~ ZHPDiag v2018.3.13.50 Par Nicolas Coolman (2018/03/13) ~ Démarré par sandr (Administrator) (2018/03/14 13:06:27) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\sandr\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\sandr\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 16299) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v65.0.3325.146 ~ MSIE: Microsoft Edge v40 ~ MSIE: Internet Explorer v11.125.16299.0 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (4) - 2s Norton Security v22.12.1.15 (Protection) Norton Security Scan v4.6.1.150 (Protection) Windows Defender (Deactivate) Malwarebytes version 3.3.1.2183 v3.3.1.2183 (Protection) ---\\ SURVEILLANCE LOGICIEL (1) - 2s ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ LOGICIELS D'OPTIMISATION (1) - 2s ~ CCleaner v5.37 (Optimisation) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 11500.664 MB (75% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 846 GB (90%) free of 937 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: LAPTOP-UKNFE9OE ~ User Name: sandr ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s ~ Drive C: has 846 GB free of 937 GB (System) ~ Drive D: has 1 GB free of 14 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s [MD5.2B41096DED5180E1FE733DFC652D1AFF] - 08/12/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3903784] =>.Microsoft Windows® [MD5.731A783A36A8E69A6434D19D98B12A09] - 29/09/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71168] =>.Microsoft Corporation [MD5.BF3E1D9B2360C6BE4CC3094CD2DDC617] - 29/09/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [359584] =>.Microsoft Windows Publisher® [MD5.669D7B448EE4C1C76687CC47A84AAD81] - 26/11/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3334144] =>.Microsoft Corporation [MD5.8B67C13E6C000B14C1551FF07F15242E] - 29/09/2017 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [712704] =>.Microsoft Corporation [MD5.4D487E7D2B047FB929BE00117C09F9EC] - 29/09/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [414720] =>.Microsoft Corporation [MD5.A94E2533A7604E4AA05DCCC675A9F396] - 13/11/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [739696] =>.Microsoft Windows® [MD5.0A821BF024E347943D6F5C5180FAEA31] - 13/11/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [597160] =>.Microsoft Windows® [MD5.3B34C7B9D7E22AEF58DF0CFC4C7CC82D] - 30/09/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.6FB5A2026B16D596DEABF550E7A4BD82] - 29/09/2017 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [614296] =>.Microsoft Windows® [MD5.6191B9B2EE0E8CB957C683B9B341CC86] - 29/09/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Windows® [MD5.9E82A95D77AC78C84BA75FF896B060BF] - 29/09/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation [MD5.6D83565C1652E80447EDEA6947FA89D7] - 29/09/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation [MD5.9910E9CFF5ECDCB225F82E72CE9DE459] - 29/09/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [151040] =>.Microsoft Corporation [MD5.99A34FD1F6431A10D8C3BB50E170D0F2] - 29/09/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation [MD5.56FF074E50F9042FD2856AB3418F4B18] - 29/09/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation [MD5.7BEC2AF23F586EFF0DB4DBF4331B0C70] - 29/09/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214016] =>.Microsoft Corporation [MD5.34898F29BF0E9A84E183046318D17814] - 26/11/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [495000] =>.Microsoft Windows® [MD5.401C17200AA0433D94EA61695F111DC3] - 29/09/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [316928] =>.Microsoft Corporation [MD5.70750B27A72427B0ACAE2D6CD161946A] - 26/11/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2395032] =>.Microsoft Windows® [MD5.2E07EC2C1622F5E7B535D62DCD61F3AB] - 29/09/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation [MD5.E0220BB6580D34001D4D1D133052DAA4] - 29/09/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation [MD5.DF83769C92527DB50653F8FB57D001FF] - 30/09/2017 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation [MD5.571D82ABAC428D902ACA0CF60373C039] - 29/09/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121240] =>.Microsoft Windows® [MD5.5B27846CF4B1C21AFB3A35A8336BA02F] - 08/12/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [401304] =>.Microsoft Windows® ---\\ LISTE DES SERVICES (Non Microsoft et non désactivés) (16) - 1s O23 - Service: AdaptiveSleepService (AdaptiveSleepService) . (...) - C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe =>.Advanced Micro Devices, Inc.® O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe =>.AMD O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: BTDevManager (BTDevManager) . (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe =>.Realtek Semiconductor Corp® O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe {16A389421AD969F0E89252F1042181CE} =>.WIBU-SYSTEMS AG O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Comm Recovery (HP Comm Recover) . (.HP Inc. - CommRecovery.) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe =>.HP Inc. O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc. - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.HP Inc.® O23 - Service: HP Touchpoint Analytics (HPTouchpointAnalyticsService) . (.HP Inc. - HP Touchpoint Analytics Client Service.) - C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe =>.HP Inc.® O23 - Service: HPWMISVC (HPWMISVC) . (.HP Inc. - HP WMI Service.) - c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe =>.HP Inc.® O23 - Service: Norton Security (NortonSecurity) . (.Symantec Corporation - Norton Security.) - C:\Program Files\Norton Security\Engine\22.12.1.15\NortonSecurity.exe =>.Symantec Corporation® O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.CyberLink - CyberLink RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink Corp.® O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.® O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (20) - 11s SR - Auto [20/06/2017] [ 155016] AdaptiveSleepService (AdaptiveSleepService) . (...) - C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe =>.Advanced Micro Devices, Inc.® SR - Auto [09/02/2018] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SR - Auto [05/01/2018] [ 2319848] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SR - Auto [28/06/2017] [ 298904] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.Advanced Micro Devices, Inc.® SR - Auto [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Demand [05/06/2012] [ 266240] BrYNSvc (BrYNSvc) . (.Brother Industries, Ltd..) - C:\Program Files (x86)\Browny02\BrYNSvc.exe =>.Brother Industries, Ltd. SR - Auto [20/09/2016] [ 125656] BTDevManager (BTDevManager) . (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe =>.Realtek Semiconductor Corp® SS - Auto [21/09/2017] [ 5026296] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe {16A389421AD969F0E89252F1042181CE} =>.WIBU-SYSTEMS AG SS - Auto [13/03/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [13/03/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [05/10/2016] [ 1268736] HP Comm Recovery (HP Comm Recover) . (.HP Inc..) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe =>.HP Inc. SR - Demand [03/06/2016] [ 1031704] HP CASL Framework Service (hpqcaslwmiex) . (.HP.) - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SR - Auto [27/09/2017] [ 323952] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc..) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.HP Inc.® SR - Auto [23/11/2017] [ 332216] HP Touchpoint Analytics (HPTouchpointAnalyticsService) . (.HP Inc..) - C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe =>.HP Inc.® SR - Auto [20/06/2016] [ 631800] HPWMISVC (HPWMISVC) . (.HP Inc..) - c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe =>.HP Inc.® SS - Demand [01/11/2017] [ 6234056] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [03/03/2018] [ 328712] Norton Security (NortonSecurity) . (.Symantec Corporation.) - C:\Program Files\Norton Security\Engine\22.12.1.15\NortonSecurity.exe =>.Symantec Corporation® SR - Auto [23/03/2016] [ 614664] Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.CyberLink.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink Corp.® SR - Auto [14/10/2016] [ 317960] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.® SR - Auto [18/08/2017] [ 278616] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (11) - 2s O38 - TASK: {207D4B2E-A052-4033-A42D-BD103481639E} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. O38 - TASK: {4E84EC66-0E46-421B-A4CA-7A863D515728} [64Bits][\Norton Security Scan for sandr] - (.Symantec Corporation - Norton Security Scan.) -- C:\Program Files (x86)\Norton Security Scan\Engine\4.6.1.150\Nss.exe [835664] =>.Symantec Corporation O38 - TASK: {7747B755-016C-4EF7-8F2F-547AA29DFE35} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1183256] =>.Adobe Systems Incorporated O38 - TASK: {82D095F7-C4A7-46DD-8660-CB0C0F7E2D70} [64Bits][\Norton Security\Norton Security Autofix] - (.Symantec Corporation - Symantec Error Reporting.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\symerr.exe [102008] =>.Symantec Corporation O38 - TASK: {892C5CB2-041B-4C8E-B27D-6FE558F9E569} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. O38 - TASK: {936E944E-CBEF-4440-BF96-A5BF0901B31E} [64Bits][\Norton Security\Norton Security Error Processor] - (.Symantec Corporation - Symantec Error Reporting.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\symerr.exe [102008] =>.Symantec Corporation O38 - TASK: {93AF0FFF-AF27-4C00-AF74-0EADA330DAF5} [64Bits][\AdobeGCInvoker-1.0-MicrosoftAccount-sandra47malarme@gmail.com] - (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880] =>.Adobe Systems, Incorporated O38 - TASK: {B63AEB4B-9455-4AC1-BDA0-C76AEE0C6C83} [64Bits][\CCleaner Update] - (.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [498480] =>.Piriform Ltd O38 - TASK: {BC9DFC03-E325-4FFF-ABFD-9CEC4A5ADB1C} [64Bits][\Norton Security\Norton Security Error Analyzer] - (.Symantec Corporation - Symantec Error Reporting.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\symerr.exe [102008] =>.Symantec Corporation O38 - TASK: {BEAA18CD-E47C-44FC-AC76-4F9BF7A608BE} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7814600] =>.Piriform Ltd O38 - TASK: {D5AC7871-CFBA-4E18-B547-22C277D4505D} [64Bits][\Norton WSC Integration] - (.Symantec Corporation - WSCStub.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\wscstub.exe [2071912] =>.Symantec Corporation ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (13) - 0s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows® O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp.® O4 - HKLM\..\Run: [BtServer] . (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Systems Incorporated® O4 - HKCU\..\Run: [McAfeeSafeConnect] . (. - .) -- C:\Program Files (x86)\McAfee Safe Connect\McAfee Safe Connect.exe (.Not File.) =>.SUP.Orphan O4 - HKCU\..\Run: [TrayStatus] . (.Binary Fortress Software - TrayStatus.) -- C:\TrayStatus-3.1c\TrayStatus\TrayStatus.exe =>.Binary Fortress Software Ltd.® O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe =>.HP Inc.® O4 - HKLM\..\Wow6432Node\Run: [ControlCenter4] . (.Brother Industries, Ltd. - ControlCenter Launcher.) -- C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe =>.Brother Industries, Ltd. O4 - HKLM\..\Wow6432Node\Run: [BrStsMon00] . (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe =>.Brother Industries, Ltd. O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows® O4 - HKUS\S-1-5-21-3341556721-1688342974-4169648998-1001\..\Run: [McAfeeSafeConnect] . (. - .) -- C:\Program Files (x86)\McAfee Safe Connect\McAfee Safe Connect.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-21-3341556721-1688342974-4169648998-1001\..\Run: [TrayStatus] . (.Binary Fortress Software - TrayStatus.) -- C:\TrayStatus-3.1c\TrayStatus\TrayStatus.exe =>.Binary Fortress Software Ltd.® ---\\ PROCESSUS LANCÉS (37) - 9s [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Service Module.) -- C:\WINDOWS\system32\atiesrxx.exe [0] [PID.1704] =>.AMD [MD5.D4CC1F3943F3F44EEB2DFDDEA0F4B9D0] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [317960] [PID.2740] =>.Realtek Semiconductor Corp.® [MD5.99267CFA00F6FD971BBF4B01BB5DFA1F] - (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe [125656] [PID.3608] =>.Realtek Semiconductor Corp® [MD5.CA805DA983594B01F3554464B2E5158F] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83984] [PID.3640] =>.Adobe Systems, Incorporated® [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.3664] =>.Apple Inc.® [MD5.C4D7622FCFD3FB08FA5E04CBFDC69936] - (.HP Inc. - HP WMI Service.) -- c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800] [PID.3740] =>.HP Inc.® [MD5.91AF2EF13E4F1A555F16C49F50BF8746] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [278616] [PID.3876] =>.Synaptics Incorporated® [MD5.58A5D48F16E89575C21C0B14A15D4383] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848] [PID.4172] =>.Adobe Systems Incorporated® [MD5.DB109DA005B6FE2A350C5DD7CA768DFD] - (.Brother Industries, Ltd. - BrYNCSvc.) -- C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240] [PID.5696] =>.Brother Industries, Ltd. [MD5.D6B7A441408AC44D203F69CE604568A1] - (...) -- C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe [155016] [PID.1668] =>.Advanced Micro Devices, Inc.® [MD5.4E7874220C34987517FCB2B3744434FC] - (.HP Inc. - CommRecovery.) -- C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1268736] [PID.3800] =>.HP Inc. [MD5.9ABC2374151437F5DCB9E1F9DA9CC23E] - (.HP Inc. - HP JumpStart Bridge.) -- c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [461848] [PID.2964] =>.HP Inc.® [MD5.7E32BB97B5A18FD522D587540DA730B1] - (.HP Inc. - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952] [PID.6836] =>.HP Inc.® [MD5.A518BED1AD3F1D777AB5E29417C7A851] - (.HP Inc. - HP Touchpoint Analytics Client Service.) -- C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216] [PID.7828] =>.HP Inc.® [MD5.C7463D0A8E63A2C2F89E03F98E9EE63F] - (.CyberLink - CyberLink RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664] [PID.6688] =>.CyberLink Corp.® [MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.7340] =>.Google Inc® [MD5.71558DDBBB5A2E0BE95609D9D4F5650F] - (.Symantec Corporation - Norton Security.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\NortonSecurity.exe [328712] [PID.8120] =>.Symantec Corporation® [MD5.F107219B133E7E574DA052C5C88FFBF3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe [366672] [PID.2592] =>.Google Inc® [MD5.00000000000000000000000000000000] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [0] [PID.1584] =>.AMD [MD5.AEBC1AFA26110E24B324B10FFD7D99D7] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4397144] [PID.8136] =>.Synaptics Incorporated® [MD5.FB19CDD0273AA45DBA69C0CF0237BDDC] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1467400] [PID.7348] =>.Realtek Semiconductor Corp.® [MD5.0486C5A48DB97E46E7E4BE47BA302A3A] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [228960] [PID.3900] =>.Synaptics Incorporated® [MD5.B42C26F211B24D4A51C6DD93F6D2AF9A] - (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe [231640] [PID.5640] =>.Realtek Semiconductor Corp® [MD5.71558DDBBB5A2E0BE95609D9D4F5650F] - (.Symantec Corporation - Norton Security.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\NortonSecurity.exe [328712] [PID.8472] =>.Symantec Corporation® [MD5.833A97DD6E547171C7DC11882107DD97] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8903176] [PID.7072] =>.Realtek Semiconductor Corp.® [MD5.762589848F54F3F81D2D5B43C131F1CD] - (.Binary Fortress Software - TrayStatus.) -- C:\TrayStatus-3.1c\TrayStatus\TrayStatus.exe [2824176] [PID.6636] =>.Binary Fortress Software Ltd.® [MD5.63E9C23A386FFFA84B5E03BFF9B628F0] - (.Brother Industries, Ltd. - Status Monitor Application.) -- C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096] [PID.8544] =>.Brother Industries, Ltd. [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.8376] =>.Google Inc® [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.6668] =>.Google Inc® [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.8668] =>.Google Inc® [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.536] =>.Google Inc® [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.8384] =>.Google Inc® [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.9360] =>.Google Inc® [MD5.0E0E87820BB4431B176A00FB95B5503F] - (.HP - HP CASL Framework Service.) -- C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704] [PID.9268] =>.Hewlett-Packard Company® [MD5.241ECAEE0DA93961CE9D05808EF09C4C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\sandr\Desktop\ZHPDiag3.exe [3035520] [PID.11624] =>.Nicolas Coolman [MD5.98344E2688D0B014738CE0F712B121A5] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589592] [PID.10108] =>.Google Inc® [MD5.BE4D2B1FF18005A38736F1842819BC73] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1802.311.0_x64__8wekyb3d8bbwe\Calculator.exe [4371456] [PID.7936] =>.Microsoft Corporation ---\\ CHROME, Démarrage, Recherche, Extensions (6) - 1s G2 - GCE: Preference [sandr][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [sandr][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [sandr][User Data\Default] [cjpalhdlnbpafiamejdnhcphjbkeiagm] uBlock Origin =>.Raymond Hill G2 - GCE: Preference [sandr][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [sandr][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [sandr][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://hp17win10.msn.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKEY_USERS\S-1-5-21-3341556721-1688342974-4169648998-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.16299.15 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Norton Identity Safety [64Bits] - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} . (.Symantec Corporation - coIEPlugIn.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\coIEPlg.dll =>.Symantec Corporation® O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.HP Inc. - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll =>.Hewlett-Packard Company® ---\\ RACCOURCIS GLOBAL STARTUP (77) - 9s O4 - GS\Desktop [Administrateur]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sandr\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [Administrateur]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [Administrateur]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sandr\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Desktop [defaultuser0]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\Desktop [defaultuser0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sandr\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [defaultuser0]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [defaultuser0]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [defaultuser0]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [defaultuser0]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [defaultuser0]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [defaultuser0]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [defaultuser0]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [defaultuser0]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sandr\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Desktop [sandr]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\Desktop [sandr]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sandr\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [sandr]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [sandr]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [sandr]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [sandr]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [sandr]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [sandr]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [sandr]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [sandr]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sandr\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Desktop [WDAGUtilityAccount]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\sandr\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [WDAGUtilityAccount]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [WDAGUtilityAccount]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated® O4 - GS\TaskBar [WDAGUtilityAccount]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\TaskBar [WDAGUtilityAccount]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sandr\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: Brother Utilities.lnk . (.Brother Industories, Ltd. - Application Launcher.) C:\Program Files (x86)\Brother\BrLauncher\BrLauncher.exe =>.Brother Industories, Ltd. O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Norton Security.lnk . (.Symantec Corporation - .) C:\Program Files (x86)\Norton Security\Engine\22.12.1.15\uistub.exe /win8 =>.Symantec Corporation O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\sandr\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: HP JumpStart Launch.lnk . (...) c:\windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated® O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: CyberLink Power Media Player 14.lnk . (.CyberLink Corp. - CyberLink Power Media Player.) C:\Program Files (x86)\CyberLink\PowerDVD14\PDVDLP.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink PowerDirector.lnk . (.CyberLink Corp. - PowerDirector 14.) C:\Program Files\CyberLink\PowerDirector14\PowerDirector_video_editing.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: DTS Audio Control.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe shell32.dll,Control_RunDLL RTSnMg64.cpl,, =>..Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (...) C:\Program Files\Mozilla Firefox\firefox.exe O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: HP Audio Switch.lnk . (.HP Inc. - HPAudioSwitch.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe =>.HP Inc.® O4 - GS\ProgramsCommon [Public]: HP Smart Friend.lnk . (...) C:\Program Files (x86)\HP\Shared\WizLocaleLink.exe C:\HP\HPQWare\HPSmartFriend_URL\WizLocaleLink_NB.ini =>.HP Inc.® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (7) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = isffel.fr O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{01eb3a01-ddc3-4191-b126-dc7c083197cf}: DhcpNameServer = 192.168.2.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{b8461271-5126-4177-a7d7-93f54e1b9df8}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{eb26ffd5-9968-46fa-b049-62f4101c1d3c}: DhcpNameServer = 212.27.40.241 212.27.40.240 =>.France 9 Telecom, Free O17 - HKLM\System\CCS\Services\Tcpip\..\{f39bb86d-92ac-4004-a7db-9b5300eb7de3}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{01eb3a01-ddc3-4191-b126-dc7c083197cf}: DhcpDomain = isffel.fr ---\\ PROTOCOLE ADDITIONNEL (22) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ---\\ LOGICIELS INSTALLÉS (57) - 18s O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8C9AA2C1-D07A-48E8-9DD8-471A072947F4} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe InDesign CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- IDSN_12_1_0 =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824265200} =>.Adobe Systems Incorporated O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: Brother MFL-Pro Suite DCP-J4110DW - (.Brother Industries, Ltd..) [HKLM][64Bits] -- {DD98C438-D769-4677-AA87-3481FA32D20C} =>.Macrovision Corporation® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} =>.Cisco Systems, Inc. O42 - Logiciel: CyberLink Power Media Player 14 - (.CyberLink Corp..) [HKLM][64Bits] -- {32C8E300-BDB4-4398-92C2-E9B7D8A233DB} =>.CyberLink Corp. O42 - Logiciel: CyberLink PowerDirector 14 - (.CyberLink Corp..) [HKLM][64Bits] -- {6BADCD73-E925-46F7-A295-FF2448632728} =>.CyberLink Corp. O42 - Logiciel: Energy Star - (.HP Inc..) [HKLM][64Bits] -- {5CB22648-35F8-41BC-9C35-1E41FE6E12A5} =>.HP Inc. O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: HD Tune 2.55 - (.EFD Software.) [HKLM][64Bits] -- HD Tune_is1 =>.EFD Software O42 - Logiciel: HP Audio Switch - (.HP Inc..) [HKLM][64Bits] -- {0C5D69BD-B518-46DB-8471-506CD27F9478} =>.HP Inc. O42 - Logiciel: HP Customer Experience Enhancements - (.HP Development Company, L.P..) [HKLM][64Bits] -- {64228DFB-7450-49B7-935C-B97342CB6659} =>.HP Development Company, L.P. O42 - Logiciel: HP Documentation - (.HP Inc..) [HKLM][64Bits] -- HP_Documentation =>.HP Inc. O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {03ED1397-7E72-4F6E-A0F0-2994A0A13421} =>.HP Inc. O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {2CB12285-90BF-469F-B973-34495ABAF048} =>.HP Inc. O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {5b1a1d22-bd59-44e0-a954-e2f18ec43a23} =>.Hewlett-Packard Company® O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {5C690381-6AF5-4374-B50C-02F0390E9980} =>.HP Inc. O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {B9ADB0F9-459B-4E6B-A021-0F38C73FC060} =>.HP Inc. O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {D711D91A-127D-4A11-BA83-634868AD8016} =>.HP Inc. O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {EA274518-738D-4A48-A1CB-596173D4C6A2} =>.HP Inc. O42 - Logiciel: HP JumpStart Bridge - (.HP Inc..) [HKLM][64Bits] -- {9B252E0D-7B31-48A6-B01E-B5CCBA286E8E} =>.HP Inc. O42 - Logiciel: HP JumpStart Launch - (.HP Inc..) [HKLM][64Bits] -- {B90CB0DE-2E60-41C4-9857-466EB98192BF} =>.HP Inc. O42 - Logiciel: HP Recovery Manager - (.HP.) [HKLM][64Bits] -- {64BAA990-F1FC-4145-A7B1-E41FBBC9DA47} =>.HP O42 - Logiciel: HP Registration Service - (.HP Inc..) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C} =>.HP Inc. O42 - Logiciel: HP Support Assistant - (.HP Inc..) [HKLM][64Bits] -- {6FA09B91-5D97-45A9-95E9-50F635C98043} =>.HP Inc. O42 - Logiciel: HP Support Solutions Framework - (.HP Inc..) [HKLM][64Bits] -- {5479A489-5753-4FB7-8E2A-540332D1F4E5} =>.HP Inc. O42 - Logiciel: HP Sure Connect - (.HP Inc..) [HKLM][64Bits] -- {6468C4A5-E47E-405F-B675-A70A70983EA6} =>.HP Inc. O42 - Logiciel: HP System Event Utility - (.HP Inc..) [HKLM][64Bits] -- {29E20347-C62F-4657-938E-876A182B67F1} =>.HP Inc. O42 - Logiciel: HP Touchpoint Analytics Client - (.HP Inc..) [HKLM][64Bits] -- {E5FB98E0-0784-44F0-8CEC-95CD4690C43F} =>.HP Inc.® O42 - Logiciel: HP Wireless Button Driver - (.HP.) [HKLM][64Bits] -- {099DAD2B-56C5-4919-9F82-418C2A018CAE} =>.HP O42 - Logiciel: KB4023057 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ED06689A-33B7-4D35-8F76-36A82CD03406} =>.Microsoft Corporation O42 - Logiciel: LibreOffice 5.4.1.2 - (.The Document Foundation.) [HKLM][64Bits] -- {8E811365-CBFB-49AC-AB25-9197549B309E} =>.The Document Foundation O42 - Logiciel: Malwarebytes version 3.3.1.2183 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: MioMore Desktop 7.30 - (.Mio Technology.) [HKLM][64Bits] -- {A2804FE8-4101-48a0-AE1A-575B99014BF4}-Mio-7.30 =>.Mio Technology O42 - Logiciel: Norton Security - (.Symantec Corporation.) [HKLM][64Bits] -- NGC =>.Symantec Corporation® O42 - Logiciel: Norton Security Scan - (.Symantec Corporation.) [HKLM][64Bits] -- NSS =>.Symantec Corporation® O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: PICADOR-v8.9 - (.treeDIM.) [HKLM][64Bits] -- {C5506B7A-9F48-4EBA-8C0D-72C062552C2D} O42 - Logiciel: REALTEK Bluetooth Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A5EF-4123-B2B9-172095903AB} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {A5107464-AA9B-4177-8129-5FF2F42DD322} =>.Realtek Semiconductor Corp® O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: WinRAR 5.50 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (128) - 18s HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\Adobe.BackupByPhotoshopPortable HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Applogon =>.Unknown HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Brother =>.Brother HKLM\SOFTWARE\Brother Industries, Ltd. =>.Brother Industries, Ltd. HKLM\SOFTWARE\Caphyon =>.Caphyon HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\HP =>.HP HKLM\SOFTWARE\HP Inc. =>.HP Inc. HKLM\SOFTWARE\InstallShield =>.InstallShield HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\LibreOffice =>.LibreOffice HKLM\SOFTWARE\LogMeInRescueCallingCard =>.LogMeIn Entreprise HKLM\SOFTWARE\LogMeInRescueCallingCards =>.LogMeIn Entreprise HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\McNeel HKLM\SOFTWARE\Mio =>.Mio HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Norton =>.Symantec Corporation HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\PDF Architect 5 =>.pdfforge GmbH HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RtWLan =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\SolidWorks =>.SolidWorks Corporation HKLM\SOFTWARE\Stellar Data Recovery =>.Stellar Systems HKLM\SOFTWARE\Symantec =>.Symantec HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Adobe.BackupByPhotoshopPortable HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\Applogon =>.Unknown HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\Brother =>.Brother HKLM\SOFTWARE\WOW6432Node\Brother Industries, Ltd. =>.Brother Industries, Ltd. HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\GPL Ghostscript =>.GPL Ghostscript HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\HP =>.HP HKLM\SOFTWARE\WOW6432Node\HP Inc. =>.HP Inc. HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\LibreOffice =>.LibreOffice HKLM\SOFTWARE\WOW6432Node\LogMeInRescueCallingCard =>.LogMeIn Entreprise HKLM\SOFTWARE\WOW6432Node\LogMeInRescueCallingCards =>.LogMeIn Entreprise HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\McNeel HKLM\SOFTWARE\WOW6432Node\Mio =>.Mio HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Norton =>.Symantec Corporation HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\PDF Architect 5 =>.pdfforge GmbH HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\RtWLan =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\SolidWorks =>.SolidWorks Corporation HKLM\SOFTWARE\WOW6432Node\Stellar Data Recovery =>.Stellar Systems HKLM\SOFTWARE\WOW6432Node\Symantec =>.Symantec HKLM\SOFTWARE\WOW6432Node\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\WOW6432Node\WIBU-SYSTEMS =>.Wibu-Systems HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Adobe.BackupByPhotoshopPortable HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Binary Fortress Software =>.Binary Fortress Software HKCU\SOFTWARE\Brother =>.Brother HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Common =>.Corel Corporation HKCU\SOFTWARE\Dalton HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\GetData =>.GetData HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Headlight =>.Headlight Consulting HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\InstallShield =>.InstallShield HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\McNeel HKCU\SOFTWARE\Mio =>.Mio HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Norton =>.Symantec Corporation HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\PDF Architect 5 =>.pdfforge GmbH HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\SolidWorks =>.SolidWorks Corporation HKCU\SOFTWARE\Stellar HKCU\SOFTWARE\Symantec =>.Symantec HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\treeDim HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\Norton =>.Symantec Corporation ---\\ CONTENU DES DOSSIERS PROGRAMMES (301) - 20s O43 - CFD: 09/09/2017 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 14/11/2017 - [] AD -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 14/11/2017 - [] D -- C:\Program Files\ATI Technologies =>.ATI Technologies O43 - CFD: 22/10/2016 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 05/12/2017 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 31/12/2017 - [] D -- C:\Program Files\CodeMeter =>.Legitimate O43 - CFD: 13/03/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation O43 - CFD: 31/12/2017 - [] D -- C:\Program Files\EaseUS =>.EaseUS Software O43 - CFD: 08/09/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 31/12/2017 - [] D -- C:\Program Files\GetData {74EBB0AA51293A8B} O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 22/10/2016 - [] D -- C:\Program Files\HPCommRecovery O43 - CFD: 04/12/2017 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation O43 - CFD: 03/12/2017 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 01/12/2017 - [0] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 01/12/2017 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Program Files\Norton Security =>.Symantec O43 - CFD: 20/05/2017 - [] RD -- C:\Program Files\Online Services =>.Hewlett-Packard O43 - CFD: 29/11/2017 - [0] D -- C:\Program Files\PDFCreator =>.Philip Chinery O43 - CFD: 13/11/2017 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 13/11/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 18/09/2017 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation® O43 - CFD: 13/11/2017 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 28/09/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 04/12/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 16/10/2017 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 01/12/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 11/11/2017 - [] AD -- C:\Program Files (x86)\Adobe Photoshop CS6 =>.Adobe Inc. O43 - CFD: 14/11/2017 - [] D -- C:\Program Files (x86)\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 22/10/2016 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 27/10/2017 - [] D -- C:\Program Files (x86)\Brother =>.Brother O43 - CFD: 27/10/2017 - [] D -- C:\Program Files (x86)\Browny02 =>.Brother Industries, Ltd. O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc. O43 - CFD: 31/12/2017 - [] D -- C:\Program Files (x86)\CodeMeter =>.Legitimate O43 - CFD: 03/03/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 07/03/2018 - [] D -- C:\Program Files (x86)\ControlCenter4 =>.Brother Industries, Ltd O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 10/02/2018 - [] D -- C:\Program Files (x86)\Dactylo O43 - CFD: 13/03/2018 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 05/12/2017 - [] D -- C:\Program Files (x86)\HD Tune =>.EFD Software O43 - CFD: 22/10/2016 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 28/09/2017 - [] AD -- C:\Program Files (x86)\HP =>.Hewlett-Packard O43 - CFD: 22/10/2016 - [] D -- C:\Program Files (x86)\HP Inc =>.HP Inc O43 - CFD: 27/10/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 04/12/2017 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] AD -- C:\Program Files (x86)\LibreOffice 5 =>.LibreOffice O43 - CFD: 01/12/2017 - [] D -- C:\Program Files (x86)\McAfee Safe Connect =>.McAfee Inc. O43 - CFD: 03/03/2018 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 22/12/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Program Files (x86)\Norton Security Scan =>.Symantec O43 - CFD: 13/03/2018 - [] D -- C:\Program Files (x86)\NortonInstaller =>.Symantec O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\NSIS Uninstall Information =>.MSIS O43 - CFD: 20/05/2017 - [] RD -- C:\Program Files (x86)\Online Services =>.Hewlett-Packard O43 - CFD: 20/05/2017 - [] AD -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 13/11/2017 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 31/12/2017 - [] D -- C:\Program Files (x86)\Stellar Phoenix Windows Data Recovery =>.Stellar Systems O43 - CFD: 20/05/2017 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 09/09/2017 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 09/09/2017 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 13/11/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 03/11/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings =>.Samsung Electronics O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings =>.Advanced Micro Devices Inc O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother =>.Brother O43 - CFD: 10/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dactylo O43 - CFD: 14/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 05/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune =>.EFD Software O43 - CFD: 14/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support =>.Hewlett-Packard O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.4 =>.LibreOffice O43 - CFD: 29/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 03/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 14/03/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security =>.Symantec O43 - CFD: 13/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security Scan =>.Symantec O43 - CFD: 01/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picador Windows O43 - CFD: 30/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhinoceros 5 O43 - CFD: 01/12/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\treeDiM O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 01/12/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 11/11/2017 - [] D -- C:\ProgramData\Adobe.BackupByPhotoshopPortable O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 22/10/2016 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 14/11/2017 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 27/10/2017 - [] D -- C:\ProgramData\Brother =>.Brother O43 - CFD: 08/09/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 31/12/2017 - [] D -- C:\ProgramData\CodeMeter =>.Legitimate O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 07/03/2018 - [] D -- C:\ProgramData\ControlCenter4 =>.Brother Industries, Ltd O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 14/11/2017 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] D -- C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 07/03/2018 - [] D -- C:\ProgramData\InstallShield =>.InstallShield O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\install_backup O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 31/12/2017 - [] RASHD -- C:\ProgramData\Key-Base =>.Unknown O43 - CFD: 03/12/2017 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 08/09/2017 - [] D -- C:\ProgramData\McNeel =>.McNeel O43 - CFD: 08/09/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 12/02/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 13/03/2018 - [] D -- C:\ProgramData\NortonInstaller =>.Symantec O43 - CFD: 28/09/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 29/11/2017 - [] D -- C:\ProgramData\PDF Architect 5 =>.pdfforge GmbH O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 03/03/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 28/09/2017 - [] D -- C:\ProgramData\SRS Labs =>.SRS Labs O43 - CFD: 03/12/2017 - [] D -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation O43 - CFD: 20/05/2017 - [] D -- C:\ProgramData\Synaptics =>.Synaptics O43 - CFD: 31/12/2017 - [] D -- C:\ProgramData\SystemAcCrux O43 - CFD: 20/05/2017 - [0] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 09/09/2017 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 30/09/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 31/12/2017 - [0] D -- C:\ProgramData\{38F2213A-FDE9-1E3A-C43C-9791F65EF891} O43 - CFD: 01/12/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 08/09/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 03/03/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 20/11/2017 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 08/09/2017 - [] D -- C:\Program Files (x86)\Common Files\McNeel Shared =>.McNeel O43 - CFD: 03/03/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Program Files (x86)\Common Files\Symantec Shared =>.Symantec Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation O43 - CFD: 11/11/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 02/11/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Brother =>.Brother O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Inc. O43 - CFD: 05/12/2017 - [] SHD -- C:\Users\sandr\AppData\Roaming\Common =>.Microsoft Corporation O43 - CFD: 27/10/2017 - [] D -- C:\Users\sandr\AppData\Roaming\ControlCenter4 =>.Brother Industries, Ltd O43 - CFD: 02/03/2018 - [] D -- C:\Users\sandr\AppData\Roaming\GetRightToGo =>.Headlight Software O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Google =>.Google O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\HP =>.Hewlett-Packard O43 - CFD: 09/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\hpqLog =>.Hewlett-Packard O43 - CFD: 27/10/2017 - [] D -- C:\Users\sandr\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 01/12/2017 - [] D -- C:\Users\sandr\AppData\Roaming\McAfee Safe Connect =>.McAfee Inc. O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\McNeel =>.McNeel O43 - CFD: 05/12/2017 - [] SD -- C:\Users\sandr\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 27/09/2017 - [0] D -- C:\Users\sandr\AppData\Roaming\PicGEOM O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Skype =>.Skype O43 - CFD: 21/11/2017 - [] D -- C:\Users\sandr\AppData\Roaming\SolidWorks =>.SolidWorks Corporation O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Synaptics =>.Synaptics O43 - CFD: 05/12/2017 - [] D -- C:\Users\sandr\AppData\Roaming\TrayStatus =>.Binary Fortress Software O43 - CFD: 30/12/2017 - [] D -- C:\Users\sandr\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 09/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\WildTangent =>.WildTangent O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 14/03/2018 - [] D -- C:\Users\sandr\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 11/11/2017 - [] D -- C:\Users\sandr\AppData\Local\3dmouse =>.3dmouse O43 - CFD: 09/01/2018 - [] D -- C:\Users\sandr\AppData\Local\Adobe =>.Adobe O43 - CFD: 26/10/2017 - [] D -- C:\Users\sandr\AppData\Local\AMD =>.AMD O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\sandr\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Local\CEF =>.CEF O43 - CFD: 10/02/2018 - [] D -- C:\Users\sandr\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\Users\sandr\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 03/12/2017 - [] D -- C:\Users\sandr\AppData\Local\CrashRpt O43 - CFD: 30/09/2017 - [0] D -- C:\Users\sandr\AppData\Local\DBG =>.DBG O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Local\Google =>.Google O43 - CFD: 16/11/2017 - [] D -- C:\Users\sandr\AppData\Local\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\sandr\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Users\sandr\AppData\Local\HP_Development_Company,_L =>.Hewlett-Packard O43 - CFD: 01/12/2017 - [] D -- C:\Users\sandr\AppData\Local\McAfee_Inc =>.McAfee Inc. O43 - CFD: 11/11/2017 - [] D -- C:\Users\sandr\AppData\Local\McNeel =>.McNeel O43 - CFD: 12/02/2018 - [] D -- C:\Users\sandr\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 21/10/2017 - [] D -- C:\Users\sandr\AppData\Local\MiTAC_International_Corpo =>.MiTAC O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 08/09/2017 - [0] D -- C:\Users\sandr\AppData\Local\NetworkTiles =>.NetworkTiles O43 - CFD: 06/01/2018 - [] D -- C:\Users\sandr\AppData\Local\NPE =>.NPE O43 - CFD: 12/03/2018 - [] D -- C:\Users\sandr\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [] D -- C:\Users\sandr\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 30/11/2017 - [] D -- C:\Users\sandr\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 14/03/2018 - [] D -- C:\Users\sandr\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\sandr\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign00cab5bc7d9d0b6e =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign0169792212d951ab =>.SUP.Temporary O43 - CFD: 04/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign081093ba49e2f77d =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign08239c8dc0e50bef =>.SUP.Temporary O43 - CFD: 04/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign082e754dc7d0a80e =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign0aa7c504aaba7d62 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign0f6666d28c0cd644 =>.SUP.Temporary O43 - CFD: 14/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign11473c1919b9a66d =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign19217f7593aa9309 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign1d685affe3b7caf8 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign2293ac783c51ac2d =>.SUP.Temporary O43 - CFD: 01/03/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign26b4f57341eb5a21 =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign2a47583f4884ed35 =>.SUP.Temporary O43 - CFD: 26/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign2a8258372861a085 =>.SUP.Temporary O43 - CFD: 14/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign32ef4088cc89e8b5 =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign33eae884c5466c38 =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign3a45ce1d98e9b6d7 =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign40b7b5cb8a29392a =>.SUP.Temporary O43 - CFD: 04/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign490d780f3e4f134f =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign4d10bb83080b2cbf =>.SUP.Temporary O43 - CFD: 13/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign52269eb45e460150 =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign524afe404fd3d15b =>.SUP.Temporary O43 - CFD: 13/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign53ac7f7e3110e271 =>.SUP.Temporary O43 - CFD: 15/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign60accd46b439d288 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign66633620bb92c69e =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign697d305719e97c93 =>.SUP.Temporary O43 - CFD: 04/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign6ddbf79ae8eb2a73 =>.SUP.Temporary O43 - CFD: 15/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign73f77af1bd9bec0f =>.SUP.Temporary O43 - CFD: 13/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign7b06248504dacada =>.SUP.Temporary O43 - CFD: 15/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign84e003589b272454 =>.SUP.Temporary O43 - CFD: 13/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign863cd004f71af583 =>.SUP.Temporary O43 - CFD: 26/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign86d3cac9f4415ca3 =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign87783f5cb271050e =>.SUP.Temporary O43 - CFD: 15/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign8b56c6fbc1c11ac6 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign9a6433cf795ec821 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsign9e914952b8a2368c =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsigna1b585d622f272cb =>.SUP.Temporary O43 - CFD: 26/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignaa8eba1c7c068b92 =>.SUP.Temporary O43 - CFD: 15/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignacf624d8fc3adef9 =>.SUP.Temporary O43 - CFD: 15/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignaea274cfbf709b07 =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignaf43ea2a802dd5b4 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignafe9278ee53dd528 =>.SUP.Temporary O43 - CFD: 12/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignb46487ecfa95d65d =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignc07fc7d0d5eb4b1c =>.SUP.Temporary O43 - CFD: 01/03/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignc1d75fa3f6bc4ffb =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsigncaa2c0b4fce0b909 =>.SUP.Temporary O43 - CFD: 15/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsigncf386e42eeff1673 =>.SUP.Temporary O43 - CFD: 01/03/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignd3afe9e2e3c9135d =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsigne2b12c564f413e86 =>.SUP.Temporary O43 - CFD: 26/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsigne67fec2c5aea029a =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsigned17ebdf32eeaf5c =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignf007791de3dd332c =>.SUP.Temporary O43 - CFD: 15/02/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignf0a72eb4d8a15485 =>.SUP.Temporary O43 - CFD: 12/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignf454abedef996bc8 =>.SUP.Temporary O43 - CFD: 14/12/2017 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignfb6a59186e38bd44 =>.SUP.Temporary O43 - CFD: 01/03/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignfe8815fc19addd77 =>.SUP.Temporary O43 - CFD: 09/01/2018 - [0] D -- C:\Users\sandr\AppData\Local\Tempzxpsignffb2b262e80e7343 =>.SUP.Temporary O43 - CFD: 14/11/2017 - [] D -- C:\Users\sandr\AppData\Local\TileDataLayer =>.Microsoft Corporation O43 - CFD: 05/12/2017 - [] D -- C:\Users\sandr\AppData\Local\TrayStatus =>.Binary Fortress Software O43 - CFD: 27/09/2017 - [] D -- C:\Users\sandr\AppData\Local\treeDiM O43 - CFD: 18/09/2017 - [] D -- C:\Users\sandr\AppData\Local\UNP =>.Microsoft Corporation O43 - CFD: 12/09/2017 - [] D -- C:\Users\sandr\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 14/03/2018 - [] D -- C:\Users\sandr\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 08/09/2017 - [0] D -- C:\Users\sandr\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 16/11/2017 - [] D -- C:\Users\sandr\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 26/10/2017 - [] D -- C:\Users\sandr\AppData\LocalLow\AMD =>.AMD O43 - CFD: 02/11/2017 - [] D -- C:\Users\sandr\AppData\LocalLow\Brother =>.Brother O43 - CFD: 09/09/2017 - [] SD -- C:\Users\sandr\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 13/03/2018 - [] D -- C:\Users\sandr\Desktop\DOCUMENTS =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 14/12/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 29/09/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [] D -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mio =>.Mio O43 - CFD: 14/12/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [] RD -- C:\Users\sandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 08/09/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 30/09/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/11/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 01/12/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 19/11/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\hpqLog =>.Hewlett-Packard ---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s O106 - SIOI: OverlayExcluded Class [ OverlayExcluded] - {4433A54A-1AC8-432F-90FC-85F045CF383C}. (.Symantec Corporation - Backup Shell.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\BuShell.dll =>.Symantec Corporation® O106 - SIOI: OverlayPending Class [ OverlayPending] - {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225}. (.Symantec Corporation - Backup Shell.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\BuShell.dll =>.Symantec Corporation® O106 - SIOI: OverlayProtected Class [ OverlayProtected] - {476D0EA3-80F9-48B5-B70B-05E677C9C148}. (.Symantec Corporation - Backup Shell.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\BuShell.dll =>.Symantec Corporation® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (24) - 3s O108 - CMH1: BUContextMenu [64Bits] - {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} . (.Symantec Corporation - Backup Shell.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\BuShell.dll =>.Symantec Corporation® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: Symantec.Norton.Antivirus.IEContextMenu [64Bits] - {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} . (.Symantec Corporation - Norton Security Shell Extension Module.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\NavShExt.dll =>.Symantec Corporation® O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - Radeon Settings: Desktop Control Panel.) -- C:\Program Files\AMD\CNext\CNext\atiacm64.dll =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH6: BUContextMenu [64Bits] - {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} . (.Symantec Corporation - Backup Shell.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\BuShell.dll =>.Symantec Corporation® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows® O108 - CMH6: Symantec.Norton.Antivirus.IEContextMenu [64Bits] - {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} . (.Symantec Corporation - Norton Security Shell Extension Module.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\NavShExt.dll =>.Symantec Corporation® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH7: Symantec.Norton.Antivirus.IEContextMenu [64Bits] - {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} . (.Symantec Corporation - Norton Security Shell Extension Module.) -- C:\Program Files\Norton Security\Engine\22.12.1.15\NavShExt.dll =>.Symantec Corporation® ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (17) - 1s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (67) - 12s O58 - SDL:2017/09/29 14:41:02 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows® O58 - SDL:2017/04/01 07:36:18 A . (.Advanced Micro Devices, INC. - AMD AS4 Driver.) -- C:\WINDOWS\System32\drivers\AmdAS4.sys [27016] =>.Advanced Micro Devices Inc.® O58 - SDL:2017/06/16 09:48:52 A . (.Advanced Micro Devices, Inc. - amdkmcsp sys.) -- C:\WINDOWS\System32\drivers\amdkmcsp.sys [101232] =>.Advanced Micro Devices Inc.® O58 - SDL:2017/05/16 17:06:42 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [97672] =>.Advanced Micro Devices, Inc.® O58 - SDL:2017/06/16 09:48:56 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [243048] =>.Advanced Micro Devices Inc.® O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [258592] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131992] =>.Microsoft Windows® O58 - SDL:2016/12/12 07:11:32 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [110088] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2017/09/29 14:41:02 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [141208] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [357272] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1723288] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [63520] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation O58 - SDL:2017/09/29 14:41:01 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [674200] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412056] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108064] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [123800] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [103320] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82840] =>.Microsoft Windows® O58 - SDL:2018/02/26 17:10:37 A . (...) -- C:\WINDOWS\System32\drivers\mbae64.sys [77432] =>.Malwarebytes Corporation® O58 - SDL:2018/03/13 18:20:00 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [253880] =>.Malwarebytes Corporation® O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [63520] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63896] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166296] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows® O58 - SDL:2016/08/26 12:04:33 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [943112] =>.Realtek Semiconductor Corp.® O58 - SDL:2017/09/29 14:41:14 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [59904] =>.Realtek O58 - SDL:2017/07/20 05:41:10 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\RtkBtfilter.sys [723920] =>.Realtek Semiconductor Corp.® O58 - SDL:2016/10/12 13:32:18 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Hands-free-AG Audio Drive.) -- C:\WINDOWS\System32\drivers\RtkHfp.sys [104688] =>.Realtek Semiconductor Corp® O58 - SDL:2016/10/14 15:27:50 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5337608] =>.Realtek Semiconductor Corp.® O58 - SDL:2016/09/23 11:12:48 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [418784] =>.Realtek Semiconductor Corp.® O58 - SDL:2017/08/17 22:47:18 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 55887 55838.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [6895984] =>.Realtek Semiconductor Corp.® O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows® O58 - SDL:2017/08/18 01:23:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [53848] =>.Synaptics Incorporated® O58 - SDL:2017/08/18 01:23:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [53848] =>.Synaptics Incorporated® O58 - SDL:2017/08/18 01:23:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [55384] =>.Synaptics Incorporated® O58 - SDL:2017/09/29 14:41:02 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows® O58 - SDL:2018/03/13 21:15:06 A . (.Symantec Corporation - Symantec Event Library.) -- C:\WINDOWS\System32\drivers\SYMEVENT64x86.SYS [102552] =>.Symantec Corporation® O58 - SDL:2017/08/18 01:23:52 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [66136] =>.Synaptics Incorporated® O58 - SDL:2017/08/18 01:23:52 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [716384] =>.Synaptics Incorporated® O58 - SDL:2017/10/10 20:42:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project O58 - SDL:2017/09/29 14:41:02 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows® O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows® O58 - SDL:2017/06/21 16:04:22 A . (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [30368] =>.HP Inc.® ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (2) - 0s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (48) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [188928] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [270848] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1275904] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [984064] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [820224] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [144896] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109056] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [880640] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220160] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [407040] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [387584] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [108544] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [254976] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [194560] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1272320] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [795136] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1230848] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [46080] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1107968] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [930304] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [491520] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [601088] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [307200] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2783744] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1345536] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [702464] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [779264] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [284672] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1143808] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1289216] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [951808] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1313792] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [387072] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [238080] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [307712] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [170496] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2223104] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [132608] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (4) - 1s O87 - FAEL: "{C3DA0B6D-5CC3-4331-92B9-6EBB841C4F3F}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe {16A389421AD969F0E89252F1042181CE} =>.WIBU-SYSTEMS AG O87 - FAEL: "{A71641B7-0E11-46A0-9CBF-91D281119F40}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe {16A389421AD969F0E89252F1042181CE} =>.WIBU-SYSTEMS AG O87 - FAEL: "{E790BB7B-D906-4244-B9F0-C1944F6DAFA0}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Mozilla Firefox\firefox.exe (.not file.) =>.SUP.Orphan O87 - FAEL: "{BED04386-9253-4380-BDC5-BC39E560857B}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® ---\\ PACKAGES WINDOWS INSTALLER (98) - 17s [MD5.81D043686B08A48818483D95DED34A5F] [WIS][2017/06/20 09:49:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\132277.msi [541184] =>.Advanced Micro Devices, Inc. [MD5.5D087ACF57D868DE6DC320F8E2C3FD1E] [WIS][2017/06/20 09:49:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\13227c.msi [510976] =>.Advanced Micro Devices, Inc. [MD5.BE8D426AD6B54423A3B43734F70640E1] [WIS][2017/06/20 09:50:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\132281.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.F5F8C9CD52776F3CB4BEB0536AF7E297] [WIS][2017/06/20 09:50:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\132286.msi [514048] =>.Advanced Micro Devices, Inc. [MD5.ED70A6D65AF4783A49AA23D34A60134B] [WIS][2017/06/20 09:51:20] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\13228b.msi [511488] =>.Advanced Micro Devices, Inc. [MD5.10FE1B1DA8A39FB0F4176639C33B1432] [WIS][2017/06/20 09:51:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\WINDOWS\Installer\132290.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.BDD59DD3226F34D1998BC928CD729AAC] [WIS][2017/06/20 09:52:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\132295.msi [591360] =>.Advanced Micro Devices, Inc. [MD5.6FF163A4CDBB6AD85BB618EBAC449A6B] [WIS][2017/06/20 09:52:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\13229a.msi [511488] =>.Advanced Micro Devices, Inc. [MD5.3238A71291F81DD8D9613F38DB85F828] [WIS][2017/06/20 09:53:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\13229f.msi [589824] =>.Advanced Micro Devices, Inc. [MD5.B5AEDE189918C82EE1B5D92F35FDCE86] [WIS][2017/06/20 09:54:02] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322a4.msi [588288] =>.Advanced Micro Devices, Inc. [MD5.7F2E272CAA046158D52426DA657C046A] [WIS][2017/06/20 09:54:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322a9.msi [588288] =>.Advanced Micro Devices, Inc. [MD5.51532BA100BF5822DA7B72C896CB971F] [WIS][2017/06/20 09:55:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322ae.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.774316E1AA5EF52D3A861A1FBD832685] [WIS][2017/06/20 09:55:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322b3.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.54DAE25761757EA2418A248CB1448F81] [WIS][2017/06/20 09:56:34] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322b8.msi [590336] =>.Advanced Micro Devices, Inc. [MD5.4720688D458FDFF1FFEFF1E48AF78AF1] [WIS][2017/06/20 09:57:12] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322bd.msi [510976] =>.Advanced Micro Devices, Inc. [MD5.D03CDD8157D9E21599F2A6D2A2447BE8] [WIS][2017/06/20 09:57:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322c2.msi [512512] =>.Advanced Micro Devices, Inc. [MD5.D2E62A18061F083A96F4D74D4F173824] [WIS][2017/06/20 09:58:34] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322c7.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.442AAB75B44DDF988B39CC51D12E21F9] [WIS][2017/06/20 09:59:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322cc.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.73AF110CC33B632BD71B8F98924A9E7C] [WIS][2017/06/20 09:59:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322d1.msi [589312] =>.Advanced Micro Devices, Inc. [MD5.5041A0DE1BD1C500870B21EDBD217AE6] [WIS][2017/06/20 10:00:12] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322d6.msi [586752] =>.Advanced Micro Devices, Inc. [MD5.CF7088482965D02C9E368C01E14422BE] [WIS][2017/06/20 10:00:46] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\1322db.msi [586752] =>.Advanced Micro Devices, Inc. [MD5.13B76C60677A0F0436E7083BC57FE5B7] [WIS][2016/10/22 07:23:02] (.HP Inc. - HP Support Solutions Framework.) -- C:\WINDOWS\Installer\1393f.msi [9494528] =>.HP Inc. [MD5.03BEA0398E623A21693071D9ED03B6FF] [WIS][2016/10/22 07:23:45] (.HP Inc. - HP Support Assistant.) -- C:\WINDOWS\Installer\13942.msi [38546944] =>.HP Inc. [MD5.B1AF4EAB0A90B020A84CDED52C17699C] [WIS][2016/10/22 07:24:52] (.Hewlett-Packard.) -- C:\WINDOWS\Installer\13947.msi [649728] =>.Hewlett-Packard [MD5.34A5BEF07FE5C3FC896BBBBAE3C1AF68] [WIS][2016/08/17 09:05:02] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\1394c.msi [1007616] =>.HP Inc. [MD5.443BFAD552F24384373A5C82B6A4587B] [WIS][2016/08/17 09:06:20] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\13951.msi [348160] =>.HP Inc. [MD5.8DCF5C9EAACDAF4568220D103F393DEA] [WIS][2016/08/15 06:21:52] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\13960.msi [2682368] =>.Apple Inc. [MD5.A8DCB85405350FDD5F7DF549664E5E49] [WIS][2016/08/17 08:59:16] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\13965.msi [19148800] =>.HP Inc. [MD5.D258A4894E6335507843ACAEA8A2B13D] [WIS][2016/08/17 09:01:50] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\1396a.msi [647168] =>.HP Inc. [MD5.CC3E95C29475E21757ECA39EA56C6497] [WIS][2016/08/17 09:03:02] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\1396f.msi [1073152] =>.HP Inc. [MD5.D9F58155EFB9B8E328384F614AFBF90E] [WIS][2016/08/17 09:00:36] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\13974.msi [1622016] =>.HP Inc. [MD5.9C3CF43305703F095C99B0845489FB81] [WIS][2016/06/21 01:09:46] (.© Copyright 2015 HP Development Company, L.P..) -- C:\WINDOWS\Installer\1397e.msi [4850176] [MD5.90AB42AAB2523A3F31C7F07F9E338029] [WIS][2016/10/05 02:18:54] (.HP Inc. - HP Audio Switch.) -- C:\WINDOWS\Installer\1398b.msi [2703360] =>.HP Inc. [MD5.914E1A27419636DB7C200650598A264A] [WIS][2017/04/25 02:42:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df5a.msi [546304] =>.Advanced Micro Devices, Inc. [MD5.9B23325B56492C50256F7C00CF36AE22] [WIS][2017/04/25 02:42:46] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df5f.msi [515584] =>.Advanced Micro Devices, Inc. [MD5.E1F82EAA2FCE4B9C228B0FC090FEFD17] [WIS][2017/04/25 02:43:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df64.msi [595968] =>.Advanced Micro Devices, Inc. [MD5.482E81F3A8293A6796673AACF1631ACF] [WIS][2017/04/25 02:43:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df69.msi [518656] =>.Advanced Micro Devices, Inc. [MD5.BF893140CBE1E6844ED6078EE42ECB20] [WIS][2017/04/25 02:44:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df6e.msi [516608] =>.Advanced Micro Devices, Inc. [MD5.94FB677C5B7E921AB23D3874C489DAA4] [WIS][2017/04/25 02:44:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\WINDOWS\Installer\18a8df73.msi [594432] =>.Advanced Micro Devices, Inc. [MD5.662ADD92BCF82FA8553EB38192FE922A] [WIS][2017/04/25 02:45:38] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df7b.msi [516608] =>.Advanced Micro Devices, Inc. [MD5.2FCCFBDC3C18BD3A8338206E1967D7E6] [WIS][2017/04/25 02:46:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df80.msi [594944] =>.Advanced Micro Devices, Inc. [MD5.45DBDE2F8A19886430E586F0A35DAE62] [WIS][2017/04/25 02:46:36] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df85.msi [593408] =>.Advanced Micro Devices, Inc. [MD5.D0FD7902830AAE7A60D5E01C2106E6C3] [WIS][2017/04/25 02:47:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df8a.msi [593408] =>.Advanced Micro Devices, Inc. [MD5.E23011AD90A899A06AC77A4BA73F66A0] [WIS][2017/04/25 02:47:34] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df8f.msi [595456] =>.Advanced Micro Devices, Inc. [MD5.749030DF93CF4261A4F8EFF54F470380] [WIS][2017/04/25 02:48:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df94.msi [594432] =>.Advanced Micro Devices, Inc. [MD5.E1ED3498D6217DB72A262C03C58DBFC0] [WIS][2017/04/25 02:48:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df99.msi [595968] =>.Advanced Micro Devices, Inc. [MD5.B48A4442385FC6BF129C1A4981BD6A6B] [WIS][2017/04/25 02:49:02] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8df9e.msi [516096] =>.Advanced Micro Devices, Inc. [MD5.1DD2BD8849D29DE5473D1C6276FB1E5D] [WIS][2017/04/25 02:49:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8dfa3.msi [517120] =>.Advanced Micro Devices, Inc. [MD5.E0F646D245A1CAEC0CC78B6918B52930] [WIS][2017/04/25 02:50:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8dfa8.msi [594432] =>.Advanced Micro Devices, Inc. [MD5.618F96F36084D3D803DA03122B3FBC0F] [WIS][2017/04/25 02:50:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8dfad.msi [595456] =>.Advanced Micro Devices, Inc. [MD5.EB3405B20E55293173454371B3707895] [WIS][2017/04/25 02:51:02] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8dfb2.msi [594944] =>.Advanced Micro Devices, Inc. [MD5.B9AE525BD51A20CFC67FC62BB282EDA7] [WIS][2017/04/25 02:51:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8dfb7.msi [592384] =>.Advanced Micro Devices, Inc. [MD5.03B59CAC4418C5A593B2F20DAEB4873D] [WIS][2017/04/25 02:51:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\18a8dfbc.msi [592384] =>.Advanced Micro Devices, Inc. [MD5.3C70DCD13DD89BF057B4678677424F54] [WIS][2015/11/11 21:09:16] (.HP Inc..) -- C:\WINDOWS\Installer\1dbe9.msi [1716224] =>.HP Inc. [MD5.5A9629980936D0571ED80DD644345469] [WIS][2017/05/20 11:38:44] (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\Installer\1dbf0.msi [2381312] =>.HP [MD5.E62262765D3815CD1D515A6EDE04EA49] [WIS][2016/08/01 22:48:58] (.HP.) -- C:\WINDOWS\Installer\1dc01.msi [4474880] =>.HP [MD5.6D4A1D0D6EBD1722672A55FACF8F0FBB] [WIS][2017/09/26 12:17:04] (.treeDIM - Assistant Installation pour PICADOR v8.) -- C:\WINDOWS\Installer\2cc9905d.msi [255077376] [MD5.F9F06A1D70C1DD2498EBE3ED60FE7D0B] [WIS][2017/04/25 02:45:10] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\2f49d.msi [596480] =>.Advanced Micro Devices, Inc. [MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/15 19:01:17] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\4e8c85a.msi [40960] =>.Google Inc. [MD5.7F9BBDB60B98B6AB6A09446AFADA65CB] [WIS][2018/02/28 17:19:29] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\4fba9bd.msi [884736] =>.Adobe Systems Incorporated [MD5.2145D5A402DDF391EE9AF0665304B9A6] [WIS][2017/09/08 22:38:13] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\WINDOWS\Installer\55dfa.msi [45056] =>.Adobe Systems Incorporated [MD5.BDC3D91A28E229886A8D92004B7DFBD7] [WIS][2017/09/08 21:05:34] (.The Document Foundation - LibreOffice 5.4.) -- C:\WINDOWS\Installer\6b1654.msi [223735808] =>.The Document Foundation [MD5.F0682B8C7CF914A72CA703B6E7D232C1] [WIS][2017/06/20 09:52:22] (.Advanced Micro Devices, Inc. - AMD Start Now Installation package.) -- C:\WINDOWS\Installer\6f162.msi [1102848] =>.Advanced Micro Devices, Inc. [MD5.41863F730D850F6FBB0BC4B8A1D377C1] [WIS][2017/06/20 09:51:34] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\6f167.msi [32960000] =>.Advanced Micro Devices, Inc. [MD5.5756A5987096B19B7F2832303AD897D6] [WIS][2017/06/20 09:55:00] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\6f16c.msi [38158848] =>.Advanced Micro Devices, Inc. [MD5.6CE8345C2FA73805D38C3FB29C3D9C2C] [WIS][2016/07/12 10:53:00] (.HP Inc..) -- C:\WINDOWS\Installer\9176e.msi [1701452] =>.HP Inc. [MD5.62042FB8BF5FDC5823500A5ABB59A476] [WIS][2016/10/17 12:01:07] (.Advanced Micro Devices, Inc. - AMD Installer (64 bit).) -- C:\WINDOWS\Installer\91774.msi [10663936] =>.Advanced Micro Devices, Inc. [MD5.F3393D3FF18B824864B806E0B86F0A67] [WIS][2012/11/08 17:30:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\91816.msi [1559552] =>.Cisco Systems, Inc. [MD5.626978BF496BABC1E6F1464D697B707D] [WIS][2012/11/08 17:39:00] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\9181c.msi [1304064] =>.Cisco Systems, Inc. [MD5.3FC36EF669376540BB082615F9ECADB2] [WIS][2012/11/08 17:37:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\91822.msi [836608] =>.Cisco Systems, Inc. [MD5.0130CF7E2FAA339E2351DE7A065D4A03] [WIS][2016/08/06 14:57:55] (.HP Inc. - HP JumpStart Bridge.) -- C:\WINDOWS\Installer\9186a.msi [2777088] =>.HP Inc. [MD5.5D964DF587D92930BA35FC332F106E28] [WIS][2016/07/16 16:37:39] (.HP Inc. - HP JumpStart Launch.) -- C:\WINDOWS\Installer\91870.msi [704512] =>.HP Inc. [MD5.C1C366958FD1D6E288AC1D54204C9B8F] [WIS][2016/10/06 17:12:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e76.msi [529920] =>.Advanced Micro Devices, Inc. [MD5.B42AF5F3DE01188993521EFE9BB838DE] [WIS][2016/10/06 17:13:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e7b.msi [499712] =>.Advanced Micro Devices, Inc. [MD5.3589AD08B9B74F3E73E0E170ACBD7388] [WIS][2016/10/06 17:13:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e80.msi [579072] =>.Advanced Micro Devices, Inc. [MD5.3D6C3228D7039C8612E5D4AC0EA54FFA] [WIS][2016/10/06 17:14:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e85.msi [501760] =>.Advanced Micro Devices, Inc. [MD5.A99FC10D469E6F0A97761241B9A414FC] [WIS][2016/10/06 17:14:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e8a.msi [500224] =>.Advanced Micro Devices, Inc. [MD5.C77E1E2F40298092E2212F76C09BC51A] [WIS][2016/10/06 17:15:28] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\WINDOWS\Installer\98e8f.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.DEC7AC16338E395C1D97906287BB9FCD] [WIS][2016/10/06 17:16:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e94.msi [579072] =>.Advanced Micro Devices, Inc. [MD5.7F4EFAF1C8CC73DA2DCA04BA16BBB801] [WIS][2016/10/06 17:16:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e99.msi [500736] =>.Advanced Micro Devices, Inc. [MD5.D32826643F9223A6F0B3CF6215C72C33] [WIS][2016/10/06 17:17:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98e9e.msi [578560] =>.Advanced Micro Devices, Inc. [MD5.BA47E1A6ADE0202CDC9A129E4F544EA5] [WIS][2016/10/06 17:17:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ea3.msi [577024] =>.Advanced Micro Devices, Inc. [MD5.708716EFCC0B6C6602833E8E79EFC274] [WIS][2016/10/06 17:18:28] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ea8.msi [577024] =>.Advanced Micro Devices, Inc. [MD5.9036A0085BDC1D96191A9A95AEF9FCEE] [WIS][2016/10/06 17:19:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ead.msi [578560] =>.Advanced Micro Devices, Inc. [MD5.1084001802249F264B08702DAE4C4735] [WIS][2016/10/06 17:19:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98eb2.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.AD1C1A87BEBA3344AFA984DA97701502] [WIS][2016/10/06 17:20:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98eb7.msi [579072] =>.Advanced Micro Devices, Inc. [MD5.93A3E63B28CB8C9396C24A899BD7242C] [WIS][2016/10/06 17:20:54] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ebc.msi [500224] =>.Advanced Micro Devices, Inc. [MD5.4C35C3BC136E6A8BCF376543C3898F85] [WIS][2016/10/06 17:21:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ec1.msi [500736] =>.Advanced Micro Devices, Inc. [MD5.3D7A481E8CBB482AD866BE41C1623C7A] [WIS][2016/10/06 17:22:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ec6.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.C831B5102B6A0B015E275D9A12A4B659] [WIS][2016/10/06 17:22:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ecb.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.82F62001B820945A7FFB1E3F49878F2D] [WIS][2016/10/06 17:23:20] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ed0.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.AA5C4D35FF49A159DB26DA1AF59A4735] [WIS][2016/10/06 17:23:54] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98ed5.msi [576512] =>.Advanced Micro Devices, Inc. [MD5.E97D8520134F8899EA2A1E0F47AA435A] [WIS][2016/10/06 17:24:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\98eda.msi [576512] =>.Advanced Micro Devices, Inc. [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\c133b8.msi [2805760] =>.Adobe Systems Incorporated [MD5.A58EAEAA86B7D4FA1891CA2EEDDCA3DD] [WIS][2018/02/12 15:26:08] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\13cd52f7.msp [103362560] =>.Adobe Systems, Incorporated [MD5.A9095FC652E0273E10F1D9481C59067D] [WIS][2018/02/23 14:25:19] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\1ea816.msp [1343488] =>.Adobe Systems, Incorporated [MD5.AD68D39EDFB11EFC6F9808DD3B80680A] [WIS][2017/11/04 23:36:54] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\c133b9.msp [102899712] =>.Adobe Systems, Incorporated [MD5.3617A09ABC822D955214EBE86A991CF3] [WIS][2017/11/29 11:42:28] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\cabd35.msp [1355776] =>.Adobe Systems, Incorporated ---\\ SCAN ADDITIONNEL (64) - 11s C:\Users\sandr\AppData\Local\Tempzxpsign00cab5bc7d9d0b6e =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign0169792212d951ab =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign081093ba49e2f77d =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign08239c8dc0e50bef =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign082e754dc7d0a80e =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign0aa7c504aaba7d62 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign0f6666d28c0cd644 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign11473c1919b9a66d =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign19217f7593aa9309 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign1d685affe3b7caf8 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign2293ac783c51ac2d =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign26b4f57341eb5a21 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign2a47583f4884ed35 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign2a8258372861a085 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign32ef4088cc89e8b5 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign33eae884c5466c38 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign3a45ce1d98e9b6d7 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign40b7b5cb8a29392a =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign490d780f3e4f134f =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign4d10bb83080b2cbf =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign52269eb45e460150 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign524afe404fd3d15b =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign53ac7f7e3110e271 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign60accd46b439d288 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign66633620bb92c69e =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign697d305719e97c93 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign6ddbf79ae8eb2a73 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign73f77af1bd9bec0f =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign7b06248504dacada =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign84e003589b272454 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign863cd004f71af583 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign86d3cac9f4415ca3 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign87783f5cb271050e =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign8b56c6fbc1c11ac6 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign9a6433cf795ec821 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsign9e914952b8a2368c =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsigna1b585d622f272cb =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignaa8eba1c7c068b92 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignacf624d8fc3adef9 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignaea274cfbf709b07 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignaf43ea2a802dd5b4 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignafe9278ee53dd528 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignb46487ecfa95d65d =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignc07fc7d0d5eb4b1c =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignc1d75fa3f6bc4ffb =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsigncaa2c0b4fce0b909 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsigncf386e42eeff1673 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignd3afe9e2e3c9135d =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsigne2b12c564f413e86 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsigne67fec2c5aea029a =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsigned17ebdf32eeaf5c =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignf007791de3dd332c =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignf0a72eb4d8a15485 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignf454abedef996bc8 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignfb6a59186e38bd44 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignfe8815fc19addd77 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Tempzxpsignffb2b262e80e7343 =>.SUP.Temporary C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome C:\Users\sandr\AppData\Local\Google\Chrome\User Data\Default\File System\Plugins =>.SUP.Temporary.Chrome ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (3) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome ~ Unselected Options: O82, ~ End of the scan, 8229 items in 03mn09s (1224)(0)