~ ZHPDiag v2017.10.9.179 Par Nicolas Coolman (2017/10/09) ~ Démarré par thoma (Administrator) (2017/10/15 21:20:06) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Illegal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\thoma\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\thoma\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 15063) =>.Microsoft Corporation ---\\ Navigateurs Internet (3) - 0s ~ GCIE: Google Chrome v61.0.3163.100 ~ MSIE: Microsoft Edge v40 ~ MSIE: Internet Explorer v11.674.15063.0 ---\\ Informations sur les produits Windows (8) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 2s Malwarebytes version 3.2.2.2029 v3.2.2.2029 (Protection) Windows Defender (Activate) (Protection) ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 94 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8282.212 MB (61% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 248 GB (65%) free of 380 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: DESKTOP-9MJC400 ~ User Name: thoma ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 248 GB free of 380 GB (System) ~ Drive D: has 568 GB free of 572 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.01078D46C77CE0D7DC584A29062A799D] - 30/09/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [4848952] {33000001733031072665B8B9B3000000000173} =>.Microsoft Corporation [MD5.ECB702B8C5650381C0784F1EEABB97BC] - 18/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [68608] =>.Microsoft Corporation [MD5.0242626678C83AE788C655C1990A3CC3] - 28/07/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [318232] =>.Microsoft Windows Publisher® [MD5.57DA6FA5B8E23F33EA6D19F37CD73DD8] - 29/09/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3307008] =>.Microsoft Corporation [MD5.9CDA170849A4F66F4D68B3DBB3AC8394] - 05/09/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [706560] =>.Microsoft Corporation [MD5.50CDF68A8EA8A2A9165CD573FA6C42D8] - 18/03/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [414208] =>.Microsoft Corporation [MD5.6AFA66A457759C1FEC29A52612A67043] - 30/09/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [661224] {33000001733031072665B8B9B3000000000173} =>.Microsoft Corporation [MD5.1F4909406532C2FFCBD3683A65F7198F] - 30/09/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [508344] {33000001733031072665B8B9B3000000000173} =>.Microsoft Corporation [MD5.70E14A01193D817004C0F88E767BC59B] - 19/03/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.5A6D591D56791BA63CE73FCAD60D89A1] - 05/09/2017 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [610720] =>.Microsoft Windows® [MD5.01733BEEE02E51F712330D5909BD701C] - 18/03/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [29088] =>.Microsoft Windows® [MD5.B6E5AD7C83A5254DEE9D86023C0E5A81] - 18/03/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation [MD5.ABE77AD954BC3D72F559CF0C381E50BC] - 18/03/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [160256] =>.Microsoft Corporation [MD5.185A4519B7764F4DEF714D890A7A9FD2] - 18/03/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [150528] =>.Microsoft Corporation [MD5.02B9639D9997E95CDF2F4C4F3BDCC73D] - 20/06/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [86528] =>.Microsoft Corporation [MD5.C6C8315E3262FAE460529C6DA2951682] - 18/03/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [115200] =>.Microsoft Corporation [MD5.DCC05E5EAA580C97F13B434FAFACED85] - 18/03/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [214528] =>.Microsoft Corporation [MD5.F2AD1B72C5A6475FB5FF332E1980DF88] - 18/03/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [467352] =>.Microsoft Windows® [MD5.BAD3C424788BC071C3EC82CFCDA954D2] - 05/09/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [305152] =>.Microsoft Corporation [MD5.CDB804F3EA333459FE3C21D61767CBB1] - 30/09/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2327448] {33000001733031072665B8B9B3000000000173} =>.Microsoft Corporation [MD5.2CC6C325B271C7CA60F374F8F868CB45] - 18/03/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97792] =>.Microsoft Corporation [MD5.5279EC98F6218D29EADDFECCC0D80E9A] - 18/03/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [107008] =>.Microsoft Corporation [MD5.53A01D3FDB701AC5D9DDE4140227E3D9] - 20/03/2017 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [183296] =>.Microsoft Corporation [MD5.D74756DD1518D28A09CDA99696273FA4] - 01/08/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [119712] =>.Microsoft Windows® [MD5.E3429DBBEA3965BB96E24B16EF4A2551] - 18/03/2017 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\Windows\System32\drivers\volsnap.sys [397216] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (22) - 1s O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) - C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\AsusWSWinService.exe =>.ASUS Cloud Corporation O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUSTek Computer Inc. - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: BTDevManager (BTDevManager) . (.Realtek All Rights Reserved - Realtek Bluetooth BTDevManager Service Appl.) - C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter ONLY\BTDevMgr.exe =>.Realtek Semiconductor Corp® O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® O23 - Service: @oem69.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\syswow64\esif_uf.exe =>.Intel(R) Software® O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe =>.Intel(R) pGFX® O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (.Intel Corporation - .) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: (MEmusvc) . (.Microvirt Software Technology Co. Ltd. - MEmu Service.) - D:\Program Files\Microvirt\MEmu\MemuService.exe =>.Microvirt Software Technology Co., Ltd.® O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation® O23 - Service: @oem134.inf,%BtDevMan.SvcDesc%;Realtek Bluetooth Device Man (RtkBtManServ) . (.Realtek Semiconductor Corp. - Realtek Bluetooth Device Manager Service Ap.) - C:\Windows\RtkBtManServ.exe =>.Realtek Semiconductor Corp.® O23 - Service: Razer Wizard Service (RzWizardService) . (.Razer Inc. - RzWizardService.) - C:\Program Files (x86)\Razer\RzWizard\RzWizardService.exe =>.Razer USA Ltd.® O23 - Service: Avast SecureLine (SecureLine) . (...) - C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe =>.AVAST Software a.s.® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (34) - 38s SR - Auto [03/04/2017] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [22/07/2015] [ 123704] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.® SR - Auto [24/12/2015] [ 75264] Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation.) - C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\AsusWSWinService.exe =>.ASUS Cloud Corporation SR - Auto [01/04/2015] [ 107320] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.® SS - Demand [11/10/2017] [ 1548808] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.® SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [20/07/2015] [ 121560] BTDevManager (BTDevManager) . (.Realtek All Rights Reserved.) - C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter ONLY\BTDevMgr.exe =>.Realtek Semiconductor Corp® SR - Demand [30/11/2016] [ 301536] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SS - Demand [30/11/2016] [ 480224] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\IntelCpHDCPSvc.exe =>.Intel(R) pGFX® SS - Auto [29/05/2017] [ 143144] Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Demand [29/05/2017] [ 143144] Dropbox Update Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SR - Auto [09/11/2015] [ 1392792] @oem69.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\Windows\syswow64\esif_uf.exe =>.Intel(R) Software® SR - Auto [22/12/2015] [ 349728] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® SS - Demand [22/12/2015] [ 209952] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc® SS - Auto [31/05/2017] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [31/05/2017] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [30/11/2016] [ 341984] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe =>.Intel(R) pGFX® SS - Demand [19/02/2016] [ 974632] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel(R) Trusted Connect Service® SR - Demand [05/02/2016] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe =>.Intel Corporation SS - Demand [14/07/2017] [ 689976] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Auto [05/02/2016] [ 8704] Intel(R) Security Assist Helper (isaHelperSvc) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation SR - Auto [25/02/2016] [ 209184] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SR - Auto [25/02/2016] [ 415520] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SR - Auto [07/08/2017] [ 6058960] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [26/05/2017] [ 269480] (MEmusvc) . (.Microvirt Software Technology Co. Ltd..) - D:\Program Files\Microvirt\MEmu\MemuService.exe =>.Microvirt Software Technology Co., Ltd.® SR - Auto [19/09/2017] [ 512960] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation® SS - Demand [19/09/2017] [ 512960] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation® SR - Auto [22/08/2017] [ 462784] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® SR - Auto [19/09/2017] [ 449984] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation® SR - Auto [12/07/2017] [ 293344] @oem134.inf,%BtDevMan.SvcDesc%;Realtek Bluetooth Device Man (RtkBtManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Realtek Semiconductor Corp.® SR - Auto [23/03/2016] [ 376272] Razer Wizard Service (RzWizardService) . (.Razer Inc..) - C:\Program Files (x86)\Razer\RzWizard\RzWizardService.exe =>.Razer USA Ltd.® SR - Auto [29/05/2017] [ 592392] Avast SecureLine (SecureLine) . (...) - C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe =>.AVAST Software a.s.® SR - Demand [14/10/2017] [ 1641248] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SS - Demand [05/08/2017] [ 175720] WPS Office Cloud Service (wpscloudsvr) . (.Zhuhai Kingsoft Office Software Co.,Ltd.) - C:\Program Files (x86)\Kingsoft\WPS Office\wpscloudsvr.exe =>.Zhuhai Kingsoft Office Software Co.,Ltd® ---\\ Tâches planifiées en automatique (Registre) (104) - 6s O38 - TASK: {0499606A-9BA3-40EE-9F28-33CAF19F93E2} [64Bits][\Microsoft\Office\OfficeBackgroundTaskHandlerLogon] - (.Microsoft Corporation - This task initiates Office Background Task .) -- C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [26312] =>.Microsoft Corporation® O38 - TASK: {0660F4B1-D716-49BF-997D-A02A772583D6} [64Bits][\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\system32\defrag.exe [185856] =>.Microsoft Corp. O38 - TASK: {0ED48BF0-C8D2-4312-A4E6-18D3BDADCD0C} [64Bits][\Microsoft\Windows\Feedback\Siuf\DmClient] - (.Microsoft Corporation - Microsoft Feedback SIUF Deployment Manager.) -- C:\Windows\system32\dmclient.exe [89600] =>.Microsoft Corporation O38 - TASK: {1233CB74-6450-4642-88B3-8AFB77F51702} [64Bits][\Microsoft\Office\Office Automatic Updates] - (.Microsoft Corporation - Microsoft Office Click-to-Run Client.) -- C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [17051336] =>.Microsoft Corporation® O38 - TASK: {146BB143-D9C9-4711-B52A-A468643535D6} [64Bits][\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup] - (.Microsoft Corporation - DLL du client de déploiement d’AppX.) -- C:\Windows\System32\AppxDeploymentClient.dll [654976] {33000001733031072665B8B9B3000000000173} =>.Microsoft Corporation O38 - TASK: {14E54363-0776-4160-9330-77A5AD2B7633} [64Bits][\Microsoft\Windows\WindowsUpdate\Scheduled Start] - (.Microsoft Corporation. - Cette tâche permet de démarrer le service W.) -- wuauserv [0] =>.Microsoft Corporation. O38 - TASK: {160224B3-B461-4859-9FB7-04536370F4D5} [64Bits][\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [438032] =>.Microsoft Corporation® O38 - TASK: {1900A953-F7A8-4BD6-9114-7942BA37EF10} [64Bits][\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [570240] =>.Apple Inc.® O38 - TASK: {1950926D-A50D-4C8F-8F08-478439E462C6} [64Bits][\Microsoft\Windows\Windows Defender\Windows Defender Cleanup] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [438032] =>.Microsoft Corporation® O38 - TASK: {1E0F4BCA-4AE1-43F8-84A2-53BB882DF8B6} [64Bits][\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload] - (.Microsoft Corporation - Microsoft Feedback SIUF Deployment Manager.) -- C:\Windows\system32\dmclient.exe [89600] =>.Microsoft Corporation O38 - TASK: {1E8B8CD5-DAC0-4C0C-9AE3-FC52E892D1DF} [64Bits][\Microsoft\Windows\DiskCleanup\SilentCleanup] - (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\Windows\system32\cleanmgr.exe [217088] =>.Microsoft Corporation O38 - TASK: {1F3ACE3B-F876-4167-A970-719CCC77855C} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Refresh Settings] - (.Microsoft Corporation - UsoClient.) -- C:\Windows\System32\usoclient.exe [34304] =>.Microsoft Corporation O38 - TASK: {2592E7E1-41D2-4BE3-9188-DF6277659A8D} [64Bits][\Microsoft\Office\Office ClickToRun Service Monitor] - (.Microsoft Corporation - Microsoft Office Click-to-Run Client.) -- C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [17051336] =>.Microsoft Corporation® O38 - TASK: {26C33BB1-B703-4ED0-A9B8-94072F20800C} [64Bits][\Microsoft\Windows\NlaSvc\WiFiTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\Windows\System32\WiFiTask.exe [459168] =>.Microsoft Windows® O38 - TASK: {2F0E1A0E-0577-4ADA-A940-FD75AE7BBC3E} [64Bits][\ASUS Splendid ACMON] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784] =>.ASUS O38 - TASK: {32533027-443C-4C5B-93B1-AE9FD7CF7E0E} [64Bits][\Microsoft Office 15 Sync Maintenance for DESKTOP-9MJC400-thoma DESKTOP-9MJC400] - (.Microsoft Corporation - Une tâche légère préserve l'état du cache d.) -- C:\Program Files\Microsoft Office\Office15\MsoSync.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {33187398-4E9B-4AA7-8DD8-2FD73F3381D2} [64Bits][\Microsoft\Windows\Defrag\ScheduledDefrag] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\system32\defrag.exe [185856] =>.Microsoft Corp. O38 - TASK: {352A7729-BD58-4FA5-A6DB-9D7C38A32ED5} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Schedule Scan] - (.Microsoft Corporation - UsoClient.) -- C:\Windows\System32\usoclient.exe [34304] =>.Microsoft Corporation O38 - TASK: {36700CAB-3B5C-47B3-9771-2DFDE2C45A2C} [64Bits][\ATK Package 36D18D69AFC3] - (.ASUSTek Computer Inc. - Simulate Store App Execution Application.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122168] =>.ASUSTeK Computer Inc.® O38 - TASK: {3815A25B-C971-4445-9817-34CAACAFCCFD} [64Bits][\WpsExternal_thoma_20170805132154] - (.Zhuhai Kingsoft Office Software Co.,Ltd - WPS Office.) -- C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe [1261672] =>.Zhuhai Kingsoft Office Software Co.,Ltd® O38 - TASK: {39CD21EB-35CB-4512-AA79-269F27FC6E2F} [64Bits][\DropboxUpdateTaskMachineUA] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc® O38 - TASK: {3A94AF7A-549F-4774-9785-15EECCF70354} [64Bits][\Microsoft\Windows\Management\Provisioning\Logon] - (.Microsoft Corporation - Provisioning package runtime processing too.) -- C:\Windows\system32\ProvTool.exe [68608] =>.Microsoft Corporation O38 - TASK: {3B8BADA0-78F2-4368-8028-A1C68AF731DC} [64Bits][\ASUS\ASUS GIFTBOX-Reminder] - (.ASUSTek Computer Inc - ASUS GIFTBOX.) -- C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe [1049608] =>.ASUSTek Computer Inc.® O38 - TASK: {3E642516-AC36-450B-ACEB-113BB54A9144} [64Bits][\Microsoft\Windows\Windows Error Reporting\QueueReporting] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\system32\wermgr.exe [182688] =>.Microsoft Windows® O38 - TASK: {3E6CC5C9-F5E9-44AD-883F-0F397BF63E17} [64Bits][\Microsoft\XblGameSave\XblGameSaveTask] - (.Microsoft Corporation - XblGameSave Standby Task.) -- C:\Windows\System32\XblGameSaveTask.exe [31744] =>.Microsoft Corporation O38 - TASK: {40C16C89-5B22-4B8C-9C81-473B802B8152} [64Bits][\DropboxUpdateTaskMachineCore] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc® O38 - TASK: {411BED27-7F4C-462F-B1A9-1899C54B1E9B} [64Bits][\Microsoft\Windows\WindowsUpdate\sih] - (.Microsoft Corporation - Client SIH.) -- C:\Windows\System32\sihclient.exe [229888] =>.Microsoft Corporation O38 - TASK: {4204709C-3B36-4595-B47A-93A28CB5CA67} [64Bits][\Microsoft\Windows\WindowsUpdate\sihboot] - (.Microsoft Corporation - Client SIH.) -- C:\Windows\System32\sihclient.exe [229888] =>.Microsoft Corporation O38 - TASK: {46916BEE-3666-4E86-B658-60D2F0A72015} [64Bits][\Microsoft\Windows\Shell\FamilySafetyMonitor] - (.Microsoft Corporation - Moniteur du contrôle parental.) -- C:\Windows\System32\wpcmon.exe [1763376] =>.Microsoft Windows® O38 - TASK: {4B3AE906-3777-4636-96B1-B906E350A156} [64Bits][\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA GeForce Experience.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1540544] =>.NVIDIA Corporation® O38 - TASK: {4FDEB1CD-396A-4C54-B4D5-4098BD21AA6C} [64Bits][\AutoKMS] - (.CODYQX4 - AutoKMS.) -- C:\Windows\AutoKMS\AutoKMS.exe [3738624] =>HackTool.AutoKMS O38 - TASK: {50667E94-9E81-4B11-82CC-172EB6C361BD} [64Bits][\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser] - (.Microsoft Corporation - Tâche de l’analyseur d’expérience de compte.) -- C:\Windows\System32\MbaeParserTask.exe [112640] =>.Microsoft Corporation O38 - TASK: {514CCFC7-914A-4883-B6E6-B2584FDFF697} [64Bits][\Microsoft\Windows\Application Experience\ProgramDataUpdater] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\Windows\system32\compattelrunner.exe [96672] =>.Microsoft Windows® O38 - TASK: {522FEAE7-5F46-4260-8CFD-CCC939F741F5} [64Bits][\ASUS Smart Gesture Launcher] - (.AsusTek - ASUS Smart Gesture Launcher.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18400] =>.ASUSTeK Computer Inc.® O38 - TASK: {523F5687-D9CD-4734-8E2F-81D937655347} [64Bits][\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\windows\system32\MusNotification.exe [306176] =>.Microsoft Corporation O38 - TASK: {5489AFF2-9CA9-452C-8565-6A86BD18C8C9} [64Bits][\Microsoft\Windows\Subscription\LicenseAcquisition] - (.Microsoft Corporation - Acquire License From Store.) -- C:\Windows\System32\ClipRenew.exe [137112] =>.Microsoft Windows® O38 - TASK: {5499FBAB-5FAB-45C6-AF5B-EFAF4EBCF68C} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Policy Install] - (.Microsoft Corporation - UsoClient.) -- C:\Windows\System32\usoclient.exe [34304] =>.Microsoft Corporation O38 - TASK: {56F5D17B-9EF7-4F8D-B3A8-994C4534248D} [64Bits][\DropboxOEM] - (.Copyright © 2015 - DropboxOEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [585000] =>.Dropbox, Inc® O38 - TASK: {57CB914F-F7DC-472F-A73E-BDE873C10578} [64Bits][\microsoft\windows\applicationdata\appuriverifierinstall] - (.Microsoft Corporation - Vérificateur de l’inscription des gestionna.) -- C:\Windows\system32\AppHostRegistrationVerifier.exe [105472] =>.Microsoft Corporation O38 - TASK: {5B8E068F-FF77-423D-9844-E22DA0C3580F} [64Bits][\OneDrive Standalone Update Task-S-1-5-21-2768081206-3780559856-3583903838-1001] - (.Microsoft Corporation - Standalone Updater.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [2811088] =>.Microsoft Corporation® O38 - TASK: {611F70AF-3341-4069-80BA-BF58EEF7939B} [64Bits][\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers] - (.Microsoft Corporation - Module d’installation de pilotes.) -- C:\Windows\System32\drvinst.exe [158720] =>.Microsoft Corporation O38 - TASK: {61B4E4CB-D897-462F-8E3B-12C8ACBF948D} [64Bits][\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [651200] =>.NVIDIA Corporation® O38 - TASK: {6303E4D8-0EA2-4029-A6F0-9F66BAD49BAE} [64Bits][\Update Checker] - (.ASUSTeK - .) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920] =>.ASUSTeK O38 - TASK: {6430CC72-EBF8-4F8C-AF87-2CCE1878ED23} [64Bits][\ASUS\ASUS Product Register Service] - (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1616160] =>.ASUSTeK Computer Inc.® O38 - TASK: {649254D7-57B8-400A-B58C-703BD47EC9B7} [64Bits][\Intel PTT EK Recertification] - (.Intel(R) Corporation - Intel(R)PTT EK Recertification Service.) -- C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352] =>.Intel(R) Trusted Connect Service® O38 - TASK: {66454357-46BE-4E04-B93A-E4A65E097733} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc® O38 - TASK: {66BD0DC3-6BEE-41B3-84C4-2F3F45E80F31} [64Bits][\Microsoft\Windows\AppID\PolicyConverter] - (.Microsoft Corporation - AppID Policy Converter Task.) -- C:\Windows\system32\appidpolicyconverter.exe [159744] =>.Microsoft Corporation O38 - TASK: {6A294B39-082C-443E-A962-F27ABF1B12BB} [64Bits][\Microsoft\Windows\SpacePort\SpaceManagerTask] - (.Microsoft Corporation - Storage Spaces Manager.) -- C:\Windows\system32\spaceman.exe [34816] =>.Microsoft Corporation O38 - TASK: {6C7E462D-5ADA-412E-B391-D60DA0F23B65} [64Bits][\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\windows\system32\MusNotification.exe [306176] =>.Microsoft Corporation O38 - TASK: {6CDB2076-6768-4AE1-BAAA-81028601A169} [64Bits][\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [722880] =>.NVIDIA Corporation® O38 - TASK: {6D0F48B8-881D-4246-A6BD-86654BCCC91A} [64Bits][\Microsoft\Windows\Time Zone\SynchronizeTimeZone] - (.Microsoft Corporation - TimeZone Sync Task.) -- C:\Windows\system32\tzsync.exe [60928] =>.Microsoft Corporation O38 - TASK: {704AFAC8-F5AC-45CC-BB81-24DA22C61564} [64Bits][\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] - (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [77824] =>.Microsoft Corporation O38 - TASK: {72B27F92-BA78-4CF6-B977-B77CE664B263} [64Bits][\Microsoft\Windows\Autochk\Proxy] - (.Microsoft Corporation - DLL de proxy Autochk.) -- C:\Windows\System32\acproxy.dll [13312] =>.Microsoft Corporation O38 - TASK: {77EE2C45-BA18-40A0-8983-BA3081340989} [64Bits][\Microsoft\Windows\Windows Defender\Windows Defender Verification] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [438032] =>.Microsoft Corporation® O38 - TASK: {7D43C603-03B0-40CC-BFDC-95E1F780D6A5} [64Bits][\Microsoft\Windows\Clip\License Validation] - (.Microsoft Corporation - Client License Platform migration tool.) -- C:\Windows\System32\ClipUp.exe [1347640] =>.Microsoft Windows Publisher® O38 - TASK: {7D5A186C-D99D-46F8-9369-A06C84F04C36} [64Bits][\Microsoft\Windows\Device Information\Device] - (.Microsoft Corporation - Device Census.) -- C:\Windows\system32\devicecensus.exe [34720] =>.Microsoft Windows® O38 - TASK: {7E63C122-B72D-46D6-A851-4D9AA4E82EF8} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Combined Scan Download Install] - (.Microsoft Corporation - UsoClient.) -- C:\Windows\System32\usoclient.exe [34304] =>.Microsoft Corporation O38 - TASK: {868B2CA9-0914-4B77-945A-F80C7BA3E0D4} [64Bits][\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [438032] =>.Microsoft Corporation® O38 - TASK: {8A4FFDBD-3739-4D16-AE6D-E0A2511106C3} [64Bits][\Microsoft\Windows\Subscription\EnableLicenseAcquisition] - (.Microsoft Corporation - Acquire License From Store.) -- C:\Windows\System32\ClipRenew.exe [137112] =>.Microsoft Windows® O38 - TASK: {90DF4CA6-A6D1-405D-89EC-FC5C961908EA} [64Bits][\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver] - (.Microsoft Corporation - Outil de résolution des défaillances disque.) -- C:\Windows\system32\DFDWiz.exe [51200] =>.Microsoft Corporation O38 - TASK: {96E80D56-0BFA-44F4-9FAE-FDBD2C24BEF9} [64Bits][\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [512960] =>.NVIDIA Corporation® O38 - TASK: {9CB09D57-A1D5-4825-A9AF-37AE65B20E90} [64Bits][\ASUS USB Charger Plus] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19782224] =>.ASUSTeK Computer Inc.® O38 - TASK: {A08D63EC-B0D2-4E95-BA36-ECADF32F73B8} [64Bits][\ATK Package A22126881260] - (.ASUSTek Computer Inc. - Simulate Store App Execution Application.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122168] =>.ASUSTeK Computer Inc.® O38 - TASK: {A183ADEB-2BD9-4823-89F5-352C463B4608} [64Bits][\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\Windows\system32\compattelrunner.exe [96672] =>.Microsoft Windows® O38 - TASK: {A2AB61D5-D872-47C1-967A-EAD1E3C91A7B} [64Bits][\ASUS\ASUS GIFTBOX] - (.ASUSTek Computer Inc - ASUS GIFTBOX.) -- C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe [1049608] =>.ASUSTek Computer Inc.® O38 - TASK: {A3D07678-3B4C-4A6E-93A8-1B70C7985C10} [64Bits][\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA telemetry monitor.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160] =>.NVIDIA Corporation® O38 - TASK: {A4DF6148-1154-4FA5-9686-6CE3F5B43C03} [64Bits][\Microsoft\Windows\SpacePort\SpaceAgentTask] - (.Microsoft Corporation - Paramètres des espaces de stockage.) -- C:\Windows\system32\SpaceAgent.exe [129536] =>.Microsoft Corporation O38 - TASK: {A75D5110-3BAE-43D2-B3C5-CFCAB2799ADA} [64Bits][\Microsoft\Windows\WwanSvc\NotificationTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\Windows\System32\WiFiTask.exe [459168] =>.Microsoft Windows® O38 - TASK: {A8A0D2FD-99F1-4219-B1D0-47E17BD812D4} [64Bits][\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA nodejs launcher.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [947136] =>.NVIDIA Corporation® O38 - TASK: {A974AAF1-A9A6-4ED8-8681-D7B54FA96720} [64Bits][\Microsoft\Windows\Workplace Join\Automatic-Device-Join] - (.Microsoft Corporation - Outil de ligne de commande DSREG.) -- C:\Windows\System32\dsregcmd.exe [659968] =>.Microsoft Corporation O38 - TASK: {AA0B057C-EB33-4914-851C-8734309AF9AB} [64Bits][\RtHDVBg_ListenToDevice] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1410304] =>.Realtek Semiconductor Corp® O38 - TASK: {AA64A0FF-144C-4D4B-90C5-12CFEBAD798C} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc® O38 - TASK: {AAC25AF5-ECCF-4586-997F-81061963FAA4} [64Bits][\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] - (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\bfe.dll [815616] =>.Microsoft Corporation O38 - TASK: {B0B311F8-34B5-4DE4-868F-6459538220F6} [64Bits][\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [722880] =>.NVIDIA Corporation® O38 - TASK: {B17F4D53-4E8B-4E20-95FA-22B79E2F23DD} [64Bits][\Microsoft\Windows\Management\Provisioning\Cellular] - (.Microsoft Corporation - Provisioning package runtime processing too.) -- C:\Windows\system32\ProvTool.exe [68608] =>.Microsoft Corporation O38 - TASK: {B50512B5-3373-471F-B4F1-71D8D0EB7B43} [64Bits][\ASUS Live Update2] - (.ASUSTeK - .) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920] =>.ASUSTeK O38 - TASK: {B8F1709B-849F-4A0F-BFB9-8D1FFAF48AC3} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Maintenance Install] - (.Microsoft Corporation - UsoClient.) -- C:\Windows\System32\usoclient.exe [34304] =>.Microsoft Corporation O38 - TASK: {BE9DE028-0673-4F68-83F0-ED9A7DE4FE41} [64Bits][\microsoft\windows\applicationdata\appuriverifierdaily] - (.Microsoft Corporation - Vérificateur de l’inscription des gestionna.) -- C:\Windows\system32\AppHostRegistrationVerifier.exe [105472] =>.Microsoft Corporation O38 - TASK: {BEF7D51F-1ED8-407A-B58B-B9354056A26E} [64Bits][\Microsoft\Windows\Bluetooth\UninstallDeviceTask] - (.Microsoft Corporation - Tâche de désinstallation du périphérique Bl.) -- C:\Windows\System32\BthUdTask.exe [40448] =>.Microsoft Corporation O38 - TASK: {C1B3E05E-17C9-469B-AF5A-902BA138A2BF} [64Bits][\Microsoft\Windows\Application Experience\StartupAppTask] - (.Microsoft Corporation - DLL de tâche d’analyse de démarrage.) -- C:\Windows\System32\Startupscan.dll [19968] =>.Microsoft Corporation O38 - TASK: {C2D60614-413F-49A3-9BB1-31DACF22B442} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Reboot] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\Windows\System32\MusNotification.exe [306176] =>.Microsoft Corporation O38 - TASK: {C3B7C884-15F4-4654-AB6A-56A41277F100} [64Bits][\Microsoft\Windows\WCM\WiFiTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\Windows\System32\WiFiTask.exe [459168] =>.Microsoft Windows® O38 - TASK: {C4A8A914-72EF-4DE0-9D3F-6A264323200D} [64Bits][\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration] - (.Microsoft Corporation - This task initiates Office Background Task .) -- C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [26312] =>.Microsoft Corporation® O38 - TASK: {C561869C-856D-4F98-92EC-B8A15793C6B3} [64Bits][\Microsoft\Windows\Location\Notifications] - (.Microsoft Corporation - Notification d'emplacement.) -- C:\Windows\System32\LocationNotificationWindows.exe [66560] =>.Microsoft Corporation O38 - TASK: {D0E732FE-8DA5-4CD3-8A65-92F865F7FD3B} [64Bits][\Microsoft\Windows\SystemRestore\SR] - (.Microsoft Corporation - Tâches de fond de la protection du système.) -- C:\Windows\system32\srtasks.exe [57856] =>.Microsoft Corporation O38 - TASK: {D4298592-6162-43CE-8D2B-A06EECFEBACC} [64Bits][\Microsoft\Windows\MUI\LPRemove] - (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\system32\lpremove.exe [66560] =>.Microsoft Corporation O38 - TASK: {D4328066-897F-460E-A5BF-EB4851C14A39} [64Bits][\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] - (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe [70144] =>.Microsoft Corporation O38 - TASK: {D4431066-BE03-4464-9B28-6C228252197D} [64Bits][\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] - (.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\System32\raserver.exe [128512] =>.Microsoft Corporation O38 - TASK: {D7F47D97-5EE2-492A-9384-CB3E2422F6C3} [64Bits][\Microsoft\Windows\Speech\SpeechModelDownloadTask] - (.Microsoft Corporation - Speech Model Download Executable.) -- C:\Windows\System32\speech_onecore\Common\SpeechModelDownload.exe [162816] =>.Microsoft Corporation O38 - TASK: {D810F158-C31A-47F6-A94C-8E450747B0E3} [64Bits][\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector] - (.Microsoft Corporation - Module de diagnostics des erreurs de disque.) -- C:\Windows\System32\dfdts.dll [45568] =>.Microsoft Corporation O38 - TASK: {D8EA82CB-29FF-46CC-9557-05A41E9CE9F1} [64Bits][\Microsoft\Windows\DiskFootprint\Diagnostics] - (.Microsoft Corporation - DiskSnapshot.exe.) -- C:\Windows\system32\disksnapshot.exe [82944] =>.Microsoft Corporation O38 - TASK: {E04959ED-25F1-4331-AD08-2020D7F759A2} [64Bits][\RTKCPL] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560] =>.Realtek Semiconductor Corp® O38 - TASK: {E293E24B-9202-4DA4-8FC3-DB1F68EE4951} [64Bits][\Microsoft\Windows\ApplicationData\CleanupTemporaryState] - (.Microsoft Corporation - Windows Application Data API Server.) -- C:\Windows\System32\Windows.Storage.ApplicationData.dll [328616] =>.Microsoft Windows® O38 - TASK: {E42DB919-0A07-44A7-A6DA-2E0CDAE56F3D} [64Bits][\Microsoft\Windows\UpdateOrchestrator\Resume On Boot] - (.Microsoft Corporation - UsoClient.) -- C:\Windows\System32\usoclient.exe [34304] =>.Microsoft Corporation O38 - TASK: {E4C74237-3D1C-4AC5-B588-D17999CE9686} [64Bits][\Microsoft\Windows\UPnP\UPnPHostConfig] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\Windows\System32\sc.exe [68608] =>.Microsoft Corporation O38 - TASK: {E60CE6E6-A41C-410F-8C28-69508A244707} [64Bits][\avast! SL Update] - (.AVAST Software - avast! SecureLine Update.) -- C:\Program Files\AVAST Software\SecureLine\slupdate.exe [863040] =>.AVAST Software a.s.® O38 - TASK: {E92284D5-A365-4C9C-9162-8371D64E6BF8} [64Bits][\Microsoft\Windows\SharedPC\Account Cleanup] - (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [192512] =>.Microsoft Corporation O38 - TASK: {EA4C5D41-E19E-4B68-81DA-E35734D62753} [64Bits][\Microsoft\Windows\Sysmain\WsSwapAssessmentTask] - (.Microsoft Corporation - Hôte de service Superfetch.) -- C:\Windows\System32\sysmain.dll [972800] =>.Microsoft Corporation O38 - TASK: {EF914033-C8A9-4473-9349-6F48F1BC3614} [64Bits][\Microsoft\Windows\Location\WindowsActionDialog] - (.Microsoft Corporation - Service Broker pour la boîte de dialogue Ac.) -- C:\Windows\System32\WindowsActionDialog.exe [59392] =>.Microsoft Corporation O38 - TASK: {F0D7A368-FADC-4F20-B508-CC75536184F6} [64Bits][\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [651200] =>.NVIDIA Corporation® O38 - TASK: {F1165EE6-E834-4609-84BE-83123D3A736E} [64Bits][\Microsoft\Windows\ApplicationData\DsSvcCleanup] - (.Microsoft Corporation - Data Sharing Service Maintenance Driver.) -- C:\Windows\system32\dstokenclean.exe [12800] =>.Microsoft Corporation O38 - TASK: {F2C18DB7-CE3D-485D-9DCB-EDFD318C6994} [64Bits][\ASUS Live Update1] - (.ASUSTeK - .) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920] =>.ASUSTeK O38 - TASK: {F60A850F-A3A6-49EA-BA23-A8254892D1AE} [64Bits][\Microsoft\Windows\DUSM\dusmtask] - (.Microsoft Corporation - DUSM Task.) -- C:\Windows\System32\dusmtask.exe [35840] =>.Microsoft Corporation O38 - TASK: {FA18F6EA-D0FB-4080-8D50-B368865F6C00} [64Bits][\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] - (.Microsoft Corporation - AppID Certificate Store Verification Task.) -- C:\Windows\system32\appidcertstorecheck.exe [19456] =>.Microsoft Corporation ---\\ Applications lancées au démarrage du système (17) - 1s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows® O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\system32\rundll32.exe =>.Microsoft Corporation O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [ApowerMirror] . (. - .) -- C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\SteamS\steam.exe =>.Valve® O4 - HKCU\..\Run: [Discord] . (.Discord Inc. - Discord.) -- C:\Users\thoma\AppData\Local\Discord\app-0.0.298\Discord.exe =>.Hammer & Chisel Inc.® O4 - HKCU\..\RunOnce: [Application Restart #0] . (.ASUSTek Computer Inc - ASUS GIFTBOX.) -- C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe =>.ASUSTek Computer Inc.® O4 - HKLM\..\Wow6432Node\Run: [RzWizard] . (.Razer Inc. - Razer Wizard.) -- C:\Program Files (x86)\Razer\RzWizard\RzWizard.exe =>.Razer USA Ltd.® O4 - HKLM\..\Wow6432Node\Run: [WebStorage] . (...) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\ASUSWSLoader.exe =>.ASUS Cloud Corporation® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows® O4 - HKUS\S-1-5-21-2768081206-3780559856-3583903838-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2768081206-3780559856-3583903838-1001\..\Run: [ApowerMirror] . (. - .) -- C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe O4 - HKUS\S-1-5-21-2768081206-3780559856-3583903838-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\SteamS\steam.exe =>.Valve® O4 - HKUS\S-1-5-21-2768081206-3780559856-3583903838-1001\..\Run: [Discord] . (.Discord Inc. - Discord.) -- C:\Users\thoma\AppData\Local\Discord\app-0.0.298\Discord.exe =>.Hammer & Chisel Inc.® O4 - HKUS\S-1-5-21-2768081206-3780559856-3583903838-1001\..\RunOnce: [Application Restart #0] . (.ASUSTek Computer Inc - ASUS GIFTBOX.) -- C:\Program Files (x86)\ASUS\Giftbox\Asusgiftbox.exe =>.ASUSTek Computer Inc.® ---\\ Google Chrome, Démarrage,Recherche,Extensions (20) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://notifications.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ogs.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://play.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [User Data\Default] [gidgenkbbabolejbgbpnhbimgjbffefm] Vysor =>.Vysor G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 0s P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus15.msn.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.15063.608 (WinBuild.160101.0800)) -- C:\Windows\syswow64\ieframe.dll =>.Microsoft Corporation ---\\ Internet Explorer,Proxy Management (4) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Raccourcis Global Startup (73) - 8s O4 - GS\Desktop [Administrateur]: Discord.lnk . (.GitHub - Update.) C:\Users\thoma\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.Hammer & Chisel Inc.® O4 - GS\Desktop [Administrateur]: Dofus.lnk . (.Ankama Studio - Launcher Dofus.) C:\Users\thoma\AppData\Local\Ankama\Dofus\Dofus.exe =>.Ankama Games® O4 - GS\Desktop [Administrateur]: Lindo.lnk . (.Prixe - Lindo.) C:\Users\thoma\AppData\Local\Programs\lindo\Lindo.exe O4 - GS\Desktop [Administrateur]: MEmu.lnk . (.Microvirt Software Technology Co. Ltd. - MEmu Multiple Instances Manager.) D:\Program Files\Microvirt\MEmu\MEmuConsole.exe MEmu =>.Microvirt Software Technology Co., Ltd.® O4 - GS\Desktop [Administrateur]: Multi-MEmu.lnk . (.Microvirt Software Technology Co. Ltd. - MEmu Multiple Instances Manager.) D:\Program Files\Microvirt\MEmu\MEmuConsole.exe =>.Microvirt Software Technology Co., Ltd.® O4 - GS\Desktop [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\SteamS\Steam.exe =>.Valve® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (...) C:\Users\thoma\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Lindo.lnk . (.Prixe - Lindo.) C:\Users\thoma\AppData\Local\Programs\lindo\Lindo.exe O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thoma\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Desktop [thoma]: Discord.lnk . (.GitHub - Update.) C:\Users\thoma\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.Hammer & Chisel Inc.® O4 - GS\Desktop [thoma]: Dofus.lnk . (.Ankama Studio - Launcher Dofus.) C:\Users\thoma\AppData\Local\Ankama\Dofus\Dofus.exe =>.Ankama Games® O4 - GS\Desktop [thoma]: Lindo.lnk . (.Prixe - Lindo.) C:\Users\thoma\AppData\Local\Programs\lindo\Lindo.exe O4 - GS\Desktop [thoma]: MEmu.lnk . (.Microvirt Software Technology Co. Ltd. - MEmu Multiple Instances Manager.) D:\Program Files\Microvirt\MEmu\MEmuConsole.exe MEmu =>.Microvirt Software Technology Co., Ltd.® O4 - GS\Desktop [thoma]: Multi-MEmu.lnk . (.Microvirt Software Technology Co. Ltd. - MEmu Multiple Instances Manager.) D:\Program Files\Microvirt\MEmu\MEmuConsole.exe =>.Microvirt Software Technology Co., Ltd.® O4 - GS\Desktop [thoma]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\SteamS\Steam.exe =>.Valve® O4 - GS\Desktop [thoma]: ZHPDiag.lnk . (...) C:\Users\thoma\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [thoma]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [thoma]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [thoma]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Programs [thoma]: Lindo.lnk . (.Prixe - Lindo.) C:\Users\thoma\AppData\Local\Programs\lindo\Lindo.exe O4 - GS\Programs [thoma]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thoma\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Application Blizzard.lnk . (.Blizzard Entertainment - Blizzard App Launcher.) C:\Program Files (x86)\Blizzard App\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc.® O4 - GS\CommonDesktop [Public]: ASUS HiPost.lnk . (.Copyright © 2015 - ASUS HiPost.) C:\Program Files (x86)\ASUS\ASUS HiPost\SmartClipboardASUS.exe O4 - GS\CommonDesktop [Public]: Diablo III.lnk . (.Blizzard Entertainment - Diablo III Launcher.) C:\Program Files (x86)\Diablo III\Diablo III Launcher.exe =>.Blizzard Entertainment, Inc.® O4 - GS\CommonDesktop [Public]: Dropbox 25 GB.lnk . (.Copyright © 2015 - DropboxOEM.) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe manualdesktop =>.Dropbox, Inc® O4 - GS\CommonDesktop [Public]: Evernote.lnk . (...) C:\Windows\Installer\{5EA1DED0-5285-11E5-8AA1-0050569584E9}\Evernote.ico O4 - GS\CommonDesktop [Public]: Eye Care Switcher.Lnk . (...) C:\Program Files (x86)\ASUS\Splendid\Eye Care Switcher.exe =>.ASUSTeK O4 - GS\CommonDesktop [Public]: Foxit PhantomPDF.lnk . (.Foxit Software Inc. - Foxit PhantomPDF 7.2.) C:\Program Files (x86)\Foxit PhantomPDF\FoxitPhantomPDF.exe =>.Foxit Software Incorporated® O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - NVIDIA GeForce Experience.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe =>.NVIDIA Corporation® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Hearthstone.lnk . (.Blizzard Entertainment - Hearthstone Beta Launcher.) C:\Program Files (x86)\Hearthstone\Hearthstone Beta Launcher.exe =>.Blizzard Entertainment, Inc.® O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc. O4 - GS\CommonDesktop [Public]: League of Legends.lnk . (.Copyright (C) 2016 - League of Legends.) C:\Riot Games\League of Legends\LeagueClient.exe =>.Riot Games, Inc.® O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH® O4 - GS\CommonDesktop [Public]: WPS Office.lnk . (.Zhuhai Kingsoft Office Software Co.,Ltd - WPS Launcher.) C:\Program Files (x86)\Kingsoft\WPS Office\10.2.0.5908\office6\launcher.exe =>.Zhuhai Kingsoft Office Software Co.,Ltd® O4 - GS\Programs [Public]: Lindo.lnk . (.Prixe - Lindo.) C:\Users\thoma\AppData\Local\Programs\lindo\Lindo.exe O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\thoma\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: avast! SecureLine.lnk . (.AVAST Software - SecureLine.) C:\Program Files\AVAST Software\SecureLine\SecureLine.exe /nogui =>.AVAST Software a.s.® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\Windows\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{52D87F32-70E4-4348-8148-C0B9F35B1314}\AppleSoftwareUpdateIco.exe =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: ASUS GIFTBOX.lnk . (.ASUSTek Computer Inc - ASUS GIFTBOX.) C:\Program Files (x86)\ASUS\Giftbox\asusgiftbox.exe store:default =>.ASUSTek Computer Inc.® O4 - GS\ProgramsCommon [Public]: Dropbox 25 GB.lnk . (.Copyright © 2015 - DropboxOEM.) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe manualstartmenu =>.Dropbox, Inc® O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Intel(R) HD Graphics Control Panel.lnk . (.Intel Corporation - GFXUIEX Module.) C:\Windows\system32\GfxUIEx.exe =>.Intel Corporation O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\Windows\MiracastView\MiracastView.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\Windows\PrintDialog\PrintDialog.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: TeamSpeak 3 Client.lnk . (.TeamSpeak Systems GmbH - TeamSpeak 3 Client.) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe =>.TeamSpeak Systems GmbH® O4 - GS\ProgramsCommon [Public]: WildTangent Games App - asus.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp asusnb =>.WildTangent Inc® O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{ab2aa9d3-53bc-46f7-80ba-83b6b477062c}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{bff79009-8a80-4bc0-a8e7-303f5fc01ba4}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ Protocole additionnel (26) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\syswow64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\syswow64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\syswow64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\syswow64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\syswow64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\syswow64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\syswow64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\syswow64\itss.dll =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\syswow64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\syswow64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\syswow64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\syswow64\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\syswow64\tbauth.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\syswow64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\syswow64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\syswow64\mscoree.dll =>.Microsoft Corporation ---\\ ASIC (ActiveSetup Installed Components) (6) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\syswow64\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\Installer\chrmstp.exe =>.Google Inc® ---\\ Logiciels installés (103) - 8s O42 - Logiciel: 3D Pinball - (.Microsoft Coprporation.) [HKLM][64Bits] -- {C342E30B-52F9-4657-96B6-32E399B9DEB2} =>.Microsoft Coprporation O42 - Logiciel: Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D2FE6376-E549-4F63-A2C5-CA24DA035DE4} =>.Apple Inc. O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {BB109E24-EE90-485B-A28B-ADDEFB40540B} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {0A596141-97D5-45FA-9281-98DFAF48D579} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {52D87F32-70E4-4348-8148-C0B9F35B1314} =>.Apple Inc. O42 - Logiciel: Application Blizzard - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.® O42 - Logiciel: ASUS GIFTBOX - (.ASUSTek Computer Inc.) [HKLM][64Bits] -- ASUS GIFTBOX =>.ASUSTek Computer Inc.® O42 - Logiciel: ASUS HiPost - (.ASUS.) [HKLM][64Bits] -- {04768366-F421-4BA5-8423-B84F644B5249} =>.ASUS O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} =>.ASUS O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D} =>.ASUS O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} =>.ASUS O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF} =>.ASUS O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} =>.ASUS O42 - Logiciel: AudioWizard - (.ICEpower a/s.) [HKLM][64Bits] -- {57E770A2-2BAF-4CAA-BAA3-BD896E2254D3} =>.ICEpower a/s O42 - Logiciel: Avast SecureLine for Asustek - (.AVAST Software.) [HKLM][64Bits] -- {2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5}_is1 =>.AVAST Software a.s.® O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc. O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} =>.Cisco Systems, Inc. O42 - Logiciel: DARK SOULS™ III - (.FromSoftware, Inc..) [HKLM][64Bits] -- Steam App 374320 =>.Valve® O42 - Logiciel: Device Setup - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {8D6B05E0-F457-408C-9D13-549334D8FAE1} =>.ASUSTek Computer Inc. O42 - Logiciel: Diablo III - (.Blizzard Entertainment.) [HKLM][64Bits] -- Diablo III =>.Blizzard Entertainment, Inc.® O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.Hammer & Chisel Inc.® O42 - Logiciel: Dofus - (.Ankama.) [HKCU][64Bits] -- 2744A393-554C-4E35-A24F-DEF0392B4484-2 =>.Ankama Games® O42 - Logiciel: Dropbox 25 GB - (.Dropbox, Inc..) [HKLM][64Bits] -- {0867A88D-764F-366E-9E21-130DA8B472C3} =>.Dropbox, Inc. O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: Evernote v. 5.9.1 - (.Evernote Corp..) [HKLM][64Bits] -- {5EA1DED0-5285-11E5-8AA1-0050569584E9} =>.Evernote Corp. O42 - Logiciel: Foxit PhantomPDF - (.Foxit Software Inc..) [HKLM][64Bits] -- {39263796-F296-43AF-909C-FCF99592BAC4} =>.Foxit Software Inc. O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Hearthstone - (.Blizzard Entertainment.) [HKLM][64Bits] -- Hearthstone =>.Blizzard Entertainment, Inc.® O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD} =>.Intel Corporation O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {fb610cea-ba50-4d4b-a717-cf025419035c} =>.Intel(R) Software and Firmware Products® O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- {654EE65D-FAA4-4EA6-8C07-DC94E6A304D4} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65EA99E9-0311-4FEF-B654-97F79B6C1CB0} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {FF0ED104-3E23-4E28-8715-B9FC939AFBF0} =>.Intel Corporation O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {E91006F4-A2DE-4C98-A2F4-9F566ECE1D99} =>.Intel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX® O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] -- {CCBE9F01-C2C3-469C-A508-2E23A7495E91} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {3973721B-C2ED-4505-98B6-752897ECF2F1} =>.Intel Corporation O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {02F95875-9527-49CC-B32F-970ADAEBD1EF} =>.Apple Inc. O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {11B73856-A062-4E6B-A80E-A3F380BBAB65} =>.Riot Games O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 4.2.1 =>.Riot Games O42 - Logiciel: Lindo 1.1.5 (only current user) - (.Prixe.) [HKCU][64Bits] -- a062a80e-4fba-5e6e-9563-13825db2d262 O42 - Logiciel: Malwarebytes version 3.2.2.2029 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: MEmu - (.Microvirt Software Technology Co. Ltd..) [HKLM][64Bits] -- MEmu =>.Microvirt Software Technology Co., Ltd.® O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Mises à jour NVIDIA 28.0.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 3.9.0.97 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Logiciel système PhysX 9.17.0524 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA NodeJS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Optimus Update 28.0.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote graphique 385.41 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVIDIA Corporation O42 - Logiciel: NVIDIA ShadowPlay 3.9.0.97 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation O42 - Logiciel: NVIDIA SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation O42 - Logiciel: NVIDIA SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA TelemetryApi helper for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Audio 3.90.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Host Controller - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-007E-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Panneau de configuration NVIDIA 385.41 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: PLAYERUNKNOWN'S BATTLEGROUNDS - (.Bluehole, Inc..) [HKLM][64Bits] -- Steam App 578080 =>.Valve® O42 - Logiciel: REALTEK Bluetooth Filter Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A5EF-4123-B2B9-172095903AD} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9DAABC60-A5EF-41FF-B2B9-17329590CD5} =>.Realtek Semiconductor Corp® O42 - Logiciel: Saints Row IV - (.Deep Silver Volition.) [HKLM][64Bits] -- Steam App 206420 =>.SteamApp.Game O42 - Logiciel: SEAF By C_XX - (.C_XX.) [HKLM][64Bits] -- SEAF =>.C_XX O42 - Logiciel: Skyrim Script Extender (SKSE) - (.The SKSE Team.) [HKLM][64Bits] -- Steam App 365720 =>.SteamApp.Game O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client =>.TeamSpeak Systems GmbH O42 - Logiciel: TERA - (.Bluehole, Inc..) [HKLM][64Bits] -- Steam App 212740 =>.SteamApp.Game O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc® O42 - Logiciel: VBA (3821b) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD8A0C60-1AEB-11D6-B8E1-00025521AE60} =>.Microsoft Corporation O42 - Logiciel: Vulkan Run Time Libraries 1.0.51.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.51.0 =>.LunarG, Inc.® O42 - Logiciel: WebStorage - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- WebStorage =>.ASUS Cloud Corporation O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus =>.WildTangent Inc® O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} =>.ASUS O42 - Logiciel: WinRAR 5.40 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WPS Office for ASUS - (.Kingsoft Corp..) [HKLM][64Bits] -- Kingsoft Office =>.Zhuhai Kingsoft Office Software Co.,Ltd® ---\\ HKCU & HKLM Software Keys (88) - 8s HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\Amazing Studio =>.Amazing Studio HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Wow6432Node\arkane =>.Arkane HKLM\SOFTWARE\Wow6432Node\ASIO =>.Steinberg Media Technologies HKLM\SOFTWARE\Wow6432Node\ASUS =>.ASUS HKLM\SOFTWARE\Wow6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Wow6432Node\bethesda softworks =>.Bethesda Softworks HKLM\SOFTWARE\Wow6432Node\Blizzard Entertainment =>.Blizzard Entertainment HKLM\SOFTWARE\Wow6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\Wow6432Node\Chromium =>.Chromium HKLM\SOFTWARE\Wow6432Node\Dropbox =>.Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate =>.Dropbox Inc. HKLM\SOFTWARE\Wow6432Node\ECAREME =>.Ecareme HKLM\SOFTWARE\Wow6432Node\Evernote =>.Evernote HKLM\SOFTWARE\Wow6432Node\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\Gradient HKLM\SOFTWARE\Wow6432Node\IBM =>.IBM HKLM\SOFTWARE\Wow6432Node\Ingerea HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\Kingsoft =>.Kingosoft Technology Ltd HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\McAfee =>.McAfee Inc. HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\Network Associates =>.Network Associates HKLM\SOFTWARE\Wow6432Node\Nuance =>.Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\Overwolf =>.Overwolf HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Riot Games =>.Riot Games HKLM\SOFTWARE\Wow6432Node\RtWLan =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\SolidWorks =>.SolidWorks Corporation HKLM\SOFTWARE\Wow6432Node\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Wow6432Node\TeamViewer =>.TeamViewer HKLM\SOFTWARE\Wow6432Node\Valve =>.Valve HKLM\SOFTWARE\Wow6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\Wow6432Node\WinRAR =>.WinRAR HKLM\SOFTWARE\Wow6432Node\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\a062a80e-4fba-5e6e-9563-13825db2d262 =>Adware.CrossRider HKCU\SOFTWARE\Ankama =>.Ankama HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\Arkane =>.Arkane HKCU\SOFTWARE\ASUS =>.ASUS HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\ECAREME =>.Ecareme HKCU\SOFTWARE\Epic Games =>.Epic Games HKCU\SOFTWARE\Evernote =>.Evernote HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\FreeReign HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\HDID HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Kingsoft =>.Kingosoft Technology Ltd HKCU\SOFTWARE\KLive =>.Games Software HKCU\SOFTWARE\KsoLogViewer HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKCU\SOFTWARE\nwjs =>.NW.js HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\PCurVersion HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\roamingdevice =>.Unknown HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation ---\\ Contenu des dossiers Programmes (266) - 5s O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.® O43 - CFD: 18/08/2017 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 26/09/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 16/08/2017 - [] D -- C:\Program Files\Droid4Xext =>.Haiyu Dongxiang Co.,Ltd. O43 - CFD: 29/05/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 13/09/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 18/08/2017 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 18/08/2017 - [] AD -- C:\Program Files\iTunes =>.Apple Inc. O43 - CFD: 11/10/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 15/10/2017 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 05/10/2017 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 06/08/2017 - [] AD -- C:\Program Files\TeamSpeak 3 Client =>.TeamSpeak O43 - CFD: 24/03/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 19/07/2017 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 12/10/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 18/08/2017 - [] AD -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc. O43 - CFD: 25/07/2017 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.® O43 - CFD: 31/08/2017 - [] D -- C:\Program Files (x86)\Bethesda Softworks =>.Bethesda Softworks O43 - CFD: 08/10/2017 - [] AD -- C:\Program Files (x86)\Blizzard App =>.Blizzard Entertainment, Inc.® O43 - CFD: 18/08/2017 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc. O43 - CFD: 07/10/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 20/06/2017 - [0] D -- C:\Program Files (x86)\Dassault Systemes =>.Dassault Systemes O43 - CFD: 19/07/2017 - [] AD -- C:\Program Files (x86)\Diablo III =>.Blizzard Entertainment O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Evernote =>.EverNote Corporation O43 - CFD: 29/05/2017 - [] AD -- C:\Program Files (x86)\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 31/05/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 03/10/2017 - [] AD -- C:\Program Files (x86)\Hearthstone =>.Blizzard Entertainment O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\ICEpower =>.ICEpower O43 - CFD: 29/05/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 13/09/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Kingsoft =>.Kingosoft Technology Ltd O43 - CFD: 20/06/2017 - [] D -- C:\Program Files (x86)\McAfee =>.McAfee O43 - CFD: 15/10/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] AD -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 09/10/2017 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Razer =>.Razer USA Ltd.® O43 - CFD: 29/05/2017 - [] AD -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 29/05/2017 - [] AD -- C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver =>.Realtek Semiconductor Corp. O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\Program Files (x86)\SEAF =>.C_XX O43 - CFD: 30/08/2017 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games O43 - CFD: 15/10/2017 - [] D -- C:\Program Files (x86)\SteamS =>.Valve® O43 - CFD: 11/07/2016 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 14/09/2017 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games O43 - CFD: 19/07/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 11/06/2017 - [] AD -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH® O43 - CFD: 29/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 11/10/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 03/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Application Blizzard O43 - CFD: 31/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software O43 - CFD: 03/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III =>.Blizzard Entertainment O43 - CFD: 05/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote =>.EverNote Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 29/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 02/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone =>.Blizzard Entertainment O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICEpower =>.ICEpower O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc. O43 - CFD: 01/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends =>.Riot Games O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 11/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 15/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Coprporation =>.Microsoft Corporation O43 - CFD: 02/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 30/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek =>.Realtek O43 - CFD: 29/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 14/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 29/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 11/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 05/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WPS Office =>.Kingosoft Technology Ltd O43 - CFD: 03/10/2017 - [] D -- C:\ProgramData\.mono =>.Legitimate O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 18/08/2017 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 29/05/2017 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\ProgramData\ASUS Smart Gesture =>.ASUSTeK O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\ASUS WebStorage =>.ASUSTeK O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 03/07/2017 - [] D -- C:\ProgramData\Battle.net =>.Games Software O43 - CFD: 09/07/2017 - [] D -- C:\ProgramData\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 29/05/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 20/06/2017 - [] D -- C:\ProgramData\DassaultSystemes =>.Dassault Systemes O43 - CFD: 29/05/2017 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Dropbox =>.Dropbox O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Kingsoft =>.Kingosoft Technology Ltd O43 - CFD: 11/10/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 20/06/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 29/05/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 30/05/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 10/06/2017 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation O43 - CFD: 05/10/2017 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 05/08/2017 - [0] D -- C:\ProgramData\office6 O43 - CFD: 07/10/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Razer =>.Razer O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 15/10/2017 - [] AD -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 01/06/2017 - [] D -- C:\ProgramData\Riot Games =>.Riot Games O43 - CFD: 25/07/2017 - [] D -- C:\ProgramData\SetupTPDriver =>.ASUSTeK O43 - CFD: 29/05/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 30/08/2017 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 15/08/2017 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\USBChargerPlus =>.ASUSTeK O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\WebStorage =>.ASUSTeK O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 18/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Common Files\AWS =>.Amazon O43 - CFD: 15/10/2017 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye O43 - CFD: 11/06/2017 - [] AD -- C:\Program Files (x86)\Common Files\Designer =>.Designer O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 15/10/2017 - [] AD -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 29/05/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 03/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\.mono =>.Legitimate O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\AnkamaCertificates =>.Ankama O43 - CFD: 16/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\app =>.Ankama O43 - CFD: 18/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 29/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Audacity =>.Audacity O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 31/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\awsRun =>.AWS O43 - CFD: 03/07/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Battle.net =>.Games Software O43 - CFD: 18/09/2017 - [] D -- C:\Users\thoma\AppData\Roaming\DarkSoulsIII =>.Games Software O43 - CFD: 11/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\DassaultSystemes =>.Dassault Systemes O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\discord =>.GitHub O43 - CFD: 30/09/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Dofus =>.Ankama O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Dofus-2 =>.Ankama O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Dofus-3 =>.Ankama O43 - CFD: 14/09/2017 - [] D -- C:\Users\thoma\AppData\Roaming\DofusTouchNE =>.Ankama O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\DropboxOEM =>.Dropbox Inc. O43 - CFD: 12/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Elec-CAO O43 - CFD: 30/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 15/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\HaiYuInst O43 - CFD: 04/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Kingsoft =>.Kingosoft Technology Ltd O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\lindo O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 12/06/2017 - [] SD -- C:\Users\thoma\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 03/07/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 10/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\NVIDIA =>.nVidia Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Reg O43 - CFD: 01/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Riot Games =>.Riot Games O43 - CFD: 22/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Skype =>.Skype O43 - CFD: 01/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\TS3Client =>.TeamSpeak O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\WebStorage =>.ASUSTeK O43 - CFD: 11/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 05/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\wps O43 - CFD: 15/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 14/09/2017 - [] D -- C:\Users\thoma\AppData\Local\Ankama =>.Ankama O43 - CFD: 18/08/2017 - [] D -- C:\Users\thoma\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 18/08/2017 - [] D -- C:\Users\thoma\AppData\Local\Apple Computer =>.Apple Inc. O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\thoma\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 12/07/2017 - [] D -- C:\Users\thoma\AppData\Local\ASUS GIFTBOX =>.ASUSTeK O43 - CFD: 29/08/2017 - [] D -- C:\Users\thoma\AppData\Local\Audacity =>.Audacity O43 - CFD: 09/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Battle.net =>.Games Software O43 - CFD: 03/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Blizzard =>.Blizzard O43 - CFD: 03/07/2017 - [] D -- C:\Users\thoma\AppData\Local\Blizzard Entertainment =>.Blizzard Entertainment O43 - CFD: 01/06/2017 - [] D -- C:\Users\thoma\AppData\Local\CEF =>.CEF O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Users\thoma\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 07/10/2017 - [] D -- C:\Users\thoma\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Local\Crashpad =>.Unknown O43 - CFD: 09/09/2017 - [] D -- C:\Users\thoma\AppData\Local\CrashRpt O43 - CFD: 11/06/2017 - [] D -- C:\Users\thoma\AppData\Local\DassaultSystemes =>.Dassault Systemes O43 - CFD: 06/06/2017 - [0] D -- C:\Users\thoma\AppData\Local\DBG =>.DBG O43 - CFD: 29/07/2017 - [0] D -- C:\Users\thoma\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Discord =>.GitHub O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Local\DropboxOEM =>.Dropbox Inc. O43 - CFD: 01/10/2017 - [] D -- C:\Users\thoma\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 09/09/2017 - [] D -- C:\Users\thoma\AppData\Local\FreeReign O43 - CFD: 31/05/2017 - [] D -- C:\Users\thoma\AppData\Local\Google =>.Google O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\thoma\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 04/08/2017 - [] D -- C:\Users\thoma\AppData\Local\kingsoft =>.Kingosoft Technology Ltd O43 - CFD: 18/08/2017 - [] D -- C:\Users\thoma\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/06/2017 - [] D -- C:\Users\thoma\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 02/06/2017 - [] D -- C:\Users\thoma\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 07/10/2017 - [] D -- C:\Users\thoma\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 03/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] D -- C:\Users\thoma\AppData\Local\PackageStaging =>.Apcera O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 08/06/2017 - [] D -- C:\Users\thoma\AppData\Local\Razer_Inc =>.Razer Inc O43 - CFD: 18/06/2017 - [] D -- C:\Users\thoma\AppData\Local\Skyrim =>.Skyrim Games O43 - CFD: 06/08/2017 - [] D -- C:\Users\thoma\AppData\Local\Solid State Networks =>.Solid State Networks O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 04/06/2017 - [] D -- C:\Users\thoma\AppData\Local\Steam =>.Steam Games O43 - CFD: 15/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\thoma\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Local\TileDataLayer =>.Microsoft Corporation O43 - CFD: 07/10/2017 - [] D -- C:\Users\thoma\AppData\Local\TslGame O43 - CFD: 07/10/2017 - [] D -- C:\Users\thoma\AppData\Local\UnrealEngine =>.Unreal Software O43 - CFD: 11/06/2017 - [] D -- C:\Users\thoma\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\Users\thoma\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 16/08/2017 - [0] D -- C:\Users\thoma\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Local\Programs\lindo O43 - CFD: 29/05/2017 - [] RD -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] RD -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 11/10/2017 - [] RD -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 16/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc. O43 - CFD: 14/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc O43 - CFD: 29/05/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 16/08/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEmu =>.Microvirt Software Technology Ltd. O43 - CFD: 11/10/2017 - [] RD -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 29/05/2017 - [] RD -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] RD -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 11/06/2017 - [] D -- C:\Users\thoma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 29/05/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\NVIDIA =>.nVidia Corporation O43 - CFD: 29/05/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Razer =>.Razer O43 - CFD: 29/05/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Razer_Inc =>.Razer Inc O43 - CFD: 05/08/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Kingsoft =>.Kingosoft Technology Ltd O43 - CFD: 29/05/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation® O106 - SIOI: ReadOnlyOverlayHandler Class [ OneDrive6] - {9AA2F32D-362A-42D9-9328-24A483E2CCC3}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\thoma\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\FileSyncShell.dll =>.Microsoft Corporation® ---\\ Image File Execution Options (18) - 0s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Liste des pilotes du système (99) - 14s O58 - SDL:2017/03/18 22:56:25 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [107424] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows® O58 - SDL:2015/05/25 14:20:18 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\Windows\System32\drivers\AiCharger.sys [21816] =>.ASUSTeK Computer Inc.® O58 - SDL:2017/03/18 22:56:25 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259488] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27040] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [132000] =>.Microsoft Windows® O58 - SDL:2015/08/19 12:53:54 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\Windows\System32\drivers\AsHIDSwitch64.sys [27872] =>.ASUSTeK Computer Inc.® O58 - SDL:2017/03/09 10:19:12 A . (.ASUS Corporation - Asus TP Filter Driver(X64).) -- C:\Windows\System32\drivers\AsusTP.sys [124928] =>.ASUSTeK Computer Inc.® O58 - SDL:2014/09/05 15:09:00 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\aswTap.sys [44640] =>.AVAST Software a.s.® O58 - SDL:2017/03/18 22:56:25 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2017/03/18 22:56:23 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [533920] =>.Microsoft Windows® O58 - SDL:2007/02/19 09:46:00 A . (.CASIO COMPUTER CO.,LTD. - CESG502 64bit USB Driver.) -- C:\Windows\System32\drivers\CESG64.sys [63808] =>.CASIO COMPUTER CO.,LTD.® O58 - SDL:2017/03/18 22:56:25 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\Windows\System32\drivers\cht4dx64.sys [102816] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\Windows\System32\drivers\cht4sx64.sys [347032] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T4 Chipset.) -- C:\Windows\System32\drivers\cht4vx64.sys [2104224] =>.Microsoft Windows® O58 - SDL:2015/11/09 10:10:50 A . (.Intel Corporation - DPTF ACPI Device (64-Bit).) -- C:\Windows\System32\drivers\dptf_acpi.sys [55784] =>.Intel(R) Software® O58 - SDL:2015/11/09 10:10:50 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\Windows\System32\drivers\dptf_cpu.sys [52200] =>.Intel(R) Software® O58 - SDL:2017/02/26 22:06:59 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd® O58 - SDL:2017/02/26 22:07:55 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd® O58 - SDL:2015/11/09 10:10:50 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\Windows\System32\drivers\esif_lf.sys [260072] =>.Intel(R) Software® O58 - SDL:2017/03/18 22:56:23 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3419040] =>.Microsoft Windows® O58 - SDL:2017/10/15 20:45:45 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\Windows\System32\drivers\farflt.sys [110016] =>.Malwarebytes Corporation® O58 - SDL:2017/03/18 22:56:25 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64416] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:28 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iagpio.sys [33280] =>.Intel(R) Corporation O58 - SDL:2017/03/18 22:56:28 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\drivers\iai2c.sys [81408] =>.Intel(R) Corporation O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [70656] =>.Intel Corporation O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [85504] =>.Intel Corporation O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [165376] =>.Intel Corporation O58 - SDL:2017/03/18 22:56:28 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [168448] =>.Intel Corporation O58 - SDL:2017/03/18 22:56:23 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2017/03/18 22:56:19 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2015/11/24 05:48:16 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [1467912] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2017/03/18 22:56:26 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\Windows\System32\drivers\iaStorAV.sys [673184] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412064] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\Windows\System32\drivers\ibbus.sys [526240] =>.Microsoft Windows® O58 - SDL:2016/10/07 09:25:26 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [822248] =>.Intel(R) OWR® O58 - SDL:2015/12/07 19:53:18 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [39920] =>.Intel(R) Wireless Display® O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [108960] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2i.sys [123808] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3i.sys [103328] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82848] =>.Microsoft Windows® O58 - SDL:2008/01/02 14:11:50 A . (.IBM - LUM Runtime.) -- C:\Windows\System32\drivers\LUMDriver.sys [24848] =>.IBM Polska Sp. z o.o.® O58 - SDL:2017/10/04 13:15:42 A . (...) -- C:\Windows\System32\drivers\mbae64.sys [77440] =>.Malwarebytes Corporation® O58 - SDL:2017/10/15 20:45:45 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [45504] =>.Malwarebytes Corporation® O58 - SDL:2017/10/11 23:38:56 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MbamChameleon.sys [192952] =>.Malwarebytes Corporation® O58 - SDL:2017/10/11 23:38:37 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [252232] =>.Malwarebytes Corporation® O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [59808] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\MegaSas2i.sys [64416] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575904] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - MLX4 Bus Driver.) -- C:\Windows\System32\drivers\mlx4_bus.sys [842656] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63904] =>.Microsoft Windows® O58 - SDL:2017/10/15 20:45:45 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [94144] =>.Malwarebytes Corporation® O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\Windows\System32\drivers\ndfltr.sys [108960] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150432] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166304] =>.Microsoft Windows® O58 - SDL:2016/09/12 22:15:22 A . (.NVIDIA Corporation - Stereoscopic 3D USB controller driver.) -- C:\Windows\System32\drivers\nvstusb.sys [486976] =>.NVIDIA Corporation® O58 - SDL:2016/05/09 19:56:53 A . (.Windows (R) Win 7 DDK provider - Filter Driver for the blake Device (Framewo.) -- C:\Windows\System32\drivers\nvswcfilter.sys [28344] =>.Nvidia Corporation® O58 - SDL:2017/08/18 06:37:00 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\Windows\System32\drivers\nvvad64v.sys [48064] =>.NVIDIA Corporation® O58 - SDL:2017/09/19 09:23:44 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\Windows\System32\drivers\nvvhci.sys [57792] =>.NVIDIA Corporation® O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas2i.sys [58784] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows® O58 - SDL:2016/01/13 11:21:50 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\Windows\System32\drivers\rt640x64.sys [898296] =>.Realtek Semiconductor Corp® O58 - SDL:2017/07/12 04:57:36 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\Windows\System32\drivers\RtkBtfilter.sys [724448] =>.Realtek Semiconductor Corp.® O58 - SDL:2016/01/14 18:22:08 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [4751104] =>.Realtek Semiconductor Corp® O58 - SDL:2015/06/15 11:08:11 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [753368] =>.Realtek Semiconductor Corp® O58 - SDL:2017/07/14 08:08:02 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 54944 27820.) -- C:\Windows\System32\drivers\rtwlane.sys [6907240] =>.Realtek Semiconductor Corp.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer RzBTEndPt.) -- C:\Windows\System32\drivers\rzbtendpt.sys [51912] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer RzEndPt.) -- C:\Windows\System32\drivers\rzdaendpt.sys [43720] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer RzEndPt.) -- C:\Windows\System32\drivers\rzendpt.sys [50392] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer Inc. External Display Driver.) -- C:\Windows\System32\drivers\rzhnet.sys [29912] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer JoyStick Device.) -- C:\Windows\System32\drivers\rzjstk.sys [36568] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer RzEndPt.) -- C:\Windows\System32\drivers\rzkeypadendpt.sys [46280] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer RzMPos.) -- C:\Windows\System32\drivers\rzmpos.sys [48840] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer RzEndPt.) -- C:\Windows\System32\drivers\rzp1endpt.sys [52424] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer Rzudd Engine.) -- C:\Windows\System32\drivers\rzudd.sys [202952] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer Keyboard Device.) -- C:\Windows\System32\drivers\rzvkeyboard.sys [44232] =>.Razer Inc.® O58 - SDL:2015/08/13 17:36:50 A . (.Razer Inc - Razer Mouse Device.) -- C:\Windows\System32\drivers\rzvmouse.sys [42712] =>.Razer Inc.® O58 - SDL:2017/03/18 22:56:26 A . (...) -- C:\Windows\System32\drivers\SDFRd.sys [31128] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44960] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81824] =>.Microsoft Windows® O58 - SDL:2016/09/05 06:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - USB CD Changer Driver (MSS Ver.3).) -- C:\Windows\System32\drivers\ssudcdf.sys [36608] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile DevMgr Device Driver (MS.) -- C:\Windows\System32\drivers\ssuddmgr.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2016/09/05 06:47:12 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [165504] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile OBEX Device Driver (MSS.) -- C:\Windows\System32\drivers\ssudobex.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2016/09/05 06:47:14 A . (.QUALCOMM Incorporated - Filter Driver for the Qualcomm USB Driver S.) -- C:\Windows\System32\drivers\ssudqcfilter.sys [64640] =>.Samsung Electronics CO., LTD.® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD. - USB Rmnet Device Driver.) -- C:\Windows\System32\drivers\ssudrmnet.sys [70400] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\Windows\System32\drivers\ssudserd.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD. - MSS CS Connectivity USB driver.) -- C:\Windows\System32\drivers\ss_conn_usb_driver.sys [26368] =>.DEVGURU CO LTD® O58 - SDL:2017/03/18 22:56:25 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31136] =>.Microsoft Windows® O58 - SDL:2015/08/13 17:36:50 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\Windows\System32\drivers\SynTP.sys [617152] =>.Synaptics Incorporated® O58 - SDL:2016/02/04 01:43:28 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverW8x64.sys [185896] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2016/12/21 13:20:26 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2014/05/16 14:04:46 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [254240] =>.Oracle Corporation® O58 - SDL:2017/03/18 22:56:25 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [166816] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305568] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - Kernel WinMad.) -- C:\Windows\System32\drivers\winmad.sys [32160] =>.Microsoft Windows® O58 - SDL:2017/03/18 22:56:25 A . (.Mellanox - Kernel WinVerbs.) -- C:\Windows\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 4s O61 - LFC: 2017/10/15 20:48:13 A . (..) -- C:\Users\thoma\AppData\Roaming\sp_data.sys [184] ---\\ Associations Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %* O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (1) - 0s O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (47) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [189952] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [189952] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [303104] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1269248] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\ikeext.dll [934912] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [996864] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [138752] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150016] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [108032] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [877568] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [221696] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [133120] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [413184] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\sessenv.dll [385536] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [93184] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1067008] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [276480] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [699904] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [55296] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\Windows\System32\TokenBroker.dll [1052672] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [18944] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [233984] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation O83 - Search Svchost Services: xbgm (xbgm) . (.Microsoft Corporation - Xbox Game Monitoring Service.) -- C:\Windows\System32\xbgmsvc.dll [301216] =>.Microsoft Windows Publisher® O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [261632] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [385536] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [877568] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [192512] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\ncasvc.dll [167424] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2153984] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1135104] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [536064] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1015296] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [723968] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [684032] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [43520] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104448] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [874496] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [490496] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\sens.dll [69632] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [537600] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [306688] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2446336] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1159680] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [612864] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (43) - 5s O87 - FAEL: "{48F89919-7644-4803-BA85-25B5598A515A}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (.not file.) O87 - FAEL: "{BA044AEC-7673-46B9-8CDB-9F34854214F8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.) O87 - FAEL: "{6F9F0800-0AE9-4994-B64E-4890127E9250}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\Steam.exe (.not file.) O87 - FAEL: "{FDF24B34-5352-4A98-9ED4-EC9FDB15B5D1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (.not file.) O87 - FAEL: "{AF6B334D-ED41-42AA-A156-C71B00077A56}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (.not file.) O87 - FAEL: "{2AE62417-8E9D-4862-B712-CCE6725FCA3E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe (.not file.) =>.Steam Games O87 - FAEL: "{9E58C4D5-D152-4D03-893A-852A9535701E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Dishonored\Binaries\Win32\Dishonored.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{CD6B0459-53C0-45AF-917D-721BB821D1FA}C:\program files (x86)\steam\steamapps\common\dishonored\binaries\win32\dishonored.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\dishonored\binaries\win32\dishonored.exe (.not file.) =>.Steam Games O87 - FAEL: "UDP Query User{82207A70-564C-4D0E-9148-11A0BB7DD042}C:\program files (x86)\steam\steamapps\common\dishonored\binaries\win32\dishonored.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\dishonored\binaries\win32\dishonored.exe (.not file.) =>.Steam Games O87 - FAEL: "{C79F8628-DB7B-474E-8859-38AB61830FB2}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office15\lync.exe (.not file.) O87 - FAEL: "{2CE48C98-F45B-4BD7-9B94-33EEED54C2AC}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office15\lync.exe (.not file.) O87 - FAEL: "{5CFB7537-5ADA-44DA-B890-FE23709CEB81}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office15\UcMapi.exe (.not file.) O87 - FAEL: "{1C0A9AFF-69B3-4838-A4E5-99CAEC5D0E80}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office\Office15\UcMapi.exe (.not file.) O87 - FAEL: "TCP Query User{E38C2330-DB62-45B6-809D-D65E64D5A1C8}C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\orbixd.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\orbixd.exe (.not file.) O87 - FAEL: "UDP Query User{F482D527-D7C1-476E-AF84-E688BB399CD1}C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\orbixd.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\orbixd.exe (.not file.) O87 - FAEL: "TCP Query User{EC573630-8353-4B78-ACAC-A0EB9A688AC8}C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe (.not file.) O87 - FAEL: "UDP Query User{BFF3C3A2-6358-4F40-8552-128E410AFF70}C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe (.not file.) O87 - FAEL: "TCP Query User{9DEF47CE-7FDB-4374-A785-C8B2FD80583D}C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe (.not file.) O87 - FAEL: "UDP Query User{2363049B-97FA-4C35-9035-BC6FA6ACCD88}C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\dassault systemes\b20\intel_a\code\bin\cnext.exe (.not file.) O87 - FAEL: "{65D1DB56-2E90-4782-AC9A-949DE1441B76}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (.not file.) =>.Steam Games O87 - FAEL: "{7E8F16EE-F414-4855-92CE-4D5583BA8267}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe (.not file.) =>.Steam Games O87 - FAEL: "{553130E4-92C7-4326-86A8-7D0314AE09C0}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe (.not file.) =>.Steam Games O87 - FAEL: "{DCEECFE7-37D7-402A-9209-326BFAFB07AB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Saints Row IV\SaintsRowIV.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{940F22A1-6B53-4242-A678-8290E2E63F66}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe (.not file.) O87 - FAEL: "UDP Query User{1683F026-2483-4C7D-8E5D-DE56D99DB928}C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\blizzard app\battle.net.8965\battle.net.exe (.not file.) O87 - FAEL: "TCP Query User{C74B1C36-7F9D-4013-904C-7B7C5A6F6BCA}C:\program files (x86)\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe (.not file.) O87 - FAEL: "UDP Query User{8F552854-C437-42D9-8043-97E99181AD9A}C:\program files (x86)\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe (.not file.) O87 - FAEL: "TCP Query User{394FF5AF-DB81-48C7-AB85-B90693636A90}C:\program files (x86)\droid4x\droid4x.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\droid4x\droid4x.exe (.not file.) O87 - FAEL: "UDP Query User{1ACDDD51-211E-4890-A8F7-1AD71BA68629}C:\program files (x86)\droid4x\droid4x.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\droid4x\droid4x.exe (.not file.) O87 - FAEL: "{4196F45A-DD2C-4243-997C-A2B846B28996}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Droid4X\Droid4X.exe (.not file.) O87 - FAEL: "{99F157E9-8A2D-4E75-946B-A4D80744A94E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Droid4X\download\MiniThunderPlatform.exe (.not file.) O87 - FAEL: "{2D634AB6-91B0-4DC1-936F-DD1AFAF70FFB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Droid4X\download\MiniThunderPlatform.exe (.not file.) O87 - FAEL: "{89D79C46-E8C3-4485-8897-A6D9B77325C5}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Oracle\VirtualBox\vboxheadless.exe (.not file.) O87 - FAEL: "{181DDC12-6F61-4936-9AAC-2264C0CF82F4}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (.not file.) O87 - FAEL: "{0589538B-FC51-45AA-8B0B-3F333E113718}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe (.not file.) O87 - FAEL: "{74954213-F320-4A4F-879B-DC61D2C69BF7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Skyrim\skse_steam_boot.exe (.not file.) =>.Steam Games O87 - FAEL: "{25831AC4-CDE3-41F0-8F2B-C7B39D51BA72}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Skyrim\skse_steam_boot.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{86047860-7C16-4E78-8213-234E1B099D6A}C:\program files (x86)\steams\steamapps\common\lms\lms.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steams\steamapps\common\lms\lms.exe (.not file.) =>.Steam Games O87 - FAEL: "UDP Query User{DA30AC34-37AB-42F2-BAC4-6E83C10F4FBD}C:\program files (x86)\steams\steamapps\common\lms\lms.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steams\steamapps\common\lms\lms.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{A53BE3F3-76F8-41CE-9610-003DE3949386}C:\program files (x86)\steams\steamapps\common\lms\lms.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steams\steamapps\common\lms\lms.exe (.not file.) =>.Steam Games O87 - FAEL: "UDP Query User{CAC793BB-DE68-4019-905F-0F72C6F036DC}C:\program files (x86)\steams\steamapps\common\lms\lms.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steams\steamapps\common\lms\lms.exe (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{7D53AD30-599F-4F09-9C86-090136010A1B}C:\program files (x86)\steams\steamapps\common\lms\launcher.exe.new.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steams\steamapps\common\lms\launcher.exe.new.exe (.not file.) =>.Steam Games O87 - FAEL: "UDP Query User{D5400149-6024-432F-982C-4219DBE3E14F}C:\program files (x86)\steams\steamapps\common\lms\launcher.exe.new.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steams\steamapps\common\lms\launcher.exe.new.exe (.not file.) =>.Steam Games ---\\ Scan Additionnel (8) - 8s C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\Users\thoma\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet C:\Users\thoma\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d16fk4ms6rqz1v.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet C:\Users\thoma\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage =>.SUP.CloudfrontNet C:\Users\thoma\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_d22j4fzzszoii2.cloudfront.net_0.localstorage-journal =>.SUP.CloudfrontNet C:\Users\thoma\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.audienceinsights.net_0.localstorage =>.SUP.AudienceInsights C:\Users\thoma\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.audienceinsights.net_0.localstorage-journal =>.SUP.AudienceInsights ---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/02/02/superfluous-cloudfrontnet/ =>.SUP.CloudfrontNet https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.AudienceInsights ~ Unselected Options: O82, ~ End of the scan, 28823 items in 02mn09s (1176)(0)