~ ZHPDiag v2018.1.23.14 Par Nicolas Coolman (2018/01/23) ~ Démarré par TM161 (Administrator) (2018/01/27 00:00:25) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\TM161\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\TM161\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1 Pro, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ Navigateurs Internet (4) - 0s ~ GCIE: Google Chrome v63.0.3239.132 ~ MFIE: Mozilla Firefox 43.0.1 (x86 en-US) ~ MFIE: Opera 50.0.2762.67 ~ MSIE: Internet Explorer v11.0.9600.17207 ---\\ Informations sur les produits Windows (9) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ~ Windows(R) Operating System, VOLUME_KMSCLIENT channel Windows ID Activation : OK ~ Windows Partial Key : 9D6T9 Windows License : OK Expiration Licence Windows : 125299 minute(s) (88 jour(s)) ~ Windows Remaining Initializations Number : 1000 ---\\ Logiciels de protection (1) - 1s Windows Defender (Activate) (Protection) ---\\ Logiciels d'optimisation (1) - 2s ~ CCleaner v5.01 (Optimize) ---\\ Surveillance de Logiciels (1) - 2s ~ Adobe Flash Player 28 PPAPI (Surveillance) ---\\ Logiciels de partage P2P (1) - 2s ~ µTorrent v3.5.1.44332 (P2P) ---\\ Informations sur le système (7) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8202.6 MB (53% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 1 GB (1%) free of 99 GB : ATTENTION =>Warning Disk Space Total RAM: 8202.6 MB (60% free) : OK =>.RAM Value ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: WIN81DOWS ~ User Name: TM161 ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 1 GB free of 99 GB (System) ~ Drive E: has 11 GB free of 357 GB ---\\ Etat du Centre de Sécurité Windows (11) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ Recherche particulière de fichiers génériques (25) - 6s [MD5.C10A66189DC8C090E7C84873EDCEBC88] - 28/01/2015 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2501368] =>.Microsoft Windows® [MD5.6E0BDFBEEED65B017F2E4C2C910B0520] - 22/08/2013 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [52736] =>.Microsoft Corporation [MD5.48CFA7BE561A7BE144C29BB912055016] - 22/08/2013 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [144384] =>.Microsoft Corporation [MD5.2EE102DF0EDD8A1EDD3D1E9B99A91BEC] - 24/09/2014 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2266112] =>.Microsoft Corporation [MD5.306EB21E5B480AE9065EA55AC8C35936] - 24/09/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [562176] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 24/09/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation [MD5.B7E51F949ED8C3A75C1D3121AF9A4B6C] - 24/09/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [655360] =>.Microsoft Corporation [MD5.FF0EE1B87E5DD7A82F7BB124D5CA8BB6] - 24/09/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [494592] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 24/09/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - 24/09/2014 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [563200] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft Windows® [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation [MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] =>.Microsoft Corporation [MD5.A03F362C5557E238CBFA914689C77248] - 24/09/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [134144] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/09/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation [MD5.84CFC5EFA97D0C965EDE1D56F116A541] - 22/08/2013 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [107520] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 24/09/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation [MD5.0696F66E4D423793951A60562F794D14] - 24/09/2014 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [402432] =>.Microsoft Corporation [MD5.0217532E19A748F0E5D569307363D5FD] - 22/08/2013 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [282624] =>.Microsoft Corporation [MD5.038C77D577900EE39410662478BB0D50] - 24/09/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2009920] =>.Microsoft Windows® [MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [94208] =>.Microsoft Corporation [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - 22/08/2013 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [120832] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 24/09/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation [MD5.FFF28F9F6823EB1756C60F1649560BBF] - 22/08/2013 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - 24/09/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [310080] =>.Microsoft Windows® ---\\ Liste des services NT non Microsoft et non désactivés (20) - 0s O23 - Service: McAfee Application Installer Cleanup (0164861516959558) (0164861516959558mcinstcleanup) . (.McAfee, Inc. - McAfee Installer.) - C:\Windows\Temp\0164861516959558mcinst.exe =>.McAfee, Inc.® O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® O23 - Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider - Windows Setup API.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider O23 - Service: Broadcom Card Reader Service (BrcmCardReader) . (.Broadcom Corp. - Broadcom Card Reader Service.) - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe =>.Broadcom Corp. O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - McAfee WebAdvisor.) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.® O23 - Service: MySQL57 (MySQL57) . (...) - C:\Program Files\MySQL\MySQL Server 5.7\bin\mysqld.exe O23 - Service: Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012 - PassThruSvr Application.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe =>.HTC Corporation O23 - Service: Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC. - RfBtnSvc Application.) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.® O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® O23 - Service: Unsigned Themes (UnsignedThemes) . (.The Within Network, LLC - Unsigned themes service executable.) - C:\Windows\unsignedthemes.exe =>.The Within Network, LLC O23 - Service: (Update service) . (.Popcorn Time - Updater.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® O23 - Service: VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.® O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare Passport.) - C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe =>.Wondershare Technology Co.,Ltd® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (40) - 5s SS - Auto [26/01/2018] [ 1031928] McAfee Application Installer Cleanup (0164861516959558) (0164861516959558mcinstcleanup) . (.McAfee, Inc..) - C:\Windows\Temp\0164861516959558mcinst.exe =>.McAfee, Inc.® SS - Demand [10/01/2018] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SS - Disabl [28/07/2011] [ 262144] Arp Intelligent Protection Service (AIPS) . (.Arcai.com.) - C:\Program Files (x86)\netcut\services\aips.exe =>.arcai.com SR - Auto [27/11/2017] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.® SR - Auto [18/03/2014] [ 319104] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe =>.Windows (R) Win 7 DDK provider SS - Disabl [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [31/08/2012] [ 176640] Broadcom Card Reader Service (BrcmCardReader) . (.Broadcom Corp..) - C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe =>.Broadcom Corp. SS - Demand [03/10/2014] [ 280680] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX® SR - Auto [10/12/2012] [ 350544] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files (x86)\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® SS - Auto [08/02/2015] [ 107848] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [08/02/2015] [ 107848] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Demand [26/04/2015] [ 4341760] HideMyIpSRV (HideMyIpSRV) . (.Hide My IP.) - C:\Program Files (x86)\Hide My IP 6\HideMyIpSRV.exe =>.Hide My IP SS - Disabl [13/10/2016] [ 2718840] Hotspot Shield Service (hshld) . (.AnchorFree Inc..) - C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe =>.AnchorFree Inc® SS - Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation® SR - Auto [03/10/2014] [ 318568] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX® SS - Demand [11/12/2017] [ 672568] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.® SS - Disabl [11/02/2017] [ 17376] KingoSoftService (KingoSoftService) . (...) - C:\Users\TM161\AppData\Local\Kingosoft\Kingo Root\update_27205\bin\KingoSoftService.exe =>.Finger Power Technology Co., Ltd.® SS - Demand [08/06/2015] [ 625648] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe =>.LENOVO® SR - Auto [04/01/2018] [ 604312] McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc..) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.® SS - Disabl [20/04/2016] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [28/11/2016] [39918080] MySQL57 (MySQL57) . (...) - C:\Program Files\MySQL\MySQL Server 5.7\bin\mysqld.exe SR - Auto [07/12/2012] [ 167424] Internet Pass-Through Service (PassThru Service) . (.Copyright (C) 2012.) - C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe =>.HTC Corporation SS - Disabl [22/02/2017] [ 95232] postgresql-x64-9.6 - PostgreSQL Server 9.6 (postgresql-x64-9.6) . (.PostgreSQL Global Development Group.) - C:\Program Files\PostgreSQL\9.6\bin\pg_ctl.exe =>.PostgreSQL Global Development Group SR - Auto [18/02/2015] [ 96880] Dritek RF Button Command Service (RfButtonDriverService) . (.Dritek System INC..) - C:\Windows\RfBtnSvc64.exe =>.Dritek System Inc.® SS - Disabl [15/04/2016] [ 33224] (ShareItSvc) . (.SHAREit Technologies Co.Ltd.) - C:\Program Files (x86)\Lenovo\SHAREit\Shareit.Service.exe =>.LENOVO® SS - Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl® SS - Demand [15/06/2016] [ 1518672] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SS - Demand [19/02/2010] [ 517096] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated SS - Disabl [22/12/2015] [ 814064] TunngleService (TunngleService) . (.Tunngle.net GmbH.) - C:\Program Files (x86)\Tunngle\TnglCtrl.exe =>.Tunngle.net GmbH SR - Auto [23/09/2013] [ 13824] Unsigned Themes (UnsignedThemes) . (.The Within Network, LLC.) - C:\Windows\unsignedthemes.exe =>.The Within Network, LLC SR - Auto [26/08/2016] [ 339968] (Update service) . (.Popcorn Time.) - C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime SS - Disabl [11/09/2017] [ 33224] SHAREit Hotspot Service (uSHAREitSvc) . (.SHAREit Technologies Co.Ltd.) - C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.Service.exe =>.SHAREit Technologies Co.Ltd® SR - Auto [18/09/2017] [ 95208] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® SR - Auto [18/09/2017] [ 367080] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® SR - Auto [31/08/2017] [ 866792] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® SR - Auto [18/09/2017] [ 402408] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® SR - Auto [18/09/2017] [14344168] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.® SS - Disabl [01/05/2014] [ 24576] wampapache64 (wampapache64) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.9\bin\httpd.exe =>.Apache Software Foundation SS - Disabl [01/05/2014] [12942848] wampmysqld64 (wampmysqld64) . (...) - c:\wamp\bin\mysql\mysql5.6.17\bin\mysqld.exe =>.MySQL SR - Auto [20/03/2017] [ 473312] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe =>.Wondershare Technology Co.,Ltd® ---\\ Tâches planifiées en automatique (Registre) (23) - 1s O38 - TASK: {077E548B-C7D0-4FDC-AB72-32D0A9C4C4DC} [64Bits][\{CF5ABA3C-2458-43E6-B351-F76A08D61BCD}] - (...) -- C:\Users\TM161\Downloads\Programs\SAMSUNG_USB_Driver_for_Mobile_Phones.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {2260B388-F7FD-42B2-A0AD-0FFF06644844} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc. O38 - TASK: {37A7B2CF-6117-44C1-BE7D-39A189D18AA0} [64Bits][\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320] =>.Apple Inc. O38 - TASK: {4D61FD6C-A5E9-4B66-B10D-05C05E197C4F} [64Bits][\DegMgRmUZU] - (.Win81Dows\TM161 - .) -- C:\Users\TM161\AppData\Roaming\DegMgRmUZU.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {543F338E-68DA-47D5-BC58-8189371E496B} [64Bits][\MEGA\MEGAsync Update Task S-1-5-21-3249365614-1872252078-4264231419-1001] - (.Mega Limited - MEGAupdater.) -- C:\Users\TM161\AppData\Local\MEGAsync\MEGAupdater.exe [760736] =>.MEGA Limited O38 - TASK: {5A3FB2D9-E2E1-400A-BD12-548143243626} [64Bits][\Aero Glass] - (.Big Muscle - Aero Glass extension for Desktop Window Man.) -- C:\AeroGlass\aerohost.exe [82432] O38 - TASK: {5B9DA05B-E7E1-40C9-B0B9-9410D7A27FFC} [64Bits][\MySQLNotifierTask] - (.Oracle Corporation - MySQL Notifier.) -- C:\Program Files (x86)\MySQL\MySQL Notifier 1.1\MySQLNotifier.exe [754176] =>.Oracle Corporation O38 - TASK: {5CE05C59-5054-43C3-AFBB-9601CCE6D70A} [64Bits][\MySQL\Installer\ManifestUpdate] - (.Oracle Corporation - MySQLInstallerConsole.) -- C:\Program Files (x86)\MySQL\MySQL Installer for Windows\MySQLInstallerConsole.exe [53800] =>.Oracle Corporation O38 - TASK: {68870796-E460-4747-B3AA-FB92B68065CA} [64Bits][\{35364DB9-A216-4083-8D86-DB882EF39A30}] - (.SkypeSetupLight - .) -- c:\program files (x86)\legpat\application\chrome.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {74C61170-DA70-414F-8C99-A1E775728D81} [64Bits][\runTask] - (.TM161 - .) -- %TEMP%/Updater.exe [0] O38 - TASK: {77981A18-952D-46C4-BCFD-678EFCDAF534} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] =>.Google Inc. O38 - TASK: {7B2BE343-02D3-4EFF-92F1-A2A7D59B65BA} [64Bits][\{69F32523-555F-4861-96F7-A3B714297A7B}] - (...) -- F:\_SETIMG\EPSSWT.EXE (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {7DDA5E53-4D2F-4C2E-8567-8524F908CF61} [64Bits][\Opera scheduled Autoupdate 1431899452] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe [950872] =>.Opera Software O38 - TASK: {84655AED-7234-42A8-B3E6-044B46FA3F58} [64Bits][\Lenovo\Lenovo Customer Feedback Program 64 35] - (.Lenovo - This task uploads Customer Feedback Program.) -- C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {B092AF31-EC0D-4AA0-9464-43167A89E6A2} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 28.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated O38 - TASK: {B6FD6CEE-8863-4088-B3DC-30A75ACE3F1E} [64Bits][\F5E8A0C1-8CFB-487D-AEE0-738C5DCA45BB] - (.Win81Dows\TM161 - .) -- C:\Users\TM161\AppData\Local\F5E8A0C1-8CFB-487D-AEE0-738C5DCA45BB\F5E8A0C1-8CFB-487D-AEE0-738C5DCA45BB.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {CC3F2C65-BDB1-4175-BEC8-3D3ED7D917CA} [64Bits][\B43006E1-6005-4A48-B5DC-DFD9FF2B86B] - (.Win81Dows\TM161 - .) -- C:\Users\TM161\AppData\Local\B43006E1-6005-4A48-B5DC-DFD9FF2B86B\B43006E1-6005-4A48-B5DC-DFD9FF2B86B.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {E2F4DE77-681F-4A92-9B74-CA3BE024BAFB} [64Bits][\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_28_0_0_137_pepper.exe [1332736] =>.Adobe Systems Incorporated O38 - TASK: {E6B187E4-7A85-4125-A52E-2711BAC7C1E0} [64Bits][\a9YbCGfViNhTXrH9] - (.Win81Dows\TM161 - .) -- C:\Users\TM161\AppData\Roaming\a9YbCGfViNhTXrH9.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {F00D5CBE-931B-431D-AD5E-3716327A6A36} [64Bits][\{ACD3693F-EE42-4690-87B8-D6A719782080}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [1592664] =>.Google Inc. O38 - TASK: {F2B1C5B2-7E55-4164-83E2-5C343BA7CB4E} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [5489944] =>.Piriform Ltd O38 - TASK: {F2DF1B27-BFB3-48C3-B671-A3D8EE0FCDCF} [64Bits][\{CDEE28C9-13C6-445D-AB6E-0EC0C29DB4C7}] - (.Google Inc. - Google Chrome.) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [1592664] =>.Google Inc. O38 - TASK: {FEEB961F-5E0F-4274-A65D-FEF46DCCBD1B} [64Bits][\klcp_update] - (.KLite Inc - Application.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1173504] =>.KLite Inc ---\\ Applications lancées au démarrage du système (25) - 1s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [SysTM161tem] . (. - .) -- D:\TM161\Vlc.rar (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Run: [ManTM161ual] . (. - .) -- C:\TM161\Vlce.rar (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.® O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [AirDroid 3] . (.Sand Studio - AirDroid 3.) -- C:\Program Files (x86)\AirDroid\AirDroid.exe =>.Sand Studio O4 - HKCU\..\Run: [MySQL Notifier] . (.Oracle Corporation - MySQL Notifier.) -- C:\Program Files (x86)\MySQL\MySQL Notifier 1.1\MySqlNotifier.exe =>.Oracle Corporation O4 - HKCU\..\Run: [Viber] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\TM161\AppData\Local\Viber\Viber.exe {243C767E33053FAAE0F0131C103D7A17} O4 - HKCU\..\Run: [AdobeBridge] (.Orphan.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [LManager] (.Orphan.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [RadioController] . (.Dritek System Inc. - RF Button Helper.) -- C:\Program Files (x86)\RadioController\RfBtnHelper.exe =>.Dritek System Inc.® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (. - .) -- C:\Program Files (x86)\Java\jre1.8.0_91\bin\jusched.exe (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [SysTM161tem] . (. - .) -- D:\TM161\Vlc.rar (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [ManTM161ual] . (. - .) -- C:\TM161\Vlce.rar (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [ProductUpdater] . (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Wow6432Node\Run: [USB Security] . (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe =>.Lanzhou Itanium Software Technology Co., Ltd.® O4 - HKLM\..\Wow6432Node\Run: [vmware-tray.exe] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.® O4 - HKUS\S-1-5-21-3249365614-1872252078-4264231419-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-3249365614-1872252078-4264231419-1001\..\Run: [AirDroid 3] . (.Sand Studio - AirDroid 3.) -- C:\Program Files (x86)\AirDroid\AirDroid.exe =>.Sand Studio O4 - HKUS\S-1-5-21-3249365614-1872252078-4264231419-1001\..\Run: [MySQL Notifier] . (.Oracle Corporation - MySQL Notifier.) -- C:\Program Files (x86)\MySQL\MySQL Notifier 1.1\MySqlNotifier.exe =>.Oracle Corporation O4 - HKUS\S-1-5-21-3249365614-1872252078-4264231419-1001\..\Run: [Viber] . (.Viber Media S.à r.l. - Viber.) -- C:\Users\TM161\AppData\Local\Viber\Viber.exe {243C767E33053FAAE0F0131C103D7A17} O4 - HKUS\S-1-5-21-3249365614-1872252078-4264231419-1001\..\Run: [AdobeBridge] (.Orphan.) =>.SUP.Orphan ---\\ Processus lancés (59) - 2s [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\system32\igfxCUIService.exe [0] [PID.756] =>.Intel Corporation [MD5.760CE443E09282AC4C0B67D67BA5E7FA] - (.The Within Network, LLC - Unsigned themes service executable.) -- C:\Windows\unsignedthemes.exe [13824] [PID.372] =>.The Within Network, LLC [MD5.DA3F64859EFFFBDE6C456D190E5923C1] - (.Big Muscle - Aero Glass extension for Desktop Window Man.) -- C:\AeroGlass\aerohost.exe [82432] [PID.1476] [MD5.E0CBB79ADB89A233928AF60FB2B729DE] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.1600] =>.Apple Inc.® [MD5.BCE510EB5CFB8814CF1EADE941E853EC] - (.Windows (R) Win 7 DDK provider - Windows Setup API.) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [319104] [PID.1752] =>.Windows (R) Win 7 DDK provider [MD5.5C6ADD0111E1C6601B5911F7ACF85BB8] - (.Broadcom Corp. - Broadcom Card Reader Service.) -- C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640] [PID.1772] =>.Broadcom Corp. [MD5.D2BCDD6BBFCD068090C109854FCEE079] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe [350544] [PID.1840] =>.Dritek System Inc.® [MD5.1DB4D24FA0C5318E0A1A8A5FFAD5D13F] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [604312] [PID.1904] =>.McAfee, Inc.® [MD5.18ACBCF2D4EAA083F6EC61A4F9BAC4B3] - (...) -- C:\Program Files\MySQL\MySQL Server 5.7\bin\mysqld.exe [39918080] [PID.2020] [MD5.3CAE2BBC86FCF7F94C9696994AF30386] - (.Copyright (C) 2012 - PassThruSvr Application.) -- C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424] [PID.2056] =>.HTC Corporation [MD5.F61333867216EDE1A09A7C55FEDCB6A8] - (.Dritek System INC. - RfBtnSvc Application.) -- C:\Windows\RfBtnSvc64.exe [96880] [PID.2104] =>.Dritek System Inc.® [MD5.BD93D1A0E0A7A96BEA4585F17C9B3307] - (.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe [339968] [PID.2200] =>.SUP.PopcornTime [MD5.F08E2BC693556135F05D0F2C4C59AE8F] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [367080] [PID.2272] =>.VMware, Inc.® [MD5.ADAA2F1CEF3990FC31256CFEDDB1F484] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [402408] [PID.2288] =>.VMware, Inc.® [MD5.E0A69AAB9D8F6EFDAD11AE261E3FE986] - (.Wondershare - Wondershare Passport.) -- C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe [473312] [PID.2368] =>.Wondershare Technology Co.,Ltd® [MD5.94AAF1CA2002984C97C502A28E0C8460] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [95208] [PID.2784] =>.VMware, Inc.® [MD5.5F0B23FB8C90138CC2F6F9272AB373D4] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [866792] [PID.3204] =>.VMware, Inc.® [MD5.2440313FD918D5568D12774C12FBB11D] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [14344168] [PID.3512] =>.VMware, Inc.® [MD5.01B5FFE9ADC6ECD3CBFA058BE3131F29] - (.Hide My IP - .) -- C:\Program Files (x86)\Hide My IP 6\HideMyIpSRV.exe [4341760] [PID.4548] =>.Hide My IP [MD5.302337967FBA91C40745B96A42A39CC5] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files (x86)\Launch Manager\LMutilps32.exe [475984] [PID.8888] =>.Dritek System Inc.® [MD5.7A9A819E06F9E4B42D21F73DA9250650] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [2186664] [PID.5976] =>.McAfee, Inc.® [MD5.0EFF23C3D910380746D4F56BA5C746C4] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files (x86)\Launch Manager\LManager.exe [1192784] [PID.2964] =>.Dritek System Inc.® [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\system32\igfxEM.exe [0] [PID.7460] =>.Intel Corporation [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\system32\igfxHK.exe [0] [PID.10116] =>.Intel Corporation [MD5.C832579FBB3B17A5856ADE4082782D25] - (.Dritek System Inc. - MMDx64Fx Application.) -- C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe [229200] [PID.920] =>.Dritek System Inc.® [MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxext Module.) -- C:\Windows\system32\igfxext.exe [0] [PID.5764] =>.Intel Corporation [MD5.AD39F6B4E8F3A06555BE16949F923BB1] - (.Synaptics Incorporated - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3008824] [PID.8616] =>.Synaptics Incorporated® [MD5.92894CE1B4DBBB9BB55EA0A1E6E7DF99] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152] [PID.6892] =>.Realtek Semiconductor Corp® [MD5.B3759605684496BD5D53196412FEDF7E] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [126264] [PID.7668] =>.Synaptics Incorporated® [MD5.57684FBD58EF9F72D6E799EF20C8C73D] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3437976] [PID.9836] =>.Tonec Inc. [MD5.FF7CB5344094510654C240486B4B1B3F] - (.Dritek System Inc. - RF Button Helper.) -- C:\Program Files (x86)\RadioController\RfBtnHelper.exe [111216] [PID.9392] =>.Dritek System Inc.® [MD5.BAC15D03EFC8249216D1D610F3B1E67F] - (.Zbshareware Lab - USB Disk Security.) -- C:\Program Files (x86)\USB Disk Security\USBGuard.exe [695528] [PID.2616] =>.Lanzhou Itanium Software Technology Co., Ltd.® [MD5.ABB0917536FF8C0AF601A2DB6B998CD6] - (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [115688] [PID.8140] =>.VMware, Inc.® [MD5.04E079F6AF9F84215596E22C6DF03EEC] - (...) -- C:\Program Files\Selfishnet\SelfishNetv0.2-beta_vista.exe [253952] [PID.5436] [MD5.28F065F4511A9ED12C5639AD4B5DD488] - (.Viber Media S.à r.l. - Viber.) -- C:\Users\TM161\AppData\Local\Viber\Viber.exe [34720840] [PID.4708] {243C767E33053FAAE0F0131C103D7A17} [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.7428] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.2504] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.4432] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.6964] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.8444] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.7676] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.3472] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.1616] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.3572] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9812] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.8504] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.1864] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9656] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.5564] =>.Google Inc® [MD5.960C0EC38AD73F535638E2814B8E7249] - (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe [642344] [PID.9332] =>.McAfee, Inc.® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.2004] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9356] =>.Google Inc® [MD5.8F0AFDE19805335D8853B4F519408649] - (.VideoLAN - VLC media player 2.0.4.) -- C:\Program Files\VideoLAN\VLC\vlc.exe [128512] [PID.2656] =>.VideoLAN [MD5.04E079F6AF9F84215596E22C6DF03EEC] - (...) -- C:\Program Files\Selfishnet\SelfishNetv0.2-beta_vista.exe [253952] [PID.8936] [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9412] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.4112] =>.Google Inc® [MD5.006ABB86D3DC75A7A0A060DF48232D73] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\TM161\Downloads\ZHPDiag3.exe [2966912] [PID.32] =>.Nicolas Coolman [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9684] =>.Google Inc® [MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.2248] =>.Google Inc® ---\\ Google Chrome, Démarrage,Recherche,Extensions (36) - 1s G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://api.pinterest.com =>.Pinterest G0 - GCSP: Preferences [User Data\Default][HomePage] http://assets.pinterest.com =>.Pinterest G0 - GCSP: Preferences [User Data\Default][HomePage] http://coinhive.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://cookiesoff.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://log.pinterest.com =>.Pinterest G0 - GCSP: Preferences [User Data\Default][HomePage] http://megabonus.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.dz =>.Google Inc. G2 - GCE: Preference [TM161][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [TM161][User Data\Default] [ahkmpjnmnhjkpkacdhkliipnncobgkhk] Mail.Ru =>.Mail.Ru G2 - GCE: Preference [TM161][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [TM161][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [TM161][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [TM161][User Data\Default] [fbkdlibjhnblcbjjecnlpkldhbkedfhj] Домашняя страница Mail.Ru G2 - GCE: Preference [TM161][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [TM161][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [TM161][User Data\Default] [iinglghmhcgdgjjlafobajghjamdchik] Open New Tab =>.SUP.BrowserExtension G2 - GCE: Preference [TM161][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [TM161][User Data\Default] [oelpkepjlgmehajehfeicfbjdiobdkfj] Визуальные Закладки Mail.Ru G2 - GCE: Preference [TM161][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [TM161][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [TM161][User Data\Default] [bfgdeiadkckfbkeigkoncpdieiiefpig] Bitmoji =>.Bitmoji G2 - GCE: Preference [TM161][User Data\Default] [dbfipcjecamggjfabeaclacjoohfjhhn] G2 - GCE: Preference [TM161][User Data\Default] [dceidjjhomnclmfgflmjaomohekdgdgb] Cookies On-Off =>Hijacker.Browser G2 - GCE: Preference [TM161][User Data\Default] [dmdidbedhnbabookbkpkgomahnocimke] Trello G2 - GCE: Preference [TM161][User Data\Default] [fheoggkfdfchfphceeifdbepaooicaho] McAfee® WebAdvisor =>.McAfee Inc. G2 - GCE: Preference [TM161][User Data\Default] [fhplmmllnpjjlncfjpbbpjadoeijkogc] FBDown Video Downloader =>.Google Chrome Addon G2 - GCE: Preference [TM161][User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] Michael Gundlach =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [TM161][User Data\Default] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button} G2 - GCE: Preference [TM161][User Data\Default] [hphamkdkckkedfndpaghapgghlljmjhm] Tumblr Video Download G2 - GCE: Preference [TM161][User Data\Default] [iphcomljdfghbkdcfndaijbokpgddeno] G2 - GCE: Preference [TM161][User Data\Default] [jeaohhlajejodfjadcponpnjgkiikocn] IDM Integration Module =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [TM161][User Data\Default] [khnadcdfjbjgojiilfdebbpiepokangj] Tools for Instagram G2 - GCE: Preference [TM161][User Data\Default] [mgihmkgobaljfehcadcckdggpeojaadh] Into The Mist =>.pjatton ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (5) - 1s P2 - EXT FILE: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation® P2 - EXT FILE: (.SQLite Manager - Manage any SQLite database on your com.) -- C:\Users\TM161\AppData\Roaming\Mozilla\Firefox\Profiles\4atiqx4y.default\extensions\SQLiteManager@mrinalkant.blogspot.com.xpi =>.SQLite Manager P2 - EXT FILE: (.Recherche sécurisée - .) -- C:\Users\TM161\AppData\Roaming\Mozilla\Firefox\Profiles\4atiqx4y.default\searchplugins\McSiteAdvisor.xml P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} =>.Mozilla P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_137.dll =>.Adobe Systems Incorporated ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (21) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKEY_USERS\S-1-5-21-3249365614-1872252078-4264231419-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.google.com =>.Google Inc. R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17031 (winblue_gdr.140221-1952)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation R4 - HKLM\Software\WOW6432Node\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 ---\\ Internet Explorer,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ Etude du fichier hosts (30) - 10s O1 - Hosts: 13.69.186.195 22find.com =>.SUP.22Find O1 - Hosts: 13.69.186.195 ask.com =>Toolbar.Ask O1 - Hosts: 13.69.186.195 awesomehp.com =>PUP.Optional.AwesomeHP O1 - Hosts: 13.69.186.195 br.ask.com =>Toolbar.Ask O1 - Hosts: 13.69.186.195 buenosearch.com =>PUP.Optional.BuenoSearch O1 - Hosts: 13.69.186.195 calcitapp.info =>PUP.Optional.CalcitApp O1 - Hosts: 13.69.186.195 certified-toolbar.com =>PUP.Optional.CertifiedToolbar O1 - Hosts: 13.69.186.195 claro-search.com =>PUP.Optional.ClaroSearch O1 - Hosts: 13.69.186.195 coldsearch.com =>PUP.Optional.ColdSearch O1 - Hosts: 13.69.186.195 coolsearches.info =>PUP.Optional.CoolSearches O1 - Hosts: 13.69.186.195 dalesearch.com =>PUP.Optional.Dalesearch O1 - Hosts: 13.69.186.195 dealwifi.com =>.SUP.DealWifi O1 - Hosts: 13.69.186.195 default-search.net =>PUP.Optional.SearchNet O1 - Hosts: 13.69.186.195 delta-homes.com =>PUP.Optional.Qvo6 O1 - Hosts: 13.69.186.195 delta-search.com =>.SUP.DeltaSearch O1 - Hosts: 13.69.186.195 do-search.com =>PUP.Optional.DoSearches O1 - Hosts: 13.69.186.195 eseeky.com =>PUP.Optional.Eseeky O1 - Hosts: 13.69.186.195 espeedcheck.searchalgo.com =>PUP.Optional.SpeedCheck O1 - Hosts: 13.69.186.195 find.rockettab.com =>PUP.Optional.RocketTab O1 - Hosts: 13.69.186.195 freesearchquick.com =>Adware.Bandoo O1 - Hosts: 13.69.186.195 gboxapp.com =>PUP.Optional.GadgetBox O1 - Hosts: 13.69.186.195 go-search.ru =>.SUP.Indesirable O1 - Hosts: 13.69.186.195 gosearch.me =>PUP.Optional.Browser O1 - Hosts: 13.69.186.195 help.ask.com =>Toolbar.Ask O1 - Hosts: 13.69.186.195 holasearch.com =>PUP.Optional.HolaSearch O1 - Hosts: 13.69.186.195 home.gamingwonderland.myway.com =>PUP.Optional.Browser O1 - Hosts: 13.69.186.195 home.mywebsearch.com =>PUP.Optional.MyWebSearch O1 - Hosts: 13.69.186.195 home.sweetim.com =>.SUP.SweetIM O1 - Hosts: 13.69.186.195 home.tb.ask.com =>Toolbar.Ask ~ Nombre lignes détournées 184/907 (Hosts file redirected) ---\\ Browser Helper Object de navigateur (BHO) (6) - 1s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Microsoft Lync.) -- C:\Program Files\Microsoft Office\Office15\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: unisaless [64Bits] - {6d531f54-eaac-4cec-a8ac-850529f325de} . (...) -- C:\Program Files (x86)\unisaless\3NNwQQmbs73CSp.x64.dll (.not file.) =>PUP.Optional.UniSales O2 - BHO: McAfee WebAdvisor BHO [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll =>.McAfee, Inc.® O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® ---\\ Raccourcis Global Startup (180) - 7s O4 - GS\Desktop [Administrateur]: Android Studio.lnk . (.Google - Android Studio.) C:\Program Files\Android\Android Studio\bin\studio64.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: arduino.exe - Raccourci.lnk . (...) C:\Program Files (x86)\arduino-1.0.5-r2\arduino.exe O4 - GS\Desktop [Administrateur]: Cisco Packet Tracer Student.lnk . (...) C:\Program Files (x86)\Cisco Packet Tracer 6.2sv\bin\PacketTracer6.exe =>.Cisco Systems, Inc.® O4 - GS\Desktop [Administrateur]: CodeBlocks.lnk . (.Code::Blocks Team - Cross-platform IDE built around wxWidgets,.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team O4 - GS\Desktop [Administrateur]: Counter-Strike.lnk . (.Valve - Half-Life Launcher.) C:\Program Files (x86)\Counter-Strike\hl.exe -game cstrike =>.Valve O4 - GS\Desktop [Administrateur]: Half-Life.lnk . (.Valve - Half-Life Launcher.) C:\Program Files (x86)\Counter-Strike\hl.exe =>.Valve O4 - GS\Desktop [Administrateur]: Hide My IP 6.lnk . (.HideMyIP - .) C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe =>.My Privacy Tools, Inc.® O4 - GS\Desktop [Administrateur]: Metal Slug.lnk . (...) C:\Program Files (x86)\Metal Slug Complete PC\MetalSlug.exe O4 - GS\Desktop [Administrateur]: Microsoft Project 2010.lnk . (...) C:\Windows\Installer\{91140000-003A-0000-0000-0000000FF1CE}\pj11icon.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: Microsoft Visual Studio 2010.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2010.) E:\Microsoft Visual Studio 10.0\Common7\IDE\devenv.exe =>.Microsoft Corporation® O4 - GS\Desktop [Administrateur]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxAppPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd® O4 - GS\Desktop [Administrateur]: oCam.lnk . (.oh!soft ( Partner: OORT ) - oCam.) C:\Program Files (x86)\oCam\oCam.exe =>.OORT inc.® O4 - GS\Desktop [Administrateur]: pcsx2.lnk . (...) C:\Program Files (x86)\PCSX2 0.9.8\pcsx2-r4600.exe O4 - GS\Desktop [Administrateur]: Photoshop.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) E:\adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [Administrateur]: Pixlr-o-matic.lnk . (...) C:\Program Files (x86)\Pixlr-o-matic\Pixlr-o-matic.exe O4 - GS\Desktop [Administrateur]: RStudio.lnk . (.RStudio, Inc. - RStudio.) C:\Program Files\RStudio\bin\rstudio.exe =>.RStudio, Inc. O4 - GS\Desktop [Administrateur]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Program Files (x86)\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [Administrateur]: The Elder Scrolls V Skyrim.lnk . (.Bethesda Softworks - Skyrim Launcher.) C:\Program Files (x86)\The Elder Scrolls V Skyrim\SkyrimLauncher.exe =>.Bethesda Softworks O4 - GS\Desktop [Administrateur]: UsbFix.lnk . (...) C:\UsbFix\UsbFix.exe O4 - GS\Desktop [Administrateur]: WampServer64.lnk . (.Aestan Software - Aestan Tray Menu.) C:\wamp\wampmanager.exe =>.Aestan Software O4 - GS\Desktop [Administrateur]: Wireshark.exe.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files (x86)\Wireshark\Wireshark.exe =>.Wireshark Foundation® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\TM161\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: AirDroid.lnk . (.Sand Studio - AirDroid 3 Launcher.) C:\Program Files (x86)\AirDroid\Launcher.exe =>.Sand Studio O4 - GS\Quicklaunch [Administrateur]: Arcai.com's NetCut.lnk . (.Arcai.com - NetCut Arp Spoof Application.) C:\Program Files (x86)\netcut\netcut.exe =>.arcai.com O4 - GS\Quicklaunch [Administrateur]: CodeBlocks.lnk . (.Code::Blocks Team - Cross-platform IDE built around wxWidgets,.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Internet Explorer.LNK . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://chercheztout.com/ =>.Microsoft Corporation O4 - GS\Quicklaunch [Administrateur]: Launch Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - .) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation O4 - GS\Quicklaunch [Administrateur]: Registry Repair.lnk . (.Glarysoft Ltd - Glarysoft RegistryCleaner.) C:\Program Files (x86)\Glarysoft\Registry Repair 5\RegistryCleaner.exe =>.Glarysoft Ltd® O4 - GS\Quicklaunch [Administrateur]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Quicklaunch [Administrateur]: Shutdown8.lnk . (.Bandisoft.com - Shutdown8.) C:\Users\TM161\AppData\Local\Shutdown8\Shutdown8.exe =>.Bandisoft® O4 - GS\Quicklaunch [Administrateur]: Tunngle.lnk . (.Tunngle.net GmbH - Tunngle GUI.) C:\Program Files (x86)\Tunngle\Tunngle.exe =>.Tunngle.net GmbH O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TM161\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\TM161\AppData\Local\Viber\Viber.exe ShareFiles {243C767E33053FAAE0F0131C103D7A17} O4 - GS\TaskBar [Administrateur]: Android Studio.lnk . (.Google - Android Studio.) C:\Program Files\Android\Android Studio\bin\studio64.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: CodeBlocks.lnk . (.Code::Blocks Team - Cross-platform IDE built around wxWidgets,.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team O4 - GS\TaskBar [Administrateur]: Flash Decompiler Trillix.lnk . (.Eltima Software GmbH - Flash Decompiler.) C:\Program Files (x86)\Eltima Software\Flash Decompiler Trillix\FlashDecompiler.exe {7D515482CC4D95774C30473B22FEB21D} =>.Eltima Software GmbH O4 - GS\TaskBar [Administrateur]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TM161\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\TaskBar [Administrateur]: Midou - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory="ChromeDefaultData" =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS® O4 - GS\TaskBar [Administrateur]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files (x86)\Notepad++\notepad++.exe =>.Don HO don.h@free.fr O4 - GS\TaskBar [Administrateur]: Nox (2).lnk . (.Duodian Technology Co. Ltd. - NoxAppPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd® O4 - GS\TaskBar [Administrateur]: Photoshop.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) E:\adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [Administrateur]: SelfishNetv0.2-beta_vista.exe - Raccourci.lnk . (...) C:\Program Files (x86)\Selfishnet\SelfishNetv0.2-beta_vista.exe O4 - GS\TaskBar [Administrateur]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe =>.SHAREit Technologies Co.Ltd® O4 - GS\TaskBar [Administrateur]: Shutdown8.exe.lnk . (.Bandisoft.com - Shutdown8.) C:\Users\TM161\AppData\Local\Shutdown8\Shutdown8.exe =>.Bandisoft® O4 - GS\TaskBar [Administrateur]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\TM161\AppData\Local\Viber\Viber.exe {243C767E33053FAAE0F0131C103D7A17} O4 - GS\TaskBar [Administrateur]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\TaskBar [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TM161\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Startup [Administrateur]: FacebookGamesNotifier.exe.lnk . (...) C:\Users\TM161\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe O4 - GS\Startup [Administrateur]: HelpTM161.lnk . (...) C:\TM161\TM161host.exe /e:VBScript.Encode C:\TM161\Vlce.rar O4 - GS\Startup [Administrateur]: ManualTM161.lnk . (...) D:\TM161\TM161host.exe /e:VBScript.Encode D:\TM161\Vlc.rar O4 - GS\Startup [Administrateur]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TM161\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\Programs [Administrateur]: Chromium.lnk . (...) C:\Users\TM161\AppData\Local\Chromium\Application\chrome.exe O4 - GS\Programs [Administrateur]: Documents.lnk . (...) C:\Users\TM161\Documents O4 - GS\Programs [Administrateur]: Gestionnaire audio HD Realtek.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Pictures.lnk . (...) C:\Users\TM161\Pictures =>.Microsoft Corporation O4 - GS\Desktop [TM161]: Android Studio.lnk . (.Google - Android Studio.) C:\Program Files\Android\Android Studio\bin\studio64.exe =>.Google Inc® O4 - GS\Desktop [TM161]: arduino.exe - Raccourci.lnk . (...) C:\Program Files (x86)\arduino-1.0.5-r2\arduino.exe O4 - GS\Desktop [TM161]: Cisco Packet Tracer Student.lnk . (...) C:\Program Files (x86)\Cisco Packet Tracer 6.2sv\bin\PacketTracer6.exe =>.Cisco Systems, Inc.® O4 - GS\Desktop [TM161]: CodeBlocks.lnk . (.Code::Blocks Team - Cross-platform IDE built around wxWidgets,.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team O4 - GS\Desktop [TM161]: Counter-Strike.lnk . (.Valve - Half-Life Launcher.) C:\Program Files (x86)\Counter-Strike\hl.exe -game cstrike =>.Valve O4 - GS\Desktop [TM161]: Half-Life.lnk . (.Valve - Half-Life Launcher.) C:\Program Files (x86)\Counter-Strike\hl.exe =>.Valve O4 - GS\Desktop [TM161]: Hide My IP 6.lnk . (.HideMyIP - .) C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe =>.My Privacy Tools, Inc.® O4 - GS\Desktop [TM161]: Metal Slug.lnk . (...) C:\Program Files (x86)\Metal Slug Complete PC\MetalSlug.exe O4 - GS\Desktop [TM161]: Microsoft Project 2010.lnk . (...) C:\Windows\Installer\{91140000-003A-0000-0000-0000000FF1CE}\pj11icon.exe =>.Microsoft Corporation® O4 - GS\Desktop [TM161]: Microsoft Visual Studio 2010.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2010.) E:\Microsoft Visual Studio 10.0\Common7\IDE\devenv.exe =>.Microsoft Corporation® O4 - GS\Desktop [TM161]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxAppPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd® O4 - GS\Desktop [TM161]: oCam.lnk . (.oh!soft ( Partner: OORT ) - oCam.) C:\Program Files (x86)\oCam\oCam.exe =>.OORT inc.® O4 - GS\Desktop [TM161]: pcsx2.lnk . (...) C:\Program Files (x86)\PCSX2 0.9.8\pcsx2-r4600.exe O4 - GS\Desktop [TM161]: Photoshop.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) E:\adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\Desktop [TM161]: Pixlr-o-matic.lnk . (...) C:\Program Files (x86)\Pixlr-o-matic\Pixlr-o-matic.exe O4 - GS\Desktop [TM161]: RStudio.lnk . (.RStudio, Inc. - RStudio.) C:\Program Files\RStudio\bin\rstudio.exe =>.RStudio, Inc. O4 - GS\Desktop [TM161]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Program Files (x86)\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [TM161]: The Elder Scrolls V Skyrim.lnk . (.Bethesda Softworks - Skyrim Launcher.) C:\Program Files (x86)\The Elder Scrolls V Skyrim\SkyrimLauncher.exe =>.Bethesda Softworks O4 - GS\Desktop [TM161]: UsbFix.lnk . (...) C:\UsbFix\UsbFix.exe O4 - GS\Desktop [TM161]: WampServer64.lnk . (.Aestan Software - Aestan Tray Menu.) C:\wamp\wampmanager.exe =>.Aestan Software O4 - GS\Desktop [TM161]: Wireshark.exe.lnk . (.The Wireshark developer community, http://www.wiresha - Wireshark.) C:\Program Files (x86)\Wireshark\Wireshark.exe =>.Wireshark Foundation® O4 - GS\Desktop [TM161]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\TM161\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [TM161]: AirDroid.lnk . (.Sand Studio - AirDroid 3 Launcher.) C:\Program Files (x86)\AirDroid\Launcher.exe =>.Sand Studio O4 - GS\Quicklaunch [TM161]: Arcai.com's NetCut.lnk . (.Arcai.com - NetCut Arp Spoof Application.) C:\Program Files (x86)\netcut\netcut.exe =>.arcai.com O4 - GS\Quicklaunch [TM161]: CodeBlocks.lnk . (.Code::Blocks Team - Cross-platform IDE built around wxWidgets,.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team O4 - GS\Quicklaunch [TM161]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [TM161]: Internet Explorer.LNK . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe http://chercheztout.com/ =>.Microsoft Corporation O4 - GS\Quicklaunch [TM161]: Launch Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [TM161]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [TM161]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - .) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation O4 - GS\Quicklaunch [TM161]: Registry Repair.lnk . (.Glarysoft Ltd - Glarysoft RegistryCleaner.) C:\Program Files (x86)\Glarysoft\Registry Repair 5\RegistryCleaner.exe =>.Glarysoft Ltd® O4 - GS\Quicklaunch [TM161]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\Quicklaunch [TM161]: Shutdown8.lnk . (.Bandisoft.com - Shutdown8.) C:\Users\TM161\AppData\Local\Shutdown8\Shutdown8.exe =>.Bandisoft® O4 - GS\Quicklaunch [TM161]: Tunngle.lnk . (.Tunngle.net GmbH - Tunngle GUI.) C:\Program Files (x86)\Tunngle\Tunngle.exe =>.Tunngle.net GmbH O4 - GS\Quicklaunch [TM161]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TM161\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\sendTo [TM161]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [TM161]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl® O4 - GS\sendTo [TM161]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [TM161]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\TM161\AppData\Local\Viber\Viber.exe ShareFiles {243C767E33053FAAE0F0131C103D7A17} O4 - GS\TaskBar [TM161]: Android Studio.lnk . (.Google - Android Studio.) C:\Program Files\Android\Android Studio\bin\studio64.exe =>.Google Inc® O4 - GS\TaskBar [TM161]: CodeBlocks.lnk . (.Code::Blocks Team - Cross-platform IDE built around wxWidgets,.) C:\Program Files (x86)\CodeBlocks\codeblocks.exe =>.Code::Blocks Team O4 - GS\TaskBar [TM161]: Flash Decompiler Trillix.lnk . (.Eltima Software GmbH - Flash Decompiler.) C:\Program Files (x86)\Eltima Software\Flash Decompiler Trillix\FlashDecompiler.exe {7D515482CC4D95774C30473B22FEB21D} =>.Eltima Software GmbH O4 - GS\TaskBar [TM161]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TM161\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\TaskBar [TM161]: Midou - Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --profile-directory="ChromeDefaultData" =>.Google Inc® O4 - GS\TaskBar [TM161]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS® O4 - GS\TaskBar [TM161]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files (x86)\Notepad++\notepad++.exe =>.Don HO don.h@free.fr O4 - GS\TaskBar [TM161]: Nox (2).lnk . (.Duodian Technology Co. Ltd. - NoxAppPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd® O4 - GS\TaskBar [TM161]: Photoshop.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) E:\adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [TM161]: SelfishNetv0.2-beta_vista.exe - Raccourci.lnk . (...) C:\Program Files (x86)\Selfishnet\SelfishNetv0.2-beta_vista.exe O4 - GS\TaskBar [TM161]: SHAREit.lnk . (.SHAREit Technologies Co.Ltd - SHAREit.) C:\Program Files (x86)\SHAREit Technologies\SHAREit\SHAREit.exe =>.SHAREit Technologies Co.Ltd® O4 - GS\TaskBar [TM161]: Shutdown8.exe.lnk . (.Bandisoft.com - Shutdown8.) C:\Users\TM161\AppData\Local\Shutdown8\Shutdown8.exe =>.Bandisoft® O4 - GS\TaskBar [TM161]: Viber.lnk . (.Viber Media S.à r.l. - Viber.) C:\Users\TM161\AppData\Local\Viber\Viber.exe {243C767E33053FAAE0F0131C103D7A17} O4 - GS\TaskBar [TM161]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\TaskBar [TM161]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TM161\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc® O4 - GS\Startup [TM161]: FacebookGamesNotifier.exe.lnk . (...) C:\Users\TM161\AppData\Local\Facebook\Games\FacebookGamesNotifier.exe O4 - GS\Startup [TM161]: HelpTM161.lnk . (...) C:\TM161\TM161host.exe /e:VBScript.Encode C:\TM161\Vlce.rar O4 - GS\Startup [TM161]: ManualTM161.lnk . (...) D:\TM161\TM161host.exe /e:VBScript.Encode D:\TM161\Vlc.rar O4 - GS\Startup [TM161]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TM161\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited® O4 - GS\Programs [TM161]: Chromium.lnk . (...) C:\Users\TM161\AppData\Local\Chromium\Application\chrome.exe O4 - GS\Programs [TM161]: Documents.lnk . (...) C:\Users\TM161\Documents O4 - GS\Programs [TM161]: Gestionnaire audio HD Realtek.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [TM161]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [TM161]: Pictures.lnk . (...) C:\Users\TM161\Pictures =>.Microsoft Corporation O4 - GS\CommonDesktop [Public]: AIMP3.lnk . (.AIMP DevTeam - AIMP3.) C:\Program Files (x86)\AIMP3\AIMP3.exe =>.AIMP DevTeam O4 - GS\CommonDesktop [Public]: Genymotion.lnk . (...) C:\Program Files (x86)\Genymobile\Genymotion\genymotion.exe O4 - GS\CommonDesktop [Public]: Inno Setup Compiler.lnk . (.Jordan Russell - Inno Setup Compiler.) C:\Program Files (x86)\Inno Setup 5\Compil32.exe =>.Open Source Developer, Martijn Laan® O4 - GS\CommonDesktop [Public]: Intel(R) HD Graphics Control Panel.lnk . (.Intel Corporation - GFXUIEX Module.) C:\Windows\system32\GfxUIEx.exe =>.Intel Corporation O4 - GS\CommonDesktop [Public]: iTools 3.lnk . (.深圳市创想天空科技股份有限公司 - iTools 3.) C:\Program Files (x86)\ThinkSky\iTools 3\iTools.exe =>.Shenzhen Thinksky Technology Co.,Ltd® O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc. O4 - GS\CommonDesktop [Public]: NetBeans IDE 8.0.2.lnk . (.Oracle Corporation - .) C:\Program Files (x86)\NetBeans 8.0.2\bin\netbeans64.exe =>.Oracle Corporation O4 - GS\CommonDesktop [Public]: Nexus Mod Manager.lnk . (.Black Tree Gaming - .) C:\Program Files (x86)\Nexus Mod Manager\NexusClient.exe =>.Black Tree Gaming O4 - GS\CommonDesktop [Public]: One Piece Pirate Warriors 3 - GOLD Edition.lnk . (.(C)Eiichiro Oda/Shueisha, Toei Animation (C)2015 BAND - ONE PIECE: PIRATE WARRIORS 3.) E:\GAMES\One Piece Pirate Warriors 3 - GOLD Edition\oppw3.exe O4 - GS\CommonDesktop [Public]: Popcorn Time.lnk . (...) C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe =>.SUP.PopcornTime O4 - GS\CommonDesktop [Public]: Revo Uninstaller Pro.lnk . (.VS Revo Group - .) C:\Program Files (x86)\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe =>.VS Revo Group O4 - GS\CommonDesktop [Public]: Vegas Pro 13.0 (64-bit).lnk . (.Sony Creative Software Inc. - .) C:\Program Files (x86)\Sony\Vegas Pro 13.0\vegas130.exe =>.Sony Creative Software Inc. O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - .) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN O4 - GS\CommonDesktop [Public]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\CommonDesktop [Public]: Xilisoft Convertisseur Vidéo Ultimate.lnk . (...) C:\Program Files (x86)\Xilisoft\Video Converter Ultimate\vcloader.exe O4 - GS\Programs [Public]: Chromium.lnk . (...) C:\Users\TM161\AppData\Local\Chromium\Application\chrome.exe O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\TM161\Documents O4 - GS\Programs [Public]: Gestionnaire audio HD Realtek.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\TM161\Pictures =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS6 (64bit).lnk . (.Adobe Systems, Inc. - Adobe Bridge CS6.) E:\adobe\Adobe Bridge CS6 (64 Bit)\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS6.lnk . (.Adobe Systems, Inc. - Adobe Bridge CS6.) E:\adobe\Adobe Bridge CS6\Bridge.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe ExtendScript Toolkit CS6.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS6 and Debugger (32 b.) C:\Program Files (x86)\Adobe\Adobe Utilities - CS6\ExtendScript Toolkit CS6\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Extension Manager CS6.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS6.) E:\adobe\Adobe Extension Manager CS6\Adobe Extension Manager CS6.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CS6 (64 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) E:\adobe\Adobe Photoshop CS6 (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CS6.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) E:\adobe\Adobe Photoshop CS6\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}\AppleSoftwareUpdateIco.exe =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity\audacity.exe =>.The Audacity Team O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\Windows\Camera\Camera.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\Windows\FileManager\FileManager.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Intel(R) HD Graphics Control Panel.lnk . (.Intel Corporation - GFXUIEX Module.) C:\Windows\system32\GfxUIEx.exe =>.Intel Corporation O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Navigateur Opera.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS® O4 - GS\ProgramsCommon [Public]: paint.net.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\paint.net\PaintDotNet.exe =>.dotPDN LLC O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\Windows\FileManager\PhotosApp.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Registry Repair.lnk . (.Glarysoft Ltd - Glarysoft RegistryCleaner.) C:\Program Files (x86)\Glarysoft\Registry Repair 5\RegistryCleaner.exe =>.Glarysoft Ltd® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>..Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm =>.Microsoft Corporation ---\\ Modification Domaine/Adresses DNS (1) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{E181C70F-4561-4F16-8D61-ACD7F35284C4}: DhcpNameServer = 192.168.1.1 0.0.0.0 =>.Local IP Adress ---\\ Protocole additionnel (24) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: sacore [64Bits] - {5513F07E-936B-4E52-9B00-067394E91CC5} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll =>.McAfee, Inc.® O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ Logiciels installés (165) - 17s O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc® O42 - Logiciel: 7-Zip 9.38 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0938-000001000000} =>.Igor Pavlov O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {19687AD5-7E54-4C5E-A796-125C95079C1D} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 28 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 28 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Photoshop CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {74EB3499-8B95-4B5C-96EB-7B342F3FD0C6} =>.Adobe Systems Incorporated® O42 - Logiciel: Aero Glass for Win8.1 - (.Big Muscle.) [HKLM][64Bits] -- Aero Glass for Win8.1_is1 O42 - Logiciel: AIMP3 - (.AIMP DevTeam.) [HKLM][64Bits] -- AIMP3 =>.AIMP DevTeam O42 - Logiciel: AirDroid 3.2.2.0 - (.Sand Studio.) [HKLM][64Bits] -- AirDroid =>.Sand Studio O42 - Logiciel: Android Studio - (.Google Inc..) [HKLM][64Bits] -- Android Studio =>.Google Inc® O42 - Logiciel: APK Studio - (.Vaibhav Pandey.) [HKLM][64Bits] -- APK Studio d49d3de O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {BC7C46A4-D7A7-48EC-A98C-32A7762B5EFA} =>.Apple Inc. O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {F0C4B709-8BF4-4A72-B527-12E7BF5482F8} =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {BD6778C5-6FA5-492A-ADD6-E706339C2A7B} =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8} =>.Apple Inc. O42 - Logiciel: Audacity 2.1.0 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 =>.Audacity Team O42 - Logiciel: bnains version 1.0 - (..) [HKLM][64Bits] -- {305B36CF-E7A6-4ACC-9207-9BE09314259C}_is1 O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc. O42 - Logiciel: Boot Animation Factory - (.D01 MicroApps.) [HKLM][64Bits] -- {3EA00EEB-27DE-4507-AFF4-0C697A20C37B} O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM][64Bits] -- {F0A7DF2F-0BE0-470F-B137-D7A19F977189} =>.Broadcom Corporation O42 - Logiciel: BurnAware Free 7.7 - (.Burnaware.) [HKLM][64Bits] -- BurnAware Free_is1 =>.BurnAware O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Cisco Packet Tracer 6.2 Student - (.Cisco Systems, Inc..) [HKLM][64Bits] -- Cisco Packet Tracer 6.2 Student_is1 =>.Cisco Systems, Inc. O42 - Logiciel: CodeBlocks - (.The Code::Blocks Team.) [HKCU][64Bits] -- CodeBlocks =>.The Code::Blocks Team O42 - Logiciel: Crystal Reports for Visual Studio - (.SAP.) [HKLM][64Bits] -- {AC41D924-8C68-4BD5-A7A1-0AE4176C31A6} =>.SAP O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler =>.Piriform Ltd® O42 - Logiciel: Dotfuscator Software Services - Community Edition - (.PreEmptive Solutions.) [HKLM][64Bits] -- {41B31ABE-5A6E-498A-8F28-3BA3B8779A41} =>.PreEmptive Solutions O42 - Logiciel: Dritek Radio Controller - (.Dritek System Inc..) [HKLM][64Bits] -- RadioController =>.Dritek System Inc. O42 - Logiciel: exe4j 5.1 - (.ej-technologies GmbH.) [HKLM][64Bits] -- 4426-4425-6055-8903 {0D676D5B0CCF44D5DFA5DA376241E8D3} O42 - Logiciel: Flash Decompiler Trillix - (.Eltima Software.) [HKLM][64Bits] -- Flash Decompiler Trillix_is1 {7D515482CC4D95774C30473B22FEB21D} =>.ELTIMA Software O42 - Logiciel: Genymotion version 2.6.0 - (.Genymobile.) [HKLM][64Bits] -- {6D180286-D4DF-40EF-9227-923B9C07C08A}_is1 =>.Genymobile O42 - Logiciel: GlassFish Server Open Source Edition 4.1 - (.Sun Microsystems.) [HKLM][64Bits] -- nbi-glassfish-mod-4.1.0.13.0 =>.Sun Microsystems O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Grids 4.5.13 - (..) [HKLM][64Bits] -- Grids O42 - Logiciel: Hide My IP 6 - (.My Privacy Tools, Inc.) [HKLM][64Bits] -- HIDEMYIP_is1 =>.My Privacy Tools, Inc O42 - Logiciel: Hotspot Shield 6.0.4 - (.AnchorFree Inc..) [HKLM][64Bits] -- HotspotShield =>.AnchorFree Inc® O42 - Logiciel: Hotspot Shield 6.0.4 Embedded - (.Buildbot.) [HKLM][64Bits] -- {AF599C42-A2E5-4251-B7EE-4925B127E98F} =>.Buildbot O42 - Logiciel: HTC Driver Installer - (.HTC Corporation.) [HKLM][64Bits] -- {4CEEE5D0-F905-4688-B9F9-ECC710507796} =>.HTC Corporation O42 - Logiciel: Inno Setup version 5.5.9 - (.jrsoftware.org.) [HKLM][64Bits] -- Inno Setup 5_is1 =>.Open Source Developer, Martijn Laan® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX® O42 - Logiciel: Intel® Hardware Accelerated Execution Manager - (.Intel Corporation.) [HKLM][64Bits] -- {30F3FF94-225B-4319-A13C-E307FFDA3CFB} =>.Intel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: IPTInstaller - (.HTC.) [HKLM][64Bits] -- {08208143-777D-4A06-BB54-71BF0AD1BB70} =>.HTC O42 - Logiciel: iTools 3 version 3.2.0.0 - (.Thinksky, Inc..) [HKLM][64Bits] -- {06D9DD3D-5035-4E59-A505-88D54CFC2CD3}_is1 =>.Thinksky, Inc. O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {F3D76007-5A86-4D79-AFF5-103760F02B60} =>.Apple Inc. O42 - Logiciel: Java 8 Update 91 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218091F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Java SE Development Kit 8 Update 60 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180600} =>.Oracle Corporation O42 - Logiciel: JEXECreator 1.9.3 - (.ucware.com.) [HKLM][64Bits] -- JEXECreator_is1 O42 - Logiciel: Kingo ROOT version 1.4.9.2847 - (.Kingosoft Technology Ltd..) [HKLM][64Bits] -- {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1 =>.Kingosoft Technology Ltd. O42 - Logiciel: K-Lite Mega Codec Pack 10.8.5 - (.KLite Inc.) [HKLM][64Bits] -- KLiteCodecPack_is1 =>.KLite Inc O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM][64Bits] -- LManager =>.Dritek System Inc.® O42 - Logiciel: Launch4j 3.8 - (.Grzegorz Kowal.) [HKLM][64Bits] -- Launch4j =>.Grzegorz Kowal O42 - Logiciel: Maximum Maker - (.Maximum Maker.) [HKLM][64Bits] -- Maximum Maker O42 - Logiciel: McAfee WebAdvisor - (.McAfee, Inc..) [HKLM][64Bits] -- {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} =>.McAfee, Inc.® O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync =>.Mega Limited® O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} =>.Lenovo Group Limited O42 - Logiciel: Microsoft Access MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Access Setup Metadata MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0117-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM][64Bits] -- {95120000-00B9-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft DCF MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Groove MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft InfoPath MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Lync MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft OneNote MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Outlook MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft PowerPoint MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Project Standard 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office14.PRJSTDR =>.Microsoft Corporation® O42 - Logiciel: Microsoft Publisher MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight 3 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {2012098D-EEE9-4769-8DD3-B038050854D4} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Framework Runtime v1.0 SP1 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8438EC02-B8A9-462D-AC72-1B521349C001} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Framework SDK v1.0 SP1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0E3DFC64-CC49-4BE2-8C9C-58EF129675DB} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Framework Services v1.0 SP1 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {034106B5-54B7-467F-B477-5B7DBB492624} =>.Microsoft Corporation O42 - Logiciel: Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3} =>.Microsoft Corporation O42 - Logiciel: Microsoft Team Foundation Server 2010 Object Model - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {1AB7EDC5-D891-34C5-9FF1-BE6A85ACC44B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Team Foundation Server 2010 Object Model - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Team Foundation Server 2010 Object Model - ENU =>.Microsoft Corporation O42 - Logiciel: Microsoft Word MUI (English) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-0409-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 Refresh - (.Microsoft Corporation.) [HKLM][64Bits] -- {D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F} =>.Microsoft Corporation O42 - Logiciel: MiniTool Partition Wizard Free 9.1 - (.MiniTool Solution Ltd..) [HKLM][64Bits] -- {05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1 =>.MiniTool Solution Ltd® O42 - Logiciel: MiniTool Power Data Recovery Free Edition 7.0 - (.MiniTool Solution Ltd..) [HKLM][64Bits] -- MiniTool Power Data Recovery Free Edition_is1 =>.MiniTool Solution Ltd® O42 - Logiciel: Mozilla Firefox 43.0.1 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 43.0.1 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D4BD27CF-BFBC-11E3-9B8F-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {D66B7840-6A9B-11E4-8FED-F04DA23A5C58} =>.Sony Creative Software Inc. O42 - Logiciel: MySQL Connector C++ 1.1.7 - (.Oracle and/or its affiliates.) [HKLM][64Bits] -- {A4310FCD-95D5-49B7-91BA-9A079F07B167} =>.Oracle and/or its affiliates O42 - Logiciel: MySQL Connector J - (.Oracle Corporation.) [HKLM][64Bits] -- {C681B554-3461-4030-9D6B-5C3420009CD3} =>.Oracle Corporation O42 - Logiciel: MySQL Connector Net 6.9.9 - (.Oracle.) [HKLM][64Bits] -- {E09F82E9-3EB3-4725-BDC8-3C77F83E262C} =>.Oracle O42 - Logiciel: MySQL Connector/C 6.1 - (.Oracle Corporation.) [HKLM][64Bits] -- {ABC3A516-54E3-414B-B501-762E7FB2F9D5} =>.Oracle Corporation O42 - Logiciel: MySQL Connector/ODBC 5.3 - (.Oracle Corporation.) [HKLM][64Bits] -- {17E48BE8-F0F8-42B6-82D3-7A5840694D79} =>.Oracle Corporation O42 - Logiciel: MySQL Documents 5.7 - (.Oracle Corporation.) [HKLM][64Bits] -- {0A0D2C15-D682-4036-BC8C-6E382E656CBB} =>.Oracle Corporation O42 - Logiciel: MySQL Examples and Samples 5.7 - (.Oracle Corporation.) [HKLM][64Bits] -- {074B4410-68CF-4B12-A02D-888384F51615} =>.Oracle Corporation O42 - Logiciel: MySQL For Excel 1.3.6 - (.Oracle.) [HKLM][64Bits] -- {DC8733F3-63A6-43F4-8C38-637071FB6D5F} =>.Oracle O42 - Logiciel: MySQL Installer - Community - (.Oracle Corporation.) [HKLM][64Bits] -- {16CDE9E2-49CB-4D47-BE78-F20ADA452126} =>.Oracle Corporation O42 - Logiciel: MySQL Notifier 1.1.7 - (.Oracle.) [HKLM][64Bits] -- {724CDD73-430E-47DA-8F4E-7DF2000BA268} =>.Oracle O42 - Logiciel: MySQL Server 5.7 - (.Oracle Corporation.) [HKLM][64Bits] -- {CA2A0F6F-15DF-4BBC-AA8F-85EA1758B399} =>.Oracle Corporation O42 - Logiciel: MySQL Utilities - (.Oracle Corporation.) [HKLM][64Bits] -- {7FC39694-83D7-4CBD-88D6-15D1DD698075} =>.Oracle Corporation O42 - Logiciel: MySQL Workbench 6.3 CE - (.Oracle Corporation.) [HKLM][64Bits] -- {85664F8E-BFC5-46DE-AB5C-1EA6536AACBE} =>.Oracle Corporation O42 - Logiciel: NetBeans IDE 8.0.2 - (.NetBeans.org.) [HKLM][64Bits] -- nbi-nb-base-8.0.2.0.201411181905 =>.NetBeans.org O42 - Logiciel: NetCut 2.1.4 - (.arcai.com.) [HKLM][64Bits] -- NetCut_is1 =>.arcai.com O42 - Logiciel: Nexus Mod Manager - (.Black Tree Gaming.) [HKLM][64Bits] -- 6af12c54-643b-4752-87d0-8335503010de_is1 =>.Black Tree Gaming Ltd.® O42 - Logiciel: Notepad++ - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ =>.Notepad++ Team O42 - Logiciel: Nox APP Player - (.Duodian Technology Co. Ltd..) [HKLM][64Bits] -- Nox =>.Beijing Duodian Online Science and Technology Co.,Ltd® O42 - Logiciel: oCam version 418.0 - (.http://ohsoft.net/.) [HKLM][64Bits] -- oCam_is1 =>.http://ohsoft.net/ O42 - Logiciel: One Piece Pirate Warriors 3: GOLD Edition - (..) [HKLM][64Bits] -- One Piece Pirate Warriors 3: GOLD Edition_is1 O42 - Logiciel: Opera Stable 50.0.2762.67 - (.Opera Software.) [HKLM][64Bits] -- Opera 50.0.2762.67 =>.Opera Software AS® O42 - Logiciel: Oracle VM VirtualBox 5.0.4 - (.Oracle Corporation.) [HKLM][64Bits] -- {FC191F32-1A67-4231-91D0-0059A57C99A8} =>.Oracle Corporation O42 - Logiciel: Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass ( - (.Google, Inc..) [HKLM][64Bits] -- 092555911492C6959D2596D612F52DCA71881CA2 =>.Google, Inc. O42 - Logiciel: Package de pilotes Windows - MediaTek Inc. (usbser) Ports (01/05/2012 2.00 - (.MediaTek Inc..) [HKLM][64Bits] -- 49D9ABA9270C5BDFD7AE1BEB607D36B26BB90235 =>.Microsoft Windows® O42 - Logiciel: Package de pilotes Windows - MediaTek Inc. (usbser) Ports (12/24/2011 2.00 - (.MediaTek Inc..) [HKLM][64Bits] -- D0E6296D177F42BB31C0200E49412003DB6C4633 =>.Microsoft Windows® O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42} =>.dotPDN LLC O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated O42 - Logiciel: PhotoScape - (.PhotoScape.) [HKLM][64Bits] -- PhotoScape =>.PhotoScape O42 - Logiciel: Popcorn Time - (.Popcorn Time.) [HKLM][64Bits] -- Popcorn Time_is1 =>.SUP.PopcornTime O42 - Logiciel: PostgreSQL 9.6 - (.PostgreSQL Global Development Group.) [HKLM][64Bits] -- PostgreSQL 9.6 =>.PostgreSQL Global Development Group O42 - Logiciel: qksee - (.Taiwan Shui Mu Chih Ching Technology Limited.) [HKLM][64Bits] -- qksee =>.SUP.TaiwanShuiMu O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros O42 - Logiciel: R for Windows 3.2.2 - (.R Core Team.) [HKLM][64Bits] -- R for Windows 3.2.2_is1 =>.R Core Team O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Macrovision Corporation® O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Ltd® O42 - Logiciel: Registry Repair 5.0.1.70 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Registry Repair =>.Glarysoft Ltd® O42 - Logiciel: Revo Uninstaller Pro 3.1.2 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd. O42 - Logiciel: RStudio - (.RStudio.) [HKLM][64Bits] -- RStudio =>.RStudio O42 - Logiciel: SAMSUNG USB Driver for Mobile Phones - (.SAMSUNG Electronics Co., Ltd..) [HKLM][64Bits] -- {D0795B21-0CDA-4a92-AB9E-6E92D8111E44} =>.Samsung Electronics CO., LTD.® O42 - Logiciel: Service Pack 1 for SQL Server 2008 (KB968369) (64-bit) - (.Microsoft Corporation.) [HKLM][64Bits] -- KB968369 =>.Microsoft Corporation® O42 - Logiciel: SHAREit - (.Lenovo.) [HKLM][64Bits] -- SHAREit_is1 =>.Lenovo O42 - Logiciel: SHAREit - (.SHAREit Technologies Co.Ltd.) [HKLM][64Bits] -- www.ushareit.com_is1 =>.SHAREit Technologies Co.Ltd O42 - Logiciel: Shutdown8 - (.Bandisoft.com.) [HKCU][64Bits] -- Shutdown8 =>.Bandisoft.com O42 - Logiciel: Skype™ 7.24 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A. O42 - Logiciel: Skyrim NPC Editor - (.foretrenty.) [HKLM][64Bits] -- {5BA9357B-E876-4FB2-8F1B-C7E63AC90E6F} =>.foretrenty O42 - Logiciel: Skyrim Script Extender (SKSE) - (.The SKSE Team.) [HKLM][64Bits] -- Steam App 365720 =>.Valve® O42 - Logiciel: Space Bar Use - (.Space Bar Use.) [HKLM][64Bits] -- SoftwareUpdater =>PUP.Optional.SoftwareUpdater O42 - Logiciel: Speccy - (.Piriform.) [HKLM][64Bits] -- Speccy =>.Piriform Ltd® O42 - Logiciel: Sql Server Customer Experience Improvement Program - (.Microsoft Corporation.) [HKLM][64Bits] -- {2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF} =>.Microsoft Corporation O42 - Logiciel: StartIsBack+ - (.startisback.com.) [HKLM][64Bits] -- StartIsBack =>.startisback.com O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: SWI-Prolog (remove only) - (..) [HKLM][64Bits] -- SWI-Prolog O42 - Logiciel: Tunngle - (.Tunngle.net GmbH.) [HKLM][64Bits] -- Tunngle_is1 =>.Tunngle.net GmbH O42 - Logiciel: UltraUXThemePatcher - (.Manuel Hoefs (Zottel).) [HKLM][64Bits] -- UltraUXThemePatcher O42 - Logiciel: unisaless - (..) [HKLM][64Bits] -- {4CEE92A3-9F0C-51AB-ADC0-34EC24AD7B7E} =>PUP.Optional.UniSales O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: USB Disk Security - (.Zbshareware Lab.) [HKLM][64Bits] -- USB Disk Security_is1 =>.Zbshareware Lab O42 - Logiciel: UsbFix - (.El Desaparecido - www.usbfix.net - www.sosvirus.net.) [HKLM][64Bits] -- Usbfix =>.El Desaparecido - www.usbfix.net - www.sosvirus.net O42 - Logiciel: UxStyle - (.The Within Network, LLC.) [HKLM][64Bits] -- {05560347-3a9b-4644-a8ed-8b64cc947189} =>.The Within Network, LLC® O42 - Logiciel: UxStyle - (.The Within Network, LLC.) [HKLM][64Bits] -- {86D24646-DAF6-4F5E-BCAD-CF7EF8E362E1} =>.The Within Network, LLC O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {D2CE062E-6A9B-11E4-A8C6-F04DA23A5C58} =>.Sony O42 - Logiciel: Viber - (.Viber Media Inc..) [HKCU][64Bits] -- {d34d9b99-1e03-4ffe-b932-83259a4f2e12} =>.Viber Media S.à r.l.® O42 - Logiciel: Viber - (.Viber Media Inc..) [HKLM][64Bits] -- {DEA97A1F-52C4-4486-ABDE-1E598CA991DA} =>.Viber Media Inc. O42 - Logiciel: Visual Studio 2010 Prerequisites - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {662014D2-0450-37ED-ABAE-157C88127BEB} =>.Microsoft Corporation O42 - Logiciel: Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {112C23F2-C036-4D40-BED4-0CB47BF5555C} =>.Microsoft Corporation O42 - Logiciel: VLC media player 2.0.4 - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {E374BA09-9CD0-4F58-90EE-F8C1488BC81E} =>.VMware, Inc. O42 - Logiciel: WampServer 2.5 - (.Hervé Leclerc (HeL).) [HKLM][64Bits] -- WampServer 2_is1 =>.Hervé Leclerc (HeL) O42 - Logiciel: Web Deployment Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {0F37D969-1260-419E-B308-EF7D29ABDE20} =>.Microsoft Corporation O42 - Logiciel: Windows 7 Games for Windows 8 - (..) [HKLM][64Bits] -- MicrosoftGamesForWin8 O42 - Logiciel: Windows Driver Package - BigNox Corporation VBoxUSBMon System (09/16/2015 - (.BigNox Corporation.) [HKLM][64Bits] -- 39F54A37125643D2E1E90FA7D81F36ACC9441510 =>.Microsoft Windows® O42 - Logiciel: Windows Driver Package - BigNox Corporation XQHDrv System (09/16/2015 4.3. - (.BigNox Corporation.) [HKLM][64Bits] -- 0147813640F7AF69F569581EE672B6BE1E71798E =>.Microsoft Windows® O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies O42 - Logiciel: WinRAR 5.21 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Xilisoft Convertisseur Vidéo Ultimate - (.Xilisoft.) [HKLM][64Bits] -- Xilisoft Convertisseur Vidéo Ultimate =>.Xilisoft ---\\ HKCU & HKLM Software Keys (323) - 17s HKLM\SOFTWARE\7ba99f0f-ede8-4336-98c3-17c123a970b8 =>Adware.CrossRider HKLM\SOFTWARE\a529b2f0-1a85-4b0c-8922-e911b266bf2d =>Adware.CrossRider HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AF9A60719736AEEFAA0FE025861521E7 =>Adware.CrossRider HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Arcai =>.Arcai.com HKLM\SOFTWARE\attirerpageSoftware HKLM\SOFTWARE\Auslogics =>.Auslogics HKLM\SOFTWARE\B5TService =>PUP.Optional.Bang5mai HKLM\SOFTWARE\Bethesda Softworks =>.Bethesda Softworks HKLM\SOFTWARE\Caphyon =>.Caphyon HKLM\SOFTWARE\CDDB =>.Cddb Software HKLM\SOFTWARE\Client HKLM\SOFTWARE\Crashhd HKLM\SOFTWARE\Cygwin =>.Cygwin HKLM\SOFTWARE\Dritek =>.Dritek HKLM\SOFTWARE\DuoDianApp =>.DuoDianApp HKLM\SOFTWARE\DuoDianOnline =>.DuoDian Online HKLM\SOFTWARE\Eltima =>.Eltima HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\Glarysoft =>.Glarysoft HKLM\SOFTWARE\GlobalUpdate =>Adware.GlobalUpdate HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\GuidGuid13 HKLM\SOFTWARE\HaaliMkx =>.Haali Media HKLM\SOFTWARE\HotspotShield =>.AnchorFree Inc. HKLM\SOFTWARE\HotspotShield MSI =>.AnchorFree Inc. HKLM\SOFTWARE\IM Providers =>.IM Providers HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\jhtrsq HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\LAV =>.LAV Inc HKLM\SOFTWARE\Legpat HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mail.Ru =>.Mail.Ru HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\mtApphcuotloS HKLM\SOFTWARE\mtExtTag =>PUP.Optional.Salus HKLM\SOFTWARE\MySQL =>.MySQL AB HKLM\SOFTWARE\MySQL AB =>.MySQL AB HKLM\SOFTWARE\NetTcpHandler =>PUP.Optional.NetService HKLM\SOFTWARE\Nobean HKLM\SOFTWARE\Notepad++ =>.Don Ho HKLM\SOFTWARE\NtSvcHandler =>PUP.Optional.NetService HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Opera Software =>.Opera Software HKLM\SOFTWARE\PowerPivot =>.PowerPivot HKLM\SOFTWARE\qksee =>.SUP.TaiwanShuiMu HKLM\SOFTWARE\R-core HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Reason =>.Propellerhead HKLM\SOFTWARE\REGISTEREDAPPLICATIONS =>.Microsoft Corporation HKLM\SOFTWARE\RStudio =>.RStudio HKLM\SOFTWARE\SHAREit =>.Lenovo Group Limited HKLM\SOFTWARE\SHAREit Technologies =>..SUP.SHAREit HKLM\SOFTWARE\SiteAdvisor =>.McAfee Inc. HKLM\SOFTWARE\Skype =>.Skype HKLM\SOFTWARE\SkypeUpdateEx =>.Skype Technologies HKLM\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKLM\SOFTWARE\StarUML HKLM\SOFTWARE\SWI HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\ThinPrint =>.ThinPrint HKLM\SOFTWARE\TOSHIBA =>.Toshiba Corporation HKLM\SOFTWARE\Tunngle.net =>.Tunngle.net HKLM\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\UltraUXThemePatcher HKLM\SOFTWARE\Vaibhav Pandey HKLM\SOFTWARE\Valve =>.Valve HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WafCX =>.WafCX HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinNetSvc HKLM\SOFTWARE\WinPcap =>.Riverbed Technology HKLM\SOFTWARE\WinZiper =>.SUP.WinZipper HKLM\SOFTWARE\WMPNetworkAcSvc =>PUP.Optional.WinNetSvc HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\Xilisoft =>.Xilisoft HKLM\SOFTWARE\zbshareware =>.Zbshareware HKLM\SOFTWARE\WOW6432Node\7ba99f0f-ede8-4336-98c3-17c123a970b8 =>Adware.CrossRider HKLM\SOFTWARE\WOW6432Node\a529b2f0-1a85-4b0c-8922-e911b266bf2d =>Adware.CrossRider HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\AF9A60719736AEEFAA0FE025861521E7 =>Adware.CrossRider HKLM\SOFTWARE\WOW6432Node\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\Arcai =>.Arcai.com HKLM\SOFTWARE\WOW6432Node\attirerpageSoftware HKLM\SOFTWARE\WOW6432Node\Auslogics =>.Auslogics HKLM\SOFTWARE\WOW6432Node\B5TService =>PUP.Optional.Bang5mai HKLM\SOFTWARE\WOW6432Node\Bethesda Softworks =>.Bethesda Softworks HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\CDDB =>.Cddb Software HKLM\SOFTWARE\WOW6432Node\Client HKLM\SOFTWARE\WOW6432Node\Crashhd HKLM\SOFTWARE\WOW6432Node\Cygwin =>.Cygwin HKLM\SOFTWARE\WOW6432Node\Dritek =>.Dritek HKLM\SOFTWARE\WOW6432Node\DuoDianApp =>.DuoDianApp HKLM\SOFTWARE\WOW6432Node\DuoDianOnline =>.DuoDian Online HKLM\SOFTWARE\WOW6432Node\Eltima =>.Eltima HKLM\SOFTWARE\WOW6432Node\EPSON =>.EPSON HKLM\SOFTWARE\WOW6432Node\Glarysoft =>.Glarysoft HKLM\SOFTWARE\WOW6432Node\GlobalUpdate =>Adware.GlobalUpdate HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\GuidGuid13 HKLM\SOFTWARE\WOW6432Node\HaaliMkx =>.Haali Media HKLM\SOFTWARE\WOW6432Node\HotspotShield =>.AnchorFree Inc. HKLM\SOFTWARE\WOW6432Node\HotspotShield MSI =>.AnchorFree Inc. HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\WOW6432Node\jhtrsq HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\WOW6432Node\LAV =>.LAV Inc HKLM\SOFTWARE\WOW6432Node\Legpat =>Adware.Suspect HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mail.Ru =>.Mail.Ru HKLM\SOFTWARE\WOW6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\mtApphcuotloS HKLM\SOFTWARE\WOW6432Node\mtExtTag =>PUP.Optional.Salus HKLM\SOFTWARE\WOW6432Node\MySQL =>.MySQL AB HKLM\SOFTWARE\WOW6432Node\MySQL AB =>.MySQL AB HKLM\SOFTWARE\WOW6432Node\NetTcpHandler =>PUP.Optional.NetService HKLM\SOFTWARE\WOW6432Node\Nobean HKLM\SOFTWARE\WOW6432Node\Notepad++ =>.Don Ho HKLM\SOFTWARE\WOW6432Node\NtSvcHandler =>PUP.Optional.NetService HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Opera Software =>.Opera Software HKLM\SOFTWARE\WOW6432Node\PowerPivot =>.PowerPivot HKLM\SOFTWARE\WOW6432Node\qksee =>.SUP.TaiwanShuiMu HKLM\SOFTWARE\WOW6432Node\R-core HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Reason =>.Propellerhead HKLM\SOFTWARE\WOW6432Node\REGISTEREDAPPLICATIONS =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RStudio =>.RStudio HKLM\SOFTWARE\WOW6432Node\SHAREit =>.Lenovo Group Limited HKLM\SOFTWARE\WOW6432Node\SHAREit Technologies =>..SUP.SHAREit HKLM\SOFTWARE\WOW6432Node\SiteAdvisor =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype HKLM\SOFTWARE\WOW6432Node\SkypeUpdateEx =>.Skype Technologies HKLM\SOFTWARE\WOW6432Node\Sony Creative Software =>.Sony Creative Software HKLM\SOFTWARE\WOW6432Node\StarUML HKLM\SOFTWARE\WOW6432Node\SWI HKLM\SOFTWARE\WOW6432Node\Synaptics =>.Synaptics HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint HKLM\SOFTWARE\WOW6432Node\TOSHIBA =>.Toshiba Corporation HKLM\SOFTWARE\WOW6432Node\Tunngle.net =>.Tunngle.net HKLM\SOFTWARE\WOW6432Node\UCBrowserPID =>.UCWeb Inc. HKLM\SOFTWARE\WOW6432Node\UltraUXThemePatcher HKLM\SOFTWARE\WOW6432Node\Vaibhav Pandey HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\WinNetSvc HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology HKLM\SOFTWARE\WOW6432Node\WinZiper =>.SUP.WinZipper HKLM\SOFTWARE\WOW6432Node\WMPNetworkAcSvc =>PUP.Optional.WinNetSvc HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\Xilisoft =>.Xilisoft HKLM\SOFTWARE\WOW6432Node\zbshareware =>.Zbshareware HKCU\SOFTWARE\6E750F07F05E2E2972D4611054B98BFA =>Adware.CrossRider HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AF9A60719736AEEFAA0FE025861521E7 =>Adware.CrossRider HKCU\SOFTWARE\AlimamaShortcuts HKCU\SOFTWARE\Amigo HKCU\SOFTWARE\Android Open Source Project =>.Open Source HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AppID HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc. HKCU\SOFTWARE\Apple Inc. =>.Apple Inc. HKCU\SOFTWARE\Applications WinDev =>.WinDev HKCU\SOFTWARE\Arcai.com =>.Arcai.com HKCU\SOFTWARE\BitTorrent HKCU\SOFTWARE\BNE HKCU\SOFTWARE\CodeBlocks =>.CodeBlocks Team HKCU\SOFTWARE\csastats =>Adware.InstallCore HKCU\SOFTWARE\Cygwin =>.Cygwin HKCU\SOFTWARE\David Esperalta =>.David Esperalta HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation HKCU\SOFTWARE\DotNet Spy HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\Dritek =>.Dritek HKCU\SOFTWARE\DXTransform =>.Microsoft Corporation HKCU\SOFTWARE\ej-technologies =>.ej-technologies HKCU\SOFTWARE\Eltima Software =>.ELTIMA Software HKCU\SOFTWARE\EPSON =>.EPSON HKCU\SOFTWARE\Facebook =>.Facebook HKCU\SOFTWARE\Fixit Tools HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Game Maker HKCU\SOFTWARE\Genesis Mobile =>.Genesis Mobile HKCU\SOFTWARE\Genymobile =>.Genymobile HKCU\SOFTWARE\Glarysoft =>.Glarysoft HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Grids HKCU\SOFTWARE\Haali =>.Haali Media HKCU\SOFTWARE\HideMyIP =>.HideMyIP HKCU\SOFTWARE\HotspotShield =>.AnchorFree Inc. HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IM =>.Legitimate HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\IMDownloader =>.Legitimate HKCU\SOFTWARE\InstallPath =>.Legitimate HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Intel Corporation =>.Intel Corporation HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Jordan Russell =>.Jordan Russell HKCU\SOFTWARE\Lagarith =>.Lagarith HKCU\SOFTWARE\Legpat HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\LinuxLive =>.LinuxLive Team HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\LowRegistry =>.Unknown HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\madshi =>.madshi.net HKCU\SOFTWARE\Mail.Ru =>.Mail.Ru HKCU\SOFTWARE\malavida =>.Maladiva.com HKCU\SOFTWARE\MCAFEE =>.McAfee Inc. HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd. HKCU\SOFTWARE\Mirage =>.Mirage Game HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\mtApphcuotloS HKCU\SOFTWARE\mtExtTag =>PUP.Optional.Salus HKCU\SOFTWARE\mtViafresh HKCU\SOFTWARE\MySQL =>.MySQL AB HKCU\SOFTWARE\MySQL AB =>.MySQL AB HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Nobean HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\Oracle =>.Oracle HKCU\SOFTWARE\paint.net =>.Rick Brewster HKCU\SOFTWARE\PC SOFT =>.PC SOFT HKCU\SOFTWARE\PCSX2 HKCU\SOFTWARE\pgadmin HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Popcorn Time =>.SUP.PopcornTime HKCU\SOFTWARE\PopcornTime =>.SUP.PopcornTime HKCU\SOFTWARE\ProductSetup =>Adware.InstallCore HKCU\SOFTWARE\pth264 HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\Reason =>.Propellerhead HKCU\SOFTWARE\RegExLab.com =>.RegExLab.com HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Rtp =>.RTP Software HKCU\SOFTWARE\SHAREit =>.Lenovo Group Limited HKCU\SOFTWARE\SHAREit Technologies =>..SUP.SHAREit HKCU\SOFTWARE\Shutdown8 HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software HKCU\SOFTWARE\StartIsBack =>.StartIsBack.com HKCU\SOFTWARE\StarUML HKCU\SOFTWARE\Stdin2 HKCU\SOFTWARE\SWI HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\Tencent =>.SUP.Tencent HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKCU\SOFTWARE\ThinkTimeCreations HKCU\SOFTWARE\thriXXX HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\Tunngle.net =>.Tunngle.net HKCU\SOFTWARE\Ubisoft =>.Ubisoft HKCU\SOFTWARE\UCBrowserPID =>.UCWeb Inc. HKCU\SOFTWARE\undefined =>.SUP.Downloader HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\UsbFix =>.El Desaparecido HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\Viber =>.Viber HKCU\SOFTWARE\Viber Media S.à r.l HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WebApp =>.SUP.Downloader HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wireshark =>.Wireshark HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\Xilisoft =>.Xilisoft HKCU\SOFTWARE\Xpom =>.Mail.Ru HKCU\SOFTWARE\Zemana =>.Zemana HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\ZONE Archive HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Mail.Ru =>.Mail.Ru ---\\ Contenu des dossiers Programmes (572) - 13s O43 - CFD: 11/09/2015 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 18/12/2015 - [] D -- C:\Program Files\Android =>.Android O43 - CFD: 08/01/2014 - [] D -- C:\Program Files\arduino-1.0.5-r2 =>.Arduino O43 - CFD: 30/12/2016 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 01/02/2015 - [] D -- C:\Program Files\Broadcom =>.Broadcom O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 12/01/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 12/03/2016 - [] D -- C:\Program Files\DAZ 3D =>.DAZ 3D O43 - CFD: 01/02/2015 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd O43 - CFD: 15/02/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Embedded Lockdown Manager =>.Microsoft Corporation O43 - CFD: 08/07/2016 - [] D -- C:\Program Files\exe4j {0D676D5B0CCF44D5DFA5DA376241E8D3} O43 - CFD: 01/01/2015 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\Genymobile =>.Genymobile O43 - CFD: 12/04/2017 - [] D -- C:\Program Files\glassfish-4.1 =>.Sun Microsystems O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\IIS =>.Microsoft Corporation O43 - CFD: 27/12/2015 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 01/01/2018 - [] D -- C:\Program Files\iPod =>.Apple Inc.® O43 - CFD: 01/01/2018 - [] D -- C:\Program Files\iTunes =>.Apple Inc. O43 - CFD: 16/02/2016 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 24/04/2017 - [] D -- C:\Program Files\KMSpico =>HackTool.KMSpico O43 - CFD: 17/02/2017 - [0] D -- C:\Program Files\McAfee =>.McAfee O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft Help Viewer =>.Microsoft Corporation O43 - CFD: 15/11/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 07/02/2016 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft Visual Studio 10.0 =>.Pinnacle Systems, Inc. O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\Microsoft Visual Studio 9.0 =>.Pinnacle Systems, Inc. O43 - CFD: 12/02/2016 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\MiniTool Partition Wizard Free 9.1 =>.MiniTool Solution Ltd O43 - CFD: 26/10/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 27/02/2017 - [] D -- C:\Program Files\MySQL =>.MySQL AB O43 - CFD: 12/04/2017 - [] D -- C:\Program Files\NetBeans 8.0.2 =>.NetBeans O43 - CFD: 02/02/2015 - [] D -- C:\Program Files\Nexus Mod Manager =>.Winstep Software Technologies O43 - CFD: 08/04/2016 - [] D -- C:\Program Files\NixSrv =>Adware.Amonetize O43 - CFD: 08/05/2016 - [] D -- C:\Program Files\Oracle =>.Oracle O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\paint.net =>.Rick Brewster O43 - CFD: 18/04/2017 - [] D -- C:\Program Files\PostgreSQL =>.PostgreSQL O43 - CFD: 17/04/2016 - [] D -- C:\Program Files\PowerDataRecovery =>.MT Solution O43 - CFD: 17/11/2016 - [] D -- C:\Program Files\R O43 - CFD: 23/02/2015 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 30/06/2016 - [0] D -- C:\Program Files\Reason O43 - CFD: 18/11/2017 - [] D -- C:\Program Files\Recuva =>.Piriform O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 17/11/2016 - [] D -- C:\Program Files\RStudio =>.RStudio O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\SAMSUNG =>.Samsung Electronics O43 - CFD: 06/03/2016 - [] D -- C:\Program Files\Selfishnet O43 - CFD: 10/02/2017 - [] D -- C:\Program Files\Sony =>.Sony O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Speccy =>.Piriform O43 - CFD: 01/02/2015 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 22/10/2015 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 01/12/2017 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 19/02/2017 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology O43 - CFD: 19/09/2015 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 26/10/2015 - [0] D -- C:\Program Files (x86)\4bbdf4b3-af92-4046-bf11-9b2493cefd36 =>Adware.CrossRider O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\7tsp O43 - CFD: 21/09/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\AIMP3 =>.AIMP AUdio Software O43 - CFD: 09/01/2016 - [] D -- C:\Program Files (x86)\AirDroid =>.AirDroid O43 - CFD: 02/07/2016 - [] D -- C:\Program Files (x86)\apkstudio O43 - CFD: 01/01/2018 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc. O43 - CFD: 25/05/2016 - [] D -- C:\Program Files (x86)\ArgoUML O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\Audacity =>.Audacity O43 - CFD: 29/11/2016 - [0] D -- C:\Program Files (x86)\Auslogics =>.Auslogics O43 - CFD: 09/02/2017 - [] D -- C:\Program Files (x86)\Bignox =>.BigNox O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Bluetooth Suite =>.ASUSTeK O43 - CFD: 31/05/2016 - [] D -- C:\Program Files (x86)\bnains O43 - CFD: 30/12/2016 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\BurnAware Free =>.BurnAware Technologies O43 - CFD: 29/11/2016 - [] D -- C:\Program Files (x86)\Cisco Packet Tracer 6.2sv =>.Cisco Systems, Inc. O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\CodeBlocks =>.CodeBlocks Team O43 - CFD: 12/01/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 20/12/2017 - [] D -- C:\Program Files (x86)\Counter-Strike O43 - CFD: 13/01/2016 - [] D -- C:\Program Files (x86)\D01 MicroApps O43 - CFD: 09/02/2016 - [] D -- C:\Program Files (x86)\eclipse =>.Eclipse O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\Eltima Software {7D515482CC4D95774C30473B22FEB21D} =>.ELTIMA Software O43 - CFD: 23/10/2015 - [0] D -- C:\Program Files (x86)\epson =>.EPSON O43 - CFD: 26/10/2015 - [0] D -- C:\Program Files (x86)\f93a7e53-7214-44a0-851e-d40c5c736f39 =>Adware.CrossRider O43 - CFD: 16/10/2015 - [0] D -- C:\Program Files (x86)\Feed Notifier O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software O43 - CFD: 22/10/2015 - [0] D -- C:\Program Files (x86)\FreeTime =>.FreeTime O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\Game_Maker8 O43 - CFD: 08/08/2015 - [0] D -- C:\Program Files (x86)\Genie Soft =>.Genie Soft O43 - CFD: 07/12/2015 - [] D -- C:\Program Files (x86)\Glarysoft =>.GlarySoft O43 - CFD: 26/10/2015 - [] D -- C:\Program Files (x86)\globalUpdate =>Adware.GlobalUpdate O43 - CFD: 08/02/2015 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 25/12/2017 - [] D -- C:\Program Files (x86)\Hide My IP 6 =>.My Privacy Tools, Inc.® O43 - CFD: 11/09/2015 - [] D -- C:\Program Files (x86)\Hostless Modem O43 - CFD: 23/05/2017 - [] D -- C:\Program Files (x86)\Hotspot Shield =>.AnchorFree Inc® O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\HTC =>.HTC O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\HTML Help Workshop =>.Microsoft Corporation® O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\IIS =>.Microsoft Corporation O43 - CFD: 22/01/2017 - [] D -- C:\Program Files (x86)\Inno Setup 5 =>.Inno Setup O43 - CFD: 23/02/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 01/05/2015 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 20/08/2013 - [] D -- C:\Program Files (x86)\Jar to Exe O43 - CFD: 07/07/2016 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 01/07/2016 - [] D -- C:\Program Files (x86)\JEXECreator 1.9.3 O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 11/02/2017 - [] D -- C:\Program Files (x86)\Kingo ROOT =>.Kingosoft Technology Ltd O43 - CFD: 18/02/2015 - [] D -- C:\Program Files (x86)\Launch Manager =>.Legitimate O43 - CFD: 06/07/2016 - [] D -- C:\Program Files (x86)\Launch4j =>.Grzegorz Kowal O43 - CFD: 01/03/2016 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo O43 - CFD: 05/01/2018 - [] D -- C:\Program Files (x86)\McAfee =>.McAfee O43 - CFD: 16/02/2015 - [] D -- C:\Program Files (x86)\Metal Slug Complete PC O43 - CFD: 12/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft ASP.NET =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft F# =>.Microsoft Corporation O43 - CFD: 15/11/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation O43 - CFD: 07/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 9.0 =>.Pinnacle Systems, Inc. O43 - CFD: 09/02/2015 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation O43 - CFD: 12/02/2016 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 11/05/2016 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 05/05/2016 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 27/02/2017 - [] D -- C:\Program Files (x86)\MySQL =>.MySQL AB O43 - CFD: 19/02/2017 - [] D -- C:\Program Files (x86)\netcut =>.Arcai.com O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\Notepad++ =>.Don Ho O43 - CFD: 01/02/2017 - [] D -- C:\Program Files (x86)\Nox =>.FFmpeg Project O43 - CFD: 13/10/2017 - [] D -- C:\Program Files (x86)\oCam =>.Ohsoft.net O43 - CFD: 24/01/2018 - [] D -- C:\Program Files (x86)\Opera =>.Opera Software O43 - CFD: 03/02/2015 - [] D -- C:\Program Files (x86)\Origin =>.Electronic Arts, Inc. O43 - CFD: 19/12/2014 - [0] D -- C:\Program Files (x86)\Origin Games =>.Electronic Arts, Inc. O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\PCSX2 0.9.8 O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\PhotoScape =>.Mooii Tech Software O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\Pixlr-o-matic O43 - CFD: 31/10/2016 - [] D -- C:\Program Files (x86)\Popcorn Time =>.SUP.PopcornTime O43 - CFD: 30/05/2016 - [0] D -- C:\Program Files (x86)\QQBrowser O43 - CFD: 18/02/2015 - [] D -- C:\Program Files (x86)\RadioController =>.Dritek System Inc.® O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 25/01/2017 - [] D -- C:\Program Files (x86)\SHAREit Technologies =>.SHAREit Technologies Co.Ltd® O43 - CFD: 03/06/2016 - [] RD -- C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 09/02/2015 - [] D -- C:\Program Files (x86)\Skyrim NPC Editor O43 - CFD: 10/02/2017 - [] D -- C:\Program Files (x86)\Sony =>.Sony O43 - CFD: 15/03/2016 - [] D -- C:\Program Files (x86)\Spirent Communications =>.Spirent Communications O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\StartIsBack =>.StartCom O43 - CFD: 26/02/2017 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games O43 - CFD: 29/09/2015 - [] D -- C:\Program Files (x86)\swipl O43 - CFD: 26/01/2018 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH O43 - CFD: 23/02/2015 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 17/06/2016 - [] D -- C:\Program Files (x86)\The Elder Scrolls V Skyrim O43 - CFD: 11/09/2015 - [] D -- C:\Program Files (x86)\ThinkSky =>.ThinkSky Inc O43 - CFD: 02/07/2015 - [] D -- C:\Program Files (x86)\Tools O43 - CFD: 30/01/2016 - [] D -- C:\Program Files (x86)\Tor Browser =>.Roger Dingledine O43 - CFD: 16/01/2016 - [] D -- C:\Program Files (x86)\Tunngle =>.Tunngle.net O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\UltraISO =>.EZB Systems O43 - CFD: 01/01/2015 - [] D -- C:\Program Files (x86)\UltraUXThemePatcher O43 - CFD: 08/04/2016 - [0] D -- C:\Program Files (x86)\UniqueApps O43 - CFD: 05/12/2017 - [] D -- C:\Program Files (x86)\USB Disk Security =>.FlashPeak Inc O43 - CFD: 12/01/2018 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.® O43 - CFD: 02/02/2016 - [0] D -- C:\Program Files (x86)\WinDev =>.WinDev O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology O43 - CFD: 10/02/2017 - [] D -- C:\Program Files (x86)\Wireshark =>.Wireshark O43 - CFD: 11/06/2017 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 23/06/2015 - [] D -- C:\Program Files (x86)\Xilisoft =>.Xilisoft O43 - CFD: 02/02/2015 - [] D -- C:\Program Files (x86)\XnView =>.Pierre-Emmanuel Gougelet O43 - CFD: 08/01/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3G Mobile Hotspot Hostless Modem O43 - CFD: 11/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 22/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP3 =>.AIMP AUdio Software O43 - CFD: 09/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid =>.AirDroid O43 - CFD: 18/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio =>.Google Inc. O43 - CFD: 02/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\APK Studio O43 - CFD: 19/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\arcai.com =>.Arcai.com O43 - CFD: 29/11/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics =>.Auslogics O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free =>.BurnAware Technologies O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 29/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco Packet Tracer Student =>.Cisco Systems, Inc. O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks =>.CodeBlocks Team O43 - CFD: 13/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\D01 MicroApps O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform Ltd O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eltima Software =>.ELTIMA Software O43 - CFD: 24/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager =>.Microsoft Corporation O43 - CFD: 17/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON O43 - CFD: 29/03/2016 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Registry Cleaner =>.WiseCleaner.com, Inc O43 - CFD: 01/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genymotion O43 - CFD: 07/12/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glarysoft =>.GlarySoft O43 - CFD: 25/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hide My IP 6 O43 - CFD: 23/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield =>.Hotspot Shield O43 - CFD: 15/03/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTC =>.HTC O43 - CFD: 22/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inno Setup 5 =>.Inno Setup O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 30/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTools 3 =>.ThinkSky Inc O43 - CFD: 01/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc. O43 - CFD: 07/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 07/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit =>.Oracle O43 - CFD: 01/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JEXECreator 1.9.3 O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT =>.Kingosoft Technology Ltd O43 - CFD: 15/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico O43 - CFD: 06/07/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Launch4j =>.Grzegorz Kowal O43 - CFD: 22/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 22/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit =>.SUP.SHAREit O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 16/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation O43 - CFD: 07/02/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 3 SDK =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 =>.Pinnacle Systems, Inc. O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard Free 9.1 =>.MiniTool Solution Ltd O43 - CFD: 17/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Power Data Recovery 7.0 O43 - CFD: 27/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL =>.MySQL AB O43 - CFD: 03/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans =>.NetBeans.org O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager =>.Winstep Software Technologies O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho O43 - CFD: 13/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\oCam =>.Ohsoft.net O43 - CFD: 08/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox =>.Oracle O43 - CFD: 13/03/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape =>.Mooii Tech Software O43 - CFD: 10/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time =>.SUP.PopcornTime O43 - CFD: 18/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 9.6 O43 - CFD: 17/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R O43 - CFD: 02/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razor 1911 O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group O43 - CFD: 17/11/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RStudio =>.RStudio O43 - CFD: 14/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SHAREit =>.Lenovo Group Limited O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 09/02/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skyrim NPC Editor O43 - CFD: 10/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony =>.Sony O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy =>.Piriform O43 - CFD: 11/06/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 26/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 29/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SWI-Prolog O43 - CFD: 24/09/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle =>.Tunngle.net O43 - CFD: 05/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Security =>.FlashPeak Inc O43 - CFD: 22/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WampServer =>.WAMP Server O43 - CFD: 23/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology O43 - CFD: 16/09/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 26/02/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip =>.WinZip O43 - CFD: 23/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft =>.Xilisoft O43 - CFD: 20/06/2016 - [0] D -- C:\ProgramData\1winp1 O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 =>.GEAR Software, Inc. O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\adb O43 - CFD: 21/09/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 08/11/2015 - [] D -- C:\ProgramData\apk O43 - CFD: 12/08/2015 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 30/12/2016 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc. O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 29/11/2016 - [0] D -- C:\ProgramData\Auslogics =>.Auslogics O43 - CFD: 21/02/2015 - [] D -- C:\ProgramData\AutoUpdate O43 - CFD: 26/10/2015 - [0] D -- C:\ProgramData\B5TTmp =>PUP.Optional.Bang5mai O43 - CFD: 16/03/2015 - [] D -- C:\ProgramData\Baidu =>.Baidu O43 - CFD: 07/02/2017 - [0] D -- C:\ProgramData\BlueStacksSetup =>.BlueStack Systems, Inc. O43 - CFD: 01/01/2015 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 05/09/2015 - [] D -- C:\ProgramData\DatacardService =>.Entriq, Inc. O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 29/05/2017 - [] D -- C:\ProgramData\Hotspot Shield =>.Hotspot Shield O43 - CFD: 01/01/2015 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\kingsoft =>.Kingosoft Technology Ltd O43 - CFD: 01/03/2016 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 04/12/2015 - [] D -- C:\ProgramData\Licenses =>.Microsoft Corporation O43 - CFD: 19/06/2015 - [] D -- C:\ProgramData\LogMeIn =>.LogMeIn O43 - CFD: 01/01/2016 - [] D -- C:\ProgramData\Logs =>.ABBYY Software O43 - CFD: 05/01/2018 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 01/01/2015 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 16/11/2016 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation O43 - CFD: 07/02/2015 - [] D -- C:\ProgramData\MobiConnect O43 - CFD: 01/01/2015 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 27/02/2017 - [] D -- C:\ProgramData\MySQL =>.MySQL AB O43 - CFD: 18/12/2015 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 29/12/2015 - [] D -- C:\ProgramData\Orbit =>.Orbit O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc. O43 - CFD: 23/05/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\ProgramData\PreEmptive Solutions =>.PreEmptive Solutions O43 - CFD: 01/02/2015 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros O43 - CFD: 21/09/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc. O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 20/06/2015 - [] D -- C:\ProgramData\RELOADED O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 03/06/2016 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 10/02/2017 - [] D -- C:\ProgramData\Sony =>.Sony O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\SP_FT_Logs O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 16/01/2016 - [] D -- C:\ProgramData\Steam =>.Steam Games O43 - CFD: 20/01/2018 - [] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 03/08/2017 - [] D -- C:\ProgramData\Tencent =>.SUP.Tencent O43 - CFD: 19/02/2016 - [] D -- C:\ProgramData\Tunngle =>.Tunngle.net O43 - CFD: 22/10/2015 - [] D -- C:\ProgramData\Viafresh O43 - CFD: 24/01/2018 - [] D -- C:\ProgramData\VMware =>.VMware O43 - CFD: 01/01/2015 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group O43 - CFD: 21/02/2016 - [] D -- C:\ProgramData\Western Digital =>.Western Digital O43 - CFD: 02/01/2018 - [] D -- C:\ProgramData\WindSolutions =>.WindSolutions O43 - CFD: 10/06/2017 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 23/06/2015 - [] D -- C:\ProgramData\Xilisoft =>.Xilisoft O43 - CFD: 11/09/2015 - [] D -- C:\ProgramData\ZDSupport O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\{71da4017-1966-9cd0-71da-a4017196005c} O43 - CFD: 11/09/2015 - [] D -- C:\ProgramData\{958c4a2c-2af8-b13b-958c-c4a2c2af28b0} O43 - CFD: 21/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 18/05/2016 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 30/12/2016 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Qualcomm Atheros O43 - CFD: 15/11/2016 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 17/02/2017 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared =>.Ellora Assets Corporation O43 - CFD: 23/02/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 01/02/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 07/07/2016 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 22/02/2015 - [] D -- C:\Program Files (x86)\Common Files\LENOVO =>.Lenovo O43 - CFD: 05/01/2018 - [] D -- C:\Program Files (x86)\Common Files\McAfee =>.McAfee O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Common Files\Merge Modules =>.Microsoft Corporation O43 - CFD: 26/10/2017 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 03/06/2016 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 16/06/2016 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 24/09/2014 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 03/08/2017 - [] D -- C:\Program Files (x86)\Common Files\Tencent =>.SUP.Tencent O43 - CFD: 12/01/2018 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint O43 - CFD: 12/01/2018 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware O43 - CFD: 18/08/2015 - [] D -- C:\Users\TM161\AppData\Roaming\AdbDriverInstaller =>.Samsung Electronics O43 - CFD: 26/10/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 18/11/2015 - [0] D -- C:\Users\TM161\AppData\Roaming\afght O43 - CFD: 22/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\AIMP3 =>.AIMP AUdio Software O43 - CFD: 12/08/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 07/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\Arduino =>.Arduino LLC O43 - CFD: 17/02/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Audacity =>.Audacity O43 - CFD: 22/01/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Boot Animation Factory O43 - CFD: 24/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\CodeBlocks =>.CodeBlocks Team O43 - CFD: 21/06/2016 - [0] D -- C:\Users\TM161\AppData\Roaming\cpuminer =>PUP.Optional.CPUminer O43 - CFD: 26/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 28/05/2016 - [] D -- C:\Users\TM161\AppData\Roaming\eCyber =>.SUP.Elex O43 - CFD: 19/02/2016 - [] D -- C:\Users\TM161\AppData\Roaming\EurekaLog =>.EurekaLog O43 - CFD: 13/03/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Eusing =>.Eusing O43 - CFD: 31/05/2016 - [] D -- C:\Users\TM161\AppData\Roaming\excdir O43 - CFD: 22/10/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 21/06/2016 - [0] D -- C:\Users\TM161\AppData\Roaming\FreeFixer O43 - CFD: 13/03/2015 - [] D -- C:\Users\TM161\AppData\Roaming\GameSave Manager 3 O43 - CFD: 07/12/2015 - [] D -- C:\Users\TM161\AppData\Roaming\GlarySoft =>.GlarySoft O43 - CFD: 16/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\Google =>.Google O43 - CFD: 10/06/2017 - [] D -- C:\Users\TM161\AppData\Roaming\HMYGSetting =>Adware.Suspect O43 - CFD: 07/09/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 23/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\IDM =>.IDM O43 - CFD: 18/12/2015 - [] D -- C:\Users\TM161\AppData\Roaming\JetBrains =>.JetBrains Inc O43 - CFD: 03/03/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Kingosoft =>.Kingosoft O43 - CFD: 18/02/2015 - [] D -- C:\Users\TM161\AppData\Roaming\lm O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 26/10/2017 - [] SD -- C:\Users\TM161\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 21/04/2015 - [] D -- C:\Users\TM161\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 04/05/2016 - [] D -- C:\Users\TM161\AppData\Roaming\MySQL =>.MySQL AB O43 - CFD: 03/10/2015 - [] D -- C:\Users\TM161\AppData\Roaming\NetBeans =>.NetBeans.org O43 - CFD: 05/04/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Notepad++ =>.Don Ho O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\oCam =>.Ohsoft.net O43 - CFD: 17/05/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 16/05/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Oracle =>.Oracle O43 - CFD: 06/02/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Origin =>.Electronic Arts, Inc. O43 - CFD: 18/04/2017 - [] D -- C:\Users\TM161\AppData\Roaming\pgAdmin O43 - CFD: 18/05/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Pixlromatic O43 - CFD: 09/07/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Profiles =>.Microsoft Corporation O43 - CFD: 10/02/2017 - [0] D -- C:\Users\TM161\AppData\Roaming\Publish Providers =>.Legitimate O43 - CFD: 16/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\RStudio =>.RStudio O43 - CFD: 14/05/2016 - [0] D -- C:\Users\TM161\AppData\Roaming\sc O43 - CFD: 13/03/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Scape O43 - CFD: 03/10/2015 - [] D -- C:\Users\TM161\AppData\Roaming\shortCutStore O43 - CFD: 31/08/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Skype =>.Skype O43 - CFD: 19/02/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Sony =>.Sony O43 - CFD: 14/06/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Sony Creative Software Inc =>.Sony Corporation O43 - CFD: 30/12/2016 - [] D -- C:\Users\TM161\AppData\Roaming\StarUML =>.Stellar Information Systems Ltd O43 - CFD: 03/10/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Sun =>.Oracle O43 - CFD: 03/10/2015 - [] D -- C:\Users\TM161\AppData\Roaming\SWI-Prolog O43 - CFD: 04/02/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Synaptics =>.Synaptics O43 - CFD: 25/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\TeamViewer =>.TeamViewer GmbH O43 - CFD: 15/08/2015 - [] D -- C:\Users\TM161\AppData\Roaming\ThinkSky =>.ThinkSky Inc O43 - CFD: 19/02/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Tunngle =>.Tunngle.net O43 - CFD: 25/01/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Umeng O43 - CFD: 18/06/2016 - [] D -- C:\Users\TM161\AppData\Roaming\uMod O43 - CFD: 25/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\uTorrent O43 - CFD: 25/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\ViberPC =>.Viber O43 - CFD: 26/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 24/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\VMware =>.VMware O43 - CFD: 01/02/2015 - [] D -- C:\Users\TM161\AppData\Roaming\VS Revo Group =>.VS Revo Group O43 - CFD: 06/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\WinBatch =>.winbatch.com O43 - CFD: 02/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\WindSolutions =>.WindSolutions O43 - CFD: 08/04/2016 - [] D -- C:\Users\TM161\AppData\Roaming\WinNetSvc O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 11/06/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 23/06/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Xilisoft =>.Xilisoft O43 - CFD: 14/12/2017 - [] D -- C:\Users\TM161\AppData\Roaming\XnView =>.Pierre-Emmanuel Gougelet O43 - CFD: 04/10/2015 - [] D -- C:\Users\TM161\AppData\Roaming\xpce O43 - CFD: 05/12/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Zbshareware Lab =>.Zbshareware Lab O43 - CFD: 26/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 11/09/2015 - [0] D -- C:\Users\TM161\AppData\Local\0CB7869B-1441933564-E211-87F5-20898455799D O43 - CFD: 30/09/2017 - [] D -- C:\Users\TM161\AppData\Local\Adobe =>.Adobe O43 - CFD: 18/12/2015 - [] D -- C:\Users\TM161\AppData\Local\Android =>.Android O43 - CFD: 06/02/2015 - [] D -- C:\Users\TM161\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 03/09/2017 - [] D -- C:\Users\TM161\AppData\Local\Apple Computer =>.Apple Inc. O43 - CFD: 01/01/2015 - [0] SHD -- C:\Users\TM161\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 29/11/2016 - [] D -- C:\Users\TM161\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 03/01/2018 - [] D -- C:\Users\TM161\AppData\Local\Arduino15 =>.Arduino O43 - CFD: 16/05/2016 - [] D -- C:\Users\TM161\AppData\Local\assembly =>.Assembly O43 - CFD: 18/02/2015 - [] D -- C:\Users\TM161\AppData\Local\AutorunX2 O43 - CFD: 25/11/2015 - [0] D -- C:\Users\TM161\AppData\Local\B43006E1-6005-4A48-B5DC-DFD9FF2B86B O43 - CFD: 02/02/2015 - [] D -- C:\Users\TM161\AppData\Local\Black_Tree_Gaming =>.Black Tree Gaming Ltd O43 - CFD: 02/10/2017 - [] D -- C:\Users\TM161\AppData\Local\cache =>.Legitimate O43 - CFD: 26/09/2015 - [] D -- C:\Users\TM161\AppData\Local\CEF =>.CEF O43 - CFD: 16/10/2015 - [] D -- C:\Users\TM161\AppData\Local\cmsiex O43 - CFD: 17/05/2015 - [] D -- C:\Users\TM161\AppData\Local\CrashRpt O43 - CFD: 13/01/2016 - [] D -- C:\Users\TM161\AppData\Local\D01_MicroApps O43 - CFD: 24/12/2017 - [0] D -- C:\Users\TM161\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 14/02/2017 - [] D -- C:\Users\TM161\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 05/01/2018 - [] D -- C:\Users\TM161\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] SHD -- C:\Users\TM161\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 01/01/2015 - [] SHD -- C:\Users\TM161\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 25/11/2015 - [0] D -- C:\Users\TM161\AppData\Local\F5E8A0C1-8CFB-487D-AEE0-738C5DCA45BB O43 - CFD: 17/02/2017 - [] D -- C:\Users\TM161\AppData\Local\FreemakeVideoConverter =>.Freemake O43 - CFD: 11/11/2017 - [] D -- C:\Users\TM161\AppData\Local\Genymobile =>.Genymobile O43 - CFD: 28/04/2015 - [0] D -- C:\Users\TM161\AppData\Local\gic O43 - CFD: 17/05/2015 - [] D -- C:\Users\TM161\AppData\Local\globalUpdate =>Adware.GlobalUpdate O43 - CFD: 04/11/2016 - [] D -- C:\Users\TM161\AppData\Local\Google =>.Google O43 - CFD: 13/03/2015 - [] D -- C:\Users\TM161\AppData\Local\GscWare O43 - CFD: 10/02/2017 - [] D -- C:\Users\TM161\AppData\Local\gtk-2.0 =>.GTK Project O43 - CFD: 01/01/2015 - [0] SHD -- C:\Users\TM161\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 08/04/2016 - [] D -- C:\Users\TM161\AppData\Local\Installer O43 - CFD: 21/02/2016 - [] D -- C:\Users\TM161\AppData\Local\Kingosoft =>.Kingosoft O43 - CFD: 22/04/2016 - [] D -- C:\Users\TM161\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 19/06/2015 - [] D -- C:\Users\TM161\AppData\Local\LogMeIn =>.LogMeIn O43 - CFD: 10/01/2016 - [] D -- C:\Users\TM161\AppData\Local\LogoBuilder O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 18/06/2016 - [] D -- C:\Users\TM161\AppData\Local\Mega Limited =>.MEGA Limited O43 - CFD: 05/12/2017 - [] D -- C:\Users\TM161\AppData\Local\MEGAsync =>.MegaSystems O43 - CFD: 28/10/2017 - [] D -- C:\Users\TM161\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 16/09/2016 - [] D -- C:\Users\TM161\AppData\Local\Microsoft Games =>.Microsoft Corporation O43 - CFD: 25/05/2016 - [] D -- C:\Users\TM161\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 03/10/2015 - [] D -- C:\Users\TM161\AppData\Local\NetBeans =>.NetBeans.org O43 - CFD: 24/01/2018 - [] D -- C:\Users\TM161\AppData\Local\Nox =>.FFmpeg Project O43 - CFD: 17/05/2015 - [] D -- C:\Users\TM161\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 06/02/2016 - [] D -- C:\Users\TM161\AppData\Local\Origin =>.Electronic Arts, Inc. O43 - CFD: 12/06/2017 - [] D -- C:\Users\TM161\AppData\Local\Package Cache =>.Microsoft Corporation O43 - CFD: 25/01/2018 - [] D -- C:\Users\TM161\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 01/02/2015 - [] D -- C:\Users\TM161\AppData\Local\paint.net =>.Rick Brewster O43 - CFD: 18/04/2017 - [] D -- C:\Users\TM161\AppData\Local\pgadmin O43 - CFD: 10/07/2015 - [] D -- C:\Users\TM161\AppData\Local\PopcornTimeDesktop =>.SUP.PopcornTime O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 01/03/2016 - [] D -- C:\Users\TM161\AppData\Local\Rockstar Games =>.Rockstar Games O43 - CFD: 29/05/2017 - [] D -- C:\Users\TM161\AppData\Local\RStudio-Desktop O43 - CFD: 01/03/2016 - [] D -- C:\Users\TM161\AppData\Local\SHAREit =>.Lenovo Group Limited O43 - CFD: 25/01/2017 - [] D -- C:\Users\TM161\AppData\Local\SHAREit Technologies O43 - CFD: 14/02/2015 - [] D -- C:\Users\TM161\AppData\Local\Shutdown8 O43 - CFD: 03/06/2016 - [0] D -- C:\Users\TM161\AppData\Local\Skype =>.Skype O43 - CFD: 02/02/2015 - [] D -- C:\Users\TM161\AppData\Local\Skyrim =>.Skyrim Games O43 - CFD: 09/02/2015 - [] D -- C:\Users\TM161\AppData\Local\Skyrim NPC Editor O43 - CFD: 10/02/2017 - [] D -- C:\Users\TM161\AppData\Local\Sony =>.Sony O43 - CFD: 09/09/2017 - [] D -- C:\Users\TM161\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 26/09/2015 - [] D -- C:\Users\TM161\AppData\Local\Steam =>.Steam Games O43 - CFD: 26/01/2018 - [] D -- C:\Users\TM161\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [0] SHD -- C:\Users\TM161\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 11/11/2017 - [] D -- C:\Users\TM161\AppData\Local\ThinkTimeCreations O43 - CFD: 11/02/2017 - [] D -- C:\Users\TM161\AppData\Local\uts O43 - CFD: 16/01/2018 - [] D -- C:\Users\TM161\AppData\Local\Viber =>.Viber O43 - CFD: 05/07/2017 - [] D -- C:\Users\TM161\AppData\Local\Viber Media S.à r.l =>.Viber Media S.à r.l O43 - CFD: 09/07/2016 - [] D -- C:\Users\TM161\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 24/01/2018 - [] D -- C:\Users\TM161\AppData\Local\VMware =>.VMware O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Local\VS Revo Group =>.VS Revo Group O43 - CFD: 12/12/2016 - [] D -- C:\Users\TM161\AppData\Local\Zemana =>.Zemana O43 - CFD: 26/01/2018 - [] D -- C:\Users\TM161\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 01/01/2015 - [0] D -- C:\Users\TM161\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 07/10/2017 - [] D -- C:\Users\TM161\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 02/09/2017 - [] D -- C:\Users\TM161\AppData\LocalLow\Apple Computer =>.Apple Inc. O43 - CFD: 26/10/2015 - [] D -- C:\Users\TM161\AppData\LocalLow\B5T =>PUP.Optional.Bang5mai O43 - CFD: 01/01/2015 - [] SHD -- C:\Users\TM161\AppData\LocalLow\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 01/01/2015 - [] SHD -- C:\Users\TM161\AppData\LocalLow\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 07/02/2016 - [] SD -- C:\Users\TM161\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\LocalLow\Oracle =>.Oracle O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 04/02/2015 - [] D -- C:\Users\TM161\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 05/01/2018 - [] D -- C:\Users\TM161\Desktop\appi O43 - CFD: 06/01/2018 - [] D -- C:\Users\TM161\Desktop\Investigation O43 - CFD: 31/12/2017 - [] D -- C:\Users\TM161\Desktop\Memoir theme O43 - CFD: 07/01/2018 - [] D -- C:\Users\TM161\Desktop\mes projets O43 - CFD: 27/11/2017 - [] RD -- C:\Users\TM161\Desktop\Racourcis O43 - CFD: 17/01/2018 - [] D -- C:\Users\TM161\Desktop\Rapport et Exposés O43 - CFD: 24/09/2014 - [] RD -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] RD -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 18/09/2015 - [] RD -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 18/12/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc. O43 - CFD: 02/02/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks =>.CodeBlocks Team O43 - CFD: 28/11/2016 - [0] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAZ 3D =>.DAZ 3D O43 - CFD: 08/07/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\exe4j O43 - CFD: 16/06/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook =>.Facebook O43 - CFD: 11/11/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grids O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 22/08/2013 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 18/06/2016 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync =>.MegaSystems O43 - CFD: 01/01/2015 - [0] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ =>.Don Ho O43 - CFD: 11/11/2017 - [] RD -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 26/09/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 24/09/2014 - [] RD -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UltraUXThemePatcher O43 - CFD: 01/01/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker =>.Cedrick Collomb O43 - CFD: 12/06/2017 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Viber =>.Viber O43 - CFD: 16/09/2015 - [] D -- C:\Users\TM161\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 29/11/2016 - [] D -- C:\Users\Default\AppData\Local\CrashRpt O43 - CFD: 01/01/2015 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 13/02/2016 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 29/11/2016 - [] D -- C:\Users\Default User\AppData\Local\CrashRpt O43 - CFD: 01/01/2015 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 24/09/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 13/02/2016 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 19/06/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashRpt O43 - CFD: 12/07/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 25/12/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\HideMyIpSRV O43 - CFD: 21/03/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 22/09/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 25/05/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 16/07/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 03/12/2016 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Zemana =>.Zemana O43 - CFD: 25/11/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 06/02/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 01/01/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 05/04/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\lm O43 - CFD: 25/11/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 27/10/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 25/05/2015 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 24/01/2018 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware O43 - CFD: 27/01/2018 - [] D -- C:\Users\TM161\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 27/01/2018 - [] D -- C:\Users\TM161\AppData\Local\Temp =>.Microsoft Corporation ---\\ Derniers fichiers créés dans Windows Prefetcher (1) - 5s O45 - LFCP:[MD5.07D064AA064CBC174100323D000B3B82] 12/01/2018 A -- C:\Windows\Prefetch\POPCORNTIMEDESKTOP.EXE-2038099B.pf =>.SUP.PopcornTime ---\\ ShellIconOverlayIdentifiers (SIOI) (9) - 1s O106 - SIOI:  MEGA (Pending) [ MEGA (Pending)] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O106 - SIOI:  MEGA (Synced) [ MEGA (Synced)] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O106 - SIOI:  MEGA (Syncing) [ MEGA (Syncing)] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: [IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation ---\\ Raccourcis de menus conceptuels (SCMH) (46) - 2s O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov O108 - CMH1: AIMP [64Bits] - {1F77B17B-F531-44DB-ACA4-76ABB5010A28} . (.AIMP DevTeam - Context Menu Extension.) -- C:\Program Files (x86)\AIMP3\System\aimp_menu64.dll =>.AIMP DevTeam O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH1: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: SHAREit.FileContextMenuExt [64Bits] - {430BD134-576D-4E75-87CD-0F5C6221A82B} . (...) -- C:\Program Files (x86)\Lenovo\SHAREit\ShellEx\ShellExt64.dll (.not file.) O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - __{B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH1: WinRAR32 [64Bits] - __{B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: UnlockerShellExtension [64Bits] - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll =>.Empty Loop® O108 - CMH4: ###MegaContextMenuExt [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov O108 - CMH4: AIMP [64Bits] - {1F77B17B-F531-44DB-ACA4-76ABB5010A28} . (.AIMP DevTeam - Context Menu Extension.) -- C:\Program Files (x86)\AIMP3\System\aimp_menu64.dll =>.AIMP DevTeam O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TM161\AppData\Local\MEGAsync\ShellExtX64.dll O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O108 - CMH4: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Orphan.) O108 - CMH4: RecuvaShellExt [64Bits] - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Ltd - Recuva shell extensions.) -- C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Ltd® O108 - CMH4: SHAREit.FileContextMenuExt [64Bits] - {430BD134-576D-4E75-87CD-0F5C6221A82B} . (...) -- C:\Program Files (x86)\Lenovo\SHAREit\ShellEx\ShellExt64.dll (.not file.) O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH5: igfxcui [64Bits] - {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} . (.Orphan.) O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\system32\igfxDTCM.dll =>.Intel Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Orphan.) O108 - CMH6: RecuvaShellExt [64Bits] - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Ltd - Recuva shell extensions.) -- C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Ltd® O108 - CMH6: UnlockerShellExtension [64Bits] - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll =>.Empty Loop® O108 - CMH6: WinRAR [64Bits] - __{B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH6: WinRAR32 [64Bits] - __{B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH7: VMDiskMenuHandler [64Bits] - {271DC252-6FE1-4D59-9053-E4CF50AB99DE} . (.Orphan.) O108 - CMH7: VMDiskMenuHandler64 [64Bits] - {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} . (.VMware, Inc. - VMware Workstation.) -- C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll =>.VMware, Inc.® ---\\ Image File Execution Options (16) - 0s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ Liste des pilotes du système (87) - 3s O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows® O58 - SDL:2015/02/18 00:48:48 A . (.Dritek System Inc. - PS/2 KB to HID Device Driver.) -- C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736] =>.Dritek System Inc.® O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows® O58 - SDL:2013/06/18 15:45:02 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\Windows\System32\drivers\athw8x.sys [3680256] =>.Qualcomm Atheros Communications, Inc. O58 - SDL:2012/08/13 10:59:42 A . (.Broadcom Corporation - Broadcom xD Picture Card Bus Driver.) -- C:\Windows\System32\drivers\b57xdbd.sys [72280] =>.Broadcom Corporation® O58 - SDL:2012/08/13 10:59:42 A . (.Broadcom Corporation - Broadcom xD Picture Card Miniport Driver.) -- C:\Windows\System32\drivers\b57xdmp.sys [21080] =>.Broadcom Corporation® O58 - SDL:2013/08/13 00:25:46 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2012/06/18 16:20:52 A . (.Broadcom Corporation - Broadcom Memory Stick Driver.) -- C:\Windows\System32\drivers\bScsiMSa.sys [55384] =>.Broadcom Corporation® O58 - SDL:2012/08/14 11:15:36 A . (.Broadcom Corporation - Broadcom SD 3.0 Driver.) -- C:\Windows\System32\drivers\bScsiSDa.sys [70744] =>.Broadcom Corporation® O58 - SDL:2014/03/18 23:46:28 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\Windows\System32\drivers\btfilter.sys [598216] =>.Qualcomm Atheros® O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2017/01/03 15:23:35 A . (.Connectify - Connectify NDISRD helper driver.) -- C:\Windows\System32\drivers\cfywlan1.sys [36736] =>.Connectify (Connectify, Inc.)® O58 - SDL:2017/01/03 15:23:35 A . (.Connectify - CNNCTFY helper driver.) -- C:\Windows\System32\drivers\cnnctfy3.sys [43872] =>.Connectify (Connectify, Inc.)® O58 - SDL:2013/01/24 18:12:08 A . (.OSR Open Systems Resources, Inc. - Airplane Mode Switch Driver.) -- C:\Windows\System32\drivers\DellRbtn.sys [10752] =>.OSR Open Systems Resources, Inc. O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows® O58 - SDL:2012/08/21 13:01:20 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [33240] =>.GEAR Software Inc.® O58 - SDL:2015/03/30 14:28:52 AH . (.LogMeIn Inc. - LogMeIn Hamachi Virtual Miniport Driver.) -- C:\Windows\System32\drivers\Hamdrv.sys [44296] =>.LogMeIn, Inc.® O58 - SDL:2017/08/31 01:11:30 A . (.VMware, Inc. - VMware USB monitor.) -- C:\Windows\System32\drivers\hcmon.sys [83008] =>.VMware, Inc.® O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2014/11/29 01:37:06 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [180648] =>.Tonec Inc.® O58 - SDL:2014/10/03 12:36:00 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [3828152] =>.Intel Corporation - pGFX® O58 - SDL:2014/10/03 12:35:54 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [454416] =>.Intel Corporation - Client Components Group® O58 - SDL:2014/08/01 21:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\intelaud.sys [38296] =>.Intel Wireless Display® O58 - SDL:2015/11/16 09:31:54 A . (.Intel Corporation - HAXM_Driver.) -- C:\Windows\System32\drivers\IntelHaxm.sys [96776] =>.Intel(R) Intel Hardware Accelerated Execution Manager® O58 - SDL:2010/07/29 00:25:10 A . (.Initio Corporation - Initio Default Vendor Specific Device Drive.) -- C:\Windows\System32\drivers\ivusb.sys [29720] =>.Initio Corporation® O58 - SDL:2014/08/01 21:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [27032] =>.Intel Wireless Display® O58 - SDL:2013/06/18 15:45:14 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\Windows\System32\drivers\k57nd60a.sys [425984] =>.Broadcom Corporation O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2014/08/15 22:13:34 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\Windows\System32\drivers\netaapl64.sys [23040] =>.Apple Inc. O58 - SDL:2010/06/25 18:07:26 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.® O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows® O58 - SDL:2009/12/30 10:21:26 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\Windows\System32\drivers\revoflt.sys [31800] =>.VS Revo Group® O58 - SDL:2013/06/18 15:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [591360] =>.Realtek O58 - SDL:2014/06/01 21:22:20 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [3985496] =>.Realtek Semiconductor Corp® O58 - SDL:2014/11/06 09:54:07 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsBaStor.sys [313048] =>.Realtek Semiconductor Corp® O58 - SDL:2014/11/06 10:07:08 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsP2Stor.sys [294104] =>.Realtek Semiconductor Corp® O58 - SDL:2014/12/05 08:41:45 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [788696] =>.Realtek Semiconductor Corp® O58 - SDL:2014/11/06 09:57:44 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [359128] =>.Realtek Semiconductor Corp® O58 - SDL:2014/12/08 07:13:25 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\Windows\System32\drivers\RtsUer.sys [377560] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited, O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2012/11/29 18:05:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [31032] =>.Synaptics Incorporated® O58 - SDL:2017/05/18 21:17:28 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [131984] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2017/05/18 21:17:30 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\Windows\System32\drivers\ssudmdm.sys [166288] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2012/11/29 18:05:40 A . (.Synaptics Incorporated - Synaptics Touchpad Driver.) -- C:\Windows\System32\drivers\SynTP.sys [464184] =>.Synaptics Incorporated® O58 - SDL:2009/09/16 06:02:42 A . (.Tunngle.net - TAP-Win32 Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901t.sys [31232] =>.Tunngle.net O58 - SDL:2016/05/27 10:34:56 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc® O58 - SDL:2013/12/19 23:18:36 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [99288] =>.Intel Corporation - Intel® Management Engine Firmware® O58 - SDL:2016/08/16 03:18:34 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\usb2ser.sys [159936] =>.NGO® O58 - SDL:2015/11/05 17:23:52 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc. O58 - SDL:2013/09/23 04:19:04 A . (.The Within Network, LLC - UxStyle Kernel Driver.) -- C:\Windows\System32\drivers\uxstyle.sys [31440] =>.The Within Network, LLC® O58 - SDL:2015/09/08 10:48:10 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [964392] =>.Oracle Corporation® O58 - SDL:2015/09/08 10:47:40 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Host-Only Network Adapt.) -- C:\Windows\System32\drivers\VBoxNetAdp6.sys [117768] =>.Oracle Corporation® O58 - SDL:2015/09/08 10:47:40 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Lightweight Filter Driv.) -- C:\Windows\System32\drivers\VBoxNetLwf.sys [146072] =>.Oracle Corporation® O58 - SDL:2017/02/09 01:08:55 A . (.BigNox Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [127432] =>.Duodian Online Technology Co. Ltd.® O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows® O58 - SDL:2017/09/05 04:54:54 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\System32\drivers\vmci.sys [105024] =>.VMware, Inc.® O58 - SDL:2017/09/18 06:21:22 A . (.VMware, Inc. - VMware VMware Input Filter and Injection Dr.) -- C:\Windows\System32\drivers\vmkbd.sys [52288] =>.VMware, Inc.® O58 - SDL:2017/09/18 06:32:42 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\Windows\System32\drivers\vmnet.sys [46040] =>.VMware, Inc.® O58 - SDL:2017/09/18 06:32:34 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\Windows\System32\drivers\vmnetadapter.sys [46040] =>.VMware, Inc.® O58 - SDL:2017/09/18 06:32:42 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\Windows\System32\drivers\vmnetbridge.sys [66520] =>.VMware, Inc.® O58 - SDL:2017/09/18 06:32:42 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\Windows\System32\drivers\vmnetuserif.sys [43992] =>.VMware, Inc.® O58 - SDL:2017/09/18 06:21:10 A . (.VMware, Inc. - VMware kernel driver.) -- C:\Windows\System32\drivers\vmx86.sys [95704] =>.VMware, Inc.® O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows® O58 - SDL:2017/09/05 04:54:54 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\Windows\System32\drivers\vsock.sys [91712] =>.VMware, Inc.® O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2015/07/31 10:01:46 A . (.Western Digital Technologies - WD SCSI Architecture Model (SAM) driver.) -- C:\Windows\System32\drivers\wdcsam64.sys [23200] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/02/09 01:08:56 A . (.BigNox Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\XQHDrv.sys [253384] =>.Duodian Online Technology Co. Ltd.® O58 - SDL:2013/09/30 14:26:50 N . (...) -- C:\Windows\System32\pwdrvio.sys [19152] =>.MiniTool Solution Ltd® O58 - SDL:2013/09/30 14:26:48 N . (...) -- C:\Windows\System32\pwdspio.sys [12504] =>.MiniTool Solution Ltd® ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (6) - 17s O61 - LFC: 2018/01/25 19:32:45 A . (..) -- C:\Users\TM161\Downloads\TeamViewer.13.0.6447\Fixed-DeltaFoX_TeamURET\Change_Sid\sidchg_x32_x64_2.0l_Cracked_URET\sidchg_2.0l_Cracked_URET.exe [323584] O61 - LFC: 2018/01/25 19:31:41 RA . (..) -- C:\Users\TM161\Downloads\TeamViewer.13.0.6447\Fixed-DeltaFoX_TeamURET\Change_Sid\sidchg_x32_x64_2.0l_Cracked_URET\sidchg64_2.0l_Cracked_URET.exe [372736] O61 - LFC: 2018/01/25 19:33:20 A . (..) -- C:\Users\TM161\Downloads\TeamViewer.13.0.6447\Fixed-DeltaFoX_TeamURET\Change_Sid\sidchg_x32_x64_2.0l_Cracked_URET\URET NFO v2.2.exe [346112] O61 - LFC: 2018/01/25 19:34:09 A . (..) -- C:\Users\TM161\Downloads\TeamViewer.13.0.6447\Fixed-DeltaFoX_TeamURET\Change_Sid\URET NFO v2.2.exe [346112] O61 - LFC: 2018/01/25 19:32:22 A . (.URET.) -- C:\Users\TM161\Downloads\TeamViewer.13.0.6447\Fixed-DeltaFoX_TeamURET\TeamViewer_13.0.6447_Patch_URET_v6.2.exe [901136] O61 - LFC: 2018/01/25 19:29:06 A . (..) -- C:\Users\TM161\Downloads\TeamViewer.13.0.6447\Fixed-DeltaFoX_TeamURET\URET NFO v2.2.exe [346112] ---\\ Associations Shell Spawning (11) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %* O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (...) -- C:\Program Files (x86)\Nobean\Application\chrome.exe ---\\ Menu de démarrage Internet (13) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- iexplore.exe O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe =>.Opera Software AS® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software ---\\ Recherche d'infection sur les navigateurs (6) - 4s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{33BB0A4E-99AF-4226-BDF6-49120163DE86} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{33BB0A4E-99AF-4226-BDF6-49120163DE86} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKUS\.DEFAULT] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKUS\S-1-5-18] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ Enumère les services démarrés par Svchost (36) - 0s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [208896] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [155136] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [155136] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [324096] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1261056] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1063424] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [907776] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [109568] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [107008] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1214976] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220672] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [70656] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [134144] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [220160] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [324096] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [81408] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [97792] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [339456] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [491520] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1576960] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [50688] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [201728] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [164352] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [101376] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [534528] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [223744] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [71680] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [433664] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [306688] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3465216] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1017856] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [629760] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [183296] =>.Microsoft Corporation O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [90464] =>.Microsoft Windows® ---\\ Liste des exceptions du parefeu Windows (33) - 4s O87 - FAEL: "TCP Query User{6996C180-72E2-4032-9C9F-DE9AFD768C18}E:\games\dead island riptide\deadislandgame_x86_rwdi.exe" [In-None-P6-TRUE] .(...) -- E:\games\dead island riptide\deadislandgame_x86_rwdi.exe (.not file.) O87 - FAEL: "UDP Query User{DEEE0D3B-FB93-4A58-8CF3-44F169328079}E:\games\dead island riptide\deadislandgame_x86_rwdi.exe" [In-None-P17-TRUE] .(...) -- E:\games\dead island riptide\deadislandgame_x86_rwdi.exe (.not file.) O87 - FAEL: "{93B7606F-051B-4229-9A1C-E92D0E0DB46B}" [In-None-P17-TRUE] .(...) -- E:\games\dead island riptide\deadislandgame_x86_rwdi.exe (.not file.) O87 - FAEL: "{C43DFFA6-E573-4922-BE6D-389A43C1741E}" [In-None-P6-TRUE] .(...) -- E:\games\dead island riptide\deadislandgame_x86_rwdi.exe (.not file.) O87 - FAEL: "{D7CF22E0-E8EB-40CE-850C-C17625F24CE4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe =>.SUP.PopcornTime O87 - FAEL: "{72D7E588-7675-4522-8E7A-837F8BA518C5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe =>.SUP.PopcornTime O87 - FAEL: "{CF0D3129-72BD-4D12-BD9F-08F551706F82}" [In-None-P6-TRUE] .(.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime O87 - FAEL: "{3F13D763-1909-4412-BA2B-CF2A9B1C6178}" [In-None-P17-TRUE] .(.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime O87 - FAEL: "{A15429A4-8872-464A-A5A7-CB9B590C4B80}" [In-None-P6-TRUE] .(.Copyright (C) 2006-2015 - A component of the Skyrim Script Extender.) -- C:\Program Files (x86)\Steam\steamapps\common\skyrim\skse_steam_boot.exe =>.Steam SteamApps Games O87 - FAEL: "{56C16491-0DAC-4D49-BB93-990E6E588ACA}" [In-None-P17-TRUE] .(.Copyright (C) 2006-2015 - A component of the Skyrim Script Extender.) -- C:\Program Files (x86)\Steam\steamapps\common\skyrim\skse_steam_boot.exe =>.Steam SteamApps Games O87 - FAEL: "TCP Query User{4B758B30-5EF0-47D1-B4B3-262F90F4DFA2}D:\dying light\dyinglightgame.exe" [In-None-P6-TRUE] .(...) -- D:\dying light\dyinglightgame.exe (.not file.) O87 - FAEL: "UDP Query User{AD0D8171-37E8-4EB6-BB97-A8DB373632E7}D:\dying light\dyinglightgame.exe" [In-None-P17-TRUE] .(...) -- D:\dying light\dyinglightgame.exe (.not file.) O87 - FAEL: "TCP Query User{9B04427B-E593-44DB-9E8C-F233300CB4A7}E:\games\dying light\dyinglightgame.exe" [In-None-P6-TRUE] .(...) -- E:\games\dying light\dyinglightgame.exe (.not file.) O87 - FAEL: "UDP Query User{9C883E9A-FB4C-4DC5-8923-7235D791B369}E:\games\dying light\dyinglightgame.exe" [In-None-P17-TRUE] .(...) -- E:\games\dying light\dyinglightgame.exe (.not file.) O87 - FAEL: "TCP Query User{93D530C0-76C3-4A68-9EFD-A0D0F642ED6E}C:\programdata\microsoft\network\dsq\network\sysnetwk.exe" [In-None-P6-TRUE] .(...) -- C:\programdata\microsoft\network\dsq\network\sysnetwk.exe (.not file.) O87 - FAEL: "UDP Query User{DEE08148-8834-4A7C-833D-235FE2A1A0C4}C:\programdata\microsoft\network\dsq\network\sysnetwk.exe" [In-None-P17-TRUE] .(...) -- C:\programdata\microsoft\network\dsq\network\sysnetwk.exe (.not file.) O87 - FAEL: "TCP Query User{D22A3EC4-2E76-485E-A472-E202FBF75DC4}D:\mouse-server.exe" [In-None-P6-TRUE] .(...) -- D:\mouse-server.exe (.not file.) O87 - FAEL: "UDP Query User{39B193A4-6BD3-4C8B-A9FA-24E524A341FC}D:\mouse-server.exe" [In-None-P17-TRUE] .(...) -- D:\mouse-server.exe (.not file.) O87 - FAEL: "TCP Query User{392C581C-84E0-4074-AD03-A81A8062B6A2}C:\users\tm161\desktop\mouse-server.exe" [In-None-P6-TRUE] .(...) -- C:\users\tm161\desktop\mouse-server.exe (.not file.) O87 - FAEL: "UDP Query User{534780C4-6D1E-4AC8-BC80-C05824AB7D9A}C:\users\tm161\desktop\mouse-server.exe" [In-None-P17-TRUE] .(...) -- C:\users\tm161\desktop\mouse-server.exe (.not file.) O87 - FAEL: "TCP Query User{8E9DDA95-810F-4F08-AEEC-33DD804897D3}C:\users\tm161\desktop\mouse-server.exe" [In-None-P6-TRUE] .(...) -- C:\users\tm161\desktop\mouse-server.exe (.not file.) O87 - FAEL: "UDP Query User{981B4FEE-245C-4B36-A077-1F06C839F2D6}C:\users\tm161\desktop\mouse-server.exe" [In-None-P17-TRUE] .(...) -- C:\users\tm161\desktop\mouse-server.exe (.not file.) O87 - FAEL: "{88840FA2-ABB1-462A-A2BF-DF2E25A12B14}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Nobean\Update\NobeanUpdate.exe (.not file.) O87 - FAEL: "{916ABC7F-03EB-4B07-9EDA-D05EDAD2F5AF}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Nobean\Application\chrome.exe (.not file.) O87 - FAEL: "{DE4E059B-AFC8-4A05-BFB3-AE0AB221674D}" [In-None-P6-TRUE] .(...) -- C:\ProgramData\Nobean\Nobean.exe (.not file.) O87 - FAEL: "{E79D5CAB-5C32-49DC-AF50-048DEB9DBA45}" [In-None-P6-TRUE] .(.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime O87 - FAEL: "{F5923877-9919-4F13-A7F9-D8B7B3853025}" [In-None-P17-TRUE] .(.Popcorn Time - Updater.) -- C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime O87 - FAEL: "TCP Query User{FA95A376-8EAB-4420-A45C-D70BCA299148}C:\program files (x86)\popcorn time\popcorntimedesktop.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\popcorn time\popcorntimedesktop.exe =>.SUP.PopcornTime O87 - FAEL: "UDP Query User{27F5B67F-5880-48C4-BDC1-9E8D432A6FF5}C:\program files (x86)\popcorn time\popcorntimedesktop.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\popcorn time\popcorntimedesktop.exe =>.SUP.PopcornTime O87 - FAEL: "{D165A912-E95E-4572-A972-4692E98A0C53}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe (.not file.) O87 - FAEL: "{FF72BBBF-5AA9-4FF8-AFD7-D75CEE55348F}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe (.not file.) O87 - FAEL: "{EAB05AF8-C404-4290-B581-F1A506EBC9C2}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (.not file.) O87 - FAEL: "{43B09344-69E7-4505-B9AD-FF687332A7FD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (.not file.) ---\\ Enumère les codes produits des logiciels (1) - 2s O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" . (.globalupdate Helper.) =>Adware.GlobalUpdate ---\\ Recherche des packages WindowsInstaller (59) - 5s [MD5.386DC8953DE70CE8A2AD2471E7E348A8] [WIS][2018/01/12 11:55:28] (.VMware, Inc. - VMware Workstation.) -- C:\Windows\Installer\104309f3.msi [460742656] =>.VMware, Inc. [MD5.E4AF16B0574B2598AADD353A35A3722B] [WIS][2017/09/21 22:26:04] (.Adobe - InstallShield® 12 - Premier Edition 12.0.) -- C:\Windows\Installer\10a83eb.msi [2211328] =>.Adobe [MD5.78B41A323699DAF1C25265890733BE26] [WIS][2017/09/21 21:36:41] (.Adobe - InstallShield® 12 - Premier Edition 12.0.) -- C:\Windows\Installer\10a83f0.msi [1997312] =>.Adobe [MD5.5EE609A2EEC40D710274413D4DD40ABB] [WIS][2017/09/21 22:01:44] (.Adobe Systems Incorporated - PDF Settings CS6.) -- C:\Windows\Installer\10a8406.msi [2259968] =>.Adobe Systems Incorporated [MD5.95048A74AFB9BA0273EB274A122BA6A1] [WIS][2016/06/03 08:19:18] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\154d43.msi [41205760] =>.Skype Technologies S.A. [MD5.9F4EFA767708AF6BADCA6F60AD2006AE] [WIS][2015/09/11 21:08:26] (.Igor Pavlov - 7-Zip (x64 edition) Package.) -- C:\Windows\Installer\162f326.msi [1513472] =>.Igor Pavlov [MD5.8AB582E442197C324E2D16E40D7B758A] [WIS][2015/02/01 23:23:04] (.InstallShield - InstallShield® 2010 - Premier Edition 16.) -- C:\Windows\Installer\1686de8.msi [3841552] =>.InstallShield [MD5.3FD7CEC70F47004DBACBD55211DB843A] [WIS][2015/04/03 16:59:14] (..) -- C:\Windows\Installer\17f6f1e.msi [2682368] [MD5.150EE282CC2567090EED775D3F736FD3] [WIS][2015/02/01 17:20:38] (.InstallShield - Broadcom Card Reader Driver Installer.) -- C:\Windows\Installer\1bf3b5.msi [3805696] =>.InstallShield [MD5.DBDB6500E3D05F203AA617204C08D562] [WIS][2015/11/16 09:34:06] (.Intel Corporation - Intel® Hardware Accelerated Execution Manag.) -- C:\Windows\Installer\240eda4.msi [1851392] =>.Intel Corporation [MD5.604660D61C39146481DB47A09B47B04B] [WIS][2016/05/18 14:38:09] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\Windows\Installer\25f489.msi [49152] =>.Adobe Systems Incorporated [MD5.DD327D63FBC4257603C00831903A67C5] [WIS][2016/06/01 02:13:34] (.Facebook - Facebook Games Arcade 0.6.0.1.) -- C:\Windows\Installer\2730fb9.msi [34701312] =>.Facebook [MD5.553B1701C9066EB4B150A686DDD3711C] [WIS][2010/02/24 20:47:21] (.PreEmptive Solutions LLC - PreEmptive Solutions' post-build instrument.) -- C:\Windows\Installer\279cf9.msi [4143104] [MD5.8C80AC2FD789AF9EF7E853CE45A2C199] [WIS][2010/01/03 21:55:26] (.SAP - Crystal Reports for Visual Studio Setup.) -- C:\Windows\Installer\279cff.msi [592384] =>.SAP [MD5.E4617689D2A51DA75ECEF98CD2250F56] [WIS][2013/09/23 04:19:06] (.The Within Network, LLC - UxStyle.) -- C:\Windows\Installer\27eef.msi [208896] =>.The Within Network, LLC [MD5.F928822A9449D1018617C437F798C69E] [WIS][2015/10/03 22:15:10] (.Oracle Corporation - Java SE Development Kit 8 Update 60 (64-bit.) -- C:\Windows\Installer\28f8187.msi [1216512] =>.Oracle Corporation [MD5.F3E0BCAC0A50EA3B7571407A7DA325C7] [WIS][2015/05/17 22:42:57] (.globalupdate - globalupdate.) -- C:\Windows\Installer\36b56ce.msi [32768] =>Adware.GlobalUpdate [MD5.F0D6D01F2855C68F1E41B4BD800B0ED5] [WIS][2012/03/26 07:22:40] (.foretrenty - Skyrim NPC Editor.) -- C:\Windows\Installer\40eca3.msi [627200] =>.foretrenty [MD5.4C5398E8C99523CB179F7C3182287922] [WIS][2016/10/14 00:09:54] (.Buildbot - Hotspot Shield 6.0.4 Embedded.) -- C:\Windows\Installer\424855.msi [12029952] =>.Buildbot [MD5.ED6D5FC5CC7DCCA653F7A0BEAB01035D] [WIS][2016/03/15 20:19:25] (.HTC Corporation - HTC Driver.) -- C:\Windows\Installer\457d126.msi [17305344] =>.HTC Corporation [MD5.96E6D181192A995214493A6828E4287D] [WIS][2012/12/07 18:27:50] (.HTC.) -- C:\Windows\Installer\457d12b.msi [576512] =>.HTC [MD5.3A6F581777F935A2223C6FB5DB7452D0] [WIS][2015/10/27 23:49:33] (.Lenovo Group Limited - Metric Collection SDK Redistributable.) -- C:\Windows\Installer\58c66bb.msi [2161152] =>.Lenovo Group Limited [MD5.EF0C1F7572CB2A65EBA89474D24670AE] [WIS][2016/07/07 11:50:52] (.Oracle Corporation - Java SE Runtime Environment 8 Update 91.) -- C:\Windows\Installer\5a8c610.msi [50049024] =>.Oracle Corporation [MD5.1AC3412863F87181CAE08594D13A058A] [WIS][2016/07/07 11:50:45] (.Oracle Corporation - Java Auto Updater.) -- C:\Windows\Installer\5a8c615.msi [765952] =>.Oracle Corporation [MD5.56B9AEB8D7170248ED9D908AD31652B3] [WIS][2016/05/08 13:34:35] (.Oracle Corporation - Oracle VM VirtualBox 5.0.4 installation pac.) -- C:\Windows\Installer\5f3915.msi [33955840] =>.Oracle Corporation [MD5.4BEBC23DBB318165630D6201943192BD] [WIS][2014/04/10 16:27:19] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\Windows\Installer\65d3f2c.msi [5423104] =>.Sony Creative Software Inc. [MD5.0C99E56CA2572961FE554A92A246CC27] [WIS][2014/11/24 22:12:44] (.Sony Creative Software Inc. - MSVCRT Redists.) -- C:\Windows\Installer\6db567.msi [5423104] =>.Sony Creative Software Inc. [MD5.EDD71215E30C3CF270075DBC910A5DC0] [WIS][2017/02/10 00:40:16] (.Sony - Vegas Pro 13.0 (64-bit).) -- C:\Windows\Installer\6db56e.msi [638976] =>.Sony [MD5.6FC9092DCAD7C94F844F37144FC02B00] [WIS][2018/01/01 11:18:51] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\6f69c6.msi [46120960] =>.Apple Inc. [MD5.0C53AE07F64461486F492498139742E7] [WIS][2018/01/01 11:24:51] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\6f6b7f.msi [51093504] =>.Apple Inc. [MD5.5F1FBBF794EEEF801A22E2E306115B86] [WIS][2018/01/01 11:25:28] (.Apple Inc. - Apple Software Update Installer.) -- C:\Windows\Installer\6f6c70.msi [3608576] =>.Apple Inc. [MD5.244CE14865CE4E47B3F18A990C68096D] [WIS][2018/01/01 11:26:55] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\Windows\Installer\6f6caf.msi [14045184] =>.Apple Inc. [MD5.BB15F11479AE037DBC25AACA6F7A33EC] [WIS][2018/01/01 11:54:23] (.Apple Inc. - iTunes Installer.) -- C:\Windows\Installer\6f7ce1.msi [161886208] =>.Apple Inc. [MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/13 20:18:15] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\8f4266d.msi [40960] =>.Google Inc. [MD5.5FAC5D8442D992D4093368594EB8F369] [WIS][2017/05/25 09:23:40] (.Viber Media Inc. - Viber.) -- C:\Windows\Installer\98b07ab.msi [68128768] =>.Viber Media Inc. [MD5.0FB0C2EAD7EB6F02DDD415D671193629] [WIS][2016/01/13 17:00:52] (.D01 MicroApps - Boot Animation Factory.) -- C:\Windows\Installer\b6ccb62.msi [2930176] [MD5.E03723EB6C6BAC271A848BD9031EA859] [WIS][2017/02/27 22:26:15] (.Oracle Corporation - MySQL Installer - Community.) -- C:\Windows\Installer\d6b1da.msi [405422080] =>.Oracle Corporation [MD5.8EF6EE9D30582194A43B86FF89C9331D] [WIS][2016/11/29 06:39:58] (.Oracle Corporation - MySQL Database Server.) -- C:\Windows\Installer\d6b1df.msi [100433920] =>.Oracle Corporation [MD5.7E5B333D4542B661CC66FA26C7C76B09] [WIS][2016/10/18 22:08:44] (.Oracle Corporation - MySQL Workbench.) -- C:\Windows\Installer\d6b1e4.msi [28016640] =>.Oracle Corporation [MD5.04E90B4DFC14BA7078223F28CF8356D2] [WIS][2016/07/29 23:45:42] (.Oracle - MySQL Notifier 1.1.7.) -- C:\Windows\Installer\d6b1e9.msi [1650688] =>.Oracle [MD5.C76950E765CA0C6B488E6789B793EABA] [WIS][2015/12/19 04:05:56] (.Oracle - MySQL For Excel 1.3.6.) -- C:\Windows\Installer\d6b1ee.msi [1699840] =>.Oracle [MD5.AC5C5655EFEE18F88B00088647E1CDF2] [WIS][2016/08/02 02:26:52] (.Oracle Corporation - MySQL Utilities 1.6.4 Installer.) -- C:\Windows\Installer\d6b1f3.msi [4370432] =>.Oracle Corporation [MD5.86B9B7888743C7FF6F6491580F9545BE] [WIS][2016/03/15 01:48:10] (.Oracle Corporation - MySQL Connector/ODBC.) -- C:\Windows\Installer\d6b1f8.msi [8560640] =>.Oracle Corporation [MD5.CC67B15134832127A5D0003FBA636A38] [WIS][2016/01/13 22:45:08] (.Oracle and/or its affiliates - MySQL C++ Connector 1.1.7.) -- C:\Windows\Installer\d6b1fd.msi [12193792] =>.Oracle and/or its affiliates [MD5.3B4B7BB338BDB89208CB23F28FD34E09] [WIS][2016/09/30 11:28:52] (.Oracle Corporation - MySQL Connector J.) -- C:\Windows\Installer\d6b202.msi [6664192] =>.Oracle Corporation [MD5.C7E42DDA591B1A0482F5AF32DA33E1A0] [WIS][2016/06/27 21:07:00] (.Oracle - MySQL Connector Net 6.9.9.) -- C:\Windows\Installer\d6b207.msi [8417280] =>.Oracle [MD5.9782C6C309BC1D50729A027401E91ACB] [WIS][2015/02/26 19:07:28] (.Oracle Corporation - MySQL Client Libraries and Tools.) -- C:\Windows\Installer\d6b20c.msi [20808192] =>.Oracle Corporation [MD5.3991A93944C427BDD236BA628D3C6DE0] [WIS][2016/11/29 06:52:38] (.Oracle Corporation - MySQL Documents 5.7.) -- C:\Windows\Installer\d6b211.msi [38719488] =>.Oracle Corporation [MD5.A4A2499DE9B3FA52E44B1A2ADA225DB2] [WIS][2016/11/29 07:03:12] (.Oracle Corporation - MySQL Examples and Samples 5.7.) -- C:\Windows\Installer\d6b216.msi [856064] =>.Oracle Corporation [MD5.92AD2105E6A81BDD806E67EC8F8DCB03] [WIS][2014/12/07 22:57:32] (.dotPDN LLC.) -- C:\Windows\Installer\db50d.msi [28012032] =>.dotPDN LLC [MD5.86E2B390629665FBC20E06DFBF01A48F] [WIS][2015/12/18 08:00:08] (.Apple Inc. - [ProductName] Installer.) -- C:\Windows\Installer\f8e928f.msi [2732032] =>.Apple Inc. [MD5.3239904DF40E216EA79A8BFB75717599] [WIS][2009/07/22 09:17:36] (..) -- C:\Windows\Installer\38dfea.msp [5218304] [MD5.E7BA789699022A04BC16C9CF493067C5] [WIS][2009/07/22 09:17:40] (..) -- C:\Windows\Installer\38e001.msp [4769280] [MD5.FBF65ACF6A81224C4A1D010D0332C27D] [WIS][2009/07/22 09:17:48] (..) -- C:\Windows\Installer\38e008.msp [32768] [MD5.63AC8A9A4857D16EAA67F9FD6760016A] [WIS][2009/07/22 09:17:42] (..) -- C:\Windows\Installer\38e011.msp [256000] [MD5.43865358C6C4AA88E150F08C4915A13F] [WIS][2009/07/22 09:17:42] (..) -- C:\Windows\Installer\38e019.msp [376320] [MD5.E051B8750B87342E41F6D78170CD5F50] [WIS][2009/07/22 09:17:42] (..) -- C:\Windows\Installer\38e020.msp [280064] [MD5.A07B6283526CB61DD03527CB7B9BD633] [WIS][2009/07/22 09:17:36] (..) -- C:\Windows\Installer\38e02d.msp [24970752] [MD5.B0C4E99C251715F6F6D621064DC211F3] [WIS][2009/07/22 09:17:48] (..) -- C:\Windows\Installer\38e034.msp [2849280] ---\\ Recherche de clés de registre Tracing (3) - 2s HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>.SUP.Tencent ---\\ Scan Additionnel (54) - 2s HKLM\SYSTEM\CurrentControlSet\Services\Update service =>.SUP.PopcornTime C:\Program Files (x86)\Popcorn Time\Updater.exe =>.SUP.PopcornTime C:\Users\TM161\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\iinglghmhcgdgjjlafobajghjamdchik =>.SUP.BrowserExtension C:\Users\TM161\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Local Extension Settings\dceidjjhomnclmfgflmjaomohekdgdgb =>Hijacker.Browser C:\Users\TM161\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Local Extension Settings\iinglghmhcgdgjjlafobajghjamdchik =>.SUP.BrowserExtension HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6d531f54-eaac-4cec-a8ac-850529f325de} =>PUP.Optional.UniSales HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6d531f54-eaac-4cec-a8ac-850529f325de} =>PUP.Optional.UniSales HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6d531f54-eaac-4cec-a8ac-850529f325de} =>PUP.Optional.UniSales HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Popcorn Time_is1 =>.SUP.PopcornTime HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\qksee =>.SUP.TaiwanShuiMu HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4CEE92A3-9F0C-51AB-ADC0-34EC24AD7B7E} =>PUP.Optional.UniSales HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Popcorn Time_is1 =>.SUP.PopcornTime HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\qksee =>.SUP.TaiwanShuiMu HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SoftwareUpdater =>PUP.Optional.SoftwareUpdater HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{4CEE92A3-9F0C-51AB-ADC0-34EC24AD7B7E} =>PUP.Optional.UniSales C:\Program Files\KMSpico =>HackTool.KMSpico C:\Program Files\NixSrv =>Adware.Amonetize C:\Program Files (x86)\4bbdf4b3-af92-4046-bf11-9b2493cefd36 =>Adware.CrossRider C:\Program Files (x86)\f93a7e53-7214-44a0-851e-d40c5c736f39 =>Adware.CrossRider C:\Program Files (x86)\globalUpdate =>Adware.GlobalUpdate C:\Program Files (x86)\Popcorn Time =>.SUP.PopcornTime C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LenovoSHAREit =>.SUP.SHAREit C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Popcorn Time =>.SUP.PopcornTime C:\ProgramData\B5TTmp =>PUP.Optional.Bang5mai C:\ProgramData\Tencent =>.SUP.Tencent C:\Program Files (x86)\Common Files\Tencent =>.SUP.Tencent C:\Users\TM161\AppData\Roaming\cpuminer =>PUP.Optional.CPUminer C:\Users\TM161\AppData\Roaming\eCyber =>.SUP.Elex C:\Users\TM161\AppData\Roaming\HMYGSetting =>Adware.Suspect C:\Users\TM161\AppData\Local\globalUpdate =>Adware.GlobalUpdate C:\Users\TM161\AppData\Local\PopcornTimeDesktop =>.SUP.PopcornTime C:\Users\TM161\AppData\LocalLow\B5T =>PUP.Optional.Bang5mai C:\Windows\Prefetch\POPCORNTIMEDESKTOP.EXE-2038099B.pf =>.SUP.PopcornTime HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SHAREit.FileContextMenuExt =>.SUP.Orphan HKLM\Software\Wow6432Node\Classes\CLSID\{430BD134-576D-4E75-87CD-0F5C6221A82B} =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\SHAREit.FileContextMenuExt =>.SUP.Orphan HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} =>.SUP.Orphan C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe =>.SUP.PopcornTime HKLM\Software\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E =>Adware.GlobalUpdate HKLM\Software\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E =>Adware.GlobalUpdate C:\Windows\Installer\36b56ce.msi =>Adware.GlobalUpdate HKLM\Software\WOW6432Node\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence HKLM\Software\WOW6432Node\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\tencentdl_RASAPI32 =>.SUP.Tencent ---\\ Récapitulatif des éléments trouvés sur votre station (117) - 0s https://nicolascoolman.eu/2017/02/26/superfluous-popcorntime/ =>.SUP.PopcornTime https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/10/05/sup-browserextension/ =>.SUP.BrowserExtension https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser https://nicolascoolman.eu/2017/09/30/sup-22find/ =>.SUP.22Find https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://nicolascoolman.eu/2017/09/30/adware-awesomehp/ =>PUP.Optional.AwesomeHP https://www.nicolascoolman.com/fr/pup-buenosearch/ =>PUP.Optional.BuenoSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.CalcitApp https://nicolascoolman.eu/2017/09/28/pup-optional-certifiedtoolbar/ =>PUP.Optional.CertifiedToolbar https://www.nicolascoolman.com/fr/pup-clarosearch/ =>PUP.Optional.ClaroSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.ColdSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.CoolSearches https://www.nicolascoolman.com/fr/hijacker-dalesearch/ =>PUP.Optional.Dalesearch https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.DealWifi https://www.nicolascoolman.com/fr/hijacker-searchnet/ =>PUP.Optional.SearchNet https://www.nicolascoolman.com/fr/hijacker-qvo6/ =>PUP.Optional.Qvo6 https://nicolascoolman.eu/2017/09/29/sup-deltasearch/ =>.SUP.DeltaSearch https://www.nicolascoolman.com/fr/pup-dosearches/ =>PUP.Optional.DoSearches https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Eseeky https://www.anti-malware.top/2016/05/03/pup-optional-speedcheck/ =>PUP.Optional.SpeedCheck https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.RocketTab https://nicolascoolman.eu/2017/02/23/adware-bandoo/ =>Adware.Bandoo https://www.nicolascoolman.com/fr/hijacker-gadgetbox/ =>PUP.Optional.GadgetBox https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Indesirable https://nicolascoolman.eu/2017/01/26/hijacker-browser/ =>PUP.Optional.Browser https://www.nicolascoolman.com/fr/hijacker-holasearch/ =>PUP.Optional.HolaSearch https://nicolascoolman.eu/2017/12/17/adware-mywebsearch/ =>PUP.Optional.MyWebSearch https://nicolascoolman.eu/2017/09/08/sup-sweetim/ =>.SUP.SweetIM https://nicolascoolman.eu/2017/03/15/superfluous-televisionfanatic/ =>.SUP.TelevisionFanatic https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Torch https://nicolascoolman.eu/2017/09/08/adware-imbooster/ =>PUP.Optional.IMBooster https://www.nicolascoolman.com/fr/adware-incredibar/ =>PUP.Optional.IncrediBar https://www.nicolascoolman.com/fr/pup-optional-1stbrowser/ =>PUP.Optional.1stBrowser https://nicolascoolman.eu/2017/03/03/adware-babylon/ =>Adware.Babylon https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.NationSearch https://nicolascoolman.eu/2017/02/28/adware-omigaplus/ =>Adware.OmigaPlus https://www.nicolascoolman.com/fr/pup-zootoolbar/ =>PUP.Optional.ZooToolbar https://nicolascoolman.eu/2017/09/11/adware-isstart/ =>Adware.IsStart https://www.nicolascoolman.com/fr/pup-optional-istartpageing/ =>PUP.Optional.IstartPageing https://www.nicolascoolman.com/fr/pup-looksafe/ =>PUP.Optional.LookSafe https://www.nicolascoolman.com/fr/pup-sogou/ =>.SUP.Sogou https://www.anti-malware.top/2016/06/07/superfluous-maxstart/ =>.SUP.MaxStart https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.MyHoome https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.MySearch https://nicolascoolman.eu/2017/06/22/superfluous-socialhub/ =>.SUP.SocialHub https://nicolascoolman.eu/2017/09/11/sup-startsearch/ =>.SUP.StartSearch https://www.nicolascoolman.com/fr/pup-funmoods/ =>PUP.Optional.Funmoods https://www.nicolascoolman.com/fr/spyware-vmntoolbar/ =>PUP.Optional.VMNToolbar https://nicolascoolman.eu/2017/10/08/sup-myhome-viview/ =>.SUP.MyhomeViview https://www.nicolascoolman.com/fr/hijacker-nationzoom/ =>PUP.Optional.NationZoom https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Nattly https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.OnlySearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SearchingCom https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.PieSearch https://www.nicolascoolman.com/fr/superfluous-qualitychecker/ =>.SUP.QualityChecker https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Sidetab https://www.nicolascoolman.com/fr/adware-comet =>PUP.Optional.Comet https://nicolascoolman.eu/2017/09/15/sup-bearshare/ =>.SUP.BearShare https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence https://www.nicolascoolman.com/fr/pup-optional-chedotbrowser/ =>PUP.Optional.ChedotBrowser https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.SUP.Conduit https://www.nicolascoolman.com/fr/pup-contentexplorer/ =>PUP.Optional.ContentExplorer https://nicolascoolman.eu/2017/09/28/pup-optional-certifiedtoolbar/ =>.SUP.eShield https://www.nicolascoolman.com/fr/hijacker-searchfindwide/ =>PUP.Optional.SearchFindWide https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Genieo https://www.nicolascoolman.com/fr/pup-imesh/ =>.SUP.iMesh https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Navegaki https://www.anti-malware.top/2016/06/11/superfluous-protectedio/ =>.SUP.ProtectedIO https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.SUP.ReimageRepair https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Softonic https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.SpeedBit https://nicolascoolman.eu/2017/11/19/adware-startnowtoolbar/ =>Adware.StartNowToolbar https://nicolascoolman.eu/2017/10/21/sup-v9software/ =>.SUP.V9Software https://nicolascoolman.eu/2017/10/20/adware-whitesmoke/ =>Adware.WhiteSmoke https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SearchYac https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SearchAssist https://nicolascoolman.eu/2017/02/23/tencentadressbar/ =>.SUP.Tencent https://www.nicolascoolman.com/fr/hijacker-searchgol/ =>PUP.Optional.SearchGol https://nicolascoolman.eu/2017/12/26/sup-akamaihd/ =>.SUP.AkamaiHD https://nicolascoolman.eu/2017/10/12/sup-securesurf/ =>.SUP.SecureSurf https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.SecurySearch https://nicolascoolman.eu/2017/12/23/adware-mysearchdial/ =>Adware.MySearchDial https://www.nicolascoolman.com/fr/hijacker-qone8/ =>PUP.Optional.Qone8 https://www.nicolascoolman.com/fr/hijacker-tuvaro/ =>PUP.Optional.Tuvaro https://www.nicolascoolman.com/fr/hijacker-searchisbestmy/ =>PUP.Optional.SearchIsBestMy https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.FlyAndSearch https://www.anti-malware.top/2016/04/28/pup-optional-multiplug/ =>PUP.Optional.Multiplug https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.GoodForSearch https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.JustBrowse https://www.nicolascoolman.com/fr/pup-mocaflix/ =>PUP.Optional.MocaFlix https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WebOverSearch https://nicolascoolman.eu/2017/09/22/adware-webssearches/ =>PUP.Optional.WebsSearches https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.InboxEmail https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.LuckySearches https://www.nicolascoolman.com/fr/adware-searchya/ =>PUP.Optional.SearchYa https://nicolascoolman.eu/2017/10/22/sup-sweetpage/ =>.SUP.SweetPage https://nicolascoolman.eu/2017/09/18/hijacker-trovigo/ =>Adware.Trovigo https://www.anti-malware.top/2016/05/12/adware-yessearches/ =>Adware.YesSearches https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.UniSales https://www.anti-malware.top/2016/05/05/superfluous-taiwanshuimu/ =>.SUP.TaiwanShuiMu https://www.nicolascoolman.com/fr/pup-software-updater/ =>PUP.Optional.SoftwareUpdater https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://www.nicolascoolman.com/fr/pup-optional-bang5mai/ =>PUP.Optional.Bang5mai https://nicolascoolman.eu/2017/09/20/adware-globalupdate/ =>Adware.GlobalUpdate https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>PUP.Optional.Salus https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.NetService https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.WinZipper https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.WinNetSvc https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico https://www.anti-malware.top/2016/05/24/adware-amonetize/ =>Adware.Amonetize https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SHAREit https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.CPUminer https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.SUP.Elex ~ Unselected Options: O82, O82, ~ End of the scan, 110258 items in 01mn54s (2208)(0)