~ ZHPDiag v2017.12.4.211 Par Nicolas Coolman (2017/12/04) ~ Démarré par yacin (Administrator) (2017/12/04 19:49:42) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\yacin\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\yacin\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation ---\\ Navigateurs Internet (2) - 0s ~ GCIE: Google Chrome v62.0.3202.94 ~ MSIE: Internet Explorer v11.0.9600.18837 ---\\ Informations sur les produits Windows (4) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ Logiciels de protection (1) - 3s Malwarebytes version 3.2.2.2018 v3.2.2.2018 (Protection) ---\\ Logiciels d'optimisation (1) - 4s ~ CCleaner v5.22 (Optimize) ---\\ Surveillance de Logiciels (2) - 4s ~ Adobe Flash Player 27 NPAPI (Surveillance) ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 69 Stepping 1, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8282.48 MB (71% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 621 GB (65%) free of 953 GB : OK =>.Disk Space ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: YACIN-PC ~ User Name: yacin ~ Logged in as Administrator ---\\ Enumération des unités disques (1) - 0s ~ Drive C: has 621 GB free of 953 GB (System) ---\\ Etat du Centre de Sécurité Windows (13) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center] AntiVirusDisableNotify: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center] FirewallDisableNotify: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center] UpdatesDisableNotify: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (26) - 2s [MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] =>.Microsoft Corporation [MD5.C36BB659F08F046B139C8D1B980BF1AC] - 30/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [46080] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation [MD5.D13A0397ED940C071FD5ABB76BC974CF] - 14/10/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3241472] =>.Microsoft Corporation [MD5.9562F469F07315BE916AE3B780E2C42C] - 23/12/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455680] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation [MD5.EADE4BE01706A206121608CFAB2A78EC] - 23/12/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357376] =>.Microsoft Corporation [MD5.7610A035A4D37B5ECC7CED7430C37E49] - 23/12/2016 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [269824] =>.Microsoft Corporation [MD5.744072895AB6B1F0C10E901CC241795B] - 23/12/2016 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.0DC2A9882540DEA4A55B08785E09D8FC] - 04/04/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [496128] =>.Microsoft Corporation [MD5.C8AA50005E6461D5C2C247DBABBF2008] - 23/12/2016 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [23784] =>.Microsoft Windows® [MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation [MD5.7200A15FCDDECA736E97D2815A32A54F] - 23/12/2016 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [150016] =>.Microsoft Corporation [MD5.9B38580063D281A99E68EF5813022A5F] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [106496] =>.Microsoft Corporation [MD5.45DAAFD1056B8942C5038EFFD285658D] - 23/12/2016 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation [MD5.55CCD3E5E4DA18FCF0598F42249D47DF] - 23/12/2016 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation [MD5.9774AA4661A30E0ADCEA48B5A1B9F4B7] - 23/12/2016 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation [MD5.767C6DF04C5758B9F0790D400541B44F] - 13/09/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159744] =>.Microsoft Corporation [MD5.734837208CAFD6E0959A7A0333C95C9D] - 11/08/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262656] =>.Microsoft Corporation [MD5.1065D9AFE491706EB00AD3CBB76C9E54] - 17/10/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1680616] =>.Microsoft Windows® [MD5.0E75370C05A7AB23E3B05840BA9E1935] - 23/12/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation [MD5.596C9872717441BF3550927731C1AFE6] - 23/12/2016 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [166400] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation [MD5.4DD986720F7CB7A8A5D1226793097B9A] - 29/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] =>.Microsoft Corporation [MD5.B52F1F5F55CD773BA89E5739B82E9C34] - 23/12/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [297192] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (7) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe =>.AMD O23 - Service: Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Intel Corporation - Bluetooth Device Monitor.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Intel Corporation - Mobile Wireless Group® O23 - Service: Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Intel Corporation - Bluetooth OBEX Service.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Intel Corporation - Mobile Wireless Group® O23 - Service: Clurothwward (Clurothwward) . (...) - C:\Program Files (x86)\Grercult\thijcultrotiiedCore.dll (.not file.) =>Adware.Suspect O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: media center Bouygues Telecom (media center Bouygues Telecom) . (.Bouygues Telecom - DMS.) - C:\ProgramData\media center Bouygues Telecom\MediaServer.exe =>.Bouygues Telecom® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (15) - 28s SR - Auto [27/09/2017] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [15/11/2017] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [19/12/2013] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe =>.AMD SR - Auto [19/12/2011] [ 1014096] Bluetooth Device Monitor (Bluetooth Device Monitor) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe =>.Intel Corporation - Mobile Wireless Group® SR - Demand [19/12/2011] [ 1304912] Bluetooth Media Service (Bluetooth Media Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe =>.Intel Corporation - Mobile Wireless Group® SR - Auto [19/12/2011] [ 1104208] Bluetooth OBEX Service (Bluetooth OBEX Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe =>.Intel Corporation - Mobile Wireless Group® SS - Demand [09/08/2015] [ 288688] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SS - Disabl [03/09/2017] [ 1244136] FlexNet Licensing Service (FLEXnet Licensing Service) . (.Flexera Software LLC.) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Flexera Software LLC® SS - Disabl [12/10/2017] [ 1606152] FlexNet Licensing Service 64 (FlexNet Licensing Service 64) . (.Flexera Software LLC.) - C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe =>.Flexera Software LLC® SS - Auto [04/12/2017] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [04/12/2017] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [03/04/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe =>.Macrovision Corporation SS - Disabl [09/08/2015] [ 355232] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® SR - Demand [21/08/2017] [ 6058960] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [04/07/2013] [ 4177408] media center Bouygues Telecom (media center Bouygues Telecom) . (.Bouygues Telecom.) - C:\ProgramData\media center Bouygues Telecom\MediaServer.exe =>.Bouygues Telecom® ---\\ Tâches planifiées en automatique (Registre) (68) - 6s O38 - TASK: {044A6734-E90E-4F8F-B357-B2DC8AB3B5EC} [64Bits][\Microsoft\Windows\Time Synchronization\SynchronizeTime] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [45056] =>.Microsoft Corporation O38 - TASK: {0C39A38B-5637-4C8B-87C0-6456AE3AEE0C} [64Bits][\Microsoft\Windows\Media Center\PeriodicScanRetry] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation O38 - TASK: {0CD3FE1F-D109-4087-A538-691B6EC6E9AF} [64Bits][\Microsoft\Windows\Media Center\UpdateRecordPath] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {0ED97ECC-EFE7-407B-B8CF-CE8ED3E532E9} [64Bits][\{A5CCAE50-B041-481B-8405-6AB3ACC32486}] - (...) -- C:\Program Files (x86)\DriverTools\usb_driver\DriverSetup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {12D121E3-1B66-49F4-AC3C-51B16803B8E4} [64Bits][\{CDA88D0B-5B68-49B2-B1F6-53F78B51CBED}] - (...) -- C:\Program Files (x86)\X-Plane 11\X-Plane.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {1AE82ADB-3A22-4810-A331-B3BD7C71E90A} [64Bits][\Microsoft\Windows\Application Experience\ProgramDataUpdater] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\Windows\system32\compattelrunner.exe [134376] =>.Microsoft Windows® O38 - TASK: {2185A42E-3974-4191-9D54-7547503215E3} [64Bits][\Microsoft\Windows\Media Center\MediaCenterRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation O38 - TASK: {225E21EA-5CEF-4CCD-9EFF-92778CABB19F} [64Bits][\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver] - (.Microsoft Corporation - Outil de résolution des défaillances disque.) -- C:\Windows\system32\DFDWiz.exe [79360] =>.Microsoft Corporation O38 - TASK: {24494D1C-C5FA-4A96-B86E-3CD752E195EC} [64Bits][\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation O38 - TASK: {27815237-F047-4922-A416-2E8DB2766380} [64Bits][\Microsoft\Windows\Media Center\mcupdate] - (...) -- C:\Windows\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {2792772C-6E9B-44F8-A433-6E9A36BB462A} [64Bits][\Microsoft\Windows\Media Center\OCURActivate] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} [64Bits][\Microsoft\Windows\WindowsBackup\ConfigNotification] - (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) -- C:\Windows\System32\sdclt.exe [1264640] =>.Microsoft Corporation O38 - TASK: {31F0D6B2-94F4-4ACC-944A-C4A0AE4D0EDB} [64Bits][\Microsoft\Windows\Media Center\PBDADiscoveryW2] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {32A88B68-DB5E-458F-A407-4CB8AD11AED2} [64Bits][\Microsoft\Windows\Media Center\PvrScheduleTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation O38 - TASK: {353E2276-6C5B-44FB-A759-6C24F70F4CA7} [64Bits][\Microsoft\Windows\Media Center\mcupdate_scheduled] - (...) -- C:\Windows\ehome\mcupdate (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {362305FB-980D-4D5F-A83C-50E6AE836AEA} [64Bits][\Microsoft\Windows\Media Center\StartRecording] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {45A6093E-E033-4B28-9CD6-EAAE41F34479} [64Bits][\Microsoft\Windows\Media Center\ReindexSearchRoot] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {45D54DB8-8E15-4A17-87F0-09607940EFD9} [64Bits][\Microsoft\Windows\Media Center\PvrRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation O38 - TASK: {4A9B2846-9D79-405F-BB5F-C7C9F170850E} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc® O38 - TASK: {4B2D7A6D-13D0-4411-B275-802493B460D3} [64Bits][\Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline] - (.Microsoft Corporation - Gestion des tâches planifiées.) -- C:\Windows\System32\schtasks.exe [285696] =>.Microsoft Corporation O38 - TASK: {563F5C64-6CC8-4CB8-8920-1C6FC9FC35F0} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1171480] =>.Adobe Systems, Incorporated® O38 - TASK: {59AD800D-1E70-4CE8-A63E-6F7A31910089} [64Bits][\Microsoft\Windows Defender\MP Scheduled Scan] - (.Microsoft Corporation - Microsoft Malware Protection Command Line U.) -- c:\program files\windows defender\MpCmdRun.exe [190976] =>.Microsoft Corporation O38 - TASK: {5A40E926-9E86-4B89-9CFD-B12311724371} [64Bits][\Microsoft\Windows\UPnP\UPnPHostConfig] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [45056] =>.Microsoft Corporation O38 - TASK: {624B07E4-BB16-4CAE-8CE2-DA6FDD118E39} [64Bits][\Microsoft\Windows\Media Center\SqlLiteRecoveryTask] - (.Microsoft Corporation - Gestionnaire de mises à jour du magasin Win.) -- C:\Windows\ehome\mcupdate.exe [198656] =>.Microsoft Corporation O38 - TASK: {6482BB19-464B-4D2D-8463-58378940ABBB} [64Bits][\Microsoft\Windows\Media Center\PBDADiscoveryW1] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {6808E3CA-904C-4260-8D93-D005DE3D3045} [64Bits][\Microsoft\Windows\Windows Activation Technologies\ValidationTask] - (.Microsoft Corporation - Windows Activation Technologies Service.) -- C:\Windows\System32\Wat\WatAdminSvc.exe [1255736] =>.Microsoft Corporation® O38 - TASK: {6941A130-02A2-4F4A-B33E-DFDD8B03F41E} [64Bits][\{8232B531-F7EC-42F5-8DDF-EADFC81CD8EC}] - (...) -- C:\Users\yacin\AppData\Local\Temp\$PowerISO$\SETUP.EXE (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {6C18D2B0-4681-43F1-A197-EB1EFE9AFDDE} [64Bits][\Microsoft\Windows\Setup\EOSNotify] - (.Microsoft Corporation - EOS Notification.) -- C:\Windows\system32\EOSNotify.exe [304128] =>.Microsoft Corporation O38 - TASK: {6CE6706F-F31E-41A3-8A27-FD49939A5745} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 27.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated® O38 - TASK: {6EA91DFF-385E-4AA3-A8DA-90D87F8286F4} [64Bits][\Microsoft\Windows\Defrag\ScheduledDefrag] - (.Microsoft Corp. - Module de défragmenteur de disque.) -- C:\Windows\system32\defrag.exe [183296] =>.Microsoft Corp. O38 - TASK: {72DB7465-BC54-491B-A92A-4637A28C9BBF} [64Bits][\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck] - (.Microsoft Corporation - AppID Certificate Store Verification Task.) -- C:\Windows\system32\appidcertstorecheck.exe [17920] =>.Microsoft Corporation O38 - TASK: {731872B3-4F1F-40CD-AEC0-A35193739650} [64Bits][\Microsoft\Windows\Media Center\DispatchRecoveryTasks] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {753C47AE-EC5E-44B3-95A9-2C8E553F0E39} [64Bits][\Microsoft\Windows\Windows Media Sharing\UpdateLibrary] - (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe [70656] =>.Microsoft Corporation O38 - TASK: {7749223D-A017-461C-81A6-51E63446BD0E} [64Bits][\{3E9389D1-4232-4B98-9BFC-2E8E4C5B4EF3}] - (...) -- C:\Users\yacin\telechargement\win64_154028.4501.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {82ED3A57-73EC-48ED-AEA4-2D519501133F} [64Bits][\OfficeSoftwareProtectionPlatform\SvcRestartTask] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [45056] =>.Microsoft Corporation O38 - TASK: {85F0ACE9-4596-418A-BE3B-42E3F84E4049} [64Bits][\Driver Booster SkipUAC (yacin)] - (...) -- C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {88D33631-D49A-49B0-8A5F-63A74D92557B} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [6868696] =>.Piriform Ltd® O38 - TASK: {8924105D-82F6-4904-B013-A39125F47848} [64Bits][\{5D2F258F-D289-4D26-8CB2-043F460A9F4F}] - (...) -- C:\Program Files\XLJHP5H0F8\uninstaller.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {8E9BE2B8-348C-424B-9074-DC8E88014579} [64Bits][\{9F02CDDF-4878-4286-9434-58AF6846F066}] - (...) -- C:\Users\yacin\Desktop\PMDG_MD11_FSX_Setup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {9013B519-A87C-4E36-BD44-DACF0C08EB43} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc® O38 - TASK: {90609372-1ABD-4D3D-ABF7-50A6C470E8F8} [64Bits][\WPD\SqmUpload_S-1-5-21-3031614511-2681678399-3023254260-1000] - (.Microsoft Corporation - Composants API de l’appareil mobile Windows.) -- C:\Windows\System32\portabledeviceapi.dll [758272] =>.Microsoft Corporation O38 - TASK: {994C86AD-A929-4B2C-88A0-4E25A107A029} [64Bits][\Microsoft\Windows\SystemRestore\SR] - (.Microsoft Corporation - Bibliothèque de configuration de la protect.) -- C:\Windows\System32\srrstr.dll [270848] =>.Microsoft Corporation O38 - TASK: {9C0E287E-3132-41CC-BFD8-C9EDD7D429AC} [64Bits][\Microsoft\Windows\Media Center\RecordingRestart] - (...) -- C:\Windows\ehome\ehrec (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {9CBB56EB-513E-41E4-BE3D-50FE61C2A825} [64Bits][\{D826B81C-BD26-4D53-B8D5-991EFF3409CE}] - (...) -- C:\Users\yacin\AppData\Local\Temp\$PowerISO$\unsetup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {A48CABBF-24C8-4B87-B00F-9261807C3B43} [64Bits][\Microsoft\Windows\AppID\PolicyConverter] - (.Microsoft Corporation - AppID Policy Converter Task.) -- C:\Windows\system32\appidpolicyconverter.exe [148480] =>.Microsoft Corporation O38 - TASK: {A6AF9377-77CE-47AB-AD7D-EC32CAD0C82D} [64Bits][\Microsoft\Windows\Location\Notifications] - (.Microsoft Corporation - Activité de la localisation.) -- C:\Windows\System32\LocationNotifications.exe [90112] =>.Microsoft Corporation O38 - TASK: {B8E6D40B-8E02-413A-97CC-D120161EAF2A} [64Bits][\GoogleUpdateNA] - (...) -- C:\Users\Public\Ѕystem.vbe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {B90E1EE5-801D-4BEB-8A06-9FF6072D8455} [64Bits][\SidebarExecute] - (.Microsoft Corporation - Gadgets du Bureau Windows.) -- C:\Program Files\Windows Sidebar\sidebar.exe [1475584] =>.Microsoft Corporation O38 - TASK: {BA1228EB-65DF-46FA-84AC-3479358F43D0} [64Bits][\Microsoft\Windows\Media Center\PBDADiscovery] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {C016366B-7126-46CA-B36B-592A3D95A60B} [64Bits][\Microsoft\Windows\Customer Experience Improvement Program\Consolidator] - (.Microsoft Corporation - Consolidateur SQM Windows.) -- C:\Windows\System32\wsqmcons.exe [293888] =>.Microsoft Corporation O38 - TASK: {C6E5DAAC-6AA1-4571-8437-30ED33C1DF9F} [64Bits][\Microsoft\Windows\Media Center\InstallPlayReady] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {CB3D64BF-C0C9-45FF-BFB0-FF1A8F680186} [64Bits][\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask] - (.Microsoft Corporation - Serveur COM d’assistance à distance Windows.) -- C:\Windows\System32\raserver.exe [125440] =>.Microsoft Corporation O38 - TASK: {CFE0BE13-DA0F-41CE-A642-4DC694D69A19} [64Bits][\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser] - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) -- C:\Windows\system32\CompatTelRunner.exe [134376] =>.Microsoft Windows® O38 - TASK: {D0250F3F-6480-484F-B719-42F659AC64D5} [64Bits][\Microsoft\Windows\Windows Error Reporting\QueueReporting] - (.Microsoft Corporation - Windows Problem Reporting.) -- C:\Windows\System32\wermgr.exe [50688] =>.Microsoft Corporation O38 - TASK: {D7B6E81D-3CF4-432C-84D2-24213F4316E6} [64Bits][\Microsoft\Windows\Autochk\Proxy] - (.Microsoft Corporation - DLL de proxy Autochk.) -- C:\Windows\System32\acproxy.dll [11264] =>.Microsoft Corporation O38 - TASK: {D7C99F23-2BB1-4B03-8134-BF1F60C7265C} [64Bits][\{CD49D5C9-5EA3-46A0-91B9-D0045DB5BED0}] - (...) -- C:\Users\yacin\Desktop\PMDG 737 NGX.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {DBB64C6F-E51A-4937-93C5-5489230124FE} [64Bits][\{DBD5CF92-BD2C-4E80-B52A-DAD9D67E16BC}] - (...) -- C:\Users\yacin\AppData\Local\Temp\$PowerISO$\SETUP.EXE (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {DD9F510C-95F4-499A-90C8-BAC5BC372FF4} [64Bits][\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask] - (.Microsoft Corporation - Outil facilitant le développement de servic.) -- C:\Windows\System32\sc.exe [45056] =>.Microsoft Corporation O38 - TASK: {E22A8667-F75B-4BA9-BA46-067ED4429DE8} [64Bits][\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange] - (.Microsoft Corporation - Moteur de filtrage de base.) -- C:\Windows\System32\bfe.dll [705024] =>.Microsoft Corporation O38 - TASK: {E3163C33-301D-4730-A266-5518C5ED3967} [64Bits][\Microsoft\Windows\Bluetooth\UninstallDeviceTask] - (.Microsoft Corporation - Tâche de désinstallation du périphérique Bl.) -- C:\Windows\System32\BthUdTask.exe [36864] =>.Microsoft Corporation O38 - TASK: {E32C9D7A-2C95-4B9F-9067-E1F908A54418} [64Bits][\Microsoft\Windows\Media Center\ehDRMInit] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {EB02381F-D652-4B1C-894A-712498C62C51} [64Bits][\Microsoft\Windows\MUI\LPRemove] - (.Microsoft Corporation - MUI Language pack cleanup.) -- C:\Windows\system32\lpremove.exe [71168] =>.Microsoft Corporation O38 - TASK: {ED24DBA9-831D-49A4-A7CD-71178E479AF2} [64Bits][\Microsoft\Windows\Media Center\OCURDiscovery] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {F2174BF9-6CB9-438A-A83C-4060B35061C5} [64Bits][\Microsoft\Windows\Media Center\ConfigureInternetTimeService] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {F8AAA96E-A1EC-4AA3-B869-09FE5E698644} [64Bits][\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector] - (.Microsoft Corporation - Module de diagnostics des erreurs de disque.) -- C:\Windows\System32\dfdts.dll [45568] =>.Microsoft Corporation O38 - TASK: {F979A59D-4CAB-44A6-ADED-C9B155ED3958} [64Bits][\Microsoft\Windows\Media Center\RegisterSearch] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation O38 - TASK: {FB3C354D-297A-4EB2-9B58-090F6361906B} [64Bits][\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem] - (.Microsoft Corporation - Outil de ligne de commande des paramètres d.) -- C:\Windows\System32\powercfg.exe [71168] =>.Microsoft Corporation O38 - TASK: {FC61473E-CB54-426C-875F-AEABFC9DEE33} [64Bits][\Microsoft\Windows\Media Center\ActivateWindowsSearch] - (.Microsoft Corporation - Application d’inscription de périphérique d.) -- C:\Windows\ehome\ehPrivJob.exe [295936] =>.Microsoft Corporation ---\\ Applications lancées au démarrage du système (7) - 1s O4 - HKLM\..\Run: [BTMTrayAgent] . (.Intel Corporation - Bluetooth Shell Extension.) -- C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll =>.Intel Corporation - Mobile Wireless Group® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKLM\..\Wow6432Node\Run: [Athan] . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org O4 - HKLM\..\Wow6432Node\Run: [DFX] . (...) -- C:\Program Files (x86)\DFX\DFX.exe O4 - HKUS\S-1-5-21-3031614511-2681678399-3023254260-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - HKUS\S-1-5-21-3031614511-2681678399-3023254260-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® ---\\ Processus lancés (26) - 3s [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Service Module.) -- C:\Windows\system32\atiesrxx.exe [0] [PID.120] =>.AMD [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Client Module.) -- C:\Windows\system32\atieclxx.exe [0] [PID.1376] =>.AMD [MD5.38622FFE9369D3EC01C0097235BD9279] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83984] [PID.1972] =>.Adobe Systems, Incorporated® [MD5.05981C3E51D827ED6B8101A54B05E392] - (.Intel Corporation - Bluetooth Device Monitor.) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [1014096] [PID.1840] =>.Intel Corporation - Mobile Wireless Group® [MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.2092] =>.Google Inc® [MD5.F107219B133E7E574DA052C5C88FFBF3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe [366672] [PID.2100] =>.Google Inc® [MD5.6987C6975FEE96D091FCCD52E8493D27] - (.Bouygues Telecom - DMS.) -- C:\ProgramData\media center Bouygues Telecom\MediaServer.exe [4177408] [PID.2388] =>.Bouygues Telecom® [MD5.684713376B0D9410B1DF74918E6063D9] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4035696] [PID.2468] =>.Tonec Inc.® [MD5.B94A9C5A30D3358CA4C1EC29BEBAEE1B] - (...) -- C:\Program Files (x86)\media center Bbox\media center\external\MediaServerTray.exe [846848] [PID.2496] =>.Bouygues Telecom® [MD5.8AA4A3119B2DF4FFAAD39A98F4764E47] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8912088] [PID.2592] =>.Piriform Ltd® [MD5.89666F21479E55D48198282DA724E7CF] - (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files (x86)\Athan\Athan.exe [1216512] [PID.2788] =>.www.IslamicFinder.org [MD5.B4CB37085764D53B2930FAB0092529BF] - (...) -- C:\Program Files (x86)\DFX\DFX.exe [1595384] [PID.1052] [MD5.8BBE7CD0261458DC2B4993E1038FFA1E] - (.Copyright © 2013 FXsound.com, a subsidiary of Power T - DFX.) -- C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe [161784] [PID.3368] =>.Power Technology® [MD5.B2CD0721A3CD6BED074C35BF4CD3507C] - (.Copyright © 2013 FXsound.com, a subsidiary of Power T - DFX.) -- C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe [176120] [PID.3376] =>.Power Technology® [MD5.41D8F56E6BBE0111244D87BE2FA90374] - (.Intel Corporation - Bluetooth OBEX Service.) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [1104208] [PID.3560] =>.Intel Corporation - Mobile Wireless Group® [MD5.BBFAF63BF768047FE2441B4139E803E3] - (.Intel Corporation - Bluetooth Media Service.) -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1304912] [PID.4520] =>.Intel Corporation - Mobile Wireless Group® [MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.5064] =>.Google Inc® [MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.4464] =>.Google Inc® [MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.4072] =>.Google Inc® [MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.4604] =>.Google Inc® [MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.2772] =>.Google Inc® [MD5.FEAF4E98C93BC3512B8108D2F534A3BA] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960] [PID.4848] =>.Malwarebytes Corporation® [MD5.945DECA53FB2ED89DC1CDDBF86C24E20] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3411400] [PID.3064] =>.Malwarebytes Corporation® [MD5.74A921A3820CA3139D0D30F453FDEB58] - (.Intel Corporation - Bluetooth Media Player Controller.) -- C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe [936272] [PID.5032] =>.Intel Corporation - Mobile Wireless Group® [MD5.B981F64E0F02088D317FBF73E49E4265] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1556312] [PID.3928] =>.Google Inc® [MD5.ABCF27021270BDB0CE77FB8E67CBA7B1] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\yacin\telechargement\ZHPDiag3.exe [2941824] [PID.2412] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (19) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://consent.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://docs.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.googleapis.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://fonts.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://newtab.today G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc. G2 - GCE: Preference [yacin][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [yacin][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [yacin][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [yacin][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [yacin][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [yacin][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [yacin][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [yacin][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [yacin][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (1) - 1s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKEY_USERS\S-1-5-21-3031614511-2681678399-3023254260-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.18838 (winblue_ltsb.171013-1838)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.® O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® ---\\ Raccourcis Global Startup (109) - 9s O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.® O4 - GS\Desktop [Administrateur]: Start Unlocker.lnk . (...) C:\Program Files (x86)\Unlocker\Unlocker.exe O4 - GS\Desktop [Administrateur]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\yacin\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\yacin\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Microsoft Outlook.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE /recycle =>.Microsoft Corporation O4 - GS\Quicklaunch [Administrateur]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.® O4 - GS\TaskBar [Administrateur]: AdwCleaner.lnk . (.Malwarebytes - AdwCleaner.) C:\Users\yacin\telechargement\Programs\adwcleaner_7.0.5.0_2.exe =>.Malwarebytes O4 - GS\TaskBar [Administrateur]: Athan.lnk . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org O4 - GS\TaskBar [Administrateur]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\TaskBar [Administrateur]: ComboFix NSIS Installer.lnk . (.Swearware - ComboFix NSIS Installer.) C:\Users\yacin\telechargement\Programs\ComboFix.exe =>.Swearware O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Harry Potter et la Chambre des Secrets .lnk . (...) C:\Program Files (x86)\EA Games\Harry Potter et la Chambre des Secrets \system\Game.exe O4 - GS\TaskBar [Administrateur]: Helen 3.3.lnk . (...) C:\Windows\Installer\{9A305274-D1C7-4A4E-B1DD-9127BAE447FA}\_FD8AB6BC7953ECD72617BD.exe O4 - GS\TaskBar [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Administrateur]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes O4 - GS\TaskBar [Administrateur]: media center Bbox.lnk . (...) C:\Program Files (x86)\media center Bbox\media center\external\MediaServerTray.exe -StartUI =>.Bouygues Telecom® O4 - GS\TaskBar [Administrateur]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Prepar3D v4.lnk . (.Lockheed Martin® - .) C:\Program Files (x86)\Lockheed Martin\Prepar3D v4\Prepar3D.exe =>.Lockheed Martin® O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [yacin]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.® O4 - GS\Desktop [yacin]: Start Unlocker.lnk . (...) C:\Program Files (x86)\Unlocker\Unlocker.exe O4 - GS\Desktop [yacin]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [yacin]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\yacin\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [yacin]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\yacin\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [yacin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [yacin]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [yacin]: Microsoft Outlook.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE /recycle =>.Microsoft Corporation O4 - GS\Quicklaunch [yacin]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group® O4 - GS\sendTo [yacin]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [yacin]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.® O4 - GS\TaskBar [yacin]: AdwCleaner.lnk . (.Malwarebytes - AdwCleaner.) C:\Users\yacin\telechargement\Programs\adwcleaner_7.0.5.0_2.exe =>.Malwarebytes O4 - GS\TaskBar [yacin]: Athan.lnk . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org O4 - GS\TaskBar [yacin]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\TaskBar [yacin]: ComboFix NSIS Installer.lnk . (.Swearware - ComboFix NSIS Installer.) C:\Users\yacin\telechargement\Programs\ComboFix.exe =>.Swearware O4 - GS\TaskBar [yacin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [yacin]: Harry Potter et la Chambre des Secrets .lnk . (...) C:\Program Files (x86)\EA Games\Harry Potter et la Chambre des Secrets \system\Game.exe O4 - GS\TaskBar [yacin]: Helen 3.3.lnk . (...) C:\Windows\Installer\{9A305274-D1C7-4A4E-B1DD-9127BAE447FA}\_FD8AB6BC7953ECD72617BD.exe O4 - GS\TaskBar [yacin]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [yacin]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes O4 - GS\TaskBar [yacin]: media center Bbox.lnk . (...) C:\Program Files (x86)\media center Bbox\media center\external\MediaServerTray.exe -StartUI =>.Bouygues Telecom® O4 - GS\TaskBar [yacin]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [yacin]: Prepar3D v4.lnk . (.Lockheed Martin® - .) C:\Program Files (x86)\Lockheed Martin\Prepar3D v4\Prepar3D.exe =>.Lockheed Martin® O4 - GS\Programs [yacin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [Ѕystem]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.® O4 - GS\Desktop [Ѕystem]: Start Unlocker.lnk . (...) C:\Program Files (x86)\Unlocker\Unlocker.exe O4 - GS\Desktop [Ѕystem]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Desktop [Ѕystem]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\yacin\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Ѕystem]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\yacin\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Ѕystem]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Ѕystem]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Ѕystem]: Microsoft Outlook.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE /recycle =>.Microsoft Corporation O4 - GS\Quicklaunch [Ѕystem]: Revo Uninstaller Pro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group® O4 - GS\sendTo [Ѕystem]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Ѕystem]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.® O4 - GS\TaskBar [Ѕystem]: AdwCleaner.lnk . (.Malwarebytes - AdwCleaner.) C:\Users\yacin\telechargement\Programs\adwcleaner_7.0.5.0_2.exe =>.Malwarebytes O4 - GS\TaskBar [Ѕystem]: Athan.lnk . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org O4 - GS\TaskBar [Ѕystem]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\TaskBar [Ѕystem]: ComboFix NSIS Installer.lnk . (.Swearware - ComboFix NSIS Installer.) C:\Users\yacin\telechargement\Programs\ComboFix.exe =>.Swearware O4 - GS\TaskBar [Ѕystem]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Ѕystem]: Harry Potter et la Chambre des Secrets .lnk . (...) C:\Program Files (x86)\EA Games\Harry Potter et la Chambre des Secrets \system\Game.exe O4 - GS\TaskBar [Ѕystem]: Helen 3.3.lnk . (...) C:\Windows\Installer\{9A305274-D1C7-4A4E-B1DD-9127BAE447FA}\_FD8AB6BC7953ECD72617BD.exe O4 - GS\TaskBar [Ѕystem]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.® O4 - GS\TaskBar [Ѕystem]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes O4 - GS\TaskBar [Ѕystem]: media center Bbox.lnk . (...) C:\Program Files (x86)\media center Bbox\media center\external\MediaServerTray.exe -StartUI =>.Bouygues Telecom® O4 - GS\TaskBar [Ѕystem]: Microsoft Word 2010.lnk . (...) C:\Windows\Installer\{90140000-0011-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Ѕystem]: Prepar3D v4.lnk . (.Lockheed Martin® - .) C:\Program Files (x86)\Lockheed Martin\Prepar3D v4\Prepar3D.exe =>.Lockheed Martin® O4 - GS\Programs [Ѕystem]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: DFX.lnk . (...) C:\Program Files (x86)\DFX\DFX.exe O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: media center Bbox.lnk . (...) C:\Program Files (x86)\media center Bbox\media center\external\MediaServerTray.exe -StartUI =>.Bouygues Telecom® O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: MediaServerTray.lnk . (...) C:\Program Files (x86)\media center Bbox\media center\external\MediaServerTray.exe =>.Bouygues Telecom® O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe =>..Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Fiddler 4.lnk . (...) C:\Program Files (x86)\Fiddler2\Fiddler.exe O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: MJC Virtual Cockpit Selector.lnk . (.Majestic Software - MJC Virtual Cockpit Selector.) C:\Program Files (x86)\Microsoft Games\Microsoft Flight Simulator X\Simobjects\Airplanes\mjc8q400\MJC8-VCS.exe O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ Winsock hijacker (Layered Service Provider) (2) - 1s O10 - WLSP:\NameSpace_Catalog5\Catalog_Entries64\000000000008\Winsock LSP File . (...) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Not File) =>Hijacker.Winsock O10 - WLSP:\NameSpace_Catalog5\Catalog_Entries64\000000000009\Winsock LSP File . (...) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Not File) =>Hijacker.Winsock ---\\ Modification Domaine/Adresses DNS (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{C99EC8EA-C1A5-4A7D-BFFE-54B3BD84F35F}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{C99EC8EA-C1A5-4A7D-BFFE-54B3BD84F35F}: DhcpDomain = lan =>.Local Domain ---\\ Protocole additionnel (23) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: gopher [64Bits] - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (50) - 30s O42 - Logiciel: AdAwareUpdater - (.adaware.) [HKLM][64Bits] -- {BECD7155-DC57-4F89-B1A8-A90B033C6209} =>.adaware O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 27 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 27 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824245926} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Shockwave Player 12.0 - (.Adobe Systems, Inc.) [HKLM][64Bits] -- {AA3B06B1-E89A-43C6-A26B-7109DB4BEE7B} =>.Adobe Systems, Inc O42 - Logiciel: Analyseur et SDK MSXML 4.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {716E0306-8318-4364-8B8F-0CC4E9376BAC} =>.Microsoft Corporation O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {741291DA-2B34-4D44-8FB6-58EDE21261D8} =>.Apple Inc. O42 - Logiciel: Athan Pro 4.5 - (..) [HKLM][64Bits] -- Athan O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.® O42 - Logiciel: DFX - (.Power Technology.) [HKLM][64Bits] -- DFX =>.Power Technology O42 - Logiciel: Electronic Arts Product Registration - (.Electronic Arts.) [HKLM][64Bits] -- {D7D50E0C-27DD-4999-BC05-E026B580F93A} =>.Electronic Arts O42 - Logiciel: Electronic Arts Product Registration - (.Electronic Arts.) [HKLM][64Bits] -- InstallShield_{D7D50E0C-27DD-4999-BC05-E026B580F93A} =>.Electronic Arts O42 - Logiciel: FormatFactory 4.1.0.0 - (.Free Time.) [HKLM][64Bits] -- FormatFactory =>.Free Time O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Harry Potter II - (..) [HKLM][64Bits] -- {7BF68B83-5057-4D4B-0093-28285EEB9EE3} O42 - Logiciel: Helen - (.Hanover Displays.) [HKLM][64Bits] -- {9A305274-D1C7-4A4E-B1DD-9127BAE447FA} O42 - Logiciel: iFly Jets - The 737NG for FSX - (..) [HKLM][64Bits] -- iFly Jets - The 737NG for FSX O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology - (.Intel Corporation.) [HKLM][64Bits] -- {F0932859-AA60-459E-B843-0BDECA34E2C7} =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Majestic Dash8 Q400 - (.Majestic Software.) [HKLM][64Bits] -- Majestic Dash8 Q400v1.012 O42 - Logiciel: Malwarebytes version 3.2.2.2018 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: media center Bbox - (.Bouygues Télécom.) [HKLM][64Bits] -- {FFBE505B-2644-432A-836A-6170AD3A9B61} =>.Bouygues Télécom O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP3 Parser - (.Microsoft Corporation.) [HKLM][64Bits] -- {196467F1-C11F-4F76-858B-5812ADC83B94} =>.Microsoft Corporation O42 - Logiciel: MSXML 4.0 SP3 Parser (KB2758694) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D95BA90-F4F8-47EC-A882-441C99D30C1E} =>.Microsoft Corporation O42 - Logiciel: PMDG 737 8900 NGX - (.PMDG Simulations, LLC..) [HKLM][64Bits] -- {20708FD5-E94D-4097-A21E-E28564CDBC06} =>.Macrovision Corporation® O42 - Logiciel: PMDG 737-8900 NGX Base Package P3D - (.PMDG Simulations, LLC..) [HKLM][64Bits] -- {0EA92925-36E7-40CB-A714-118AB046099B} =>.PMDG Simulations, LLC. O42 - Logiciel: PMDG 747-400 QOTSII Base Package FSX - (.PMDG Simulations, LLC..) [HKLM][64Bits] -- {B68570AC-8E49-4B41-AA89-6CAEF3045E26} =>.PMDG Simulations, LLC. O42 - Logiciel: PMDG 777-200LR/F Base Package FSX - (.PMDG Simulations, LLC..) [HKLM][64Bits] -- {0F16340B-5B5B-4531-8D87-4952E3BCA6E6} =>.PMDG Simulations, LLC. O42 - Logiciel: PMDG 777-300ER Expansion - (.PMDG Simulations, LLC..) [HKLM][64Bits] -- {E65EFDE6-0864-40BA-8DDF-E31F736D9000} =>.PMDG Simulations, LLC. O42 - Logiciel: PMDG_MD11_FSX - (.Precision Manuals Development Group.) [HKLM][64Bits] -- {CED6EAB9-9FFD-44B2-939A-D77905AD35F3} =>.Macrovision Corporation® O42 - Logiciel: PowerISO - (.Power Software Ltd.) [HKLM][64Bits] -- PowerISO =>.Power Software Ltd O42 - Logiciel: Prepar3D v4 Content - (.Lockheed Martin.) [HKLM][64Bits] -- {87040041-993B-42AF-BEA0-6086FEB45184} =>.Lockheed Martin O42 - Logiciel: Prepar3D v4 Professional Plus - (.Lockheed Martin.) [HKLM][64Bits] -- {f13a7e85-3283-48f8-97f5-312381de5dce} =>.Lockheed Martin O42 - Logiciel: Prepar3D v4 Professional Plus Client - (.Lockheed Martin.) [HKLM][64Bits] -- {53DFB31A-C7E4-42D2-98D9-E715C42D6AFF} =>.Lockheed Martin O42 - Logiciel: Prepar3D v4 Scenery - (.Lockheed Martin.) [HKLM][64Bits] -- {C953A291-C0D5-414E-8211-778D5E53D73A} =>.Lockheed Martin O42 - Logiciel: Qualcomm Atheros Client Installation Program - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros® O42 - Logiciel: Realtek AC'97 Audio - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {FB08F381-6533-4108-B7DD-039E11FBC27E} =>.Macrovision Corporation® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Revo Uninstaller Pro 3.1.9 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd. O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: Visual Studio 2012 x64 Redistributables - (.AVG Technologies.) [HKLM][64Bits] -- {8C775E70-A791-4DA8-BCC3-6AB7136F4484} =>.AVG Technologies O42 - Logiciel: Visual Studio 2012 x86 Redistributables - (.AVG Technologies CZ, s.r.o..) [HKLM][64Bits] -- {98EFF19A-30AB-4E4B-B943-F06B1C63EBF8} =>.AVG Technologies CZ, s.r.o. O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.40 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ HKCU & HKLM Software Keys (171) - 30s HKLM\SOFTWARE\Wow6432Node\6B0F9417B709B82420EA66AA699015AF =>Adware.CrossRider HKLM\SOFTWARE\Wow6432Node\Abraxis HKLM\SOFTWARE\Wow6432Node\adaware =>.adaware HKLM\SOFTWARE\Wow6432Node\Adobe =>.Adobe HKLM\SOFTWARE\Wow6432Node\aerosoft =>.aerosoft HKLM\SOFTWARE\Wow6432Node\AMD =>.AMD HKLM\SOFTWARE\Wow6432Node\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Wow6432Node\Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\ATI =>.ATI HKLM\SOFTWARE\Wow6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Wow6432Node\Avanquest =>.Avanquest HKLM\SOFTWARE\Wow6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Wow6432Node\AVG =>.AVG Software HKLM\SOFTWARE\Wow6432Node\AVS4YOU =>.AVS4YOU HKLM\SOFTWARE\Wow6432Node\Bouygues Télécom =>.Bouygues HKLM\SOFTWARE\Wow6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\Wow6432Node\dbmkdb HKLM\SOFTWARE\Wow6432Node\DFX =>.DFX Power Technology HKLM\SOFTWARE\Wow6432Node\EA Games =>.EA Games HKLM\SOFTWARE\Wow6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\Wow6432Node\Ericsson =>.Ericsson HKLM\SOFTWARE\Wow6432Node\EZCA HKLM\SOFTWARE\Wow6432Node\EZCA2 HKLM\SOFTWARE\Wow6432Node\Freemake =>.Freemake HKLM\SOFTWARE\Wow6432Node\FSFDT HKLM\SOFTWARE\Wow6432Node\Google =>.Google HKLM\SOFTWARE\Wow6432Node\GuidGuid13 HKLM\SOFTWARE\Wow6432Node\HiFi HKLM\SOFTWARE\Wow6432Node\HitmanPro =>.EIDOS hitman Game HKLM\SOFTWARE\Wow6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\Wow6432Node\Intel =>.Intel HKLM\SOFTWARE\Wow6432Node\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\Wow6432Node\IObit =>.IObit HKLM\SOFTWARE\Wow6432Node\Ioscasoft HKLM\SOFTWARE\Wow6432Node\iSkysoft =>.iSkysoft Software HKLM\SOFTWARE\Wow6432Node\iThemes =>.iThemes HKLM\SOFTWARE\Wow6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\Wow6432Node\JGsoft =>.JGsoft HKLM\SOFTWARE\Wow6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Wow6432Node\Khronos =>.Khronos HKLM\SOFTWARE\Wow6432Node\LDSGameCenter HKLM\SOFTWARE\Wow6432Node\LdsLite HKLM\SOFTWARE\Wow6432Node\Leonardo HKLM\SOFTWARE\Wow6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\LiveUpdate360 =>.Qihu 360 Software Co., LTD HKLM\SOFTWARE\Wow6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\Wow6432Node\Macrovision =>.Macrovision HKLM\SOFTWARE\Wow6432Node\MAGIX =>.Magix HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\Wow6432Node\MicroRay =>.MicroRay HKLM\SOFTWARE\Wow6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Wow6432Node\MunSoft =>.MunSoft HKLM\SOFTWARE\Wow6432Node\MusicMatch HKLM\SOFTWARE\Wow6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Wow6432Node\PCSX2 HKLM\SOFTWARE\Wow6432Node\PCTools =>.PC Tools HKLM\SOFTWARE\Wow6432Node\PMDG Simulations, LLC. =>.PMDG Simulations, LLC. HKLM\SOFTWARE\Wow6432Node\PowerISO =>.PowerISO Computing HKLM\SOFTWARE\Wow6432Node\PowerTechnology =>.PowerTechnology HKLM\SOFTWARE\Wow6432Node\Precision Manuals Development Group =>.Precision Manuals Development Group HKLM\SOFTWARE\Wow6432Node\Qualcomm Atheros =>.Qualcomm Atheros HKLM\SOFTWARE\Wow6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\RICOH =>.RICOH HKLM\SOFTWARE\Wow6432Node\Skype =>.Skype HKLM\SOFTWARE\Wow6432Node\SOSVirus =>.SosVirus HKLM\SOFTWARE\Wow6432Node\SuppHelpDir =>.Toshiba Corporation HKLM\SOFTWARE\Wow6432Node\Swearware =>.Swearware HKLM\SOFTWARE\Wow6432Node\Systray =>.Unknown HKLM\SOFTWARE\Wow6432Node\The FlightSim Store =>.Games Software HKLM\SOFTWARE\Wow6432Node\tueagles HKLM\SOFTWARE\Wow6432Node\Unlock Codes Calculator v1.1 (by Crux) HKLM\SOFTWARE\Wow6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\WafCX =>.WafCX HKLM\SOFTWARE\Wow6432Node\WorldUnlock Codes Calculator HKLM\SOFTWARE\Wow6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Wow6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\30a3a9a9122b2c12c4ab6a0819899a31 =>Adware.CrossRider HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Aerix HKCU\SOFTWARE\Aiseesoft Studio =>.Aiseesoft Studio HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\AnalogX =>.AnalogX HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Aureal =>.Aureal Semiconductor HKCU\SOFTWARE\Avance =>.Avance Software HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\AVG =>.AVG Software HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU HKCU\SOFTWARE\Beroux =>.Beroux HKCU\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc. HKCU\SOFTWARE\BreakPoint =>.BreakPoint HKCU\SOFTWARE\BreakPoint License Manager HKCU\SOFTWARE\Bytescout =>.ByteScout HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\DFX =>.DFX Power Technology HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\Driver Magician =>.GoldSolution Software HKCU\SOFTWARE\EaseUS =>.EaseUS Software HKCU\SOFTWARE\Famatech =>.Famatech HKCU\SOFTWARE\FlightSimLabs HKCU\SOFTWARE\FlightSimSoft.com HKCU\SOFTWARE\FLT =>.FLT Software HKCU\SOFTWARE\Foxit Corporation =>.Foxit Corporation HKCU\SOFTWARE\Freemake =>.Freemake HKCU\SOFTWARE\FreeTime =>.FreeTime Inc HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GRETECH =>.Gretech HKCU\SOFTWARE\GsmServer HKCU\SOFTWARE\i-FunBox.com =>.i-Funbox.com HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\iSkysoft =>.iSkysoft Software HKCU\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\Lockheed Martin =>.Lockheed Martin HKCU\SOFTWARE\LockheedMartin =>.Thomas Ruth HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Magix =>.Magix HKCU\SOFTWARE\Magix Low Latency 2016 HKCU\SOFTWARE\MAGIX Software GmbH =>.MAGIX Software GmbH HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mirage =>.Mirage Game HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\NavPlugin HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\P2PDownloader =>.Unknown HKCU\SOFTWARE\Pascal Peter HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\PowerISO =>.PowerISO Computing HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\QualityWings HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RealtekVTIC =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\Red Dot Games =>.Red Dot Games HKCU\SOFTWARE\redsn0w =>.Jailbreak HKCU\SOFTWARE\RootGenius =>.RootGenius HKCU\SOFTWARE\SecuROM =>.SecuROM HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\skypeapp-8ac8acc88d4e =>.Skype Technologies HKCU\SOFTWARE\SoundTaxi HKCU\SOFTWARE\SRS Labs =>.SRS Labs HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\Teleca =>.Teleca HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\usr HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\WsAudio_Device =>.Olympus Corporation HKCU\SOFTWARE\WSVCUPlugin =>.Wondershare HKCU\SOFTWARE\Xilisoft =>.Xilisoft HKCU\SOFTWARE\Zemana =>.Zemana HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\Zyl Soft =>.Zyl Soft HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\Adobe =>.Adobe HKCU\SOFTWARE\AppDataLow\Software\Macromedia =>.Macromedia ---\\ Contenu des dossiers Programmes (277) - 104s O43 - CFD: 23/12/2016 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 30/10/2016 - [] D -- C:\Program Files\BreakPoint Software O43 - CFD: 22/10/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 18/11/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 16/12/2016 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.® O43 - CFD: 16/11/2017 - [] D -- C:\Program Files\CyberGhost 6 =>.CyberGhost S.R.L O43 - CFD: 17/03/2017 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 22/12/2016 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 12/10/2017 - [] D -- C:\Program Files\Lockheed Martin =>.Lockheed Martin O43 - CFD: 21/09/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 15/06/2017 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 20/12/2016 - [] D -- C:\Program Files\PowerISO =>.PowerISO Computing O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 18/11/2017 - [] D -- C:\Program Files\SRS Labs =>.SRS Labs O43 - CFD: 30/12/2016 - [0] D -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 01/12/2016 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 05/07/2017 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 23/12/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 23/12/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 26/09/2016 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 23/12/2016 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/10/2016 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/10/2016 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 21/06/2017 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 21/12/2016 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 29/11/2017 - [] D -- C:\Program Files (x86)\Athan O43 - CFD: 03/12/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Program Files (x86)\DFX =>.DFX Power Technology O43 - CFD: 24/09/2017 - [] D -- C:\Program Files (x86)\EA Games =>.EA Games O43 - CFD: 08/10/2017 - [] D -- C:\Program Files (x86)\Elaborate Bytes =>.Elaborate Bytes O43 - CFD: 13/10/2017 - [] D -- C:\Program Files (x86)\Electronic Arts =>.Electronic Arts O43 - CFD: 24/09/2017 - [] D -- C:\Program Files (x86)\EZCA O43 - CFD: 22/11/2017 - [] D -- C:\Program Files (x86)\Fiddler2 =>.TELERIK AD® O43 - CFD: 06/10/2017 - [] D -- C:\Program Files (x86)\FormatFactory =>.Free Time Co., Ltd.® O43 - CFD: 16/07/2017 - [] D -- C:\Program Files (x86)\FOXWELL O43 - CFD: 04/11/2017 - [] D -- C:\Program Files (x86)\Freemake =>.Freemake O43 - CFD: 04/12/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 22/04/2017 - [] D -- C:\Program Files (x86)\Hanover Displays O43 - CFD: 29/11/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 14/11/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 29/10/2017 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc O43 - CFD: 16/11/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Program Files (x86)\media center Bbox =>.Bouygues O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 24/09/2017 - [] D -- C:\Program Files (x86)\Microsoft Games =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 15/06/2017 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 29/10/2016 - [] D -- C:\Program Files (x86)\MSXML 4.0 =>.Microsoft Corporation O43 - CFD: 24/09/2017 - [] D -- C:\Program Files (x86)\Musicmatch O43 - CFD: 15/11/2017 - [] D -- C:\Program Files (x86)\PMDG Operations Center O43 - CFD: 20/12/2016 - [] D -- C:\Program Files (x86)\PrivaZer =>.Goversoft LLC O43 - CFD: 30/09/2016 - [] D -- C:\Program Files (x86)\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 26/12/2016 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 13/06/2017 - [] D -- C:\Program Files (x86)\Realtek AC97 =>.Realtek Semiconductor Corp. O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Program Files (x86)\VirtualDJ =>.Atomix Production O43 - CFD: 12/06/2017 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/10/2016 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/10/2016 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 21/06/2017 - [] D -- C:\Program Files (x86)\WinRAR =>.WinRAR O43 - CFD: 11/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 10/10/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 24/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft =>.aerosoft O43 - CFD: 24/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Problem Report Wizard O43 - CFD: 24/05/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings =>.Advanced Micro Devices Inc O43 - CFD: 29/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Athan O43 - CFD: 21/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 22/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crux Unlocker v1.1 O43 - CFD: 03/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DFX Audio Enhancer =>.DFX Audio Enhancer O43 - CFD: 24/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games =>.EA Games O43 - CFD: 18/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Electronic Arts =>.Electronic Arts O43 - CFD: 24/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZCA O43 - CFD: 10/06/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fausto O43 - CFD: 10/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flight One Software =>.Flight One Software O43 - CFD: 13/10/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 28/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hanover Displays O43 - CFD: 11/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IFly Jets - The 737NG for FSX O43 - CFD: 11/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 01/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lockheed Martin =>.Lockheed Martin O43 - CFD: 24/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Majestic Dash8 Q400 O43 - CFD: 27/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 13/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\media center Bbox =>.Bouygues O43 - CFD: 24/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 15/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 24/09/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Musicmatch O43 - CFD: 29/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations O43 - CFD: 20/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO =>.PowerISO Computing O43 - CFD: 05/07/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group O43 - CFD: 24/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 26/06/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Super Mario Blue Twilight DX O43 - CFD: 24/05/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VDrift O43 - CFD: 03/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 21/06/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 19/12/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WorldUnlock Calculator O43 - CFD: 30/11/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 01/11/2017 - [] D -- C:\ProgramData\Apowersoft =>.Apowersoft O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 21/10/2016 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 26/08/2017 - [] D -- C:\ProgramData\Atc O43 - CFD: 12/06/2017 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 12/11/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 19/06/2017 - [] D -- C:\ProgramData\Avg =>.AVG Software O43 - CFD: 01/11/2017 - [] D -- C:\ProgramData\AVS4YOU =>.AVS4YOU O43 - CFD: 26/08/2017 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender O43 - CFD: 26/08/2017 - [] D -- C:\ProgramData\Bitdefender Agent =>.Bitdefender O43 - CFD: 26/08/2017 - [] D -- C:\ProgramData\Bitdefender Device Management =>.Bitdefender O43 - CFD: 26/09/2016 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 23/10/2016 - [] D -- C:\ProgramData\Common Diagnostics =>.Unknown O43 - CFD: 19/06/2017 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 16/12/2016 - [] D -- C:\ProgramData\Conexant =>.Conexant O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 15/10/2017 - [] D -- C:\ProgramData\DFX =>.DFX Power Technology O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 16/07/2017 - [] D -- C:\ProgramData\Driver-Soft =>.Driver-Soft O43 - CFD: 04/12/2017 - [] D -- C:\ProgramData\Emsisoft =>.Emsisoft O43 - CFD: 05/10/2017 - [] D -- C:\ProgramData\Esellerate =>.eSellerate O43 - CFD: 26/09/2016 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 29/11/2017 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software O43 - CFD: 22/04/2017 - [] D -- C:\ProgramData\Hanover Displays O43 - CFD: 14/07/2017 - [] D -- C:\ProgramData\HitmanPro =>.EIDOS hitman Game O43 - CFD: 04/12/2017 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 11/09/2017 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 01/11/2017 - [] D -- C:\ProgramData\iSkysoft =>.iSkySoft O43 - CFD: 01/11/2017 - [] D -- C:\ProgramData\iSkysoft iMedia Converter Deluxe =>.iSkysoft Software O43 - CFD: 16/07/2017 - [] D -- C:\ProgramData\iSkysoft Video Converter Ultimate =>.iSkysoft Software O43 - CFD: 15/11/2017 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 12/11/2017 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab O43 - CFD: 08/05/2017 - [] D -- C:\ProgramData\Lavasoft =>.Lavasoft O43 - CFD: 25/09/2017 - [] D -- C:\ProgramData\Lockheed Martin =>.Lockheed Martin O43 - CFD: 04/12/2017 - [] D -- C:\ProgramData\MAGIX =>.Magix O43 - CFD: 27/09/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 13/11/2017 - [] D -- C:\ProgramData\media center Bouygues Telecom =>.Bouygues O43 - CFD: 26/09/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 30/11/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 26/09/2016 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 07/11/2017 - [] D -- C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 04/12/2017 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 21/06/2017 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 01/12/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 03/01/2017 - [] D -- C:\ProgramData\PC Tools =>.PC Tools O43 - CFD: 03/01/2017 - [] D -- C:\ProgramData\privazer =>.Goversoft LLC O43 - CFD: 21/09/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 30/09/2016 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 04/12/2017 - [] D -- C:\ProgramData\RogueKiller =>.Adlice Software O43 - CFD: 21/08/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 05/11/2016 - [] D -- C:\ProgramData\SRS Labs =>.SRS Labs O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 10/10/2017 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 29/06/2017 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 06/01/2017 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group O43 - CFD: 21/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 22/10/2016 - [] D -- C:\Program Files (x86)\Common Files\Aiseesoft Studio =>.Aiseesoft Studio O43 - CFD: 24/05/2017 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies =>.ATI Technologies O43 - CFD: 01/11/2017 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia =>.AVSMedia O43 - CFD: 03/12/2017 - [] D -- C:\Program Files (x86)\Common Files\DFX =>.DFX Power Technology O43 - CFD: 11/07/2017 - [] D -- C:\Program Files (x86)\Common Files\EagleGet =>.EagleGet O43 - CFD: 21/06/2017 - [] HD -- C:\Program Files (x86)\Common Files\EAInstaller =>.Electronic Arts, Inc. O43 - CFD: 24/08/2017 - [] D -- C:\Program Files (x86)\Common Files\eSellerate =>.eSellerate O43 - CFD: 24/09/2017 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 22/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 14/07/2017 - [] D -- C:\Program Files (x86)\Common Files\IObit =>.IObit O43 - CFD: 16/07/2017 - [] D -- C:\Program Files (x86)\Common Files\iSkysoft =>.iSkySoft O43 - CFD: 12/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared =>.Rovi Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Program Files (x86)\Common Files\MAGIX Services =>.MAGIX_Software_GmbH O43 - CFD: 12/06/2017 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 03/12/2017 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 30/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 23/12/2016 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 17/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\com.bouyguestelecom.mediacenter =>.Bouygues O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 26/09/2016 - [] D -- C:\Users\yacin\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 22/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\IDM =>.IDM O43 - CFD: 29/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 01/12/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Lockheed Martin =>.Lockheed Martin O43 - CFD: 18/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 03/12/2017 - [] D -- C:\Users\yacin\AppData\Roaming\MAGIX =>.Magix O43 - CFD: 14/07/2009 - [0] D -- C:\Users\yacin\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 03/12/2017 - [] SD -- C:\Users\yacin\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 16/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 16/11/2017 - [] D -- C:\Users\yacin\AppData\Local\Adobe =>.Adobe O43 - CFD: 20/11/2017 - [] D -- C:\Users\yacin\AppData\Local\AMD =>.AMD O43 - CFD: 26/09/2016 - [0] SHD -- C:\Users\yacin\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 20/11/2017 - [] D -- C:\Users\yacin\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Users\yacin\AppData\Local\CEF =>.CEF O43 - CFD: 03/12/2017 - [] D -- C:\Users\yacin\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [0] D -- C:\Users\yacin\AppData\Local\Deployment =>.Microsoft Corporation O43 - CFD: 18/11/2017 - [] D -- C:\Users\yacin\AppData\Local\DFX =>.DFX Power Technology O43 - CFD: 01/12/2017 - [] D -- C:\Users\yacin\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 28/11/2017 - [] D -- C:\Users\yacin\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Local\Google =>.Google O43 - CFD: 26/09/2016 - [0] SHD -- C:\Users\yacin\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 20/11/2017 - [] D -- C:\Users\yacin\AppData\Local\l3hjpSfeReLyvxXn1o O43 - CFD: 01/12/2017 - [] D -- C:\Users\yacin\AppData\Local\Lockheed Martin =>.Lockheed Martin O43 - CFD: 10/11/2017 - [] D -- C:\Users\yacin\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Local\NPE =>.NPE O43 - CFD: 01/12/2017 - [] D -- C:\Users\yacin\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 19/11/2017 - [] D -- C:\Users\yacin\AppData\Local\Smart PC Soft =>.Smart PC Soft O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 26/09/2016 - [0] SHD -- C:\Users\yacin\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 17/11/2017 - [] D -- C:\Users\yacin\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 27/11/2017 - [] D -- C:\Users\yacin\AppData\Local\VS Revo Group =>.VS Revo Group O43 - CFD: 03/12/2017 - [] D -- C:\Users\yacin\AppData\Local\Xara =>.Xara O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 01/12/2017 - [0] D -- C:\Users\yacin\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\Desktop\FRST-OlderVersion O43 - CFD: 03/12/2017 - [] D -- C:\Users\yacin\Desktop\mes videos O43 - CFD: 04/12/2017 - [] D -- C:\Users\yacin\Desktop\Nouveau dossier O43 - CFD: 13/10/2017 - [] D -- C:\Users\yacin\Desktop\Nouveau dossier (2) O43 - CFD: 03/12/2017 - [] D -- C:\Users\yacin\Desktop\UniM3u Converter V.2.3 O43 - CFD: 14/07/2009 - [] RD -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 13/09/2017 - [] RD -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 06/10/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory =>.FormatFactory O43 - CFD: 13/11/2017 - [0] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FOXWELL O43 - CFD: 28/10/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 11/07/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 14/07/2009 - [] RD -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 14/06/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orbx O43 - CFD: 18/06/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rikoooo Add-ons =>.Rikoooo O43 - CFD: 13/09/2017 - [] RD -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker =>.Cedrick Collomb O43 - CFD: 27/05/2017 - [0] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp =>.WhatsApp O43 - CFD: 21/06/2017 - [] D -- C:\Users\yacin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Users\Default\AppData\Local\CrashRpt O43 - CFD: 26/09/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 20/03/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [0] D -- C:\Users\Default\AppData\Local\temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Users\Default User\AppData\Local\CrashRpt O43 - CFD: 26/09/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 20/03/2017 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [0] D -- C:\Users\Default User\AppData\Local\temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 27/07/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\AVAST Software =>.AVAST Software O43 - CFD: 19/06/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software O43 - CFD: 17/11/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 27/07/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 13/10/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/01/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Zemana =>.Zemana O43 - CFD: 22/10/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 19/06/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\ExpressVPN =>.ExpressVPN O43 - CFD: 10/10/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 03/12/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 1s O106 - SIOI: [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ Raccourcis de menus conceptuels (SCMH) (54) - 4s O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH1: ContextMenuExt [64Bits] - {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3E} . (.Orphan.) O108 - CMH1: FormatFactoryShell [64Bits] - {A3777921-CFD3-4A6B-89BF-08E6B95716E8} . (.Orphan.) O108 - CMH1: iSkysoftVideoConverterFileOpreation [64Bits] - {BB35DE05-89D6-4D8F-95DE-A27DF8156D91} . (...) -- C:\Windows\SysWOW64\ISCM64.dll O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH1: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL =>.Power Software Limited® O108 - CMH1: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: ShellExtension [64Bits] - . (.Orphan.) O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH1: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation O108 - CMH2: ContextMenuExt [64Bits] - {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3E} . (.Orphan.) O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH2: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH3: UnlockerShellExtension [64Bits] - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll =>.Empty Loop® O108 - CMH3: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH4: FormatFactoryShell [64Bits] - {A3777921-CFD3-4A6B-89BF-08E6B95716E8} . (.Orphan.) O108 - CMH4: MSSE [64Bits] - {0365FE2C-F183-4091-AC82-BFC39FB75C49} . (.Orphan.) O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O108 - CMH4: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL =>.Power Software Limited® O108 - CMH4: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: ShellExtension [64Bits] - . (.Orphan.) O108 - CMH4: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - Radeon Settings: Desktop Control Panel.) -- C:\Program Files\AMD\CNext\CNext\atiacm64.dll =>.Advanced Micro Devices, Inc. O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation O108 - CMH5: igfxcui [64Bits] - {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} . (.Orphan.) O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\system32\igfxDTCM.dll =>.Intel Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O108 - CMH6: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Power Software Ltd - PowerISOShell DLL.) -- C:\Program Files\PowerISO\PWRISOSH.DLL =>.Power Software Limited® O108 - CMH6: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group® O108 - CMH6: UnlockerShellExtension [64Bits] - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll =>.Empty Loop® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH6: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: PrivaZer [64Bits] - {7691BE2F-3D79-AADE-9C87-4D6EBCC76682} . (...) -- C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH7: ShellExtension [64Bits] - . (.Orphan.) ---\\ Enumération des clés StartupReg (8) - 0s O53 - SMSR:HKLM\...\startupreg\Athan [Key] [64Bits] . (.www.IslamicFinder.org - Automatic Athan (Azan) five times a day f.) -- C:\Program Files (x86)\Athan\Athan.exe =>.www.IslamicFinder.org O53 - SMSR:HKLM\...\startupreg\CCleaner Monitoring [Key] [64Bits] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd O53 - SMSR:HKLM\...\startupreg\DFX [Key] [64Bits] . (...) -- C:\Program Files (x86)\DFX\DFX.exe O53 - SMSR:HKLM\...\startupreg\IDMan [Key] [64Bits] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O53 - SMSR:HKLM\...\startupreg\iSkysoft Helper Compact.exe [Key] [64Bits] . (.iSkySoft - iSkySoft Studio.) -- C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe =>.iSkySoft O53 - SMSR:HKLM\...\startupreg\NT Wonder Pulse [Key] [64Bits] . (...) -- C:\Program Files (x86)\FOXWELL\NT Wonder\Pulse.exe (.not file.) O53 - SMSR:HKLM\...\startupreg\PWRISOVM.EXE [Key] [64Bits] . (.Power Software Ltd - PowerISO Virtual Drive Manager.) -- C:\Program Files\PowerISO\PWRISOVM.EXE =>.Power Software Ltd O53 - SMSR:HKLM\...\startupreg\RtsFT [Key] [64Bits] . (.Realtek semiconductor - RTFTrack.) -- RTFTrack.exe (.not file.) =>.Realtek Semiconductor ---\\ Liste des pilotes du système (80) - 12s O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2016/12/23 23:52:34 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15080] =>.Microsoft Windows® O58 - SDL:2017/04/25 02:35:06 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [305544] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/12/16 18:03:15 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\Windows\System32\drivers\amdkmpfd.sys [79120] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/12/23 23:52:34 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107752] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2016/12/23 23:52:34 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [26856] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2016/12/16 18:01:20 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athrx.sys [4172536] =>.Qualcomm Atheros® O58 - SDL:2013/12/19 05:03:48 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [13203456] =>.Advanced Micro Devices, Inc. O58 - SDL:2013/12/19 05:03:48 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [624128] =>.Advanced Micro Devices, Inc. O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd. O58 - SDL:2017/09/11 17:40:48 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [609704] =>.Qualcomm Atheros® O58 - SDL:2011/12/13 11:26:18 A . (.Intel Corporation - Bluetooth Auxiliary Driver.) -- C:\Windows\System32\drivers\btmaux.sys [94720] =>.Intel Corporation O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation O58 - SDL:2017/09/11 17:40:05 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\Windows\System32\drivers\CHDRT64.sys [1546328] =>.Conexant Systems, Inc.® O58 - SDL:2016/12/23 23:52:34 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17128] =>.Microsoft Windows® O58 - SDL:2015/08/31 19:25:58 A . (.Windows (R) Win 7 DDK provider - Explore Systems Virtual Audio Device.) -- C:\Windows\System32\drivers\dfx11_1x64.sys [28008] =>.Power Technology® O58 - SDL:2015/11/12 18:27:14 A . (.Windows (R) Win 7 DDK provider - Explore Systems Virtual Audio Device.) -- C:\Windows\System32\drivers\dfx12x64.sys [29688] =>.Power Technology® O58 - SDL:2011/12/19 12:29:08 A . (.Windows (R) Win 7 DDK provider - Support Device.) -- C:\Windows\System32\drivers\DrmRAudio.sys [34040] {1AB2D0AB95BC7F4A0DF2139E41377999} =>.Windows (R) Win 7 DDK provider O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2017/09/11 17:39:25 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\Windows\System32\drivers\ETDSMBus.sys [32840] =>.ELAN MICROELECTRONICS CORPORATION® O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation O58 - SDL:2015/07/20 13:53:46 A . (.AVM GmbH - FRITZ!WLAN USB Stick.) -- C:\Windows\System32\drivers\fwlanusb6_860.sys [2274336] =>.MEDIATEK INC.® O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc. O58 - SDL:2010/11/20 14:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2016/12/16 18:01:42 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [1469952] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2016/12/16 18:01:42 A . (.Intel Corporation - Intel(R) Rapid Storage Technology Filter dr.) -- C:\Windows\System32\drivers\iaStorF.sys [31712] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2016/12/23 23:52:34 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410344] =>.Microsoft Windows® O58 - SDL:2017/08/05 17:26:42 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [225568] =>.Tonec Inc.® O58 - SDL:2015/08/09 04:50:42 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4928256] =>.Intel Corporation - pGFX® O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2017/09/11 17:41:03 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [480800] =>.Intel(R) OWR® O58 - SDL:2017/09/11 17:41:35 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [824848] =>.Intel(R) USB eXtensible Host Controller Drivers® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2017/10/10 11:49:25 A . (...) -- C:\Windows\System32\drivers\mbae64.sys [77440] =>.Malwarebytes Corporation® O58 - SDL:2017/10/05 16:46:21 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\Windows\System32\drivers\mbam.sys [45472] =>.Malwarebytes Corporation® O58 - SDL:2017/09/27 12:58:09 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\Windows\System32\drivers\MBAMChameleon.sys [192960] =>.Malwarebytes Corporation® O58 - SDL:2017/10/10 10:42:34 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [253888] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2017/10/06 17:59:43 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\Windows\System32\drivers\mwac.sys [84256] =>.Malwarebytes Corporation® O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2016/12/23 23:52:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148200] =>.Microsoft Windows® O58 - SDL:2016/12/23 23:52:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166120] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2016/12/21 13:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\Windows\System32\drivers\revoflt.sys [40240] =>.VS Revo Group® O58 - SDL:2017/09/21 16:22:40 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [1075688] =>.Realtek Semiconductor Corp.® O58 - SDL:2016/12/16 18:02:37 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for Win7/Win8/Win8.1/Win.) -- C:\Windows\System32\drivers\rtsuvc.sys [3127552] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/08 16:27:54 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\Windows\System32\drivers\RtsUVStor.sys [329944] =>.Realtek Semiconductor Corp® O58 - SDL:2016/10/02 01:50:20 A . (.Power Software Ltd - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [137280] =>.Power Software Limited® O58 - SDL:2009/06/10 21:37:19 A . (. - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Rovi Corporation O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2010/11/15 14:29:02 A . (.Copyright (C) 2010 SRS Labs, Inc. - SRS Premium Sound driver.) -- C:\Windows\System32\drivers\SRS_HDAL_amd64.sys [533280] =>.SRS Labs, Inc® O58 - SDL:2009/12/15 14:41:32 A . (.Copyright (C) 2006 SRS Labs, Inc. - SRS WOW HD, TSXT, CSII, Mobile HD Standalon.) -- C:\Windows\System32\drivers\SRS_SSCFilter_amd64.sys [346992] =>.SRS Labs, Inc® O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2016/04/21 10:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project O58 - SDL:2017/04/25 12:46:46 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tapexpressvpn.sys [35696] =>.ExprsVPN LLC® O58 - SDL:2017/09/11 17:39:44 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [200272] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2017/12/04 00:41:33 A . (...) -- C:\Windows\System32\drivers\TrueSight.sys [28272] =>.Adlice® O58 - SDL:2016/08/16 03:18:34 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\usb2ser.sys [159936] =>.NGO® O58 - SDL:2015/11/05 15:23:52 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2013/07/24 16:02:46 A . (.Elaborate Bytes AG - Virtual CloneDrive SCSI miniport.) -- C:\Windows\System32\drivers\VClone.sys [36864] =>.Elaborate Bytes AG O58 - SDL:2016/12/23 23:52:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17128] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2015/06/16 01:02:18 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\athrx.sys [4155904] =>.Qualcomm Atheros Communications, Inc. ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (9) - 27s O61 - LFC: 2017/12/04 02:40:02 A . (..) -- C:\ProgramData\Hanover Displays\Helen\REMAP.BIN [256] O61 - LFC: 2017/12/01 15:04:20 A . (..) -- C:\ProgramData\HitmanPro\Banner.bin [25080] O61 - LFC: 2017/12/01 16:54:29 A . (..) -- C:\Users\yacin\AppData\Roaming\Lockheed Martin\Prepar3D v4\Substitutions\SubstitutionCheckSum.bin [4] O61 - LFC: 2017/12/01 16:55:54 N . (..) -- C:\Users\yacin\AppData\Roaming\Lockheed Martin\Prepar3D v4\wxstationlist.bin [24680] O61 - LFC: 2017/12/02 02:10:15 A . (..) -- C:\Users\yacin\AppData\Roaming\Microsoft\FSX\wxstationlist.BIN [39840] =>.Microsoft Corporation O61 - LFC: 2017/11/29 00:14:07 A . (..) -- C:\Users\yacin\Documents\Flight Simulator X Files\Logbook.BIN [13951] O61 - LFC: 2017/12/04 00:13:43 A . (..) -- C:\Users\yacin\Favorites\PMDG MD-11 By TheBlueWolf\Crack\EnableButton.exe [28672] O61 - LFC: 2017/11/29 18:59:24 A . (.Setup Engine Copyright © 2001 - 2004 Indigo Rose Corp.) -- C:\Users\yacin\telechargement\Athan Pro 4.5.exe [17085658] O61 - LFC: 2017/12/04 19:01:16 A . (..) -- C:\Users\yacin\telechargement\Programs\zoek.exe [1313792] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %* O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (2) - 0s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (33) - 1s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [71680] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [235520] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [863232] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680448] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344576] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [358912] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [687104] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2651136] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [371712] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [571904] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [128000] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135680] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110528] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [225280] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation ---\\ Recherche des packages WindowsInstaller (42) - 13s [MD5.9A57BD5C8CEBE81B3C07098301E4200D] [WIS][2017/11/13 16:32:59] (.Bouygues Télécom - media center Bbox.) -- C:\Windows\Installer\10c41b5.msi [2011136] =>.Bouygues Télécom [MD5.0D3000ABAC79F59FF7AFEC712E414145] [WIS][2017/05/01 22:06:04] (.Advanced Micro Devices, Inc. - AMD Software (64 bit).) -- C:\Windows\Installer\1175ec.msi [36912640] =>.Advanced Micro Devices, Inc. [MD5.59D0F30F102B382B13DD66A97A09E110] [WIS][2013/03/06 13:58:51] (.AVG Technologies - Visual Studio 2012 x64 Redistributables.) -- C:\Windows\Installer\1452177.msi [13684736] =>.AVG Technologies [MD5.D7C8F629A87765492DAA8856DE7A9CCC] [WIS][2013/03/06 13:57:37] (.AVG Technologies CZ, s.r.o. - Visual Studio 2012 x86 Redistributables.) -- C:\Windows\Installer\1452181.msi [40960] =>.AVG Technologies CZ, s.r.o. [MD5.44770B0E101F77CA062B782F36D3B477] [WIS][2017/04/22 11:51:17] (.Hanover Displays.) -- C:\Windows\Installer\14948248.msi [20856320] [MD5.7D84BE0EA21E2D37FCE14777B3CF0D9C] [WIS][2002/09/13 15:43:00] (.Electronic Arts - Electronic Arts Product Registration.) -- C:\Windows\Installer\17770c.msi [6484840] =>.Electronic Arts [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\Windows\Installer\1900dce.msi [2805760] =>.Adobe Systems Incorporated [MD5.58B1528B636E337F8232EB023D69CD82] [WIS][2016/12/06 19:20:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253a80.msi [542208] =>.Advanced Micro Devices, Inc. [MD5.FBE458881F14F8BADFA0FF3541AA3E77] [WIS][2016/12/06 19:20:38] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253a85.msi [512000] =>.Advanced Micro Devices, Inc. [MD5.22B18A9A210AC07EC5C606B63F0C8D40] [WIS][2016/12/06 19:21:02] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253a8a.msi [591872] =>.Advanced Micro Devices, Inc. [MD5.2F45ED948588FA8AC0E18F84A02F9201] [WIS][2016/12/06 19:21:28] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253a8f.msi [515072] =>.Advanced Micro Devices, Inc. [MD5.64E60C4F028F06192DB138A24EBA0A0D] [WIS][2016/12/06 19:21:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253a94.msi [512512] =>.Advanced Micro Devices, Inc. [MD5.F3796C6DB52C5468504527045F6881AD] [WIS][2016/12/06 19:22:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\Windows\Installer\253a99.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.A462235C33CBEF74C59FC9644080D3F8] [WIS][2016/12/06 19:22:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253a9e.msi [592384] =>.Advanced Micro Devices, Inc. [MD5.A761CE923CC7ED0D68BCCACDCF5D262E] [WIS][2016/12/06 19:23:08] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253aa3.msi [512512] =>.Advanced Micro Devices, Inc. [MD5.7C2A8A30BE759215AA66A4DB6148FE25] [WIS][2016/12/06 19:23:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253aa8.msi [591360] =>.Advanced Micro Devices, Inc. [MD5.148F7FDF792F5EFE63EBE76BAE3F4288] [WIS][2016/12/06 19:23:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253aad.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.9D1D4D441B0074D3BAA2BB826AB7F2F3] [WIS][2016/12/06 19:24:24] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ab2.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.FBCC3C08F3A37023F6D378CFEEA3DACC] [WIS][2016/12/06 19:24:50] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ab7.msi [591872] =>.Advanced Micro Devices, Inc. [MD5.E30F3C18C4F9631D81D76EC6EBE9781D] [WIS][2016/12/06 19:25:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253abc.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.A88F1D7AF0A3405CF5D12C576755E463] [WIS][2016/12/06 19:25:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ac1.msi [591872] =>.Advanced Micro Devices, Inc. [MD5.076CA97A177A8A45CE8FCC0D4662CAC5] [WIS][2016/12/06 19:26:08] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ac6.msi [512000] =>.Advanced Micro Devices, Inc. [MD5.694A2C333F8DD75D62724045ED4906EF] [WIS][2016/12/06 19:26:34] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253acb.msi [513536] =>.Advanced Micro Devices, Inc. [MD5.9699693D2EBE34A9BF0399E40E67AC25] [WIS][2016/12/06 19:27:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ad0.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.91FAF4A303152AC23DD7B67C9D8B1A47] [WIS][2016/12/06 19:27:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ad5.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.5618D5B7DACBAFC097C7AB079D9E573C] [WIS][2016/12/06 19:27:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ada.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.157DCB28C081F10A191E22454C601DE1] [WIS][2016/12/06 19:28:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253adf.msi [587776] =>.Advanced Micro Devices, Inc. [MD5.8B47287724D9454AA844A9D85E49BC5C] [WIS][2016/12/06 19:28:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\Windows\Installer\253ae4.msi [587776] =>.Advanced Micro Devices, Inc. [MD5.4F655158E402875B1464A5684521024A] [WIS][2016/12/06 19:32:50] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\Windows\Installer\253ae9.msi [33012736] =>.Advanced Micro Devices, Inc. [MD5.0ADE85C947D5ACDC2212D8BE69669D6A] [WIS][2016/12/06 19:34:02] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\Windows\Installer\253aee.msi [38114304] =>.Advanced Micro Devices, Inc. [MD5.D893E0F9BF3BC14AE18D032360063EF9] [WIS][2016/11/11 07:04:26] (.Advanced Micro Devices, Inc. - Branding.) -- C:\Windows\Installer\253af3.msi [453120] =>.Advanced Micro Devices, Inc. [MD5.81110B988A40BEA782EC39529D5C4714] [WIS][2016/12/06 19:29:14] (.Advanced Micro Devices, Inc. - AMD Problem Report Wizard (64 bit).) -- C:\Windows\Installer\253af8.msi [38222336] =>.Advanced Micro Devices, Inc. [MD5.73926680049F84FDA23DDAE8CADD28B3] [WIS][2016/12/06 19:32:50] (.Advanced Micro Devices, Inc. - Drag & Drop Transcoding.) -- C:\Windows\Installer\253afd.msi [1494016] =>.Advanced Micro Devices, Inc. [MD5.A666B14C461CC7207C0C9B3D0D2D28F3] [WIS][2017/11/14 00:00:31] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\Windows\Installer\2a78b46.msi [880128] =>.Adobe Systems Incorporated [MD5.E181FBD268272EA059DD5D67C16F3E34] [WIS][2017/05/08 11:26:12] (.adaware - InstallShield® 2012 Spring - Professional E.) -- C:\Windows\Installer\315d8f4.msi [76109824] =>.adaware [MD5.FD82E177440FE8ABA577A478F0F31049] [WIS][2014/01/25 13:32:20] (.Adobe Systems, Inc - Adobe Shockwave Player 12.0.) -- C:\Windows\Installer\389656.msi [23174144] =>.Adobe Systems, Inc [MD5.598305EC976DBA49DEE7C912CF1EFC31] [WIS][2017/05/26 05:05:13] (.Lockheed Martin - Prepar3D v4 Content.) -- C:\Windows\Installer\593df0.msi [5430598] =>.Lockheed Martin [MD5.84E4BE2345C53FA64C5752C2FF959436] [WIS][2017/05/26 05:35:25] (.Lockheed Martin - Prepar3D v4 Scenery.) -- C:\Windows\Installer\593df5.msi [9785963] =>.Lockheed Martin [MD5.CF278EF16FFD92F7ABD1C968F0013D19] [WIS][2011/12/19 19:55:32] (.Intel Corporation - Intel(R) PROSet/Wireless Software for Bluet.) -- C:\Windows\Installer\699c363.msi [41276416] =>.Intel Corporation [MD5.AA3313CBDA1DC24D82646ADCD0D63CD4] [WIS][2017/05/08 18:49:57] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\97455b.msi [48168960] =>.Apple Inc. [MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/12/04 01:53:27] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\aa3da.msi [40960] =>.Google Inc. [MD5.ECEA336CF61A77CC8B566CC19939C542] [WIS][2017/05/26 05:45:07] (.Lockheed Martin - Prepar3D v4 Professional Plus Client.) -- C:\Windows\Installer\dce854.msi [204342430] =>.Lockheed Martin ---\\ Scan Additionnel (13) - 2s HKLM\SYSTEM\CurrentControlSet\Services\Clurothwward =>Adware.Suspect HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ContextMenuExt =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\FormatFactoryShell =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\ContextMenuExt =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\FormatFactoryShell =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MSSE =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ShellExtension =>.SUP.Orphan HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\ShellExtension =>.SUP.Orphan ---\\ Récapitulatif des éléments trouvés sur votre station (3) - 0s https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider ~ Unselected Options: O82, ~ End of the scan, 48872 items in 04mn45s (1237)(0)