~ ZHPDiag v2018.1.8.6 Par Nicolas Coolman (2018/01/08)
~ Démarré par corentin (Administrator) (2018/01/10 23:13:49)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\coren\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\coren\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 16299) =>.Microsoft Corporation

---\\ Navigateurs Internet (4) - 0s
~ GCIE: Google Chrome v63.0.3239.132
~ MFIE: 911 Operator_is1 v1.0
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.192.16299.0

---\\ Informations sur les produits Windows (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ Logiciels de protection (1) - 2s
Windows Defender (Activate) (Protection)

---\\ Logiciels d'optimisation (1) - 2s
~ CCleaner v5.35 (Optimize)

---\\ Logiciels de partage P2P (1) - 2s
~ Vuze v5.7.5.0 (P2P)

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 94 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8254.24 MB (55% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 756 GB (79%) free of 953 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: DESKTOP-BJUFHE2
~ User Name: corentin
~ Logged in as Administrator

---\\ Enumération des unités disques (1) - 0s
~ Drive C: has 756 GB free of 953 GB (System)

---\\ Etat du Centre de Sécurité Windows (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Recherche particulière de fichiers génériques (25) - 2s
[MD5.92B369312AF5D0B83AEF82D5DE0428D2] - 01/01/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3904808] =>.Microsoft Windows®
[MD5.731A783A36A8E69A6434D19D98B12A09] - 29/09/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71168] =>.Microsoft Corporation
[MD5.BF3E1D9B2360C6BE4CC3094CD2DDC617] - 29/09/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [359584] =>.Microsoft Windows Publisher®
[MD5.CDBD10B47A1BEA8B6A009064E90FA298] - 01/01/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3334144] =>.Microsoft Corporation
[MD5.D0926E8FC082646487BD159538F4D9F5] - 01/01/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [715776] =>.Microsoft Corporation
[MD5.4D487E7D2B047FB929BE00117C09F9EC] - 29/09/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [414720] =>.Microsoft Corporation
[MD5.A94E2533A7604E4AA05DCCC675A9F396] - 19/11/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [739696] =>.Microsoft Windows®
[MD5.0A821BF024E347943D6F5C5180FAEA31] - 19/11/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [597160] =>.Microsoft Windows®
[MD5.3B34C7B9D7E22AEF58DF0CFC4C7CC82D] - 30/09/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.7AE4EBDC221235BF9E1008B515C0B8DB] - 01/01/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [614296] =>.Microsoft Windows®
[MD5.6191B9B2EE0E8CB957C683B9B341CC86] - 29/09/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Windows®
[MD5.9E82A95D77AC78C84BA75FF896B060BF] - 29/09/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation
[MD5.6D83565C1652E80447EDEA6947FA89D7] - 29/09/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation
[MD5.9910E9CFF5ECDCB225F82E72CE9DE459] - 29/09/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [151040] =>.Microsoft Corporation
[MD5.99A34FD1F6431A10D8C3BB50E170D0F2] - 29/09/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation
[MD5.56FF074E50F9042FD2856AB3418F4B18] - 29/09/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation
[MD5.7BEC2AF23F586EFF0DB4DBF4331B0C70] - 29/09/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214016] =>.Microsoft Corporation
[MD5.34898F29BF0E9A84E183046318D17814] - 26/11/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [495000] =>.Microsoft Windows®
[MD5.7FC54F2AF5EC52C7AC05AD90FFC757E6] - 01/01/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [316928] =>.Microsoft Corporation
[MD5.E20EC8E25969ABD9F5FED6EDEA57EC0C] - 01/01/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2395032] =>.Microsoft Windows®
[MD5.2E07EC2C1622F5E7B535D62DCD61F3AB] - 29/09/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation
[MD5.E0220BB6580D34001D4D1D133052DAA4] - 29/09/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation
[MD5.DF83769C92527DB50653F8FB57D001FF] - 30/09/2017 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation
[MD5.571D82ABAC428D902ACA0CF60373C039] - 29/09/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121240] =>.Microsoft Windows®
[MD5.5B27846CF4B1C21AFB3A35A8336BA02F] - 08/12/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [401304] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (29) - 1s
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: AdobeUpdateService (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
O23 - Service: Intel® SGX AESM (AESMService) . (.Intel Corporation - Intel® SGX Application Enclave Services Man.) - C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe =>.Intel(R) Software Development Products®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc. - ASLDR Service.) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) - C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\AsusWSWinService.exe =>.ASUS Cloud Corporation
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) . (.ASUSTek Computer Inc. - GFNEXSrv.) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
O23 - Service: bxGgpMVIX0uq Updater (bxGgpMVIX0uq Updater) . (...) - C:\Program Files (x86)\bxGgpMVIX0uq Updater\bxGgpMVIX0uq Updater.exe (.not file.) =>PUP.Optional.bxGgpMVIX0uqUpdater
O23 - Service: Conexant Audio Message Service (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\Windows\system32\CxAudMsg64.exe =>.Conexant Systems Inc.
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
O23 - Service: @oem73.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\SysWOW64\esif_uf.exe =>.Intel(R) Software®
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc®
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: @oem36.inf,%SERVICE_NAME%;Intel Bluetooth Service (ibtsiva) . (...) - C:\WINDOWS\System32\ibtsiva (.not file.) =>.Intel Corporation
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe =>.Intel(R) pGFX®
O23 - Service: Input Director Service (InputDirector) . (...) - C:\Program Files (x86)\Input Director\IDWinService.exe
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: KMS-R@1n (KMS-R@1n) . (...) - C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions®
O23 - Service: Conexant SmartAudio service (SAService) . (.Conexant Systems, Inc. - SmartAudio Service Application.) - C:\Windows\System32\SASrv.exe =>.Conexant Systems, Inc.®
O23 - Service: TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 10.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) . (.Intel(R) Corporation - XtuService.) - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe =>.Intel(R) Software®
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions®

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (40) - 5s
SR - Auto [27/09/2017] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SR - Auto [13/07/2017] [ 814688] AdobeUpdateService (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [12/11/2017] [ 3089680] Intel® SGX AESM (AESMService) . (.Intel Corporation.) - C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe =>.Intel(R) Software Development Products®
SR - Auto [23/08/2017] [ 2257016] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [07/07/2015] [ 123704] ASLDR Service (ASLDRService) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe =>.ASUSTeK Computer Inc.®
SR - Auto [24/12/2015] [ 75264] Asus WebStorage Windows Service (Asus WebStorage Windows Service) . (.ASUS Cloud Corporation.) - C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\AsusWSWinService.exe =>.ASUS Cloud Corporation
SR - Auto [01/04/2015] [ 107320] ATKGFNEX Service (ATKGFNEXSrv) . (.ASUSTek Computer Inc..) - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe =>.ASUSTeK Computer Inc.®
SR - Demand [30/11/2016] [ 301536] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SS - Demand [30/11/2016] [ 480224] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\IntelCpHDCPSvc.exe =>.Intel(R) pGFX®
SR - Auto [20/10/2014] [ 207576] Conexant Audio Message Service (CxAudMsg) . (.Conexant Systems Inc..) - C:\Windows\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.®
SS - Auto [18/01/2017] [ 143144] Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
SS - Demand [18/01/2017] [ 143144] Dropbox Update Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
SS - Demand [22/12/2016] [ 1471168] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe =>.Disc Soft Ltd®
SR - Auto [17/08/2015] [ 1385640] @oem73.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\Windows\SysWOW64\esif_uf.exe =>.Intel(R) Software®
SR - Auto [29/11/2016] [ 640928] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [22/12/2015] [ 349728] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc®
SS - Demand [22/12/2015] [ 209952] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc®
SS - Auto [18/01/2017] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [18/01/2017] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Demand [03/06/2015] [ 217888] Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SS - Demand [08/02/2009] [ 13824] Input Director Vista Service (IDVistaService) . (...) - C:\Program Files (x86)\Input Director\IDVistaService.exe
SR - Auto [30/11/2016] [ 341984] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe =>.Intel(R) pGFX®
SR - Auto [01/02/2010] [ 36864] Input Director Service (InputDirector) . (...) - C:\Program Files (x86)\Input Director\IDWinService.exe
SS - Demand [22/05/2015] [ 881152] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Demand [19/05/2015] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe =>.Intel Corporation
SS - Auto [19/05/2015] [ 7680] Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation
SR - Auto [19/09/2015] [ 207648] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SR - Auto [08/04/2017] [ 26112] KMS-R@1n (KMS-R@1n) . (...) - C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator
SR - Auto [19/09/2015] [ 415520] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SS - Demand [29/11/2016] [ 268704] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Auto [11/12/2016] [ 459832] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Auto [15/06/2016] [ 1881144] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe =>.NVIDIA Corporation®
SS - Auto [15/06/2016] [ 2522680] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe =>.NVIDIA Corporation®
SR - Auto [29/11/2016] [ 157600] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions®
SS - Demand [08/01/2016] [ 48128] ROG Gaming Center Service (ROGGamingCenterService) . (.ASUSTeK COMPUTER INC..) - C:\Program Files (x86)\ASUS\ROG Gaming Center\ROGGamingCenterService.exe =>.ASUSTeK Computer Inc.®
SR - Auto [17/04/2015] [ 427224] Conexant SmartAudio service (SAService) . (.Conexant Systems, Inc..) - C:\Windows\System32\SASrv.exe =>.Conexant Systems, Inc.®
SS - Demand [15/12/2017] [ 1644832] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [17/06/2015] [ 5495056] TeamViewer 10 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer®
SR - Auto [30/09/2015] [ 19192] Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) . (.Intel(R) Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe =>.Intel(R) Software®
SR - Auto [29/11/2016] [ 3732896] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions®

---\\ Tâches planifiées en automatique (Registre) (29) - 5s
O38 - TASK: {0BA236EB-1945-473D-9089-E3CB9EB54AFC} [64Bits][\Sa1053611410536114] - (. - S1053611410536114.) -- C:\Program Files (x86)\Pulsating\waring.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {1F61B2E7-FECC-4321-99DE-76CB62C97E29} [64Bits][\Sa32109511321095113210951132109511] - (. - S32109511321095113210951132109511.) -- C:\Users\coren\AppData\Local\tunings.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {2300B452-3320-450B-BFF1-BFA8B9A610DC} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {2343F073-E842-45CE-8BAC-E879C2281F95} [64Bits][\Sa19194021191940211919402119194021] - (. - S19194021191940211919402119194021.) -- C:\Program Files (x86)\halima\tunings.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {26ABEDC3-59B2-4AF5-92BA-E40B0E6E60D7} [64Bits][\R@1n-KMS\Office16Standard] - (.DESKTOP-BJUFHE2\corentin - .) -- wmic path SoftwareLicensingProduct where (ID="dedfa23d-6ed1-45a6-85dc-63cae0546de6") call Activate [0] =>HackTool.WinActivator
O38 - TASK: {27228967-09B5-4BE6-9C56-104D47B63D6A} [64Bits][\GoogleUpdateTaskUserS-1-5-21-2494373456-523166486-3588513167-1001UA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\coren\AppData\Local\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {346260E4-B6A5-4523-AFC7-FD57B38EE5BC} [64Bits][\Sa10536114105361141053611410536114] - (. - S10536114105361141053611410536114.) -- C:\Program Files (x86)\Pulsating\tunings.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {34ED7B31-7CCA-4C48-A1B7-42024116BECB} [64Bits][\ASUS Splendid ACMON] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784] =>.ASUS
O38 - TASK: {3829477C-ABEF-4C5C-A2E6-DFACC7BE2063} [64Bits][\GoogleUpdateTaskUserS-1-5-21-2494373456-523166486-3588513167-1001Core] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\coren\AppData\Local\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {390343B6-E6BE-439C-AD0B-6EE602AFF3A9} [64Bits][\ASUS Live Update2] - (.ASUSTeK - .) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920] =>.ASUSTeK
O38 - TASK: {39CD21EB-35CB-4512-AA79-269F27FC6E2F} [64Bits][\DropboxUpdateTaskMachineUA] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc.
O38 - TASK: {403889B6-3FD8-47BC-9A52-B074D40DE387} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] =>.Google Inc.
O38 - TASK: {40C16C89-5B22-4B8C-9C81-473B802B8152} [64Bits][\DropboxUpdateTaskMachineCore] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc.
O38 - TASK: {423F1EF3-2B34-44EC-B603-1B15D2C7D42A} [64Bits][\ATK Package A22126881260] - (.ASUSTek Computer Inc. - Simulate Store App Execution Application.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122168] =>.ASUSTek Computer Inc.
O38 - TASK: {43A8FBF9-E126-4925-95CC-9961DBFB969F} [64Bits][\Sak10536114k10536114] - (. - Sk10536114k10536114.) -- C:\Program Files (x86)\chivalrous\chivalrous.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {4C8CCBF1-8DAB-422D-B10E-CA1B9CCF01A2} [64Bits][\ASUS Smart Gesture Launcher] - (.AsusTek - ASUS Smart Gesture Launcher.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [18400] =>.ASUSTeK
O38 - TASK: {5900F4C9-747B-4F02-93A6-22557E212DB5} [64Bits][\ASUS Live Update1] - (.ASUSTeK - .) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920] =>.ASUSTeK
O38 - TASK: {618E046B-B014-424C-8A6C-55C6450A9987} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1171480] =>.Adobe Systems Incorporated
O38 - TASK: {6430CC72-EBF8-4F8C-AF87-2CCE1878ED23} [64Bits][\ASUS\ASUS Product Register Service] - (.ASUSTek Computer Inc. - ASUS Product Register Program.) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1616160] =>.ASUSTek Computer Inc.
O38 - TASK: {76AA3808-1022-4444-95BB-44211B9E7D7F} [64Bits][\Update Checker] - (.ASUSTeK - .) -- C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [17920] =>.ASUSTeK
O38 - TASK: {8C03F6A2-651F-4865-B2A7-E45586EADC75} [64Bits][\ATK Package 36D18D69AFC3] - (.ASUSTek Computer Inc. - Simulate Store App Execution Application.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122168] =>.ASUSTek Computer Inc.
O38 - TASK: {A0659321-F0AE-4F58-937A-A7C35397595A} [64Bits][\Sa1919402119194021] - (. - S1919402119194021.) -- C:\Program Files (x86)\Radcliffe\waring.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {AF47D492-D525-41CE-8E9F-ED4A899D6C61} [64Bits][\AdobeAAMUpdater-1.0-DESKTOP-BJUFHE2-corentin] - (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128] =>.Adobe Systems Incorporated
O38 - TASK: {B82145CD-D1EC-47C9-A5FA-5E0B7C031B90} [64Bits][\DropboxOEM] - (.Copyright © 2015 - DropboxOEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [585000]
O38 - TASK: {BBB0C01D-AC3B-4287-ACD1-EAB6B5CB9449} [64Bits][\ROG Gaming Center] - (.ASUSTek Computer Inc. - ROG Gaming Key.) -- C:\Program Files (x86)\ASUS\ROG Gaming Center\ROGGamingKey.exe [3604792] =>.ASUSTek Computer Inc.
O38 - TASK: {D4CA131F-09F8-4039-9901-F3E2AC1383B9} [64Bits][\Sa3210951132109511] - (. - S3210951132109511.) -- C:\Users\coren\AppData\Local\waring.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {DE0DACBA-6693-4692-8668-584A3A3FAF68} [64Bits][\ASUS USB Charger Plus] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19782224] =>.ASUSTek Computer Inc.
O38 - TASK: {E783382D-EA3A-4A59-8A64-E9B80875C828} [64Bits][\bxGgpMVIX0uq] - (. - bxGgpMVIX0uq.) -- C:\Program Files (x86)\bxGgpMVIX0uq\bxggpmvix0uq.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {F16B54AE-687D-44AB-8C4B-0F0C065D5B48} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7685808] =>.Piriform Ltd

---\\ Applications lancées au démarrage du système (62) - 2s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe =>.NVIDIA Corporation®
O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.®
O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe =>.Conexant Systems, Inc.®
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Run: [optimizes] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKLM\..\Run: [optimizesrefurbishment] . (. - .) -- C:\Program Files (x86)\halima\tunings.exe (.Not File.) =>.SUP.Orphan
O4 - HKLM\..\Run: [optimizesoptimizes] . (. - .) -- C:\Program Files (x86)\Pulsating\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\coren\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKCU\..\Run: [InputDirector] . (.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O4 - HKCU\..\Run: [GoogleDriveSync] . (...) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc®
O4 - HKCU\..\Run: [Battle.net] . (.Blizzard Entertainment - Blizzard Battle.net App.) -- C:\Program Files (x86)\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.®
O4 - HKCU\..\Run: [Adobe Acrobat Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 18.9.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe =>.Adobe Systems, Incorporated®
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Google Update Core.) -- C:\Users\coren\AppData\Local\Google\Update\1.3.33.7\GoogleUpdateCore.exe =>.Google Inc®
O4 - HKCU\..\Run: [MusicManager] . (.Google Inc. - Music Manager.) -- C:\Users\coren\AppData\Local\Programs\Google\MusicManager\MusicManager.exe =>.Google Inc.
O4 - HKCU\..\Run: [DashlanePlugin] . (.Dashlane, Inc. - Dashlane Plugin Agent.) -- C:\Users\coren\AppData\Roaming\Dashlane\DashlanePlugin.exe =>.Dashlane®
O4 - HKCU\..\Run: [Spotify] . (. - .) -- --minimized =>.SUP.Orphan
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [f.lux] . (.f.lux Software LLC - f.lux.) -- C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - HKCU\..\Run: [Chromium] . (. - .) -- c:\users\coren\appdata\local\chromium\application\chrome.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [ascertainable] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [ascertainablesobs] . (. - .) -- C:\Program Files (x86)\halima\tunings.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [ascertainableascertainable] . (. - .) -- C:\Program Files (x86)\Pulsating\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [refurbishment] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [refurbishmentoptimizes] . (. - .) -- C:\Program Files (x86)\halima\tunings.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [refurbishmentrefurbishment] . (. - .) -- C:\Program Files (x86)\Pulsating\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [collet] . (. - .) -- C:\Program Files (x86)\directorates\collet.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [roger] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\coren\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKLM\..\Wow6432Node\Run: [WebStorage] . (...) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\ASUSWSLoader.exe =>.ASUS Cloud Corporation®
O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [Acrobat Assistant 8.0] . (.Adobe Systems Inc. - AcroTray.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe =>.Adobe Systems, Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [sobs] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKLM\..\Wow6432Node\Run: [sobsascertainable] . (. - .) -- C:\Program Files (x86)\halima\tunings.exe (.Not File.) =>.SUP.Orphan
O4 - HKLM\..\Wow6432Node\Run: [sobssobs] . (. - .) -- C:\Program Files (x86)\Pulsating\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\coren\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [InputDirector] . (.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [GoogleDriveSync] . (...) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe =>.Google Inc®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Battle.net] . (.Blizzard Entertainment - Blizzard Battle.net App.) -- C:\Program Files (x86)\Battle.net\Battle.net.exe =>.Blizzard Entertainment, Inc.®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Adobe Acrobat Synchronizer] . (.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 18.9.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe =>.Adobe Systems, Incorporated®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Google Update] . (.Google Inc. - Google Update Core.) -- C:\Users\coren\AppData\Local\Google\Update\1.3.33.7\GoogleUpdateCore.exe =>.Google Inc®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [MusicManager] . (.Google Inc. - Music Manager.) -- C:\Users\coren\AppData\Local\Programs\Google\MusicManager\MusicManager.exe =>.Google Inc.
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [DashlanePlugin] . (.Dashlane, Inc. - Dashlane Plugin Agent.) -- C:\Users\coren\AppData\Roaming\Dashlane\DashlanePlugin.exe =>.Dashlane®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Spotify] . (. - .) -- --minimized =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [f.lux] . (.f.lux Software LLC - f.lux.) -- C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Chromium] . (. - .) -- c:\users\coren\appdata\local\chromium\application\chrome.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [ascertainable] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [ascertainablesobs] . (. - .) -- C:\Program Files (x86)\halima\tunings.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [ascertainableascertainable] . (. - .) -- C:\Program Files (x86)\Pulsating\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [refurbishment] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [refurbishmentoptimizes] . (. - .) -- C:\Program Files (x86)\halima\tunings.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [refurbishmentrefurbishment] . (. - .) -- C:\Program Files (x86)\Pulsating\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [collet] . (. - .) -- C:\Program Files (x86)\directorates\collet.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [roger] . (. - .) -- C:\Program Files (x86)\Radcliffe\waring.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-2494373456-523166486-3588513167-1001\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\coren\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®

---\\ Processus lancés (66) - 4s
[MD5.FD93583990FD0C857E1A78F6BCC2DF76] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [459832] [PID.2020] =>.NVIDIA Corporation®
[MD5.2972D9B9B157025F988203DF6545401A] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxCUIService.exe [341984] [PID.2276] =>.Intel(R) pGFX®
[MD5.41977237876244449B0B77C942884D51] - (.ASUSTek Computer Inc. - ASLDR Service.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [123704] [PID.3036] =>.ASUSTeK Computer Inc.®
[MD5.89810E9E27C8BB0AFB01814523A76347] - (.ASUSTek Computer Inc. - GFNEXSrv.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [107320] [PID.2664] =>.ASUSTeK Computer Inc.®
[MD5.F613C0366B35D977A7145667AAA441A8] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1286080] [PID.3256] =>.NVIDIA Corporation®
[MD5.38622FFE9369D3EC01C0097235BD9279] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83984] [PID.3552] =>.Adobe Systems, Incorporated®
[MD5.AD0541B0ACCC3FAC2F9C8867F462DAC9] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [814688] [PID.3560] =>.Adobe Systems Incorporated®
[MD5.0677F5ECD4F801403C428BBAE1286379] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016] [PID.3568] =>.Adobe Systems Incorporated®
[MD5.AF0561974536C33073E0DF48C2F47C19] - (.ASUS Cloud Corporation - Asus WebStorage Windows Service.) -- C:\Program Files (x86)\ASUS\WebStorage\2.2.6.547\AsusWSWinService.exe [75264] [PID.3580] =>.ASUS Cloud Corporation
[MD5.00000000000000000000000000000000] - (.Conexant Systems Inc. - Conexant Audio Message Service.) -- C:\Windows\system32\CxAudMsg64.exe [0] [PID.3616] =>.Conexant Systems Inc.
[MD5.D110C92552CCADDA2DFC68126DA598F1] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [640928] [PID.3676] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.8A00CC653B8F02503C250FC1B9475807] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\SysWOW64\esif_uf.exe [1385640] [PID.3684] =>.Intel(R) Software®
[MD5.00000000000000000000000000000000] - (.Intel Corporation - Intel(R) Wireless Bluetooth(R) iBtSiva Serv.) -- C:\WINDOWS\system32\ibtsiva.exe [0] [PID.3696] =>.Intel Corporation
[MD5.FB7F9FAD063AE5269A6147E3A48ACD03] - (...) -- C:\Program Files (x86)\Input Director\IDWinService.exe [36864] [PID.3728]
[MD5.0F9FD9565E6EB157FA9BE11ED9C1DC9F] - (...) -- C:\Windows\KMS-R@1n.exe [26112] [PID.3864] =>HackTool.WinActivator
[MD5.A6102293847A7A2DF01E7BF7AC1C1F12] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144] [PID.3888] =>.NVIDIA Corporation®
[MD5.AAC5011F6CC29EF17424F739835BD139] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [157600] [PID.3952] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.C726A4820272D89E85D12FE3294561D7] - (.Conexant Systems, Inc. - SmartAudio Service Application.) -- C:\Windows\System32\SASrv.exe [427224] [PID.3984] =>.Conexant Systems, Inc.®
[MD5.D013AC1FB414C99FEEFB4C2AC1B82DEF] - (.TeamViewer GmbH - TeamViewer 10.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5495056] [PID.4052] =>.TeamViewer®
[MD5.B1B474799BC0EA9BFA3410ABB2B4B9AA] - (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) -- C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3732896] [PID.3076] =>.Intel Corporation-Wireless Connectivity Solutions®
[MD5.1946062404E4071274A30A64C6815FEE] - (.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe [139264] [PID.4296]
[MD5.574EA042CD3B4006BBA00B5BA596B839] - (.ASUSTek Computer Inc. - HControl.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe [295736] [PID.6744] =>.ASUSTeK Computer Inc.®
[MD5.CEBBD45985EB8D30A37B6E8D22DCAB11] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\Temp\DPTF\esif_assist_64.exe [257192] [PID.6752] =>.Intel(R) Software®
[MD5.BCE7E8ED5E131A55F79C1B5B7C0649B7] - (.ASUS - ACMON.) -- C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [54784] [PID.7184] =>.ASUS
[MD5.5499B15CE29051558BBC39BA4882E379] - (.ASUSTek Computer Inc. - ASUS USB Charger Plus.) -- C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19782224] [PID.7480] =>.ASUSTeK Computer Inc.®
[MD5.A17A39B41BA960445C01E1087649B526] - (.ASUSTek Computer Inc. - ATK Media.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [222008] [PID.7496] =>.ASUSTeK Computer Inc.®
[MD5.CA348B924C8AD0E26090384968BF7F98] - (.ASUSTek Computer Inc. - ATKOSD2.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [439096] [PID.7504] =>.ASUSTeK Computer Inc.®
[MD5.A9524BD01BED86EF5031208100E7012C] - (.ASUSTek Computer Inc. - ROG Gaming Key.) -- C:\Program Files (x86)\ASUS\ROG Gaming Center\ROGGamingKey.exe [3604792] [PID.7532] =>.ASUSTeK Computer Inc.®
[MD5.BE586B5D1D73E1F07ED5AADDEFBCAA47] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776] [PID.5488] =>.NVIDIA Corporation®
[MD5.CAC3B57EC42019632BE9B1BEB0A5740F] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxEM.exe [523232] [PID.6412] =>.Intel(R) pGFX®
[MD5.6D7FF5B0C5A6A921C48FB85EE59DC222] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe [599896] [PID.6492] =>.Conexant Systems, Inc.®
[MD5.11A323993F56C5DA51F54799A244BF34] - (...) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [41061856] [PID.6460] =>.Google Inc®
[MD5.C7AFB0560C4247DC79B9866C23FDC519] - (.Blizzard Entertainment - Blizzard Battle.net App.) -- C:\Program Files (x86)\Battle.net\Battle.net.exe [1069032] [PID.9256] =>.Blizzard Entertainment, Inc.®
[MD5.B3097A013CD76B3B47A2FF18BFE1AC1D] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2456120] [PID.9436] =>.NVIDIA Corporation®
[MD5.1F4A15C24AC5CEC7B18FB8EA7D2620C6] - (.Dashlane, Inc. - Dashlane.) -- C:\Users\coren\AppData\Roaming\Dashlane\Dashlane.exe [456656] [PID.9572] =>.Dashlane®
[MD5.DF8449D7A46556998F96E0556F0EB0EB] - (.Dashlane, Inc. - Dashlane Plugin Agent.) -- C:\Users\coren\AppData\Roaming\Dashlane\DashlanePlugin.exe [502736] [PID.9808] =>.Dashlane®
[MD5.05EF78B9E274D3B190C18C34361D4024] - (.f.lux Software LLC - f.lux.) -- C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe [1678840] [PID.9888] =>.F.lux Software LLC®
[MD5.F6563A9B6DDEBFD0E6B6192F24CD33FF] - (.Intel Corporation - Intel® SGX Application Enclave Services Man.) -- C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe [3089680] [PID.9980] =>.Intel(R) Software Development Products®
[MD5.1D6E77475AF059458AB7E15034EE1F9D] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648] [PID.6532] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.A20A528D00ECD8EA6A415D728084CDE1] - (.Conexant Systems, Inc - SmartAudio.) -- C:\Program Files\CONEXANT\SAII\SmartAudio.exe [1078616] [PID.10588] =>.Conexant Systems, Inc.®
[MD5.E6F5AD3FD6D0F64EC88357FC481A71AB] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [9856176] [PID.11204] =>.Piriform Ltd®
[MD5.11A323993F56C5DA51F54799A244BF34] - (...) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [41061856] [PID.2224] =>.Google Inc®
[MD5.74C0393FE87102512E37D2451CF41488] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\coren\AppData\Roaming\Spotify\SpotifyWebHelper.exe [780688] [PID.4636] =>.Spotify AB®
[MD5.6E7C73476B3265E8F66DD644FBA4C37A] - (.Blizzard Entertainment - Blizzard Update Agent.) -- C:\ProgramData\Battle.net\Agent\Agent.5996\Agent.exe [4372456] [PID.5684] =>.Blizzard Entertainment, Inc.®
[MD5.09818157BAD578CA17919C50A5762F49] - (...) -- C:\Program Files (x86)\Battle.net\Battle.net.9737\Battle.net Helper.exe [2420200] [PID.9172] =>.Blizzard Entertainment, Inc.®
[MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.11060] =>.Google Inc®
[MD5.F107219B133E7E574DA052C5C88FFBF3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe [366672] [PID.1256] =>.Google Inc®
[MD5.0D1F9F6D9173D26506683DD5B0BAF4C8] - (.WildTangent - WildTangent Games App Integration Service.) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [349728] [PID.10568] =>.WildTangent Inc®
[MD5.258B7A8D42365472A184C064154F265F] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [415520] [PID.9960] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.EEAC360113AFCC4EA16A7372212235C6] - (.AsusTek - ASUS Smart Gesture Loader.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe [366048] [PID.1412] =>.ASUSTeK Computer Inc.®
[MD5.09818157BAD578CA17919C50A5762F49] - (...) -- C:\Program Files (x86)\Battle.net\Battle.net.9737\Battle.net Helper.exe [2420200] [PID.10912] =>.Blizzard Entertainment, Inc.®
[MD5.11A323993F56C5DA51F54799A244BF34] - (...) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe [41061856] [PID.10188] =>.Google Inc®
[MD5.47C77C53C41E3797046A04AFB6468ABE] - (.AsusTek - ASUS Smart Gesture Center.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe [311776] [PID.6612] =>.ASUSTeK Computer Inc.®
[MD5.C1D83317310C9470DF3CD7BB22AA874E] - (.Intel(R) Corporation - XtuService.) -- C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [19192] [PID.6624] =>.Intel(R) Software®
[MD5.E54BFAB1679CCFBE2C28AD18BE9D0E5F] - (.Intel Corporation - Intel(R) Integrated Clock Controller Servic.) -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [217888] [PID.3668] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.903F7F0109670544B92C26BFB461A10E] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\IntelCpHeciSvc.exe [301536] [PID.10452] =>.Intel(R) pGFX®
[MD5.0F5EF3F836D2E449FE01FCAF17DBD9CF] - (.AsusTek - ASUS Smart Gesture Helper.) -- C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe [179680] [PID.1952] =>.ASUSTeK Computer Inc.®
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9408] =>.Google Inc®
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.9284] =>.Google Inc®
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.2556] =>.Google Inc®
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.1916] =>.Google Inc®
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.7264] =>.Google Inc®
[MD5.8213094EA736A9C575AB0E22AD09B0BA] - (.Intel Corporation - Intel(R) Security Assist.) -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872] [PID.3468] =>.Intel Corporation
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.12092] =>.Google Inc®
[MD5.B50AB350A8F5B45E56AB47EA57B4E1D3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\coren\Downloads\ZHPDiag3.exe [2962304] [PID.10016] =>.Nicolas Coolman
[MD5.BB15D361B629F50680894BFE78047D59] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1592664] [PID.5280] =>.Google Inc®

---\\ Google Chrome, Démarrage,Recherche,Extensions (32) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://docs.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://external-cdg2-1.xx.fbcdn.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://facebook.com =>.Facebook
G0 - GCSP: Preferences [User Data\Default][HomePage] http://s2.googleusercontent.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://scontent-cdg2-1.xx.fbcdn.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://static.xx.fbcdn.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.facebook.com =>.Facebook
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
G2 - GCE: Preference [corentin][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [corentin][User Data\Default] [afkpkaagbcebgebfcangeibbcjangpgd] http://www.playmore.me/
G2 - GCE: Preference [corentin][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [corentin][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [corentin][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [corentin][User Data\Default] [bnbaboaihhkjoaolfnfoablhllahjnee] International GeoGebra Institute =>.International GeoGebra Institute
G2 - GCE: Preference [corentin][User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.eyeo GmbH {AdBlock Plus}
G2 - GCE: Preference [corentin][User Data\Default] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat}
G2 - GCE: Preference [corentin][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [corentin][User Data\Default] [gemgfpodpjapjhfohdlibagceiknakpa] Chain Reaction
G2 - GCE: Preference [corentin][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [corentin][User Data\Default] [gjgkjeheegjnnmheaflhdocglkiegoni] http://www.thehobbit.com/
G2 - GCE: Preference [corentin][User Data\Default] [gjjapmfdikcnbajhfcjaphipdpkacbaf] Airlines-Manager
G2 - GCE: Preference [corentin][User Data\Default] [hkiilmogcdkeefnbemdagpmcediekadb] Pathuku - Connect the lines
G2 - GCE: Preference [corentin][User Data\Default] [ikjmfindklfaonkodbnidahohdfbdhkn] Voice Recognition =>.Dictation
G2 - GCE: Preference [corentin][User Data\Default] [jangaedeekciafhlanphhnalogmhefmo] http://www.thehunter.com/
G2 - GCE: Preference [corentin][User Data\Default] [knkapnclbofjjgicpkfoagdjohlfjhpd] Little Alchemy =>.littlealchemy
G2 - GCE: Preference [corentin][User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] Application Launcher for Drive (by Google) =>.Google Inc.
G2 - GCE: Preference [corentin][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [corentin][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [corentin][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [corentin][User Data\Default] [pofeokhmkoeboedpnpgplflgkppablkm] http://www.kcgames.com/

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (4) - 0s
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation
P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf] - (...) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll =>.Foxit Corporation
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc.
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus15.msn.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.fr =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.fr =>.Google Inc.
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.16299.15 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (27)

---\\ Raccourcis Global Startup (160) - 12s
O4 - GS\Desktop [Administrateur]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrateur]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [Administrateur]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Desktop [Administrateur]: cacaoweb.exe - Raccourci.lnk . (...) C:\Users\coren\Downloads\cacaoweb.exe =>.SUP.CacaoWeb
O4 - GS\Desktop [Administrateur]: Dashlane.lnk . (.Dashlane, Inc. - Dashlane.) C:\Users\coren\AppData\Roaming\Dashlane\Dashlane.exe =>.Dashlane®
O4 - GS\Desktop [Administrateur]: Factorio.lnk . (.Wube Software - Factorio.) C:\Users\coren\Documents\Factorio.v0.14.22.pefelie.orf.x64\bin\x64\factorio.exe
O4 - GS\Desktop [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Administrateur]: Google Drive.lnk . (...) C:\Users\coren\Google Drive
O4 - GS\Desktop [Administrateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [Administrateur]: Quarantine.lnk . (...) C:\Program Files (x86)\Quarantine\Quarantine.exe
O4 - GS\Desktop [Administrateur]: RStudio.lnk . (.RStudio, Inc. - RStudio.) C:\Program Files\RStudio\bin\rstudio.exe =>.RStudio, Inc.
O4 - GS\Desktop [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [Administrateur]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\Desktop [Administrateur]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [Administrateur]: Watch Dogs.lnk . (.Ubisoft Entertainment - .) C:\Program Files (x86)\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe =>.Ubisoft Entertainment
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer®
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Startup [Administrateur]: receivership.lnk . (...) C:\Program Files (x86)\Radcliffe\waring.exe
O4 - GS\Startup [Administrateur]: receivershipreceivership.lnk . (...) C:\Program Files (x86)\halima\tunings.exe
O4 - GS\Startup [Administrateur]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe /startup =>.Twitch Interactive, Inc.®
O4 - GS\Programs [Administrateur]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Programs [Administrateur]: Eye Care Switcher.lnk . (...) C:\Program Files (x86)\ASUS\Splendid\Eye Care Switcher.exe =>.ASUSTeK
O4 - GS\Programs [Administrateur]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [Administrateur]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\coren\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Paramètres de sécurité et de confidentialité.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Songr.lnk . (.Xamasoft - Songr.) C:\Users\coren\AppData\Local\Songr\Songr.exe =>.Xamasoft
O4 - GS\Programs [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [Administrateur]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\Desktop [corentin]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [corentin]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [corentin]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Desktop [corentin]: cacaoweb.exe - Raccourci.lnk . (...) C:\Users\coren\Downloads\cacaoweb.exe =>.SUP.CacaoWeb
O4 - GS\Desktop [corentin]: Dashlane.lnk . (.Dashlane, Inc. - Dashlane.) C:\Users\coren\AppData\Roaming\Dashlane\Dashlane.exe =>.Dashlane®
O4 - GS\Desktop [corentin]: Factorio.lnk . (.Wube Software - Factorio.) C:\Users\coren\Documents\Factorio.v0.14.22.pefelie.orf.x64\bin\x64\factorio.exe
O4 - GS\Desktop [corentin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [corentin]: Google Drive.lnk . (...) C:\Users\coren\Google Drive
O4 - GS\Desktop [corentin]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [corentin]: Quarantine.lnk . (...) C:\Program Files (x86)\Quarantine\Quarantine.exe
O4 - GS\Desktop [corentin]: RStudio.lnk . (.RStudio, Inc. - RStudio.) C:\Program Files\RStudio\bin\rstudio.exe =>.RStudio, Inc.
O4 - GS\Desktop [corentin]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [corentin]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\Desktop [corentin]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [corentin]: Watch Dogs.lnk . (.Ubisoft Entertainment - .) C:\Program Files (x86)\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe =>.Ubisoft Entertainment
O4 - GS\Quicklaunch [corentin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [corentin]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\sendTo [corentin]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [corentin]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [corentin]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer®
O4 - GS\sendTo [corentin]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Startup [corentin]: receivership.lnk . (...) C:\Program Files (x86)\Radcliffe\waring.exe
O4 - GS\Startup [corentin]: receivershipreceivership.lnk . (...) C:\Program Files (x86)\halima\tunings.exe
O4 - GS\Startup [corentin]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe /startup =>.Twitch Interactive, Inc.®
O4 - GS\Programs [corentin]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Programs [corentin]: Eye Care Switcher.lnk . (...) C:\Program Files (x86)\ASUS\Splendid\Eye Care Switcher.exe =>.ASUSTeK
O4 - GS\Programs [corentin]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [corentin]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [corentin]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\coren\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [corentin]: Paramètres de sécurité et de confidentialité.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation
O4 - GS\Programs [corentin]: Songr.lnk . (.Xamasoft - Songr.) C:\Users\coren\AppData\Local\Songr\Songr.exe =>.Xamasoft
O4 - GS\Programs [corentin]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [corentin]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\Desktop [WDAGUtilityAccount]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [WDAGUtilityAccount]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\Desktop [WDAGUtilityAccount]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Desktop [WDAGUtilityAccount]: cacaoweb.exe - Raccourci.lnk . (...) C:\Users\coren\Downloads\cacaoweb.exe =>.SUP.CacaoWeb
O4 - GS\Desktop [WDAGUtilityAccount]: Dashlane.lnk . (.Dashlane, Inc. - Dashlane.) C:\Users\coren\AppData\Roaming\Dashlane\Dashlane.exe =>.Dashlane®
O4 - GS\Desktop [WDAGUtilityAccount]: Factorio.lnk . (.Wube Software - Factorio.) C:\Users\coren\Documents\Factorio.v0.14.22.pefelie.orf.x64\bin\x64\factorio.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [WDAGUtilityAccount]: Google Drive.lnk . (...) C:\Users\coren\Google Drive
O4 - GS\Desktop [WDAGUtilityAccount]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [WDAGUtilityAccount]: Quarantine.lnk . (...) C:\Program Files (x86)\Quarantine\Quarantine.exe
O4 - GS\Desktop [WDAGUtilityAccount]: RStudio.lnk . (.RStudio, Inc. - RStudio.) C:\Program Files\RStudio\bin\rstudio.exe =>.RStudio, Inc.
O4 - GS\Desktop [WDAGUtilityAccount]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [WDAGUtilityAccount]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\Desktop [WDAGUtilityAccount]: Uplay.lnk . (.Ubisoft - Uplay launcher.) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe =>.Ubisoft Entertainment Sweden AB®
O4 - GS\Desktop [WDAGUtilityAccount]: Watch Dogs.lnk . (.Ubisoft Entertainment - .) C:\Program Files (x86)\Ubisoft\WATCH_DOGS\bin\Watch_Dogs.exe =>.Ubisoft Entertainment
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\sendTo [WDAGUtilityAccount]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer®
O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Startup [WDAGUtilityAccount]: receivership.lnk . (...) C:\Program Files (x86)\Radcliffe\waring.exe
O4 - GS\Startup [WDAGUtilityAccount]: receivershipreceivership.lnk . (...) C:\Program Files (x86)\halima\tunings.exe
O4 - GS\Startup [WDAGUtilityAccount]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe /startup =>.Twitch Interactive, Inc.®
O4 - GS\Programs [WDAGUtilityAccount]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Programs [WDAGUtilityAccount]: Eye Care Switcher.lnk . (...) C:\Program Files (x86)\ASUS\Splendid\Eye Care Switcher.exe =>.ASUSTeK
O4 - GS\Programs [WDAGUtilityAccount]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [WDAGUtilityAccount]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\coren\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [WDAGUtilityAccount]: Paramètres de sécurité et de confidentialité.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation
O4 - GS\Programs [WDAGUtilityAccount]: Songr.lnk . (.Xamasoft - Songr.) C:\Users\coren\AppData\Local\Songr\Songr.exe =>.Xamasoft
O4 - GS\Programs [WDAGUtilityAccount]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [WDAGUtilityAccount]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\CommonDesktop [Public]: 911 Operator.lnk . (...) C:\Program Files (x86)\PlayWay SA\911 Operator\911.exe
O4 - GS\CommonDesktop [Public]: Adobe Acrobat DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat DC.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Systems, Incorporated®
O4 - GS\CommonDesktop [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\CommonDesktop [Public]: Amanote.lnk . (.Amaplex Software - Amanote.) C:\Program Files\Amanote\Amanote.exe {030879DB73FA3CCDD218FEA53273772C}
O4 - GS\CommonDesktop [Public]: Battle.net.lnk . (.Blizzard Entertainment - Blizzard Battle.net App Launcher.) C:\Program Files (x86)\Battle.net\Battle.net Launcher.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\CommonDesktop [Public]: DAEMON Tools Lite.lnk . (.Disc Soft Ltd - DAEMON Tools Lite.) C:\Program Files\DAEMON Tools Lite\DTLauncher.exe =>.Disc Soft Ltd®
O4 - GS\CommonDesktop [Public]: Input Director.lnk . (.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) C:\Program Files (x86)\Input Director\InputDirector.exe
O4 - GS\CommonDesktop [Public]: League of Legends.lnk . (.Copyright (C) 2016 - League of Legends.) C:\Riot Games\League of Legends\LeagueClient.exe =>.Riot Games, Inc.®
O4 - GS\CommonDesktop [Public]: Overcooked.lnk . (...) C:\Program Files\Overcooked\Overcooked.exe
O4 - GS\CommonDesktop [Public]: Overwatch Test.lnk . (.Blizzard Entertainment - Overwatch Setup.) C:\Program Files (x86)\Overwatch Test\Overwatch Launcher.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: Overwatch.lnk . (.Blizzard Entertainment - Overwatch Setup.) C:\Program Files (x86)\Overwatch\Overwatch Launcher.exe =>.Blizzard Entertainment, Inc.®
O4 - GS\CommonDesktop [Public]: R x64 3.4.2.lnk . (.R Core Team 1995-2017 - R for Windows GUI front-end.) C:\Program Files\R\R-3.4.2\bin\x64\Rgui.exe
O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\CommonDesktop [Public]: Train Mechanic Simulator 2017.lnk . (...) C:\Program Files\Train Mechanic Simulator 2017\tms.exe
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\CommonDesktop [Public]: Watch_Dogs 2.lnk . (.Ubisoft Entertainment - WatchDogs2.) C:\Program Files (x86)\Watch_Dogs 2\bin\WatchDogs2.exe -eac_launcher =>.Blue Byte GmbH®
O4 - GS\CommonDesktop [Public]: Zotero.lnk . (.Corporation for Digital Scholarship - Zotero.) C:\Program Files (x86)\Zotero\zotero.exe =>.Corporation for Digital Scholarship®
O4 - GS\Programs [Public]: Anki.lnk . (...) C:\Program Files (x86)\Anki\anki.exe
O4 - GS\Programs [Public]: Eye Care Switcher.lnk . (...) C:\Program Files (x86)\ASUS\Splendid\Eye Care Switcher.exe =>.ASUSTeK
O4 - GS\Programs [Public]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\coren\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [Public]: Fonctionnalités optionnelles.lnk . (.Microsoft Corporation - Assistance des fonctionnalités à la demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\coren\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Paramètres de sécurité et de confidentialité.lnk . (.Microsoft Corporation - UNPUXHost.) C:\Windows\System32\UNP\UNPUXHost.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: Songr.lnk . (.Xamasoft - Songr.) C:\Users\coren\AppData\Local\Songr\Songr.exe =>.Xamasoft
O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\coren\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [Public]: Twitch.lnk . (.Twitch Interactive, Inc. - Twitch.) C:\Users\coren\AppData\Roaming\Curse Client\Bin\Twitch.exe =>.Twitch Interactive, Inc.®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat Distiller DC.lnk . (.Adobe Systems Incorporated. - Acrobat Distiller.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrodist.exe =>.Adobe Systems, Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Acrobat DC.lnk . (.Flexera Software LLC - InstallShield.) C:\WINDOWS\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico =>.Flexera Software LLC
O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe InDesign CC 2017.lnk . (.Adobe Systems Incorporated - Adobe InDesign CC 2017.) C:\Program Files\Adobe\Adobe InDesign CC 2017\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Amanote.lnk . (.Amaplex Software - Amanote.) C:\Program Files\Amanote\Amanote.exe {030879DB73FA3CCDD218FEA53273772C}
O4 - GS\ProgramsCommon [Public]: Dropbox 25 GB.lnk . (.Copyright © 2015 - DropboxOEM.) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe manualstartmenu =>.Dropbox, Inc®
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0012-0000-1000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Overcooked.lnk . (...) C:\Program Files\Overcooked\Overcooked.exe
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0012-0000-1000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Sublime Text 3.lnk . (.Copyright (C) 2006 - 2016 Sublime HQ Pty Ltd - Sublime Text.) C:\Program Files\Sublime Text 3\sublime_text.exe =>.Sublime HQ Pty Ltd®
O4 - GS\ProgramsCommon [Public]: TeamViewer 10.lnk . (.TeamViewer GmbH - TeamViewer 10.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer®
O4 - GS\ProgramsCommon [Public]: Train Mechanic Simulator 2017.lnk . (...) C:\Program Files\Train Mechanic Simulator 2017\tms.exe
O4 - GS\ProgramsCommon [Public]: Vuze.lnk . (.Azureus Software, Inc - .) C:\Program Files (x86)\Vuze\Azureus.exe
O4 - GS\ProgramsCommon [Public]: WildTangent Games App - asus.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp asusnb =>.WildTangent Inc®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0012-0000-1000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Zotero.lnk . (.Corporation for Digital Scholarship - Zotero.) C:\Program Files (x86)\Zotero\zotero.exe =>.Corporation for Digital Scholarship®

---\\ Modification Domaine/Adresses DNS (7) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = lan =>.Local Domain
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{9e785ca7-a1fd-4cd1-b938-6881eb8c0c38}: NameServer = 82.163.142.8,95.211.158.136 =>Adware.DNSUnlocker
O17 - HKLM\System\CCS\Services\Tcpip\..\{3a90957c-53b4-42b9-9fff-78f732561256}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{9e785ca7-a1fd-4cd1-b938-6881eb8c0c38}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{de6d30aa-8899-406c-ad12-6bb4a34dca5a}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{9e785ca7-a1fd-4cd1-b938-6881eb8c0c38}: DhcpDomain = lan =>.Local Domain

---\\ Protocole additionnel (26) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: mso-minsb.16 [64Bits] - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files\Microsoft Office\Office16\MSOSB.DLL =>.Microsoft Corporation®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (121) - 16s
O42 - Logiciel: 911 Operator version 1.0 - (.PlayWay SA.) [HKLM][64Bits] -- 911 Operator_is1 =>.PlayWay SA
O42 - Logiciel: Adobe Acrobat DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-1033-FFFF-7760-0C0F074E4100} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe InDesign CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- IDSN_12_1_0 =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_18_1 =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824245926} =>.Adobe Systems Incorporated
O42 - Logiciel: Amanote 1.0.8 - (.Amaplex Software.) [HKLM][64Bits] -- 202f85a7-063f-5209-bee9-e41968bfe63f {030879DB73FA3CCDD218FEA53273772C}
O42 - Logiciel: Anki - (.Damien Elmes.) [HKLM][64Bits] -- Anki =>.Damien Elmes
O42 - Logiciel: Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation
O42 - Logiciel: ASUS Live Update - (.ASUS.) [HKLM][64Bits] -- {FA540E67-095C-4A1B-97BA-4D547DEC9AF4} =>.ASUS
O42 - Logiciel: ASUS Smart Gesture - (.ASUS.) [HKLM][64Bits] -- {4D3286A6-F6AB-498A-82A4-E4F040529F3D} =>.ASUS
O42 - Logiciel: ASUS Splendid Video Enhancement Technology - (.ASUS.) [HKLM][64Bits] -- {0969AF05-4FF6-4C00-9406-43599238DE0D} =>.ASUS
O42 - Logiciel: ASUS USB Charger Plus - (.ASUS.) [HKLM][64Bits] -- {A859E3E5-C62F-4BFA-AF1D-2B95E03166AF} =>.ASUS
O42 - Logiciel: ATK Package - (.ASUS.) [HKLM][64Bits] -- {AB5C933E-5C7D-4D30-B314-9C83A49B94BE} =>.ASUS
O42 - Logiciel: AudioWizard - (.ICEpower a/s.) [HKLM][64Bits] -- {57E770A2-2BAF-4CAA-BAA3-BD896E2254D3} =>.ICEpower a/s
O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM][64Bits] -- {908DB568-E5FA-40C7-A2AA-AB340190858B} =>.Google, Inc.
O42 - Logiciel: Battle.net - (.Blizzard Entertainment.) [HKLM][64Bits] -- Battle.net =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: Block'hood - (.Plethora-Project LLC.) [HKLM][64Bits] -- Steam App 416210 =>.Valve®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: Cities: Skylines - (.Colossal Order Ltd..) [HKLM][64Bits] -- Steam App 255710 =>.Valve®
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.®
O42 - Logiciel: Cryptographic Provider for Windows OS - (.Intel Corporation.) [HKLM][64Bits] -- {87BB55EE-F7F0-4B99-A245-618F5C1FD649} =>.Intel Corporation
O42 - Logiciel: Cryptographic Provider for Windows OS - (.Intel Corpration.) [HKLM][64Bits] -- {5f0bf020-a1b2-4eeb-b336-e3792d34f9dd} =>.Intel(R) Cryptographic Provider For Windows OS®
O42 - Logiciel: Curse - (.Curse.) [HKLM][64Bits] -- {F36ED29E-33E1-48AB-95DA-2498AD41A9A0} =>.Curse
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite =>.Disc Soft Ltd®
O42 - Logiciel: Dashlane - (.Dashlane, Inc..) [HKCU][64Bits] -- Dashlane =>.Dashlane, Inc.
O42 - Logiciel: Device Setup - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {8D6B05E0-F457-408C-9D13-549334D8FAE1} =>.ASUSTek Computer Inc.
O42 - Logiciel: Dropbox 25 GB - (.Dropbox, Inc..) [HKLM][64Bits] -- {0867A88D-764F-366E-9E21-130DA8B472C3} =>.Dropbox, Inc.
O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc.
O42 - Logiciel: f.lux - (.f.lux Software LLC.) [HKCU][64Bits] -- Flux =>.f.lux Software LLC
O42 - Logiciel: GameFirst IV - (.ASUS.) [HKLM][64Bits] -- {795A0031-3DD5-43F1-BCBA-AEBA756D0FBB} =>.ASUS
O42 - Logiciel: GameFirst IV - (.ASUS.) [HKLM][64Bits] -- GameFirst IV 1.5.23 =>.ASUS
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: Input Director v1.2.2 - (.Imperative Software Pty Ltd.) [HKLM][64Bits] -- Input Director =>.Imperative Software Pty Ltd
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {8E2CA9DC-9975-468F-90CF-C740109DD2B8} =>.Intel Corporation
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {a2d9fda8-65eb-4c06-81ef-31e0a4daa335} =>.Intel Corporation - Software and Firmware Products®
O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- {654EE65D-FAA4-4EA6-8C07-DC94E6A304D4} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {7EEC6C54-5441-472A-8792-A5185CC17DF1} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {846DE3C3-F079-4E2D-AE25-74D2B62B1D9F} =>.Intel Corporation
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {D622E3AC-0583-4CEC-9455-8B9139C7B4A2} =>.Intel Corporation
O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {b14b9c09-5373-46b7-8c90-6a25cc5ef2ec} =>.Intel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX®
O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {30E935B2-0DAC-455E-AC76-3C8504DC3D18} =>.Intel Corporation
O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {9FD91C5C-44AE-4D9D-85BE-AE52816B0294} =>.Intel Corporation
O42 - Logiciel: Intel(R) Wireless Bluetooth(R) - (.Intel Corporation.) [HKLM][64Bits] -- {9A287643-10C5-4463-B9D1-B2404CE18CCF} =>.Intel Corporation
O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {224CC1EA-2433-4106-81BA-5D5432B11744} =>.Intel Corporation
O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] -- {4B230374-6475-4A73-BA6E-41015E9C5013} =>.Intel Corporation
O42 - Logiciel: Intel® Software Guard Extensions Platform Software - (.Intel Corporation.) [HKLM][64Bits] -- {24DAC3F9-B4BF-437E-BB30-8BCBAAB2DFA6} =>.Intel Corporation
O42 - Logiciel: Intel® Software Guard Extensions Platform Software - (.Intel Corporation.) [HKLM][64Bits] -- ARP_for_prd_SGX_1.9.100.41172 =>.Intel(R) Software Development Products®
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {7D84E343-A23D-451C-B123-0195B2D903A6} =>.Intel Corporation
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- {11B73856-A062-4E6B-A80E-A3F380BBAB65} =>.Riot Games
O42 - Logiciel: League of Legends - (.Riot Games.) [HKLM][64Bits] -- League of Legends 4.2.1 =>.Riot Games
O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {5853172b-5520-4089-9ef4-e26c594382b3} =>.Intel Corporation-Wireless Connectivity Solutions®
O42 - Logiciel: Microsoft Excel MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0016-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00BA-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtensio - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0169E83-757B-EF66-E2F0-391944D785BC} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft OneNote MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00A1-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001A-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0018-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0019-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Word MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001B-040C-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Mini Metro - (.Dinosaur Polo Club.) [HKLM][64Bits] -- Steam App 287980 =>.Valve®
O42 - Logiciel: Mises à jour NVIDIA 2.11.4.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Music Manager - (.Google, Inc..) [HKCU][64Bits] -- MusicManager =>.Google, Inc.
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Logiciel système PhysX 9.16.0318 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Network Service - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 2.11.4.1 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 1.2.40 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: Overcooked - (..) [HKLM][64Bits] -- b3ZlcmNvb2tlZA_is1
O42 - Logiciel: Overwatch - (.Blizzard Entertainment.) [HKLM][64Bits] -- Overwatch =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: Overwatch Test - (.Blizzard Entertainment.) [HKLM][64Bits] -- Overwatch Test =>.Blizzard Entertainment, Inc.®
O42 - Logiciel: Panneau de configuration NVIDIA 376.33 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 =>.Antonio Da Cruz
O42 - Logiciel: Python 3.6.1 (64-bit) - (.Python Software Foundation.) [HKCU][64Bits] -- {5984d629-979e-4439-b893-accde1a00a68} =>.Python Software Foundation®
O42 - Logiciel: Python 3.6.1 Add to Path (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {079FEF6F-9E83-4694-897D-69C30389B772} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Core Interpreter (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {27133190-078A-4A46-81B0-FF476EAEBF2A} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Development Libraries (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {953B4007-8312-48CA-817E-29B43988EB35} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Documentation (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {41626EAD-257F-401F-8531-51C5A7D4CA6C} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Executables (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {9139037B-B991-4022-946F-DAA9A9FDC7EE} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 pip Bootstrap (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {5F9A36CA-767E-4922-84AB-73E61264FE5C} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Standard Library (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {B7A716F0-78C1-4CB9-8756-0E51C5DD7622} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Tcl/Tk Support (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {AC60D963-1CE4-429B-AB29-F973DC55A918} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Test Suite (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {A298B2DB-1F21-476D-9BD7-4ECC23101C90} =>.Python Software Foundation
O42 - Logiciel: Python 3.6.1 Utility Scripts (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {7CB8460F-55AD-4C70-8D04-72947C46C85E} =>.Python Software Foundation
O42 - Logiciel: Python Launcher - (.Python Software Foundation.) [HKLM][64Bits] -- {323AC113-C6CE-4F99-842F-4936332D055A} =>.Python Software Foundation
O42 - Logiciel: Quarantine - (..) [HKLM][64Bits] -- Quarantine_is1
O42 - Logiciel: R for Windows 3.4.2 - (.R Core Team.) [HKLM][64Bits] -- R for Windows 3.4.2_is1 =>.R Core Team
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: ROG Gaming Center - (.ASUS.) [HKLM][64Bits] -- {CC182DBF-FC67-4F79-9930-6A2682E60BDD} =>.ASUS
O42 - Logiciel: RStudio - (.RStudio.) [HKLM][64Bits] -- RStudio =>.RStudio
O42 - Logiciel: SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: Songr - (.Xamasoft.) [HKCU][64Bits] -- Songr =>.Xamasoft
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify =>.Spotify AB®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: Sublime Text Build 3126 - (.Sublime HQ Pty Ltd.) [HKLM][64Bits] -- Sublime Text 3_is1 =>.Sublime HQ Pty Ltd®
O42 - Logiciel: TeamViewer 10 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer®
O42 - Logiciel: Train Mechanic Simulator 2017 - (..) [HKLM][64Bits] -- dHJhaW5tZWNoYW5pY3NpbXVsYXRvcjIwMTc_is1
O42 - Logiciel: Twitch - (.Twitch Interactive, Inc..) [HKCU][64Bits] -- {DEE70742-F4E9-44CA-B2B9-EE95DCF37295} =>.Twitch Interactive, Inc.®
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc®
O42 - Logiciel: Uplay - (.Ubisoft.) [HKLM][64Bits] -- Uplay =>.Ubisoft Entertainment Sweden AB®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: Vulkan Run Time Libraries 1.0.26.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.26.0 =>.LunarG, Inc.®
O42 - Logiciel: Vuze - (.Azureus Software, Inc..) [HKLM][64Bits] -- 8461-7759-5462-8226 =>.Azureus Software, Inc.®
O42 - Logiciel: WATCH_DOGS - (.Ubisoft.) [HKLM][64Bits] -- Uplay Install 274 =>.Ubisoft Entertainment Sweden AB®
O42 - Logiciel: Watch_Dogs 2 - (.Ubisoft.) [HKLM][64Bits] -- {B0E33297-78B1-4B37-B8C1-39150F2DEE43}_is1 =>.Ubisoft
O42 - Logiciel: WebStorage - (.ASUS Cloud Corporation.) [HKLM][64Bits] -- WebStorage =>.ASUS Cloud Corporation
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-asus =>.WildTangent Inc®
O42 - Logiciel: Windows Driver Package - ASUS (AsusSGDrv) Mouse (10/21/2015 8.0.0.19) - (.ASUS.) [HKLM][64Bits] -- DE393C6A9AB085F9E19765D003555C3D360497DB =>.ASUSTeK Computer Inc.®
O42 - Logiciel: WinFlash - (.ASUS.) [HKLM][64Bits] -- {8F21291E-0444-4B1D-B9F9-4370A73E346D} =>.ASUS
O42 - Logiciel: WinRAR 5.21 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: XSplit Gamecaster - (.SplitmediaLabs.) [HKLM][64Bits] -- {0E12BEC0-F2EE-43FA-AEA0-24B5E9F80167} =>.SplitMediaLabs
O42 - Logiciel: Zotero - (.Corporation for Digital Scholarship.) [HKLM][64Bits] -- Zotero 5.0.27 (x86 en-US) =>.Corporation for Digital Scholarship®

---\\ HKCU & HKLM Software Keys (158) - 16s
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Anki =>.Damien Elmes
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\AsLdr =>.ASUSTeK
HKLM\SOFTWARE\ASUS =>.ASUS
HKLM\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment
HKLM\SOFTWARE\bxGgpMVIX0uq Updater =>PUP.Optional.bxGgpMVIX0uqUpdater
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\Chromium =>.Chromium
HKLM\SOFTWARE\Conexant =>.Conexant
HKLM\SOFTWARE\Dropbox =>.Dropbox
HKLM\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKLM\SOFTWARE\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\ECAREME =>.Ecareme
HKLM\SOFTWARE\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Input Director
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Kingsoft =>.Kingosoft Technology Ltd
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc
HKLM\SOFTWARE\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\Minergate Inc =>.Minergate Inc
HKLM\SOFTWARE\MOVAVI =>.Movavi
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Riot Games =>.Riot Games
HKLM\SOFTWARE\RStudio =>.RStudio
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\SplitmediaLabs =>.SplitMediaLabs
HKLM\SOFTWARE\TeamViewer =>.TeamViewer
HKLM\SOFTWARE\Ubisoft =>.Ubisoft
HKLM\SOFTWARE\Valve =>.Valve
HKLM\SOFTWARE\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\WildTangent =>.WildTangent
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Zotero =>.Zotero
HKLM\SOFTWARE\zotero.org =>.Zotero.org
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\Anki =>.Damien Elmes
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\AsLdr =>.ASUSTeK
HKLM\SOFTWARE\WOW6432Node\ASUS =>.ASUS
HKLM\SOFTWARE\WOW6432Node\Blizzard Entertainment =>.Blizzard Entertainment
HKLM\SOFTWARE\WOW6432Node\bxGgpMVIX0uq Updater =>PUP.Optional.bxGgpMVIX0uqUpdater
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\Chromium =>.Chromium
HKLM\SOFTWARE\WOW6432Node\Conexant =>.Conexant
HKLM\SOFTWARE\WOW6432Node\Dropbox =>.Dropbox
HKLM\SOFTWARE\WOW6432Node\DropboxUpdate =>.Dropbox Inc.
HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\WOW6432Node\ECAREME =>.Ecareme
HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Input Director
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Kingsoft =>.Kingosoft Technology Ltd
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc
HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\Minergate Inc =>.Minergate Inc
HKLM\SOFTWARE\WOW6432Node\MOVAVI =>.Movavi
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Riot Games =>.Riot Games
HKLM\SOFTWARE\WOW6432Node\RStudio =>.RStudio
HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node\SplitmediaLabs =>.SplitMediaLabs
HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer
HKLM\SOFTWARE\WOW6432Node\Ubisoft =>.Ubisoft
HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve
HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Zotero =>.Zotero
HKLM\SOFTWARE\WOW6432Node\zotero.org =>.Zotero.org
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Activision =>.Activision
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\antiufo =>.Legitimate
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\ASUS =>.ASUS
HKCU\SOFTWARE\Azureus
HKCU\SOFTWARE\Blizzard Entertainment =>.Blizzard Entertainment
HKCU\SOFTWARE\Caphyon =>.Caphyon
HKCU\SOFTWARE\CASIO =>.CASIO
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Colossal Order =>.Colossal Order
HKCU\SOFTWARE\Conexant =>.Conexant
HKCU\SOFTWARE\Curse =>.Curse
HKCU\SOFTWARE\Dashlane =>.Dashlane
HKCU\SOFTWARE\Dashlane_profiles =>.Dashlane, Inc
HKCU\SOFTWARE\Dinosaur Polo Club
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKCU\SOFTWARE\ECAREME =>.Ecareme
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\Evernote =>.Evernote
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\FreeTime =>.FreeTime Inc
HKCU\SOFTWARE\Ghost Town Games
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\JutsuGames =>.Jutsu Games
HKCU\SOFTWARE\Kingsoft =>.Kingosoft Technology Ltd
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\Logitech =>.Logitech
HKCU\SOFTWARE\Magnet =>.Magnet
HKCU\SOFTWARE\Michael Herf =>.Michael Herf
HKCU\SOFTWARE\MiniTool Solution Ltd. =>.MiniTool Solution Ltd.
HKCU\SOFTWARE\MOVAVI =>.Movavi
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\nwjs =>.NW.js
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\Plethora-Project
HKCU\SOFTWARE\Python =>.Python
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Si7 studio
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\Space Sciences Laboratory, U.C. Berkeley =>.Space Sciences Laboratory, U.C.
HKCU\SOFTWARE\Spotify =>.Spotify
HKCU\SOFTWARE\Steel Crate Games =>.Steel Crate Games
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\TeamViewer =>.TeamViewer
HKCU\SOFTWARE\techPowerUp =>.TechPowerUp
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Twitch
HKCU\SOFTWARE\Ubisoft =>.Ubisoft
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\Unwinder =>.Unwinder
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation

---\\ Contenu des dossiers Programmes (391) - 41s
O43 - CFD: 10/04/2017 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 12/11/2017 - [] D -- C:\Program Files\Amanote {030879DB73FA3CCDD218FEA53273772C}
O43 - CFD: 02/10/2017 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.®
O43 - CFD: 22/01/2017 - [] D -- C:\Program Files\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 20/08/2017 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 06/01/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] AD -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] AD -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 02/06/2017 - [] AD -- C:\Program Files\Overcooked
O43 - CFD: 01/11/2017 - [] D -- C:\Program Files\R
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 02/11/2017 - [] D -- C:\Program Files\RStudio =>.RStudio
O43 - CFD: 25/05/2017 - [] AD -- C:\Program Files\Sublime Text 3 =>.Sublime HQ Pty Ltd®
O43 - CFD: 01/04/2017 - [] AD -- C:\Program Files\Train Mechanic Simulator 2017
O43 - CFD: 22/01/2017 - [] D -- C:\Program Files\Ubisoft =>.Ubisoft
O43 - CFD: 24/03/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 23/07/2017 - [] AD -- C:\Program Files\Vuze =>.Azureus Software, Inc.®
O43 - CFD: 22/12/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [0] D -- C:\Program Files\Windows KMS Activator Ultimate 2017 v3.7 =>Hacktool.Office
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 10/04/2017 - [] AD -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 28/08/2017 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 26/11/2017 - [] D -- C:\Program Files (x86)\Anki =>.Damien Elmes
O43 - CFD: 20/08/2017 - [] D -- C:\Program Files (x86)\ASUS =>.ASUSTeK Computer Inc.®
O43 - CFD: 10/01/2018 - [] AD -- C:\Program Files (x86)\Battle.net =>.Games Software
O43 - CFD: 02/12/2017 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 19/08/2017 - [] D -- C:\Program Files (x86)\Dashlane =>.Dashlane®
O43 - CFD: 30/08/2017 - [] D -- C:\Program Files (x86)\Destiny 2
O43 - CFD: 22/03/2017 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc®
O43 - CFD: 20/02/2017 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\ICEpower =>.ICEpower
O43 - CFD: 11/02/2017 - [] D -- C:\Program Files (x86)\Input Director
O43 - CFD: 12/12/2016 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 06/01/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] AD -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 25/04/2017 - [] D -- C:\Program Files (x86)\MSI Afterburner =>.Micro-Star International Co
O43 - CFD: 24/01/2017 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 09/01/2018 - [] AD -- C:\Program Files (x86)\Overwatch =>.Blizzard Entertainment
O43 - CFD: 05/01/2018 - [] AD -- C:\Program Files (x86)\Overwatch Test =>.Blizzard Entertainment
O43 - CFD: 20/05/2017 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 07/03/2017 - [] D -- C:\Program Files (x86)\PlayWay SA =>.PlayWay SA
O43 - CFD: 08/06/2017 - [] AD -- C:\Program Files (x86)\Quarantine
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\SplitmediaLabs =>.SplitmediaLabs Limited®
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games
O43 - CFD: 24/03/2016 - [] AD -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 22/01/2017 - [] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft
O43 - CFD: 14/04/2017 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 18/01/2017 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc
O43 - CFD: 12/02/2017 - [] AD -- C:\Program Files (x86)\Watch_Dogs 2 =>.EasyAntiCheat Oy®
O43 - CFD: 24/03/2016 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 28/12/2017 - [] D -- C:\Program Files (x86)\Zotero =>.Mozilla Corporation®
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\911 Operator
O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 05/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS =>.ASUS
O43 - CFD: 11/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net =>.Games Software
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant =>.Conexant
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameFirst IV
O43 - CFD: 19/11/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICEpower =>.ICEpower
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Input Director
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends =>.Riot Games
O43 - CFD: 29/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch =>.Blizzard Entertainment
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch Test =>.Blizzard Entertainment
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quarantine
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RStudio =>.RStudio
O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Watch_Dogs 2
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit =>.SplitMedia Labs
O43 - CFD: 12/02/2017 - [] D -- C:\ProgramData\.mono =>.Legitimate
O43 - CFD: 10/04/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 19/11/2017 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\ASUS Smart Gesture =>.ASUSTeK
O43 - CFD: 24/03/2016 - [] D -- C:\ProgramData\ASUS WebStorage =>.ASUSTeK
O43 - CFD: 18/01/2017 - [] D -- C:\ProgramData\Battle.net =>.Games Software
O43 - CFD: 20/06/2017 - [] D -- C:\ProgramData\Blizzard Entertainment =>.Blizzard Entertainment
O43 - CFD: 11/07/2017 - [] D -- C:\ProgramData\BOINC =>.Space Sciences Laboratory, U.C.
O43 - CFD: 10/04/2017 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org
O43 - CFD: 20/01/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 16/07/2016 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\Conexant =>.Conexant
O43 - CFD: 22/01/2017 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 19/11/2017 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 24/03/2016 - [] D -- C:\ProgramData\Dropbox =>.Dropbox
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 08/05/2017 - [0] D -- C:\ProgramData\Kingsoft =>.Kingosoft Technology Ltd
O43 - CFD: 04/06/2017 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 20/01/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation
O43 - CFD: 20/01/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 19/07/2017 - [] D -- C:\ProgramData\Movavi =>.Movavi
O43 - CFD: 19/07/2017 - [] D -- C:\ProgramData\Movavi Screen Capture 8 =>.Movavi
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 14/04/2017 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 23/07/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 22/01/2017 - [] D -- C:\ProgramData\Orbit =>.Orbit
O43 - CFD: 19/08/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\ProgramData\Riot Games =>.Riot Games
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\Roaming =>.Microsoft Corporation
O43 - CFD: 14/04/2017 - [] D -- C:\ProgramData\SetupTPDriver =>.ASUSTeK
O43 - CFD: 02/12/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 29/09/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 18/04/2017 - [0] D -- C:\ProgramData\SolidDocuments =>.SolidDocuments
O43 - CFD: 12/12/2016 - [] D -- C:\ProgramData\SplitMediaLabs =>.SplitMediaLabs
O43 - CFD: 02/06/2017 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 12/04/2017 - [] D -- C:\ProgramData\Twitch
O43 - CFD: 20/01/2017 - [] D -- C:\ProgramData\UIU
O43 - CFD: 18/01/2017 - [] D -- C:\ProgramData\USBChargerPlus =>.ASUSTeK
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 24/03/2016 - [] D -- C:\ProgramData\WebStorage =>.ASUSTeK
O43 - CFD: 24/03/2016 - [] D -- C:\ProgramData\WildTangent =>.WildTangent
O43 - CFD: 30/09/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 14/11/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 24/03/2016 - [] D -- C:\Program Files (x86)\Common Files\AWS =>.Amazon
O43 - CFD: 19/11/2017 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation
O43 - CFD: 12/02/2017 - [] D -- C:\Users\coren\AppData\Roaming\.mono =>.Legitimate
O43 - CFD: 28/08/2017 - [] D -- C:\Users\coren\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 12/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Amanote
O43 - CFD: 07/12/2017 - [] D -- C:\Users\coren\AppData\Roaming\Anki2
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\awsRun =>.AWS
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\Azureus
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Battle.net =>.Games Software
O43 - CFD: 15/04/2017 - [] D -- C:\Users\coren\AppData\Roaming\BOINC =>.Space Sciences Laboratory, U.C.
O43 - CFD: 30/08/2017 - [] D -- C:\Users\coren\AppData\Roaming\Bungie =>.Bungie
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Curse =>.Curse
O43 - CFD: 15/09/2017 - [] AD -- C:\Users\coren\AppData\Roaming\Curse Client =>.Curse Inc
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 06/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\Dashlane =>.Dashlane
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\DropboxOEM =>.Dropbox Inc.
O43 - CFD: 10/05/2017 - [] D -- C:\Users\coren\AppData\Roaming\Google =>.Google
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Intel =>.Intel Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Kingsoft =>.Kingosoft Technology Ltd
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 19/11/2017 - [] SD -- C:\Users\coren\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 15/04/2017 - [] D -- C:\Users\coren\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 20/05/2017 - [] D -- C:\Users\coren\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Riot Games =>.Riot Games
O43 - CFD: 17/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\RStudio =>.RStudio
O43 - CFD: 21/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\Skype =>.Skype
O43 - CFD: 18/04/2017 - [] D -- C:\Users\coren\AppData\Roaming\SolidDocuments =>.SolidDocuments
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\Spotify =>.Spotify
O43 - CFD: 12/02/2017 - [] D -- C:\Users\coren\AppData\Roaming\Steam =>.Steam Games
O43 - CFD: 25/05/2017 - [] D -- C:\Users\coren\AppData\Roaming\Sublime Text 3
O43 - CFD: 12/04/2017 - [] D -- C:\Users\coren\AppData\Roaming\Twitch
O43 - CFD: 05/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Roaming\WebStorage =>.ASUSTeK
O43 - CFD: 09/02/2017 - [] D -- C:\Users\coren\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Zotero =>.Zotero
O43 - CFD: 18/01/2017 - [0] D -- C:\Users\coren\AppData\Local\ActiveSync =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Adobe =>.Adobe
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\coren\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Battle.net =>.Games Software
O43 - CFD: 12/07/2017 - [] D -- C:\Users\coren\AppData\Local\Blizzard Entertainment =>.Blizzard Entertainment
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\CEF =>.CEF
O43 - CFD: 27/12/2017 - [] D -- C:\Users\coren\AppData\Local\Colossal Order =>.Colossal Order Ltd
O43 - CFD: 15/09/2017 - [] D -- C:\Users\coren\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\Conexant =>.Conexant
O43 - CFD: 14/04/2017 - [] D -- C:\Users\coren\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\Crashpad =>.Unknown
O43 - CFD: 15/04/2017 - [0] D -- C:\Users\coren\AppData\Local\DBG =>.DBG
O43 - CFD: 17/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 22/01/2017 - [] D -- C:\Users\coren\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 26/09/2017 - [] D -- C:\Users\coren\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\DropboxOEM =>.Dropbox Inc.
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\Evernote =>.EverNote Corporation
O43 - CFD: 21/11/2017 - [] D -- C:\Users\coren\AppData\Local\FluxSoftware =>.Stereopsis
O43 - CFD: 05/01/2018 - [] D -- C:\Users\coren\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Google =>.Google
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\coren\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 08/05/2017 - [] D -- C:\Users\coren\AppData\Local\kingsoft =>.Kingosoft Technology Ltd
O43 - CFD: 04/11/2017 - [] D -- C:\Users\coren\AppData\Local\LocalStorage
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/12/2017 - [] D -- C:\Users\coren\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 19/07/2017 - [] D -- C:\Users\coren\AppData\Local\Movavi =>.Movavi
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\mpress =>.MPress
O43 - CFD: 18/01/2017 - [0] D -- C:\Users\coren\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 25/01/2017 - [] D -- C:\Users\coren\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 26/01/2017 - [] D -- C:\Users\coren\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 25/05/2017 - [] D -- C:\Users\coren\AppData\Local\Package Cache =>.Microsoft Corporation
O43 - CFD: 07/01/2018 - [] D -- C:\Users\coren\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [0] D -- C:\Users\coren\AppData\Local\PackageStaging =>.Apcera
O43 - CFD: 28/06/2017 - [] D -- C:\Users\coren\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 08/06/2017 - [] D -- C:\Users\coren\AppData\Local\Quarantine
O43 - CFD: 11/07/2017 - [] D -- C:\Users\coren\AppData\Local\Recovery =>.Recovery Labs
O43 - CFD: 17/11/2017 - [] D -- C:\Users\coren\AppData\Local\RStudio-Desktop
O43 - CFD: 19/07/2017 - [] D -- C:\Users\coren\AppData\Local\ScreenCapture =>.ScreenCapture.com
O43 - CFD: 18/09/2017 - [] D -- C:\Users\coren\AppData\Local\Songr =>.Songr.co.cc
O43 - CFD: 18/05/2017 - [] D -- C:\Users\coren\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Spotify =>.Spotify
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\Local\Steam =>.Steam Games
O43 - CFD: 25/05/2017 - [] D -- C:\Users\coren\AppData\Local\Sublime Text 3
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\coren\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign001d0b2da7b10f1d =>.SUP.Temporary
O43 - CFD: 28/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign025732f7478d7289 =>.SUP.Temporary
O43 - CFD: 14/06/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign0adfcb63e09b4649 =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign0cff18826abf738e =>.SUP.Temporary
O43 - CFD: 23/09/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign0f092cc3ebb21f59 =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign0fc698db4a02c91e =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign1532acd5e3fd3408 =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign15b2ff07e62657f3 =>.SUP.Temporary
O43 - CFD: 02/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign16ecf3c6aa9b0908 =>.SUP.Temporary
O43 - CFD: 23/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign170269e1a8076835 =>.SUP.Temporary
O43 - CFD: 23/09/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign1ff74434b05e4c88 =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign205f2f5f13d046af =>.SUP.Temporary
O43 - CFD: 14/06/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign2316cc7b2927997e =>.SUP.Temporary
O43 - CFD: 20/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign2495772fe4763daf =>.SUP.Temporary
O43 - CFD: 02/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign28eb5445f6a33374 =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign2b1cc332eeefc028 =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign31ef138f1c61a3e4 =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign33240cf6fa9abbbb =>.SUP.Temporary
O43 - CFD: 31/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign3a70ff08be656e59 =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign3e684a3f3205198a =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign4057b35db6a7425d =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign45e2e92ddb9198e6 =>.SUP.Temporary
O43 - CFD: 02/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign467156ddaa9ea1a9 =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign48aaef2b38221a91 =>.SUP.Temporary
O43 - CFD: 14/06/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign4b69968c46d32426 =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign5112b05708c15617 =>.SUP.Temporary
O43 - CFD: 10/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign5117a098fb21ffdf =>.SUP.Temporary
O43 - CFD: 23/09/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign516defa5056bcffe =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign517d659addf13db1 =>.SUP.Temporary
O43 - CFD: 10/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign5380fc73c1a17098 =>.SUP.Temporary
O43 - CFD: 20/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign54cdd1d99c7626df =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign560bfad987b30bc5 =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign5a94292e95b9978a =>.SUP.Temporary
O43 - CFD: 23/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign61dd4b27460ee04b =>.SUP.Temporary
O43 - CFD: 08/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign6a83ca5c5571381f =>.SUP.Temporary
O43 - CFD: 14/06/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign71050002799a2952 =>.SUP.Temporary
O43 - CFD: 14/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign77ae6e53bf4fe859 =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign78bedca56f43cfce =>.SUP.Temporary
O43 - CFD: 08/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign7cda08d44dc035cf =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign7d4b35707f9e981e =>.SUP.Temporary
O43 - CFD: 31/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign7d523004868cf9d5 =>.SUP.Temporary
O43 - CFD: 20/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign7f89ea699cfdb4b4 =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign85024898f98951c8 =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign88d43f0e56c88d37 =>.SUP.Temporary
O43 - CFD: 14/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign8a7e4ab863644b87 =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign8b98b919442fcd2d =>.SUP.Temporary
O43 - CFD: 28/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign8d0c3ca23ef6a84a =>.SUP.Temporary
O43 - CFD: 31/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign8f2a1ace744f697d =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign8f528697d80c2de7 =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign9bc50422a9fb7ca1 =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign9bf4488cfc13c2bd =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign9bfabf05c8878fa4 =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign9e787fef45577731 =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsign9e9f8057b036c740 =>.SUP.Temporary
O43 - CFD: 31/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigna16ee53457787db8 =>.SUP.Temporary
O43 - CFD: 31/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigna90d539337aa5959 =>.SUP.Temporary
O43 - CFD: 31/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignab0a0b62248ddb3f =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignadd496f97b0a27bb =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignaf24675cc3e6709a =>.SUP.Temporary
O43 - CFD: 14/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignb21bcdacf08ea7d7 =>.SUP.Temporary
O43 - CFD: 10/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignb4569d28dc1c922c =>.SUP.Temporary
O43 - CFD: 08/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignb8008be5cfa29417 =>.SUP.Temporary
O43 - CFD: 02/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignc0239a843adcd11c =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignc42565105857c33a =>.SUP.Temporary
O43 - CFD: 14/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignc80e89c7fabb0792 =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignc9d7fe959ae6197c =>.SUP.Temporary
O43 - CFD: 20/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigncef288c9147c01c6 =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignd37ceeaec231a7bc =>.SUP.Temporary
O43 - CFD: 30/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignd39b5c5dc27c7039 =>.SUP.Temporary
O43 - CFD: 14/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignd49c6c2f3ba4736b =>.SUP.Temporary
O43 - CFD: 10/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignd627503a88c4c169 =>.SUP.Temporary
O43 - CFD: 14/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignd8c6c07b90c7dc8b =>.SUP.Temporary
O43 - CFD: 12/04/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignda595c91212adf5c =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigne1f820c54938683f =>.SUP.Temporary
O43 - CFD: 28/08/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigne8bfca03f6771647 =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigneaf80ae5b927460b =>.SUP.Temporary
O43 - CFD: 29/10/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignee40574427c59119 =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsigneea353d9b85ff92a =>.SUP.Temporary
O43 - CFD: 16/05/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignf3eff766bb4394e5 =>.SUP.Temporary
O43 - CFD: 08/11/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignf5cf05a81da5398e =>.SUP.Temporary
O43 - CFD: 17/12/2017 - [0] D -- C:\Users\coren\AppData\Local\Tempzxpsignfe5c6e2ab6aea556 =>.SUP.Temporary
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 22/01/2017 - [] D -- C:\Users\coren\AppData\Local\Ubisoft Game Launcher =>.Ubisoft
O43 - CFD: 14/04/2017 - [] D -- C:\Users\coren\AppData\Local\UNP =>.Microsoft Corporation
O43 - CFD: 14/04/2017 - [] D -- C:\Users\coren\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\Windows_8
O43 - CFD: 10/01/2018 - [] D -- C:\Users\coren\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Local\Zotero =>.Zotero
O43 - CFD: 12/02/2017 - [0] D -- C:\Users\coren\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 28/06/2017 - [] D -- C:\Users\coren\AppData\Local\Programs\Google =>.Google
O43 - CFD: 25/05/2017 - [] D -- C:\Users\coren\AppData\Local\Programs\Python =>.Python
O43 - CFD: 07/03/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 19/08/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Dashlane =>.Dashlane
O43 - CFD: 14/08/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Dinosaur Polo Club
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Evernote =>.EverNote Corporation
O43 - CFD: 02/06/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Ghost Town Games
O43 - CFD: 07/03/2017 - [] D -- C:\Users\coren\AppData\LocalLow\JutsuGames
O43 - CFD: 02/12/2017 - [] SD -- C:\Users\coren\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 08/01/2018 - [0] D -- C:\Users\coren\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/05/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Plethora-Project
O43 - CFD: 01/04/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Si7 studio
O43 - CFD: 03/06/2017 - [] D -- C:\Users\coren\AppData\LocalLow\Steel Crate Games
O43 - CFD: 18/01/2017 - [] D -- C:\Users\coren\Desktop\Logiciels préinstallés
O43 - CFD: 27/07/2017 - [] D -- C:\Users\coren\Desktop\Music
O43 - CFD: 04/11/2017 - [] D -- C:\Users\coren\Desktop\R
O43 - CFD: 28/05/2017 - [] D -- C:\Users\coren\Desktop\WorkPython =>.Python
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] RD -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 07/01/2018 - [] RD -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc.
O43 - CFD: 06/01/2018 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dashlane =>.Dashlane
O43 - CFD: 29/09/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Music Manager
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6 =>.Python
O43 - CFD: 10/01/2018 - [] RD -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 27/12/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft =>.Ubisoft
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\Users\coren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 26/03/2017 - [] D -- C:\Users\Default\AppData\Local\Google =>.Google
O43 - CFD: 20/01/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 26/03/2017 - [] D -- C:\Users\Default User\AppData\Local\Google =>.Google
O43 - CFD: 20/01/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/11/2017 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent

---\\ Derniers fichiers créés dans Windows Prefetcher (2) - 11s
O45 - LFCP:[MD5.9CC769473AAA0D89BCEB76ECF70B34CC] 10/01/2018 A -- C:\WINDOWS\Prefetch\WINDOWS KMS ACTIVATOR ULTIMAT-999739E2.pf =>Hacktool.Office
O45 - LFCP:[MD5.42D587099879EB9F33C6149BA8EBAB75] 10/01/2018 A -- C:\WINDOWS\Prefetch\WINDOWS KMS ACTIVATOR ULTIMAT-EA38BBD3.pf =>Hacktool.Office

---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 0s
O106 - SIOI: [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll =>.Google Inc®
O106 - SIOI: [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll =>.Google Inc®
O106 - SIOI: [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\googledrivesync64.dll =>.Google Inc®
O106 - SIOI: [ AccExtIco1] - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}. (.Copyright © 2013-2017, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Sync\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco2] - {853B7E05-C47D-4985-909A-D0DC5C6D7303}. (.Copyright © 2013-2017, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Sync\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco3] - {42D38F2E-98E9-4382-B546-E24E4D6D04BB}. (.Copyright © 2013-2017, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Sync\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [!AsusWSShellExt_B] - {6D4133E5-0742-4ADC-8A8C-9303440F7191}. (.ASUS Cloud Corporation. - AsusWSShellExt64.) -- C:\Program Files (x86)\Common Files\AWS\2.2.6.547\ASUSWSShellExt64.dll =>.ASUS Cloud Corporation.
O106 - SIOI: [!AsusWSShellExt_O] - {64174815-8D98-4CE6-8646-4C039977D809}. (.ASUS Cloud Corporation. - AsusWSShellExt64.) -- C:\Program Files (x86)\Common Files\AWS\2.2.6.547\ASUSWSShellExt64.dll =>.ASUS Cloud Corporation.
O106 - SIOI: [!AsusWSShellExt_U] - {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E}. (.ASUS Cloud Corporation. - AsusWSShellExt64.) -- C:\Program Files (x86)\Common Files\AWS\2.2.6.547\ASUSWSShellExt64.dll =>.ASUS Cloud Corporation.
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ Raccourcis de menus conceptuels (SCMH) (36) - 1s
O108 - CMH1: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.Copyright © 2013-2017, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Sync\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH1: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated®
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\shellext.dll =>.Microsoft Windows®
O108 - CMH1: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\contextmenu64.dll =>.Google Inc®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH2: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\contextmenu64.dll =>.Google Inc®
O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation
O108 - CMH3: BackupContextMenuExtension [64Bits] - {b1b96b20-da1d-4a3c-92c1-7229b32f2326} . (...) -- mscoree.dll (.not file.)
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\shellext.dll =>.Microsoft Windows®
O108 - CMH4: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) -- C:\Program Files (x86)\Google\Drive\contextmenu64.dll =>.Google Inc®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: igfxcui [64Bits] - {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} . (.Orphan.)
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxDTCM.dll =>.Microsoft Windows Hardware Compatibility Publisher®
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll =>.NVIDIA Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH6: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.Copyright © 2013-2017, Adobe Systems Incorporated. Al - Core Sync.) -- C:\Program Files (x86)\Adobe\Adobe Sync\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH6: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.17123-0\shellext.dll =>.Microsoft Windows®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (18) - 1s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ Liste des pilotes du système (71) - 10s
O58 - SDL:2017/09/29 14:41:02 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows®
O58 - SDL:2015/05/25 14:20:18 A . (.ASUSTek Computer Inc. - ASUS Charger driver.) -- C:\WINDOWS\System32\drivers\AiCharger.sys [21816] =>.ASUSTeK Computer Inc.®
O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [258592] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131992] =>.Microsoft Windows®
O58 - SDL:2015/05/13 06:44:22 A . (.ASUS - HID driver for ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [19976] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2017/03/09 09:19:54 A . (.ASUS Corporation - Asus TP Filter Driver (x64).) -- C:\WINDOWS\System32\drivers\AsusSGDrv.sys [143856] {07011EC8DF00B758F0AB03374D5C9616} =>.ASUS Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider
O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows®
O58 - SDL:2016/07/07 05:58:48 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1559688] =>.Conexant Systems, Inc.®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [141208] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [357272] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1723288] =>.Microsoft Windows®
O58 - SDL:2015/08/17 02:48:18 A . (.Intel Corporation - DPTF ACPI Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_acpi.sys [55816] =>.Intel(R) Software®
O58 - SDL:2015/08/17 02:48:18 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_cpu.sys [53752] =>.Intel(R) Software®
O58 - SDL:2017/01/22 01:09:17 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2017/01/22 01:09:23 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2017/02/12 11:41:44 A . (...) -- C:\WINDOWS\System32\drivers\EasyAntiCheat.sys [550952] =>.EasyAntiCheat Oy®
O58 - SDL:2015/08/17 02:48:18 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\WINDOWS\System32\drivers\esif_lf.sys [261624] =>.Intel(R) Software®
O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows®
O58 - SDL:2015/01/14 09:59:08 A . (.Titan ARC Corp. - Titan ARC Network Flow Control SDK WFP Driv.) -- C:\WINDOWS\System32\drivers\gfdriver.sys [51904] =>.TITAN ARC CORP. TAIWAN BRANCH (SAMOA)®
O58 - SDL:2017/09/29 14:41:02 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2015/08/10 06:17:52 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1462720] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [674200] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412056] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows®
O58 - SDL:2016/10/15 00:16:54 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) -- C:\WINDOWS\System32\drivers\ibtusb.sys [250624] =>.Intel Corporation-Wireless Connectivity Solutions®
O58 - SDL:2015/09/24 01:51:50 A . (.Intel Corporation - Intel(R) Watchdog Timer Driver (Intel(R) WD.) -- C:\WINDOWS\System32\drivers\ICCWDT.sys [38680] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2016/10/07 08:25:26 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [822248] =>.Intel(R) OWR®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108064] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [123800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [103320] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82840] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwtw04.sys [7689728] =>.Intel Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166296] =>.Microsoft Windows®
O58 - SDL:2016/04/14 06:38:19 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [56384] =>.NVIDIA Corporation®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2016/05/17 04:00:12 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [937728] =>.Realtek Semiconductor Corp®
O58 - SDL:2017/09/29 14:41:14 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [59904] =>.Realtek
O58 - SDL:2015/06/15 10:08:11 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [753368] =>.Realtek Semiconductor Corp®
O58 - SDL:2013/05/19 08:02:50 A . (.Scarlet.Crush Productions - Scp Virtual Bus Driver.) -- C:\WINDOWS\System32\drivers\ScpVBus.sys [39168] =>.Bruce James®
O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows®
O58 - SDL:2015/08/31 23:50:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [185088] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2016/04/18 14:33:06 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Host-Only Network Adapt.) -- C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [119712] =>.Oracle Corporation®
O58 - SDL:2016/04/18 14:33:06 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Lightweight Filter Driv.) -- C:\WINDOWS\System32\drivers\VBoxNetLwf.sys [192352] =>.Oracle Corporation®
O58 - SDL:2017/09/29 14:41:02 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®
O58 - SDL:2013/09/30 15:26:50 A . (...) -- C:\WINDOWS\System32\pwdrvio.sys [19152] =>.MiniTool Solution Ltd®
O58 - SDL:2013/09/30 15:26:48 A . (...) -- C:\WINDOWS\System32\pwdspio.sys [12504] =>.MiniTool Solution Ltd®

---\\ Derniers fichiers modifiés ou crées (Utilisateur) (2) - 34s
O61 - LFC: 2018/01/06 10:53:37 A . (..) -- C:\Users\coren\AppData\Local\Packages\windows_ie_ac_001\AC\Dashlane\Dashlane.exe [0]
O61 - LFC: 2018/01/10 22:38:14 A . (..) -- C:\Users\coren\AppData\Roaming\sp_data.sys [166]

---\\ Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S

---\\ Menu de démarrage Internet (8) - 0s
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Recherche d'infection sur les navigateurs (2) - 0s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{96BBC430-9900-4299-9F5D-7951AB36EFDF} - (Google) - http://www.google.com/ =>.Google Inc.

---\\ Enumère les services démarrés par Svchost (49) - 0s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [270848] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1275904] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [984064] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [820224] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [144896] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109056] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [880640] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220160] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [407040] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [387584] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [108544] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [254976] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [194560] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1272320] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [795136] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1231872] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [46080] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1107968] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [930304] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [491520] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [601088] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [307200] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2783744] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1345536] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [702464] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [779264] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [284672] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1143808] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1289216] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [951808] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1313792] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [387072] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [238080] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [307712] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [170496] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2223104] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [132608] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [196096] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (33) - 10s
O87 - FAEL: "UDP Query User{645C0A1F-1128-4539-A258-AD89BA49F91A}C:\program files (x86)\battle.net\battle.net.9397\battle.net.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\battle.net\battle.net.9397\battle.net.exe (.not file.)
O87 - FAEL: "TCP Query User{7D2B3EA7-D5C9-4EB2-94DD-67D0CF8F5681}C:\program files (x86)\battle.net\battle.net.9397\battle.net.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\battle.net\battle.net.9397\battle.net.exe (.not file.)
O87 - FAEL: "UDP Query User{A3C5CA16-220F-4E27-8FEA-FD3DCEB58EEE}C:\program files (x86)\destiny 2\destiny2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\destiny 2\destiny2.exe (.not file.)
O87 - FAEL: "TCP Query User{6713828E-6C74-4628-ADCA-961B3CD5E29C}C:\program files (x86)\destiny 2\destiny2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\destiny 2\destiny2.exe (.not file.)
O87 - FAEL: "UDP Query User{275CA783-11F1-403D-BF18-CE158D6C87C5}C:\program files (x86)\starcraft ii\versions\base53644\sc2_x64.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\starcraft ii\versions\base53644\sc2_x64.exe (.not file.)
O87 - FAEL: "TCP Query User{7850A37F-EBCA-43AB-8CFC-2DA3ADEDFBA3}C:\program files (x86)\starcraft ii\versions\base53644\sc2_x64.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\starcraft ii\versions\base53644\sc2_x64.exe (.not file.)
O87 - FAEL: "UDP Query User{0858A120-0694-44E9-8D8C-D1727D6F3288}C:\program files (x86)\diablo iii\x64\diablo iii64.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\diablo iii\x64\diablo iii64.exe (.not file.)
O87 - FAEL: "TCP Query User{C12B94B2-6CC5-4291-A2C0-8D56B5C7596A}C:\program files (x86)\diablo iii\x64\diablo iii64.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\diablo iii\x64\diablo iii64.exe (.not file.)
O87 - FAEL: "{10DC2796-12A5-420B-B2D0-6C438949181B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Blockhood\BLOCKHOOD v0_40_08.exe =>.Steam Games
O87 - FAEL: "{F6BD27CF-CFE4-4F8C-B356-B7E0079A0A4B}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Blockhood\BLOCKHOOD v0_40_08.exe =>.Steam Games
O87 - FAEL: "{619E04D4-9A81-483F-9D40-157D851A34D0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\MiniMetro\MiniMetro.exe =>.Steam Games
O87 - FAEL: "{F71422E9-16FC-4237-B2D7-8CF0C9DE0488}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\MiniMetro\MiniMetro.exe =>.Steam Games
O87 - FAEL: "{F21EE90C-5195-4E7A-AEA9-BE964BE519FE}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (.not file.)
O87 - FAEL: "{0F5751F4-CEFA-47A1-9F62-B354E5F2A36E}" [In-None-P6-TRUE] .(...) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (.not file.)
O87 - FAEL: "{A05141DD-FDC3-454C-9A33-03203653069B}" [In-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{1C17B0D5-F4DD-47C3-9D83-A03BDDBF6CCF}" [Out-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{B2C61301-526D-4CCC-98E5-36FBDD0C59AE}" [In-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{9AA0449E-A664-4A4A-ACF0-A9ADD95FB26E}" [Out-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director.) -- C:\Program Files (x86)\Input Director\InputDirector.exe
O87 - FAEL: "{C8490AF9-50BE-4977-8A13-D5C40A329939}" [In-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{319C3E17-EAFB-495E-B965-D28054A1AC00}" [Out-None-P6-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{91A9A613-7D77-4DD3-93B8-C89CEECA3034}" [In-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{84B5359C-0E84-48E1-98BF-2A3D2385E55E}" [Out-None-P17-TRUE] .(.Copyright © 2010 Imperative Software Pty Ltd - Input Director Session Helper.) -- C:\Program Files (x86)\Input Director\InputDirectorSessionHelper.exe
O87 - FAEL: "{A08D282D-B61F-4AF9-AE3A-8C725056F461}" [In-None-P6-TRUE] .(...) -- C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator
O87 - FAEL: "{EBCAEBEC-884F-4C1D-8DCD-E5351D6268AE}" [Out-None-P6-TRUE] .(...) -- C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator
O87 - FAEL: "TCP Query User{763F37DF-AAA6-42C2-8C51-8C3709EEF646}C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe (.not file.)
O87 - FAEL: "UDP Query User{8E161DC8-3BA3-420C-9591-2CBAC43052E9}C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe (.not file.)
O87 - FAEL: "{41FC3DDE-BDA8-4725-B656-86D7A7FEB85E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe =>.Steam Games
O87 - FAEL: "{79ACDAD2-06C0-43C4-AAB0-8D59CF0726B1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe =>.Steam Games
O87 - FAEL: "{6D970C59-ACAC-4063-BB03-7DCA522F922C}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\FormatFactory\FormatFactory.exe (.not file.)
O87 - FAEL: "{A4896E05-77C6-4A9F-B7C0-8632925032D3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (.not file.)
O87 - FAEL: "{E96CA8B1-A035-460E-BC17-6C1325505D86}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Windows KMS Activator Ultimate 2017 v3.7\Windows KMS Activator Ultimate 2017 v3.7.exe (.not file.) =>Hacktool.Office
O87 - FAEL: "{6CA23C40-C7C7-4D3C-920B-8D48388EF639}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Radcliffe\waring.exe (.not file.)
O87 - FAEL: "{7C1E62A6-DA0A-40EE-ACD3-23068E868516}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Pulsating\waring.exe (.not file.)

---\\ Recherche des packages WindowsInstaller (43) - 7s
[MD5.FED0EC2248CDF7280136E94E026A550F] [WIS][2015/09/19 00:38:20] (.Intel Corporation - Intel(R) ME UninstallLegacy.) -- C:\WINDOWS\Installer\10230.msi [397312] =>.Intel Corporation
[MD5.2B30532E2AB4796F4E06A0C1D0367F2A] [WIS][2015/09/19 00:39:04] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\10234.msi [9744384] =>.Intel Corporation
[MD5.2169C0B0955FBC75BF71277A657D7D83] [WIS][2015/09/19 00:39:18] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\10238.msi [17088512] =>.Intel Corporation
[MD5.0ED0C9589B99557E514AC19AF6C73A22] [WIS][2015/05/22 18:27:22] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\WINDOWS\Installer\1023c.msi [11005952] =>.Intel Corporation
[MD5.0D69490E64E1185C42AB13FE88AC6335] [WIS][2015/05/22 02:25:00] (.Intel Corporation - Intel® Security Assist.) -- C:\WINDOWS\Installer\10240.msi [1167360] =>.Intel Corporation
[MD5.4FB4D55BB865F8BC9D7D8F88684939A5] [WIS][2017/11/12 19:18:04] (.Intel Corporation - Intel® Software Guard Extensions Platform S.) -- C:\WINDOWS\Installer\1105bf.msi [7159808] =>.Intel Corporation
[MD5.BFF46AD09C423E3D08FD66BA9657EF76] [WIS][2014/09/23 03:59:10] (.ASUS.) -- C:\WINDOWS\Installer\12057.msi [1141760] =>.ASUS
[MD5.18B807D332D66DB3E4D4CE7E462699D3] [WIS][2015/08/05 09:35:08] (.SplitmediaLabs - XSplit Gamecaster.) -- C:\WINDOWS\Installer\1205b.msi [2093056] =>.SplitmediaLabs
[MD5.B88659007A59AB2E35482294B69A35ED] [WIS][2016/12/12 23:48:02] (.ASUS - GameFirst IV.) -- C:\WINDOWS\Installer\12060.msi [4575232] =>.ASUS
[MD5.32B67BBF5758E4DBDE0E0CE692721C4C] [WIS][2016/12/12 23:45:18] (.ICEpower a/s - AudioWizard.) -- C:\WINDOWS\Installer\12e22.msi [6258688] =>.ICEpower a/s
[MD5.0128BBE153B9A5F28730DAB63376FCE0] [WIS][2015/05/25 06:20:24] (.ASUS.) -- C:\WINDOWS\Installer\12e26.msi [9694720] =>.ASUS
[MD5.2A5A843DF1C31C1180E8CBA738DAE784] [WIS][2015/07/15 12:10:38] (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Patch/Audio .) -- C:\WINDOWS\Installer\12e31.msi [7540736] =>.Intel Corporation
[MD5.21CC9C600CF8CACA9088976BF31264C9] [WIS][2015/07/07 08:08:06] (.ASUS.) -- C:\WINDOWS\Installer\12e35.msi [541696] =>.ASUS
[MD5.2E0591D0AE330CDA6CB3E683D8D0C5DA] [WIS][2016/01/19 06:54:47] (.ASUSTek Computer Inc. - Device Setup.) -- C:\WINDOWS\Installer\135944.msi [3082240] =>.ASUSTek Computer Inc.
[MD5.973E4A5D041997593E13091A9610C940] [WIS][2015/07/20 06:49:26] (.Intel Corporation - Intel(R) Serial IO.) -- C:\WINDOWS\Installer\14748.msi [2527232] =>.Intel Corporation
[MD5.772EEC0AC08B3DD5D9ACB3ED763ACDC7] [WIS][2017/01/12 02:06:56] (.Curse - Curse.) -- C:\WINDOWS\Installer\157255.msi [7106048] =>.Curse
[MD5.48AC97725A03D2F5049CE30D53DF19EA] [WIS][2017/03/09 09:26:32] (.ASUS.) -- C:\WINDOWS\Installer\15e3107.msi [501248] =>.ASUS
[MD5.271C140DAB40864C201AD4EEA7AC6850] [WIS][2015/12/02 11:08:52] (.ASUS.) -- C:\WINDOWS\Installer\1a18d.msi [11616256] =>.ASUS
[MD5.C3BE44B5F5E3AE05ADBAB92309823B2E] [WIS][2016/12/19 10:52:18] (.Intel Corporation - Intel® WiFi.) -- C:\WINDOWS\Installer\27de6d25.msi [29097984] =>.Intel Corporation
[MD5.91431CDA65DFA55E8F4B8D0DC13820B1] [WIS][2016/12/19 10:52:18] (.Intel Corporation - Intel® WiFi.) -- C:\WINDOWS\Installer\27de6dec.msi [49651712] =>.Intel Corporation
[MD5.F6D96BD797A8B8009E1969807A41096B] [WIS][2017/11/21 19:34:26] (.Google, Inc. - Backup and Sync from Google.) -- C:\WINDOWS\Installer\281b0a98.msi [52084736] =>.Google, Inc.
[MD5.FE054F99E835DA4E1F96E1DD4609FD4C] [WIS][2016/01/12 03:43:34] (.ASUS.) -- C:\WINDOWS\Installer\2db16.msi [59191808] =>.ASUS
[MD5.A666B14C461CC7207C0C9B3D0D2D28F3] [WIS][2017/11/14 20:37:23] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\2e10a748.msi [880128] =>.Adobe Systems Incorporated
[MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/14 20:37:58] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\2e10a913.msi [40960] =>.Google Inc.
[MD5.B452A4F5663E610E7150699206232B48] [WIS][2017/03/17 09:03:26] (.Intel Corporation - Cryptographic Provider for Windows OS Insta.) -- C:\WINDOWS\Installer\2f4e1731.msi [700416] =>.Intel Corporation
[MD5.48AC97725A03D2F5049CE30D53DF19EA] [WIS][2017/03/09 09:26:32] (.ASUS.) -- C:\WINDOWS\Installer\3b0a4.msi [501248] =>.ASUS
[MD5.4127DE982192576385F6CC736C712AC1] [WIS][2017/01/18 18:00:09] (.Riot Games - League of Legends.) -- C:\WINDOWS\Installer\3f0595.msi [5008384] =>.Riot Games
[MD5.F2B947DE87F6238362B5004962332FAA] [WIS][2017/01/18 16:55:55] (.Dropbox, Inc. - Dropbox Update Helper.) -- C:\WINDOWS\Installer\452a3.msi [31232] =>.Dropbox, Inc.
[MD5.3CC8B37A80A93CA5C0A73F5C3DB9E33A] [WIS][2017/03/21 17:46:26] (.Python Software Foundation - Python 3.6.1 Core Interpreter (64-bit).) -- C:\WINDOWS\Installer\4b56aa9b.msi [1339392] =>.Python Software Foundation
[MD5.E4B5F20080E306E927B0F01ED36D634E] [WIS][2017/03/21 17:46:50] (.Python Software Foundation - Python 3.6.1 Development Libraries (64-bit).) -- C:\WINDOWS\Installer\4b56aa9f.msi [282624] =>.Python Software Foundation
[MD5.4112066725A12BA6EE4536DE80D7FC26] [WIS][2017/03/21 17:47:02] (.Python Software Foundation - Python 3.6.1 Executables (64-bit).) -- C:\WINDOWS\Installer\4b56aaa3.msi [372736] =>.Python Software Foundation
[MD5.1F84BCBE3FCD82AE155C70CE3646EF71] [WIS][2017/03/21 17:47:26] (.Python Software Foundation - Python 3.6.1 Standard Library (64-bit).) -- C:\WINDOWS\Installer\4b56aaa7.msi [6885376] =>.Python Software Foundation
[MD5.DBB8FD430C1D7E497424787E2C33CD4C] [WIS][2017/03/21 17:49:08] (.Python Software Foundation - Python 3.6.1 Test Suite (64-bit).) -- C:\WINDOWS\Installer\4b56aaab.msi [3014656] =>.Python Software Foundation
[MD5.58D9D309CA2CCA8C43E172974326D6AF] [WIS][2017/03/21 17:47:00] (.Python Software Foundation - Python 3.6.1 Documentation (64-bit).) -- C:\WINDOWS\Installer\4b56aaaf.msi [8015872] =>.Python Software Foundation
[MD5.29F4BEB7BD6000987D6317A7DC8E1DAC] [WIS][2017/03/21 17:49:18] (.Python Software Foundation - Python 3.6.1 Utility Scripts (64-bit).) -- C:\WINDOWS\Installer\4b56aab3.msi [204800] =>.Python Software Foundation
[MD5.CA751C686C8149C09FA2CD983DE53AED] [WIS][2017/03/21 17:48:42] (.Python Software Foundation - Python 3.6.1 Tcl/Tk Support (64-bit).) -- C:\WINDOWS\Installer\4b56aab7.msi [3211264] =>.Python Software Foundation
[MD5.0AAEB302A1CA989341B0411E9A7B5FEC] [WIS][2017/03/21 17:00:56] (.Python Software Foundation - Python Launcher.) -- C:\WINDOWS\Installer\4b56aabb.msi [577536] =>.Python Software Foundation
[MD5.3AC253544D02C64D3FD5E5F998BA7EC7] [WIS][2017/03/21 17:48:02] (.Python Software Foundation - Python 3.6.1 pip Bootstrap (64-bit).) -- C:\WINDOWS\Installer\4b56aabf.msi [249856] =>.Python Software Foundation
[MD5.2F25F321F8232B8992A640CA9C825FD1] [WIS][2017/03/21 17:48:00] (.Python Software Foundation - Python 3.6.1 Add to Path (64-bit).) -- C:\WINDOWS\Installer\4b56aac3.msi [40960] =>.Python Software Foundation
[MD5.7C3CB3CBA11691D8CF040D9390A7586D] [WIS][2016/12/23 22:11:52] (.Adobe Systems Incorporated - Installers.) -- C:\WINDOWS\Installer\755a6e.msi [12911616] =>.Adobe Systems Incorporated
[MD5.B49E7E2957FE057B2F26F9A03C06AC30] [WIS][2017/03/22 16:20:38] (.Dropbox, Inc. - Dropbox 25 GB.) -- C:\WINDOWS\Installer\e15ce77.msi [2682368] =>.Dropbox, Inc.
[MD5.0144C08FCD58659C3D281590F6DACA38] [WIS][2015/08/17 18:07:44] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\ecb4.msi [778240] =>.Intel Corporation
[MD5.3BA31C1CB4372CF068D8E18210DC8A7E] [WIS][2016/08/01 10:39:54] (.ASUS.) -- C:\WINDOWS\Installer\feea2.msi [4300800] =>.ASUS

---\\ Scan Additionnel (94) - 2s
HKLM\SYSTEM\CurrentControlSet\Services\bxGgpMVIX0uq Updater =>PUP.Optional.bxGgpMVIX0uqUpdater
HKLM\SYSTEM\CurrentControlSet\Services\KMS-R@1n =>HackTool.WinActivator
C:\Windows\KMS-R@1n.exe =>HackTool.WinActivator
C:\WINDOWS\System32\Tasks\R@1n-KMS\Office16Standard =>HackTool.WinActivator
C:\Program Files\Windows KMS Activator Ultimate 2017 v3.7 =>Hacktool.Office
C:\Users\coren\AppData\Local\Tempzxpsign001d0b2da7b10f1d =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign025732f7478d7289 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign0adfcb63e09b4649 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign0cff18826abf738e =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign0f092cc3ebb21f59 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign0fc698db4a02c91e =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign1532acd5e3fd3408 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign15b2ff07e62657f3 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign16ecf3c6aa9b0908 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign170269e1a8076835 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign1ff74434b05e4c88 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign205f2f5f13d046af =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign2316cc7b2927997e =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign2495772fe4763daf =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign28eb5445f6a33374 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign2b1cc332eeefc028 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign31ef138f1c61a3e4 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign33240cf6fa9abbbb =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign3a70ff08be656e59 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign3e684a3f3205198a =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign4057b35db6a7425d =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign45e2e92ddb9198e6 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign467156ddaa9ea1a9 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign48aaef2b38221a91 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign4b69968c46d32426 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign5112b05708c15617 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign5117a098fb21ffdf =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign516defa5056bcffe =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign517d659addf13db1 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign5380fc73c1a17098 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign54cdd1d99c7626df =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign560bfad987b30bc5 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign5a94292e95b9978a =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign61dd4b27460ee04b =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign6a83ca5c5571381f =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign71050002799a2952 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign77ae6e53bf4fe859 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign78bedca56f43cfce =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign7cda08d44dc035cf =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign7d4b35707f9e981e =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign7d523004868cf9d5 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign7f89ea699cfdb4b4 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign85024898f98951c8 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign88d43f0e56c88d37 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign8a7e4ab863644b87 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign8b98b919442fcd2d =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign8d0c3ca23ef6a84a =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign8f2a1ace744f697d =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign8f528697d80c2de7 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign9bc50422a9fb7ca1 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign9bf4488cfc13c2bd =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign9bfabf05c8878fa4 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign9e787fef45577731 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsign9e9f8057b036c740 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigna16ee53457787db8 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigna90d539337aa5959 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignab0a0b62248ddb3f =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignadd496f97b0a27bb =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignaf24675cc3e6709a =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignb21bcdacf08ea7d7 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignb4569d28dc1c922c =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignb8008be5cfa29417 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignc0239a843adcd11c =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignc42565105857c33a =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignc80e89c7fabb0792 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignc9d7fe959ae6197c =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigncef288c9147c01c6 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignd37ceeaec231a7bc =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignd39b5c5dc27c7039 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignd49c6c2f3ba4736b =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignd627503a88c4c169 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignd8c6c07b90c7dc8b =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignda595c91212adf5c =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigne1f820c54938683f =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigne8bfca03f6771647 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigneaf80ae5b927460b =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignee40574427c59119 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsigneea353d9b85ff92a =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignf3eff766bb4394e5 =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignf5cf05a81da5398e =>.SUP.Temporary
C:\Users\coren\AppData\Local\Tempzxpsignfe5c6e2ab6aea556 =>.SUP.Temporary
C:\WINDOWS\Prefetch\WINDOWS KMS ACTIVATOR ULTIMAT-999739E2.pf =>Hacktool.Office
C:\WINDOWS\Prefetch\WINDOWS KMS ACTIVATOR ULTIMAT-EA38BBD3.pf =>Hacktool.Office
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\BackupContextMenuExtension =>.SUP.Orphan
HKLM\Software\Wow6432Node\Classes\CLSID\{b1b96b20-da1d-4a3c-92c1-7229b32f2326} =>.SUP.Orphan
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan

---\\ Récapitulatif des éléments trouvés sur votre station (6) - 0s
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.bxGgpMVIX0uqUpdater
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/09/27/adware-dnsunlocker/ =>Adware.DNSUnlocker
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Hacktool.Office
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary

~ Unselected Options: O82,
~ End of the scan, 39221 items in 02mn54s (1682)(0)