~ ZHPDiag v2018.2.25.40 Par Nicolas Coolman (2018/02/25) ~ Démarré par hatzi (Administrator) (2018/02/25 21:15:53) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\hatzi\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\hatzi\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 32-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v64.0.3282.167 ~ MFIE: Mozilla Firefox 58.0.2 (x86 fr) ~ MSIE: Internet Explorer v8.0.7601.17514 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (4) - 4s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK Windows Activation Technologies : KO ---\\ LOGICIELS DE SECURITÉ (Superflus) (1) - 1s ~ McAfee Security Scan Plus v3.11.690.1 (Superfluous) ---\\ LOGICIELS D'OPTIMISATION (1) - 1s ~ CCleaner v5.28 (Optimize) ---\\ SURVEILLANCE LOGICIEL (2) - 1s ~ Adobe Flash Player 28 PPAPI (Surveillance) ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: x86 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 32-bit ~ Boot mode: Normal (Normal boot) Total RAM: 2705.776 MB (36% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 62 GB (%) free of 200 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: HATZI-PC ~ User Name: hatzi ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s ~ Drive C: has 62 GB free of 200 GB (System) ~ Drive D: has 63 GB free of 276 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (14) - 0s [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] EnableShellExecuteHooks: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] AutoConfigUrl: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] XMLLookup: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Intl: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 1s [MD5.8B88EBBB05A0E56B7DCC708498C02B3E] - 25/02/2011 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2616320] =>.Microsoft Corporation [MD5.C648901695E275C8F2AD04B687A68CE2] - 30/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45056] =>.Microsoft Corporation [MD5.B5C5DCAD3899512020D135600129D665] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96256] =>.Microsoft Corporation [MD5.CDF7B4CAEA880E924A28EE4592BAECEF] - 27/03/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [981504] =>.Microsoft Corporation [MD5.52449FD429D6053B78AE564DEF303870] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [304128] =>.Microsoft Corporation [MD5.E3AE23569749DE12D45BA3B489A036AE] - 20/01/2011 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [193536] =>.Microsoft Corporation [MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [270336] =>.Microsoft Corporation [MD5.129F80D7868E30DF3E3DE33A1D3132B4] - 20/01/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation [MD5.93B49FA857F7036A4EFF32371F6E7391] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [338944] =>.Microsoft Corporation [MD5.338C86357871C167A96AB976519BF59E] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [21584] =>.Microsoft Windows® [MD5.77EA11B065E0A8AB902D78145CA51E10] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70656] =>.Microsoft Corporation [MD5.BE167ED0FDB9C1FA1133953C18D5A6C9] - 20/01/2011 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [108544] =>.Microsoft Corporation [MD5.F024449C97EC1E464AAFFDA18593DB88] - 20/01/2011 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [78336] =>.Microsoft Corporation [MD5.9036377B8A6C15DC2EEC53E489D159B5] - 20/01/2011 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [108544] =>.Microsoft Corporation [MD5.F151F0BDC47F4A28B1B20A0818EA36D6] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [80896] =>.Microsoft Corporation [MD5.A5FA468D67ABCDAA36264E463A7BB0CD] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [101888] =>.Microsoft Corporation [MD5.F99E3FCA0184ADBFF3DD323911BC9A96] - 07/07/2017 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [124416] =>.Microsoft Corporation [MD5.A00996C9BFEF29A93B9F21DBE1DC502D] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [188928] =>.Microsoft Corporation [MD5.28B64D3792D4F692E45ECB0C3F98C19B] - 09/06/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1213672] =>.Microsoft Windows® [MD5.2EA877ED5DD9713C5AC74E8EA7348D14] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation [MD5.D9F91EAFEC2815365CBE6D167E4E332A] - 14/07/2009 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [78848] =>.Microsoft Corporation [MD5.B973FCFC50DC1434E1970A146F7E3885] - 20/01/2011 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [133632] =>.Microsoft Corporation [MD5.3E21C083B8A01CB70BA1F09303010FCE] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [71168] =>.Microsoft Corporation [MD5.8F143F86FDD8CF4F7BD25973C5983F9D] - 29/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [74752] =>.Microsoft Corporation [MD5.F497F67932C6FA693D7DE2780631CFE7] - 20/01/2011 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [245632] =>.Microsoft Windows® ---\\ LISTE DES SERVICES (Non Microsoft et non désactivés) (22) - 4s O23 - Service: a-squared Free Service (a2free) . (.Emsi Software GmbH - a-squared Service.) - C:\Program Files\a-squared Free\a2service.exe =>.Emsi Software GmbH O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® O23 - Service: Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® O23 - Service: DbxSvc (DbxSvc) . (.Dropbox, Inc. - Dropbox Service.) - C:\Windows\System32\DbxSvc.exe =>.Dropbox, Inc® O23 - Service: DESlock+ Service (dlpsrv) . (.DESlock Limited. - DESlock+ Service.) - C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe {639088F7E206FDF42906231BD0C3097D} O23 - Service: Dritek WMI Service (DsiWMIService) . (.Dritek System Inc. - Dritek WMI Service.) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® O23 - Service: KMS-R@1n (KMS-R@1n) . (...) - C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: McAfee Service Controller (mfemms) . (.McAfee, Inc. - McAfee Management Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.® O23 - Service: Intel Security True Key (TrueKey) . (.McAfee, Inc. - Intel Security True Key.) - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe =>.McAfee, Inc.® O23 - Service: Intel Security True Key Scheduler (TrueKeyScheduler) . (.McAfee, Inc. - Intel Security True Key.) - C:\Program Files\TrueKey\McTkSchedulerService.exe =>.McAfee, Inc.® O23 - Service: TightVNC Server (tvnserver) . (.GlavSoft LLC. - TightVNC Server.) - C:\Windows\securitysvc.exe =>.GlavSoft LLC.® O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® O23 - Service: WinZip Compression Smart Monitor Service (WinZip Compression Smart Monitor Service) . (. - WinZip Compression Smart Monitor Service.) - C:\Program Files\WinZip\WinZip Smart Monitor\WinZip Compression Smart Monitor Service.exe =>.Corel Corporation® O23 - Service: Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com - Wise BootTime Service.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Ltd.® O23 - Service: Broadcom Wireless LAN Tray Service (wltrysvc) . (.Broadcom Corporation - Broadcom 802.11 Network Adapter Wireless Ne.) - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE =>.Broadcom Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (31) - 29s SR - Auto [31/08/2007] [ 217208] a-squared Free Service (a2free) . (.Emsi Software GmbH.) - C:\Program Files\a-squared Free\a2service.exe =>.Emsi Software GmbH SR - Auto [17/01/2018] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [06/02/2018] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [27/11/2013] [ 3105144] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG® SS - Demand [23/04/2012] [ 276248] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\IntelCpHeciSvc.exe =>.Intel Corporation® SS - Auto [25/01/2018] [ 143144] Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Demand [25/01/2018] [ 143144] Service Mise à jour Dropbox (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SR - Auto [08/02/2018] [ 43344] DbxSvc (DbxSvc) . (.Dropbox, Inc..) - C:\Windows\System32\DbxSvc.exe =>.Dropbox, Inc® SR - Auto [08/07/2016] [ 485056] DESlock+ Service (dlpsrv) . (.DESlock Limited..) - C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe {639088F7E206FDF42906231BD0C3097D} SR - Auto [23/03/2012] [ 355920] Dritek WMI Service (DsiWMIService) . (.Dritek System Inc..) - C:\Program Files\Launch Manager\dsiwmis.exe =>.Dritek System Inc.® SR - Auto [26/12/2017] [ 1539560] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.® SS - Auto [29/04/2017] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/04/2017] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [01/02/2012] [ 13592] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation® SR - Auto [02/02/2012] [ 458464] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SR - Auto [08/02/2012] [ 161560] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® SR - Auto [27/12/2017] [ 23040] KMS-R@1n (KMS-R@1n) . (...) - C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator SR - Auto [08/02/2012] [ 277784] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SS - Demand [19/02/2018] [ 322792] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.690\McCHSvc.exe =>.McAfee, Inc.® SS - Demand [21/06/2017] [ 206800] McAfee Firewall Core Service (mfefire) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe =>.McAfee, Inc.® SR - Auto [21/06/2017] [ 359376] McAfee Service Controller (mfemms) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.® SS - Demand [21/06/2017] [ 334288] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee, Inc..) - C:\Windows\System32\mfevtps.exe =>.McAfee, Inc.® SS - Demand [07/02/2018] [ 174544] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Auto [21/09/2017] [ 1002472] Intel Security True Key (TrueKey) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe =>.McAfee, Inc.® SR - Auto [21/09/2017] [ 17992] Intel Security True Key Scheduler (TrueKeyScheduler) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McTkSchedulerService.exe =>.McAfee, Inc.® SS - Demand [21/09/2017] [ 74816] TrueKeyServiceHelper (TrueKeyServiceHelper) . (.McAfee, Inc..) - C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe =>.McAfee, Inc.® SR - Auto [19/07/2013] [ 1690096] TightVNC Server (tvnserver) . (.GlavSoft LLC..) - C:\Windows\securitysvc.exe =>.GlavSoft LLC.® SR - Auto [08/02/2012] [ 363800] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SR - Auto [01/09/2017] [ 448256] WinZip Compression Smart Monitor Service (WinZip Compression Smart Monitor Service) . (...) - C:\Program Files\WinZip\WinZip Smart Monitor\WinZip Compression Smart Monitor Service.exe =>.Corel Corporation® SR - Auto [06/07/2017] [ 658600] Wise Boot Assistant (WiseBootAssistant) . (.WiseCleaner.com.) - C:\Program Files\Wise\Wise Care 365\BootTime.exe =>.Lespeed Technology Ltd.® SR - Auto [08/05/2015] [ 40960] Broadcom Wireless LAN Tray Service (wltrysvc) . (.Broadcom Corporation.) - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE =>.Broadcom Corporation ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (27) - 7s O38 - TASK: {001E716F-6FDE-4ADD-9149-B80BEAB21AC0}[\AutoKMS] - (.CODYQX4 & Bosh - AutoKMS.) -- C:\Windows\AutoKMS\AutoKMS.exe [1722368] =>HackTool.AutoKMS O38 - TASK: {015A03C2-716D-48A6-A511-57486323EC63}[\TweakBit\PCSuite\Scan and Repair] - (...) -- C:\Program Files\TweakBit\PCSuite\rundll32.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {0887FE17-4919-4A1C-922E-4F2D71DEEA41}[\Wise Care 365] - (...) -- C:\Program Files\Wise\Wise Care 365\WiseTray.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {0A97C0EA-E838-4848-9852-BDF348AA8FB2}[\TweakBit\PCSuite\Start PCSuite оn hatzi logon] - (.TweakBit - PCSuite.) -- C:\Program Files\TweakBit\PCSuite\PCSuite.exe [3980384] O38 - TASK: {13AF17E9-17F3-4F5C-A3B2-A25858A4820F}[\TweakBit\Driver Updater\Start Driver Updater оn logon] - (...) -- C:\Program Files\TweakBit\Driver Updater\DriverUpdater.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {16366841-963E-4B1F-AF72-7A45802EAF9C}[\{C9FDDAED-B24C-4978-AB44-77421AC157E3}] - (...) -- C:\Program Files\Return to Castle Wolfenstein\Uninstall\UNWISE.EXE [162304] O38 - TASK: {1BF7B762-617B-4033-97F1-D520B381E92A}[\{EFE0BE09-5BDC-4EC0-ADBE-64C9B76A8461}] - (...) -- D:\Windows.old\Users\WELTINFO\Downloads\Programs\epson321492eu.exe [2719744] O38 - TASK: {1F01CEFE-2F06-4A9C-BE69-B4DBBC992376}[\TweakBit\Driver Updater\Time for deal] - (...) -- C:\Program Files\TweakBit\Driver Updater\DriverUpdater.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {303E2126-204D-4E0B-BFA5-1022E627A41C}[\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7348440] =>.Piriform Ltd O38 - TASK: {432079AA-321F-44E2-944A-413A43C281E7}[\{CA7FF45A-D3B9-419E-BE8B-C1705B8C536E}] - (.Macrovision Corporation - Setup.exe.) -- C:\Users\hatzi\Downloads\Programs\ghost_recon_jeu_complet_anglais_43040.exe [569095670] =>.Macrovision Corporation O38 - TASK: {45B1427C-4F4B-4D65-B8F4-A0345CFA3F51}[\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 28.0 r0.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated O38 - TASK: {51549C6F-861A-49EB-B8C4-878E08EC96C3}[\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B] - (...) -- schtasks [0] O38 - TASK: {814DD0D4-0488-4CE9-A1C7-2B269A3EF03B}[\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\System32\Macromed\Flash\FlashUtil32_28_0_0_161_pepper.exe [1348096] =>.Adobe Systems Incorporated O38 - TASK: {91832775-5901-4FF8-B569-1EA776DC3498}[\Norton Identity Safe\Norton Error Processor] - (...) -- C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\SymErr.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {94282180-760E-4C64-B191-2146AED49665}[\R@1n-KMS\Office14ProPlus] - (...) -- wmic path OfficeSoftwareProtectionProduct where (ID="6f327760-8c5c-417c-9b61-836a98287e0c") call Activate [0] =>HackTool.WinActivator O38 - TASK: {977F220E-524A-460F-8C22-63FEE223B349}[\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1182232] =>.Adobe Systems Incorporated O38 - TASK: {9E8770A9-D579-416A-AE23-88E751AE1FB9}[\Norton Identity Safe\Norton Error Analyzer] - (...) -- C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\SymErr.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {A25B3813-436B-4B8C-8FDB-4C795A08699E}[\TweakBit\Anti-Malware\Start Anti-Malware оn hatzi logon] - (.TweakBit - Anti-Malware.) -- C:\Program Files\TweakBit\Anti-Malware\AntiMalware.exe [2072160] O38 - TASK: {A8CB8C66-C51B-4B52-88D3-39838C9E5C23}[\TweakBit\Anti-Malware\Scan with optional clean] - (...) -- C:\Program Files\TweakBit\Anti-Malware\rundll32.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {B51F4386-4D74-4B41-99DC-1C66188FB448}[\TweakBit\Driver Updater\Start Driver Updater automatic scanning] - (...) -- C:\Program Files\TweakBit\Driver Updater\DriverUpdater.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {BC43F010-BF20-4E6E-8631-96082AF08DD8}[\Wise Turbo Checker] - (...) -- C:\Program Files\Wise\Wise Care 365\WiseTurbo.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan O38 - TASK: {C08464B1-3C30-40C4-B483-EB0817B17337}[\DropboxUpdateTaskMachineCore] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc. O38 - TASK: {DEDC90CE-B4D9-436B-928A-114A5DB20C1B}[\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. O38 - TASK: {E8B7947A-89F2-48A4-A412-5778130E84C7}[\Anuhigemihition Manager] - (.Glarysoft Ltd - Glary Utilities AutoUpdate.) -- C:\Program Files\Biposhbonle\ghupaing.exe [1027992] =>.Glarysoft Ltd O38 - TASK: {EB9B81B6-4E6A-449E-8F6C-138C3AD1A39A}[\DropboxUpdateTaskMachineUA] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc. O38 - TASK: {F4B56F9A-8164-489C-BE5F-8F2C35E98B28}[\WinZip Update Notifier] - (.WinZip - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe [1709312] =>.WinZip O38 - TASK: {FCB5C670-6D2D-4867-80E0-DB6EDF5D1BC9}[\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (15) - 1s O4 - HKLM\..\Run: [AutorunRemover.exe] . (...) -- C:\Program Files\AutorunRemover\AutorunRemover.exe O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation® O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe =>.Intel Corporation® O4 - HKLM\..\Run: [egui] . (.ESET - ESET command line interface.) -- C:\Program Files\ESET\ESET Security\ecmds.exe =>.ESET, spol. s r.o.® O4 - HKLM\..\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc® O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe =>.Intel Corporation® O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe =>.Intel Corporation® O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe =>.Dritek System Inc.® O4 - HKLM\..\Run: [WinZip UN] . (.WinZip - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe =>.Corel Corporation® O4 - HKLM\..\Run: [WinZip PreLoader] . (.WinZip Computing, S.L. - WinZip Preloader.) -- C:\Program Files\WinZip\WzPreloader.exe =>.Corel Corporation® O4 - HKCU\..\Run: [McAfeeSafeConnect] . (. - .) -- C:\Program Files\McAfee Safe Connect\McAfee Safe Connect.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-1300957906-1333825833-3678778763-1000\..\Run: [McAfeeSafeConnect] . (. - .) -- C:\Program Files\McAfee Safe Connect\McAfee Safe Connect.exe (.Not File.) =>.SUP.Orphan ---\\ PROCESSUS LANCÉS (50) - 5s [MD5.15E06E87B02F463A701F7D573B15D566] - (.ESET - ESET Service.) -- C:\Program Files\ESET\ESET Security\ekrn.exe [1539560] [PID.880] =>.ESET, spol. s r.o.® [MD5.6C3AF5C610D8B6A410801AFE7DF6F5DA] - (.DESlock Limited. - DESlock+ Service.) -- C:\Program Files\ESET\ESET Secure Data\dlpsrv.exe [485056] [PID.904] {639088F7E206FDF42906231BD0C3097D} [MD5.E25D39B4B6647A665A4E53B0E68A7424] - (.Broadcom Corporation - Broadcom 802.11 Network Adapter Wireless Ne.) -- C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE [40960] [PID.1488] =>.Broadcom Corporation [MD5.A4868DC53A1FE0F154F63E54FCE4581C] - (.Broadcom Corporation - Broadcom 802.11 Network Adapter Wireless Ne.) -- C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE [5179392] [PID.1536] =>.Broadcom Corporation [MD5.C0C09160883A964B1B6E6CF32643A394] - (.Emsi Software GmbH - a-squared Service.) -- C:\Program Files\a-squared Free\a2service.exe [217208] [PID.1828] =>.Emsi Software GmbH [MD5.1AAADD6B45F57CC92E23D214676C6F18] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [83984] [PID.1864] =>.Adobe Systems, Incorporated® [MD5.E7A0878B67B9AC67D677312BC686570A] - (.Dropbox, Inc. - Dropbox Service.) -- C:\Windows\System32\DbxSvc.exe [43344] [PID.1888] =>.Dropbox, Inc® [MD5.C02FF01B821FBB72104132E56EC5B881] - (.Dritek System Inc. - Dritek WMI Service.) -- C:\Program Files\Launch Manager\dsiwmis.exe [355920] [PID.2024] =>.Dritek System Inc.® [MD5.C86A9AA1CBC4C3C2C5C9DD0F6D939926] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [458464] [PID.224] =>.Intel® Upgrade Service® [MD5.D98B7ABBBB55FD3A4D9F7B8A7869FCBF] - (.Dritek System Inc. - Launch Manager utility process.) -- C:\Program Files\Launch Manager\LMutilps32.exe [419408] [PID.232] =>.Dritek System Inc.® [MD5.DBD76BC1D498FE368F2C8CB76C3E00A4] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560] [PID.444] =>.Intel Corporation® [MD5.45CC0A256BED89A997725A6B264CC3EC] - (...) -- C:\Windows\KMS-R@1n.exe [23040] [PID.492] =>HackTool.WinActivator [MD5.86E4CC39C953D11EF57CF54C4DC78238] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784] [PID.524] =>.Intel Corporation® [MD5.343CCF13C0F3B76607A2609E1A7DADAF] - (.McAfee, Inc. - McAfee Management Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [359376] [PID.640] =>.McAfee, Inc.® [MD5.0409A55898CF861CFE321AB831137492] - (.McAfee, Inc. - McAfee Process Validation Service.) -- C:\Windows\System32\mfevtps.exe [334288] [PID.2140] =>.McAfee, Inc.® [MD5.D3B1F234A3FBB4FC2EE57217FDAEB6BB] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [1002472] [PID.2188] =>.McAfee, Inc.® [MD5.56AC961520C6EAD018FE8CB135813E4E] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McTkSchedulerService.exe [17992] [PID.2312] =>.McAfee, Inc.® [MD5.2DE8A6F622B54398412C1FD66D47B1CE] - (.GlavSoft LLC. - TightVNC Server.) -- C:\Windows\securitysvc.exe [1690096] [PID.2388] =>.GlavSoft LLC.® [MD5.A6906ECAA9D8D78D96962C65DACFDEB6] - (. - WinZip Compression Smart Monitor Service.) -- C:\Program Files\WinZip\WinZip Smart Monitor\WinZip Compression Smart Monitor Service.exe [448256] [PID.2520] =>.Corel Corporation® [MD5.F6ADB8B07B34E0C8A1B454B9BC779F89] - (.WiseCleaner.com - Wise BootTime Service.) -- C:\Program Files\Wise\Wise Care 365\BootTime.exe [658600] [PID.2780] =>.Lespeed Technology Ltd.® [MD5.F97961FD74E83E3E96DB45B69B33B157] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files\CodeMeter\Runtime\bin\CodeMeter.exe [3105144] [PID.2816] =>.WIBU-SYSTEMS AG® [MD5.9A3658E5A49BE7B2CF07985DDF26C3A0] - (.McAfee, Inc. - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [206800] [PID.2984] =>.McAfee, Inc.® [MD5.24B13D115DEB93F412C0C8A6A7BC4F9E] - (...) -- C:\Windows\KMS-R@1nHook.exe [4608] [PID.3480] =>HackTool.AutoKMS [MD5.8BDDC7612BA1AF785AE36CEEB5644465] - (.McAfee, Inc. - Intel Security True Key.) -- C:\Program Files\TrueKey\McAfee.TrueKey.SmartMonitor.exe [106304] [PID.3852] =>.McAfee, Inc.® [MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.3904] =>.Google Inc® [MD5.B21931746DA451F96013AF63AD5AAA9C] - (...) -- C:\Program Files\AutorunRemover\AutorunRemover.exe [1929216] [PID.2640] [MD5.27FAC46938A6FB65D58679873F456972] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [2193200] [PID.3032] =>.ELAN Microelectronics Corporation® [MD5.24B13D115DEB93F412C0C8A6A7BC4F9E] - (...) -- C:\Windows\KMS-R@1nHook.exe [4608] [PID.3224] =>HackTool.AutoKMS [MD5.0BED3361C7C43238EBC515939EF8E0B8] - (.Corel Corporation - WinZip Compression Smart Monitor.) -- C:\Program Files\WinZip\WinZip Smart Monitor\WinZipCompressionSmartMonitor.exe [1823488] [PID.3564] =>.Corel Corporation® [MD5.D2E95EFD3C6E47A35AC5D73A87CF4D29] - (.ESET - ESET Main GUI.) -- C:\Program Files\ESET\ESET Security\egui.exe [6177912] [PID.2508] =>.ESET, spol. s r.o.® [MD5.871BBB34388FFAFDBB131207D2517943] - (.Dropbox, Inc. - Dropbox.) -- C:\Program Files\Dropbox\Client\Dropbox.exe [3567936] [PID.4092] =>.Dropbox, Inc® [MD5.2C8D607BF6C02FA761EEF97D5F321D70] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288] [PID.1372] =>.Oracle America, Inc.® [MD5.C59574F8385714F10E67986E05569389] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [144664] [PID.1368] =>.Intel Corporation® [MD5.3E7004AE42E7D86E94B0FD61EB3D6669] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [180504] [PID.3016] =>.Intel Corporation® [MD5.98A21CB323EABE629B9EF223E91D3E7F] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [187672] [PID.4128] =>.Intel Corporation® [MD5.FE668B0E3E87077A46FE77AFB0E27F9C] - (.Dritek System Inc. - Launch Manager.) -- C:\Program Files\Launch Manager\LManager.exe [1105488] [PID.4212] =>.Dritek System Inc.® [MD5.8C5DA974F2F73B9DFB66F66E55983400] - (.WinZip Computing, S.L. - WinZip Preloader.) -- C:\Program Files\WinZip\WzPreloader.exe [123848] [PID.4244] =>.Corel Corporation® [MD5.1766B25C58E340F2F919D31472113AB2] - (.McAfee, Inc. - McAfee Security Scanner Scheduler.) -- C:\Program Files\McAfee Security Scan\3.11.690\SSScheduler.exe [441776] [PID.4296] =>.McAfee, Inc.® [MD5.5A3D25253AA8603E6448EA72789AF1B9] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [1642800] [PID.4372] =>.ELAN Microelectronics Corporation® [MD5.1A7F10605F9672E101BFA27CAED210D5] - (.Dritek System Inc. - Launch Manager Worker.) -- C:\Program Files\Launch Manager\LMworker.exe [343632] [PID.4552] =>.Dritek System Inc.® [MD5.056F05CAC35F4E1BD9FD2740297DA88F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453400] [PID.5132] =>.Google Inc® [MD5.056F05CAC35F4E1BD9FD2740297DA88F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453400] [PID.5160] =>.Google Inc® [MD5.056F05CAC35F4E1BD9FD2740297DA88F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453400] [PID.5212] =>.Google Inc® [MD5.056F05CAC35F4E1BD9FD2740297DA88F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453400] [PID.5376] =>.Google Inc® [MD5.72A7D54EB3626CFCBC8B550385CEF97A] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440] [PID.5412] =>.Intel Corporation® [MD5.545462D0DBE24AF379BA869B7C185CCD] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13592] [PID.4836] =>.Intel Corporation® [MD5.D80B1075B69B57A3AB78F750CE463ECE] - (.Intel Corporation - User Notification Service.) -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800] [PID.4240] =>.Intel Corporation® [MD5.056F05CAC35F4E1BD9FD2740297DA88F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453400] [PID.6024] =>.Google Inc® [MD5.056F05CAC35F4E1BD9FD2740297DA88F] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [1453400] [PID.2372] =>.Google Inc® [MD5.1466E84B5DBDA3565CAE9CCEA600C950] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\hatzi\Downloads\ZHPDiag3.exe [3021696] [PID.3384] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (10) - 0s G0 - GCSP: Preferences [User Data\Default][HomePage] http://2-edge-chat.facebook.com =>.Facebook G0 - GCSP: Preferences [User Data\Default][HomePage] http://facebook.com =>.Facebook G0 - GCSP: Preferences [User Data\Default][HomePage] http://outlook.live.com =>.Microsoft Corporation G0 - GCSP: Preferences [User Data\Default][HomePage] http://r1.res.office365.com G0 - GCSP: Preferences [User Data\Default][HomePage] http://scontent-cdg2-1.xx.fbcdn.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://scontent.xx.fbcdn.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc. G0 - GCSP: Preferences [User Data\Default][HomePage] http://video-cdg2-1.xx.fbcdn.net G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc. ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (13) - 6s M0 - MFSP: prefs.js [hatzi - 436dt1k2.default] http://search.yahoo.com/ =>.Yahoo! Inc. P2 - EXT FILE: (.Avast Passwords - .) -- C:\Users\hatzi\AppData\Roaming\Mozilla\Firefox\Profiles\436dt1k2.default\extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi =>.Avast Passwords P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation P2 - EXT: (.LC - Fast search.) -- C:\Users\hatzi\AppData\Roaming\Mozilla\Firefox\Profiles\436dt1k2.default\extensions\amcontextmenu@loucypher P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_28_0_0_161.dll =>.Adobe Systems Incorporated ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (9) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = res://ieframe.dll/tabswelcome.htm R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (8.00.7600.16385 (win7_rtm.090713-1255)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [http://access-webs.biz/] ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\system32\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (232) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (5) - 1s O2 - BHO: True Key Helper - {0F4B8786-5502-4803-8EBC-F652A1153BB6} . (.Intel Security - True Key Internet Explorer Extension.) -- C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll =>.McAfee, Inc.® O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_161\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation® O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_161\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ RACCOURCIS GLOBAL STARTUP (96) - 12s O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrateur]: StopPub.lnk . (.Altechnologies - stop pub.) C:\Program Files\JCA2000\StopPub\StopPub.exe =>.Altechnologies O4 - GS\Desktop [Administrateur]: TweakBit PCSuite 9.lnk . (.TweakBit - PCSuite.) C:\Program Files\TweakBit\PCSuite\PCSuite.exe =>.Auslogics Labs Pty Ltd® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hatzi\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: a-squared Free.lnk . (.Emsi Software GmbH - a-squared Free.) C:\Program Files\a-squared Free\a2free.exe =>.Emsi Software GmbH O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrateur]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd® O4 - GS\Quicklaunch [Administrateur]: Voice Changer 7.0 Diamond.lnk . (.Avnex Ltd - VCS. Core dispatcher.) C:\Program Files\AV Vcs 7.0 DIAMOND\VcsCore.exe O4 - GS\TaskBar [Administrateur]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Cuptony\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrateur]: Skype .lnk . (.Skype Technologies S.A. - Skype.) D:\Windows.old.001\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [ee]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [ee]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [ee]: StopPub.lnk . (.Altechnologies - stop pub.) C:\Program Files\JCA2000\StopPub\StopPub.exe =>.Altechnologies O4 - GS\Desktop [ee]: TweakBit PCSuite 9.lnk . (.TweakBit - PCSuite.) C:\Program Files\TweakBit\PCSuite\PCSuite.exe =>.Auslogics Labs Pty Ltd® O4 - GS\Desktop [ee]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hatzi\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [ee]: a-squared Free.lnk . (.Emsi Software GmbH - a-squared Free.) C:\Program Files\a-squared Free\a2free.exe =>.Emsi Software GmbH O4 - GS\Quicklaunch [ee]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [ee]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [ee]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd® O4 - GS\Quicklaunch [ee]: Voice Changer 7.0 Diamond.lnk . (.Avnex Ltd - VCS. Core dispatcher.) C:\Program Files\AV Vcs 7.0 DIAMOND\VcsCore.exe O4 - GS\TaskBar [ee]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [ee]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Cuptony\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [ee]: Skype .lnk . (.Skype Technologies S.A. - Skype.) D:\Windows.old.001\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [ee]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [ee]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [ee]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Desktop [hatzi]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Desktop [hatzi]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [hatzi]: StopPub.lnk . (.Altechnologies - stop pub.) C:\Program Files\JCA2000\StopPub\StopPub.exe =>.Altechnologies O4 - GS\Desktop [hatzi]: TweakBit PCSuite 9.lnk . (.TweakBit - PCSuite.) C:\Program Files\TweakBit\PCSuite\PCSuite.exe =>.Auslogics Labs Pty Ltd® O4 - GS\Desktop [hatzi]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\hatzi\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [hatzi]: a-squared Free.lnk . (.Emsi Software GmbH - a-squared Free.) C:\Program Files\a-squared Free\a2free.exe =>.Emsi Software GmbH O4 - GS\Quicklaunch [hatzi]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [hatzi]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [hatzi]: Picture Collage Maker Pro.lnk . (.PearlMountain Technology Co., Ltd - PictureCollageMakerPro Application.) C:\Program Files\Picture Collage Maker Pro\PictureCollageMakerPro.exe =>.Chengdu PearlMountain Technology Co., Ltd® O4 - GS\Quicklaunch [hatzi]: Voice Changer 7.0 Diamond.lnk . (.Avnex Ltd - VCS. Core dispatcher.) C:\Program Files\AV Vcs 7.0 DIAMOND\VcsCore.exe O4 - GS\TaskBar [hatzi]: Google Chrome (2).lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [hatzi]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files\Cuptony\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [hatzi]: Skype .lnk . (.Skype Technologies S.A. - Skype.) D:\Windows.old.001\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl® O4 - GS\TaskBar [hatzi]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\TaskBar [hatzi]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [hatzi]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: ESET Protection des transactions bancaires.lnk . (.ESET - ESET command line interface.) C:\Program Files\ESET\ESET Security\ecmd.exe /startprotectedbrowser =>.ESET, spol. s r.o.® O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee.) C:\Program Files\McAfee Security Scan\3.11.690\McUICnt.exe SecurityScanner.dll =>.McAfee, Inc.® O4 - GS\CommonDesktop [Public]: True Key.lnk . (.Intel Security - True Key™.) C:\Program Files\Intel Security\True Key\application\truekey.exe --open-source=dtopicon =>.McAfee, Inc.® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\CommonDesktop [Public]: WinZip.lnk . (.WinZip Computing, S.L. - WinZip.) C:\Program Files\WinZip\winzip32.exe =>.Corel Corporation® O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. - McAfee Security Scanner Scheduler.) C:\Program Files\McAfee Security Scan\3.11.690\SSScheduler.exe =>.McAfee, Inc.® O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: True Key.lnk . (.Intel Security - True Key™.) C:\Program Files\Intel Security\True Key\application\truekey.exe --open-source=startmenu =>.McAfee, Inc.® O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Création de DVD Windows.) C:\Program Files\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: WinZip.lnk . (.WinZip Computing, S.L. - WinZip.) C:\Program Files\WinZip\winzip32.exe =>.Corel Corporation® O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{3373B214-A4CE-4BFB-840F-B2A91F7D6CB3}: DhcpNameServer = 192.168.43.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{501A9945-15A6-4BDB-AF85-0284F5783824}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7F2D9237-19CC-4121-86A8-3697D034294A}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{BF4D4C05-960C-45DE-82AB-808E321E2F2F}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (24) - 1s O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation® O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ LOGICIELS INSTALLÉS (54) - 19s O42 - Logiciel: AdBlocker - (.Star Line.) [HKLM] -- {D39B0192-9F6F-48F9-8FBF-21F6A6B4C3F2}_is1 =>.Star Line O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 28 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 28 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Flash Player 28 PPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824261196} =>.Adobe Systems Incorporated O42 - Logiciel: ar speed reading - (.Abedsoft.) [HKLM] -- ar speed reading1.3.2 O42 - Logiciel: a-squared Free 3.0 - (.Emsi Software GmbH.) [HKLM] -- a-squared Free_is1 =>.Emsi Software GmbH O42 - Logiciel: AV Voice Changer Software DIAMOND 7.0 - (.Avnex Ltd..) [HKLM] -- AV Voice Changer Software DIAMOND 7.0 O42 - Logiciel: BikaQ Rss - (.BikaQ.) [HKLM] -- {78A2D999-4673-4FCC-818E-57B0AF8F3B70} =>.SUP.BikaQ O42 - Logiciel: Broadcom Card Reader Driver Installer - (.Broadcom Corporation.) [HKLM] -- {4710662C-8204-4334-A977-B1AC9E547819} =>.Broadcom Corporation O42 - Logiciel: Broadcom NetLink Controller - (.Broadcom Corporation.) [HKLM] -- {C91DCB72-F5BB-410D-A91A-314F5D1B4284} =>.Broadcom Corporation O42 - Logiciel: CCleaner - (.Piriform.) [HKLM] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {51C7AD07-C3F6-4635-8E8A-231306D810FE} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM] -- {ED5776D5-59B4-46B7-AF81-5F2D94D7C640} =>.Cisco Systems, Inc. O42 - Logiciel: Complément Office 2007 - Microsoft Enregistrer en tant que PDF ou XPS (Beta - (.Microsoft Corporation.) [HKLM] -- {30120000-00B2-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM] -- Dropbox =>.Dropbox, Inc® O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: ESET Premium Line Encryption - (.ESET.) [HKLM] -- {EBEBAB97-A41A-480F-B210-BA653C8B49EF} =>.ESET O42 - Logiciel: ESET Security - (.ESET, spol. s r.o..) [HKLM] -- {4407F917-C6C9-4E10-8C38-C6807B755CEA} =>.ESET, spol. s r.o. O42 - Logiciel: ETDWare PS/2-X86 10.6.9.9_WHQL - (.ELAN Microelectronic Corp..) [HKLM] -- Elantech =>.ELAN Microelectronics Corporation® O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Toolbar for Internet Explorer - (.Google Inc..) [HKLM] -- {18455581-E099-4BA8-BC6B-F34B2F06600C} =>.Google Inc. O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: HSPA USB Modem - (.HSPA.) [HKLM] -- {06ADE2A0-E46A-4A84-A211-64CF50520185} =>.HSPA O42 - Logiciel: HSPA USB Modem - (.HSPA.) [HKLM] -- InstallShield_{06ADE2A0-E46A-4A84-A211-64CF50520185} =>.HSPA O42 - Logiciel: Intel Security True Key - (.Intel Security.) [HKLM] -- TrueKey =>.McAfee, Inc.® O42 - Logiciel: Intel(R) Control Center - (.Intel Corporation.) [HKLM] -- {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) OpenCL CPU Runtime - (.Intel Corporation.) [HKLM] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} =>.Intel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM] -- {51A66ED3-200E-4147-8D1E-E8D30936FD26} =>.Intel Corporation O42 - Logiciel: Java 8 Update 161 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180161F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Launch Manager - (.Acer Inc..) [HKLM] -- LManager =>.Dritek System Inc.® O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan =>.McAfee, Inc.® O42 - Logiciel: MorphVOX Pro - (.Screaming Bee.) [HKLM] -- {b08c3bb9-04c2-47b9-ae2a-0f3f05caef4a} =>.Screaming Bee Inc® O42 - Logiciel: MorphVOX Pro - (.Screaming Bee.) [HKLM] -- {F8FAA2B7-B66C-4D48-82C5-96C2C1A6F20D} =>.Screaming Bee O42 - Logiciel: Mozilla Firefox 58.0.2 (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 58.0.2 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Product Key Recovery - (.SmartKey, Inc..) [HKLM] -- Product Key Recovery =>.SmartKey, Inc. O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Macrovision Corporation® O42 - Logiciel: Return to Castle Wolfenstein - (.Activision, Inc..) [HKLM] -- Return to Castle Wolfenstein O42 - Logiciel: trotux - Uninstall - (..) [HKLM] -- {B13115DF-4430-4102-8435-A1554528FD0B} =>.SUP.Trotux O42 - Logiciel: TweakBit Anti-Malware - (.Auslogics Labs Pty Ltd.) [HKLM] -- {650775E7-DB5D-4FF0-AC89-62137B45D32E}_is1 =>.Auslogics Labs Pty Ltd® O42 - Logiciel: TweakBit Driver Updater - (.Auslogics Labs Pty Ltd.) [HKLM] -- {62D64B30-6E10-4C49-95FE-EDD8F8165DED}_is1 =>.Auslogics Labs Pty Ltd® O42 - Logiciel: TweakBit PCSuite 9 - (.Auslogics Labs Pty Ltd.) [HKLM] -- {F15144C2-6144-4D33-B031-7C3A8BEA54C4}_is1 =>.Auslogics Labs Pty Ltd® O42 - Logiciel: Update_msi - (.Default Company Name.) [HKLM] -- {59B5A9CD-253D-4C41-A073-B387D4C9672D} O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.40 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WinZip 22.0 - (.Corel Corporation.) [HKLM] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C24118} =>.Corel Corporation O42 - Logiciel: YAC(Yet Another Cleaner!) - (.ELEX DO BRASIL PARTICIPAÇÕES LTDA.) [HKLM] -- iSafe =>.SUP.Elex ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (158) - 19s HKLM\SOFTWARE\01E3228A34BF7156687E2D7D2FB088CA =>Adware.CrossRider HKLM\SOFTWARE\ACD Systems =>.ACD Systems HKLM\SOFTWARE\Activision =>.Activision HKLM\SOFTWARE\ADBLDefault HKLM\SOFTWARE\Adguard =>.Adguard HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Auslogics =>.Auslogics HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Avg =>.AVG Software HKLM\SOFTWARE\Avnex =>.Avnex HKLM\SOFTWARE\Broadcom =>.Broadcom HKLM\SOFTWARE\BSD =>.Berkeley HKLM\SOFTWARE\Chromium =>.Chromium HKLM\SOFTWARE\Comodo =>.Comodo HKLM\SOFTWARE\Corel =>.Corel HKLM\SOFTWARE\Cuptony HKLM\SOFTWARE\DESlock HKLM\SOFTWARE\Di2LCID HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\Dritek =>.Dritek HKLM\SOFTWARE\Dropbox =>.Dropbox HKLM\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKLM\SOFTWARE\drpsu =>.Driver PackSolution HKLM\SOFTWARE\DTS =>.Creative Technology HKLM\SOFTWARE\Elex-tech =>.SUP.Elex HKLM\SOFTWARE\Emsi Software GmbH =>.Emsi Software GmbH HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\ESET =>.ESET HKLM\SOFTWARE\Firefox =>.Mozilla Corporation HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Freemake =>.Freemake HKLM\SOFTWARE\Gameforge4d =>.ZemiInteractive Ltd HKLM\SOFTWARE\GEAR Software =>.GEAR Software HKLM\SOFTWARE\ghupaing.exe HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Greatis =>.Greatis Software HKLM\SOFTWARE\HSPA =>.HSPA HKLM\SOFTWARE\InfoWatch =>.Infowatch HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Intel Security =>.Intel Security HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\InterSect Alliance =>.SUP.InterSect HKLM\SOFTWARE\IObit =>.IObit HKLM\SOFTWARE\iolo =>.Iolo Technologies HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\jhtrsq HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Knowles =>.Knowles Electronics HKLM\SOFTWARE\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\McAfee =>.McAfee Inc. HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\McAfeeInstallIntegrator =>.McAfee Inc. HKLM\SOFTWARE\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\MicroRay =>.MicroRay HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\msServer HKLM\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Oracle =>.Oracle HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Reimage =>.SUP.ReimageRepair HKLM\SOFTWARE\RT 7 Lite HKLM\SOFTWARE\Screaming Bee =>.Screaming Bee HKLM\SOFTWARE\Skype =>.Skype HKLM\SOFTWARE\Software =>.Unknown HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\SonicFocus =>.Sonic Focus HKLM\SOFTWARE\SystemSafe HKLM\SOFTWARE\TightVNC =>.TightVNC Project HKLM\SOFTWARE\ToughQueen HKLM\SOFTWARE\trotuxSoftware =>.SUP.Trotux HKLM\SOFTWARE\TrueKey =>.Intel Corporation HKLM\SOFTWARE\TweakBit =>.TweakBit HKLM\SOFTWARE\UpdatesWuApp HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WiseCleaner =>.wisecleaner HKLM\SOFTWARE\XiSoftware HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc. HKCU\SOFTWARE\01E3228A34BF7156687E2D7D2FB088CA =>Adware.CrossRider HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Aeria Games =>.Aeria Games HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Ashampoo =>.Ashampoo HKCU\SOFTWARE\ASProtect =>.ASPack Software HKCU\SOFTWARE\BcmSetup =>.BCM HKCU\SOFTWARE\Broadcom =>.Broadcom HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Chedot =>PUP.Optional.ChedotBrowser HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CL-EyeTest HKCU\SOFTWARE\Clubic =>.Clubic HKCU\SOFTWARE\Comodo =>.Comodo HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\Cuptony HKCU\SOFTWARE\Dritek =>.Dritek HKCU\SOFTWARE\DriverToolkit =>.SUP.DriverToolkit HKCU\SOFTWARE\Dropbox =>.Dropbox HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\Embarcadero =>.Embarcadero HKCU\SOFTWARE\Epson =>.EPSON HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\eSupport.com =>PUP.Optional.eSupport HKCU\SOFTWARE\Facebook =>.Facebook HKCU\SOFTWARE\Firefox =>.Mozilla Corporation HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\Freemake =>.Freemake HKCU\SOFTWARE\Gameforge4d =>.ZemiInteractive Ltd HKCU\SOFTWARE\GetData =>.GetData HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Greatis =>.Greatis Software HKCU\SOFTWARE\IM =>.Legitimate HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Intel Security =>.Intel Security HKCU\SOFTWARE\Kamuse Inc. HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKCU\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd. HKCU\SOFTWARE\mixlr HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing HKCU\SOFTWARE\Norton =>.Symantec Corporation HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\PearlMountain =>.PearlMountain HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\Reimage =>.SUP.ReimageRepair HKCU\SOFTWARE\Screaming Bee =>.Screaming Bee HKCU\SOFTWARE\Skype =>.Skype HKCU\SOFTWARE\SMADΔV HKCU\SOFTWARE\SystemSafe HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\TrueKey =>.Intel Corporation HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\WinZip Computing =>.WinZip Computing HKCU\SOFTWARE\WPI HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\AskToolbar =>Toolbar.Ask HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKCU\SOFTWARE\AppDataLow\Software\Norton =>.Symantec Corporation HKCU\SOFTWARE\AppDataLow\Software\PasswordBox =>.PasswordBox Inc ---\\ CONTENU DES DOSSIERS PROGRAMMES (325) - 28s O43 - CFD: 21/10/2017 - [0] D -- C:\Program Files\360 =>.Qihu 360 Software O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\a-squared Free O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Abedsoft O43 - CFD: 30/07/2017 - [] D -- C:\Program Files\AdBlocker =>PUP.Optional.Adblocker O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 20/09/2015 - [] D -- C:\Program Files\Annuaire Djezzy O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\Annuaire Ooredoo O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\Anuhigemihition Manager O43 - CFD: 18/06/2015 - [] D -- C:\Program Files\Application guide O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\AutorunRemover O43 - CFD: 14/08/2016 - [] D -- C:\Program Files\AV Vcs 7.0 DIAMOND O43 - CFD: 06/05/2017 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\BEL O43 - CFD: 16/03/2017 - [] D -- C:\Program Files\BikaQRss =>.SUP.BikaQ O43 - CFD: 14/03/2017 - [] D -- C:\Program Files\Biposhbonle =>.Glarysoft LTD® O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Broadcom =>.Broadcom Corporation® O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\CamStudio 2.6b =>.Pinnacle Systems, Inc. O43 - CFD: 16/05/2016 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Cisco =>.Cisco Systems, Inc. O43 - CFD: 20/07/2015 - [] D -- C:\Program Files\CodeMeter =>.Legitimate O43 - CFD: 25/01/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 08/06/2017 - [] D -- C:\Program Files\Core Temp =>.Legitimate O43 - CFD: 28/04/2017 - [] D -- C:\Program Files\Cuptony =>.Google Inc® O43 - CFD: 07/07/2015 - [] D -- C:\Program Files\Dictée O43 - CFD: 27/12/2017 - [] D -- C:\Program Files\DLL Suite =>.DLL Suite O43 - CFD: 04/11/2017 - [] D -- C:\Program Files\DriverToolkit =>.SUP.DriverToolkit O43 - CFD: 10/03/2017 - [] D -- C:\Program Files\DriverTurbo =>.SUP.DeskToolsSoft O43 - CFD: 09/02/2018 - [] D -- C:\Program Files\Dropbox =>.Dropbox, Inc® O43 - CFD: 20/01/2011 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation® O43 - CFD: 28/04/2017 - [] D -- C:\Program Files\Elex-tech =>.SUP.Elex O43 - CFD: 25/11/2017 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.® O43 - CFD: 06/05/2015 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 13/07/2017 - [] AD -- C:\Program Files\Firefox =>.Mozilla Corporation O43 - CFD: 09/05/2015 - [] D -- C:\Program Files\Foxit Software =>.Foxit Software O43 - CFD: 14/10/2015 - [] D -- C:\Program Files\Free PDF to Word Doc Converter =>.Hellopdf.com Inc. O43 - CFD: 19/06/2015 - [] D -- C:\Program Files\GameforgeLive =>.ZemiInteractive Ltd O43 - CFD: 13/06/2017 - [] D -- C:\Program Files\GetData =>.GetData Pty Ltd® O43 - CFD: 13/07/2017 - [0] D -- C:\Program Files\Glarysoft =>.GlarySoft O43 - CFD: 29/04/2017 - [] D -- C:\Program Files\Google =>.Google Inc® O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\HSPA USB Modem =>.Legitimate O43 - CFD: 19/04/2017 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield O43 - CFD: 24/05/2017 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 12/04/2017 - [] D -- C:\Program Files\Intel Security =>.Intel Corporation O43 - CFD: 25/11/2017 - [] D -- C:\Program Files\Internet Download Manager =>.Tonec Inc O43 - CFD: 26/11/2017 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\IObit =>.IObit O43 - CFD: 25/01/2018 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 27/12/2017 - [] D -- C:\Program Files\JCA2000 O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\Launch Manager =>.Legitimate O43 - CFD: 20/02/2018 - [0] D -- C:\Program Files\McAfee =>.McAfee O43 - CFD: 09/02/2018 - [] D -- C:\Program Files\McAfee Safe Connect =>.McAfee Inc. O43 - CFD: 22/02/2018 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Microsoft Sync Framework =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\Microsoft Visual Studio =>.Microsoft Corporation O43 - CFD: 15/09/2017 - [] D -- C:\Program Files\Microsoft Visual Studio 8 =>.Microsoft Corporation O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\Microsoft Works =>.Microsoft Corporation O43 - CFD: 14/05/2015 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 29/04/2017 - [] D -- C:\Program Files\MIO =>.Mio O43 - CFD: 28/04/2017 - [] D -- C:\Program Files\MK O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\MSECache =>.Microsoft Corporation O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\Picture Collage Maker Pro =>.Chengdu PearlMountain Technology Co., Ltd® O43 - CFD: 10/03/2017 - [] D -- C:\Program Files\PowerDataRecovery =>.MT Solution O43 - CFD: 03/01/2018 - [] D -- C:\Program Files\Product Key Recovery O43 - CFD: 08/03/2017 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\Return to Castle Wolfenstein O43 - CFD: 14/08/2017 - [] D -- C:\Program Files\Samsung =>.Samsung Electronics O43 - CFD: 14/08/2016 - [] D -- C:\Program Files\Screaming Bee =>.Screaming Bee Inc® O43 - CFD: 04/04/2017 - [] RD -- C:\Program Files\Skype =>.Skype O43 - CFD: 06/05/2017 - [] D -- C:\Program Files\SMADAV =>.SmadAV O43 - CFD: 25/10/2016 - [0] HD -- C:\Program Files\Temp =>.Microsoft Corporation O43 - CFD: 20/02/2018 - [] D -- C:\Program Files\TrueKey =>.Intel Corporation O43 - CFD: 12/08/2017 - [] D -- C:\Program Files\TweakBit =>.TweakBit O43 - CFD: 27/06/2017 - [] D -- C:\Program Files\UnHackMe =>.Greatis O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 31/10/2015 - [] D -- C:\Program Files\USB Disk Security =>.FlashPeak Inc O43 - CFD: 07/05/2015 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 16/07/2017 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 20/01/2011 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 15/03/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 06/05/2015 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 20/01/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 20/01/2011 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 09/03/2017 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 04/09/2016 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 13/02/2018 - [] D -- C:\Program Files\WinZip =>.Add-in Express® O43 - CFD: 27/12/2017 - [] D -- C:\Program Files\Wise =>.Legitimate O43 - CFD: 26/10/2016 - [] D -- C:\Program Files\Xvirus Personal Firewall O43 - CFD: 08/09/2016 - [] D -- C:\Program Files\ZTE =>.ZTE O43 - CFD: 16/03/2017 - [] D -- C:\Program Files\{216F5BE3-EE19-4AA3-88C0-AC88FF4056F4} O43 - CFD: 07/04/2017 - [0] D -- C:\Program Files\{FB6D409E-4A23-406E-871D-24FB63A3943E} O43 - CFD: 04/04/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\a-squared Free O43 - CFD: 06/05/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 06/05/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutorunRemover O43 - CFD: 24/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio =>.CamStudio O43 - CFD: 16/05/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 07/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dictée O43 - CFD: 09/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox =>.Dropbox O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET =>.ESET O43 - CFD: 14/10/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free PDF to Word Doc Converter =>.Hellopdf.com Inc. O43 - CFD: 19/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live =>.Gameforge 4D GmbH O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 24/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 25/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 22/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus =>.McAfee Inc. O43 - CFD: 29/01/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 29/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picture Collage Maker Pro O43 - CFD: 21/06/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Return to Castle Wolfenstein O43 - CFD: 14/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Bee =>.Screaming Bee O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint =>.Microsoft Corporation O43 - CFD: 22/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 12/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit =>.TweakBit O43 - CFD: 07/05/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 04/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 13/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 22.0 O43 - CFD: 26/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Care 365 =>.WiseCleaner.com, Inc O43 - CFD: 14/11/2016 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 22/08/2015 - [] D -- C:\ProgramData\Alwil Software =>.ALWIL Software O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 16/06/2017 - [] D -- C:\ProgramData\Ashampoo =>.Ashampoo GmbH O43 - CFD: 18/03/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\BDLogging =>.Bitdefender O43 - CFD: 11/08/2017 - [] D -- C:\ProgramData\BSD =>.Berkeley O43 - CFD: 06/05/2015 - [0] D -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 04/07/2015 - [] D -- C:\ProgramData\Common Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 25/01/2018 - [] D -- C:\ProgramData\Dropbox =>.Dropbox O43 - CFD: 30/01/2016 - [] D -- C:\ProgramData\EPSON =>.EPSON O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\ESET =>.ESET O43 - CFD: 06/05/2015 - [0] D -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 04/09/2016 - [] D -- C:\ProgramData\Foxit ContentPlatform =>.Foxit Corporation O43 - CFD: 26/12/2017 - [0] D -- C:\ProgramData\Foxit Software =>.Foxit Software O43 - CFD: 13/07/2017 - [0] D -- C:\ProgramData\Glarysoft =>.GlarySoft O43 - CFD: 13/04/2017 - [] D -- C:\ProgramData\Google =>.Google O43 - CFD: 05/04/2017 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\IObit =>.IObit O43 - CFD: 10/03/2017 - [] D -- C:\ProgramData\Isolated Storage =>.Microsoft Corporation O43 - CFD: 15/03/2017 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab O43 - CFD: 26/01/2018 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 22/02/2018 - [] D -- C:\ProgramData\McAfee Security Scan =>.McAfee O43 - CFD: 06/05/2015 - [0] D -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 04/07/2015 - [] D -- C:\ProgramData\MFAData =>.AVG Software O43 - CFD: 12/04/2017 - [] D -- C:\ProgramData\mia96B5.tmp O43 - CFD: 25/02/2018 - [] D -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 23/01/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 06/05/2015 - [0] D -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 27/12/2017 - [0] D -- C:\ProgramData\nanoav O43 - CFD: 04/04/2017 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 04/09/2016 - [] D -- C:\ProgramData\NortonInstaller =>.Symantec O43 - CFD: 25/01/2018 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 20/10/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 05/04/2016 - [] D -- C:\ProgramData\PC1Data =>.Dell O43 - CFD: 29/06/2015 - [] D -- C:\ProgramData\PearlMountain =>.PearlMountain O43 - CFD: 27/04/2017 - [] D -- C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 26/06/2017 - [0] D -- C:\ProgramData\RegRun =>.Greatis Software O43 - CFD: 12/04/2017 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 15/03/2017 - [] D -- C:\ProgramData\Screaming Bee =>.Screaming Bee O43 - CFD: 04/04/2017 - [] D -- C:\ProgramData\Skype =>.Skype O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 16/06/2017 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 12/04/2017 - [] D -- C:\ProgramData\TrueKey =>.Intel Corporation O43 - CFD: 12/08/2017 - [] D -- C:\ProgramData\TweakBit =>.TweakBit O43 - CFD: 21/12/2015 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\USBSecurity O43 - CFD: 13/02/2018 - [] D -- C:\ProgramData\WinZip =>.WinZip O43 - CFD: 21/06/2017 - [0] D -- C:\ProgramData\{0897014C-63E3-47DF-8A5F-4399CC5D61B9} O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} O43 - CFD: 19/04/2017 - [] D -- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690} O43 - CFD: 14/11/2016 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe O43 - CFD: 20/10/2017 - [] D -- C:\Program Files\Common Files\AV =>.Avast O43 - CFD: 03/09/2015 - [] D -- C:\Program Files\Common Files\Bitdefender =>.Bitdefender O43 - CFD: 16/07/2017 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer O43 - CFD: 25/10/2016 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Common Files\Intel =>.Intel Corporation O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Common Files\Intel Corporation =>.Intel Corporation O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\Common Files\IObit =>.IObit O43 - CFD: 19/04/2017 - [] D -- C:\Program Files\Common Files\iolo =>.Iolo Technologies O43 - CFD: 25/01/2018 - [] D -- C:\Program Files\Common Files\Java =>.Oracle O43 - CFD: 26/11/2017 - [] D -- C:\Program Files\Common Files\McAfee =>.McAfee O43 - CFD: 24/05/2015 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Common Files\postureAgent =>.Microsoft Corporation O43 - CFD: 14/08/2016 - [] D -- C:\Program Files\Common Files\Screaming Bee =>.Screaming Bee O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [0] D -- C:\Program Files\Common Files\SWF Studio =>.SWF Studio O43 - CFD: 10/05/2015 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation O43 - CFD: 08/05/2015 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation O43 - CFD: 05/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 16/06/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\ashampoo =>.Ashampoo GmbH O43 - CFD: 14/08/2016 - [] D -- C:\Users\hatzi\AppData\Roaming\Avnex =>.Avnex O43 - CFD: 24/11/2017 - [0] D -- C:\Users\hatzi\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 25/01/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 15/03/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 28/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Elex-tech =>.SUP.Elex O43 - CFD: 15/03/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\EPSON =>.EPSON O43 - CFD: 28/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Firefox =>.Mozilla Corporation O43 - CFD: 15/03/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 13/07/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\GlarySoft =>.GlarySoft O43 - CFD: 05/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Google =>.Google O43 - CFD: 11/09/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Graboid Inc O43 - CFD: 24/05/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 24/05/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Intel Corporation =>.Intel Corporation O43 - CFD: 21/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\IObit =>.IObit O43 - CFD: 13/07/2017 - [0] D -- C:\Users\hatzi\AppData\Roaming\iolo =>.Iolo Technologies O43 - CFD: 20/06/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 26/01/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\McAfee Safe Connect =>.McAfee Inc. O43 - CFD: 21/09/2017 - [] SD -- C:\Users\hatzi\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 05/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 29/06/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\PearlMountain =>.PearlMountain O43 - CFD: 13/03/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Profiles =>.Microsoft Corporation O43 - CFD: 17/01/2016 - [] D -- C:\Users\hatzi\AppData\Roaming\RPEng =>PUP.Optional.Generic O43 - CFD: 15/09/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Samsung =>.Samsung Electronics O43 - CFD: 15/03/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Screaming Bee =>.Screaming Bee O43 - CFD: 27/12/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Skype =>.Skype O43 - CFD: 28/04/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Smadav =>.SmadAV O43 - CFD: 25/01/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\Sun =>.Oracle O43 - CFD: 21/01/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 02/01/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\WindowsLoader O43 - CFD: 08/05/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 08/05/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Zbshareware Lab =>.Zbshareware Lab O43 - CFD: 25/02/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 26/01/2018 - [] D -- C:\Users\hatzi\AppData\Local\Adobe =>.Adobe O43 - CFD: 15/02/2018 - [] D -- C:\Users\hatzi\AppData\Local\assembly =>.Assembly O43 - CFD: 04/02/2018 - [] D -- C:\Users\hatzi\AppData\Local\AutorunX2 O43 - CFD: 16/07/2017 - [] D -- C:\Users\hatzi\AppData\Local\CEF =>.CEF O43 - CFD: 16/07/2017 - [0] D -- C:\Users\hatzi\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 27/12/2017 - [] D -- C:\Users\hatzi\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 04/07/2017 - [0] D -- C:\Users\hatzi\AppData\Local\DriverToolkit =>.SUP.DriverToolkit O43 - CFD: 27/01/2018 - [] D -- C:\Users\hatzi\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 30/12/2017 - [] D -- C:\Users\hatzi\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 04/07/2017 - [] D -- C:\Users\hatzi\AppData\Local\ESET =>.ESET O43 - CFD: 13/05/2017 - [] D -- C:\Users\hatzi\AppData\Local\Google =>.Google O43 - CFD: 27/12/2017 - [] D -- C:\Users\hatzi\AppData\Local\GWX =>.GWX O43 - CFD: 19/06/2015 - [] D -- C:\Users\hatzi\AppData\Local\Kamuse O43 - CFD: 29/04/2017 - [0] D -- C:\Users\hatzi\AppData\Local\Kitty =>.SUP.Elex O43 - CFD: 08/04/2017 - [] D -- C:\Users\hatzi\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 26/01/2018 - [] D -- C:\Users\hatzi\AppData\Local\McAfee_Inc =>.McAfee Inc. O43 - CFD: 21/09/2017 - [] D -- C:\Users\hatzi\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/01/2018 - [] D -- C:\Users\hatzi\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 19/08/2016 - [] D -- C:\Users\hatzi\AppData\Local\mixlr O43 - CFD: 04/04/2016 - [] D -- C:\Users\hatzi\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 14/01/2016 - [] D -- C:\Users\hatzi\AppData\Local\Nico Mak Computing =>.Nico Mak Computing O43 - CFD: 15/03/2017 - [] D -- C:\Users\hatzi\AppData\Local\NPE =>.NPE O43 - CFD: 15/03/2017 - [] D -- C:\Users\hatzi\AppData\Local\Nuwotmolient O43 - CFD: 09/04/2017 - [] D -- C:\Users\hatzi\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 26/12/2017 - [] D -- C:\Users\hatzi\AppData\Local\Skype =>.Skype O43 - CFD: 25/02/2018 - [] D -- C:\Users\hatzi\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 27/12/2017 - [] D -- C:\Users\hatzi\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 13/02/2018 - [] D -- C:\Users\hatzi\AppData\Local\WinZip =>.WinZip O43 - CFD: 25/02/2018 - [] D -- C:\Users\hatzi\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 09/04/2017 - [0] D -- C:\Users\hatzi\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 05/04/2017 - [] D -- C:\Users\hatzi\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\hatzi\AppData\LocalLow\EmieBrowserModeList =>.Enterprise mode Site List Mgr O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\hatzi\AppData\LocalLow\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 12/06/2015 - [0] SHD -- C:\Users\hatzi\AppData\LocalLow\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 19/04/2017 - [] D -- C:\Users\hatzi\AppData\LocalLow\IObit =>.IObit O43 - CFD: 08/04/2017 - [] SD -- C:\Users\hatzi\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 26/12/2017 - [] D -- C:\Users\hatzi\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 25/01/2018 - [] D -- C:\Users\hatzi\AppData\LocalLow\Oracle =>.Oracle O43 - CFD: 31/07/2015 - [] D -- C:\Users\hatzi\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 21/01/2018 - [] D -- C:\Users\hatzi\Desktop\Camera =>.CyberLink Corporation O43 - CFD: 27/06/2017 - [] D -- C:\Users\hatzi\Desktop\File by MGM O43 - CFD: 13/02/2018 - [] D -- C:\Users\hatzi\Desktop\Le CCO Jean-Pierre - Recherche Google_files O43 - CFD: 24/02/2018 - [] D -- C:\Users\hatzi\Desktop\Nouveau dossier O43 - CFD: 21/01/2018 - [] D -- C:\Users\hatzi\Desktop\ond O43 - CFD: 24/02/2018 - [] D -- C:\Users\hatzi\Desktop\Pictures O43 - CFD: 11/04/2016 - [] D -- C:\Users\hatzi\Desktop\المنظمة الوطنية لتطوير الفلاحة O43 - CFD: 17/05/2017 - [] D -- C:\Users\hatzi\Desktop\بسم الله الرحمان الرحيم O43 - CFD: 14/07/2009 - [] RD -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 12/08/2017 - [] RD -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 08/05/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ar speed reading O43 - CFD: 21/06/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] RD -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 03/01/2018 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Product Key Recovery O43 - CFD: 13/06/2017 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Files v5 =>.GetData O43 - CFD: 22/08/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Photos O43 - CFD: 12/08/2017 - [] RD -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 14/08/2016 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Voice Changer Software DIAMOND O43 - CFD: 22/09/2015 - [] D -- C:\Users\hatzi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 09/04/2017 - [0] D -- C:\Users\Default\AppData\Local\AMD =>.AMD O43 - CFD: 16/03/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 09/04/2017 - [0] D -- C:\Users\Default User\AppData\Local\AMD =>.AMD O43 - CFD: 16/03/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 17/02/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avira =>.Avira Software O43 - CFD: 04/02/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 09/02/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 28/04/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\ESET =>.ESET O43 - CFD: 14/08/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google O43 - CFD: 06/02/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Intel =>.Intel Corporation O43 - CFD: 20/10/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\McAfee File Lock =>.McAfee Inc. O43 - CFD: 14/08/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/05/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 12/04/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\tkdata =>.TK-Data O43 - CFD: 25/02/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\TrueKey =>.Intel Corporation O43 - CFD: 22/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\YSearchUtil =>.Yahoo! inc. O43 - CFD: 16/07/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\360safe =>.Qihu 360 Software O43 - CFD: 14/08/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 13/07/2015 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Bitdefender =>.Bitdefender O43 - CFD: 09/02/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 21/05/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\ESET =>.ESET O43 - CFD: 04/09/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 14/08/2016 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Google =>.Google O43 - CFD: 19/04/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit O43 - CFD: 20/10/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 17/01/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\McAfee =>.McAfee O43 - CFD: 24/09/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 11/08/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Performix LLC =>.Performix LLC O43 - CFD: 05/07/2015 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\QuickScan =>.Bitdefender O43 - CFD: 12/04/2017 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Solvusoft =>.SUP.Solvusoft ---\\ ShellIconOverlayIdentifiers (SIOI) (19) - 1s O106 - SIOI: DropboxExt1 Class [ DropboxExt01] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt7 Class [ DropboxExt02] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt9 Class [ DropboxExt03] - {FB314EE1-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt3 Class [ DropboxExt04] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt2 Class [ DropboxExt05] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt4 Class [ DropboxExt06] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt5 Class [ DropboxExt07] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt8 Class [ DropboxExt08] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt10 Class [ DropboxExt09] - {FB314EE2-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: DropboxExt6 Class [ DropboxExt10] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: ESD Shell Icon Overlay Identifier [ESD Shell Icon Overlay Identifier] - {AF106685-9C86-48AF-8524-8F485C459E17}. (.DESlock Limited - ESD Shell Overlay Handler.) -- C:\Program Files\ESET\ESET Secure Data\esdovrly.dll {639088F7E206FDF42906231BD0C3097D} O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (42) - 2s O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH1: DropboxExt - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O108 - CMH1: ESET Security Shell - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH1: MEGA (Context menu) - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (.Orphan.) O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinZip - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshlstb.dll =>.Corel Corporation® O108 - CMH1: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH2: Compatibility - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation O108 - CMH2: DropboxExt - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O108 - CMH2: ESET Security Shell - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH2: WinZip - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshlstb.dll =>.Corel Corporation® O108 - CMH3: a-squared Free Shell Extension - {A155339D-CCCD-4714-85EB-3754B804C9DF} . (.Emsi Software GmbH - a-squared Free shell extension.) -- C:\Program Files\a-squared Free\a2freecontmenu.dll =>.Emsi Software GmbH O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH3: SendTo - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH3: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH4: DropboxExt - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH4: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: WinZip - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshlstb.dll =>.Corel Corporation® O108 - CMH4: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH5: DropboxExt - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files\Dropbox\Client\DropboxExt.19.0.dll =>.Dropbox, Inc® O108 - CMH5: Gadgets - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH5: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH6: a-squared Free Shell Extension - {A155339D-CCCD-4714-85EB-3754B804C9DF} . (.Emsi Software GmbH - a-squared Free shell extension.) -- C:\Program Files\a-squared Free\a2freecontmenu.dll =>.Emsi Software GmbH O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH6: ESET Security Shell - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH6: Library Location - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation O108 - CMH6: Offline Files - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation O108 - CMH6: WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinZip - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\wzshlstb.dll =>.Corel Corporation® O108 - CMH6: XXX Groove GFS Context Menu Handler XXX - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation® O108 - CMH7: a-squared Free Shell Extension - {A155339D-CCCD-4714-85EB-3754B804C9DF} . (.Emsi Software GmbH - a-squared Free shell extension.) -- C:\Program Files\a-squared Free\a2freecontmenu.dll =>.Emsi Software GmbH O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: ESET Security Shell - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.® O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (5) - 1s O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Adobe Systems Incorporated® O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\sppsvc.exe - (.Microsoft Corporation - Service de la plateforme de protection logi.) [Debugger\\KMS-R@1nHook.exe] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (109) - 25s O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422976] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:17 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [297552] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [146512] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [14400] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [80256] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [159312] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:38:37 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [22400] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [76368] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:26:15 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [86608] =>.Microsoft Windows® O58 - SDL:2009/07/13 23:02:49 A . (.Broadcom Corporation - Pilote unifié NDIS6.x Broadcom NetXtreme Gi.) -- C:\Windows\System32\drivers\b57nd60x.sys [229888] =>.Broadcom Corporation O58 - SDL:2011/11/04 09:21:18 A . (.Broadcom Corporation - Broadcom xD Picture Card Bus Driver.) -- C:\Windows\System32\drivers\b57xdbd.sys [60968] =>.Broadcom Corporation® O58 - SDL:2011/11/04 09:21:20 A . (.Broadcom Corporation - Broadcom xD Picture Card Miniport Driver.) -- C:\Windows\System32\drivers\b57xdmp.sys [17960] =>.Broadcom Corporation® O58 - SDL:2015/05/08 20:21:41 A . (.Broadcom Corporation - Broadcom iLine10(tm) PCI Network Adapter Pr.) -- C:\Windows\System32\drivers\bcm42rly.sys [18496] =>.Broadcom Corporation® O58 - SDL:2015/05/06 00:20:06 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter Virtual Wir.) -- C:\Windows\System32\drivers\bcmvwl32.sys [17728] =>.Broadcom Corporation® O58 - SDL:2015/05/06 00:20:11 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL6.SYS [4268096] =>.Broadcom Corporation® O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd. O58 - SDL:2009/07/13 23:53:28 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd. O58 - SDL:2009/07/14 01:57:25 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [272128] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:32 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd. O58 - SDL:2009/07/13 23:53:33 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd. O58 - SDL:2011/09/02 13:37:10 A . (.Broadcom Corporation - Broadcom Memory Stick Driver.) -- C:\Windows\System32\drivers\bScsiMSx.sys [43560] =>.Broadcom Corporation® O58 - SDL:2012/06/01 16:36:08 A . (.Broadcom Corporation - Broadcom SD 3.0 Driver.) -- C:\Windows\System32\drivers\bScsiSDx.sys [52856] =>.Broadcom Corporation® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbdx.sys [430080] =>.Broadcom Corporation O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - McAfee Personal Firewall IDS Plugin.) -- C:\Windows\System32\drivers\cfwids.sys [73200] =>.McAfee, Inc.® O58 - SDL:2009/07/14 02:26:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [15952] =>.Microsoft Windows® O58 - SDL:2008/08/29 16:54:40 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [103552] =>.Mobile Connector O58 - SDL:2018/02/08 21:10:38 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\Windows\System32\drivers\dbx-canary.sys [35408] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2018/02/08 21:10:38 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\Windows\System32\drivers\dbx-dev.sys [35432] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2018/02/08 21:10:38 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\Windows\System32\drivers\dbx-stable.sys [35408] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2009/07/14 02:20:28 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [70720] =>.Microsoft Windows® O58 - SDL:2016/08/04 09:25:52 A . (.DESlock Ltd. - DESlock+ Encryption MiniFilter.) -- C:\Windows\System32\drivers\dlmfenc.sys [145920] {041E44B80741628879A0559B824FF645} =>.DESlock Ltd. O58 - SDL:2016/08/09 11:33:04 A . (.DESlock Ltd. - DESlock+ Kernel Mode Crypto Core.) -- C:\Windows\System32\drivers\dlpcrypt.sys [108656] =>.DESlock Limited® O58 - SDL:2016/08/04 09:25:52 A . (.DESlock Ltd. - DESlock+ Virtual Disk Driver.) -- C:\Windows\System32\drivers\dlpvdisk.sys [82488] {24F9ACA2F54D7A56B1D944DE42032217} =>.DESlock Ltd. O58 - SDL:2017/04/28 16:14:33 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation O58 - SDL:2017/12/08 23:45:59 A . (.ESET - Amon monitor.) -- C:\Windows\System32\drivers\eamonm.sys [114552] =>.ESET, spol. s r.o.® O58 - SDL:2017/12/08 23:45:59 A . (.ESET - Devmon monitor.) -- C:\Windows\System32\drivers\edevmon.sys [90640] =>.ESET, spol. s r.o.® O58 - SDL:2017/12/08 23:45:59 A . (.ESET - ESET Helper driver.) -- C:\Windows\System32\drivers\ehdrv.sys [141480] =>.ESET, spol. s r.o.® O58 - SDL:2017/12/08 23:45:59 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\Windows\System32\drivers\ekbdflt.sys [42816] =>.ESET, spol. s r.o.® O58 - SDL:2009/07/14 02:20:28 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [453712] =>.Microsoft Windows® O58 - SDL:2017/12/08 23:46:00 A . (.ESET - ESET Firewall Driver.) -- C:\Windows\System32\drivers\epfw.sys [71856] =>.ESET, spol. s r.o.® O58 - SDL:2017/12/08 23:46:00 A . (.ESET - Epfw NDIS LightWeight Filter.) -- C:\Windows\System32\drivers\EpfwLWF.sys [53184] =>.ESET, spol. s r.o.® O58 - SDL:2017/12/08 23:46:01 A . (.ESET - ESET Firewall Driver.) -- C:\Windows\System32\drivers\epfwwfp.sys [90136] =>.ESET, spol. s r.o.® O58 - SDL:2012/03/07 14:48:38 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\Windows\System32\drivers\ETD.sys [207152] =>.ELAN Microelectronics Corporation® O58 - SDL:2009/07/13 23:02:48 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbdx.sys [3100160] =>.Broadcom Corporation O58 - SDL:2013/09/04 13:57:42 A . (.ThreatTrack Security - GFI Utility driver.) -- C:\Windows\System32\drivers\gfiutil.sys [24040] =>.GFI Software (Florida) Inc.® O58 - SDL:2009/07/13 23:54:14 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [26624] =>.Hauppauge Computer Works, Inc. O58 - SDL:2011/11/10 09:52:02 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECI.sys [46080] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:28 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [67152] =>.Microsoft Windows® O58 - SDL:2012/02/01 15:06:58 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x86.) -- C:\Windows\System32\drivers\iaStor.sys [470808] =>.Intel Corporation® O58 - SDL:2011/03/11 06:38:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - ia32.) -- C:\Windows\System32\drivers\iaStorV.sys [332160] =>.Microsoft Windows® O58 - SDL:2012/03/27 03:05:14 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd32.sys [13212672] =>.Intel Corporation O58 - SDL:2009/07/14 02:20:36 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41040] =>.Microsoft Windows® O58 - SDL:2011/12/06 12:22:02 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [280576] =>.Intel(R) Corporation O58 - SDL:2016/05/19 07:42:01 A . (.Elex do Brasil Participações Ltda - iSafeNetFilter SDK WFP Driver (WPP).) -- C:\Windows\System32\drivers\iSafeNetFilter.sys [59152] =>.SUP.Elex O58 - SDL:2012/01/18 23:30:34 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\Windows\System32\drivers\k57nd60x.sys [370728] =>.Broadcom Corporation® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [95824] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:37 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89168] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [54864] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96848] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [30800] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:20:36 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [235584] =>.Microsoft Windows® O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - McAfee Arbitrary Access Control Driver.) -- C:\Windows\System32\drivers\mfeaack.sys [371184] =>.McAfee, Inc.® O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - Anti-Virus File System Filter Driver.) -- C:\Windows\System32\drivers\mfeavfk.sys [278000] =>.McAfee, Inc.® O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - McAfee Core Firewall Engine Driver.) -- C:\Windows\System32\drivers\mfefirek.sys [392176] =>.McAfee, Inc.® O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - McAfee Link Driver.) -- C:\Windows\System32\drivers\mfehidk.sys [717296] =>.McAfee, Inc.® O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - AAC Protected Launch Plugin Driver.) -- C:\Windows\System32\drivers\mfeplk.sys [99824] =>.McAfee, Inc.® O58 - SDL:2017/06/26 08:25:56 A . (.McAfee, Inc. - Anti-Virus Mini-Firewall Driver.) -- C:\Windows\System32\drivers\mfewfpk.sys [210928] =>.McAfee, Inc.® O58 - SDL:2009/07/14 02:20:44 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [44624] =>.Microsoft Windows® O58 - SDL:2015/05/08 20:22:04 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 x86) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35088] =>.CACE Technologies, Inc.® O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [117120] =>.Microsoft Windows® O58 - SDL:2011/03/11 06:39:00 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [143744] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1383488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106064] =>.Microsoft Windows® O58 - SDL:2013/09/13 11:54:06 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2840664] =>.Realtek Semiconductor Corp® O58 - SDL:2016/03/28 18:56:46 A . (.Screaming Bee Inc - Screaming Bee Virtual Microphone.) -- C:\Windows\System32\drivers\ScreamingBAudio.sys [49856] =>.Screaming Bee Inc® O58 - SDL:2009/07/13 21:50:20 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Rovi Corporation O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [40016] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:19:04 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [77888] =>.Microsoft Windows® O58 - SDL:2017/01/12 14:31:58 A . (...) -- C:\Windows\System32\drivers\staport.sys [39832] =>.AVAST Software a.s.® O58 - SDL:2009/07/14 02:19:04 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [21072] =>.Microsoft Windows® O58 - SDL:2017/10/10 20:42:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [23040] =>.The OpenVPN Project O58 - SDL:2016/07/13 13:54:10 A . (.ShiningMorning Inc. - .) -- C:\Windows\System32\drivers\vasdDev.sys [1447408] =>.ShiningMorning Inc. O58 - SDL:2008/12/26 11:56:04 A . (.Avnex - Avnex Ltd. Virtual Audio Device (WDM).) -- C:\Windows\System32\drivers\vcsvad.sys [17792] =>.Avnex O58 - SDL:2016/08/04 09:25:52 A . (.DESlock Ltd. - DESlock+ Virtual Token Driver Ex.) -- C:\Windows\System32\drivers\vdlptkn2.sys [125752] {24F9ACA2F54D7A56B1D944DE42032217} =>.DESlock Ltd. O58 - SDL:2009/07/14 02:19:10 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [16976] =>.Microsoft Windows® O58 - SDL:2017/04/28 16:14:33 A . (.VMware, Inc. - VMware Audio Adapter Driver.) -- C:\Windows\System32\drivers\vmaudio.sys [25008] =>.VMware, Inc.® O58 - SDL:2017/04/28 16:14:34 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\System32\drivers\vmci.sys [54960] =>.VMware, Inc.® O58 - SDL:2017/04/28 16:14:34 A . (.VMware, Inc. - VMware Replay Debugging Driver.) -- C:\Windows\System32\drivers\vmdebug.sys [19504] =>.VMware, Inc.® O58 - SDL:2017/04/28 16:14:34 A . (.VMware, Inc. - VMware HGFS File System Driver.) -- C:\Windows\System32\drivers\vmhgfs.sys [117552] =>.VMware, Inc.® O58 - SDL:2017/04/28 16:14:35 A . (.VMware, Inc. - VMware Pointing Device Driver.) -- C:\Windows\System32\drivers\vmmouse.sys [11696] =>.VMware, Inc.® O58 - SDL:2017/04/28 16:14:35 A . (.VMware, Inc. - VMware SVGA II Miniport.) -- C:\Windows\System32\drivers\vmx_svga.sys [63920] =>.VMware, Inc.® O58 - SDL:2009/07/14 02:19:11 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [141904] =>.Microsoft Windows® O58 - SDL:2017/08/11 09:45:52 A . (...) -- C:\Windows\System32\drivers\vwifikerneldrv.sys [230] =>.Unknown O58 - SDL:2009/07/13 22:40:41 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:44 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:40 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:43 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:23 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:31 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:35 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:39 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:27 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:11 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:15 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:17 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:19 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation O58 - SDL:2009/07/13 22:40:13 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- "C:\Windows\System32\WScript.exe" "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (11) - 7s O69 - SBI: prefs.js [hatzi - 436dt1k2.default] user_pref("browser.newtab.url", "http://www.trotux.com/?z=440dd22b4bd6f0d50bf0f13g4z4bftfz8o5tat3t0q&from=isr&uid=ST500LT012-9WS14[...] =>.SUP.Trotux O69 - SBI: prefs.js [hatzi - 436dt1k2.default] user_pref("browser.search.defaultenginename", "trotux"); =>.SUP.Trotux O69 - SBI: prefs.js [hatzi - 436dt1k2.default] user_pref("browser.search.searchengine.hp", "http://www.trotux.com/?z=440dd22b4bd6f0d50bf0f13g4z4bftfz8o5tat3t0q&from=isr&uid=ST50[...] =>.SUP.Trotux O69 - SBI: prefs.js [hatzi - 436dt1k2.default] user_pref("browser.search.searchengine.sp", "http://www.trotux.com/search/?from=isr&q={searchTerms}&type=sp&uid=ST500LT012-9WS142_[...] =>.SUP.Trotux O69 - SBI: prefs.js [hatzi - 436dt1k2.default] user_pref("browser.search.searchengine.url", "http://www.trotux.com/search/?from=isr&q={searchTerms}&type=sp&uid=ST500LT012-9WS142[...] =>.SUP.Trotux O69 - SBI: prefs.js [hatzi - 436dt1k2.default] user_pref("browser.search.selectedEngine", "trotux"); =>.SUP.Trotux O69 - SBI: SearchScopes [HKCU]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU]{50FC8199-D546-45EB-B267-CF14AFB21448} - (Ask Search) - http://websearch.ask.com/ =>Toolbar.Ask O69 - SBI: SearchScopes [HKCU]{76DEFAE6-09B2-40B2-8F8A-5A6A5D5CE4EB} [DefaultScope] - (Yahoo) - http://search.yahoo.com/ =>.Yahoo! Inc. O69 - SBI: SearchScopes [HKLM]{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - http://www.google.com/ =>.Google Inc. O69 - SBI: SearchScopes [HKLM]{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc. ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (32) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [62464] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [606720] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [679424] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [475136] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [286208] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [75264] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [300544] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242176] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [523776] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2092032] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [585728] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [328192] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [499712] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [21504] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [114688] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [49664] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [61440] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [98304] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [164864] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [751104] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [113664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [168960] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [37376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [76800] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [149504] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (3) - 3s O87 - FAEL: "{B799C12E-CAE9-429A-B4F0-814E82EAF66E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\GameforgeLive\gfl_client.exe =>.Gameforge Productions GmbH O87 - FAEL: "TCP Query User{3B9B45AF-E96F-42BC-A1F9-398D426BE6E0}C:\program files\return to castle wolfenstein\wolfmp.exe" [In-None-P6-TRUE] .(...) -- C:\program files\return to castle wolfenstein\wolfmp.exe O87 - FAEL: "UDP Query User{F92B8D1D-887F-459B-BEBD-AF8672431D13}C:\program files\return to castle wolfenstein\wolfmp.exe" [In-None-P17-TRUE] .(...) -- C:\program files\return to castle wolfenstein\wolfmp.exe ---\\ CODES PRODUITS LOGICIELS (1) - 2s O90 - PUC: "999D2A873764CCF418E8750BFAF8B307" . (.BikaQ Rss.) =>.SUP.BikaQ ---\\ PACKAGES WINDOWS INSTALLER (33) - 32s [MD5.58DEE35A989A02EE763E72F6D7909443] [WIS][2017/03/16 12:42:06] (.BikaQ.) -- C:\Windows\Installer\1105bb.msi [834048] =>.SUP.BikaQ [MD5.331C4D2DE6A589B509A9BD8A35EDF351] [WIS][2012/02/13 21:24:08] (.Broadcom Corporation - Broadcom Driver Installer.) -- C:\Windows\Installer\11e2b6.msi [1509888] =>.Broadcom Corporation [MD5.20504BC8E6D72F580BCDACAC7B094351] [WIS][2015/05/08 20:21:59] (.Cisco Systems, Inc..) -- C:\Windows\Installer\11e2f6.msi [1544704] =>.Cisco Systems, Inc. [MD5.B216CF48909F129A831A2BEAFA2232BE] [WIS][2015/05/08 20:21:59] (.Cisco Systems, Inc..) -- C:\Windows\Installer\11e2fc.msi [829440] =>.Cisco Systems, Inc. [MD5.AB68907A3FF3A7C951960AECF42BAE58] [WIS][2015/05/08 20:21:59] (.Cisco Systems, Inc..) -- C:\Windows\Installer\11e302.msi [1304576] =>.Cisco Systems, Inc. [MD5.86A2C7B6DE8947ECE8563B06090674BA] [WIS][2016/08/05 03:10:50] (.Screaming Bee Inc. - MorphVOX Pro.) -- C:\Windows\Installer\15e853f.msi [6443008] =>.Screaming Bee Inc. [MD5.94122A175DEBEC63904BD8744B14858B] [WIS][2015/05/08 17:34:37] (.InstallShield - Broadcom Card Reader Driver Installer.) -- C:\Windows\Installer\1d0a85.msi [2798080] =>.InstallShield [MD5.02AC00F770E9926861C82648A46ED034] [WIS][2018/01/25 13:33:55] (.Oracle Corporation - Java SE Runtime Environment 8 Update 161.) -- C:\Windows\Installer\224fab.msi [35008512] =>.Oracle Corporation [MD5.1CE69AAB7A515676FA76AD9072411664] [WIS][2018/01/25 13:33:49] (.Oracle Corporation - Java Auto Updater.) -- C:\Windows\Installer\224fb8.msi [765952] =>.Oracle Corporation [MD5.B536BE1C2C9BB7D7CD0705E50E570333] [WIS][2012/02/03 07:36:38] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\Windows\Installer\2fbe16.msi [2711552] =>.Intel Corporation [MD5.BE07AEB0F18AA12AC687E08887DB4808] [WIS][2017/04/13 22:16:13] (.Google Inc. - Google Toolbar for Internet Explorer.) -- C:\Windows\Installer\38438b.msi [45056] =>.Google Inc. [MD5.F6CB92312A0EF765241D7AC368C3D0B6] [WIS][2017/11/25 14:57:45] (.ESET, spol. s r.o. - ESET Security.) -- C:\Windows\Installer\43d131.msi [166125568] =>.ESET, spol. s r.o. [MD5.F2B947DE87F6238362B5004962332FAA] [WIS][2018/01/25 10:21:20] (.Dropbox, Inc. - Dropbox Update Helper.) -- C:\Windows\Installer\512c6.msi [31232] =>.Dropbox, Inc. [MD5.F68A7F1F774101A91DEC1911C4651BB8] [WIS][2018/02/13 13:35:30] (.Corel Corporation - Utilitaire de Compression WinZip.) -- C:\Windows\Installer\6ed7c.msi [54497280] =>.Corel Corporation [MD5.D2C57616ED1A550E3312752DEC15C263] [WIS][2015/07/08 11:02:27] (.HSPA - HSPA USB Modem.) -- C:\Windows\Installer\82427.msi [7444992] =>.HSPA [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\Windows\Installer\956655.msi [2805760] =>.Adobe Systems Incorporated [MD5.03D9574A2E857AD97A759DE29E678CF0] [WIS][2016/11/16 12:39:16] (.ESET - ESET Premium Line Encryption.) -- C:\Windows\Installer\aac884.msi [5041664] =>.ESET [MD5.F7F84E6107E2AFC91EFE7789235A8415] [WIS][2018/02/13 13:24:51] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\Windows\Installer\c3b95.msi [884224] =>.Adobe Systems Incorporated [MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/16 22:27:30] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\ddb69.msi [40960] =>.Google Inc. [MD5.BCC43969BE02109C8AC7141C7C3CB9CA] [WIS][2017/08/11 11:04:59] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\167340.msp [2031616] =>.Adobe Systems, Incorporated [MD5.E3869EFD0836C950E46B02D3CBC67184] [WIS][2017/01/09 04:41:00] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\1cfc4e7.msp [25853952] =>.Adobe Systems, Incorporated [MD5.3617A09ABC822D955214EBE86A991CF3] [WIS][2017/11/29 11:42:28] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\453bcb.msp [1355776] =>.Adobe Systems, Incorporated [MD5.54E67DC4C93F69EE8A1FA4721380C465] [WIS][2013/10/14 09:39:24] (. - Customization Patch.) -- C:\Windows\Installer\9b460.msp [5615616] [MD5.F767152C881F505C5BBAC71A825C1263] [WIS][2017/02/21 13:33:51] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\bb71b.msp [12845056] =>.Adobe Systems, Incorporated [MD5.A9095FC652E0273E10F1D9481C59067D] [WIS][2018/02/23 14:25:19] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\bd415.msp [1343488] =>.Adobe Systems, Incorporated [MD5.0762EDB0E4C8D62A4328C3360BC7AD2C] [WIS][2017/07/11 05:57:12] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\c11a3.msp [1732608] =>.Adobe Systems, Incorporated [MD5.B5B294D6E8CF1D6C89EC5F6CC580C8CE] [WIS][2017/04/05 03:14:24] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\c49bb.msp [92508160] =>.Adobe Systems, Incorporated [MD5.2BF0093E60C2D00175DD9F550D900CB7] [WIS][2017/08/07 09:20:05] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\cf917.msp [70610944] =>.Adobe Systems, Incorporated [MD5.77AB51250501ADDD4D491DECDB6121FD] [WIS][2017/08/28 17:40:46] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\d4ad0.msp [2424832] =>.Adobe Systems, Incorporated [MD5.82F476D2A7125BB7EBF5A2A657BAB293] [WIS][2017/11/13 05:26:16] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\ddb61.msp [23506944] =>.Adobe Systems, Incorporated [MD5.A58EAEAA86B7D4FA1891CA2EEDDCA3DD] [WIS][2018/02/12 15:26:08] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\de8f1.msp [103362560] =>.Adobe Systems, Incorporated [MD5.5B6FAE3BE9764394A6B3061DD2D63F96] [WIS][2016/11/03 08:25:20] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\dec59.msp [75157504] =>.SUP.Obsolete.Adobe [MD5.72C91237F7C7A0527FA5F0752CF81A66] [WIS][2017/01/19 11:28:55] (.Adobe Systems, Incorporated.) -- C:\Windows\Installer\e0c15.msp [1937408] =>.Adobe Systems, Incorporated ---\\ RECHERCHE DE CLÉS DE REGISTRE Tracing (8) - 4s HKLM\SOFTWARE\Microsoft\Tracing\BikaQ_RASAPI32 =>.SUP.BikaQ HKLM\SOFTWARE\Microsoft\Tracing\BikaQ_RASMANCS =>.SUP.BikaQ HKLM\SOFTWARE\Microsoft\Tracing\ReimagePackage_RASAPI32 =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimagePackage_RASMANCS =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASAPI32 =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASMANCS =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\Reimage_RASAPI32 =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\Reimage_RASMANCS =>.SUP.ReimageRepair ---\\ SCAN ADDITIONNEL (52) - 22s HKLM\SYSTEM\CurrentControlSet\Services\KMS-R@1n =>HackTool.WinActivator C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator C:\Windows\AutoKMS\AutoKMS.exe =>HackTool.AutoKMS C:\Windows\System32\Tasks\AutoKMS =>HackTool.AutoKMS C:\Windows\System32\Tasks\R@1n-KMS\Office14ProPlus =>HackTool.WinActivator C:\Windows\KMS-R@1nHook.exe =>HackTool.AutoKMS HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\iSafe =>.SUP.Elex HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{78A2D999-4673-4FCC-818E-57B0AF8F3B70} =>.SUP.BikaQ HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B13115DF-4430-4102-8435-A1554528FD0B} =>.SUP.Trotux HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe =>.SUP.Elex HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{78A2D999-4673-4FCC-818E-57B0AF8F3B70} =>.SUP.BikaQ HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{B13115DF-4430-4102-8435-A1554528FD0B} =>.SUP.Trotux C:\Program Files\AdBlocker =>PUP.Optional.Adblocker C:\Program Files\BikaQRss =>.SUP.BikaQ C:\Program Files\DriverToolkit =>.SUP.DriverToolkit C:\Users\hatzi\AppData\Roaming\Elex-tech =>.SUP.Elex C:\Users\hatzi\AppData\Roaming\RPEng =>PUP.Optional.Generic C:\Users\hatzi\AppData\Local\DriverToolkit =>.SUP.DriverToolkit C:\Users\hatzi\AppData\Local\Kitty =>.SUP.Elex C:\Windows\System32\Config\systemprofile\AppData\Roaming\Solvusoft =>.SUP.Solvusoft HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{50FC8199-D546-45EB-B267-CF14AFB21448} =>Toolbar.Ask HKLM\Software\Classes\Installer\Products\999D2A873764CCF418E8750BFAF8B307 =>.SUP.BikaQ HKLM\Software\Classes\Installer\Features\999D2A873764CCF418E8750BFAF8B307 =>.SUP.BikaQ C:\Windows\Installer\1105bb.msi =>.SUP.BikaQ C:\Windows\Installer\dec59.msp =>.SUP.Obsolete.Adobe HKLM\SOFTWARE\Microsoft\Tracing\BikaQ_RASAPI32 =>.SUP.BikaQ HKLM\SOFTWARE\Microsoft\Tracing\BikaQ_RASMANCS =>.SUP.BikaQ HKLM\SOFTWARE\Microsoft\Tracing\ReimagePackage_RASAPI32 =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimagePackage_RASMANCS =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASAPI32 =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\ReimageRepair_RASMANCS =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\Reimage_RASAPI32 =>.SUP.ReimageRepair HKLM\SOFTWARE\Microsoft\Tracing\Reimage_RASMANCS =>.SUP.ReimageRepair C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fromdoctopdf.dl.myway.com_0.localstorage =>.SUP.FromDocToPDF C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_fromdoctopdf.dl.tb.ask.com_0.localstorage =>.SUP.FromDocToPDF C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_internetspeedtracker.dl.myway.com_0.localstorage =>.SUP.MindSpark C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_internetspeedtracker.dl.tb.ask.com_0.localstorage =>.SUP.MindSpark C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome C:\Users\hatzi\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome HKLM\SYSTEM\CurrentControlSet\Control\Print\Providers\7p21mw30 =>.SUP.Elex ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (20) - 0s https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator https://nicolascoolman.eu/2017/02/02/hacktool-autokms/ =>HackTool.AutoKMS https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/03/28/superfluous-elex/ =>.SUP.Elex https://nicolascoolman.eu/2017/02/17/superfluous-bikaq/ =>.SUP.BikaQ https://nicolascoolman.eu/2017/03/14/superfluous-trotux/ =>.SUP.Trotux https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.InterSect https://nicolascoolman.eu/2017/01/27/superfluous-reimagerepair/ =>.SUP.ReimageRepair https://www.nicolascoolman.com/fr/pup-optional-chedotbrowser/ =>PUP.Optional.ChedotBrowser https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.DriverToolkit https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.eSupport https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask https://nicolascoolman.eu/2017/01/28/adware-adblocker/ =>PUP.Optional.Adblocker https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Generic https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Solvusoft https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Obsolete.Adobe https://nicolascoolman.eu/2017/12/02/sup-fromdoctopdf/ =>.SUP.FromDocToPDF https://nicolascoolman.eu/2017/01/15/superfluous-mindspark/ =>.SUP.MindSpark https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome ~ Unselected Options: O82, ~ End of the scan, 31741 items in 04mn09s (1372)(0)