) -- C:\WINDOWS\System32\drivers\NNSHttp.sys [201464] =>.Panda Security S.L.® O58 - SDL:2015/12/04 11:47:51 A . (.Panda Security, S.L. - Https Parser.) -- C:\WINDOWS\System32\drivers\NNSHttps.sys [110840] =>.Panda Security S.L.® O58 - SDL:2015/12/04 11:47:52 A . (.Panda Security, S.L. - Intrusion Detection System.) -- C:\WINDOWS\System32\drivers\NNSIds.sys [110840] =>.Panda Security S.L.® O58 - SDL:2015/06/19 11:17:26 A . (.Panda Security, S.L. - Network Activity Hook Server LWF.) -- C:\WINDOWS\System32\drivers\NNSNAHSL.sys [58616] =>.Panda Security S.L.® O58 - SDL:2015/12/04 11:47:52 A . (.Panda Security, S.L. - Process Info Colorizer Client.) -- C:\WINDOWS\System32\drivers\NNSpicc.sys [103160] =>.Panda Security S.L.® O58 - SDL:2016/03/14 13:00:17 A . (.Panda Security, S.L. - Process Info Hook Server WFP.) -- C:\WINDOWS\System32\drivers\NNSPIHSW.sys [85712] =>.Panda Security S.L® O58 - SDL:2015/12/04 11:47:54 A . (.Panda Security, S.L. - Pop3 Parser.) -- C:\WINDOWS\System32\drivers\NNSPop3.sys [124152] =>.Panda Security S.L.® O58 - SDL:2015/12/04 11:47:55 A . (.Panda Security, S.L. - Network Protector.) -- C:\WINDOWS\System32\drivers\NNSProt.sys [300280] =>.Panda Security S.L.® O58 - SDL:2016/02/17 17:39:05 A . (.Panda Security, S.L. - Network Provider.) -- C:\WINDOWS\System32\drivers\NNSPrv.sys [177424] =>.Panda Security S.L® O58 - SDL:2015/12/04 11:47:56 A . (.Panda Security, S.L. - Smtp Parser.) -- C:\WINDOWS\System32\drivers\NNSSmtp.sys [113400] =>.Panda Security S.L.® O58 - SDL:2016/02/17 17:39:02 A . (.Panda Security, S.L. - Streamer.) -- C:\WINDOWS\System32\drivers\NNSStrm.sys [264976] =>.Panda Security S.L® O58 - SDL:2015/12/04 11:47:57 A . (.Panda Security, S.L. - Transport Layer Session Colorizer.) -- C:\WINDOWS\System32\drivers\NNStlsc.sys [106232] =>.Panda Security S.L.® O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows® O58 - SDL:2016/08/05 04:29:30 A . (.Panda Security, S.L. - PSINAflt Filter Driver for Vista64.) -- C:\WINDOWS\System32\drivers\PSINAflt.sys [171792] =>.Panda Security S.L® O58 - SDL:2016/08/05 04:33:11 A . (.Panda Security, S.L. - PSINFile Filter Driver for Vista64.) -- C:\WINDOWS\System32\drivers\PSINFile.sys [127248] =>.Panda Security S.L® O58 - SDL:2016/08/05 04:24:21 A . (.Panda Security, S.L. - PSINKNC Kernel Controller for Vista64.) -- C:\WINDOWS\System32\drivers\PSINKNC.sys [205072] =>.Panda Security S.L® O58 - SDL:2016/08/05 04:42:00 A . (.Panda Security, S.L. - PSINProc Filter Driver for Vista64.) -- C:\WINDOWS\System32\drivers\PSINProc.sys [131344] =>.Panda Security S.L® O58 - SDL:2016/08/05 04:47:04 A . (.Panda Security, S.L. - PSINProt for Vista64.) -- C:\WINDOWS\System32\drivers\PSINProt.sys [144656] =>.Panda Security S.L® O58 - SDL:2016/08/05 04:37:15 A . (.Panda Security, S.L. - PSINReg Filter Driver for Vista64.) -- C:\WINDOWS\System32\drivers\PSINReg.sys [114960] =>.Panda Security S.L® O58 - SDL:2016/08/08 11:00:49 A . (.Panda Security, S.L. - Panda Kernel Memory Access Driver (x64).) -- C:\WINDOWS\System32\drivers\PSKMAD.sys [70360] =>.Panda Security S.L® O58 - SDL:2012/07/31 12:10:34 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4102928] =>.Realtek Semiconductor Corp® O58 - SDL:2012/08/03 11:55:34 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\WINDOWS\System32\drivers\RtsPStor.sys [340112] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Europe Ltd - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] O58 - SDL:2015/06/04 14:33:50 A . (.Auteurs - .) -- C:\WINDOWS\System32\drivers\semav6msr64.sys [21984] =>.Intel(R) Code Signing External® O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2016/09/05 06:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/09/05 06:47:12 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [165504] =>.Samsung Electronics CO., LTD.® O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2015/06/17 18:04:24 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] =>.Microsoft Windows® O58 - SDL:2015/11/05 20:25:42 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [90816] =>.VMware, Inc.® O58 - SDL:2015/11/25 19:10:30 A . (.VMware, Inc. - VMware keyboard filter driver (64-bit).) -- C:\WINDOWS\System32\drivers\VMkbd.sys [33472] =>.VMware, Inc.® O58 - SDL:2015/11/25 18:51:56 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [27328] =>.VMware, Inc.® O58 - SDL:2015/11/25 18:51:56 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [28864] =>.VMware, Inc.® O58 - SDL:2015/11/25 18:51:56 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [48832] =>.VMware, Inc.® O58 - SDL:2015/11/25 18:52:52 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [26816] =>.VMware, Inc.® O58 - SDL:2015/11/25 19:10:28 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [66752] =>.VMware, Inc.® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows® O58 - SDL:2015/11/05 20:25:42 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [75512] =>.VMware, Inc.® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (4) - 141s O61 - LFC: 2017/05/17 16:16:23 A . (.Copyright © 2017.) -- C:\Users\Calimerotte\AppData\Roaming\244319\817873.exe [7168] O61 - LFC: 2017/05/17 16:16:12 A . (.Copyright © 2017.) -- C:\Users\Calimerotte\AppData\Roaming\268411\799930.exe [7168] O61 - LFC: 2017/05/17 16:17:09 A . (.Copyright © 2017.) -- C:\Users\Calimerotte\AppData\Roaming\529905\481297.exe [7168] O61 - LFC: 2017/05/17 16:18:22 A . (.Copyright © 2017.) -- C:\Users\Calimerotte\AppData\Roaming\L9U6UJJ.exe [9728] ---\\ Associations Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (5) - 11s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} - (Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {74C417B8-9935-484C-8182-FF5E0500159E} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc. ---\\ Enumère les services démarrés par Svchost (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [329216] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1360896] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1080320] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [927744] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31744] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [110080] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110592] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [1265152] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\WINDOWS\system32\mmcss.dll [71168] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [228864] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [342016] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\WINDOWS\system32\kmsvc.dll [101376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [348672] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [1639424] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [166400] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [542720] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [3714560] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [933376] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (6) - 6s O87 - FAEL: "{C6B072CD-4DC6-45B9-9C6C-EB27B628C8A3}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\pandasecuritytb\ToolbarCleaner.exe (.not file.) O87 - FAEL: "{A8FD40FD-5690-4C8A-991E-98B12A3075D9}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\pandasecuritytb\ToolbarCleaner.exe (.not file.) O87 - FAEL: "{289AC763-0AB8-45C8-9423-5F73BD468B00}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe =>.Orange SA O87 - FAEL: "{A1750C32-F043-42F9-B7A4-A77A598D3750}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe =>.Orange SA O87 - FAEL: "{8D9BEF75-F993-4F53-A31C-273C4BCA370A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe =>.Orange SA O87 - FAEL: "{E98DE623-F83B-424C-8F0A-2BE9405E305D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe =>.Orange SA ---\\ Enumère les codes produits des logiciels (1) - 5s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.Software Update Helper.) =>PUP.Optional.Boxore ---\\ Recherche des packages WindowsInstaller (2) - 10s [MD5.] [WIS][2017/04/18 16:15:45] (.Microleaves - Advanced Installer 13.8.1 build 77369.) -- C:\WINDOWS\Installer\1abffe11.msi [2752000] =>.Superfluous.Microleaves [MD5.] [WIS][2015/09/08 11:46:48] (.The Software Group - Windows Installer XML Toolset (3.8.1128.0).) -- C:\WINDOWS\Installer\2dda6128.msi [45056] =>PUP.Optional.Boxore ---\\ Scan Additionnel (13) - 0s C:\Users\Calimerotte\AppData\Roaming\268411\799930.exe =>Trojan.GenericKD C:\Users\Calimerotte\AppData\Roaming\244319\817873.exe =>Trojan.GenericKD C:\Users\Calimerotte\AppData\Roaming\529905\481297.exe =>Trojan.GenericKD HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\ProgramData\panda_url_filtering =>PUP.Optional.StartSearch C:\WINDOWS\Prefetch\SPEEDOWNLOADER.EXE-2FD44F61.pf =>Adware.SpeeDownloader C:\WINDOWS\Prefetch\SPEEDOWNLOADER.TMP-A0E8525C.pf =>Adware.SpeeDownloader HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.Boxore HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>PUP.Optional.Boxore C:\WINDOWS\Installer\1abffe11.msi =>.Superfluous.Microleaves C:\WINDOWS\Installer\2dda6128.msi =>PUP.Optional.Boxore C:\Users\Calimerotte\AppData\Roaming\L9U6UJJ.exe =>Heuristic.Suspect ---\\ Récapitulatif des éléments trouvés sur votre station (7) - 0s https://nicolascoolman.eu/2017/04/25/trojan-generickd/ =>Trojan.GenericKD https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Browser https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://www.nicolascoolman.com/fr/pup-optional-startsearch/ =>PUP.Optional.StartSearch https://nicolascoolman.eu/2017/04/11/adware-speedownloader/ =>Adware.SpeeDownloader https://nicolascoolman.eu/2017/03/14/pup-optional-boxore/ =>PUP.Optional.Boxore https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.Superfluous.Microleaves ~ Unselected Options: O82, ~ End of the scan, 39206 items in 20mn03s (1359)(0)