~ ZHPDiag v2017.11.19.201 Par Nicolas Coolman (2017/11/19) ~ Démarré par ferir (Administrator) (2017/11/19 22:38:17) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\ferir\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\ferir\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 32-bit (Build 14393) =>.Microsoft Corporation ---\\ Navigateurs Internet (4) - 0s ~ GCIE: Google Chrome v62.0.3202.94 ~ MFIE: Mozilla Firefox 57.0 (x86 fr) ~ MSIE: Microsoft Edge v40 ~ MSIE: Internet Explorer v11.1884.14393.0 ---\\ Informations sur les produits Windows (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (2) - 8s Malwarebytes version 3.3.1.2183 v3.3.1.2183 (Protection) Windows Defender (Activate) (Protection) ---\\ Logiciels d'optimisation (1) - 8s ~ CCleaner v5.35 (Optimize) ---\\ Informations sur le système (6) - 0s ~ Operating System: x86 Family 16 Model 5 Stepping 2, AuthenticAMD ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3406.132 MB (51% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 414 GB (45%) free of 911 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: MARILOU-PC ~ User Name: ferir ~ Logged in as Administrator ---\\ Enumération des unités disques (3) - 0s ~ Drive C: has 414 GB free of 911 GB (System) ~ Drive D: has 9 GB free of 25 GB ~ Drive E: has 1891 GB free of 2861 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (24) - 3s [MD5.54210509B3129D716D6C9C5775710598] - 12/07/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4312760] =>.Microsoft Windows® [MD5.111474C61232202B5B588D2B512CBB25] - 16/07/2016 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [61952] =>.Microsoft Corporation [MD5.A5AC3B5EADCBE62D1D6E260ED97D4432] - 09/10/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [205104] =>.Microsoft Windows Publisher® [MD5.22291DFCBB044925FF7F8075FE646332] - 18/09/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2483712] =>.Microsoft Corporation [MD5.D167A913B2A2B615CF77A00AA7D87B7D] - 21/06/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [578560] =>.Microsoft Corporation [MD5.7C880AA65587F2B274D2633E69CB19C8] - 16/07/2016 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [390144] =>.Microsoft Corporation [MD5.C1A05F68C92A8B9D4D5A3D4953427154] - 18/09/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [497424] =>.Microsoft Windows® [MD5.5E743494C3D549E495D30E4B2A30A110] - 16/07/2016 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.3B5BE5B3D3CE8D9834C2C9B325AC6A29] - 23/11/2016 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [482656] =>.Microsoft Windows® [MD5.1D8B6976EC75698485A195A06B2DEBAC] - 16/07/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [23392] =>.Microsoft Windows® [MD5.9577B2171AD8DBC6A8BAAD75232CBF38] - 16/07/2016 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [74752] =>.Microsoft Corporation [MD5.67B188419B7018D7956A38C89EFCC70A] - 16/07/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [130560] =>.Microsoft Corporation [MD5.7B285E5F638D0B7AB999E148BD646D56] - 21/06/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [112640] =>.Microsoft Corporation [MD5.E67AAF24F03D9D1B7616C0F5663556CA] - 16/07/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [67072] =>.Microsoft Corporation [MD5.7D889F2D2464940C2DA8A218F5282F21] - 16/07/2016 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [90624] =>.Microsoft Corporation [MD5.3FDB0E7AC49A78D21B470863CDA5E342] - 16/07/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [188416] =>.Microsoft Corporation [MD5.F4327D61F6D085F4410FE20E2E20F319] - 08/08/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [400224] =>.Microsoft Windows® [MD5.70F783346448A34AB5E909091EF12123] - 07/09/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [217600] =>.Microsoft Corporation [MD5.D4EFE37B4F5FA8DBF5775F5BA53DF11A] - 01/11/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [1954144] =>.Microsoft Windows® [MD5.102319D1AB9C8AE57ABF4542C15E46E5] - 16/07/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [81920] =>.Microsoft Corporation [MD5.26F09741A8FF5EE03C66B33EB5C2A7D2] - 16/07/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [80896] =>.Microsoft Corporation [MD5.F064A9E33658E8A73280AE8AA5723C59] - 16/07/2016 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [131072] =>.Microsoft Corporation [MD5.B7E91AAE65C36F457315445CB8489B70] - 08/08/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [94560] =>.Microsoft Windows® [MD5.BA60C15D2BAD7601FD1D6768209C81EA] - 09/10/2017 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [353112] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (6) - 2s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc.® O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc. - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Protexis Inc.® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (10) - 21s SR - Auto [16/12/2015] [ 223216] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Auto [04/11/2015] [ 284872] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe =>.Advanced Micro Devices, Inc.® SR - Auto [30/08/2011] [ 390504] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Auto [31/08/2015] [ 144200] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [31/08/2015] [ 144200] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [24/08/2012] [ 194032] Google Software Updater (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc® SR - Auto [01/11/2017] [ 4563920] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SS - Demand [14/11/2017] [ 175568] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [24/07/2007] [ 185632] Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc..) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Protexis Inc.® SS - Demand [18/04/2013] [ 737616] ServiceLayer (ServiceLayer) . (.Nokia.) - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe =>.Nokia® ---\\ Tâches planifiées en automatique (Registre) (113) - 13s O38 - TASK: {00591CA7-C457-4788-88F5-C6E658B893C4}[\Microsoft\Windows\WindowsUpdate\sihboot] - (.Microsoft Corporation - Client SIH.) -- C:\WINDOWS\System32\sihclient.exe [162304] =>.Microsoft Corporation O38 - TASK: {00CDA7B4-3AC3-4B09-92D7-900AA84898EE}[\Microsoft\Windows\DiskFootprint\Diagnostics] - (.Microsoft Corporation - DiskSnapshot.exe.) -- C:\WINDOWS\system32\disksnapshot.exe [69632] =>.Microsoft Corporation O38 - TASK: {029DB822-9451-4E11-9B64-4E44D0E792A9}[\OneDrive Standalone Update Task-S-1-5-21-2376586121-489075749-3064592929-1007] - (.Microsoft Corporation - Standalone Updater.) -- C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [2296008] =>.Microsoft Corporation® O38 - TASK: {035C3087-2BAC-4DDF-8BD7-43296C806BB2}[\Microsoft\Windows\Media Center\StartRecording] - (...) -- C:\WINDOWS\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {0365896B-05A1-43EE-B4C7-A48CB6AE1E39}[\Microsoft\Windows\Shell\FamilySafetyMonitor] - (.Microsoft Corporation - Moniteur du contrôle parental.) -- C:\Windows\System32\WpcMon.exe [1224104] =>.Microsoft Windows® O38 - TASK: {052AF0D8-0275-485A-92B2-F5AC799D232F}[\Microsoft\Windows\Media Center\OCURActivate] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {0539A5AB-F712-4D97-99F6-944EC3AC5447}[\{3B030845-ACA0-460D-8951-ED711DE6E69F}] - (...) -- C:\Program Files\Alwil Software\Avast5\aswRunDll.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {061A659D-A472-4CCC-ABE0-560D88FD57F7}[\Microsoft\Windows\Media Center\mcupdate_scheduled] - (. - Check for Media Center updates..) -- C:\WINDOWS\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {0A7ED714-19E1-4945-B9BC-721BE81648B7}[\Microsoft\Windows\Autochk\Proxy] - (.Microsoft Corporation - DLL de proxy Autochk.) -- C:\Windows\System32\acproxy.dll [10752] =>.Microsoft Corporation O38 - TASK: {0A9BFA03-FC4E-4E7E-885E-8232E1EE22AE}[\Microsoft\Windows\MUI\LPRemove] - (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\System32\lpremove.exe [54784] =>.Microsoft Corporation O38 - TASK: {0B5B347D-DF2E-405E-882F-437B5397467F}[\OneDrive Standalone Update Task v2] - (.Microsoft Corporation - Standalone Updater.) -- C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [2296008] =>.Microsoft Corporation® O38 - TASK: {0CDCA1EF-2407-452E-9CFF-A152B36F89CF}[\Microsoft\Windows\Media Center\PvrRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {10764B59-DC61-41E2-83E3-6D2A6BA0CE93}[\Microsoft\Windows\Application Experience\ProgramDataUpdater] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\WINDOWS\system32\compattelrunner.exe [116064] =>.Microsoft Windows® O38 - TASK: {10BD9E4C-E8D2-443D-9C1C-AE39408F41E9}[\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] - (.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\System32\raserver.exe [111104] =>.Microsoft Corporation O38 - TASK: {1179360D-8938-489E-82FD-1AD59DB1C2A3}[\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] - (.Microsoft Corporation - AppID Certificate Store Verification Task.) -- C:\Windows\System32\appidcertstorecheck.exe [16896] =>.Microsoft Corporation O38 - TASK: {173E24D2-E630-472C-9CFB-64BA3D5BD572}[\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] - (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [73728] =>.Microsoft Corporation O38 - TASK: {1B122D39-30EA-4777-AEED-350BAE8E758D}[\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {1BB8737C-B40C-4050-BB28-A1E89B77ECEB}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O38 - TASK: {1CA547A6-CC49-4769-B162-29FD698DA7F6}[\Microsoft\Windows\ApplicationData\DsSvcCleanup] - (.Microsoft Corporation - Data Sharing Service Maintenance Driver.) -- C:\Windows\System32\dstokenclean.exe [11264] =>.Microsoft Corporation O38 - TASK: {218FC201-E5D8-4F01-8249-379BEB53F938}[\GoogleUpdateTaskUserS-1-5-21-2376586121-489075749-3064592929-1001UA1d25cf378b9cb23] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\isa\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O38 - TASK: {2A273510-2E34-4BFC-9B60-CAEEAAD90F05}[\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\WINDOWS\System32\MusNotification.exe [206848] =>.Microsoft Corporation O38 - TASK: {2AC9ED41-26C9-4A1D-86E4-231A25F5C46E}[\User_Feed_Synchronization-{3A723D2C-18BD-4A3E-9D16-DDE5FAD495B6}] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\System32\msfeedssync.exe [13824] =>.Microsoft Corporation O38 - TASK: {32BB5C41-C492-4CF5-80B8-EC7554DDA5D6}[\Microsoft\Windows\SharedPC\Account Cleanup] - (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [120320] =>.Microsoft Corporation O38 - TASK: {33ADABD4-BAAA-4D17-A7D7-B1FF554805DD}[\Microsoft\Windows\rempl\shell] - (.Microsoft Corporation - remsh.) -- C:\Program Files\rempl\remsh.exe [740336] =>.Microsoft Corporation® O38 - TASK: {382C3881-35AD-47FA-8774-DD78E78DA987}[\Microsoft\Windows\Media Center\InstallPlayReady] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {388824F8-A412-41FB-80C9-13BA6F64AEF3}[\Microsoft\Windows\Time Zone\SynchronizeTimeZone] - (.Microsoft Corporation - TimeZone Sync Task.) -- C:\Windows\System32\tzsync.exe [61440] =>.Microsoft Corporation O38 - TASK: {3D893B4A-DF86-4DCA-AAF8-08E4E9F04268}[\Microsoft\Windows\UNP\RunCampaignManager] - (.Microsoft Corporation - UNP CampaignManager.) -- C:\Windows\System32\UNP\UNPCampaignManager.exe [669024] =>.Microsoft Windows® O38 - TASK: {3E3E60A2-99A7-487C-8854-0D0AC2338B6C}[\Microsoft\Windows\Clip\License Validation] - (.Microsoft Corporation - Client License Platform migration tool.) -- C:\WINDOWS\System32\ClipUp.exe [1127040] =>.Microsoft Windows Publisher® O38 - TASK: {423B0C44-F71D-4000-98DC-BBB7A57350A6}[\Microsoft\Windows\UpdateOrchestrator\Reboot] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\WINDOWS\System32\MusNotification.exe [206848] =>.Microsoft Corporation O38 - TASK: {45F2A560-42A1-4700-8563-FC470A63A4AD}[\Microsoft\Windows\Media Center\PvrScheduleTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {46A6F659-C736-4EF5-959C-3A1C2643F299}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O38 - TASK: {478A12C9-BF46-4D68-8A7B-D4AA7FB76335}[\Microsoft\Windows\Device Information\Device] - (.Microsoft Corporation - Device Census.) -- C:\Windows\System32\devicecensus.exe [30552] =>.Microsoft Windows® O38 - TASK: {4AABA96D-02D6-4243-8006-4DAC5805C6EC}[\Microsoft\XblGameSave\XblGameSaveTaskLogon] - (.Microsoft Corporation - XblGameSave Standby Task.) -- C:\WINDOWS\System32\XblGameSaveTask.exe [25600] =>.Microsoft Corporation O38 - TASK: {4C393186-F677-48C6-8F72-07FAAAC20A44}[\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [329216] =>.Microsoft Corporation® O38 - TASK: {4E048F47-75F4-435C-BA97-6C6CF9A3B882}[\GoogleUpdateTaskUserS-1-5-21-2376586121-489075749-3064592929-1001Core1d25cf378a6b83e] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\isa\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O38 - TASK: {4F4AAD0B-B6D8-4B46-BFA1-D686500D93DC}[\Microsoft\Windows\Media Center\ehDRMInit] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {513D7575-BA7B-4552-8C2E-E40B28473D0B}[\Microsoft\Windows\Media Center\PBDADiscovery] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {516A6112-EEB0-4717-A853-E72242102967}[\Microsoft\Windows\Windows Defender\Windows Defender Verification] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [329216] =>.Microsoft Corporation® O38 - TASK: {5212DDE9-4BBA-4580-AA8D-BBB6286969F2}[\AVAST Software\Avast settings backup] - (.AVAST Software - .) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {53A0D0F3-2AB7-42C8-9A34-EAC53A003CE0}[\Microsoft\Windows\Media Center\UpdateRecordPath] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {5524D044-E6E0-42C5-B0B4-867FFE335C83}[\Microsoft\Windows\Feedback\Siuf\DmClient] - (.Microsoft Corporation - Microsoft Feedback SIUF Deployment Manager.) -- C:\Windows\System32\dmclient.exe [82944] =>.Microsoft Corporation O38 - TASK: {559525A2-480B-4B5B-A9B1-0E24FF7F7AE7}[\Microsoft\XblGameSave\XblGameSaveTask] - (.Microsoft Corporation - XblGameSave Standby Task.) -- C:\WINDOWS\System32\XblGameSaveTask.exe [25600] =>.Microsoft Corporation O38 - TASK: {55E15EB6-947B-46A2-8B1B-D688F9C5621A}[\Microsoft\Windows\Media Center\DispatchRecoveryTasks] - (. - Travail du répartiteur de tâche de récupéra.) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {56AF8140-0A6A-4122-8118-33A6BFC1F150}[\Microsoft\Windows\Bluetooth\UninstallDeviceTask] - (.Microsoft Corporation - Tâche de désinstallation du périphérique Bl.) -- C:\Windows\System32\BthUdTask.exe [38400] =>.Microsoft Corporation O38 - TASK: {5A5FBA96-63A5-42B1-B8C9-8B9B748797BE}[\{877DD70A-0862-493F-AE62-0E875004CC37}] - (...) -- E:\autorun\autorun.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {5BE76D05-E907-4483-A798-5FEC6CC74550}[\Microsoft\Windows\UpdateOrchestrator\Schedule Scan] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [26624] =>.Microsoft Corporation O38 - TASK: {5F754140-B2D3-44DF-8C32-5B9C4743B8DA}[\Microsoft\Windows\Management\Provisioning\Logon] - (.Microsoft Corporation - Provisioning package runtime processing too.) -- C:\WINDOWS\system32\ProvTool.exe [51200] =>.Microsoft Corporation O38 - TASK: {67F89F97-7E7F-40CB-BC59-7FBB41596B4C}[\Microsoft\Windows\Workplace Join\Automatic-Device-Join] - (.Microsoft Corporation - Outil de ligne de commande DSREG.) -- C:\Windows\System32\dsregcmd.exe [493568] =>.Microsoft Corporation O38 - TASK: {6A4839A0-9389-4D00-861F-7DBB1D8ADCE8}[\Microsoft\Windows\rempl\shell-unlock] - (.Microsoft Corporation - remsh.) -- C:\Program Files\rempl\remsh.exe [740336] =>.Microsoft Corporation® O38 - TASK: {6C8129D6-21B9-4342-B683-D80C6608DA7B}[\Microsoft\Windows\UpdateOrchestrator\Maintenance Install] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [26624] =>.Microsoft Corporation O38 - TASK: {6D9761D1-66E8-4418-85D1-E76747A64F92}[\Microsoft\Windows\UpdateOrchestrator\Policy Install] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [26624] =>.Microsoft Corporation O38 - TASK: {719EE731-2059-48AA-8D60-B9B20763C212}[\Microsoft\Windows\AppID\PolicyConverter] - (.Microsoft Corporation - AppID Policy Converter Task.) -- C:\Windows\System32\appidpolicyconverter.exe [118784] =>.Microsoft Corporation O38 - TASK: {747D31F6-0414-4A6C-8618-A812EE63BDC0}[\Microsoft\Windows\Media Center\ActivateWindowsSearch] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {764E3506-78F0-432D-A4B4-AD604FCC7E46}[\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7685808] =>.Piriform Ltd® O38 - TASK: {782BC35D-FEEC-4AB2-815F-8C0920AEC6FD}[\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser] - (.Microsoft Corporation - Tâche de l’analyseur d’expérience de compte.) -- C:\Windows\System32\MbaeParserTask.exe [99328] =>.Microsoft Corporation O38 - TASK: {78B30E36-C3F8-4D7D-B883-D019A4EA00D4}[\Microsoft\Windows\WindowsBackup\Windows Backup Monitor] - (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\WINDOWS\System32\sdclt.exe [1132032] =>.Microsoft Corporation O38 - TASK: {7A43EB00-2282-4CE9-AB8D-280E67D9EB73}[\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] - (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\BFE.DLL [553984] =>.Microsoft Corporation O38 - TASK: {8084F61C-056C-4D70-AED2-BDFF7084C903}[\Microsoft\Windows\DiskCleanup\SilentCleanup] - (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) -- C:\WINDOWS\system32\cleanmgr.exe [210432] =>.Microsoft Corporation O38 - TASK: {83757CDF-CE74-416B-AFA0-66F1178CAC89}[\Microsoft\Windows\Media Center\OCURDiscovery] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {8453E9D9-CCDF-4209-B418-64D998E09A66}[\Microsoft\Windows\Windows Error Reporting\QueueReporting] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\WINDOWS\system32\wermgr.exe [139096] =>.Microsoft Windows® O38 - TASK: {86567B3E-DC7E-4239-A162-5E28DC5A323C}[\Microsoft\Windows\UpdateOrchestrator\Resume On Boot] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [26624] =>.Microsoft Corporation O38 - TASK: {894AA227-92D1-49F0-A12A-0139C63D0A83}[\Microsoft\Windows\SpacePort\SpaceManagerTask] - (.Microsoft Corporation - Storage Spaces Manager.) -- C:\WINDOWS\system32\spaceman.exe [29696] =>.Microsoft Corporation O38 - TASK: {8ADC0B09-1589-4758-8D0D-B3CD262782E2}[\Microsoft\Windows\Windows Defender\Windows Defender Cleanup] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [329216] =>.Microsoft Corporation® O38 - TASK: {8F907A19-0677-4665-B764-BAC2D4CFA3CC}[\Microsoft\Windows\Media Center\ReindexSearchRoot] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {913620C4-E1BB-47D1-B7B5-E78709849D8B}[\WPD\SqmUpload_S-1-5-21-2376586121-489075749-3064592929-1001] - (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\portabledeviceapi.dll [522752] =>.Microsoft Corporation O38 - TASK: {91FA2143-A40D-41E0-9EB6-6DDC370C4BAB}[\Microsoft\Windows\ApplicationData\CleanupTemporaryState] - (.Microsoft Corporation - Windows Application Data API Server.) -- C:\Windows\System32\Windows.Storage.ApplicationData.dll [263472] =>.Microsoft Windows® O38 - TASK: {9505F3EA-7D1A-44E7-93E1-95A9AF873A71}[\Microsoft\Windows\SpacePort\SpaceAgentTask] - (.Microsoft Corporation - Paramètres des espaces de stockage.) -- C:\Windows\System32\SpaceAgent.exe [113152] =>.Microsoft Corporation O38 - TASK: {96E3FED3-C330-4173-971B-EE54CCDA2772}[\microsoft\windows\applicationdata\appuriverifierinstall] - (.Microsoft Corporation - Vérificateur de l’inscription des gestionna.) -- C:\Windows\System32\AppHostRegistrationVerifier.exe [82432] =>.Microsoft Corporation O38 - TASK: {994204DC-BBE9-42B5-A873-707428D9BC83}[\Microsoft\Windows\SystemRestore\SR] - (.Microsoft Corporation - Tâches de fond de la protection du système.) -- C:\WINDOWS\system32\srtasks.exe [51200] =>.Microsoft Corporation O38 - TASK: {99C9E5C3-B0AA-4507-A2CA-F37B0AE65F9A}[\Microsoft\Windows\WCM\WiFiTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\Windows\System32\wifitask.exe [315736] =>.Microsoft Windows® O38 - TASK: {99FEFEF7-A972-4332-B440-C2BD437BAF47}[\CreateChoiceProcessTask] - (.BrowserChoice - .) -- C:\Windows\System32\browserchoice.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {9A9C666A-0706-44AC-83F2-260213D90394}[\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\Windows\System32\compattelrunner.exe [116064] =>.Microsoft Windows® O38 - TASK: {A341987A-1134-4A2D-8547-99A7A97ED708}[\Microsoft\Windows\Defrag\ScheduledDefrag] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\WINDOWS\system32\defrag.exe [180736] =>.Microsoft Corp. O38 - TASK: {A474CECD-FB48-4E95-998B-1998B59860B1}[\Microsoft\Windows\NlaSvc\WiFiTask] - (.Microsoft Corporation - Tâche sans fil en arrière-plan.) -- C:\WINDOWS\System32\WiFiTask.exe [315736] =>.Microsoft Windows® O38 - TASK: {A47C4BDC-8D82-46C8-AAC8-D8FFE3904792}[\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- C:\Program Files\Windows Defender\MpCmdRun.exe [329216] =>.Microsoft Corporation® O38 - TASK: {A6362D33-8883-4C98-809E-18CB255A62EF}[\Microsoft\Windows\Location\WindowsActionDialog] - (.Microsoft Corporation - Service Broker pour la boîte de dialogue Ac.) -- C:\Windows\System32\WindowsActionDialog.exe [48128] =>.Microsoft Corporation O38 - TASK: {AF692E72-A8F4-4E4B-B6B3-D04ED4F36953}[\Microsoft\Windows\Time Synchronization\SynchronizeTime] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\WINDOWS\system32\sc.exe [60416] =>.Microsoft Corporation O38 - TASK: {AFF0239D-5CB0-402E-992C-C60AAA486F96}[\Microsoft\Windows\Media Center\mcupdate] - (...) -- C:\WINDOWS\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {B1A69A39-C2CD-46B8-BBE2-F2674876BCCA}[\Microsoft\Windows\Media Center\SqlLiteRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {B2203C12-D2CB-4BE4-AF7E-47A80D1421FB}[\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask] - (.Microsoft Corporation - MDMAgent.) -- C:\Windows\System32\MDMAgent.exe [49664] =>.Microsoft Corporation O38 - TASK: {B557FFB5-5A80-47FD-BB16-74088B3B3ECB}[\Microsoft\Windows\Media Center\ConfigureInternetTimeService] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {B5B64F25-80AE-44FE-867B-845E018AF5EB}[\Microsoft\Windows\UPnP\UPnPHostConfig] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\Windows\System32\sc.exe [60416] =>.Microsoft Corporation O38 - TASK: {B8A3378F-1CD6-442D-8FB3-2C8223138FBB}[\Microsoft\Windows\Application Experience\StartupAppTask] - (.Microsoft Corporation - DLL de tâche d’analyse de démarrage.) -- C:\Windows\System32\Startupscan.dll [16384] =>.Microsoft Corporation O38 - TASK: {B8BB82E0-A599-43FE-81E6-F16989EE67D7}[\Microsoft\Windows\Media Center\PBDADiscoveryW1] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {BC104D43-DD4E-4521-916B-63B7D41FFA81}[\Microsoft\Windows\Location\Notifications] - (.Microsoft Corporation - Notification d'emplacement.) -- C:\Windows\System32\LocationNotificationWindows.exe [52736] =>.Microsoft Corporation O38 - TASK: {C26FB597-A088-44CD-9C40-8EFD8D509B4E}[\{0D7710F2-2968-4325-8AF5-D46826E94AB2}] - (...) -- C:\Users\isa\Downloads\chromeinstall-8u25 (3).exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {C35C3519-0A59-43C7-9D2C-06945933A62E}[\Microsoft\Windows\Media Center\PBDADiscoveryW2] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {C5A76C3A-AA08-4793-B8D6-CF5FD14923B8}[\Microsoft\Windows\WindowsUpdate\Scheduled Start] - (.Microsoft Corporation - Outil de configuration du Gestionnaire de c.) -- C:\Windows\System32\sc.exe [60416] =>.Microsoft Corporation O38 - TASK: {CB299623-10A9-4FFD-98F5-07269CFAE332}[\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver] - (.Microsoft Corporation - Outil de résolution des défaillances disque.) -- C:\Windows\System32\DFDWiz.exe [46080] =>.Microsoft Corporation O38 - TASK: {CB946C4B-3AAF-4CAE-9537-CBB7044D4308}[\Microsoft\Windows\Media Center\RecordingRestart] - (...) -- C:\WINDOWS\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {CBFDD5F6-CE40-4D99-9418-FA934721FF94}[\Microsoft\Windows\Speech\SpeechModelDownloadTask] - (.Microsoft Corporation - Speech Model Download Executable.) -- C:\Windows\System32\speech_onecore\Common\SpeechModelDownload.exe [99840] =>.Microsoft Corporation O38 - TASK: {CF3C25B9-BD66-4FB1-A158-CF2CEDC2143D}[\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display] - (.Microsoft Corporation - MusNotificationBroker.) -- C:\WINDOWS\System32\MusNotification.exe [206848] =>.Microsoft Corporation O38 - TASK: {D1320E4D-BCB2-4A16-BFC5-03A31FED3DB5}[\Microsoft\Windows\Media Center\RegisterSearch] - (...) -- C:\WINDOWS\ehome\ehPrivJob.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {D23FA029-FD1C-4DFD-A7FF-EB45072220CC}[\GoogleUpdateTaskUserS-1-5-21-2376586121-489075749-3064592929-1001Core] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\isa\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O38 - TASK: {D5E95A86-0E04-4372-8EC0-DCF3ECF48022}[\microsoft\windows\applicationdata\appuriverifierdaily] - (.Microsoft Corporation - Vérificateur de l’inscription des gestionna.) -- C:\Windows\System32\AppHostRegistrationVerifier.exe [82432] =>.Microsoft Corporation O38 - TASK: {D6ABDF6D-2AF3-41BF-BB02-45487352C0A9}[\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers] - (.Microsoft Corporation - Module d’installation de pilotes.) -- C:\WINDOWS\System32\drvinst.exe [116224] =>.Microsoft Corporation O38 - TASK: {D8C8E38A-6D88-442C-852A-AD8C7DB66F43}[\Microsoft\Windows\WindowsBackup\AutomaticBackup] - (.Microsoft Corporation - Moteur de sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdengin2.dll [1034752] =>.Microsoft Corporation O38 - TASK: {DBE886C1-D820-416A-9558-81BD408A8589}[\{3202C9E9-9579-448C-95F6-D5CA6F14944E}] - (...) -- I:\salix\fsx\Apps\FramaKioskTunePortable\FramaKioskTunePortable.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {DCBBB0A0-0C0C-4D77-A9B6-2FDFEDF0E53F}[\Microsoft\Windows\Sysmain\WsSwapAssessmentTask] - (.Microsoft Corporation - Hôte de service Superfetch.) -- C:\Windows\System32\sysmain.dll [772608] =>.Microsoft Corporation O38 - TASK: {DF813F91-15DC-49EE-B35E-C1F998EB6E6F}[\Microsoft\Windows\WindowsUpdate\sih] - (.Microsoft Corporation - Client SIH.) -- C:\Windows\System32\sihclient.exe [162304] =>.Microsoft Corporation O38 - TASK: {E1E4D487-F7E3-473F-BEB7-F1E5E9346CA7}[\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload] - (.Microsoft Corporation - Microsoft Feedback SIUF Deployment Manager.) -- C:\WINDOWS\system32\dmclient.exe [82944] =>.Microsoft Corporation O38 - TASK: {E3DC7258-99B4-4A67-8AA9-74DD1A2D499B}[\Microsoft\Windows\UpdateOrchestrator\Refresh Settings] - (.Microsoft Corporation - UsoClient.) -- C:\WINDOWS\System32\usoclient.exe [26624] =>.Microsoft Corporation O38 - TASK: {E6347392-A295-43DA-862D-CB0261290E75}[\GoogleUpdateTaskUserS-1-5-21-2376586121-489075749-3064592929-1001UA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\isa\AppData\Local\Google\Update\GoogleUpdate.exe [144200] =>.Google Inc® O38 - TASK: {E6CFE1E7-0ADA-4481-802D-4DFA9F65CD78}[\Microsoft\Windows\DUSM\dusmtask] - (.Microsoft Corporation - DUSM Task.) -- C:\Windows\System32\dusmtask.exe [27648] =>.Microsoft Corporation O38 - TASK: {EB6D9C70-6DB9-4E8C-9CF1-7C7210B21C1C}[\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\WINDOWS\system32\defrag.exe [180736] =>.Microsoft Corp. O38 - TASK: {EB81AA17-461E-4684-9864-C8C0AE774D7C}[\{8BEE093E-4B55-4753-A208-884387336159}] - (...) -- I:\logiciels\LibreOfficePortable_3.4.302.500-fr-r02.fmk\LibreOfficePortable\LibreOfficePortable.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {EDC172CA-666E-4A81-B883-38372CC71A44}[\Microsoft\Windows\Media Center\PeriodicScanRetry] - (...) -- C:\WINDOWS\ehome\MCUpdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {F17F7660-FD42-4F16-A012-883596B28162}[\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] - (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe [62976] =>.Microsoft Corporation O38 - TASK: {F39AED79-E013-4BA2-A0BA-C6C452EE8686}[\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup] - (.Microsoft Corporation - DLL du client de déploiement d’AppX.) -- C:\Windows\System32\AppxDeploymentClient.dll [313856] =>.Microsoft Corporation O38 - TASK: {F5877D0E-430E-4B5F-B327-F7C292E7D1EE}[\User_Feed_Synchronization-{B280043E-05CC-4323-B75B-0EFC1752C41E}] - (.Microsoft Corporation - Microsoft Feeds Synchronization.) -- C:\Windows\System32\msfeedssync.exe [13824] =>.Microsoft Corporation O38 - TASK: {F7581458-A1DF-44A5-AA28-2F12AD65621C}[\{0ADCCB6F-DA6C-4877-8D47-E0A5D4C2F6C0}] - (...) -- I:\logiciels\LibreOfficePortable_3.4.302.500-fr-r02.fmk\LibreOfficePortable\LibreOfficePortable.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {F81610B0-5C20-40BE-9250-BA3F2041E401}[\Microsoft\Windows\Media Center\MediaCenterRecoveryTask] - (...) -- C:\WINDOWS\ehome\mcupdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {F9B0D4C0-B7C6-4DB2-B4D9-BB66477DAF64}[\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector] - (.Microsoft Corporation - Module de diagnostics des erreurs de disque.) -- C:\Windows\System32\dfdts.dll [39936] =>.Microsoft Corporation ---\\ Applications lancées au démarrage du système (14) - 2s O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [StartCCC] . (.Advanced Micro Devices, Inc. - Catalyst® Control Center Launcher.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe =>.Advanced Micro Devices, Inc.® O4 - HKLM\..\Run: [Windows Mobile Device Center] . (.Microsoft Corporation - Gestionnaire pour appareils Windows Mobile.) -- C:\WINDOWS\WindowsMobile\wmdc.exe =>.Microsoft Corporation® O4 - HKLM\..\Run: [WindowsDefender] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Corporation O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [GoogleDriveSync] . (...) -- C:\Program Files\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe =>.Nokia O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\System32\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2376586121-489075749-3064592929-1007\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-2376586121-489075749-3064592929-1007\..\Run: [GoogleDriveSync] . (...) -- C:\Program Files\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - HKUS\S-1-5-21-2376586121-489075749-3064592929-1007\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-2376586121-489075749-3064592929-1007\..\Run: [PC Suite Tray] . (.Nokia - Nokia Launch Application.) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe =>.Nokia ---\\ Processus lancés (18) - 3s [MD5.C5DA4C98AFD65A3451DC8D0E3C7E2082] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [223216] [PID.1332] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.DB5BEA73EDAF19AC68B2C0FAD0F92B1A] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [390504] [PID.1292] =>.Apple Inc.® [MD5.C569311E8BC6CB3EEE640C623C0BFBD6] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [284872] [PID.1464] =>.Advanced Micro Devices, Inc.® [MD5.A6A7AD767BF5141665F5C675F671B3E1] - (.Protexis Inc. - PsiService PsiService.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [185632] [PID.2268] =>.Protexis Inc.® [MD5.D5C121A4E02B9474DF2AE5FBCE99D19D] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4563920] [PID.2356] =>.Malwarebytes Corporation® [MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.6076] =>.Google Inc® [MD5.F1E6DD5362156FA7E969AB9168CAF860] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [553456] [PID.8528] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.215220465FA5D356A444E42B84D16271] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3458504] [PID.9056] =>.Malwarebytes Corporation® [MD5.0A45EC5263B7C13202EE19E0D3DEC179] - (...) -- C:\Program Files\Google\Drive\googledrivesync.exe [40417680] [PID.7740] =>.Google Inc® [MD5.0A45EC5263B7C13202EE19E0D3DEC179] - (...) -- C:\Program Files\Google\Drive\googledrivesync.exe [40417680] [PID.2288] =>.Google Inc® [MD5.0A45EC5263B7C13202EE19E0D3DEC179] - (...) -- C:\Program Files\Google\Drive\googledrivesync.exe [40417680] [PID.10800] =>.Google Inc® [MD5.0A45EC5263B7C13202EE19E0D3DEC179] - (...) -- C:\Program Files\Google\Drive\googledrivesync.exe [40417680] [PID.3220] =>.Google Inc® [MD5.BFE1BFD65B75D4A804E201B8697B579D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [467408] [PID.5556] =>.Mozilla Corporation® [MD5.BFE1BFD65B75D4A804E201B8697B579D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [467408] [PID.6440] =>.Mozilla Corporation® [MD5.BFE1BFD65B75D4A804E201B8697B579D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [467408] [PID.5428] =>.Mozilla Corporation® [MD5.BFE1BFD65B75D4A804E201B8697B579D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [467408] [PID.10580] =>.Mozilla Corporation® [MD5.BFE1BFD65B75D4A804E201B8697B579D] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [467408] [PID.9364] =>.Mozilla Corporation® [MD5.579D44335F9A686047EA77F20C8DC12C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\ferir\Downloads\ZHPDiag3(1).exe [2929536] [PID.6656] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (38) - 2s G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients2.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://clients5.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://lh3.googleusercontent.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://mail.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ogs.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://plus.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. G2 - GCE: Preference [ferir][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [ferir][User Data\Default] [aghbiahbpaijignceidepookljebhfak] Google Drive G2 - GCE: Preference [ferir][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [ferir][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [ferir][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [ferir][User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.eyeo GmbH {AdBlock Plus} G2 - GCE: Preference [ferir][User Data\Default] [dgkkmcknielgdhebimdnfahpipajcpjn] Mailto: for Gmail™ G2 - GCE: Preference [ferir][User Data\Default] [ejjicmeblgpmajnghnpcppodonldlgfn] http://calendar.google.com/ =>.Google Inc. {Agenda} G2 - GCE: Preference [ferir][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [ferir][User Data\Default] [fgkeilefmpmbamgcejhjpiecahcbipip] Booking.com for Chrome™ =>.booking.com G2 - GCE: Preference [ferir][User Data\Default] [fllaojicojecljbmefodhfapmkghcbnh] =>.ga-extension-publishers {Désactivation Google Analytics} G2 - GCE: Preference [ferir][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [ferir][User Data\Default] [hcglmfcclpfgljeaiahehebeoaiicbko] Google Photos =>.Google Inc. G2 - GCE: Preference [ferir][User Data\Default] [hjpceadhnpnpdelkidbjdmoodafopfkp] Google Agenda - Mois : août 2016 G2 - GCE: Preference [ferir][User Data\Default] [hklklinneopmmfbiddikaemndcfahebl] liste volley wanze ce jour.xls - Goog... G2 - GCE: Preference [ferir][User Data\Default] [igpfdgkddihifgagcakpfclndnecokae] SNCB - Horaires & achat billets G2 - GCE: Preference [ferir][User Data\Default] [ioekoebejdcmnlefjiknokhhafglcjdl] http://www.dropbox.com/ =>.dropbox.com {Dropbox} G2 - GCE: Preference [ferir][User Data\Default] [kmhopmchchfpfdcdjodmpfaaphdclmlj] Gmail =>.Google Inc. G2 - GCE: Preference [ferir][User Data\Default] [ldlcanhjjddnnadcaneocjapkfbobgil] Google Agenda - Mois : mars 2017 G2 - GCE: Preference [ferir][User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] Application Launcher for Drive (by Google) =>.Google Inc. G2 - GCE: Preference [ferir][User Data\Default] [lneaknkopdijkpnocmklfnjbeapigfbh] http://maps.google.com G2 - GCE: Preference [ferir][User Data\Default] [mihcahmgecmbnbcchbopgniflfhgnkff] =>.Google Inc. {Verifier} G2 - GCE: Preference [ferir][User Data\Default] [mlomiejdfkolichcflejclcbmpeaniij] Ghostery =>.Ghostery Inc. G2 - GCE: Preference [ferir][User Data\Default] [ncdhjhgkajngplakbleljjnionpbnkbj] Google+ G2 - GCE: Preference [ferir][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [ferir][User Data\Default] [onlgmecjpnejhfeofkgbfgnmdlipdejb] http://picasaweb.google.com G2 - GCE: Preference [ferir][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [ferir][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (13) - 1s M0 - MFSP: prefs.js [ferir - glvlky40.default] http://mail.google.com/ =>.Google Inc. M1 - SPR:Search Page Redirection - C:\Program Files\Mozilla Firefox\extensions\belgiumeid@eid.belgium.be P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation P2 - FPN: [HKLM] [@nokia.com/EnablerPlugin] - (.Nokia.) -- C:\Program Files\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll =>.Nokia ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (10) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/ =>.Bing.com R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.14393.1715 (rs1_release_inmarket.170906-1810)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\WINDOWS\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (2) - 0s O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} . (.Microsoft Corporation - Search Helper for Internet Explorer.) -- C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll =>.Microsoft Corporation® O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>.Google Inc® ---\\ Raccourcis Global Startup (82) - 8s O4 - GS\Desktop [Administrateur]: ferir - Raccourci.lnk . (...) C:\Users\ferir O4 - GS\Desktop [Administrateur]: Google Drive.lnk . (...) C:\Users\ferir\Google Drive O4 - GS\Desktop [Administrateur]: liste inscriptions 2017.xls - Raccourci.lnk . (...) C:\Users\ferir\Google Drive\liste inscriptions 2017.xls.gsheet O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\ferir\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Video Win Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Backup and Sync from Google.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Desktop [ferir]: ferir - Raccourci.lnk . (...) C:\Users\ferir O4 - GS\Desktop [ferir]: Google Drive.lnk . (...) C:\Users\ferir\Google Drive O4 - GS\Desktop [ferir]: liste inscriptions 2017.xls - Raccourci.lnk . (...) C:\Users\ferir\Google Drive\liste inscriptions 2017.xls.gsheet O4 - GS\Desktop [ferir]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\ferir\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [ferir]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [ferir]: Video Win Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\sendTo [ferir]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [ferir]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\sendTo [ferir]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [ferir]: Backup and Sync from Google.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - GS\TaskBar [ferir]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [ferir]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [ferir]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\TaskBar [ferir]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [ferir]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Desktop [isa]: ferir - Raccourci.lnk . (...) C:\Users\ferir O4 - GS\Desktop [isa]: Google Drive.lnk . (...) C:\Users\ferir\Google Drive O4 - GS\Desktop [isa]: liste inscriptions 2017.xls - Raccourci.lnk . (...) C:\Users\ferir\Google Drive\liste inscriptions 2017.xls.gsheet O4 - GS\Desktop [isa]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\ferir\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [isa]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [isa]: Video Win Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\sendTo [isa]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [isa]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\sendTo [isa]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [isa]: Backup and Sync from Google.lnk . (...) C:\Program Files\Google\Drive\googledrivesync.exe =>.Google Inc® O4 - GS\TaskBar [isa]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [isa]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [isa]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files\Google\Picasa3\Picasa3.exe =>.Google Inc® O4 - GS\TaskBar [isa]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Programs [isa]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Duplicate Cleaner Free.lnk . (.DigitalVolcano Software Ltd - Duplicate Cleaner Free.) C:\Program Files\Duplicate Cleaner Free\DuplicateCleaner.exe {47BAC2B0DFFE6355543B28B6070F798E} =>.DigitalVolcano Software Ltd O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Video to Video.lnk . (.Media Converters - Video to Video.) C:\Program Files\Video to Video\vv.exe =>.Media Converters O4 - GS\CommonDesktop [Public]: Video Win Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\ferir\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\WINDOWS\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à niveau de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works.) C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: MiracastView.lnk . (.Microsoft Corporation - MiracastView.) C:\WINDOWS\MiracastView\MiracastView.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Movie Maker.lnk . (.Microsoft Corporation - Movie Maker.) C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Photo Gallery.lnk . (.Microsoft Corporation - Photo Gallery.) C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: PrintDialog.lnk . (.Microsoft Corporation - Print Dialog.) C:\WINDOWS\PrintDialog\PrintDialog.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Visionneuse Microsoft Office PowerPoint 2007.lnk . (...) C:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Mobile Device Center.lnk . (.Microsoft Corporation - Windows Mobile Device Center.) C:\Windows\Installer\{904CCF62-818D-4675-BC76-D37EB399F917}\wmdc.exe /show =>.Microsoft Corporation® ---\\ Modification Domaine/Adresses DNS (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{50c82281-7c7a-43f5-b9b5-88b7c68608f0}: DhcpNameServer = 192.168.1.4 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{c396742c-7176-4d16-b828-03e79cc8c943}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ Protocole additionnel (24) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation® O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Photo Gallery Album Download Protocol Handl.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation® O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ---\\ Logiciels installés (33) - 13s O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {63B5DA5A-477B-438D-A6A0-118787A4C71B} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: Assistant Mise à niveau de Windows 10 - (.Microsoft Corporation.) [HKLM] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft Corporation® O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM] -- {604582EB-8259-4ED6-9B1B-6F2494D4B640} =>.Google, Inc. O42 - Logiciel: Belgium e-ID middleware 4.1.20 (build 1779) - (.Belgian Government.) [HKLM] -- {4DDF16AE-8D5D-4027-A2D1-8CBB498E1779} =>.Belgian Government O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: D3DX10 - (..) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} O42 - Logiciel: Duplicate Cleaner Free 4.0.5 - (.DigitalVolcano Software Ltd.) [HKLM] -- Duplicate Cleaner Free {47BAC2B0DFFE6355543B28B6070F798E} =>.DigitalVolcano Software Ltd O42 - Logiciel: Gestionnaire pour appareils Windows Mobile - (.Microsoft Corporation.) [HKLM] -- {904CCF62-818D-4675-BC76-D37EB399F917} =>.Microsoft Corporation O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc. O42 - Logiciel: LAV Filters 0.55.3 - (.Hendrik Leppkes.) [HKLM] -- lavfilters_is1 =>.Hendrik Leppkes O42 - Logiciel: LibreOffice 5.4.2.2 - (.The Document Foundation.) [HKLM] -- {C7ED130E-8751-4248-AB98-D059CD9E7EAA} =>.The Document Foundation O42 - Logiciel: Malwarebytes version 3.3.1.2183 - (.Malwarebytes.) [HKLM] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Microsoft Search Enhancement Pack - (.Microsoft Corporation.) [HKLM] -- {CFF8B8E8-E086-4DE0-935F-FE22CAB54F80} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710} =>.Microsoft Corporation O42 - Logiciel: Mozilla Firefox 57.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 57.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Mozilla Thunderbird 45.7.0 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Thunderbird 45.7.0 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: MSVCRT110 - (.Microsoft.) [HKLM] -- {8E14DDC8-EA60-4E18-B3E3-1937104D5BDA} =>.Microsoft O42 - Logiciel: Package de pilotes Windows - Fedict SmartCard (11/30/2016 4.1.9) - (.Fedict.) [HKLM] -- A9FBB4D4E267FA9BF2CEBF564F02DB39E147B466 =>.Microsoft Windows® O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM] -- {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Update for Windows 10 (KB4023057) - (.Microsoft Corporation.) [HKLM] -- {6B40F9CF-FB01-42F5-A2B2-6C9C8F5FAC5A} =>.Microsoft Corporation O42 - Logiciel: Video to Video - (.Media Converters.) [HKLM] -- {7F95A744-78DA-4AED-A8F0-A0AF330B8411}_is1 =>.Media Converters O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: Windows 10 Update and Privacy Settings - (.Microsoft Corporation.) [HKLM] -- {542CC2C2-ABAF-4604-8723-DA296AF74540} =>.Microsoft Corporation ---\\ HKCU & HKLM Software Keys (92) - 13s HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\ALDI Logiciel d impression HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\AviSynth =>.Ben Rudiak-Gold HKLM\SOFTWARE\BackWeb HKLM\SOFTWARE\Baidu_Drp_pos =>.Baidu Technology HKLM\SOFTWARE\BEID =>.BEID HKLM\SOFTWARE\BrowserChoice =>.Microsoft Corporation HKLM\SOFTWARE\Colruyt HKLM\SOFTWARE\Corel =>.Corel HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Digital River =>.Digital River Entreprise HKLM\SOFTWARE\DivXNetworks =>.DivXNetworks HKLM\SOFTWARE\Driver-Soft =>.Driver-Soft HKLM\SOFTWARE\GEAR Software =>.GEAR Software HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\HaaliMkx =>.Haali Media HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\HPS =>.HPS HKLM\SOFTWARE\IncrediMail =>.IncrediMail HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Kodak =>.Kodak HKLM\SOFTWARE\LibreOffice =>.LibreOffice HKLM\SOFTWARE\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Mindscape =>.Mindscape HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nokia =>.Nokia HKLM\SOFTWARE\Nokia Mobile Phones =>.Nokia Inc. HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenOffice.org =>.SourceForge HKLM\SOFTWARE\optimidata HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PC Connectivity Solution =>.PC Connectivity Solution HKLM\SOFTWARE\PCSuite =>.Nokia Inc. HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\SMA HKLM\SOFTWARE\SOFTWARE =>.Unknown HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\Sony Corporation =>.Sony Corporation HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Sun Microsystems =>.Sun Microsystems HKLM\SOFTWARE\TeamViewer =>.TeamViewer HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\Trad-FR =>.Trad-Fr HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\VSO =>.VSO Software HKLM\SOFTWARE\Waves Audio =>.Waves Audio HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\LAV =>.LAV Inc HKCU\SOFTWARE\Lavalys =>.Lavalys HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Nokia =>.Nokia HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\VideoConverter-Media =>.ZJMedia Digital Technology Ltd. HKCU\SOFTWARE\VSO =>.VSO Software HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\Adobe =>.Adobe ---\\ Contenu des dossiers Programmes (255) - 13s O43 - CFD: 22/06/2016 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 10/02/2010 - [] D -- C:\Program Files\ATI =>.ATI Technologies, Inc® O43 - CFD: 23/11/2016 - [] AD -- C:\Program Files\ATI Technologies =>.ATI Technologies O43 - CFD: 15/02/2017 - [] D -- C:\Program Files\avast software =>.AVAST Software O43 - CFD: 04/02/2017 - [] AD -- C:\Program Files\BeID Minidriver =>.BEID O43 - CFD: 04/02/2017 - [] AD -- C:\Program Files\Belgium Identity Card =>.Belgium Identity Card O43 - CFD: 03/06/2012 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 01/10/2017 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 30/10/2012 - [] D -- C:\Program Files\Coktel O43 - CFD: 15/02/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 10/02/2010 - [] D -- C:\Program Files\Corel =>.Corel Corporation O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation O43 - CFD: 02/11/2010 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 15/11/2017 - [] D -- C:\Program Files\Duplicate Cleaner Free =>.Digital Volcano O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 30/08/2010 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 06/11/2012 - [] D -- C:\Program Files\FreeTime =>.FreeTime O43 - CFD: 13/06/2013 - [] D -- C:\Program Files\Fuji_Service_Photo {62203C7798FB3409F37A1EA589425260} O43 - CFD: 24/10/2016 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 15/02/2014 - [] D -- C:\Program Files\GUMC403.tmp =>.Google Inc® O43 - CFD: 29/01/2013 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 25/11/2014 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 30/08/2010 - [] D -- C:\Program Files\JRE =>.Sun Microsystems, Inc.® O43 - CFD: 28/01/2014 - [] D -- C:\Program Files\Kodak =>.Kodak O43 - CFD: 04/11/2017 - [] AD -- C:\Program Files\LibreOffice 5 =>.LibreOffice O43 - CFD: 12/01/2017 - [] D -- C:\Program Files\MacGo =>.MacGo Inc. O43 - CFD: 09/11/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 11/06/2014 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee O43 - CFD: 16/06/2010 - [] D -- C:\Program Files\Microsoft =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 06/01/2011 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 10/02/2010 - [] D -- C:\Program Files\Microsoft Office Suite Activation Assistant =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] AD -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 10/02/2010 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 10/10/2012 - [] AD -- C:\Program Files\Microsoft Works =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 27/12/2010 - [] D -- C:\Program Files\Mindscape =>.Mindscape O43 - CFD: 15/11/2017 - [] AD -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 15/11/2017 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 15/02/2017 - [] AD -- C:\Program Files\Mozilla Thunderbird =>.Mozilla O43 - CFD: 22/06/2015 - [] D -- C:\Program Files\Mozilla Thunderbird.bak =>.Mozilla Corporation® O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 24/06/2010 - [0] D -- C:\Program Files\MSXML 4.0 =>.Microsoft Corporation O43 - CFD: 10/11/2017 - [0] D -- C:\Program Files\NirSoft =>.NirSoft O43 - CFD: 18/04/2014 - [] D -- C:\Program Files\Nokia =>.Nokia O43 - CFD: 30/08/2010 - [] D -- C:\Program Files\OpenOffice.org 3 =>.SourceForge O43 - CFD: 18/04/2014 - [] D -- C:\Program Files\PC Connectivity Solution =>.Nokia Inc. O43 - CFD: 29/10/2012 - [] D -- C:\Program Files\PDFCreator =>.Philip Chinery O43 - CFD: 28/01/2014 - [0] D -- C:\Program Files\Pixum =>.Steffen Schirmer O43 - CFD: 30/08/2010 - [] D -- C:\Program Files\PlayReady =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 17/11/2017 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation® O43 - CFD: 28/03/2013 - [0] D -- C:\Program Files\Sony =>.Sony O43 - CFD: 19/01/2013 - [] D -- C:\Program Files\Sony Media Go Install =>.Sony Corporation O43 - CFD: 15/06/2010 - [0] HD -- C:\Program Files\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 15/11/2017 - [] AD -- C:\Program Files\Video to Video =>.Media Converters O43 - CFD: 12/11/2017 - [] AD -- C:\Program Files\Video Win Movie Maker =>.Microsoft Corporation O43 - CFD: 23/02/2017 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 15/11/2017 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 12/11/2017 - [] AD -- C:\Program Files\Windows Live =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 15/11/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 03/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 27/02/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALDI Logiciel d impression O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc O43 - CFD: 04/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belgium - eID =>.eID Belgium O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Essentials 4 O43 - CFD: 10/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Genius O43 - CFD: 15/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Cleaner Free =>.Digital Volcano O43 - CFD: 28/01/2010 - [0] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud =>.Apple Inc. O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 23/11/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabelPrint O43 - CFD: 15/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters =>.Hendrik Leppkes O43 - CFD: 04/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.4 =>.LibreOffice O43 - CFD: 16/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 09/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 23/11/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mindscape =>.Mindscape O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia =>.Nokia O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite O43 - CFD: 23/11/2016 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.2 =>.SourceForge O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 =>.Google Inc. O43 - CFD: 23/11/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power2Go =>.Power2Go O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerDVD Copy =>.CyberLink Corporation O43 - CFD: 03/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 15/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video to Video =>.Media Converters O43 - CFD: 12/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Win Movie Maker =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VTech =>.VTech O43 - CFD: 07/08/2014 - [] D -- C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1 =>.GEAR Software, Inc. O43 - CFD: 22/06/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 17/11/2010 - [] D -- C:\ProgramData\Alwil Software =>.ALWIL Software O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 15/04/2016 - [] D -- C:\ProgramData\AppData O43 - CFD: 17/02/2015 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 19/07/2012 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 23/11/2016 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 15/02/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 27/02/2015 - [] D -- C:\ProgramData\Baidu =>.Baidu O43 - CFD: 28/10/2012 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org O43 - CFD: 30/08/2010 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 11/06/2013 - [] D -- C:\ProgramData\Colruyt_Service_Photo O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 10/02/2010 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 05/10/2012 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 23/11/2016 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 29/10/2012 - [] D -- C:\ProgramData\DVD Shrink =>.DVD Shrink O43 - CFD: 30/08/2010 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 13/06/2013 - [] D -- C:\ProgramData\Fuji_Service_Photo O43 - CFD: 02/12/2011 - [] D -- C:\ProgramData\Google =>.Google O43 - CFD: 30/09/2017 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 25/11/2013 - [] D -- C:\ProgramData\hps =>.HPS O43 - CFD: 30/01/2011 - [] D -- C:\ProgramData\Installations =>.Unknown O43 - CFD: 18/04/2016 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab O43 - CFD: 01/12/2013 - [] D -- C:\ProgramData\Kodak =>.Kodak O43 - CFD: 09/11/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 09/11/2012 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 30/08/2010 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 04/02/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 06/01/2011 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 30/08/2010 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 30/10/2012 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 08/12/2012 - [] D -- C:\ProgramData\Nokia =>.Nokia O43 - CFD: 08/12/2012 - [] D -- C:\ProgramData\NokiaInstallerCache =>.Nokia Inc. O43 - CFD: 10/02/2010 - [] D -- C:\ProgramData\Office Genuine Advantage =>.Microsoft Corporation O43 - CFD: 17/02/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 28/12/2016 - [] D -- C:\ProgramData\PC Suite =>.Nokia Inc. O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 27/02/2015 - [0] D -- C:\ProgramData\RpData O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 28/03/2013 - [] D -- C:\ProgramData\Sony Corporation =>.Sony Corporation O43 - CFD: 10/02/2010 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 28/10/2012 - [] AD -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 26/11/2013 - [] D -- C:\ProgramData\tmp =>.Legitimate O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 12/11/2017 - [] D -- C:\ProgramData\vsosdk =>.VSO Software O43 - CFD: 05/12/2011 - [] D -- C:\ProgramData\VTech =>.VTech O43 - CFD: 07/08/2011 - [] D -- C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} =>.Apple Inc. O43 - CFD: 22/06/2016 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe O43 - CFD: 15/02/2017 - [] AD -- C:\Program Files\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 17/02/2015 - [] D -- C:\Program Files\Common Files\Apple =>.Apple Inc. O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Common Files\ATI Technologies =>.ATI Technologies O43 - CFD: 10/02/2010 - [] D -- C:\Program Files\Common Files\Corel =>.Corel Corporation O43 - CFD: 14/06/2010 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield O43 - CFD: 24/10/2016 - [] D -- C:\Program Files\Common Files\Java =>.Oracle O43 - CFD: 23/11/2016 - [] AD -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 01/12/2013 - [] D -- C:\Program Files\Common Files\MSSoap =>.Microsoft Corporation O43 - CFD: 18/04/2014 - [] D -- C:\Program Files\Common Files\Nokia =>.Nokia O43 - CFD: 30/01/2011 - [] D -- C:\Program Files\Common Files\PCSuite =>.Nokia Inc. O43 - CFD: 10/02/2010 - [] D -- C:\Program Files\Common Files\Protexis =>.Protexis Inc. O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation O43 - CFD: 28/03/2013 - [] D -- C:\Program Files\Common Files\Sony Shared =>.Sony Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation O43 - CFD: 12/11/2017 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 29/10/2012 - [] D -- C:\Program Files\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 30/09/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 10/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\cerasus O43 - CFD: 10/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 10/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 15/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\DigitalVolcano =>.DigitalVolcano O43 - CFD: 17/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 08/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Google =>.Google O43 - CFD: 04/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 23/11/2016 - [] D -- C:\Users\ferir\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 23/11/2016 - [0] D -- C:\Users\ferir\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 10/11/2017 - [] SD -- C:\Users\ferir\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 10/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Nokia =>.Nokia O43 - CFD: 04/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\OpenOffice.org =>.OpenOffice.org O43 - CFD: 04/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\PC Suite =>.Nokia Inc. O43 - CFD: 15/02/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Skype =>.Skype O43 - CFD: 16/02/2017 - [] D -- C:\Users\ferir\AppData\Roaming\Thunderbird =>.Thunderbird O43 - CFD: 18/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 13/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\VSO =>.VSO Software O43 - CFD: 19/11/2017 - [] D -- C:\Users\ferir\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 04/11/2017 - [] D -- C:\Users\ferir\AppData\Local\AMD =>.AMD O43 - CFD: 15/02/2017 - [0] SHD -- C:\Users\ferir\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Users\ferir\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 16/02/2017 - [] D -- C:\Users\ferir\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 07/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 06/11/2017 - [] D -- C:\Users\ferir\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 03/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Google =>.Google O43 - CFD: 15/02/2017 - [0] SHD -- C:\Users\ferir\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 12/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] D -- C:\Users\ferir\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 20/02/2017 - [] D -- C:\Users\ferir\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 03/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Microsoft_Corporation =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Users\ferir\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 15/02/2017 - [0] D -- C:\Users\ferir\AppData\Local\NetworkTiles =>.NetworkTiles O43 - CFD: 10/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 12/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Power2Go =>.Power2Go O43 - CFD: 01/10/2017 - [] D -- C:\Users\ferir\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [] D -- C:\Users\ferir\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 19/11/2017 - [] D -- C:\Users\ferir\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [0] SHD -- C:\Users\ferir\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 16/02/2017 - [] D -- C:\Users\ferir\AppData\Local\Thunderbird =>.Thunderbird O43 - CFD: 15/02/2017 - [] D -- C:\Users\ferir\AppData\Local\TileDataLayer =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Users\ferir\AppData\Local\UNP =>.Microsoft Corporation O43 - CFD: 08/11/2017 - [] D -- C:\Users\ferir\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 19/11/2017 - [] D -- C:\Users\ferir\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 01/10/2017 - [0] D -- C:\Users\ferir\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 15/02/2017 - [] RD -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 15/11/2017 - [] RD -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 16/07/2016 - [] D -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 15/11/2017 - [] RD -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [] RD -- C:\Users\ferir\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Users\Default\AppData\Local\Google =>.Google O43 - CFD: 23/11/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Users\Default User\AppData\Local\Google =>.Google O43 - CFD: 23/11/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 16/07/2016 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 27/02/2015 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PCCDisabled O43 - CFD: 26/12/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 23/11/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 24/11/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DataSharing =>.DataSharing O43 - CFD: 11/12/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 23/11/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 25/11/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 01/12/2016 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 07/02/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s O106 - SIOI: Google Drive Shell extension [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google Inc® O106 - SIOI: Google Drive Shell extension [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google Inc® O106 - SIOI: Google Drive Shell extension [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\googledrivesync32.dll =>.Google Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\\ Raccourcis de menus conceptuels (SCMH) (29) - 2s O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH1: EPP - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Corporation O108 - CMH1: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google Inc® O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH2: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google Inc® O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: EPP - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Corporation O108 - CMH4: GDContextMenu - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files\Google\Drive\contextmenu32.dll =>.Google Inc® O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH5: ACE - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Desktop Control Panel.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll =>.Advanced Micro Devices, Inc.® O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Orphan.) O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: WorkFolders - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: PintoStartScreen - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: EPP - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Corporation O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Image File Execution Options (18) - 5s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation® O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Enumération des clés StartupReg (11) - 0s O53 - SMSR:HKLM\...\startupreg\Adobe ARM [Key] . (...) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (...) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc. O53 - SMSR:HKLM\...\startupreg\CLMLServer [Key] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe =>.CyberLink O53 - SMSR:HKLM\...\startupreg\Device Detection [Key] . (.Copyright (C) 2012 by IP Labs GmbH - .) -- C:\Program Files\Fuji_Service_Photo\Fuji Print\dd.exe O53 - SMSR:HKLM\...\startupreg\NokiaSuite.exe [Key] . (.Nokia - Nokia Suite.) -- C:\Program Files\Nokia\Nokia Suite\NokiaSuite.exe =>.Nokia O53 - SMSR:HKLM\...\startupreg\PC Suite Tray [Key] . (.Nokia - Nokia Launch Application.) -- C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe =>.Nokia O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (...) -- C:\Program Files\QuickTime\qttask.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\RtHDVCpl [Key] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe =>.Realtek Semiconductor O53 - SMSR:HKLM\...\startupreg\Sidebar [Key] . (...) -- C:\Program Files\Windows Sidebar\sidebar.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\StartCCC [Key] . (...) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (.not file.) ---\\ Liste des pilotes du système (70) - 17s O58 - SDL:2016/07/16 09:24:54 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [85856] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1038176] =>.Microsoft Windows® O58 - SDL:2009/07/07 22:48:14 A . (.Advanced Micro Devices Inc. - AMD SB700/800 IDE Driver.) -- C:\WINDOWS\System32\drivers\amdide.sys [11832] =>.Advanced Micro Devices, Inc.® O58 - SDL:2009/04/28 08:03:40 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [55864] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/07/16 09:24:54 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [215392] =>.Microsoft Windows® O58 - SDL:2009/04/28 08:03:40 A . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [23096] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/07/16 09:24:54 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [116576] =>.Microsoft Windows® O58 - SDL:2016/04/18 09:34:54 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT3.sys [91160] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/16 20:01:38 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [19525104] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/16 20:01:36 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [542192] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2009/05/05 10:00:28 A . (.Advanced Micro Devices Inc. - AMD PCIE Filter Driver for ATI PCIE chipset.) -- C:\WINDOWS\System32\drivers\AtiPcie.sys [14392] =>.Advanced Micro Devices, Inc.® O58 - SDL:2010/01/09 00:54:44 A . (.ATI Technologies Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atipmdag.sys [5191168] =>.ATI Technologies Inc. O58 - SDL:2016/07/16 09:24:54 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn.sys [8192] =>.Windows (R) Win 7 DDK provider O58 - SDL:2016/07/16 09:24:54 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [8192] =>.Windows (R) Win 7 DDK provider O58 - SDL:2014/12/15 02:59:20 A . (.Baidu, Inc. - Baidu Antivirus Hook Base.) -- C:\WINDOWS\System32\drivers\Bhbase.sys [47456] =>.Baidu Online Network Technology (Beijing)Co., Ltd® O58 - SDL:2012/10/19 04:52:30 A . (.Windows (R) Win 7 DDK provider - IEEE-1284.4-1999 Driver.) -- C:\WINDOWS\System32\drivers\Dot4.sys [137632] =>.Hewlett-Packard Company® O58 - SDL:2012/10/19 04:52:32 A . (.Windows (R) Win 7 DDK provider - IEEE-1284.4 Print Class Driver.) -- C:\WINDOWS\System32\drivers\Dot4Prt.sys [22432] =>.Hewlett-Packard Company® O58 - SDL:2006/12/19 14:29:36 A . (.USB Smart Card Reader - USB Smart Card Reader.) -- C:\WINDOWS\System32\drivers\EMVSCARD.sys [20736] =>.USB Smart Card Reader O58 - SDL:2016/07/16 09:24:54 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [56672] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:57 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [25600] =>.Intel(R) Corporation O58 - SDL:2016/07/16 09:24:57 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [66560] =>.Intel(R) Corporation O58 - SDL:2016/07/16 09:24:55 A . (.Intel Corporation - Intel(R) Atom(TM) Processor GPIO Controller.) -- C:\WINDOWS\System32\drivers\iaiogpio.sys [22016] =>.Intel Corporation O58 - SDL:2016/07/16 09:24:54 A . (.Intel Corporation - Intel(R) Atom(TM) Processor I2C Controller.) -- C:\WINDOWS\System32\drivers\iaioi2c.sys [61936] =>.Intel Corporation O58 - SDL:2016/07/16 09:24:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [524640] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [333664] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [94048] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [89952] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [85856] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [69472] =>.Microsoft Windows® O58 - SDL:2017/11/01 08:54:56 A . (...) -- C:\WINDOWS\System32\drivers\mbae.sys [59896] =>.Malwarebytes Corporation® O58 - SDL:2017/11/17 21:06:00 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [221112] =>.Malwarebytes Corporation® O58 - SDL:2016/07/16 09:24:54 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [52064] =>.Microsoft Windows® O58 - SDL:2016/11/23 17:59:30 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [56672] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [464736] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [58208] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:25:01 A . (...) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [62976] =>.Microsoft Corporation O58 - SDL:2016/07/16 09:24:54 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [119136] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [142176] =>.Microsoft Windows® O58 - SDL:2012/10/17 13:53:46 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys [19072] =>.Nokia O58 - SDL:2016/07/16 09:24:54 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [51552] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [54624] =>.Microsoft Windows® O58 - SDL:2004/05/19 12:33:44 A . (.Sonic Solutions - Px Engine Device Driver for Windows 2000/XP.) -- C:\WINDOWS\System32\drivers\pxhelp20.sys [20016] =>.Sonic Solutions O58 - SDL:2017/01/23 20:48:14 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 32-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x86.sys [746752] =>.Realtek Semiconductor Corp® O58 - SDL:2010/04/06 17:13:58 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHDA.sys [3066912] =>.Realtek Semiconductor Corp® O58 - SDL:2016/07/16 09:24:53 A . (.Realtek Semiconductor Corporation - Realtek RTL8192S USB NDIS Driver.) -- C:\WINDOWS\System32\drivers\RTL8192su.sys [596992] =>.Realtek Semiconductor Corporation O58 - SDL:2016/07/16 09:24:53 A . (.Realtek Semiconductor Corporation - Realtek WLAN USB NDIS Driver 42899.) -- C:\WINDOWS\System32\drivers\rtwlanu.sys [4340224] =>.Realtek Semiconductor Corporation O58 - SDL:2016/07/16 09:24:54 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [41312] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:54 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [79200] =>.Microsoft Windows® O58 - SDL:2016/09/05 05:47:32 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [109184] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/09/05 05:47:38 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [147072] =>.Samsung Electronics CO., LTD.® O58 - SDL:2016/11/10 09:57:46 A . (...) -- C:\WINDOWS\System32\drivers\staport.sys [39832] =>.AVAST Software a.s.® O58 - SDL:2016/07/16 09:24:55 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [26976] =>.Microsoft Windows® O58 - SDL:2009/12/22 01:26:36 A . (.Advanced Micro Devices - AMD USB Filter Driver.) -- C:\WINDOWS\System32\drivers\usbfilter.sys [30392] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/07/16 09:24:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR X86-32.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [149856] =>.Microsoft Windows® O58 - SDL:2016/07/16 09:24:55 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [276832] =>.Microsoft Windows® O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\ANSI.SYS [9029] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\country.sys [27097] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\HIMEM.SYS [4768] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\KEY01.SYS [42809] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\NTDOS.SYS [27866] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:42 A . (...) -- C:\WINDOWS\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:44 A . (...) -- C:\WINDOWS\System32\NTIO.SYS [33968] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\NTIO404.SYS [34688] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\NTIO411.SYS [35776] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\NTIO412.SYS [35552] =>.Microsoft Corporation O58 - SDL:2017/11/08 21:41:43 A . (...) -- C:\WINDOWS\System32\NTIO804.SYS [34688] =>.Microsoft Corporation ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (1) - 64s O61 - LFC: 2017/11/13 22:05:07 A . (..) -- C:\Users\ferir\AppData\Roaming\inst.exe [87608] {6308F4D518EFC95492C7A0AFEB7D233E} ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\WINDOWS\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\WINDOWS\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\IEXPLORE.EXE =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %* O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (4) - 11s O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM]{632F07F3-19A1-4d16-A23F-E6CE9486BAB5} [DefaultScope] - (Microsoft (Bing)) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM]{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ =>.Google Inc. ---\\ Enumère les services démarrés par Svchost (45) - 1s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [161792] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [161792] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1098752] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [827392] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\System32\iscsiexe.dll [117760] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [96768] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\System32\schedsvc.dll [733184] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\System32\wbem\WMIsvc.dll [184832] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\WINDOWS\System32\browser.dll [108032] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\WINDOWS\System32\sessenv.dll [331776] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\System32\Windows.SharedPC.AccountManager.dll [120320] =>.Microsoft Corporation O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\WINDOWS\System32\dcpsvc.dll [155648] =>.Microsoft Corporation O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\WINDOWS\System32\RDXService.dll [473600] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\System32\dmwappushsvc.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [310272] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\WINDOWS\System32\Windows.Internal.Management.dll [298496] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [159232] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [144384] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\System32\themeservice.dll [55296] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\System32\XboxNetApiSvc.dll [828928] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\WINDOWS\System32\lfsvc.dll [30208] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\WINDOWS\System32\WpnService.dll [195584] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\WINDOWS\System32\irmon.dll [20992] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [93184] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [561152] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\WINDOWS\System32\mprdim.dll [431104] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [482304] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\WINDOWS\System32\tapisrv.dll [254976] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [1890304] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [797696] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\WINDOWS\System32\shsvcs.dll [566784] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\System32\profsvc.dll [268800] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [579072] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [822272] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\WINDOWS\System32\flightsettings.dll [517632] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [183296] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [740864] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [704512] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\System32\srvsvc.dll [234496] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\System32\wlidsvc.dll [1584128] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\System32\usocore.dll [427008] =>.Microsoft Corporation ---\\ Recherche des packages WindowsInstaller (95) - 21s [MD5.72888A4512084F0DF9B4D02EA508679F] [WIS][2014/11/13 13:57:11] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\130d574.msi [26112] =>.Google Inc. [MD5.E17669EA00DC0C683777F674C02681CA] [WIS][2010/05/21 13:12:46] (.OpenOffice.org - OpenOffice.org 3.2.) -- C:\WINDOWS\Installer\1714cb.msi [3098112] =>.OpenOffice.org [MD5.CB08D06671939E6832463F20E8B413C4] [WIS][2016/11/30 16:28:20] (.Belgian Government - Belgium e-ID middleware 4.1.20 (build 1779).) -- C:\WINDOWS\Installer\1987a5b2.msi [12578816] =>.Belgian Government [MD5.D11C4A1607D8F187AF06DDC249DC5288] [WIS][2013/06/15 15:31:57] (.Aedge Performance BCN SL - ForceDownload.) -- C:\WINDOWS\Installer\1c4fe7.msi [3807232] =>.SUP.PCSpeedUp [MD5.368378DB09895B7A5B9189B68AA99974] [WIS][2013/06/15 15:32:30] (.Aedge Performance BCN - Fissa.) -- C:\WINDOWS\Installer\1c4fed.msi [1290240] =>.SUP.PCSpeedUp [MD5.19A665988BA2E2C24261EEA6AFD1B353] [WIS][2012/12/08 08:33:47] (.Nokia - MSVC90_x86.) -- C:\WINDOWS\Installer\1cf1a3.msi [28236288] =>.Nokia [MD5.44AC5FA411BDC34CF17DB30422612742] [WIS][2012/12/08 08:33:50] (.Nokia - Microsoft_VC100_CRT_SP1.) -- C:\WINDOWS\Installer\1cf1a9.msi [503808] =>.Nokia [MD5.C24E2D93E212227B605849A44BB97397] [WIS][2016/05/20 09:34:54] (.Belgian Government - Belgium e-ID middleware 4.1.18 (build 1730).) -- C:\WINDOWS\Installer\21208b.msi [12578816] =>.Belgian Government [MD5.6B3B407E30E7D4C46F0F2327D63789FA] [WIS][2010/11/02 20:43:07] (.Nokia - MSVC80_x86_v2.) -- C:\WINDOWS\Installer\279284.msi [12815360] =>.Nokia [MD5.33DE59D1617E6B2D1547015C065AF220] [WIS][2015/11/06 21:17:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c97e.msi [798208] =>.Advanced Micro Devices, Inc. [MD5.ED4D8BE359482F0AB4A121BFFAC58004] [WIS][2014/11/11 09:49:56] (.Advanced Micro Devices, Inc. - Branding.) -- C:\WINDOWS\Installer\2c983.msi [439808] =>.Advanced Micro Devices, Inc. [MD5.DD2996956A5FF586E139A0F6E282A1F1] [WIS][2015/11/06 21:17:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c988.msi [936448] =>.Advanced Micro Devices, Inc. [MD5.B5FBD70BF8821E90DAD1153B9694B5F6] [WIS][2015/11/06 21:14:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c98d.msi [761856] =>.Advanced Micro Devices, Inc. [MD5.E4F68C8A893EDDFAED7BA288250EB36A] [WIS][2015/11/06 21:14:38] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c992.msi [729600] =>.Advanced Micro Devices, Inc. [MD5.7728BB97625301E150865031564F5F15] [WIS][2015/11/06 21:14:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c997.msi [751104] =>.Advanced Micro Devices, Inc. [MD5.F9AC9FB191D441823C1052F5FEBEE1EE] [WIS][2015/11/06 21:14:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c99c.msi [856064] =>.Advanced Micro Devices, Inc. [MD5.F42E649718BB3849F98409E503DE63ED] [WIS][2015/11/06 21:15:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9a1.msi [710144] =>.Advanced Micro Devices, Inc. [MD5.608A1F5C35480A0BAAC504D7E0772F51] [WIS][2015/11/06 21:15:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9a6.msi [738304] =>.Advanced Micro Devices, Inc. [MD5.FBE93E0EF7EB12C553E4C3956DE3D92C] [WIS][2015/11/06 21:15:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9ab.msi [732160] =>.Advanced Micro Devices, Inc. [MD5.9B62B5036A4A8E3D9902A8A4B7B3386D] [WIS][2015/11/06 21:15:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9b0.msi [747008] =>.Advanced Micro Devices, Inc. [MD5.77CDA6654DAB7014F4F93141BC6AE9B1] [WIS][2015/11/06 21:15:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9b5.msi [759808] =>.Advanced Micro Devices, Inc. [MD5.AA563DB9A625AE9C99501CAD6705945E] [WIS][2015/11/06 21:15:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9ba.msi [736256] =>.Advanced Micro Devices, Inc. [MD5.2B5DA6F4DA399028F4FE7681A29C68B8] [WIS][2015/11/06 21:15:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9bf.msi [780800] =>.Advanced Micro Devices, Inc. [MD5.A314040F23826FE89BB621D0E754EEB3] [WIS][2015/11/06 21:16:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9c4.msi [760832] =>.Advanced Micro Devices, Inc. [MD5.CDB424F62BA826E303A0C068E113040B] [WIS][2015/11/06 21:16:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9c9.msi [729600] =>.Advanced Micro Devices, Inc. [MD5.4C83D2D27E74DC8A1BC1A2D6406A51C2] [WIS][2015/11/06 21:16:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9ce.msi [723968] =>.Advanced Micro Devices, Inc. [MD5.0684EADD0C3C71215EEB2AC5128217A3] [WIS][2015/11/06 21:16:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9d3.msi [755200] =>.Advanced Micro Devices, Inc. [MD5.3E83B039033236F00A35F062DCD8BB50] [WIS][2015/11/06 21:16:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9d8.msi [738816] =>.Advanced Micro Devices, Inc. [MD5.A63E2A0DEF6F6CBC5053C4810CB11ED0] [WIS][2015/11/06 21:16:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9dd.msi [837120] =>.Advanced Micro Devices, Inc. [MD5.372FC3CF695B500D0183DE0F9A107953] [WIS][2015/11/06 21:16:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9e2.msi [728064] =>.Advanced Micro Devices, Inc. [MD5.2DB7B2D0A36DC635B3F8AC774CAC02C1] [WIS][2015/11/06 21:17:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9e7.msi [813056] =>.Advanced Micro Devices, Inc. [MD5.A03616C15CDAE787ADD7FE88F95E856E] [WIS][2015/11/06 21:17:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9ec.msi [742912] =>.Advanced Micro Devices, Inc. [MD5.D5D78F8EB23EE410028D4AB426AF84FD] [WIS][2015/11/06 21:17:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9f1.msi [731648] =>.Advanced Micro Devices, Inc. [MD5.F23AC48170EF3246A0B9CECA08270D9B] [WIS][2015/11/06 21:17:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2c9f6.msi [737280] =>.Advanced Micro Devices, Inc. [MD5.0B0CBB8924170A643929EF61E688824E] [WIS][2015/11/06 21:18:02] (.Advanced Micro Devices, Inc. - Catalyst Control Center Utility Package.) -- C:\WINDOWS\Installer\2c9fb.msi [332800] =>.Advanced Micro Devices, Inc. [MD5.507A56B4423E21E379A821FD771AA363] [WIS][2015/11/06 21:18:38] (.Advanced Micro Devices, Inc. - AMD Fuel.) -- C:\WINDOWS\Installer\2ca00.msi [2882560] =>.Advanced Micro Devices, Inc. [MD5.59C74865D50EEAFA144A0D0D8F5F52BB] [WIS][2015/11/06 21:14:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2ca05.msi [56514048] =>.Advanced Micro Devices, Inc. [MD5.E13855881A5A4155DFBD79B395B62C0A] [WIS][2014/12/13 21:55:11] (.Apple Inc. - Apple Application Support Installer.) -- C:\WINDOWS\Installer\2dc16ef.msi [33132544] =>.Apple Inc. [MD5.F0708EAC49A5B09F3FBA3708586A663C] [WIS][2014/12/13 21:55:19] (.Apple Inc. - iCloud for Windows installer.) -- C:\WINDOWS\Installer\2dc181a.msi [16146432] =>.Apple Inc. [MD5.3E98DC57946E9B5B3B8789A464F7E670] [WIS][2010/04/16 16:35:58] (.ATI Technologies, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\304cf.msi [448512] =>.ATI Technologies, Inc. [MD5.11D2BAE979C0BEF473AF0E74FB65395B] [WIS][2010/04/16 16:30:34] (.ATI Technologies, Inc. - ATI Catalyst Install Manager Installer (32 bit).) -- C:\WINDOWS\Installer\304d6.msi [5529600] =>.ATI Technologies, Inc. [MD5.F982E00DDBBB7B85733946EFC9172249] [WIS][2010/04/16 16:32:46] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306c5.msi [2935296] =>.ATI [MD5.1A18B9952F27A645F783D64E7E0BDD38] [WIS][2010/04/16 16:33:48] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306cb.msi [7525888] =>.ATI [MD5.39A3F9A2016E06292CB2A115A8291E63] [WIS][2010/04/16 16:33:56] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306d1.msi [410112] =>.ATI [MD5.24C9BF87D1B356A3537C4E2431F4EC69] [WIS][2010/04/16 16:34:08] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306d7.msi [994304] =>.ATI [MD5.1B0626BC7969D3C0D2827C16ED4D79F5] [WIS][2010/04/16 16:32:14] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306dd.msi [5749248] =>.ATI [MD5.8222EE7EC139C0D016E997104644C213] [WIS][2010/04/16 16:34:14] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306e3.msi [1247744] =>.ATI [MD5.213D8B1C2BBF427FC63C8D76FCAEA912] [WIS][2010/04/16 16:34:22] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306e9.msi [1230848] =>.ATI [MD5.06A7B27493D96557F7E76E2527389EB7] [WIS][2010/04/16 16:34:30] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306ef.msi [753152] =>.ATI [MD5.7EEA91A4C069F0DFC66F63F74A4D757A] [WIS][2010/04/16 16:34:38] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306f5.msi [1249792] =>.ATI [MD5.8473ABC8CE37A927B71483A8F938A3CF] [WIS][2010/04/16 16:34:46] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\306fb.msi [1252864] =>.ATI [MD5.6A64FFDDD47BBAC2194FFFC547DC622E] [WIS][2010/04/16 16:34:54] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\30701.msi [1256960] =>.ATI [MD5.35FC495F908FACFD5185073A5382DECF] [WIS][2010/04/16 16:35:02] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\30707.msi [1247744] =>.ATI [MD5.1C32AC84828F5BFBEF0F61D2EF4D43E8] [WIS][2010/04/16 16:35:08] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\3070d.msi [1275904] =>.ATI [MD5.897C67DF1E28A244F9BB4C9D98B8A999] [WIS][2010/04/16 16:35:16] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\30713.msi [1254400] =>.ATI [MD5.1AA111B1F23E06A1FE242D3C0CE37679] [WIS][2010/04/16 16:35:24] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\30719.msi [1241088] =>.ATI [MD5.AF3A4173815CD70374D6991DD85B0F16] [WIS][2010/04/16 16:35:32] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\3071f.msi [1244160] =>.ATI [MD5.3E8713C227CE4E09CE231A7BB54150C3] [WIS][2010/04/16 16:35:50] (.ATI - Catalyst Control Center.) -- C:\WINDOWS\Installer\30725.msi [1949184] =>.ATI [MD5.B79F4F1855F10FF0B0A2F95B839858E8] [WIS][2010/04/16 16:36:06] (.ATI - Catalyst Control Center Utility Package.) -- C:\WINDOWS\Installer\3072b.msi [200192] =>.ATI [MD5.F4D66FB693E3C94EF4FC3A4757F8603E] [WIS][2010/01/12 11:26:20] (.Advanced Micro Devices, Inc. - AMD USB Audio Filter Driver.) -- C:\WINDOWS\Installer\30740.msi [3639808] =>.Advanced Micro Devices, Inc. [MD5.E14A6762E68472C648EA0EEA0EBE01A0] [WIS][2012/06/03 11:42:52] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\3767eb.msi [2358784] =>.Apple Inc. [MD5.9B3602DC0338845DA4EE78D3D73DE005] [WIS][2012/06/03 11:51:51] (.Apple Inc. - MobileMe Control Panel Installer.) -- C:\WINDOWS\Installer\377648.msi [4554752] =>.Apple Inc. [MD5.7A969AFB0B37A69084E52A72E1F4E061] [WIS][2010/01/18 08:50:54] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\3db254.msi [5702144] =>.CyberLink Corp. [MD5.C425E894032BFC6A011A2A5C419BECF4] [WIS][2010/01/18 08:55:56] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\3db25a.msi [7907328] =>.CyberLink Corp. [MD5.D300A4201474B72C8DAEC954B975F89B] [WIS][2010/01/18 09:00:32] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\3db25f.msi [4719104] =>.CyberLink Corp. [MD5.81CC1BC14BEEB9D4FD9E31ABBD12C14B] [WIS][2010/01/20 13:56:14] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\3db264.msi [2360320] =>.CyberLink Corp. [MD5.CAD2BF94226CC00211EFA8E5CA059E45] [WIS][2010/01/18 08:56:44] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\3db269.msi [983552] =>.CyberLink Corp. [MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/13 19:57:50] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\4db7ac6.msi [40960] =>.Google Inc. [MD5.C8ADE4B1732EF1770C5E6B54F892A6A4] [WIS][2014/04/18 12:46:30] (.Nokia - Nokia Connectivity Cable Driver.) -- C:\WINDOWS\Installer\53be9d.msi [7032832] =>.Nokia [MD5.10E805D8636B1B3AF596688600EF6EC2] [WIS][2014/04/18 12:47:17] (.Nokia - PC Connectivity Solution.) -- C:\WINDOWS\Installer\53bed5.msi [26374144] =>.Nokia [MD5.96D46EB790E2C269871162FB5F9A05E6] [WIS][2014/04/18 12:48:16] (.Nokia - Nokia Suite.) -- C:\WINDOWS\Installer\53c08d.msi [261939200] =>.Nokia [MD5.7404CFAEBC50DF9E54FCFF365FD9C3B2] [WIS][2008/07/02 16:22:32] (.Adobe Systems Incorporated - Spelling Dictionaries for Adobe Reader 9.) -- C:\WINDOWS\Installer\5e5ed.msi [20672000] =>.Adobe Systems Incorporated [MD5.39988793C0BE26963F7C8228E7F04E23] [WIS][2014/01/06 20:00:36] (.Google - Google+ Auto Backup.) -- C:\WINDOWS\Installer\5eb734.msi [3088384] =>.Google [MD5.DB200989190080253FB58DF3CC6F9A6A] [WIS][2011/01/30 08:42:24] (.Nokia - Nokia PC Suite.) -- C:\WINDOWS\Installer\5fc64.msi [61986816] =>.Nokia [MD5.84410B4D1D4D6BF96CB2CF1730F02FE0] [WIS][2008/10/07 14:09:12] (.Corel Corporation - CorelDRAW Essentials 4.) -- C:\WINDOWS\Installer\610c6.msi [88459776] =>.Corel Corporation [MD5.9D20F712757BE39F36C2C40C803714F2] [WIS][2008/10/07 14:08:54] (.Corel Corporation - App.) -- C:\WINDOWS\Installer\610cd.msi [8356864] =>.Corel Corporation [MD5.9B7B037511DAADAD87CFF123B34FF1F3] [WIS][2008/10/07 14:09:08] (.Corel Corporation - App.) -- C:\WINDOWS\Installer\610d4.msi [5184000] =>.Corel Corporation [MD5.B34160803B63E5BC2A536080396E21F5] [WIS][2008/10/07 14:08:50] (.Corel Corporation - Content.) -- C:\WINDOWS\Installer\610db.msi [45817856] =>.Corel Corporation [MD5.8B41677B37D4E715BC649B7A79B6A902] [WIS][2008/10/07 14:09:00] (.Macrovision Corporation - Filters.) -- C:\WINDOWS\Installer\610e2.msi [3750912] =>.Macrovision Corporation [MD5.34CCB48FB6733E76E63528C3786FBB14] [WIS][2008/10/07 14:08:56] (.Corel Corporation - Language Pack.) -- C:\WINDOWS\Installer\610e9.msi [43909120] =>.Corel Corporation [MD5.51FAECB1F5185D165F4B3306B3895CF8] [WIS][2008/10/07 14:08:48] (.Corel Corporation - Suíte de Aplicativos Gráficos CorelDRAW X4.) -- C:\WINDOWS\Installer\610f0.msi [34543104] =>.Corel Corporation [MD5.F73865A57E2B949F9705CB1456788AB4] [WIS][2008/10/07 14:08:52] (.Corel Corporation - CorelDRAW Graphics Suite X4.) -- C:\WINDOWS\Installer\610f7.msi [35316224] =>.Corel Corporation [MD5.95A4FE6286FF5ADE01E8BDA277F4F47A] [WIS][2008/10/07 14:08:58] (.Corel Corporation - CorelDRAW Graphics Suite X4.) -- C:\WINDOWS\Installer\610fe.msi [35024384] =>.Corel Corporation [MD5.95D92898EAAE745B3AE5E41D9C42CF88] [WIS][2008/10/07 14:09:02] (.Corel Corporation - Suite graphique CorelDRAW X4.) -- C:\WINDOWS\Installer\61105.msi [34915328] =>.Corel Corporation [MD5.34E843863E86E6580BAE01466BED10D9] [WIS][2008/10/07 10:44:54] (.Corel Corporation - Suite Grafica CorelDRAW X4.) -- C:\WINDOWS\Installer\6110c.msi [34887680] =>.Corel Corporation [MD5.82F15CEE45708EB678649A7D3ED19322] [WIS][2008/10/07 14:09:08] (.Uw bedrijfsnaam - CorelDRAW Graphics Suite X4.) -- C:\WINDOWS\Installer\61113.msi [34477568] =>.Uw bedrijfsnaam [MD5.75DC8E6E7634CD1702017A0453E6AE4E] [WIS][2008/10/07 13:44:08] (.Corel Corporation - CorelDRAW Essentials 4 - IPM.) -- C:\WINDOWS\Installer\6111a.msi [2300416] =>.Corel Corporation [MD5.FAF11F32741919A65BCBB0082B4881BB] [WIS][2008/10/07 14:08:46] (.Corel Corporation - ICA.) -- C:\WINDOWS\Installer\61121.msi [561152] =>.Corel Corporation [MD5.0AFD048EEBD81072FB513D700087A967] [WIS][2017/02/15 21:52:53] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\WINDOWS\Installer\6918f.msi [49152] =>.Adobe Systems Incorporated [MD5.D1E3C55D4E4355E94376CB298D44F469] [WIS][2009/06/03 10:28:00] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\6c5b2.msi [5658112] =>.CyberLink Corp. [MD5.44C8B3D90F42F263036FF2AB61AC0392] [WIS][2017/11/04 21:53:27] (.The Document Foundation - LibreOffice 5.4.) -- C:\WINDOWS\Installer\ab7a7.msi [223789056] =>.The Document Foundation [MD5.856B92E35C09D6D9744693A56786B94B] [WIS][2014/11/25 17:53:34] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\ac0344.msi [913408] =>.Oracle Corporation [MD5.5376B2262B6E9773801520B6735C6DE9] [WIS][2015/12/15 15:18:36] (.Apple Inc. - QuickTime Installer.) -- C:\WINDOWS\Installer\e458b1.msi [28397568] =>.Apple Inc. [MD5.8797F3592E055284D113FEAA21B71ED3] [WIS][2011/12/02 17:19:24] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\WINDOWS\Installer\e7331.msi [28160] =>.Google Inc. [MD5.3501C57A4361310E3EC727CC5CF5A88C] [WIS][2017/11/01 14:53:36] (.Google, Inc. - Backup and Sync from Google.) -- C:\WINDOWS\Installer\e8a657.msi [51421184] =>.Google, Inc. ---\\ Scan Additionnel (6) - 1s HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets =>.SUP.Orphan C:\WINDOWS\Installer\1c4fe7.msi =>.SUP.PCSpeedUp C:\WINDOWS\Installer\1c4fed.msi =>.SUP.PCSpeedUp C:\Users\ferir\AppData\Roaming\inst.exe =>Heuristic.Suspect ---\\ Récapitulatif des éléments trouvés sur votre station (4) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime https://nicolascoolman.eu/2017/03/05/superfluous-pcspeeduppro/ =>.SUP.PCSpeedUp https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect ~ Unselected Options: ~ End of the scan, 18921 items in 05mn25s (1184)(0)