~ ZHPDiag v2018.7.3.145 Par Nicolas Coolman (2018/07/03) ~ Démarré par VANDENHAUTE (Administrator) (2018/07/07 12:56:15) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\VANDENHAUTE\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (2) - 0s ~ GCIE: Google Chrome v67.0.3396.99 ~ MSIE: Internet Explorer v11.0.9600.19036 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 29s Windows Defender (Deactivate) Malwarebytes version 3.5.1.2522 v3.5.1.2522 (Protection) ---\\ LOGICIELS D'OPTIMISATION (1) - 29s ~ CCleaner v5.44 (Optimisation) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3864.944 MB (26% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 843 GB (90%) free of 930 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: RÉGIS ~ User Name: VANDENHAUTE ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s ~ Drive C: has 843 GB free of 930 GB (System) ~ Drive D: has 1 GB free of 21 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s [MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\windows\Explorer.exe [2755504] =>.Microsoft Windows® [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 15/01/2015 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\windows\System32\rundll32.exe [54784] =>.Microsoft Corporation [MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\windows\System32\Wininit.exe [146944] =>.Microsoft Corporation [MD5.AD083DE5E3FE4E54F1C3EEA3E2AC6372] - 25/05/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\windows\System32\wininet.dll [3241472] =>.Microsoft Corporation [MD5.4294D7AD504EA206A4A03DB29311B6C2] - 02/01/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\windows\System32\Winlogon.exe [571392] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 18/03/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\windows\System32\sppcomapi.dll [447488] =>.Microsoft Corporation [MD5.764E397D1664C3CE690AC35D3DD7085A] - 07/09/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\System32\dnsapi.dll [656896] =>.Microsoft Corporation [MD5.19992FFEC28B2CE8BDFCE1E7F51C4FAF] - 07/09/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\windows\Syswow64\dnsapi.dll [499200] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 24/04/2015 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\windows\System32\fr-FR\user32.dll.mui [19456] =>.Microsoft Corporation [MD5.B246BEE99740A2A357E21D863A18774D] - 10/01/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\windows\System32\drivers\AFD.sys [559616] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\windows\System32\drivers\atapi.sys [26464] =>.Microsoft Corporation [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\windows\System32\drivers\Cdfs.sys [88576] =>.Microsoft Corporation [MD5.D61EDE3D49B04E703AEC3B111C763F42] - 05/12/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\windows\System32\drivers\Cdrom.sys [165376] =>.Microsoft Corporation [MD5.D1049D4D1311D43F6FCF180CAA5BF78B] - 02/01/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\windows\System32\drivers\DfsC.sys [138752] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 18/09/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\windows\System32\drivers\HDAudBus.sys [76800] =>.Microsoft Corporation [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 15/01/2015 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\windows\System32\drivers\i8042prt.sys [108544] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 18/03/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\windows\System32\drivers\IpNat.sys [142848] =>.Microsoft Corporation [MD5.CF49856813FFDF2EB251762BB8B675C8] - 10/02/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\windows\System32\drivers\MRxSmb.sys [401408] =>.Microsoft Corporation [MD5.0FE750800DEEE91D22399D081371BA79] - 11/08/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\windows\System32\drivers\netBT.sys [281600] =>.Microsoft Corporation [MD5.9E60AD04B25D39986599D4397FD96FF8] - 12/05/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\windows\System32\drivers\ntfs.sys [2014040] =>.Microsoft Corporation [MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\windows\System32\drivers\Parport.sys [96256] =>.Microsoft Corporation [MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\windows\System32\drivers\Rasl2tp.sys [112640] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 18/03/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\windows\System32\drivers\rdpdr.sys [195584] =>.Microsoft Corporation [MD5.576FA545FAB846B06E79B324160DE25C] - 02/08/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\windows\System32\drivers\tdx.sys [107520] =>.Microsoft Corporation [MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\windows\System32\drivers\volsnap.sys [316760] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (58) - 4s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\windows\System32\atiesrxx.exe =>.AMD O23 - Service: AnyDesk Service (AnyDesk) . (...) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O23 - Service: C:\Windows\System32\inetsrv\iisres.dll (AppHostSvc) . (.Microsoft Corporation - IIS Application Host Helper Service.) - C:\Windows\System32\inetsrv\apphostsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\windows\System32\AudioEndpointBuilder.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\windows\System32\Audiosrv.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\windows\System32\bfe.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\windows\System32\qmgr.dll =>.Microsoft Corporation O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: C:\windows\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\windows\System32\bisrv.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\windows\System32\cryptsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\windows\System32\das.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\UtcResources.dll (DiagTrack) . (.Microsoft Corporation - Microsoft Windows Diagnostics Tracking.) - C:\windows\System32\diagtrack.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\windows\System32\dnsrslvr.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher® O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\windows\System32\FntCache.dll =>.Microsoft Corporation O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\windows\System32\gpsvc.dll =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company - HP Support Assistant Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Company O23 - Service: C:\windows\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\windows\System32\ikeext.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\windows\System32\iphlpsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\windows\System32\srvsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\windows\System32\wkssvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\windows\System32\lmhsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\windows\System32\lsm.dll =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® O23 - Service: C:\windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\windows\System32\mmcss.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\windows\System32\mpssvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\windows\System32\nlasvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\windows\System32\nsisvc.dll =>.Microsoft Corporation O23 - Service: HP SimplePass Service (omniserv) . (.Softex Inc. - HP SimplePass Service.) - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe =>.Softex Inc. O23 - Service: C:\windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\windows\System32\pcasvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\windows\System32\umpo.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\windows\System32\profsvc.dll =>.Microsoft Corporation O23 - Service: Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink Corp.® O23 - Service: C:\windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\windows\System32\RpcEpMap.dll =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\windows\System32\rpcss.dll =>.Microsoft Corporation O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.® O23 - Service: C:\windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\windows\System32\schedsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\windows\System32\sens.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\windows\System32\spoolsv.exe =>.Microsoft Corporation O23 - Service: C:\windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\windows\System32\sppsvc.exe =>.Microsoft Corporation O23 - Service: C:\windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\windows\System32\wiaservc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\windows\System32\sysmain.dll =>.Microsoft Corporation O23 - Service: C:\windows\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\windows\System32\SystemEventsBrokerServer.dll =>.Microsoft Corporation O23 - Service: TeamViewer 13 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 13.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® O23 - Service: C:\windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\windows\System32\themeservice.dll =>.Microsoft Corporation O23 - Service: Unchecky (unchecky) . (.Reason Software Company Inc. - Unchecky Service.) - C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe =>.Reason Software Company Inc.® O23 - Service: C:\windows\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\windows\System32\wcmsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\windows\System32\wbem\WMIsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\windows\System32\wlansvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\windows\System32\wscsvc.dll =>.Microsoft Corporation O23 - Service: C:\windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (17) - 42s SR - Auto [19/12/2016] [ 290184] (AMD External Events Utility) . (.AMD.) - C:\windows\System32\atiesrxx.exe =>.Advanced Micro Devices, Inc.® SR - Auto [18/06/2018] [ 2057928] AnyDesk Service (AnyDesk) . (...) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® SR - Auto [31/08/2011] [ 462184] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Auto [25/08/2014] [ 255040] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc® SS - Demand [24/04/2014] [ 203344] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc® SS - Auto [18/06/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [18/06/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [21/08/2014] [ 93184] HP Support Assistant Service (HP Support Assistant Service) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe =>.Hewlett-Packard Company SS - Demand [13/05/2013] [ 1129760] HP Software Framework Service (hpqwmiex) . (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe =>.Hewlett-Packard Company® SR - Auto [09/05/2018] [ 6541008] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [27/09/2014] [ 94720] HP SimplePass Service (omniserv) . (.Softex Inc..) - C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe =>.Softex Inc. SR - Auto [30/04/2014] [ 277360] Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) . (.arvato digital services llc.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® SR - Auto [30/04/2014] [ 337776] Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® SR - Auto [14/04/2014] [ 389896] Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink Corp.® SR - Auto [29/06/2017] [ 324608] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.® SR - Auto [03/04/2018] [11293936] TeamViewer 13 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® SR - Auto [04/07/2018] [ 297240] Unchecky (unchecky) . (.Reason Software Company Inc..) - C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe =>.Reason Software Company Inc.® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (20) - 5s O38 - TASK: {0018F804-7468-4814-B770-C4F8CEBE0E45} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. O38 - TASK: {007FFC24-10BA-48F3-91A8-17D36349B41C} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [13594584] =>.Piriform Ltd O38 - TASK: {2672485C-4B61-4142-9EB3-B40386B23CB8} [64Bits][\DeviceDetector7.5] - (.CyberLink Corp. - MediaEspresso DeviceDetector.) -- C:\Program Files (x86)\CyberLink\MediaEspresso7.5\DeviceDetector\DeviceDetector7.5.exe [879288] =>.CyberLink Corp. O38 - TASK: {2F3C0FBB-477A-4A7B-B6AB-9E817D3E83EC} [64Bits][\GlaryInitialize 5] - (.Glarysoft Ltd - Glary Utilities Initialize.) -- C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [135120] =>.Glarysoft Ltd O38 - TASK: {4DE7CC64-7F32-4127-8464-DC8D08B3D071} [64Bits][\RTKCPL] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9228800] =>.Realtek Semiconductor O38 - TASK: {54C82CBD-C251-47A3-A8B5-F29BB407CA39} [64Bits][\SnailDriverSkipUAC] - (.SnailSoft - SnailDriver.exe.) -- C:\Program Files (x86)\SnailSuite\SnailDriver\SnailDriver.exe [193024] O38 - TASK: {59A50CF8-BF9F-41A7-BC3F-ED4E8AF2C87F} [64Bits][\SnailDriverSkipUSC] - (.SnailDrivers - SnailLaunch.) -- C:\Program Files (x86)\SnailSuite\SnailDriver\SnailLaunch.exe [814592] =>.SnailDrivers O38 - TASK: {5DE6AE6C-7337-4367-8E0F-E12B7CAB755D} [64Bits][\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start] - (.Hewlett-Packard Company - HP Support Assistant.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [545080] =>.Hewlett-Packard Company O38 - TASK: {676FA207-F38B-4354-8B9B-EF014FE34619} [64Bits][\CCleaner Update] - (.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [533200] =>.Piriform Ltd O38 - TASK: {945FA00E-4735-4647-A75F-D3251EEBA4BC} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc. C:\windows\System32\Tasks\CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Ltd C:\windows\System32\Tasks\DeviceDetector7.5 - (.CyberLink Corp..) -- C:\Program Files (x86)\CyberLink\MediaEspresso7.5\DeviceDetector\DeviceDetector7.5.exe [] =>.CyberLink Corp. C:\windows\System32\Tasks\GlaryInitialize 5 - (.Glarysoft Ltd.) -- C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [] =>.Glarysoft Ltd C:\windows\System32\Tasks\RTKCPL - (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [-s] =>.Realtek Semiconductor C:\windows\System32\Tasks\SnailDriverSkipUAC - (.SnailSoft.) -- C:\Program Files (x86)\SnailSuite\SnailDriver\SnailDriver.exe [] C:\windows\System32\Tasks\SnailDriverSkipUSC - (.SnailDrivers.) -- C:\Program Files (x86)\SnailSuite\SnailDriver\SnailLaunch.exe [] =>.SnailDrivers C:\windows\System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start - (.Hewlett-Packard Company.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [/taskrestart] =>.Hewlett-Packard Company C:\windows\System32\Tasks\CCleaner Update - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Ltd C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc. ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (12) - 2s O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp.® O4 - HKLM\..\Run: [Classic Start Menu] . (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe =>.Ivaylo Beltchev® O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe =>.Glarysoft LTD® O4 - HKCU\..\Run: [Power2GoExpress11] . (.CyberLink Corp. - Power2Go Desktop Burning Gadget.) -- C:\Program Files (x86)\CyberLink\Power2Go11\Power2GoExpress.exe =>.CyberLink Corp.® O4 - HKCU\..\Run: [SnailDriver] . (.SnailDrivers - SnailLaunch.) -- C:\Program Files (x86)\SnailSuite\SnailDriver\SnailLaunch.exe =>.SnailDrivers O4 - HKLM\..\Wow6432Node\Run: [DropboxOEM] . (. - DropboxOEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe =>.Dropbox, Inc® O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G11] . (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go11\CLMLSvc_P2G11.exe =>.CyberLink Corp.® O4 - HKUS\S-1-5-21-2952796674-3952710296-3611388709-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - HKUS\S-1-5-21-2952796674-3952710296-3611388709-1001\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe =>.Glarysoft LTD® O4 - HKUS\S-1-5-21-2952796674-3952710296-3611388709-1001\..\Run: [Power2GoExpress11] . (.CyberLink Corp. - Power2Go Desktop Burning Gadget.) -- C:\Program Files (x86)\CyberLink\Power2Go11\Power2GoExpress.exe =>.CyberLink Corp.® O4 - HKUS\S-1-5-21-2952796674-3952710296-3611388709-1001\..\Run: [SnailDriver] . (.SnailDrivers - SnailLaunch.) -- C:\Program Files (x86)\SnailSuite\SnailDriver\SnailLaunch.exe =>.SnailDrivers ---\\ PROCESSUS LANCÉS (53) - 9s [MD5.98060FFF86EA387F08BFDEFFB0C8E29C] - (.Softex Inc. - HP SimplePass Service.) -- C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [94720] [PID.892] =>.Softex Inc. [MD5.75AA4807E2B39D327E993527E4D3B49C] - (.AMD - AMD External Events Service Module.) -- C:\windows\system32\atiesrxx.exe [290184] [PID.964] =>.AMD [MD5.4877D2A20FF4438E60673BC5C5BA45FB] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324608] [PID.1060] =>.Realtek Semiconductor Corp.® [MD5.245B48D46A3181EA46917F791AFF484C] - (...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe [2057928] [PID.1516] =>.philandro Software GmbH® [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.1680] =>.Apple Inc.® [MD5.16783D49B6931414BAD1B2368ADD9656] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360] [PID.1836] =>.Arvato Digital Services Canada Inc® [MD5.6C112DA6C86DB7FB2C50522EFDDA706A] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776] [PID.1904] =>.Arvato Digital Services Canada Inc® [MD5.9E18DF158751CF968E7DF83256D70233] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896] [PID.1968] =>.CyberLink Corp.® [MD5.0000341F01739F6877363D0064BF2376] - (.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11293936] [PID.744] =>.TeamViewer GmbH® [MD5.1671436888E5C3477697B56659033AE2] - (.Reason Software Company Inc. - Unchecky Service.) -- C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [297240] [PID.1916] =>.Reason Software Company Inc.® [MD5.F7265B7490428499F2FE409FA9247866] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008] [PID.1824] =>.Malwarebytes Corporation® [MD5.E976643CF97862F3408281E3EEBD5F7C] - (.WildTangent - WildTangent Games App Integration Service.) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [255040] [PID.1884] =>.WildTangent Inc® [MD5.5F8D5933392AA2EA6ECD5118428FFEB2] - (.Hewlett-Packard Company - HP Support Assistant Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [93184] [PID.4664] =>.Hewlett-Packard Company [MD5.2EE751AD3F10B1EFF9E3800A0840098B] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [530824] [PID.5652] =>.AMD [MD5.BE38B471A99BF7FD0E6445308DF2E8AB] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3784400] [PID.3512] =>.Malwarebytes Corporation® [MD5.08A030DFE4F90AC9BCC78343B24D167C] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1489920] [PID.4804] =>.Realtek Semiconductor Corp.® [MD5.3F7DDDDFC51C1EF7EE8B19FDF152541A] - (.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [44815512] [PID.4532] =>.TeamViewer GmbH® [MD5.247EC06628880F515F1DA309FA318B8C] - (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [506104] [PID.4760] =>.Softex Incorporated® [MD5.67FB2E84F02D2380E848F9AF2690720A] - (.Hewlett-Packard - HP SimplePass Application.) -- C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [4678392] [PID.756] =>.Softex Incorporated® [MD5.3E0CD49A17BD475CA9BE3CB6A1526D40] - (.Reason Software Company Inc. - Unchecky Background Process.) -- C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe [618776] [PID.3944] =>.Reason Software Company Inc.® [MD5.F3C8882DC5151B81CB444E7E93320A61] - (.IvoSoft - Classic Start Menu.) -- C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640] [PID.4920] =>.Ivaylo Beltchev® [MD5.5D612961ABE6249E20ED6FAF95212637] - (.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\tv_w32.exe [185072] [PID.4332] =>.TeamViewer GmbH® [MD5.8DFD21AB6658372F0FB826ECE27DF08B] - (.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\tv_x64.exe [214768] [PID.5112] =>.TeamViewer GmbH® [MD5.D52DC3CB1710FB55D9EF418BDF46FD88] - (...) -- C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe [65024] [PID.4848] =>.Hewlett-Packard [MD5.3DFB1495DB99089AC4BC83D379E98E3C] - (.Hewlett-Packard - HP SimplePass BHO Broker.) -- C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exe [506104] [PID.4944] =>.Softex Incorporated® [MD5.245B48D46A3181EA46917F791AFF484C] - (...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe [2057928] [PID.4960] =>.philandro Software GmbH® [MD5.C7BAB4FB92EDD4EC40F20C0951168360] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [18385368] [PID.6060] =>.Piriform Ltd® [MD5.E11050FE99DBD98517D872F75749F960] - (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) -- C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe [931040] [PID.2032] =>.Evernote Corporation® [MD5.1AAB9AE4E9455D032EB228A98DB4F1A3] - (.CyberLink - CyberLink MediaLibray Service.) -- C:\Program Files (x86)\CyberLink\Power2Go11\CLMLSvc_P2G11.exe [118456] [PID.1552] =>.CyberLink Corp.® [MD5.04485BF4FD6F922095AB6EF73F9D3495] - (.CyberLink Corp. - MediaEspresso DeviceDetector.) -- C:\Program Files (x86)\CyberLink\MediaEspresso7.5\DeviceDetector\DeviceDetector7.5.exe [879288] [PID.616] =>.CyberLink Corp.® [MD5.EB1D2EA675E862E86E71E9A321CB893A] - (.Glarysoft Ltd - Glary Utilities 5.) -- C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [914896] [PID.1044] =>.Glarysoft LTD® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.700] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.800] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.1476] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.3952] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.2312] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.6100] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.5256] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.3384] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.5032] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.712] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.280] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.3680] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.2784] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.5744] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.5828] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.5064] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.6000] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.3656] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.2844] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.2996] =>.Google Inc® [MD5.CB2A1C2EA227F0338E7F3A8BC03C3D6E] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568] [PID.3664] =>.Google Inc® [MD5.5D77E9BD02A42291C73DA5F6890D3E33] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\VANDENHAUTE\Downloads\ZHPDiag3.exe [3153280] [PID.2836] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (40) - 4s G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://mail.google.com/ =>.Google Inc. G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.facebook.com/ =>.Facebook G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://uptobox.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://ww1.zone-telechargement1.com/ G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://twitter.com G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.proximustv.be G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [ahdamgeajnilelndecnolnjhjhkbihoj] http://matchdrop.funkyapps.info/ G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [ahmpjcflkgiildlgicmcieglgoilbfdp] Free Download Manager extension =>.Free Download Manager G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [bmfmccmloeoabkbgidmhjpdonhbnjfjh] Solitaire Games G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [boeajhmfdjldchidhphikilcgdacljfm] Facebook =>.Facebook G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [daaehkjmdmodknldpplikflminiicfal] Bubble Cupid G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [dcdlnbbnjknldpikkllanljjbnegnnei] http://absolutist.com/ G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [dlppkpafhbajpcmmoheippocdidnckmm] http://plus.google.com?utm_source=chrome_ntp_icon& G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [dnjkggjhcbohgnikmegjkodmakmimlkj] Word Search G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [eljmkmbmhmgmpmmbkagbobpmpocacdbo] Solitaire Games G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [fdjamakpfbbddfjaooikfcpapjohcfmg] Dashlane =>.Dashlane, Inc G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [gabbbocakeomblphkmmnoamkioajlkfo] Nano Adblocker G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [gdkfcgceminipbgjnnimdkejmlaecebj] http://gamers2play.net/ G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [gglombdniedbpmlneeefajadjplgcaec] http://bunnypop.funkyapps.info/ G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [ggolfgbegefeeoocgjbmkembbncoadlb] Nano Defender G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [ghgabhipcejejjmhhchfonmamedcbeod] =>.hotcleaner.com {Click&Clean} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [icpncmlkidbhjejlalbdilmmlikilhjh] Bubblez! G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [jeiljgiamgoakndjcmnnaannkigaojpo] Text Font for Facebook™ - App G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [kkgkognjknhcgbgbeijjondlikfkgnog] http://ipp-google-grepo.innogames.de/ G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [kpmleklkkbobaonglkhkedkjofilkfjk] Solitaire Games - World Collection =>.Games Software G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [mlodoemfddfaefdmcijfhhgomcmelecl] Pyramid Solitaire G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [pdabfienifkbhoihedcgeogidfmibmhp] http://www.hotcleaner.com/ =>.hotcleaner.com {Click&Clean App} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [pfpeapihoiogbcmdmnibeplnikfnhoge] Outlook.com =>.live.com G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [VANDENHAUTE][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (3) - 0s P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (17) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://hp13.msn.com =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://hp13.msn.com =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.18817 (winblue_ltsb.170907-0600)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation R4 - HKLM\Software\WOW6432Node\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 =>Default.Value ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (63) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll =>.Ivaylo Beltchev® O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.Hewlett-Packard - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll =>.Hewlett-Packard Company® O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.IvoSoft - Customizations for the title bar and status.) -- C:\Program Files\Classic Shell\ClassicIEDLL_64.dll =>.Ivaylo Beltchev® ---\\ RACCOURCIS GLOBAL STARTUP (160) - 29s O4 - GS\Desktop [Administrator]: cruiseDirector3Launcher - Raccourci.lnk . (...) C:\Users\VANDENHAUTE\Vacation Adventures - Cruise Director 3\cruiseDirector3Launcher.exe O4 - GS\Desktop [Administrator]: CyberLink_Media_Suite_v14.0.lnk . (.CyberLink - CyberLink Downloader.) C:\Users\VANDENHAUTE\Downloads\CyberLink_Media_Suite_v14.0.exe =>.CyberLink Corp.® O4 - GS\Desktop [Administrator]: Family Farm - Fresh Start.lnk . (.SoWhat! s.r.o. - Game executable.) C:\JEUX\Family Farm - Fresh Start\Family Farm.exe O4 - GS\Desktop [Administrator]: Jewel Quest II.lnk . (.iWin.com - Jewel Quest® II: Windows Vista™ Edition.) C:\JEUX\Jewel Quest II\JewelQuest2.exe =>.iWin.com O4 - GS\Desktop [Administrator]: Jewel Quest.lnk . (...) C:\JEUX\Jewel Quest\JewelQuest.exe O4 - GS\Desktop [Administrator]: Mary Knots - Garden Wedding.lnk . (...) C:\JEUX\Mary Knots - Garden Wedding\MaryKnotsGardenWedding.exe O4 - GS\Desktop [Administrator]: Mary's Family Take a Vacation.lnk . (...) C:\JEUX\Mary's Family Take a Vacation\Mary's Family Take a Vacation - French.exe O4 - GS\Desktop [Administrator]: Painter 2019 x64 - Raccourci.lnk . (.Corel Corporation - .) C:\Program Files (x86)\Corel\Painter 2019\Painter 2019 x64.exe =>.Corel Corporation O4 - GS\Desktop [Administrator]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=1 =>.AdaptiveBee SASU® O4 - GS\Desktop [Administrator]: Vacation Adventures - Cruise Director 2.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director 2\cruiseDirector2Launcher.exe O4 - GS\Desktop [Administrator]: Vacation Adventures - Cruise Director 4.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director 4\cruiseDirector4.exe O4 - GS\Desktop [Administrator]: Vacation Adventures - Cruise Director.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director\cruiseDirectorLauncher.exe O4 - GS\Desktop [Administrator]: VANDENHAUTE Régis - Raccourci.lnk . (...) C:\Users\VANDENHAUTE O4 - GS\Desktop [Administrator]: Woodville - Raccourci.lnk . (.Rumbic Studio - Woodwille Chronicles.) C:\Users\VANDENHAUTE\Woodville Chronicles\Woodville Chronicles\Woodville.exe O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: Zuma Deluxe.lnk . (...) C:\JEUX\Zuma Deluxe\Zuma.exe O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Administrator]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe =>.AdaptiveBee SASU® O4 - GS\sendTo [Administrator]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.Evernote Corporation® O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 13.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Administrator]: CyberLink Media Suite.lnk . (.CyberLink Corp. - CyberLink PowerStarter Main Program.) C:\Program Files (x86)\CyberLink\Media Suite\PS.exe =>.CyberLink Corp.® O4 - GS\TaskBar [Administrator]: Dropbox.lnk . (...) C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Administrator]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrator]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\Startup [Administrator]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.Evernote Corporation® O4 - GS\Programs [Administrator]: Documents.lnk . (...) C:\Users\VANDENHAUTE\Documents O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrator]: Pictures.lnk . (...) C:\Users\VANDENHAUTE\Pictures =>.Microsoft Corporation O4 - GS\Programs [Administrator]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\Desktop [Gast]: cruiseDirector3Launcher - Raccourci.lnk . (...) C:\Users\VANDENHAUTE\Vacation Adventures - Cruise Director 3\cruiseDirector3Launcher.exe O4 - GS\Desktop [Gast]: CyberLink_Media_Suite_v14.0.lnk . (.CyberLink - CyberLink Downloader.) C:\Users\VANDENHAUTE\Downloads\CyberLink_Media_Suite_v14.0.exe =>.CyberLink Corp.® O4 - GS\Desktop [Gast]: Family Farm - Fresh Start.lnk . (.SoWhat! s.r.o. - Game executable.) C:\JEUX\Family Farm - Fresh Start\Family Farm.exe O4 - GS\Desktop [Gast]: Jewel Quest II.lnk . (.iWin.com - Jewel Quest® II: Windows Vista™ Edition.) C:\JEUX\Jewel Quest II\JewelQuest2.exe =>.iWin.com O4 - GS\Desktop [Gast]: Jewel Quest.lnk . (...) C:\JEUX\Jewel Quest\JewelQuest.exe O4 - GS\Desktop [Gast]: Mary Knots - Garden Wedding.lnk . (...) C:\JEUX\Mary Knots - Garden Wedding\MaryKnotsGardenWedding.exe O4 - GS\Desktop [Gast]: Mary's Family Take a Vacation.lnk . (...) C:\JEUX\Mary's Family Take a Vacation\Mary's Family Take a Vacation - French.exe O4 - GS\Desktop [Gast]: Painter 2019 x64 - Raccourci.lnk . (.Corel Corporation - .) C:\Program Files (x86)\Corel\Painter 2019\Painter 2019 x64.exe =>.Corel Corporation O4 - GS\Desktop [Gast]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=1 =>.AdaptiveBee SASU® O4 - GS\Desktop [Gast]: Vacation Adventures - Cruise Director 2.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director 2\cruiseDirector2Launcher.exe O4 - GS\Desktop [Gast]: Vacation Adventures - Cruise Director 4.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director 4\cruiseDirector4.exe O4 - GS\Desktop [Gast]: Vacation Adventures - Cruise Director.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director\cruiseDirectorLauncher.exe O4 - GS\Desktop [Gast]: VANDENHAUTE Régis - Raccourci.lnk . (...) C:\Users\VANDENHAUTE O4 - GS\Desktop [Gast]: Woodville - Raccourci.lnk . (.Rumbic Studio - Woodwille Chronicles.) C:\Users\VANDENHAUTE\Woodville Chronicles\Woodville Chronicles\Woodville.exe O4 - GS\Desktop [Gast]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Gast]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Gast]: Zuma Deluxe.lnk . (...) C:\JEUX\Zuma Deluxe\Zuma.exe O4 - GS\Quicklaunch [Gast]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [Gast]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [Gast]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe =>.AdaptiveBee SASU® O4 - GS\sendTo [Gast]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.Evernote Corporation® O4 - GS\sendTo [Gast]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Gast]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 13.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [Gast]: CyberLink Media Suite.lnk . (.CyberLink Corp. - CyberLink PowerStarter Main Program.) C:\Program Files (x86)\CyberLink\Media Suite\PS.exe =>.CyberLink Corp.® O4 - GS\TaskBar [Gast]: Dropbox.lnk . (...) C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe O4 - GS\TaskBar [Gast]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [Gast]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [Gast]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [Gast]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\Startup [Gast]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.Evernote Corporation® O4 - GS\Programs [Gast]: Documents.lnk . (...) C:\Users\VANDENHAUTE\Documents O4 - GS\Programs [Gast]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Gast]: Pictures.lnk . (...) C:\Users\VANDENHAUTE\Pictures =>.Microsoft Corporation O4 - GS\Programs [Gast]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\Desktop [VANDENHAUTE]: cruiseDirector3Launcher - Raccourci.lnk . (...) C:\Users\VANDENHAUTE\Vacation Adventures - Cruise Director 3\cruiseDirector3Launcher.exe O4 - GS\Desktop [VANDENHAUTE]: CyberLink_Media_Suite_v14.0.lnk . (.CyberLink - CyberLink Downloader.) C:\Users\VANDENHAUTE\Downloads\CyberLink_Media_Suite_v14.0.exe =>.CyberLink Corp.® O4 - GS\Desktop [VANDENHAUTE]: Family Farm - Fresh Start.lnk . (.SoWhat! s.r.o. - Game executable.) C:\JEUX\Family Farm - Fresh Start\Family Farm.exe O4 - GS\Desktop [VANDENHAUTE]: Jewel Quest II.lnk . (.iWin.com - Jewel Quest® II: Windows Vista™ Edition.) C:\JEUX\Jewel Quest II\JewelQuest2.exe =>.iWin.com O4 - GS\Desktop [VANDENHAUTE]: Jewel Quest.lnk . (...) C:\JEUX\Jewel Quest\JewelQuest.exe O4 - GS\Desktop [VANDENHAUTE]: Mary Knots - Garden Wedding.lnk . (...) C:\JEUX\Mary Knots - Garden Wedding\MaryKnotsGardenWedding.exe O4 - GS\Desktop [VANDENHAUTE]: Mary's Family Take a Vacation.lnk . (...) C:\JEUX\Mary's Family Take a Vacation\Mary's Family Take a Vacation - French.exe O4 - GS\Desktop [VANDENHAUTE]: Painter 2019 x64 - Raccourci.lnk . (.Corel Corporation - .) C:\Program Files (x86)\Corel\Painter 2019\Painter 2019 x64.exe =>.Corel Corporation O4 - GS\Desktop [VANDENHAUTE]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=1 =>.AdaptiveBee SASU® O4 - GS\Desktop [VANDENHAUTE]: Vacation Adventures - Cruise Director 2.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director 2\cruiseDirector2Launcher.exe O4 - GS\Desktop [VANDENHAUTE]: Vacation Adventures - Cruise Director 4.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director 4\cruiseDirector4.exe O4 - GS\Desktop [VANDENHAUTE]: Vacation Adventures - Cruise Director.lnk . (...) C:\JEUX\Vacation Adventures - Cruise Director\cruiseDirectorLauncher.exe O4 - GS\Desktop [VANDENHAUTE]: VANDENHAUTE Régis - Raccourci.lnk . (...) C:\Users\VANDENHAUTE O4 - GS\Desktop [VANDENHAUTE]: Woodville - Raccourci.lnk . (.Rumbic Studio - Woodwille Chronicles.) C:\Users\VANDENHAUTE\Woodville Chronicles\Woodville Chronicles\Woodville.exe O4 - GS\Desktop [VANDENHAUTE]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [VANDENHAUTE]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\VANDENHAUTE\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [VANDENHAUTE]: Zuma Deluxe.lnk . (...) C:\JEUX\Zuma Deluxe\Zuma.exe O4 - GS\Quicklaunch [VANDENHAUTE]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\Quicklaunch [VANDENHAUTE]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Quicklaunch [VANDENHAUTE]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe =>.AdaptiveBee SASU® O4 - GS\sendTo [VANDENHAUTE]: Evernote.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote.) C:\Program Files (x86)\Evernote\Evernote\Evernote.exe =>.Evernote Corporation® O4 - GS\sendTo [VANDENHAUTE]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [VANDENHAUTE]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 13.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH® O4 - GS\TaskBar [VANDENHAUTE]: CyberLink Media Suite.lnk . (.CyberLink Corp. - CyberLink PowerStarter Main Program.) C:\Program Files (x86)\CyberLink\Media Suite\PS.exe =>.CyberLink Corp.® O4 - GS\TaskBar [VANDENHAUTE]: Dropbox.lnk . (...) C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe O4 - GS\TaskBar [VANDENHAUTE]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\TaskBar [VANDENHAUTE]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\TaskBar [VANDENHAUTE]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [VANDENHAUTE]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\Startup [VANDENHAUTE]: EvernoteClipper.lnk . (.Evernote Corp., 305 Walnut Street, Redwood City, CA 9 - Evernote Clipper.) C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe =>.Evernote Corporation® O4 - GS\Programs [VANDENHAUTE]: Documents.lnk . (...) C:\Users\VANDENHAUTE\Documents O4 - GS\Programs [VANDENHAUTE]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [VANDENHAUTE]: Pictures.lnk . (...) C:\Users\VANDENHAUTE\Pictures =>.Microsoft Corporation O4 - GS\Programs [VANDENHAUTE]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\CommonDesktop [Public]: Abra Academy.lnk . (...) C:\JEUX\Abra Academy\Abra Academy.exe O4 - GS\CommonDesktop [Public]: Aloha Solitaire.lnk . (.GameHouse, Inc - Super Template!.) C:\JEUX\Aloha Solitaire\AlohaSolitaire.exe O4 - GS\CommonDesktop [Public]: Aloha Tri Peaks.lnk . (...) C:\JEUX\Aloha Tri Peaks\AlohaTriPeaks.exe O4 - GS\CommonDesktop [Public]: AnyDesk.lnk . (...) C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: Coupe Du Monde Solitaire.lnk . (...) C:\JEUX\Coupe Du Monde Solitaire\Soccer Solitaire.exe O4 - GS\CommonDesktop [Public]: Defraggler.lnk . (.Piriform Ltd - Defraggler.) C:\Program Files\Defraggler\Defraggler64.exe =>.Piriform Ltd® O4 - GS\CommonDesktop [Public]: DriversCloud.com - Démarrer la détection.lnk . (.CybelSoft - .) C:\Program Files (x86)\DriversCloud.com\DriversCloud.exe =>.CybelSoft O4 - GS\CommonDesktop [Public]: Evernote.lnk . (...) C:\windows\Installer\{D16B1D50-7D70-11E8-81F3-005056951CAD}\Evernote.ico O4 - GS\CommonDesktop [Public]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: ISO Opener.lnk . (...) C:\Program Files (x86)\ISO Opener\ISOOpener.exe O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: OpenOffice 4.1.5.lnk . (.Apache Software Foundation - OpenOffice 4.1.5.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe =>.Apache Software Foundation O4 - GS\CommonDesktop [Public]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group® O4 - GS\CommonDesktop [Public]: SnailDriver.lnk . (...) C:\Program Files (x86)\SnailSuite\SnailDriver\SnailDriver.exe O4 - GS\CommonDesktop [Public]: TeamViewer 13.lnk . (.TeamViewer GmbH - TeamViewer 13.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O4 - GS\CommonDesktop [Public]: Unchecky.lnk . (.Reason Software Company Inc. - Unchecky.) C:\Program Files (x86)\Unchecky\unchecky.exe =>.Reason Software Company Inc.® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\VANDENHAUTE\Documents O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\VANDENHAUTE\Pictures =>.Microsoft Corporation O4 - GS\Programs [Public]: UR.lnk . (.The Adaptive Bee team - UR.) C:\Users\VANDENHAUTE\AppData\Local\URBrowser\Application\urbrowser.exe --location=2 =>.AdaptiveBee SASU® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Startup [Public]: AnyDesk.lnk . (...) C:\Program Files (x86)\AnyDesk\AnyDesk.exe --control =>.philandro Software GmbH® O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\windows\Camera\Camera.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Corel Painter 2019.lnk . (.Corel Corporation - .) C:\Program Files (x86)\Corel\Painter 2019\Painter 2019 x64.exe =>.Corel Corporation O4 - GS\ProgramsCommon [Public]: CyberLink Desktop Burning Gadget 11.lnk . (.CyberLink Corp. - Power2Go Desktop Burning Gadget.) C:\Program Files (x86)\CyberLink\Power2Go11\Power2GoExpress.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink ISO Viewer 11.lnk . (.CyberLink Corp. - CyberLink ISO Viewer 11.) C:\Program Files (x86)\CyberLink\Power2Go11\IsoViewer.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink LabelPrint2.lnk . (.CyberLink Corp. - LabelPrint.) C:\Program Files (x86)\CyberLink\LabelPrint\LabelPrint.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink MediaEspresso 7.5 Gadget.lnk . (.CyberLink Corp. - CyberLink MediaEspresso Main Program.) C:\Program Files (x86)\CyberLink\MediaEspresso7.5\MediaEspresso.exe gadget =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink MediaEspresso 7.5.lnk . (.CyberLink Corp. - CyberLink MediaEspresso Main Program.) C:\Program Files (x86)\CyberLink\MediaEspresso7.5\MediaEspresso.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink MediaShow 6.lnk . (.CyberLink Corp. - CyberLink MediaShow Main Program.) C:\Program Files (x86)\CyberLink\MediaShow6\MediaShow6.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink Power2Go 11.lnk . (.CyberLink Corp. - CyberLink Power2Go 11.) C:\Program Files (x86)\CyberLink\Power2Go11\Power2Go.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: CyberLink Virtual Drive 11.lnk . (.CyberLink Corp. - CyberLink Virtual Drive 11.) C:\Program Files (x86)\CyberLink\Power2Go11\VirtualDrive.exe =>.CyberLink Corp.® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\windows\FileManager\FileManager.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Microsoft Office.lnk . (.Microsoft Corporation - Microsoft Office.) C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE /OEM =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\windows\FileManager\PhotosApp.exe =>.Microsoft Windows® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>..Microsoft Corporation O4 - GS\ProgramsCommon [Public]: SnailDriver.lnk . (...) C:\Program Files (x86)\SnailSuite\SnailDriver\SnailDriver.exe O4 - GS\ProgramsCommon [Public]: TeamViewer 13.lnk . (.TeamViewer GmbH - TeamViewer 13.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\windows\WinStore\WinStore.htm =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{5AB0F261-A8B9-40F6-9407-35E822ACD71E}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{543AD52B-8D12-43B6-9F05-90F3CC387C9E}: DhcpDomain = sgt.automation.net O17 - HKLM\System\CCS\Services\Tcpip\..\{5AB0F261-A8B9-40F6-9407-35E822ACD71E}: DhcpDomain = lan =>.Local Domain ---\\ PROTOCOLE ADDITIONNEL (20) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (9) - 2s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation O40 - ASIC: Enable TLS1.1 and 1.2 [64Bits] - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\windows\System32\ie4uinit.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\windows\System32\ie4uinit.exe =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\Installer\chrmstp.exe =>.Google Inc® ---\\ LOGICIELS INSTALLÉS (153) - 30s O42 - Logiciel: 7-Zip 18.05 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov O42 - Logiciel: 7-Zip 9.20 (x64 edition) - (.Igor Pavlov.) [HKLM][64Bits] -- {23170F69-40C1-2702-0920-000001000000} =>.Igor Pavlov O42 - Logiciel: Abra Academy version 1.5 - (.Multibyte.) [HKLM][64Bits] -- {D0A81D52-2F1B-4599-BEB7-844A6E7990F8}_is1 =>.Multibyte O42 - Logiciel: Alcor Micro USB Card Reader Driver - (.Alcor Micro Corp..) [HKLM][64Bits] -- {7F28165B-148D-4672-AA21-469D9E6E3CB6} =>.Alcor Micro Corp. O42 - Logiciel: Alcor Micro USB Card Reader Driver - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor =>.Alcor Micro Corp. O42 - Logiciel: Aloha Solitaire version 1.5 - (.Multibyte.) [HKLM][64Bits] -- {4674ACC5-8C04-47A5-8F70-46600C4AC183}_is1 =>.Multibyte O42 - Logiciel: Aloha Tri Peaks version 1.5 - (.Multibyte.) [HKLM][64Bits] -- {AE13E597-2621-412E-B9D5-FDF5AFBEFFFB}_is1 =>.Multibyte O42 - Logiciel: AMD Catalyst Control Center - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F271769D-A4F5-0309-4151-783634055779} =>.Advanced Micro Devices, Inc. O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {47793035-A31B-6024-9F4F-AF211A95A6E4} =>.Advanced Micro Devices, Inc. O42 - Logiciel: AnyDesk - (.philandro Software GmbH.) [HKLM][64Bits] -- AnyDesk =>.philandro Software GmbH® O42 - Logiciel: Bejeweled 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-d8d5abfe-c42e-4db3-9fd0-c68478e93712 =>.WildTangent Inc® O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: Build-a-lot - (.WildTangent.) [HKLM][64Bits] -- WTA-c8cab8a2-0e50-46a1-88e4-d6a162f2fe62 =>.WildTangent Inc® O42 - Logiciel: Building the Great Wall of China Collector's Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-ce3da306-4e05-4d5b-9357-4302be6f2b0e =>.WildTangent Inc® O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A31C1733-DF14-457B-A913-59915BCA4B73} =>.Advanced Micro Devices, Inc. O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7603D63F-FF48-ECA7-EF78-51AD0C7F2345} =>.Advanced Micro Devices, Inc. O42 - Logiciel: Catalyst Control Center InstallProxy - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {2E1D62E5-3498-0438-C303-C04C923AA2B9} =>.Advanced Micro Devices, Inc. O42 - Logiciel: Catalyst Control Center Localization All - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7D386A30-B8CA-9628-F900-57F892F1D34B} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Chinese Standard - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {67F1254F-E539-8ECE-0E5C-EFFFBFFDE031} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Chinese Traditional - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FB5C171E-3ADB-D331-E9F2-460E18B12BDD} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Czech - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FF2F7285-A351-36DC-745B-69DFC9622BAB} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Danish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {95A84755-80D9-D750-AA44-868653BDEAFD} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Dutch - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FB1E890C-BFB1-4086-1133-7BF56A8722E0} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help English - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C7297773-1BEC-F69A-9ACE-1AF76C253E58} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Finnish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E09712F2-6341-523A-C08B-596C94C0D57E} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help French - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {32B21609-B2F6-C5E3-0172-6C5253C0C6C5} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help German - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {86AF63DF-5B44-7AC5-41A1-700AACA0F327} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Greek - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {CBF5928C-338B-26A7-DF6D-D078A3275009} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Hungarian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E09A31E6-C857-B423-1D9B-A2F930E6391B} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Italian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {55DBFA71-5E76-0B9E-C359-0CDD2F8CE937} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Japanese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A43C465D-0A50-221C-D035-0F27C4EDC9DF} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Korean - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {64444B71-2FC5-C12E-FC8D-864CD677BBC7} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Norwegian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {AF7CBC1A-926A-6C45-5A2B-BA62A42112DF} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Polish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {17AC07F7-4047-850A-6A7C-99ADBB6E1C3C} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Portuguese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {328141D1-0456-6334-D021-2AA948D96B90} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Russian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {92548B30-0997-69A8-75DB-38CDB2E5A418} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Spanish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4A273A45-1E80-3CF3-2C46-87F4398625FA} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Swedish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {ABAD8B70-D3FE-8455-40DE-79BB20041FF0} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Thai - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {9ACE0C99-200B-FD2C-63A8-CAFD995105D6} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Turkish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {27A74329-D4CA-F23C-386E-4513E801E3ED} =>.Advanced Micro Devices, Inc. O42 - Logiciel: ccc-utility64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FE5F4199-22D2-6A86-AE75-2385EBB2982C} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd® O42 - Logiciel: Classic Shell - (.IvoSoft.) [HKLM][64Bits] -- {CABCE573-0A86-42FA-A52A-C7EA61D5BE08} =>.IvoSoft O42 - Logiciel: Corel Painter 2019 - (.Corel Corporation.) [HKLM][64Bits] -- _{A7744212-7E8F-44FE-A3FF-068001C911E1} =>.Corel Corporation® O42 - Logiciel: Corel Painter 2019 - Content - (.Corel Corporation.) [HKLM][64Bits] -- {0CB44D25-ABCD-4BAB-88BA-C10225F5B26F} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - Core - (.Corel Corporation.) [HKLM][64Bits] -- {739ABD60-E7F7-4F66-93C8-963C3F10197D} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - Corex64 - (.Corel Corporation.) [HKLM][64Bits] -- {E57822FE-D66B-42F6-8972-51A682D5DB3B} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - CT - (.Corel Corporation.) [HKLM][64Bits] -- {81C4E913-F4B6-46DD-8040-F2495C7E40E7} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - DE - (.Corel Corporation.) [HKLM][64Bits] -- {4957A80C-D042-45D2-BF80-810DD81A3897} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - EN - (.Corel Corporation.) [HKLM][64Bits] -- {175ED696-0A15-44A3-9BDA-9A27AD768A32} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - FR - (.Corel Corporation.) [HKLM][64Bits] -- {7DF9949B-8BA1-4E68-9C66-3CC8E485204C} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - IPM - (.Corel Corporation.) [HKLM][64Bits] -- {EA1947B4-46DA-4484-A9DC-15EB2C5A47FB} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - IPM Content - (.Corel Corporation.) [HKLM][64Bits] -- {D2A529CF-50BB-4509-AB41-8075967BC641} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - JP - (.Corel Corporation.) [HKLM][64Bits] -- {F909CEAE-27D9-46CD-B14D-E32CA6FC84A6} =>.Corel Corporation O42 - Logiciel: Corel Painter 2019 - Setup Files - (.Corel Corporation.) [HKLM][64Bits] -- {A7744212-7E8F-44FE-A3FF-068001C911E1} =>.Corel Corporation O42 - Logiciel: Corel Painter Thumbnail Previewer - (.Corel Corporation.) [HKLM][64Bits] -- {50139369-99B2-496A-8726-D3DC5D6D4235} =>.Corel Corporation O42 - Logiciel: Corel Update Manager - (.Corel corporation.) [HKLM][64Bits] -- {6E7D6853-E0C5-48D9-B5BB-97CD0B0A4DE2} =>.Corel Corporation O42 - Logiciel: Coupe Du Monde Solitaire version 1.5 - (.Multibyte.) [HKLM][64Bits] -- {B9BAE565-43FB-4F09-B648-49DBDFFAD84E}_is1 =>.Multibyte O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-c7873c15-930b-4c47-b4db-846aee05b529 =>.WildTangent Inc® O42 - Logiciel: CyberLink LabelPrint 2.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Media Suite 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.® O42 - Logiciel: CyberLink MediaEspresso 7.5 - (.CyberLink Corp..) [HKLM][64Bits] -- {8D149BE2-6542-4F6A-AEC4-7D61E6DCAEFB} =>.CyberLink Corp.® O42 - Logiciel: CyberLink MediaShow 6 - (.CyberLink Corp..) [HKLM][64Bits] -- {8FCCB703-3FBF-49e7-A43F-A81E27D9B07E} =>.CyberLink Corp.® O42 - Logiciel: Cyberlink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- {5A454EC5-217A-42a5-8CE1-2DDEC4E70E01} =>.CyberLink Corp.® O42 - Logiciel: Cyberlink PhotoDirector - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power Media Player 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power Media Player 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power2Go 11 - (.CyberLink Corp..) [HKLM][64Bits] -- {7A3F32E0-D8E1-40C1-8E1B-1F5693F2ADE0} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- {2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.® O42 - Logiciel: CyberLink Power2Go 8 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerBackup 2.6 - (.CyberLink Corp..) [HKLM][64Bits] -- {ADD5DB49-72CF-11D8-9D75-000129760D75} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerBackup 2.6 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{ADD5DB49-72CF-11D8-9D75-000129760D75} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDirector 12 - (.CyberLink Corp..) [HKLM][64Bits] -- {E1646825-D391-42A0-93AA-27FA810DA093} =>.CyberLink Corp.® O42 - Logiciel: CyberLink PowerDirector 12 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093} =>.CyberLink Corp.® O42 - Logiciel: Defraggler - (.Piriform.) [HKLM][64Bits] -- Defraggler =>.Piriform Ltd® O42 - Logiciel: DisableMSDefender - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {74FE39A0-FB76-47CD-84BA-91E2BBB17EF2} =>.Hewlett-Packard Company O42 - Logiciel: DriversCloud.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {29DC4128-CF89-49D9-A524-B4430F036F14} =>.CybelSoft O42 - Logiciel: Dropbox 25 GB - (.Dropbox, Inc..) [HKLM][64Bits] -- {597A58EC-42D6-4940-8739-FB94491B013C} =>.Dropbox, Inc. O42 - Logiciel: Energy Star - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7} =>.Hewlett-Packard Company O42 - Logiciel: Evernote v. 6.13.14 - (.Evernote Corp..) [HKLM][64Bits] -- {D16B1D50-7D70-11E8-81F3-005056951CAD} =>.Evernote Corp. O42 - Logiciel: Farm Frenzy - (.WildTangent.) [HKLM][64Bits] -- WTA-51ecebeb-563c-4e10-88ae-909dd102fa0c =>.WildTangent Inc® O42 - Logiciel: Foxit PhantomPDF - (.Foxit Corporation.) [HKLM][64Bits] -- {89BF1D4D-1D62-451E-9496-B971BDE82720} =>.Foxit Corporation O42 - Logiciel: Glary Utilities 5.100 - (.Glarysoft Ltd.) [HKLM][64Bits] -- Glary Utilities 5 =>.Glarysoft LTD® O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Governor of Poker 2 Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-2a856b10-84f2-40e6-9757-81ac85d2caad =>.WildTangent Inc® O42 - Logiciel: Hewlett-Packard ACLM.NET v1.2.2.3 - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {6F340107-F9AA-47C6-B54C-C3A19F11553F} =>.Hewlett-Packard Company O42 - Logiciel: HP Customer Experience Enhancements - (.Hewlett-Packard.) [HKLM][64Bits] -- {07FA4960-B038-49EB-891B-9F95930AA544} =>.Hewlett-Packard O42 - Logiciel: HP Documentation - (.Hewlett-Packard.) [HKLM][64Bits] -- {198B2800-6C16-4F2A-BC52-EA0F7FD67095} =>.Hewlett-Packard O42 - Logiciel: HP Recovery Manager - (.Hewlett-Packard.) [HKLM][64Bits] -- {64BAA990-F1FC-4145-A7B1-E41FBBC9DA47} =>.Hewlett-Packard O42 - Logiciel: HP Registration Service - (.Hewlett-Packard.) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C} =>.Hewlett-Packard O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- {314FAD12-F785-4471-BCE8-AB506642B9A1} =>.Hewlett-Packard O42 - Logiciel: HP SimplePass - (.Hewlett-Packard.) [HKLM][64Bits] -- InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1} =>.Hewlett-Packard O42 - Logiciel: HP Support Assistant - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {904822F1-6C7D-4B91-B936-6A1C0810544C} =>.Hewlett-Packard Company O42 - Logiciel: HP Support Information - (.Hewlett-Packard.) [HKLM][64Bits] -- {B2B7B1C8-7C8B-476C-BE2C-049731C55992} =>.Hewlett-Packard O42 - Logiciel: Inst5675 - (.Softex Inc..) [HKLM][64Bits] -- {2DE6247C-7077-451B-8BA7-FFD1A2ABBB47} =>.Softex Inc. O42 - Logiciel: Inst5676 - (.Softex Inc..) [HKLM][64Bits] -- {878F6913-7421-4713-97F7-0A736EE2A188} =>.Softex Inc. O42 - Logiciel: Intel(R) C++ Redistributables on Intel(R) 64 - (.Intel Corporation.) [HKLM][64Bits] -- {AF8A5E6C-7485-47FB-9FE4-CF3B43FDB178} =>.Intel Corporation O42 - Logiciel: ISO Opener - (.www.isoopener.com.) [HKLM][64Bits] -- {CE235F00-F8CD-41AF-83D5-236D90E33BFB}_is1 =>.www.isoopener.com O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-2a57100d-ec28-4ed2-92d7-e661ffdda452 =>.WildTangent Inc® O42 - Logiciel: Malwarebytes version 3.5.1.2522 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: Microsoft Office - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0138-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {071c9b48-7c32-4621-a0ac-3f809523288f} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7f51bdb9-ee21-49ee-94d6-90afc321780e} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ce085a78-074e-4823-8dc1-8a721b94b76d} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {e2ee15e2-a480-4bc5-bfb7-e9803d1d9823} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.11.25325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {404c9c27-8377-4fd1-b607-7ca635db4e49} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2017 x64 Additional Runtime - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2CD849A7-86A1-34A6-B8F9-D72F5B21A9AE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C99E2ADC-0347-336E-A603-F1992B09D582} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.11.25325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {568CD07E-0824-3EEB-AEC1-8FD51F3C85CF} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.11.25325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {029DA848-1A80-34D3-BFC1-A6447BFC8E7F} =>.Microsoft Corporation O42 - Logiciel: OpenOffice 4.1.5 - (.Apache Software Foundation.) [HKLM][64Bits] -- {155C4F2E-7381-4B80-B258-FD0600C9C46B} =>.Apache Software Foundation O42 - Logiciel: Plants vs. Zombies - Game of the Year - (.WildTangent.) [HKLM][64Bits] -- WTA-c1749fd2-ae48-424d-bdb2-35a3a867994a =>.WildTangent Inc® O42 - Logiciel: Polar Bowler 1st Frame - (.WildTangent.) [HKLM][64Bits] -- WTA-63e19cfc-bab7-4694-8d61-8806b73ef50b =>.WildTangent Inc® O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-b77116ec-662c-43d7-8b9a-ac43d9ad25e0 =>.WildTangent Inc® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Revo Uninstaller 2.0.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 =>.VS Revo Group, Ltd. O42 - Logiciel: SnailDriver version 1.0.0.4 - (.SnailSuite.) [HKLM][64Bits] -- {3189DA22-4E71-4794-9F3D-39A3DE0062DE}_is1 =>.SnailSuite O42 - Logiciel: TeamViewer 13 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer GmbH® O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-e1a7f25a-e64f-4cdc-a135-c2725c6ab77e =>.WildTangent Inc® O42 - Logiciel: Unchecky v1.2 - (.Reason Software Company Inc..) [HKLM][64Bits] -- Unchecky =>.Reason Software Company Inc.® O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc® O42 - Logiciel: UR - (.Adaptive Bee.) [HKCU][64Bits] -- URBrowser =>.AdaptiveBee SASU® O42 - Logiciel: Vacation Quest™ - Australia - (.WildTangent.) [HKLM][64Bits] -- WTA-0e4f3faa-5d60-481b-94f7-c81a44b1d402 =>.WildTangent Inc® O42 - Logiciel: Virtual Families - (.WildTangent.) [HKLM][64Bits] -- WTA-e0c74170-54f9-4c3a-9611-498220945fe7 =>.WildTangent Inc® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: Wedding Dash - (.WildTangent.) [HKLM][64Bits] -- WTA-250ae163-6ca5-4dc8-ad04-34a06c0f95f0 =>.WildTangent Inc® O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent Inc® O42 - Logiciel: WildTangent Games App for HP - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp =>.WildTangent Inc® O42 - Logiciel: WinRAR 5.60 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Youda Jewel Shop - (.WildTangent.) [HKLM][64Bits] -- WTA-1887901a-3b54-4170-972c-c591c2d1cd48 =>.WildTangent Inc® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (128) - 30s HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\Corel =>.Corel HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Dropbox =>.Dropbox HKLM\SOFTWARE\Evernote =>.Evernote HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\GlarySoft =>.Glarysoft HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Lake =>.Lake Sofware HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OpenOffice =>.SourceForge HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\TeamViewer =>.TeamViewer GmbH HKLM\SOFTWARE\Unchecky =>.RaMMicHaeL HKLM\SOFTWARE\VideoLAN =>.VideoLAN HKLM\SOFTWARE\WildTangent =>.WildTangent HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\WOW6432Node\Corel =>.Corel HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\WOW6432Node\Dropbox =>.Dropbox HKLM\SOFTWARE\WOW6432Node\Evernote =>.Evernote HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software HKLM\SOFTWARE\WOW6432Node\GlarySoft =>.Glarysoft HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH HKLM\SOFTWARE\WOW6432Node\Unchecky =>.RaMMicHaeL HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLAN HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\abee HKCU\SOFTWARE\Alawar =>.Alawar HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Evernote =>.Evernote HKCU\SOFTWARE\GameHouse =>.GameHouse HKCU\SOFTWARE\Glarysoft =>.Glarysoft HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\Ivanavi HKCU\SOFTWARE\IvoSoft =>.IvoSoft HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Rumbic Studio HKCU\SOFTWARE\Softex =>.Softex HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH HKCU\SOFTWARE\Unchecky =>.RaMMicHaeL HKCU\SOFTWARE\URBrowser HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Corel =>.Corel HKU\.DEFAULT\SOFTWARE\Foxit Software =>.Foxit Software HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\.DEFAULT\SOFTWARE\Protexis64 HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\7-Zip =>.Igor Pavlov HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\abee HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Alawar =>.Alawar HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Corel =>.Corel HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\CyberLink =>.CyberLink Corporation HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Evernote =>.Evernote HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\GameHouse =>.GameHouse HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Glarysoft =>.Glarysoft HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Ivanavi HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\IvoSoft =>.IvoSoft HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Rumbic Studio HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Softex =>.Softex HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\TeamViewer =>.TeamViewer GmbH HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Unchecky =>.RaMMicHaeL HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\URBrowser HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-2952796674-3952710296-3611388709-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ CONTENU DES DOSSIERS PROGRAMMES (230) - 10s O43 - CFD: 02/07/2018 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 24/04/2015 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 24/04/2015 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.® O43 - CFD: 24/04/2015 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 18/06/2018 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 19/06/2018 - [] D -- C:\Program Files\Classic Shell =>.Ivo Beltchev O43 - CFD: 03/07/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 03/07/2018 - [] D -- C:\Program Files\Corel =>.Corel Corporation O43 - CFD: 04/07/2018 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation O43 - CFD: 20/06/2018 - [] D -- C:\Program Files\Defraggler =>.Piriform Ltd O43 - CFD: 06/07/2018 - [] D -- C:\Program Files\DriversCloud.com =>.Cybelsoft O43 - CFD: 24/04/2015 - [] D -- C:\Program Files\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 21/06/2018 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 06/07/2018 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 02/04/2014 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 24/04/2015 - [] RD -- C:\Program Files\Online Services =>.Hewlett-Packard O43 - CFD: 24/04/2015 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 02/04/2014 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 21/06/2018 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 19/06/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\AmUStor =>.Alocr Micro O43 - CFD: 18/06/2018 - [] D -- C:\Program Files (x86)\AnyDesk =>.philandro Software GmbH O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\Corel =>.Corel Corporation O43 - CFD: 04/07/2018 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 04/07/2018 - [] D -- C:\Program Files (x86)\Evernote =>.EverNote Corporation O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 07/07/2018 - [] D -- C:\Program Files (x86)\Glary Utilities 5 =>.GlarySoft O43 - CFD: 18/06/2018 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 19/06/2018 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 04/07/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 21/06/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\Program Files (x86)\ISO Opener O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 02/04/2014 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\Program Files (x86)\NSIS Uninstall Information =>.MSIS O43 - CFD: 24/04/2015 - [] RD -- C:\Program Files (x86)\Online Services =>.Hewlett-Packard O43 - CFD: 18/06/2018 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 02/04/2014 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 06/07/2018 - [] D -- C:\Program Files (x86)\SnailSuite =>.SnailSuite O43 - CFD: 06/07/2018 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH O43 - CFD: 24/04/2015 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\Program Files (x86)\Unchecky =>.RaMMicHaeL O43 - CFD: 18/06/2018 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\WildGames =>.WildTangent Inc® O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games O43 - CFD: 21/06/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Abra Academy O43 - CFD: 15/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 19/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 19/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aloha Solitaire O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aloha Tri Peaks O43 - CFD: 24/04/2015 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk =>.philandro Software GmbH O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 19/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell =>.Ivo Beltchev O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Coupe Du Monde Solitaire O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler =>.Piriform Ltd O43 - CFD: 06/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com =>.Cybelsoft O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 25 GB =>.Dropbox Inc. O43 - CFD: 24/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 =>.GlarySoft O43 - CFD: 18/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support =>.Hewlett-Packard O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO Opener O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 06/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 18/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5 =>.SourceForge O43 - CFD: 04/07/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 22/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky =>.RaMMicHaeL O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\AmUStor =>.Alocr Micro O43 - CFD: 19/06/2018 - [] D -- C:\ProgramData\AnyDesk =>.philandro Software GmbH O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 18/06/2018 - [0] SHD -- C:\ProgramData\Bureaublad O43 - CFD: 19/06/2018 - [] D -- C:\ProgramData\ClassicShell =>.SourceForge O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\CLSK =>.CLSK O43 - CFD: 03/07/2018 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 03/07/2018 - [] D -- C:\ProgramData\Doctor Web =>.Doctor Web Ltd O43 - CFD: 18/06/2018 - [0] SHD -- C:\ProgramData\Documenten =>.Corel Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 06/07/2018 - [] D -- C:\ProgramData\DriversCloud.com =>.Cybelsoft O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\install_backup O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 06/07/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 18/06/2018 - [0] SHD -- C:\ProgramData\Menu Start =>.Microsoft Corporation O43 - CFD: 19/06/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 26/06/2018 - [] D -- C:\ProgramData\Playrix Entertainment =>.Playrix Entertainment O43 - CFD: 03/07/2018 - [] D -- C:\ProgramData\Protexis64 =>.Protexis Inc. O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\RogueKiller =>.Adlice Software O43 - CFD: 21/06/2018 - [] D -- C:\ProgramData\Rumbic Studio O43 - CFD: 18/06/2018 - [0] SHD -- C:\ProgramData\Sjablonen =>.Sjablonen O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Soccer-Cup-Solitaire =>.Games Software O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\ProgramData\Unchecky =>.RaMMicHaeL O43 - CFD: 03/07/2018 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\WildTangent =>.WildTangent O43 - CFD: 24/04/2015 - [] D -- C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44} O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Corel =>.Corel Corporation O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Common Files\CyberLink =>.CyberLink Corporation O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 19/06/2018 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 24/04/2015 - [] D -- C:\Program Files (x86)\Common Files\Nikon =>.Nikon O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Protexis =>.Protexis Inc. O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\AnyDesk =>.philandro Software GmbH O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\ATI =>.ATI O43 - CFD: 03/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Casual Arts =>.Casual Arts O43 - CFD: 19/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\ClassicShell =>.SourceForge O43 - CFD: 03/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 04/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 18/06/2018 - [0] D -- C:\Users\VANDENHAUTE\AppData\Roaming\DiskDefrag =>.Auslogics Software O43 - CFD: 21/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\DropboxOEM =>.Dropbox Inc. O43 - CFD: 20/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Family Farm O43 - CFD: 20/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\GlarySoft =>.GlarySoft O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Google =>.Google O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 18/06/2018 - [0] D -- C:\Users\VANDENHAUTE\AppData\Roaming\hpqlog =>.Hewlett-Packard O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 26/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\MaryKnotsGardenWedding O43 - CFD: 19/06/2018 - [] SD -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 22/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\TeamViewer =>.TeamViewer GmbH O43 - CFD: 05/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 19/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 07/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 25/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\AlawarWrapper =>.Alawar Entertainment O43 - CFD: 06/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\AMD =>.AMD O43 - CFD: 18/06/2018 - [0] SHD -- C:\Users\VANDENHAUTE\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\ATI =>.ATI O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\CEF =>.CEF O43 - CFD: 06/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\ClassicShell =>.SourceForge O43 - CFD: 06/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\CrashRpt O43 - CFD: 04/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\CyberLink =>.CyberLink Corporation O43 - CFD: 18/06/2018 - [0] D -- C:\Users\VANDENHAUTE\AppData\Local\Deployment =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\DropboxOEM =>.Dropbox Inc. O43 - CFD: 18/06/2018 - [] SHD -- C:\Users\VANDENHAUTE\AppData\Local\EmieBrowserModeList =>.Enterprise mode Site List Mgr O43 - CFD: 18/06/2018 - [] SHD -- C:\Users\VANDENHAUTE\AppData\Local\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 18/06/2018 - [] SHD -- C:\Users\VANDENHAUTE\AppData\Local\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 18/06/2018 - [0] SHD -- C:\Users\VANDENHAUTE\AppData\Local\Geschiedenis =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Google =>.Google O43 - CFD: 19/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 02/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 19/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Power2Go11 =>.CyberLink Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\TeamViewer =>.TeamViewer GmbH O43 - CFD: 07/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [0] SHD -- C:\Users\VANDENHAUTE\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\URBrowser O43 - CFD: 04/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 07/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 18/06/2018 - [0] D -- C:\Users\VANDENHAUTE\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 06/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\LocalLow\AMD =>.AMD O43 - CFD: 18/06/2018 - [] SHD -- C:\Users\VANDENHAUTE\AppData\LocalLow\EmieBrowserModeList =>.Enterprise mode Site List Mgr O43 - CFD: 18/06/2018 - [] SHD -- C:\Users\VANDENHAUTE\AppData\LocalLow\EmieSiteList =>.Enterprise mode Site List Mgr O43 - CFD: 18/06/2018 - [] SHD -- C:\Users\VANDENHAUTE\AppData\LocalLow\EmieUserList =>.Enterprise mode Site List Mgr O43 - CFD: 02/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\LocalLow\Evernote =>.EverNote Corporation O43 - CFD: 26/06/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\LocalLow\Ivanavi O43 - CFD: 18/06/2018 - [] SD -- C:\Users\VANDENHAUTE\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] RD -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] RD -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 19/06/2018 - [] RD -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 22/08/2013 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 04/07/2018 - [] RD -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 15/01/2015 - [] RD -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 02/07/2018 - [] D -- C:\Users\VANDENHAUTE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Geschiedenis =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Geschiedenis =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 18/06/2018 - [] -- C:\windows\System32\Config\systemprofile\AppData\Local\AVAST Software =>.AVAST Software O43 - CFD: 24/04/2015 - [] D -- C:\windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 21/06/2018 - [] -- C:\windows\System32\Config\systemprofile\AppData\Roaming\AnyDesk =>.philandro Software GmbH O43 - CFD: 24/04/2015 - [] -- C:\windows\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.IvoSoft - Adds classic Windows Explorer features.) -- C:\Program Files\Classic Shell\ClassicExplorer64.dll =>.Ivaylo Beltchev® ---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (41) - 9s O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH1: CLVDShellExt [64Bits] - {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} . (.Cyberlink - Cyberlink Shell Extension dynamic link libr.) -- C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll =>.CyberLink Corp.® O108 - CMH1: CLVDShellExt11 [64Bits] - {0A968D6C-1B49-4200-94C3-CDDDD6E40454} . (.Cyberlink - Cyberlink Shell Extension dynamic link libr.) -- C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt11.dll =>.CyberLink Corp.® O108 - CMH1: DefragglerShellExtension [64Bits] - {4380C993-0C43-4E02-9A7A-0D40B6EA7590} . (.Piriform Ltd - DefragglerShell.) -- C:\Program Files\Defraggler\DefragglerShell64.dll =>.Piriform Ltd® O108 - CMH1: Foxit_ConvertToPDF [64Bits] - {C5269811-4A29-4818-A4BB-111F9FC63A5F} . (.Foxit Corporation - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Corporation® O108 - CMH1: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll =>.Glarysoft LTD® O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\windows\system32\StartMenuHelper64.dll =>.IvoSoft O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Desktop Control Panel.) -- c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation O108 - CMH6: DefragglerShellExtension [64Bits] - {4380C993-0C43-4E02-9A7A-0D40B6EA7590} . (.Piriform Ltd - DefragglerShell.) -- C:\Program Files\Defraggler\DefragglerShell64.dll =>.Piriform Ltd® O108 - CMH6: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll =>.Glarysoft LTD® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.IvoSoft - Start Menu Helper Extension.) -- C:\windows\system32\StartMenuHelper64.dll =>.IvoSoft O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH7: CLVDShellExt [64Bits] - {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} . (.Cyberlink - Cyberlink Shell Extension dynamic link libr.) -- C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll =>.CyberLink Corp.® O108 - CMH7: CLVDShellExt11 [64Bits] - {0A968D6C-1B49-4200-94C3-CDDDD6E40454} . (.Cyberlink - Cyberlink Shell Extension dynamic link libr.) -- C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt11.dll =>.CyberLink Corp.® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: Glary Utilities [64Bits] - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll =>.Glarysoft LTD® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (16) - 1s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (55) - 20s O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\windows\System32\drivers\3ware.sys [108896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft Windows® O58 - SDL:2016/12/19 22:25:56 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\windows\System32\drivers\amdacpksd.sys [305544] =>.Advanced Micro Devices, Inc.® O58 - SDL:2017/06/12 05:07:20 A . (.Advanced Micro Devices, Inc. - amdkmcsp sys.) -- C:\windows\System32\drivers\amdkmcsp.sys [95080] =>.Advanced Micro Devices Inc.® O58 - SDL:2015/08/18 13:15:16 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\windows\System32\drivers\amdkmpfd.sys [76032] =>.Advanced Micro Devices, Inc.® O58 - SDL:2017/06/12 05:07:22 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\windows\System32\drivers\amdpsp.sys [239976] =>.Advanced Micro Devices Inc.® O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\windows\System32\drivers\amdsata.sys [79200] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\windows\System32\drivers\amdxata.sys [25952] =>.Microsoft Windows® O58 - SDL:2013/07/19 01:00:04 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\windows\System32\drivers\AmUStor.sys [83224] =>.AlcorMicro, Corp.® O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\windows\System32\drivers\arcsas.sys [114016] =>.Microsoft Windows® O58 - SDL:2016/12/19 22:25:28 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\windows\System32\drivers\atikmdag.sys [28725640] =>.Advanced Micro Devices, Inc.® O58 - SDL:2016/12/19 22:27:12 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\windows\System32\drivers\atikmpag.sys [521608] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/08/13 01:25:46 A . (. - BCM Function 2 Device Driver.) -- C:\windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft Windows® O58 - SDL:2014/11/05 11:21:09 A . (.CyberLink - CyberLink Virtual CDROM Bus Enumerator.) -- C:\windows\System32\drivers\CLVirtualBus01.sys [103176] =>.CyberLink Corp.® O58 - SDL:2013/11/12 15:25:22 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\windows\System32\drivers\CLVirtualDrive.sys [91912] =>.CyberLink Corp.® O58 - SDL:2012/05/29 16:53:30 A . (.Windows (R) Codename Longhorn DDK provider - hpvhd 64bit support driver.) -- C:\windows\System32\drivers\cpqdfw.sys [27456] =>.Hewlett-Packard Company® O58 - SDL:2013/06/18 16:45:26 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\windows\System32\drivers\e1i63x64.sys [460288] =>.Intel Corporation O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\windows\System32\drivers\evbda.sys [3357024] =>.Microsoft Windows® O58 - SDL:2018/07/06 19:47:41 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\windows\System32\drivers\farflt.sys [112872] =>.Malwarebytes Corporation® O58 - SDL:2018/06/20 11:08:29 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\windows\System32\drivers\GUBootStartup.sys [28424] =>.Glarysoft LTD® O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft Windows® O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft Windows® O58 - SDL:2018/05/24 06:55:42 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\windows\System32\drivers\mbae64.sys [152184] =>.Malwarebytes Corporation® O58 - SDL:2018/07/06 19:48:26 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\windows\System32\drivers\mbam.sys [44768] =>.Malwarebytes Corporation® O58 - SDL:2018/07/06 12:50:11 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\windows\System32\drivers\MbamChameleon.sys [190696] =>.Malwarebytes Corporation® O58 - SDL:2018/07/06 12:49:59 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\windows\System32\drivers\mbamswissarmy.sys [253664] =>.Malwarebytes Corporation® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\windows\System32\drivers\megasas.sys [56672] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\windows\System32\drivers\megasr.sys [575840] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\windows\System32\drivers\mvumis.sys [63840] =>.Microsoft Windows® O58 - SDL:2018/07/07 11:40:16 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\windows\System32\drivers\mwac.sys [103656] =>.Malwarebytes Corporation® O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\windows\System32\drivers\nvraid.sys [150368] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\windows\System32\drivers\nvstor.sys [168288] =>.Microsoft Windows® O58 - SDL:2015/03/19 10:09:08 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\windows\System32\drivers\Rt630x64.sys [881368] =>.Realtek Semiconductor Corp® O58 - SDL:2017/06/29 12:52:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\windows\System32\drivers\RTKVHD64.sys [5826560] =>.Realtek Semiconductor Corp.® O58 - SDL:2018/02/27 12:58:51 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\windows\System32\drivers\RtsUer.sys [424384] =>.Realtek Semiconductor Corp.® O58 - SDL:2013/07/09 23:58:32 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\windows\System32\drivers\RtsUStor.sys [263896] =>.Realtek Semiconductor Corp® O58 - SDL:2018/03/15 17:50:02 A . (.Realtek Semiconductor Corporation - Realtek WLAN USB NDIS Driver 60477.) -- C:\windows\System32\drivers\rtwlanu.sys [7833912] =>.Realtek Semiconductor Corp.® O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\windows\System32\drivers\secdrv.sys [23040] =>.Rovi Corporation O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\windows\System32\drivers\stexstor.sys [31072] =>.Microsoft Windows® O58 - SDL:2018/07/02 16:51:58 A . (...) -- C:\windows\System32\drivers\TrueSight.sys [28272] =>.Adlice® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\windows\System32\drivers\viaide.sys [19808] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft Windows® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft Windows® O58 - SDL:2014/04/08 16:18:36 A . (.Softex Inc - OmniPass PBA Driver.) -- C:\windows\System32\oprom.sys [5120] =>.Softex Inc ---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (4) - 72s O61 - LFC: 2018/07/03 12:28:11 ASH . (..) -- C:\ProgramData\Protexis64\KGyGaAvL.sys [2588] O61 - LFC: 2018/07/04 15:26:01 A . (..) -- C:\ProgramData\Temp\{ADD5DB49-72CF-11D8-9D75-000129760D75}\PostBuild.exe [36864] O61 - LFC: 2018/06/26 13:22:03 A . (..) -- C:\Users\VANDENHAUTE\Downloads\k-upload-file_2017-11-07-116438d02maryknotsgar.exe [49997545] O61 - LFC: 2018/07/05 14:48:01 A . (..) -- C:\Users\VANDENHAUTE\Downloads\k-upload-file_2017-11-11-1653ddb88vacationadve.exe [277765101] ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (4) - 0s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{E458F00A-1C3C-4A5C-B421-9057074BA96B} - (Amazon (UK) Search Suggestions) - http://www.amazon.co.uk/ =>.Amazon Corporation O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{E458F00A-1C3C-4A5C-B421-9057074BA96B} - (Amazon (UK) Search Suggestions) - http://www.amazon.co.uk/ =>.Amazon Corporation ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (34) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\windows\System32\aelupsvc.dll [214528] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [158720] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [329216] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1362432] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1080320] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [927744] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31744] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1265664] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [230400] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [71168] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [228864] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [346112] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [101376] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1639424] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [166400] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542720] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [233472] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3717632] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (24) - 6s O87 - FAEL: "{8255EBD3-1B28-4B05-A406-A65277492F80}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{91242E05-853A-4425-A444-C71D48DC06C4}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{DD653355-02AA-45A6-9D16-47F5B96E3B1A}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{FC589EC4-9FF3-4A08-B6A0-55E2C7E29DAE}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{364A109D-B638-48A4-8C1B-9547ED5695BB}" [In-None-P17-TRUE] .(.CyberLink Corp. - Power Media Player.) -- c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe =>.CyberLink Corp.® O87 - FAEL: "{482C3FC7-1F72-46DC-A176-1F21F9500583}" [In-None-P17-TRUE] .(.CyberLink - CyberLink Media Server Service.) -- c:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe =>.CyberLink Corp.® O87 - FAEL: "{518CAE69-2439-4635-978E-D1705E136600}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.) -- c:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe =>.CyberLink Corp.® O87 - FAEL: "{2FDB2AA7-51E8-4547-91E9-23B8D54BEE7B}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 12.0.) -- c:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe =>.CyberLink Corp.® O87 - FAEL: "{8CABC774-8F8C-4A64-B136-A33DE7E5B060}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O87 - FAEL: "{4461DA61-52C7-4CAD-81B0-B5D7EB1856F0}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH® O87 - FAEL: "{639EF740-5285-4197-9F0D-68CBBA22CACF}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® O87 - FAEL: "{F6855C30-8681-4526-954C-0423261F60F1}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 13.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH® O87 - FAEL: "{75AAD6AE-14A2-4BE9-9C1A-1366DA43E626}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O87 - FAEL: "{FBE65EF7-0876-4021-957C-53346E982EC4}" [In-None-P6-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Ltd® O87 - FAEL: "{6B245833-FF77-498B-BAEF-CF794ED0DC6F}" [In-None-P17-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Ltd® O87 - FAEL: "{2CCD68A8-7EF8-43AB-BC47-478B41EDCD79}" [In-None-P17-TRUE] .(.Hewlett-Packard Company - HP Device Detection.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe =>.Hewlett-Packard Company® O87 - FAEL: "{1D10DA8A-4032-4E9A-A43A-5C23AE14973B}" [In-None-P6-TRUE] .(.CybelSoft - DriversCloud.com start detection.) -- C:\Program Files\DriversCloud.com\DriversCloud.exe =>.CYBELSOFT® O87 - FAEL: "{9A40D7CF-6568-443A-881E-56D5804BE5B7}" [In-None-P17-TRUE] .(.CybelSoft - DriversCloud.com start detection.) -- C:\Program Files\DriversCloud.com\DriversCloud.exe =>.CYBELSOFT® O87 - FAEL: "{31F7E449-5F38-4F84-B3A7-97FE48F10AB1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O87 - FAEL: "{31FE5C7B-BF7F-4529-8CC9-B5D012DBE6FE}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O87 - FAEL: "{C1446C9A-CF88-4171-A410-C3CAD264CC15}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O87 - FAEL: "{5EFC4D03-8080-46D0-A7F3-22FCCEA8B50B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O87 - FAEL: "{BA4D6667-1CB2-4374-825F-D56D9BD02FCC}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® O87 - FAEL: "{31936D55-E6AD-43AC-B94C-869FDEBB25A6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH® ---\\ CODES PRODUITS LOGICIELS (97) - 7s O90 - PUC: "00005109831090400000000000F01FEC" [HKLM] . (.Microsoft Office.) -- C:\windows\Installer\{90150000-0138-0409-0000-0000000FF1CE}\firstrun.exe =>.Microsoft Corporation O90 - PUC: "0082B89161C6A2F4CB25AEF0F76D0759" [HKLM] . (.HP Documentation.) -- c:\windows\Installer\{198B2800-6C16-4F2A-BC52-EA0F7FD67095}\NotebookDocs.exe =>.Hewlett-Packard O90 - PUC: "03A683D7AC8B82699F00758F291F3DB4" [HKLM] . (.Catalyst Control Center Localization All.) -- c:\windows\Installer\{7D386A30-B8CA-9628-F900-57F892F1D34B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "03B8452979908A9657BD83DC2B5E4A81" [HKLM] . (.CCC Help Russian.) -- c:\windows\Installer\{92548B30-0997-69A8-75DB-38CDB2E5A418}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "05D1B61D07D78E11183F00056559C1DA" [HKLM] . (.Evernote v. 6.13.14.) -- C:\windows\Installer\{D16B1D50-7D70-11E8-81F3-005056951CAD}\Evernote.ico =>.EverNote Corporation O90 - PUC: "0694AF70830BBE9498B1F95939A05A44" [HKLM] . (.HP Customer Experience Enhancements.) -- C:\windows\Installer\{07FA4960-B038-49EB-891B-9F95930AA544}\ARPPRODUCTICON.exe =>.Hewlett-Packard O90 - PUC: "06DBA9377F7E66F4398C69C3F30191D7" [HKLM] . (.Corel Painter 2019 - Core.) -- c:\windows\Installer\{739ABD60-E7F7-4F66-93C8-963C3F10197D}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "07B8DABAEF3D554804ED97BB0240F10F" [HKLM] . (.CCC Help Swedish.) -- c:\windows\Installer\{ABAD8B70-D3FE-8455-40DE-79BB20041FF0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "099AAB46CF1F54147A1B4EF1BB9CAD74" [HKLM] . (.HP Recovery Manager.) -- c:\windows\Installer\{64BAA990-F1FC-4145-A7B1-E41FBBC9DA47}\_853F67D554F05449430E7E.exe =>.Western Digital Technologies O90 - PUC: "0A93EF4767BFDC7448AB192EBB1BE72F" [HKLM] . (.DisableMSDefender.) =>.bl.org O90 - PUC: "17AFBD5567E5E9B03C95C0DDF2C89E73" [HKLM] . (.CCC Help Italian.) -- c:\windows\Installer\{55DBFA71-5E76-0B9E-C359-0CDD2F8CE937}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "17B444465CF2E21CCFD868C46D77BB7C" [HKLM] . (.CCC Help Korean.) -- c:\windows\Installer\{64444B71-2FC5-C12E-FC8D-864CD677BBC7}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1D141823654043360D12A29A849DB609" [HKLM] . (.CCC Help Portuguese.) -- c:\windows\Installer\{328141D1-0456-6334-D021-2AA948D96B90}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1F228409D7C619B49B63A6C1800145C4" [HKLM] . (.HP Support Assistant.) -- C:\windows\Installer\{904822F1-6C7D-4B91-B936-6A1C0810544C}\ARPPRODUCTICON.exe =>.Hewlett-Packard O90 - PUC: "2124477AF8E7EF443AFF6008109C111E" [HKLM] . (.Corel Painter 2019 - Setup Files.) -- c:\windows\Installer\{A7744212-7E8F-44FE-A3FF-068001C911E1}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "21DAF413587F1744CB8EBA0566249B1A" [HKLM] . (.HP SimplePass.) -- C:\windows\Installer\{314FAD12-F785-4471-BCE8-AB506642B9A1}\ARPPRODUCTICON.exe =>.Hewlett-Packard O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" [HKLM] . (.Bonjour.) -- C:\windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico =>.Microsoft Corporation O90 - PUC: "2F21790E1436A3250CB895C6490C5DE7" [HKLM] . (.CCC Help Finnish.) -- c:\windows\Installer\{E09712F2-6341-523A-C08B-596C94C0D57E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "307BCCF8FBF37e944AF38AE1729D0BE7" [HKLM] . (.MediaShow.) -- C:\windows\Installer\{8FCCB703-3FBF-49e7-A43F-A81E27D9B07E}\ARPPRODUCTICON.exe O90 - PUC: "3196F87812473174797FA037E62E1A88" [HKLM] . (.Inst5676.) -- C:\windows\Installer\{878F6913-7421-4713-97F7-0A736EE2A188}\ARPPRODUCTICON.exe =>.Softex O90 - PUC: "319E4C186B4FDD6408042F94C5E7047E" [HKLM] . (.Corel Painter 2019 - CT.) -- c:\windows\Installer\{81C4E913-F4B6-46DD-8040-F2495C7E40E7}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "3371C13A41FDB7549A319519B5ACB437" [HKLM] . (.Catalyst Control Center - Branding.) -- c:\windows\Installer\{A31C1733-DF14-457B-A913-59915BCA4B73}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "3586D7E65C0E9D845BBB79DCB0A0D42E" [HKLM] . (.Corel Update Manager.) -- c:\windows\Installer\{6E7D6853-E0C5-48D9-B5BB-97CD0B0A4DE2}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "375ECBAC68A0AF245AA27CAE165DEB80" [HKLM] . (.Classic Shell.) -- C:\windows\Installer\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}\icon.ico =>.Legitimate O90 - PUC: "3777927CCEB1A96FA9ECA17FC652E385" [HKLM] . (.CCC Help English.) -- c:\windows\Installer\{C7297773-1BEC-F69A-9ACE-1AF76C253E58}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "42C6FBF1Df1C10144AB2C065F4E9E897" [HKLM] . (.Media Suite.) -- c:\windows\Installer\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "4B7491AEAD6448449ACD51BEC2A574BF" [HKLM] . (.Corel Painter 2019 - IPM.) -- c:\windows\Installer\{EA1947B4-46DA-4484-A9DC-15EB2C5A47FB}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "5286461E193D0A2439AA72AF18D00A39" [HKLM] . (.PowerDirector.) -- c:\windows\Installer\{E1646825-D391-42A0-93AA-27FA810DA093}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "52D44BC0DCBABAB488AB1C20525F2BF6" [HKLM] . (.Corel Painter 2019 - Content.) -- c:\windows\Installer\{0CB44D25-ABCD-4BAB-88BA-C10225F5B26F}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "53039774B13A4206F9F4FA12A1596A4E" [HKLM] . (.AMD Catalyst Install Manager.) -- c:\windows\Installer\{47793035-A31B-6024-9F4F-AF211A95A6E4}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "54A372A408E13FC3C264784F936852AF" [HKLM] . (.CCC Help Spanish.) -- c:\windows\Installer\{4A273A45-1E80-3CF3-2C46-87F4398625FA}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "55748A599D08057DAA44686835DBAEDF" [HKLM] . (.CCC Help Danish.) -- c:\windows\Installer\{95A84755-80D9-D750-AA44-868653BDEAFD}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "5827F2FF153ACD6347B596FD9C26B2BA" [HKLM] . (.CCC Help Czech.) -- c:\windows\Installer\{FF2F7285-A351-36DC-745B-69DFC9622BAB}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "5CE454A5A7125a24C81ED2ED4C7EE010" [HKLM] . (.PhotoDirector.) -- c:\windows\Installer\{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "5E26D1E2894383403C300CC429A32A9B" [HKLM] . (.Catalyst Control Center InstallProxy.) -- c:\windows\Installer\{2E1D62E5-3498-0438-C303-C04C923AA2B9}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "63AEB64B17B0E4A4EA1478426134AFA0" [HKLM] . (.Power Media Player.) -- c:\windows\Installer\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}\ARPPRODUCTICON.exe O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "696DE57151A03A44B9ADA972DA67A823" [HKLM] . (.Corel Painter 2019 - EN.) -- c:\windows\Installer\{175ED696-0A15-44A3-9BDA-9A27AD768A32}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "6E13A90E758C324BD1B92A9F036E93B1" [HKLM] . (.CCC Help Hungarian.) -- c:\windows\Installer\{E09A31E6-C857-B423-1D9B-A2F930E6391B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "701043F6AA9F6C745BC43C1AF91155F3" [HKLM] . (.Hewlett-Packard ACLM.NET v1.2.2.3.) -- C:\windows\Installer\{6F340107-F9AA-47C6-B54C-C3A19F11553F}\ARPPRODUCTICON.exe =>.Microsoft Corporation O90 - PUC: "7A948DC21A686A438B9F7DF2B5129AEA" [HKLM] . (.Microsoft Visual C++ 2017 x64 Additional Runtime - 14.12.25810.) =>.Microsoft Corporation O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "7D2F8E1D497754242B6878DE681C98C3" [HKLM] . (.HP Registration Service.) -- c:\windows\Installer\{D1E8F2D7-7794-4245-B286-87ED86C1893C}\ARPPRODUCTICON.exe =>.Hewlett-Packard O90 - PUC: "7F70CA717404A058A6C799DABBE6C1C3" [HKLM] . (.CCC Help Polish.) -- c:\windows\Installer\{17AC07F7-4047-850A-6A7C-99ADBB6E1C3C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "8214CD9298FC9D945A424B34F030F641" [HKLM] . (.DriversCloud.com (64 bits).) -- C:\windows\Installer\{29DC4128-CF89-49D9-A524-B4430F036F14}\maconfico =>.Apple Inc. O90 - PUC: "848AD92008A13D43FB1C6A44B7CFE8F7" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.11.25325.) =>.Microsoft Corporation O90 - PUC: "84b9c17023c712640acaf308593282f8" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org O90 - PUC: "8C1B7B2BB8C7C674EBC24079135C9529" [HKLM] . (.HP Support Information.) =>.Hewlett-Packard O90 - PUC: "90612B236F2B3E5C1027C625350C6C5C" [HKLM] . (.CCC Help French.) -- c:\windows\Installer\{32B21609-B2F6-C5E3-0172-6C5253C0C6C5}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "92347A72AC4DC32F83E654318E103EDE" [HKLM] . (.CCC Help Turkish.) -- c:\windows\Installer\{27A74329-D4CA-F23C-386E-4513E801E3ED}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "94BD5DDAFC278D11D95700109267D057" [HKLM] . (.PowerBackup.) -- c:\windows\Installer\{ADD5DB49-72CF-11D8-9D75-000129760D75}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "963931052B99A69478623DCDD5D62453" [HKLM] . (.Corel Painter Thumbnail Previewer.) -- c:\windows\Installer\{50139369-99B2-496A-8726-D3DC5D6D4235}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "96F071321C0420729002000010000000" [HKLM] . (.7-Zip 9.20 (x64 edition).) =>.Igor Pavlov O90 - PUC: "9914F5EF2D2268A6EA573258BE2B89C2" [HKLM] . (.ccc-utility64.) -- c:\windows\Installer\{FE5F4199-22D2-6A86-AE75-2385EBB2982C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "99C0ECA9B002C2DF368AACDF9915506D" [HKLM] . (.CCC Help Thai.) -- c:\windows\Installer\{9ACE0C99-200B-FD2C-63A8-CAFD995105D6}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc. O90 - PUC: "A1CBC7FAA62954C6A5B2AB264A1221FD" [HKLM] . (.CCC Help Norwegian.) -- c:\windows\Installer\{AF7CBC1A-926A-6C45-5A2B-BA62A42112DF}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "B56182F7D8412764AA1264D9E9E6C36B" [HKLM] . (.Alcor Micro USB Card Reader Driver .) -- c:\windows\Installer\{7F28165B-148D-4672-AA21-469D9E6E3CB6}\ARPPRODUCTICON.exe =>.Alcor Micro Corporation O90 - PUC: "B9499FD71AB886E4C966C38C4E5802C4" [HKLM] . (.Corel Painter 2019 - FR.) -- c:\windows\Installer\{7DF9949B-8BA1-4E68-9C66-3CC8E485204C}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C08A7594240D2D54FB0818D08DA18379" [HKLM] . (.Corel Painter 2019 - DE.) -- c:\windows\Installer\{4957A80C-D042-45D2-BF80-810DD81A3897}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "C098E1BF1BFB68041133B75FA678220E" [HKLM] . (.CCC Help Dutch.) -- c:\windows\Installer\{FB1E890C-BFB1-4086-1133-7BF56A8722E0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C6E5A8FA5847BF74F94EFCB334DF1B87" [HKLM] . (.Intel(R) C++ Redistributables on Intel(R) 64.) =>.bl.org O90 - PUC: "C7426ED27707B154B87AFF1D2ABABB74" [HKLM] . (.Inst5675.) -- C:\windows\Installer\{2DE6247C-7077-451B-8BA7-FFD1A2ABBB47}\ARPPRODUCTICON.exe =>.Softex O90 - PUC: "C8295FBCB8337A62FDD60D873A720590" [HKLM] . (.CCC Help Greek.) -- c:\windows\Installer\{CBF5928C-338B-26A7-DF6D-D078A3275009}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "C971C95CD8669A946BAE1012CCCF2134" [HKLM] . (.LabelPrint.) -- C:\windows\Installer\{C59C179C-668D-49A9-B6EA-0121CCFC1243}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "CDA2E99C7430E6336A301F99B2905D28" [HKLM] . (.Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.12.25810.) =>.Microsoft Corporation O90 - PUC: "CE85A7956D2404947893BF4994B110C3" [HKLM] . (.Dropbox 25 GB.) -- C:\windows\Installer\{597A58EC-42D6-4940-8739-FB94491B013C}\DropboxOEM.exe =>.Dropbox Inc. O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org O90 - PUC: "D4ADA0CF5AF82544A8FF0F0AAB9CE77F" [HKLM] . (.Energy Star.) -- c:\windows\Installer\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}\_853F67D554F05449430E7E.exe =>.Hewlett-Packard O90 - PUC: "D4D1FB9826D1E15449699B17DB8E7202" [HKLM] . (.Foxit PhantomPDF.) -- C:\windows\Installer\{89BF1D4D-1D62-451E-9496-B971BDE82720}\IconName.exe =>.Foxit Corporation O90 - PUC: "D564C34A05A0C1220D53F0724CDE9CFD" [HKLM] . (.CCC Help Japanese.) -- c:\windows\Installer\{A43C465D-0A50-221C-D035-0F27C4EDC9DF}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "D84D78A2FDF3df1479DC1A3E07FEFF2E" [HKLM] . (.Power2Go.) -- c:\windows\Installer\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "D967172F5F4A90301415876343507597" [HKLM] . (.AMD Catalyst Control Center.) -- c:\windows\Installer\{F271769D-A4F5-0309-4151-783634055779}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "E171C5BFBDA3133D9E2F64E0811BB2DD" [HKLM] . (.CCC Help Chinese Traditional.) -- c:\windows\Installer\{FB5C171E-3ADB-D331-E9F2-460E18B12BDD}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "E2F4C551183708B42B85DF60009C4CB6" [HKLM] . (.OpenOffice 4.1.5.) -- C:\windows\Installer\{155C4F2E-7381-4B80-B258-FD0600C9C46B}\soffice.ico =>.Open Source O90 - PUC: "E70DC8654280BEE3EA1CF85DF1C358FC" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.11.25325.) =>.Microsoft Corporation O90 - PUC: "EAEC909F9D72DC641BD43EC26ACF486A" [HKLM] . (.Corel Painter 2019 - JP.) -- c:\windows\Installer\{F909CEAE-27D9-46CD-B14D-E32CA6FC84A6}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "EF22875EB66D6F249827156A285DBDB3" [HKLM] . (.Corel Painter 2019 - Corex64.) -- c:\windows\Installer\{E57822FE-D66B-42F6-8972-51A682D5DB3B}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org O90 - PUC: "F36D306784FF7ACEFE8715DAC0F73254" [HKLM] . (.Catalyst Control Center Graphics Previews Common.) -- c:\windows\Installer\{7603D63F-FF48-ECA7-EF78-51AD0C7F2345}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "F4521F76935EECE8E0C5FEFFFBDF0E13" [HKLM] . (.CCC Help Chinese Standard.) -- c:\windows\Installer\{67F1254F-E539-8ECE-0E5C-EFFFBFFDE031}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "FC925A2DBB059054BA14085769B76C14" [HKLM] . (.Corel Painter 2019 - IPM Content.) -- c:\windows\Installer\{D2A529CF-50BB-4509-AB41-8075967BC641}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "FD36FA6844B55CA7141A07A0CA0A3F72" [HKLM] . (.CCC Help German.) -- c:\windows\Installer\{86AF63DF-5B44-7AC5-41A1-700AACA0F327}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc ---\\ PACKAGES WINDOWS INSTALLER (72) - 13s [MD5.B46EE732DB17736DB62BA7F038481870] [WIS][2015/04/24 12:19:27] (.Hewlett-Packard Company - HP Support Assistant.) -- C:\windows\Installer\119d6b.msi [38204416] =>.Hewlett-Packard Company [MD5.AE876C737A5ED8E461E99BF58A84D0D6] [WIS][2013/08/08 14:03:14] (.Hewlett-Packard Company - InstallShield® 2011 - Premier Edition with .) -- C:\windows\Installer\119d70.msi [2859520] =>.Hewlett-Packard Company [MD5.4AF23F4D0FDC4B72A9650CCCE5CC5F57] [WIS][2015/04/24 12:24:01] (.Hewlett-Packard - InstallShield® 2010 - Premier Edition with .) -- C:\windows\Installer\119d75.msi [550912] =>.Hewlett-Packard [MD5.8215AC208676F134100AA2378BB559EE] [WIS][2014/05/15 13:24:50] (.Hewlett-Packard - InstallShield® 2010 - Premier Edition with .) -- C:\windows\Installer\119d7a.msi [1636352] =>.Hewlett-Packard [MD5.3EC76C3898A5C1EE66C5FAFFED35C7E1] [WIS][2014/08/25 06:59:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119d98.msi [775168] =>.Advanced Micro Devices, Inc. [MD5.D86F35142B47917FA11A4EED1532EC3B] [WIS][2014/08/25 06:59:18] (.Advanced Micro Devices, Inc. - AMD Catalyst Install Manager Installer (64 .) -- C:\windows\Installer\119d9e.msi [8567808] =>.Advanced Micro Devices, Inc. [MD5.DB741D10F06D72239C0954F8C81F3700] [WIS][2014/08/25 06:59:14] (.Advanced Micro Devices, Inc. - Branding.) -- C:\windows\Installer\119da3.msi [472576] =>.Advanced Micro Devices, Inc. [MD5.6485AA58C790945A387C0424A9E18BE9] [WIS][2014/08/25 06:59:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119da8.msi [2262528] =>.Advanced Micro Devices, Inc. [MD5.238AAE1689A230D46C01DDEE58B2333D] [WIS][2014/08/25 06:59:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dad.msi [779264] =>.Advanced Micro Devices, Inc. [MD5.EE0CFC62E5FC23194F07814EC18998AB] [WIS][2014/08/25 06:59:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119db2.msi [743936] =>.Advanced Micro Devices, Inc. [MD5.381C71375D7B581E6A999441B8169E7B] [WIS][2014/08/25 06:59:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119db7.msi [768000] =>.Advanced Micro Devices, Inc. [MD5.DC3934DC54E28074171368D7697A4448] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dbc.msi [881664] =>.Advanced Micro Devices, Inc. [MD5.02559D35A5F91BA8331F0188019B4A83] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dc1.msi [727040] =>.Advanced Micro Devices, Inc. [MD5.581EE153CCCBFF1B8BA677AC5D74BA4A] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dc6.msi [754688] =>.Advanced Micro Devices, Inc. [MD5.863F046F1825B2B50AE4451F3E328E94] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dcb.msi [749568] =>.Advanced Micro Devices, Inc. [MD5.247F3E24AAB624D264C0CDAC5831EB84] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dd0.msi [761856] =>.Advanced Micro Devices, Inc. [MD5.D5925CCFF00BE3BB4D35C795DCD1947C] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dd5.msi [777216] =>.Advanced Micro Devices, Inc. [MD5.A8698F41F3A0110BE22A900411CA6BB7] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dda.msi [752128] =>.Advanced Micro Devices, Inc. [MD5.5FDA935E3EC1C7A4594C44D189A515D6] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119ddf.msi [800256] =>.Advanced Micro Devices, Inc. [MD5.7CFAAA2FAD9721E324F95AD8A754FF50] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119de4.msi [780800] =>.Advanced Micro Devices, Inc. [MD5.E77150FD26F7F7BF01FD6B678D0B5238] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119de9.msi [741888] =>.Advanced Micro Devices, Inc. [MD5.3D83D3F866AE9C7F13784ECAF88B3F4C] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dee.msi [735232] =>.Advanced Micro Devices, Inc. [MD5.7B04D220ECED7CD10941FC850EC6C973] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119df3.msi [770048] =>.Advanced Micro Devices, Inc. [MD5.92BBB49131CF79A108E579B0CFA32327] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119df8.msi [752640] =>.Advanced Micro Devices, Inc. [MD5.72C85825E4F692DC6C1DC839BF7E909B] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119dfd.msi [860160] =>.Advanced Micro Devices, Inc. [MD5.3B0CF1D3B4B6F7F90F3B0A2852D1B7E6] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e02.msi [740864] =>.Advanced Micro Devices, Inc. [MD5.4965A57FF1A07AA24E2FE9AD0924109E] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e07.msi [834048] =>.Advanced Micro Devices, Inc. [MD5.00FC938135479AB7CE48231CAA704029] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e0c.msi [759808] =>.Advanced Micro Devices, Inc. [MD5.B02C63EF7FDCBA37F32204D681D8321A] [WIS][2014/08/25 06:59:17] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e11.msi [750592] =>.Advanced Micro Devices, Inc. [MD5.FA518AF42D7DE0FCDEDA77C20844CC4B] [WIS][2014/08/25 06:59:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e16.msi [752128] =>.Advanced Micro Devices, Inc. [MD5.77414231D2CE5225DD341C695B33B205] [WIS][2014/08/25 06:59:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e1b.msi [898048] =>.Advanced Micro Devices, Inc. [MD5.E489C6627E552FF802F1F3D0B50ED0CC] [WIS][2014/08/25 06:59:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center Utility 64.) -- C:\windows\Installer\119e20.msi [386560] =>.Advanced Micro Devices, Inc. [MD5.6688BE553DF2F71F007644444F5902B8] [WIS][2014/08/25 06:59:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\windows\Installer\119e26.msi [44085248] =>.Advanced Micro Devices, Inc. [MD5.9774ADA27D03D98FDE9F5456938EB8DC] [WIS][2013/08/27 02:10:42] (.Alcor Micro Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\119e2a.msi [1423872] =>.Alcor Micro Corp. [MD5.90E871F96A84E7D927E80B41C03DCC7D] [WIS][2014/09/23 00:03:40] (.Hewlett-Packard.) -- C:\windows\Installer\119e2f.msi [4519424] =>.Hewlett-Packard [MD5.4FF15DB73CA66C749C463848C73799B6] [WIS][2014/07/09 21:43:59] (.Hewlett-Packard - HP Documentation.) -- C:\windows\Installer\119e34.msi [551424] =>.Hewlett-Packard [MD5.4067C0F2275CB203B698486D82D0BCC4] [WIS][2014/07/31 00:58:16] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\119e47.msi [459776] =>.Macrovision Corporation [MD5.589F204769688CEE7EDAA95F33AD2683] [WIS][2014/07/24 22:11:03] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\119e4b.msi [318300] =>.Macrovision Corporation [MD5.C9C25F615AA50D8FC74AA4F94D0C3F6A] [WIS][2012/09/04 04:14:52] (.Hewlett-Packard Company.) -- C:\windows\Installer\119e50.msi [3059200] =>.Hewlett-Packard Company [MD5.8DCF5C9EAACDAF4568220D103F393DEA] [WIS][2014/06/11 06:19:12] (.Apple Inc. - [ProductName] Installer.) -- C:\windows\Installer\119e55.msi [2682368] =>.Apple Inc. [MD5.6BDEE1DF548EFA2192DF56FFABD97DCD] [WIS][2014/08/21 03:27:54] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\119e62.msi [394240] =>.Macrovision Corporation [MD5.CAC92727C33BEC0A79965C61BBB1C82F] [WIS][2012/12/14 18:01:15] (.Igor Pavlov - 7-Zip (x64 edition) Package.) -- C:\windows\Installer\119e67.msi [1376768] =>.Igor Pavlov [MD5.844302C7DC8D3A038D7A417B5F5C4C24] [WIS][2014/09/29 20:17:22] (.Hewlett-Packard - HP SimplePass.) -- C:\windows\Installer\119e6b.msi [1051252] =>.Hewlett-Packard [MD5.4A0334381F79F465CED51AA08AAC734E] [WIS][2014/09/29 20:17:27] (.Softex Inc. - Softex OmniPass Graphical Password Authenti.) -- C:\windows\Installer\119e76.msi [2215936] =>.Softex Inc. [MD5.D2261BFCF2A645F75AA655D5B2038348] [WIS][2014/09/29 20:17:12] (.Softex Inc. - Softex OmniPass wbf Plugin Installer.) -- C:\windows\Installer\119e7c.msi [5050880] =>.Softex Inc. [MD5.FEB3EE1D61146165678928CBB36160BA] [WIS][2018/06/19 22:10:14] (.IvoSoft - Classic Shell.) -- C:\windows\Installer\12f1ad.msi [5361664] =>.IvoSoft [MD5.4B66D1668AF2E4424535307A665A9AE9] [WIS][2018/05/12 00:57:14] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\2a141e.msi [393728] =>.CyberLink Corp. [MD5.CA7472A30B516A4FEA6365B8EDA941FF] [WIS][2018/05/30 16:04:48] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\2a142a.msi [524800] =>.Macrovision Corporation [MD5.66DE3194A9324AECDF5B206C45A42F09] [WIS][2015/04/24 13:07:38] (.Foxit Corporation - Foxit PhantomPDF.) -- C:\windows\Installer\388303.msi [291954688] =>.Foxit Corporation [MD5.1BC05F74C12521065C003718C4C6C136] [WIS][2014/09/03 18:11:40] (.Dropbox, Inc. - Dropbox 25 GB.) -- C:\windows\Installer\388308.msi [2097152] =>.Dropbox, Inc. [MD5.D5C646762D82D4457765C62198E5B2FD] [WIS][2013/02/01 09:53:16] (.Hewlett-Packard Company.) -- C:\windows\Installer\38830d.msi [98816] =>.Hewlett-Packard Company [MD5.734FE1F3083D17D75A21B42953A56E01] [WIS][2014/09/04 02:32:18] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\388311.msi [1319936] =>.CyberLink Corp. [MD5.0EDCCDAE02D4093B34EFAC49B1AF2C67] [WIS][2014/09/19 02:20:03] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\388315.msi [531968] =>.Macrovision Corporation [MD5.B2C115375D3F2A476EF7F44544D567F0] [WIS][2014/09/06 05:21:06] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\windows\Installer\38831f.msi [440832] =>.Macrovision Corporation [MD5.50EA7A4D9481B12A97070942F474D918] [WIS][2018/06/18 16:15:28] (.Google Inc. - Google Update Helper.) -- C:\windows\Installer\38aa6c.msi [40960] =>.Google Inc. [MD5.79EA6827CB914D7DB2ECE1F6890C5315] [WIS][2018/07/04 11:55:53] (.Evernote Corp. - Evernote v. 6.13.14.) -- C:\windows\Installer\39458b9.msi [135815168] =>.Evernote Corp. [MD5.1F024B8919CB1A3BD55BB70DA150B212] [WIS][2018/06/21 23:36:54] (.InstallShield - Corel Painter 2019 - Corex64.) -- C:\windows\Installer\3b6701e.msi [1088512] =>.InstallShield [MD5.0EFC520484F7CE4FA712DA4407E61A14] [WIS][2018/06/21 23:36:50] (.InstallShield - Painter 2019 - Content.) -- C:\windows\Installer\3b67023.msi [2585600] =>.InstallShield [MD5.FF239AAF2A055ACC2C2001DBA5EE5EB5] [WIS][2018/06/21 23:36:52] (.InstallShield - Painter 2019 - EN.) -- C:\windows\Installer\3b67028.msi [946176] =>.InstallShield [MD5.A617AAC078C91638CC8211DCAF09C950] [WIS][2018/06/21 23:36:54] (.InstallShield - Painter 2019 - JP.) -- C:\windows\Installer\3b6702d.msi [950272] =>.InstallShield [MD5.E1FB77C01FA1D1AC19A34DE5029B8DF6] [WIS][2018/06/21 23:36:52] (.InstallShield - Painter 2019 - DE.) -- C:\windows\Installer\3b67032.msi [952832] =>.InstallShield [MD5.29F1FA5CB572C1A97963F816D6AECAD7] [WIS][2018/06/21 23:36:50] (.InstallShield - Painter 2019 - CT.) -- C:\windows\Installer\3b67037.msi [947200] =>.InstallShield [MD5.30BE348CE3A6A42109F4A1EC9F5DD9C6] [WIS][2018/06/21 23:36:52] (.InstallShield - Painter 2019 - FR.) -- C:\windows\Installer\3b6703c.msi [951808] =>.InstallShield [MD5.CC567F851E7B9AFF1AEDCEFC2C9D43F5] [WIS][2018/06/21 23:36:54] (.InstallShield - Corel Painter 2019 - FR.) -- C:\windows\Installer\3b67041.msi [1156096] =>.InstallShield [MD5.4C49999825C7B885BA02459DB038A828] [WIS][2018/06/21 23:36:52] (.Corel Corporation - Corel Painter 2019 - IPM.) -- C:\windows\Installer\3b67046.msi [6351360] =>.Corel Corporation [MD5.EFC2BEFB0073EFDB425FE7C8C0FEE626] [WIS][2018/06/21 23:36:52] (.Corel Corporation - Corel Painter 2019 - IPM Content.) -- C:\windows\Installer\3b6704b.msi [6457344] =>.Corel Corporation [MD5.B344DF7675944DD6FE1E1F8BFD7E5875] [WIS][2018/03/06 17:29:00] (.Corel Corporation - Corel Update Helper v2.) -- C:\windows\Installer\3b6704e.msi [19624448] =>.Corel Corporation [MD5.E44CA3E14A184379AC38F84E1B43B6A6] [WIS][2018/06/21 23:36:46] (.Corel Corporation - Corel Painter 2019 - Setup Files.) -- C:\windows\Installer\3b67053.msi [593408] =>.Corel Corporation [MD5.E05E39CA2D5C6608C076CD3F94EB7331] [WIS][2018/06/21 23:36:54] (.Intel Corporation - Intel(R) C++ Redistributables on Intel(R) 6.) -- C:\windows\Installer\3b67058.msi [13279232] =>.Intel Corporation [MD5.D2F7B751358D6568D41E62BDD8FB569E] [WIS][2018/06/21 23:36:52] (.Corel Corporation - Corel Painter Thumbnail Previewer.) -- C:\windows\Installer\3b6705e.msi [2228736] =>.Corel Corporation [MD5.33849E896416335E9F90BAB6979FCC08] [WIS][2017/12/14 12:55:00] (.Cybelsoft - Hardware Detection DriversCloud.com.) -- C:\windows\Installer\93f111.msi [9240576] =>.Cybelsoft [MD5.5ED28C20AB6633098B5687B93D1B2B5D] [WIS][2017/12/12 05:24:08] (.OpenOffice - OpenOffice 4.1.5.) -- C:\windows\Installer\cfe667.msi [2314240] =>.OpenOffice ---\\ FEATURE CONTROLE. (130) - 0s [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_96DPI_PIXEL]:WindowsAnytimeUpgradeUI.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:PDR12.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:XMLViewerHPSF.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate ---\\ SCAN ADDITIONNEL (5) - 16s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\VANDENHAUTE\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\VANDENHAUTE\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (2) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome ~ Unselected Options: O82, ~ End of the scan, 8767 items in 05mn52s (1605)(0)