~ ZHPDiag v2017.7.13.121 Par Nicolas Coolman (2017/07/13) ~ Démarré par jibril (Administrator) (2017/07/14 06:45:59) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\jibril\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\jibril\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ Navigateurs Internet (2) - 0s ~ MFIE: Mozilla Firefox 53.0.3 (x86 fr) ~ MSIE: Internet Explorer v11.0.9600.18739 ---\\ Informations sur les produits Windows (7) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, VOLUME_KMSCLIENT channel Windows ID Activation : OK ~ Windows Partial Key : 6XWKK ~ Windows Remaining Initializations Number : 1000 Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 3s Avast Antivirus Gratuit v17.5.2302 (Protection) Windows Defender (Deactivate) ---\\ Surveillance de Logiciels (1) - 3s ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ Logiciels de partage P2P (1) - 3s ~ µTorrent v3.4.9.43295 (P2P) ---\\ Informations sur le système (6) - 0s ~ Operating System: AMD64 Family 21 Model 2 Stepping 0, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8335.652 MB (64% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 314 GB (32%) free of 953 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: PC-JIBRIL ~ User Name: jibril ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 314 GB free of 953 GB (System) ~ Drive D: has GB free of 4 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 1s [MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2755504] =>.Microsoft Windows® [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 21/11/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [54784] =>.Microsoft Corporation [MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [146944] =>.Microsoft Corporation [MD5.A15B2949219541629C2D43F4545BCB33] - 29/06/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3240960] =>.Microsoft Corporation [MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [570880] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/11/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation [MD5.CF5FA7E4FB587B0F09BB0C143EB49797] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [658432] =>.Microsoft Corporation [MD5.F2E67F682DDCFE2C2C170F2AA3650ED6] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [499200] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 21/11/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation [MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows® [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation [MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation [MD5.4FED6AD69C9EE1EE7FD3C88437138855] - 11/01/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [138752] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 21/11/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 21/11/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation [MD5.E2FC654EC895E92A022794329BFC53EC] - 14/06/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation [MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [281088] =>.Microsoft Corporation [MD5.275CF7F20338B2B1F5264C665033073F] - 11/06/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2013528] =>.Microsoft Windows® [MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation [MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 21/11/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation [MD5.23DF7EBD9B782E1436CEC700565A4366] - 14/05/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation [MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (15) - 1s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\system32\atiesrxx.exe =>.AMD O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Killer Service V2 (Killer Service V2) . (.Rivet Networks - Killer Network Service.) - C:\Program Files\Killer Networking\Network Manager\KillerService.exe =>.Rivet Networks O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: NitroPDFDriverCreatorReadSpool11 (NitroDriverReadSpool11) . (.Nitro Software, Inc. - Nitro PDF Spool Service.) - C:\Program Files\Nitro\Pro 11\NitroPDFDriverService11x64.exe {04EA5B49FDC9B901CB4BDD6B670A131B} O23 - Service: NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 11\Nitro_UpdateService.exe {04EA5B49FDC9B901CB4BDD6B670A131B} O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE {04EA5B49FDC9B901CB4BDD6B670A131B} =>.Nalpeiron Ltd. O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 12.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (22) - 19s SR - Auto [25/04/2017] [ 83056] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SR - Auto [25/10/2016] [ 744640] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [18/05/2017] [ 2246256] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SR - Auto [25/04/2017] [ 543112] (AMD External Events Utility) . (.AMD.) - C:\Windows\system32\atiesrxx.exe =>.Advanced Micro Devices, Inc.® SR - Auto [03/04/2017] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Demand [01/07/2017] [ 7430992] aswbIDSAgent (aswbIDSAgent) . (.AVAST Software s.r.o..) - C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe =>.AVAST Software s.r.o.® SR - Auto [01/07/2017] [ 263312] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.® SS - Demand [18/04/2017] [ 1517576] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.® SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Demand [06/02/2017] [ 1471168] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.Disc Soft Ltd® SS - Auto [08/01/2017] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [08/01/2017] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [09/05/2017] [ 689464] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SR - Auto [05/02/2015] [ 386560] Killer Service V2 (Killer Service V2) . (.Rivet Networks.) - C:\Program Files\Killer Networking\Network Manager\KillerService.exe =>.Rivet Networks SR - Auto [09/05/2017] [ 4470736] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [10/05/2017] [ 173512] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [09/03/2017] [ 327368] NitroPDFDriverCreatorReadSpool11 (NitroDriverReadSpool11) . (.Nitro Software, Inc..) - C:\Program Files\Nitro\Pro 11\NitroPDFDriverService11x64.exe {04EA5B49FDC9B901CB4BDD6B670A131B} SR - Auto [09/03/2017] [ 419016] NitroUpdateService (NitroUpdateService) . (...) - C:\Program Files\Nitro\Pro 11\Nitro_UpdateService.exe {04EA5B49FDC9B901CB4BDD6B670A131B} SR - Auto [09/03/2017] [ 71880] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE {04EA5B49FDC9B901CB4BDD6B670A131B} =>.Nalpeiron Ltd. SS - Auto [01/06/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [01/06/2017] [ 317400] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SR - Auto [01/06/2017] [ 317400] TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® ---\\ Tâches planifiées en automatique (22) - 4s [MD5.AFC094098B6D856151002051E31867D8] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1162360] (.Activate.) =>.Adobe Systems, Incorporated® [MD5.48515EEA1608ECD83FE26C7490460F59] [APT] [AdobeAAMUpdater-1.0-MicrosoftAccount-birgil@hotmail.fr] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128] (.Activate.) =>.Adobe Systems Incorporated® [MD5.F453759BB81ECF1938EDB97DFFD17630] [APT] [Avast Emergency Update] (.AVAST Software.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2317912] (.Activate.) =>.AVAST Software s.r.o.® [MD5.7F3279B74ECC784979C8E2B9BF0221BE] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6889176] (.Activate.) =>.Piriform Ltd® [MD5.A8FD9222E4D72596BB37DA8BE95C0BA4] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] (.Activate.) =>.Google Inc® [MD5.A8FD9222E4D72596BB37DA8BE95C0BA4] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] (.Activate.) =>.Google Inc® [MD5.5FD9E7A51F49EAE4D722CABD84999EF5] [APT] [SafeZone scheduled Autoupdate 1483905479] (.Avast Software.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [927264] (.Activate.) =>.AVAST Software s.r.o.® [MD5.46BC69E80D1244EA04B6A9CE897BBD7E] [APT] [StartCN] (.Advanced Micro Devices, Inc..) -- C:\Program Files\AMD\CNext\CNext\cncmd.exe [52104] (.Activate.) =>.Advanced Micro Devices, Inc.® [MD5.00000000000000000000000000000000] [APT] [{545B3498-17C3-429D-8B74-3DF5BA0DAECE}] (...) -- C:\Program Files (x86)\Common Files\Whitedex\uninstall.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty [MD5.654513B223E50C2210B7BA0134E8BE93] [APT] [{A0F590D3-F6FA-4515-98B1-8226DA66AFDE}] (...) -- C:\MPPS\Uninstall.exe [64337] (.Activate.) [MD5.2AEDCCA604B6A8808DBA746AFC5D9B4A] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [570240] (.Activate.) =>.Apple Inc.® [MD5.FCC7A72757DAC690E71423E8C222FA2F] [APT] [AVAST Software\Avast settings backup] (.AVAST Software.) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [812240] (.Activate.) =>.AVAST Software s.r.o.® O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Acrobat Update Task [4476] =>.Adobe Systems, Incorporated® O39 - APT: AdobeAAMUpdater-1.0-MicrosoftAccount-birgil@hotmail.fr - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-birgil@hotmail.fr [3506] =>.Adobe Systems Incorporated® O39 - APT: Avast Emergency Update - (.AVAST Software.) -- C:\Windows\System32\Tasks\Avast Emergency Update [3914] =>.AVAST Software s.r.o.® O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Windows\System32\Tasks\CCleanerSkipUAC [2794] =>.Piriform Ltd® O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [3372] =>.Google Inc® O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [3500] =>.Google Inc® O39 - APT: SafeZone scheduled Autoupdate 1483905479 - (.Avast Software.) -- C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1483905479 [3920] =>.AVAST Software s.r.o.® O39 - APT: StartCN - (.Advanced Micro Devices, Inc..) -- C:\Windows\System32\Tasks\StartCN [3160] =>.Advanced Micro Devices, Inc.® O39 - APT: {545B3498-17C3-429D-8B74-3DF5BA0DAECE} - (...) -- C:\Windows\System32\Tasks\{545B3498-17C3-429D-8B74-3DF5BA0DAECE} [3572] (.Orphan.) =>.Superfluous.Orphan O39 - APT: {A0F590D3-F6FA-4515-98B1-8226DA66AFDE} - (...) -- C:\Windows\System32\Tasks\{A0F590D3-F6FA-4515-98B1-8226DA66AFDE} [3040] ---\\ Applications lancées au démarrage du système (19) - 1s O4 - HKLM\..\Run: [VIAxHCUtl] -- C:\Program Files\VIA XHCI UASP Utility\usb3Monitor (.not file.) O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.® O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKLM\..\Run: [Malwarebytes TrayApp] . (.Malwarebytes - Malwarebytes Tray Application.) -- C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe =>.Malwarebytes Corporation® O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [AdobeBridge] (.Orphan.) =>.Superfluous.Orphan O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd® O4 - HKCU\..\Run: [Discord] . (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\jibril\AppData\Local\Discord\app-0.0.297\Discord.exe =>.Hammer & Chisel Inc.® O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-21-2959387089-3706689526-1981197223-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - HKUS\S-1-5-21-2959387089-3706689526-1981197223-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-2959387089-3706689526-1981197223-1001\..\Run: [AdobeBridge] (.Orphan.) =>.Superfluous.Orphan O4 - HKUS\S-1-5-21-2959387089-3706689526-1981197223-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd® O4 - HKUS\S-1-5-21-2959387089-3706689526-1981197223-1001\..\Run: [Discord] . (.Hammer & Chisel, Inc. - Discord.) -- C:\Users\jibril\AppData\Local\Discord\app-0.0.297\Discord.exe =>.Hammer & Chisel Inc.® O4 - HKUS\S-1-5-21-2959387089-3706689526-1981197223-1001\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® ---\\ Processus lancés (29) - 2s [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [0] [PID.384] =>.AMD [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [0] [PID.1028] =>.AMD [MD5.8D6BA8E7676038A27FD4ECF12CC744B0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83056] [PID.1652] =>.Adobe Systems, Incorporated® [MD5.8532B30A054D83614A90D24AD61A29DF] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640] [PID.1668] =>.Adobe Systems Incorporated® [MD5.078B785A7533B7059A236017B3B060A4] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2246256] [PID.1688] =>.Adobe Systems Incorporated® [MD5.7DEFAE8665BCEDDC2C9983138D69D7A5] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.1712] =>.Apple Inc.® [MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.1744] =>.Apple Inc.® [MD5.5BC49B01D06DBD8B06E3B33B3E430DF6] - (.Rivet Networks - Killer Network Service.) -- C:\Program Files\Killer Networking\Network Manager\KillerService.exe [386560] [PID.1812] =>.Rivet Networks [MD5.728D8D4EF4E9AFC98D81CA9A0A5DF644] - (.Nitro Software, Inc. - Nitro PDF Spool Service.) -- C:\Program Files\Nitro\Pro 11\NitroPDFDriverService11x64.exe [327368] [PID.1848] {04EA5B49FDC9B901CB4BDD6B670A131B} [MD5.AFEBB0A99BB262CD81E6BCCEBFC77E54] - (...) -- C:\Program Files\Nitro\Pro 11\Nitro_UpdateService.exe [419016] [PID.1876] {04EA5B49FDC9B901CB4BDD6B670A131B} [MD5.19F2F8EB84AFABBF4B8CAFC6EC9C6990] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [71880] [PID.1924] {04EA5B49FDC9B901CB4BDD6B670A131B} =>.Nalpeiron Ltd. [MD5.52BE9C0316E3533D8CF6445C2C4E3AA2] - (.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10888944] [PID.1508] =>.TeamViewer GmbH® [MD5.D76E56108E6482905D3FAEA0649919E4] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736] [PID.2276] =>.Malwarebytes Corporation® [MD5.7DECA98ED749AD81AD4E3DE0DD0817DB] - (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [9366920] [PID.4324] =>.Advanced Micro Devices, Inc.® [MD5.968EDA6EA6E00DFAE78586BFA6322B74] - (.VIA Technologies, Inc. - usbmonitor.) -- C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe [331776] [PID.4756] =>.VIA Technologies, Inc. [MD5.6B20F277CFD8DECE09EAA68D5B8BD722] - (.Rivet Networks - Killer Network Manager.) -- C:\Program Files\Killer Networking\Network Manager\NetworkManager.exe [330240] [PID.4340] =>.Rivet Networks [MD5.A443A7C05ABF0FCD16E89593F63B633B] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288] [PID.2560] =>.Oracle America, Inc.® [MD5.A70E699E0B0DD9C2B3B35E9A8167F903] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8944344] [PID.4728] =>.Piriform Ltd® [MD5.4136FF98144EDD65219B63106530C3A3] - (.Ubisoft - Uplay launcher.) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [8794456] [PID.5116] =>.Ubisoft Entertainment Sweden AB® [MD5.FEDCBE91D9F0530D103776A64134944C] - (.Ubisoft - Uplay WebCore.) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe [1472856] [PID.4588] =>.Ubisoft Entertainment Sweden AB® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.5496] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.124] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.2148] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.5404] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.2812] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.1528] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.2592] =>.Google Inc® [MD5.D387A06CD4BF5FCC1B50C3882F41A44E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1197912] [PID.276] =>.Google Inc® [MD5.9AE58292D951DA8379A5E444C0250881] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\jibril\Desktop\ZHPDiag3.exe [2782592] [PID.4256] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (21) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://ui.ff.avast.com =>.Avast Software s.r.o G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.eyeo GmbH {AdBlock Plus} G2 - GCE: Preference [User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat} G2 - GCE: Preference [User Data\Default] [eofcbnmajmjmplflapaojjnihcjkigck] Avast SafePrice =>.Avast Software s.r.o G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o G2 - GCE: Preference [User Data\Default] [ibbfklbaljofpaanmpaeadejijfdddco] =>.Yahoo! Inc. {Partner} G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 2s P2 - EXT FILE: (.Avira Software - __MSG_extDescription__.) -- C:\Users\jibril\AppData\Roaming\Mozilla\Firefox\Profiles\1QRW37mx.default\extensions\abs@avira.com.xpi =>.Avira Software P2 - EXT FILE: (.Avast SafePrice - Avast SafePrice - safe shopping extens.) -- C:\Users\jibril\AppData\Roaming\Mozilla\Firefox\Profiles\1QRW37mx.default\extensions\sp@avast.com.xpi =>.Avast SafePrice P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\jibril\AppData\Roaming\Mozilla\Firefox\Profiles\1QRW37mx.default\extensions\wrc@avast.com.xpi =>.Avast Online Security P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (22) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/ =>.Yahoo! Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com/ =>.Yahoo! Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr/ =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr/ =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com/ =>.Yahoo! Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKEY_USERS\S-1-5-21-2959387089-3706689526-1981197223-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://fr.yahoo.com/ =>.Yahoo! Inc. R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphan =>.Microsoft Internet Explorer R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (4) ---\\ Browser Helper Object de navigateur (BHO) (1) - 0s O2 - BHO: avast! Online Security [64Bits] - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software s.r.o.® ---\\ Raccourcis Global Startup (94) - 6s O4 - GS\Desktop [Administrateur]: AMD Radeon Settings.lnk . (.Advanced Micro Devices, Inc. - .) C:\Program Files (x86)\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc. O4 - GS\Desktop [Administrateur]: Avast Antivirus Gratuit.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.® O4 - GS\Desktop [Administrateur]: Far Cry 4.lnk . (.Ubisoft Entertainment - Far Cry 4.) C:\Program Files (x86)\Far Cry 4\bin\FarCry4.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [Administrateur]: Farming Simulator 17 .lnk . (.GIANTS Software GmbH - GIANTS Launcher.) C:\Program Files (x86)\Farming Simulator 2017\FarmingSimulator2017.exe =>.GIANTS Software GmbH® O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: Grand Theft Auto V.lnk . (.Rockstar Games - .) C:\Program Files (x86)\Rockstar Games\Grand Theft Auto V\PlayGTAV.exe =>.Rockstar Games O4 - GS\Desktop [Administrateur]: Omsi 2.lnk . (.MR-Software - .) C:\Program Files (x86)\OMSI 2\Omsi.exe =>.MR-Software O4 - GS\Desktop [Administrateur]: Open Rails.lnk . (.Open Rails - Open Rails.) C:\Program Files (x86)\Open Rails\OpenRails.exe {2C1F2F8E1B18ACDFD53048C76C9F895C} =>.Open Rails O4 - GS\Desktop [Administrateur]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - GS\Desktop [Administrateur]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\jibril\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH® O4 - GS\Desktop [Administrateur]: TT Express.LNK . (.SCweb - Logiciel d'aide à la création d'activités H.) C:\Program Files (x86)\TT Express\TT Express.exe O4 - GS\Desktop [Administrateur]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\jibril\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: TT Express.LNK . (.SCweb - Logiciel d'aide à la création d'activités H.) C:\Program Files (x86)\TT Express\TT Express.exe O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - GS\Startup [Administrateur]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\jibril\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\Programs [Administrateur]: avast! antivirus.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software s.r.o.® O4 - GS\Programs [Administrateur]: Documents.lnk . (...) C:\Users\jibril\Documents O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Pictures.lnk . (...) C:\Users\jibril\Pictures =>.Microsoft Corporation O4 - GS\Desktop [jibril]: AMD Radeon Settings.lnk . (.Advanced Micro Devices, Inc. - .) C:\Program Files (x86)\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc. O4 - GS\Desktop [jibril]: Avast Antivirus Gratuit.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.® O4 - GS\Desktop [jibril]: Far Cry 4.lnk . (.Ubisoft Entertainment - Far Cry 4.) C:\Program Files (x86)\Far Cry 4\bin\FarCry4.exe =>.UBISOFT ENTERTAINMENT INC.® O4 - GS\Desktop [jibril]: Farming Simulator 17 .lnk . (.GIANTS Software GmbH - GIANTS Launcher.) C:\Program Files (x86)\Farming Simulator 2017\FarmingSimulator2017.exe =>.GIANTS Software GmbH® O4 - GS\Desktop [jibril]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [jibril]: Grand Theft Auto V.lnk . (.Rockstar Games - .) C:\Program Files (x86)\Rockstar Games\Grand Theft Auto V\PlayGTAV.exe =>.Rockstar Games O4 - GS\Desktop [jibril]: Omsi 2.lnk . (.MR-Software - .) C:\Program Files (x86)\OMSI 2\Omsi.exe =>.MR-Software O4 - GS\Desktop [jibril]: Open Rails.lnk . (.Open Rails - Open Rails.) C:\Program Files (x86)\Open Rails\OpenRails.exe {2C1F2F8E1B18ACDFD53048C76C9F895C} =>.Open Rails O4 - GS\Desktop [jibril]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Desktop [jibril]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\Desktop [jibril]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - GS\Desktop [jibril]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Users\jibril\AppData\Local\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH® O4 - GS\Desktop [jibril]: TT Express.LNK . (.SCweb - Logiciel d'aide à la création d'activités H.) C:\Program Files (x86)\TT Express\TT Express.exe O4 - GS\Desktop [jibril]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB® O4 - GS\Desktop [jibril]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\jibril\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [jibril]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [jibril]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [jibril]: TT Express.LNK . (.SCweb - Logiciel d'aide à la création d'activités H.) C:\Program Files (x86)\TT Express\TT Express.exe O4 - GS\sendTo [jibril]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [jibril]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [jibril]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [jibril]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [jibril]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O4 - GS\Startup [jibril]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\jibril\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\Programs [jibril]: avast! antivirus.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software s.r.o.® O4 - GS\Programs [jibril]: Documents.lnk . (...) C:\Users\jibril\Documents O4 - GS\Programs [jibril]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [jibril]: Pictures.lnk . (...) C:\Users\jibril\Pictures =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: DriversCloud.com - Démarrer la détection.lnk . (.CybelSoft - .) C:\Program Files (x86)\DriversCloud.com\DriversCloud.exe =>.CybelSoft O4 - GS\CommonDesktop [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: avast! antivirus.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\avastui.exe =>.AVAST Software s.r.o.® O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\jibril\Documents O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\jibril\Pictures =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: Killer Network Manager.lnk . (.Rivet Networks - .) C:\Program Files (x86)\Killer Networking\Network Manager\NetworkManager.exe -minimize =>.Rivet Networks O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Adobe Bridge CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Bridge CC 2015.) C:\Program Files\Adobe\Adobe Bridge CC 2015\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2015.5.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2015.5.) C:\Program Files\Adobe\Adobe Photoshop CC 2015.5\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{52D87F32-70E4-4348-8148-C0B9F35B1314}\AppleSoftwareUpdateIco.exe =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.® O4 - GS\ProgramsCommon [Public]: Bus Simulator 16.lnk . (...) C:\Program Files\Bus Simulator 16\BusSimulator16.exe O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\Windows\Camera\Camera.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\Windows\FileManager\FileManager.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: GIMP 2.lnk . (...) C:\Program Files\GIMP 2\bin\gimp-2.8.exe O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Nitro Pro.lnk . (.Nitro PDF - .) C:\Program Files (x86)\Nitro\Pro 11\NitroPDF.exe =>.Nitro PDF O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\Windows\FileManager\PhotosApp.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{2E9F4F14-E6EC-4A86-B1BC-7C6E5389ADD1}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{4CF79C63-676E-4033-89D7-82E026B91217}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7F4C7ED6-2FCD-45BE-85AB-F6ED8C7ACF6C}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress ---\\ Protocole additionnel (20) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation ---\\ Logiciels installés (89) - 11s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 16.04 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: Action! - (.Mirillis.) [HKLM][64Bits] -- Mirillis Action! =>.Mirillis O42 - Logiciel: Adobe Acrobat 4.0 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Acrobat 4.0 =>.Adobe Systems, Inc. O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Bridge CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- KBRG_6_3_1 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CC 2015.5 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_17_0_1 =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824225037} =>.Adobe Systems Incorporated O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E} =>.Apple Inc. O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {0A596141-97D5-45FA-9281-98DFAF48D579} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {52D87F32-70E4-4348-8148-C0B9F35B1314} =>.Apple Inc. O42 - Logiciel: Avast Antivirus Gratuit - (.AVAST Software.) [HKLM][64Bits] -- Avast Antivirus =>.AVAST Software s.r.o.® O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc. O42 - Logiciel: Bus Simulator 16 - (..) [HKLM][64Bits] -- YnVzc2ltdWxhdG9yMTY_is1 O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: City Car Driving version 2.2.7 - (.RePack By FunTik.) [HKLM][64Bits] -- City Car Driving_is1 O42 - Logiciel: Construction Simulator 2015 - (..) [HKLM][64Bits] -- Construction Simulator 2015_is1 O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd® O42 - Logiciel: Discord - (.Hammer & Chisel, Inc..) [HKCU][64Bits] -- Discord =>.Hammer & Chisel Inc.® O42 - Logiciel: Double Action: Boogaloo - (.Double Action Factory.) [HKLM][64Bits] -- Steam App 317360 =>.Valve® O42 - Logiciel: DriversCloud.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {3283A385-A954-4830-A8DC-D67892E42D02} =>.CybelSoft O42 - Logiciel: Euro Truck Simulator 2 Demo - (.SCS Software.) [HKLM][64Bits] -- Steam App 231120 =>.Valve® O42 - Logiciel: Far Cry 4 version 1.9.0 - (.UBISoft.) [HKLM][64Bits] -- {62727D50-FA74-4A53-B57F-0DCBD9D8C1BB}_is1 =>.Ubisoft O42 - Logiciel: Farming Simulator 15 - (..) [HKLM][64Bits] -- Farming Simulator 15_is1 O42 - Logiciel: Farming Simulator 17 - (.GIANTS Software.) [HKLM][64Bits] -- FarmingSimulator2017_is1 =>.GIANTS Software GmbH® O42 - Logiciel: Female Voices - (.Screaming Bee Inc..) [HKLM][64Bits] -- {8339A1A4-765A-4B23-8950-86BD1382E37B} =>.Screaming Bee Inc. O42 - Logiciel: Female Voices for MorphVOX - (.Screaming Bee Inc..) [HKLM][64Bits] -- {7deb85b1-333a-461a-9ae0-00b4b8a6e3e7} =>.Screaming Bee Inc® O42 - Logiciel: GIANTS Editor 6.0.5 64-bit - (.GIANTS Software GmbH.) [HKLM][64Bits] -- giants_editor_6.0.5_win64_is1 =>.GIANTS Software GmbH® O42 - Logiciel: GIMP 2.8.16 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 =>.The GIMP Team O42 - Logiciel: Google Chrome - (.Google, Inc..) [HKLM][64Bits] -- {0579179A-9E50-34B0-9957-A02A288A2F10} =>.Google, Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Grand Theft Auto V - (.Rockstar Games.) [HKLM][64Bits] -- {E01FA564-2094-4833-8F2F-1FFEC6AFCC46} =>.Take-Two Interactive Software, Inc.® O42 - Logiciel: Intel® RealSense™ SDK 2014 Runtime (x64): Core - (.Intel Corporation.) [HKLM][64Bits] -- {37D41A97-6B02-4C30-8753-85107BE1D674} =>.Intel Corporation O42 - Logiciel: Islands of Nyne: Battle Royale (Alpha) - (..) [HKLM][64Bits] -- Steam App 568260 =>.Valve® O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F0C7385A-9D20-45F3-8101-05D383885180} =>.Apple Inc. O42 - Logiciel: Java 8 Update 121 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180121F0} =>.Oracle Corporation O42 - Logiciel: Java 8 Update 131 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180131F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Killer Bandwidth Control Filter Driver - (.Rivet Networks.) [HKLM][64Bits] -- {F19B250A-58F9-4B9E-864B-B77C490E166B} =>.Rivet Networks O42 - Logiciel: Killer E220x Drivers - (.Rivet Networks.) [HKLM][64Bits] -- {5CF9FE6F-7EBC-4391-8547-C8F9D83890B4} =>.Rivet Networks O42 - Logiciel: Killer Network Manager - (.Rivet Networks.) [HKLM][64Bits] -- {E1635028-06FE-4E4D-B471-A28B429C837C} =>.Rivet Networks O42 - Logiciel: Killer Performance Suite - (.Qualcomm Atheros.) [HKLM][64Bits] -- {E70DB50B-10B4-46BC-9DE2-AB8B49E061EE} =>.Rivet Networks LLC® O42 - Logiciel: LibreOffice 5.2.7.2 - (.The Document Foundation.) [HKLM][64Bits] -- {C89BB248-1889-4D6B-B310-A744A0545123} =>.The Document Foundation O42 - Logiciel: Malwarebytes version 3.1.2.1733 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync =>.Mega Limited® O42 - Logiciel: MI2N - (..) [HKLM][64Bits] -- MI2N O42 - Logiciel: Microsoft Train Simulator - (.Dovetail Games.) [HKLM][64Bits] -- Train Simulator 1.0 =>.Dovetail Games O42 - Logiciel: Microsoft Xbox One Controller for Windows - (.Microsoft Corporation.) [HKLM][64Bits] -- {DC2CB48C-FD96-48EB-A36A-7D995BB587EB} =>.Microsoft Corporation O42 - Logiciel: Microsoft XNA Framework Redistributable 3.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20} =>.Microsoft Corporation O42 - Logiciel: MorphVOX Junior - (.Screaming Bee.) [HKLM][64Bits] -- {E6C7380F-15DD-445E-BA02-B7A180BA0A5A} =>.Screaming Bee O42 - Logiciel: MorphVOX Pro - (.Screaming Bee.) [HKLM][64Bits] -- {4bfc0d50-0417-46a0-ab1e-475fb1a90916} =>.Screaming Bee Inc® O42 - Logiciel: MorphVOX Pro - (.Screaming Bee.) [HKLM][64Bits] -- {5F075DA5-407B-4F4D-BF2A-922CCA85706A} =>.Screaming Bee O42 - Logiciel: Mozilla Firefox 53.0.3 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 53.0.3 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MPPS - (.Amt-Cartech Ltd.) [HKLM][64Bits] -- MPPS O42 - Logiciel: mpps 13.02 13.02 - (..) [HKLM][64Bits] -- mpps 13.02 13.02 O42 - Logiciel: Nitro Pro - (.Nitro.) [HKLM][64Bits] -- {15459ba7-7bcf-4b1f-8631-b6b5b980a8cc} {04EA5B49FDC9B901CB4BDD6B670A131B} =>.Nitro O42 - Logiciel: Nitro Pro - (.Nitro.) [HKLM][64Bits] -- {4494C662-E5DE-47C8-B429-C1B9854046EE} =>.Nitro O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B455E95A-B804-439F-B533-336B1635AE97} =>.NVIDIA Corporation O42 - Logiciel: OMSI 2 version 2.3.004 - (.MR-Software GbR.) [HKLM][64Bits] -- {6A5E56E6-4005-421C-971F-A8A14B384045}_is1 O42 - Logiciel: Open Rails 1.2.3766 - (.Open Rails.) [HKLM][64Bits] -- {94E15E08-869D-4B69-B8D7-8C82075CB51C} ; Generat~67F3DAC8_is1 =>.Open Rails O42 - Logiciel: OpenOffice 4.1.3 - (.Apache Software Foundation.) [HKLM][64Bits] -- {3E1679DA-5081-44AA-B4C2-BF8EE7E107E0} =>.Apache Software Foundation O42 - Logiciel: Outlast 2 - (..) [HKLM][64Bits] -- Outlast 2_is1 O42 - Logiciel: PAYDAY 2 - (.OVERKILL - a Starbreeze Studio..) [HKLM][64Bits] -- Steam App 218620 =>.Valve® O42 - Logiciel: Personality Voices - (.Screaming Bee Inc..) [HKLM][64Bits] -- {8CBE2745-56FD-40E6-94EE-6B46BDFF75B3} =>.Screaming Bee Inc. O42 - Logiciel: Personality Voices for MorphVOX - (.Screaming Bee Inc..) [HKLM][64Bits] -- {348a7cdd-e826-4ccd-a00c-a9b0499a9fde} =>.Screaming Bee Inc® O42 - Logiciel: Platform - (.VIA Technologies, Inc..) [HKLM][64Bits] -- {20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: PLAYERUNKNOWN'S BATTLEGROUNDS - (.Bluehole, Inc..) [HKLM][64Bits] -- Steam App 578080 =>.Valve® O42 - Logiciel: Rocket League - (.Psyonix, Inc..) [HKLM][64Bits] -- Steam App 252950 =>.Valve® O42 - Logiciel: Rockstar Games Social Club - (.Rockstar Games.) [HKLM][64Bits] -- Rockstar Games Social Club =>.Rockstar Games, Inc.® O42 - Logiciel: SafeZone Stable 3.55.2393.609 - (.Avast Software.) [HKLM][64Bits] -- SafeZone 3.55.2393.609 =>.AVAST Software s.r.o.® O42 - Logiciel: SketchUp 2017 - (.Trimble Navigation Limited.) [HKLM][64Bits] -- {7B8F376D-7D82-41A4-A14E-6DAAA426CBD9} =>.Trimble Navigation Limited O42 - Logiciel: Skype™ 7.38 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A. O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKCU][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH O42 - Logiciel: TeamViewer 12 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer GmbH® O42 - Logiciel: Tom Clancy's Ghost Recon Wildlands - (.Ubisoft.) [HKLM][64Bits] -- Uplay Install 1771 =>.Ubisoft Entertainment Sweden AB® O42 - Logiciel: Tom Clancy's Rainbow Six Siege - (.Ubisoft Montreal.) [HKLM][64Bits] -- Uplay Install 635 =>.Ubisoft Entertainment Sweden AB® O42 - Logiciel: Train Simulator - (.Dovetail Games.) [HKLM][64Bits] -- Steam App 24010 =>.Valve® O42 - Logiciel: TT Express - (..) [HKLM][64Bits] -- TT Express O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Entertainment Sweden AB® O42 - Logiciel: VIA Gestionnaire de périphériques de plate-forme - (.VIA Technologies, Inc..) [HKLM][64Bits] -- InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169} =>.VIA Technologies, Inc. O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: Vulkan Run Time Libraries 1.0.37.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.37.0 =>.LunarG, Inc.® O42 - Logiciel: Vulkan Run Time Libraries 1.0.39.1 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.39.1 =>.LunarG, Inc.® O42 - Logiciel: Watch_Dogs 2 - (.Ubisoft.) [HKLM][64Bits] -- {B0E33297-78B1-4B37-B8C1-39150F2DEE43}_is1 =>.Ubisoft O42 - Logiciel: WinRAR 5.40 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (124) - 11s HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\aerosoft =>.aerosoft HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD HKLM\SOFTWARE\Wow6432Node\Amt-Cartech Ltd HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Wow6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Wow6432Node\B7E267F89D899C282EF7D5EC41356159 =>Adware.CrossRider HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat =>.EasyAntiCheat HKLM\SOFTWARE\Wow6432Node\geusqo HKLM\SOFTWARE\Wow6432Node\Ghijick HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\Intel Security =>.Intel Security HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\lameme =>.Audacity HKLM\SOFTWARE\Wow6432Node\LibreOffice =>.LibreOffice HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee =>.McAfee Inc. HKLM\SOFTWARE\Wow6432Node\MicroRay HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MSI =>.MSI HKLM\SOFTWARE\Wow6432Node\Nalpeiron =>.Nalpeiron HKLM\SOFTWARE\Wow6432Node\New Roads HKLM\SOFTWARE\Wow6432Node\Nexon =>.Nexon HKLM\SOFTWARE\Wow6432Node\Nitro =>.Nitro HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\Okrasa HKLM\SOFTWARE\Wow6432Node\PC SOFT =>.PC SOFT HKLM\SOFTWARE\Wow6432Node\Piriform =>.Piriform HKLM\SOFTWARE\Wow6432Node\Qivasy HKLM\SOFTWARE\Wow6432Node\railsimulator.com HKLM\SOFTWARE\Wow6432Node\Rockstar Games =>.Rockstar Games HKLM\SOFTWARE\Wow6432Node\Screaming Bee =>.Screaming Bee HKLM\SOFTWARE\Wow6432Node\SketchUp =>.@Last Software HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\TeamViewer =>.TeamViewer HKLM\SOFTWARE\Wow6432Node\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\Wow6432Node\Thraex Software =>.Thraex Software HKLM\SOFTWARE\Wow6432Node\Thufertjehatain HKLM\SOFTWARE\Wow6432Node\Ubisoft =>.Ubisoft HKLM\SOFTWARE\Wow6432Node\UCBrowser =>.UCWeb Inc. HKLM\SOFTWARE\Wow6432Node\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve HKLM\SOFTWARE\Wow6432Node\VIA Technologies, Inc =>.VIA Technologies, Inc HKLM\SOFTWARE\Wow6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Wow6432Node\WinRAR =>.WinRAR HKLM\SOFTWARE\Wow6432Node\Yahoo =>.Yahoo! Inc. HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CitizenFX HKCU\SOFTWARE\Disc Soft =>.Disc Soft HKCU\SOFTWARE\Drivers =>.Legitimate HKCU\SOFTWARE\Epic Games =>.Epic Games HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\IM =>Adware.InstallCore HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\InstallShield =>.InstallShield HKCU\SOFTWARE\Intel Security =>.Intel Security HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Killer HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mine =>.Microsoft Corporation HKCU\SOFTWARE\Mirillis =>.Mirillis HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Nexon =>.Nexon HKCU\SOFTWARE\Nitro =>.Nitro HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\OpenRails HKCU\SOFTWARE\P2PDownloader =>.Unknown HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Rockstar Games =>.Rockstar Games HKCU\SOFTWARE\Rtp =>.RTP Software HKCU\SOFTWARE\Screaming Bee =>.Screaming Bee HKCU\SOFTWARE\SCweb HKCU\SOFTWARE\Section Studios, Inc. HKCU\SOFTWARE\SketchUp =>.@Last Software HKCU\SOFTWARE\SKS =>.SKS Software HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\skypeapp-8367da3e942c HKCU\SOFTWARE\stillalive studios GmbH HKCU\SOFTWARE\System32 =>.Mirillis HKCU\SOFTWARE\TeamSpeak 3 Client =>.TeamSpeak HKCU\SOFTWARE\TeamViewer =>.TeamViewer HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\THEGFW =>.Games Software HKCU\SOFTWARE\Ubisoft =>.Ubisoft HKCU\SOFTWARE\UCBrowser =>.UCWeb Inc. HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\weltenbauer. Software Entwicklung HKCU\SOFTWARE\Win =>.Unknown HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\PasswordBox =>.PasswordBox Inc ---\\ Contenu des dossiers Programmes (302) - 73s O43 - CFD: 13/04/2017 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 01/11/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 23/03/2017 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 08/01/2017 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.® O43 - CFD: 31/03/2017 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 09/01/2017 - [] D -- C:\Program Files\Bus Simulator 16 O43 - CFD: 26/10/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 11/05/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 16/02/2017 - [] D -- C:\Program Files\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 24/02/2017 - [] D -- C:\Program Files\DriversCloud.com =>.Cybelsoft O43 - CFD: 23/10/2016 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 03/11/2016 - [] D -- C:\Program Files\GIANTS Software =>.GIANTS Software O43 - CFD: 12/05/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 23/05/2017 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 23/05/2017 - [] D -- C:\Program Files\iTunes =>.Apple Inc. O43 - CFD: 23/10/2016 - [] D -- C:\Program Files\Killer Networking O43 - CFD: 25/05/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 13/06/2017 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 26/03/2017 - [] D -- C:\Program Files\Microsoft Xbox One Controller for Windows =>.Microsoft Corporation O43 - CFD: 27/10/2016 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 11/05/2017 - [] D -- C:\Program Files\Nitro =>.Nitro O43 - CFD: 27/10/2016 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 23/06/2017 - [] D -- C:\Program Files\Rockstar Games =>.Rockstar Games, Inc.® O43 - CFD: 04/05/2017 - [] D -- C:\Program Files\SketchUp =>.@Last Software O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [] D -- C:\Program Files\VIA XHCI UASP Utility =>.VIA® O43 - CFD: 14/04/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 16/06/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 02/05/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 07/05/2017 - [0] D -- C:\Program Files (x86)\AGEIA Technologies =>.AGEIA Technologies O43 - CFD: 27/06/2017 - [] D -- C:\Program Files (x86)\AMD =>.AMD O43 - CFD: 31/03/2017 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc. O43 - CFD: 31/03/2017 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 30/06/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 09/11/2016 - [] D -- C:\Program Files (x86)\Construction Simulator 2015 O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\Far Cry 4 O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\Farming Simulator 15 =>.GIANTS Software O43 - CFD: 16/02/2017 - [0] D -- C:\Program Files (x86)\Farming Simulator 2015 =>.GIANTS Software O43 - CFD: 27/10/2016 - [] D -- C:\Program Files (x86)\Farming Simulator 2017 =>.GIANTS Software O43 - CFD: 08/01/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 14/12/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield Software O43 - CFD: 12/05/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 23/05/2017 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 10/05/2017 - [] D -- C:\Program Files (x86)\LibreOffice 5 =>.LibreOffice O43 - CFD: 03/05/2017 - [0] D -- C:\Program Files (x86)\McAfee =>.McAfee O43 - CFD: 01/03/2017 - [] D -- C:\Program Files (x86)\Microsoft Games =>.Microsoft Corporation O43 - CFD: 31/12/2016 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 31/10/2016 - [] D -- C:\Program Files (x86)\Mirillis =>.Mirillis® O43 - CFD: 23/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 10/05/2017 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 27/10/2016 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 19/02/2017 - [0] D -- C:\Program Files (x86)\MSTS O43 - CFD: 11/05/2017 - [] D -- C:\Program Files (x86)\Nitro =>.Nitro O43 - CFD: 07/05/2017 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 13/07/2017 - [] D -- C:\Program Files (x86)\OMSI 2 O43 - CFD: 19/05/2017 - [] D -- C:\Program Files (x86)\Open Rails {2C1F2F8E1B18ACDFD53048C76C9F895C} =>.Open Rails O43 - CFD: 01/11/2016 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 29/04/2017 - [] D -- C:\Program Files (x86)\Outlast 2 O43 - CFD: 27/10/2016 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 26/11/2016 - [] D -- C:\Program Files (x86)\RePack By FunTik O43 - CFD: 23/06/2017 - [] D -- C:\Program Files (x86)\Rockstar Games =>.Rockstar Games, Inc.® O43 - CFD: 09/01/2017 - [] D -- C:\Program Files (x86)\Screaming Bee =>.Screaming Bee O43 - CFD: 10/06/2017 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 14/07/2017 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\TT Express O43 - CFD: 12/11/2016 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft O43 - CFD: 25/05/2017 - [] D -- C:\Program Files (x86)\UCBrowser O43 - CFD: 15/02/2017 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [] D -- C:\Program Files (x86)\VIA =>.VIA O43 - CFD: 05/03/2017 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 24/04/2017 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 23/04/2017 - [] D -- C:\Program Files (x86)\Watch_Dogs 2 {1121A775882B273A40F9A6D4C8A76282E414} O43 - CFD: 14/04/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 06/02/2017 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 23/05/2017 - [0] D -- C:\Program Files (x86)\Yahoo! =>.Yahoo! O43 - CFD: 26/04/2017 - [0] D -- C:\Program Files (x86)\[nextorrent.net] Djadja_and_Dinaz-Dans_Larene-FR-2017-SO O43 - CFD: 13/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 12/07/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 12/07/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 26/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 4.0 O43 - CFD: 23/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Problem Report Wizard O43 - CFD: 27/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings =>.Samsung Electronics O43 - CFD: 22/05/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software O43 - CFD: 22/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 26/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\City Car Driving O43 - CFD: 09/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Construction Simulator 2015 O43 - CFD: 24/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com =>.Cybelsoft O43 - CFD: 22/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 4 O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 15 =>.GIANTS Software O43 - CFD: 22/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2017 =>.GIANTS Software O43 - CFD: 22/03/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 03/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIANTS Software =>.GIANTS Software O43 - CFD: 23/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc. O43 - CFD: 23/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 23/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Killer Networking O43 - CFD: 10/05/2017 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.2 =>.LibreOffice O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 25/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 26/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games =>.Microsoft Corporation O43 - CFD: 31/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis =>.Mirillis O43 - CFD: 13/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPPS O43 - CFD: 21/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OMSI 2 O43 - CFD: 22/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Open Rails =>.Open Rails O43 - CFD: 29/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlast 2 O43 - CFD: 14/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games =>.Rockstar Games O43 - CFD: 09/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Bee =>.Screaming Bee O43 - CFD: 04/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 2017 =>.@Last Software O43 - CFD: 22/05/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 02/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 11/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 13/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Train Simulator 2015 O43 - CFD: 05/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 23/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Watch_Dogs 2 O43 - CFD: 06/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 02/05/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 31/03/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 31/03/2017 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 24/02/2017 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 01/07/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 29/03/2017 - [] D -- C:\ProgramData\Battle.net =>.Games Software O43 - CFD: 01/11/2016 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 23/10/2016 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 16/02/2017 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 24/02/2017 - [] D -- C:\ProgramData\DriversCloud.com =>.Cybelsoft O43 - CFD: 23/10/2016 - [] D -- C:\ProgramData\Killer O43 - CFD: 25/05/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 02/05/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 23/10/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 08/01/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 31/10/2016 - [] D -- C:\ProgramData\Mirillis =>.Mirillis O43 - CFD: 23/10/2016 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 11/05/2017 - [] D -- C:\ProgramData\Nitro =>.Nitro O43 - CFD: 06/04/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 11/05/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 01/11/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 21/11/2014 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 04/05/2017 - [] AD -- C:\ProgramData\Reprise =>.Unknown O43 - CFD: 01/01/2017 - [] D -- C:\ProgramData\Screaming Bee =>.Screaming Bee O43 - CFD: 23/05/2017 - [] D -- C:\ProgramData\SCweb O43 - CFD: 04/05/2017 - [] D -- C:\ProgramData\SketchUp =>.@Last Software O43 - CFD: 10/06/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 08/11/2016 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 11/07/2017 - [0] D -- C:\ProgramData\SWCUTemp O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 31/03/2017 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 10/05/2017 - [] D -- C:\Program Files (x86)\Common Files\AV =>.Avast O43 - CFD: 14/07/2017 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye O43 - CFD: 23/10/2016 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 23/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 31/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 08/01/2017 - [] D -- C:\Program Files (x86)\Common Files\ndIhrZHbJBgBuWWaTzPBf85t O43 - CFD: 01/01/2017 - [] D -- C:\Program Files (x86)\Common Files\Screaming Bee =>.Screaming Bee O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 30/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 13/07/2017 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 13/02/2017 - [] D -- C:\Program Files (x86)\Common Files\Thraex Software =>.Thraex Software O43 - CFD: 14/04/2017 - [] D -- C:\Program Files (x86)\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 06/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\.azlauncher O43 - CFD: 02/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 31/03/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 24/02/2017 - [] D -- C:\Users\jibril\AppData\Roaming\ATI =>.ATI O43 - CFD: 08/01/2017 - [] D -- C:\Users\jibril\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 08/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\CitizenFX O43 - CFD: 23/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools O43 - CFD: 10/07/2017 - [] D -- C:\Users\jibril\AppData\Roaming\discord =>.GitHub O43 - CFD: 21/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\discordsdk O43 - CFD: 11/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\DS4Windows =>.DSDCS O43 - CFD: 05/03/2017 - [] D -- C:\Users\jibril\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 23/02/2017 - [] D -- C:\Users\jibril\AppData\Roaming\EasyAntiCheat O43 - CFD: 01/01/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Infamous GTAV Menu O43 - CFD: 06/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\java =>.Oracle O43 - CFD: 10/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 08/01/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 03/03/2017 - [] SD -- C:\Users\jibril\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 31/10/2016 - [] D -- C:\Users\jibril\AppData\Roaming\Mirillis =>.Mirillis O43 - CFD: 03/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 01/07/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Nitro =>.Nitro O43 - CFD: 12/11/2016 - [] D -- C:\Users\jibril\AppData\Roaming\OBS =>.OBS O43 - CFD: 09/06/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Open Rails =>.Open Rails O43 - CFD: 07/03/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Open Rails (disabled) O43 - CFD: 01/11/2016 - [] D -- C:\Users\jibril\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 08/01/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Profiles =>.Microsoft Corporation O43 - CFD: 09/01/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Screaming Bee =>.Screaming Bee O43 - CFD: 04/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\SketchUp =>.@Last Software O43 - CFD: 14/06/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Skype =>.Skype O43 - CFD: 09/11/2016 - [] D -- C:\Users\jibril\AppData\Roaming\Steam =>.Steam Games O43 - CFD: 06/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Sun =>.Oracle O43 - CFD: 24/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\TeamViewer =>.TeamViewer GmbH O43 - CFD: 04/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Trimble Connect for SketchUp =>.Trimble Navigation Ltd O43 - CFD: 22/06/2017 - [] D -- C:\Users\jibril\AppData\Roaming\TS3Client =>.TeamSpeak O43 - CFD: 13/07/2017 - [] D -- C:\Users\jibril\AppData\Roaming\uTorrent O43 - CFD: 15/06/2017 - [] D -- C:\Users\jibril\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 23/10/2016 - [] D -- C:\Users\jibril\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 06/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Yahoo O43 - CFD: 23/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Yamicsoft =>.Yamicsoft O43 - CFD: 14/07/2017 - [] D -- C:\Users\jibril\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 14/07/2017 - [] D -- C:\Users\jibril\AppData\Local\Adobe =>.Adobe O43 - CFD: 23/10/2016 - [] D -- C:\Users\jibril\AppData\Local\AMD =>.AMD O43 - CFD: 31/03/2017 - [] D -- C:\Users\jibril\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 31/03/2017 - [] D -- C:\Users\jibril\AppData\Local\Apple Computer =>.Apple Inc. O43 - CFD: 23/10/2016 - [0] SHD -- C:\Users\jibril\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 08/01/2017 - [] D -- C:\Users\jibril\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 24/02/2017 - [] D -- C:\Users\jibril\AppData\Local\ATI =>.ATI O43 - CFD: 23/05/2017 - [] D -- C:\Users\jibril\AppData\Local\AVAST Software =>.AVAST Software O43 - CFD: 23/10/2016 - [] D -- C:\Users\jibril\AppData\Local\CEF =>.CEF O43 - CFD: 02/07/2017 - [] D -- C:\Users\jibril\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 14/06/2017 - [] D -- C:\Users\jibril\AppData\Local\DigitalEntitlements O43 - CFD: 15/04/2017 - [] D -- C:\Users\jibril\AppData\Local\Discord =>.GitHub O43 - CFD: 16/02/2017 - [] D -- C:\Users\jibril\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd O43 - CFD: 01/05/2017 - [0] D -- C:\Users\jibril\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [] SHD -- C:\Users\jibril\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr O43 - CFD: 26/10/2016 - [0] SHD -- C:\Users\jibril\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 26/10/2016 - [0] SHD -- C:\Users\jibril\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 08/04/2017 - [] D -- C:\Users\jibril\AppData\Local\FiveM O43 - CFD: 01/11/2016 - [] D -- C:\Users\jibril\AppData\Local\fontconfig =>.Portable Apps O43 - CFD: 01/11/2016 - [] D -- C:\Users\jibril\AppData\Local\gegl-0.2 =>.Portable Apps O43 - CFD: 03/11/2016 - [] D -- C:\Users\jibril\AppData\Local\GIANTS Editor 64bit 6.0.5 O43 - CFD: 03/11/2016 - [] D -- C:\Users\jibril\AppData\Local\GIANTSPackageRegistry =>.GIANTS Software O43 - CFD: 21/12/2016 - [] D -- C:\Users\jibril\AppData\Local\Google =>.Google O43 - CFD: 01/11/2016 - [] D -- C:\Users\jibril\AppData\Local\gtk-2.0 =>.GTK Project O43 - CFD: 23/10/2016 - [0] SHD -- C:\Users\jibril\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 10/06/2017 - [] D -- C:\Users\jibril\AppData\Local\IONBranch O43 - CFD: 21/05/2017 - [] D -- C:\Users\jibril\AppData\Local\Lawbreakers O43 - CFD: 03/03/2017 - [] D -- C:\Users\jibril\AppData\Local\Mega Limited =>.MEGA Limited O43 - CFD: 06/05/2017 - [] D -- C:\Users\jibril\AppData\Local\MEGAsync =>.MegaSystems O43 - CFD: 10/11/2016 - [] D -- C:\Users\jibril\AppData\Local\MetroSimulator =>.MetroSimulator O43 - CFD: 06/04/2017 - [] D -- C:\Users\jibril\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 26/11/2016 - [] D -- C:\Users\jibril\AppData\Local\Mirillis =>.Mirillis O43 - CFD: 16/04/2017 - [] D -- C:\Users\jibril\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 21/05/2017 - [] D -- C:\Users\jibril\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 16/06/2017 - [] D -- C:\Users\jibril\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 06/04/2017 - [] D -- C:\Users\jibril\AppData\Local\PAYDAY 2 O43 - CFD: 23/10/2016 - [] D -- C:\Users\jibril\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 29/10/2016 - [] D -- C:\Users\jibril\AppData\Local\Rockstar Games =>.Rockstar Games O43 - CFD: 15/04/2017 - [] D -- C:\Users\jibril\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 14/12/2016 - [] D -- C:\Users\jibril\AppData\Local\Steam =>.Steam Games O43 - CFD: 22/01/2017 - [] D -- C:\Users\jibril\AppData\Local\TeamSpeak 3 =>.TeamSpeak O43 - CFD: 22/01/2017 - [] D -- C:\Users\jibril\AppData\Local\TeamSpeak 3 Client =>.TeamSpeak O43 - CFD: 14/07/2017 - [] D -- C:\Users\jibril\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [0] SHD -- C:\Users\jibril\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 05/04/2017 - [] D -- C:\Users\jibril\AppData\Local\TslGame O43 - CFD: 20/11/2016 - [] D -- C:\Users\jibril\AppData\Local\Ubisoft =>.Ubisoft O43 - CFD: 14/07/2017 - [] D -- C:\Users\jibril\AppData\Local\Ubisoft Game Launcher =>.Ubisoft O43 - CFD: 10/06/2017 - [] D -- C:\Users\jibril\AppData\Local\UnrealEngine =>.Unreal Software O43 - CFD: 09/11/2016 - [] D -- C:\Users\jibril\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 14/07/2017 - [] D -- C:\Users\jibril\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 23/10/2016 - [0] D -- C:\Users\jibril\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/06/2017 - [] RD -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 15/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc =>.Hammer & Chisel, Inc O43 - CFD: 22/08/2013 - [] D -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 03/03/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync =>.MegaSystems O43 - CFD: 01/11/2016 - [] SD -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3 =>.SourceForge O43 - CFD: 14/06/2017 - [] RD -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/05/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TT Express O43 - CFD: 29/04/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft =>.Ubisoft O43 - CFD: 06/02/2017 - [] D -- C:\Users\jibril\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\AMD =>.AMD O43 - CFD: 08/01/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/05/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (5) - 1s O106 - SIOI:  MEGA (Pending) [ MEGA (Pending)] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Users\jibril\AppData\Local\MEGAsync\ShellExtX32.dll O106 - SIOI:  MEGA (Synced) [ MEGA (Synced)] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Users\jibril\AppData\Local\MEGAsync\ShellExtX32.dll O106 - SIOI:  MEGA (Syncing) [ MEGA (Syncing)] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Users\jibril\AppData\Local\MEGAsync\ShellExtX32.dll O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.® O106 - SIOI: avast [00avast] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.® ---\\ Image File Execution Options (16) - 0s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Liste des pilotes du système (63) - 6s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows® O58 - SDL:2017/04/25 03:35:06 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [305544] =>.Advanced Micro Devices, Inc.® O58 - SDL:2012/09/23 01:17:24 A . (.Advanced Micro Devices, Inc. - AMD Audio Bus Lower Filter.) -- C:\Windows\System32\drivers\amdkmafd.sys [21160] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows® O58 - SDL:2017/07/01 13:18:06 A . (.AVAST Software s.r.o. - IDS Application Activity Monitor Driver..) -- C:\Windows\System32\drivers\aswbidsdrivera.sys [319984] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:06 A . (.AVAST Software s.r.o. - Application Activity Monitor Helper Driver.) -- C:\Windows\System32\drivers\aswbidsha.sys [198944] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:06 A . (.AVAST Software s.r.o. - Logging Driver.) -- C:\Windows\System32\drivers\aswbloga.sys [343264] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:06 A . (.AVAST Software s.r.o. - Universal Driver.) -- C:\Windows\System32\drivers\aswbuniva.sys [57704] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:32 A . (.AVAST Software - Avast HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [46984] =>.AVAST Software s.r.o.® (.AVAST Software) O58 - SDL:2017/07/01 13:18:11 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [41800] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:32 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\Windows\System32\drivers\aswMonFlt.sys [146664] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:32 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr2.sys [110352] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:32 A . (.AVAST Software - Avast Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [84392] =>.AVAST Software s.r.o.® (.AVAST Software) O58 - SDL:2017/07/01 13:18:11 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [1015848] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:32 A . (.AVAST Software - Avast self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [585608] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:33 A . (.AVAST Software - Stream Filter.) -- C:\Windows\System32\drivers\aswStm.sys [198768] =>.AVAST Software s.r.o.® O58 - SDL:2017/07/01 13:18:56 A . (.AVAST Software - Avast VM Monitor.) -- C:\Windows\System32\drivers\aswvmm.sys [361336] =>.AVAST Software s.r.o.® (.AVAST Software) O58 - SDL:2016/08/09 09:39:52 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\AtihdWB6.sys [118848] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/04/25 03:35:08 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [36549512] =>.Advanced Micro Devices, Inc.® O58 - SDL:2017/04/25 03:36:10 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [520072] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2015/01/29 15:55:02 A . (.Rivet Networks, LLC. - Killer Bandwidth Control Filter Driver.) -- C:\Windows\System32\drivers\bwcW8x64.sys [100912] =>.Rivet Networks LLC® O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2017/02/16 22:33:57 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd® O58 - SDL:2017/02/16 22:34:10 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd® O58 - SDL:2014/03/27 09:27:58 A . (.Qualcomm Atheros, Inc. - Killer e2200 PCI-E Gigabit Ethernet Control.) -- C:\Windows\System32\drivers\e22w8x64.sys [130224] =>.Qualcomm Atheros, Inc.® O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2017/07/14 04:08:06 A . (.Auteurs - .) -- C:\Windows\System32\drivers\mbae64.sys [77376] =>.Malwarebytes Corporation® O58 - SDL:2017/07/14 04:08:13 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [253856] =>.Malwarebytes Corporation® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2015/12/08 21:53:10 A . (.MediaTek Inc. - MT7612U Phoenix Driver.) -- C:\Windows\System32\drivers\mt7612US.sys [376200] =>.Windows Central Build Account - X® O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows® O58 - SDL:2013/05/19 02:02:52 A . (.Scarlet.Crush Productions - Scp Virtual Bus Driver.) -- C:\Windows\System32\drivers\ScpVBus.sys [39168] =>.Bruce James® O58 - SDL:2016/03/29 19:14:02 A . (.Screaming Bee Inc - Screaming Bee Virtual Microphone.) -- C:\Windows\System32\drivers\ScreamingBAudio64.sys [54000] =>.Screaming Bee Inc® O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2017/05/18 22:17:28 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [131984] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2017/05/18 22:17:30 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [166288] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2016/12/21 13:20:26 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2014/10/31 10:43:58 A . (.VIA Technologies, Inc. - Framework Version of ViaHub3 Dynamic Bus En.) -- C:\Windows\System32\drivers\ViaHub3.sys [227840] =>.VIA Technologies, Inc. O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2013/01/18 03:11:54 A . (.VIA Technologies, Inc. - VIA BulkOnly & UAS driver.) -- C:\Windows\System32\drivers\vusbstor.sys [86064] =>.VIA Technologies Inc.® O58 - SDL:2014/10/31 10:43:54 A . (.VIA Technologies, Inc. - WDF Driver for VIA eXtensible Host Controll.) -- C:\Windows\System32\drivers\xhcdrv.sys [305664] =>.VIA Technologies, Inc. ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (53) - 63s O61 - LFC: 2017/07/11 21:46:18 A . (..) -- C:\Users\jibril\AppData\Local\AMD\DxCache\c435fac0f288c47cc69ee16f0f0f7af723659b8fcc8231c0.bin [65536] =>.Advanced Micro Devices Inc O61 - LFC: 2017/07/08 07:18:57 A . (..) -- C:\Users\jibril\AppData\Local\AMD\DxCache\cfdc69cdbff3107ba785ba925227499ce8fff1d5287a4eb4.bin [65536] =>.Advanced Micro Devices Inc O61 - LFC: 2017/07/07 22:53:59 A . (..) -- C:\Users\jibril\AppData\Local\AMD\DxCache\de015fe6160e591568ee3f93d2eaa841d1a3888e1d49cc0a.bin [65536] =>.Advanced Micro Devices Inc O61 - LFC: 2017/07/13 20:42:37 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\adhesive.dll [253440] O61 - LFC: 2017/07/12 21:02:41 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\asi-five.dll [174592] O61 - LFC: 2017/07/13 20:42:32 A . (.cfx-collective.) -- C:\Users\jibril\Desktop\Five M\FiveM.app\cache\subprocess\FiveM_SteamChild.exe [2181632] O61 - LFC: 2017/07/12 21:03:35 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen\clr2\lib\mono\4.5\CitizenFX.Core.dll [795648] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\CitizenGame.dll [17920] O61 - LFC: 2017/07/13 20:42:37 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-legacy-net-resources.dll [461824] O61 - LFC: 2017/07/13 20:42:37 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-level-loader-five.dll [170496] O61 - LFC: 2017/07/13 20:42:37 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-playernames-five.dll [77312] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-resources-client.dll [692736] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-resources-core.dll [421888] O61 - LFC: 2017/07/13 20:42:37 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-resources-gta.dll [212480] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-resources-metadata-lua.dll [243712] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-scripting-core.dll [247808] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-scripting-lua.dll [342528] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-scripting-mono.dll [125952] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\citizen-scripting-v8.dll [254976] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\conhost-v2.dll [90624] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\CoreRT.dll [752640] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\debug-net.dll [167424] O61 - LFC: 2017/07/12 21:02:55 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\devcon.dll [77824] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\devtools-five.dll [56320] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\extra-natives-five.dll [51200] O61 - LFC: 2017/07/12 21:02:56 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\font-renderer.dll [177152] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\glue.dll [202240] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\gta-core-five.dll [781824] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\gta-game-five.dll [48128] O61 - LFC: 2017/07/13 20:42:38 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\gta-mission-cleanup-five.dll [130048] O61 - LFC: 2017/07/13 20:42:39 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\gta-net-five.dll [312832] O61 - LFC: 2017/07/13 20:42:39 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\gta-streaming-five.dll [527360] O61 - LFC: 2017/07/12 21:03:06 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\handling-loader-five.dll [259584] O61 - LFC: 2017/07/13 20:42:39 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\loading-screens-five.dll [440320] O61 - LFC: 2017/07/12 21:03:07 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\lovely-script.dll [59392] O61 - LFC: 2017/07/12 21:03:09 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\net.dll [461312] O61 - LFC: 2017/07/12 21:03:11 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\nui-core.dll [689664] O61 - LFC: 2017/07/12 21:03:12 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\nui-gsclient.dll [226304] O61 - LFC: 2017/07/12 21:03:13 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\nui-profiles.dll [182272] O61 - LFC: 2017/07/13 20:42:39 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\nui-resources.dll [577024] O61 - LFC: 2017/07/12 21:03:14 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\rage-graphics-five.dll [173568] O61 - LFC: 2017/07/09 17:47:56 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\rage-scripting-five.dll [1428992] O61 - LFC: 2017/07/12 21:03:24 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\ros-patches-five.dll [1491968] O61 - LFC: 2017/07/09 17:47:57 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\scrbind-base.dll [139776] O61 - LFC: 2017/07/09 17:47:57 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\scrbind-formats.dll [21504] O61 - LFC: 2017/07/12 21:03:24 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\scripthookv.dll [190464] O61 - LFC: 2017/07/12 21:03:25 A . (..) -- C:\Users\jibril\Desktop\Five M\FiveM.app\scripting-gta.dll [233472] O61 - LFC: 2017/07/13 20:42:32 A . (.cfx-collective.) -- C:\Users\jibril\Desktop\Five M\FiveM.exe [2181632] O61 - LFC: 2017/07/09 17:53:33 A . (..) -- C:\Users\jibril\Documents\Rockstar Games\GTA V\Profiles\43D7E8FC\fivem_set.bin [968] O61 - LFC: 2017/07/12 23:24:54 A . (.denuvo-crack.) -- C:\Users\jibril\Downloads\Fernbus Simulator (1).exe [9492581] O61 - LFC: 2017/07/12 23:25:52 A . (.denuvo-crack.) -- C:\Users\jibril\Downloads\Fernbus Simulator (2).exe [9492581] O61 - LFC: 2017/07/12 23:15:36 A . (.denuvo-crack.) -- C:\Users\jibril\Downloads\Fernbus Simulator.exe [9492581] O61 - LFC: 2017/07/11 21:46:03 A . (..) -- C:\Users\jibril\Downloads\The.Forest.Steamworks.Fix.V6-REVOLT.rar.exe [501195] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe ---\\ Menu de démarrage Internet (20) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.) O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe (.not file.) ---\\ Recherche d'infection sur les navigateurs (6) - 4s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] {7E2AF9CA-F658-4079-A3C9-32C5292D7807} - (Yahoo Search) - http://fr.search.yahoo.com/ =>.Yahoo! Inc. O69 - SBI: SearchScopes [HKCU] {96BBC430-9900-4299-9F5D-7951AB36EFDF} - (Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKUS\.DEFAULT] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKUS\S-1-5-18] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (34) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\system32\srvsvc.dll [329216] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1362432] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [1080320] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [927744] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31744] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\system32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\system32\schedsvc.dll [1265152] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\system32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\system32\mmcss.dll [71168] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\system32\profsvc.dll [228864] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [342016] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\system32\kmsvc.dll [101376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\system32\wlidsvc.dll [1639424] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\system32\themeservice.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [166400] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542720] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\system32\wuaueng.dll [3714560] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (34) - 9s O87 - FAEL: "TCP Query User{6A3E9FDF-1DD6-484C-AED2-42D05BA3B200}C:\program files (x86)\train simulator 2016\train.simulator.2016\railworks\railworks.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\train simulator 2016\train.simulator.2016\railworks\railworks.exe (.not file.) O87 - FAEL: "UDP Query User{29308B8E-2DE3-4210-B933-B1AFF1D1E156}C:\program files (x86)\train simulator 2016\train.simulator.2016\railworks\railworks.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\train simulator 2016\train.simulator.2016\railworks\railworks.exe (.not file.) O87 - FAEL: "TCP Query User{76EFE9BC-AE0F-4BDF-8A61-98348C916DF8}C:\users\jibril\desktop\train.simulator.2016\railworks\railworks.exe" [In-None-P6-TRUE] .(...) -- C:\users\jibril\desktop\train.simulator.2016\railworks\railworks.exe (.not file.) O87 - FAEL: "UDP Query User{04DD4D18-4AFB-495D-8A25-A62F487FEAE6}C:\users\jibril\desktop\train.simulator.2016\railworks\railworks.exe" [In-None-P17-TRUE] .(...) -- C:\users\jibril\desktop\train.simulator.2016\railworks\railworks.exe (.not file.) O87 - FAEL: "{E3CD4137-C543-4B77-9883-C4387B5530AC}" [In-None-P6-TRUE] .(...) -- C:\Users\jibril\Downloads\uTorrent.exe (.not file.) O87 - FAEL: "{614B34FB-5A5F-4B8F-800A-36C224023230}" [In-None-P17-TRUE] .(...) -- C:\Users\jibril\Downloads\uTorrent.exe (.not file.) O87 - FAEL: "{FB8A4DFE-8AA6-4D9D-BE13-835CB815FD67}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe (.not file.) O87 - FAEL: "{7D1A5F86-3AC6-48B8-B9B4-DD8BCF94B1FC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe (.not file.) O87 - FAEL: "TCP Query User{62D308D3-23AC-414C-ACC7-8B08F9209A97}C:\program files\farming simulator 15\x86\farmingsimulator2015game.exe" [In-None-P6-TRUE] .(...) -- C:\program files\farming simulator 15\x86\farmingsimulator2015game.exe (.not file.) O87 - FAEL: "UDP Query User{8C9F54EF-9768-40B5-B20C-F275872FAEE9}C:\program files\farming simulator 15\x86\farmingsimulator2015game.exe" [In-None-P17-TRUE] .(...) -- C:\program files\farming simulator 15\x86\farmingsimulator2015game.exe (.not file.) O87 - FAEL: "TCP Query User{D81FEBFA-FE53-4172-8DF2-D5240F8A6276}C:\program files (x86)\train simulator 2017\railworks.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\train simulator 2017\railworks.exe (.not file.) O87 - FAEL: "UDP Query User{F2A2E62D-CF09-4585-A999-C8E32DCDA8C7}C:\program files (x86)\train simulator 2017\railworks.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\train simulator 2017\railworks.exe (.not file.) O87 - FAEL: "TCP Query User{91501B9C-8FBC-451F-9C20-A57CA0B40AED}C:\program files (x86)\repack by funtik\city car driving\bin\win32\starter.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\repack by funtik\city car driving\bin\win32\starter.exe O87 - FAEL: "UDP Query User{8645566E-0F87-4E0B-897C-60DD8840113A}C:\program files (x86)\repack by funtik\city car driving\bin\win32\starter.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\repack by funtik\city car driving\bin\win32\starter.exe O87 - FAEL: "TCP Query User{70059708-54F9-40FF-A37D-71B74F9B7C83}C:\train simulator 2016\train.simulator.2016\train.simulator.2016\railworks\railworks.exe" [In-None-P6-TRUE] .(...) -- C:\train simulator 2016\train.simulator.2016\train.simulator.2016\railworks\railworks.exe (.not file.) O87 - FAEL: "UDP Query User{861A2CF3-BCD3-43F2-92E0-072D1EDAB694}C:\train simulator 2016\train.simulator.2016\train.simulator.2016\railworks\railworks.exe" [In-None-P17-TRUE] .(...) -- C:\train simulator 2016\train.simulator.2016\train.simulator.2016\railworks\railworks.exe (.not file.) O87 - FAEL: "TCP Query User{BE53FB2D-A9A1-45ED-B68C-81855C906347}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" [In-None-P6-TRUE] .(.Bluehole GinnoGames, Inc. - TslGame.) -- C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe {1DB53A04F3FE510FE386FACDFCAB1C76} =>.Steam SteamApps Games O87 - FAEL: "UDP Query User{5A807FB5-6902-4B6F-8F47-E8FB5B9BC0BD}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" [In-None-P17-TRUE] .(.Bluehole GinnoGames, Inc. - TslGame.) -- C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe {1DB53A04F3FE510FE386FACDFCAB1C76} =>.Steam SteamApps Games O87 - FAEL: "TCP Query User{BFDEA76A-7042-4DCC-9884-6355AA484231}C:\users\jibril\appdata\local\fivem\fivem.exe" [In-None-P6-TRUE] .(.cfx-collective - FiveM.) -- C:\users\jibril\appdata\local\fivem\fivem.exe O87 - FAEL: "UDP Query User{55C7B642-48B3-4873-AF52-FBBA79D25AF8}C:\users\jibril\appdata\local\fivem\fivem.exe" [In-None-P17-TRUE] .(.cfx-collective - FiveM.) -- C:\users\jibril\appdata\local\fivem\fivem.exe O87 - FAEL: "{5DF92D08-F0EA-477C-B343-CC902E8CAB73}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe =>.Steam Games O87 - FAEL: "{5A95E0DE-BAA5-482C-A7EE-9439CC4295EB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe =>.Steam Games O87 - FAEL: "TCP Query User{2B929551-9A4D-4DC2-ACD1-641D41924AB7}C:\users\jibril\documents\five m\fivem.exe" [In-None-P6-TRUE] .(...) -- C:\users\jibril\documents\five m\fivem.exe (.not file.) O87 - FAEL: "UDP Query User{AD62F8D6-B58F-4AC7-9802-F0B5A31F432A}C:\users\jibril\documents\five m\fivem.exe" [In-None-P17-TRUE] .(...) -- C:\users\jibril\documents\five m\fivem.exe (.not file.) O87 - FAEL: "{28769302-744E-4979-A483-0459B4B78A1B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Double Action\bin\hammer.exe =>.Steam Games O87 - FAEL: "{209A9B50-CE06-4CDA-A203-1DB6E4338B8F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Double Action\bin\hammer.exe =>.Steam Games O87 - FAEL: "TCP Query User{C30AFB76-27D6-4A17-B006-D480F706FBD6}C:\users\jibril\desktop\five m\fivem.exe" [In-None-P6-TRUE] .(.cfx-collective - FiveM.) -- C:\users\jibril\desktop\five m\fivem.exe O87 - FAEL: "UDP Query User{9AA894F4-25F4-4D77-BC51-6B223CE2BEE0}C:\users\jibril\desktop\five m\fivem.exe" [In-None-P17-TRUE] .(.cfx-collective - FiveM.) -- C:\users\jibril\desktop\five m\fivem.exe O87 - FAEL: "TCP Query User{CD196B45-BF42-49E7-9299-8CF312E07432}C:\users\jibril\desktop\five m\fivem.exe" [In-None-P6-TRUE] .(.cfx-collective - FiveM.) -- C:\users\jibril\desktop\five m\fivem.exe O87 - FAEL: "UDP Query User{218AB9AF-6FE4-4B3E-B85A-AE92102A6409}C:\users\jibril\desktop\five m\fivem.exe" [In-None-P17-TRUE] .(.cfx-collective - FiveM.) -- C:\users\jibril\desktop\five m\fivem.exe O87 - FAEL: "TCP Query User{D90940F0-6F4B-4652-A22A-E53CC9A2D0C8}C:\program files (x86)\steam\steamapps\common\islands of nyne battle royale\ionbranch\binaries\win64\ionbranch-win64-shipping.exe" [In-None-P6-TRUE] .(.Define Human Studios - Islands of Nyne.) -- C:\program files (x86)\steam\steamapps\common\islands of nyne battle royale\ionbranch\binaries\win64\ionbranch-win64-shipping.exe =>.Steam SteamApps Games O87 - FAEL: "UDP Query User{132ED38B-DA41-45D9-9053-7DB2DDD11871}C:\program files (x86)\steam\steamapps\common\islands of nyne battle royale\ionbranch\binaries\win64\ionbranch-win64-shipping.exe" [In-None-P17-TRUE] .(.Define Human Studios - Islands of Nyne.) -- C:\program files (x86)\steam\steamapps\common\islands of nyne battle royale\ionbranch\binaries\win64\ionbranch-win64-shipping.exe =>.Steam SteamApps Games O87 - FAEL: "{430FC88C-854B-4DCC-8F4B-C46E9374EC9E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe =>.Steam Games O87 - FAEL: "{89790482-C480-4453-8EF3-D3F71396AF9A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe =>.Steam Games ---\\ Scan Additionnel (6) - 7s C:\Users\jibril\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.Superfluous.CloudfrontNet C:\Users\jibril\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.Superfluous.CloudfrontNet C:\Users\jibril\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_fr.igraal.com_0.localstorage =>Toolbar.Graal C:\Users\jibril\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_fr.igraal.com_0.localstorage-journal =>Toolbar.Graal C:\Users\jibril\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage =>PUP.Optional.Generic C:\Users\jibril\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal =>PUP.Optional.Generic ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/03/12/adware-installcore-2/ =>Adware.InstallCore https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.Superfluous.CloudfrontNet https://www.nicolascoolman.com/fr/toolbar-igraal/ =>Toolbar.Graal https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic ~ Unselected Options: O82, ~ End of the scan, 44463 items in 03mn54s (1208)(0)