analyse zhp 2016-05-02T23:22:48+00:00
  • Author
    Posts
  • thom33
    Participant
    Post count: 2
    #1674 |

    bonjour,
    jai utilisé awdcleaner et on m’a dit dutiliser zhp et de poster le rapport:

    ZHPDiag v2016.4.30.92 Par Nicolas Coolman (2016/04/30)
    ~ Démarré par thomas (Administrator) (2016/05/03 00:50:39)
    ~ Site: http://www.nicolascoolman.com
    ~ Facebook: https://www.facebook.com/nicolascoolman1
    ~ Etat de la version: Version OK
    ~ Mode: Scanner
    ~ Rapport: C:UsersthomasDesktopZHPDiag.txt
    ~ Rapport: C:UsersthomasAppDataRoamingZHPZHPDiag.txt
    ~ UAC: Activate
    ~ Démarrage du système: Normal (Normal boot)
    Windows 8.1 Connected, 64-bit (Build 9600)

    —\ Navigateurs Internet (2) – 0s
    MFIE: Mozilla Firefox 46.0 (x86 fr)
    MSIE: Internet Explorer v11.0.9600.18283

    —\ Informations sur les produits Windows (3) – 3s
    ~ Windows Server License Manager Script : OK
    ~ Licence Script File Génération : OK
    Windows Automatic Updates : OK

    —\ Logiciels de protection (1) – 6s
    Windows Defender (Deactivate)

    —\ Surveillance de Logiciels (1) – 8s
    Adobe Flash Player 21 NPAPI

    —\ Informations sur le système (6) – 0s
    ~ Operating System: Intel64 Family 6 Model 55 Stepping 8, GenuineIntel
    ~ Operating System: 64-bit
    ~ Boot mode: Normal (Normal boot)
    Total RAM: 4073.448 MB (47% free)
    System Restore: Activé (Enable)
    System drive C: has 411 GB () free of 461 GB

    —\ Mode de connexion au système (3) – 0s
    ~ Computer Name: THOMAS
    ~ User Name: thomas
    ~ Logged in as Administrator

    —\ Enumération des unités disques (1) – 0s
    ~ Drive C: has 411 GB free of 461 GB (System)

    —\ Etat du Centre de Sécurité Windows (11) – 0s
    [HKLMSOFTWAREMicrosoftSecurity CenterSvc] AntiSpywareOverride: OK
    [HKLMSOFTWAREMicrosoftSecurity CenterSvc] AntiVirusOverride: OK
    [HKLMSOFTWAREMicrosoftSecurity CenterSvc] FirewallOverride: OK
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorer] NoActiveDesktopChanges: Modified
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionpoliciessystem] EnableLUA: OK
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerAdvancedFolderHiddenNOHIDDEN] CheckedValue: Modified
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerAdvancedFolderHiddenSHOWALL] CheckedValue: OK
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorerAssociations] Application: OK
    [HKLMSOFTWAREMicrosoftWindows NTCurrentVersionWinlogon] Shell: OK
    [HKLMSYSTEMCurrentControlSetServicesCOMSysApp] Type: OK
    [HKLMSOFTWAREMicrosoftWindowsCurrentVersionWindowsUpdateAuto UpdateResultsInstall] LastSuccessTime : OK

    —\ Recherche particulière de fichiers génériques (25) – 2s
    [MD5.B3541A5A20C6264781909B1B7FE54836] – 09/02/2016 – (.Microsoft Corporation – Explorateur Windows.) — C:WindowsExplorer.exe [2757616] =>.Microsoft Windows®
    [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] – 29/10/2014 – (.Microsoft Corporation – Processus hôte Windows (Rundll32).) — C:WindowsSystem32rundll32.exe [54784] =>.Microsoft Corporation
    [MD5.EC302D06155F8E3C383750993FCB6B27] – 05/10/2015 – (.Microsoft Corporation – Application de démarrage de Windows.) — C:WindowsSystem32Wininit.exe [146432] =>.Microsoft Corporation
    [MD5.D2E3B1DEDF6F6177D8C32B2516703A93] – 31/03/2016 – (.Microsoft Corporation – Extensions Internet pour Win32.) — C:WindowsSystem32wininet.dll [2596864] =>.Microsoft Corporation
    [MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] – 05/01/2016 – (.Microsoft Corporation – Application d’ouverture de session Windows.) — C:WindowsSystem32Winlogon.exe [570880] =>.Microsoft Corporation
    [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] – 18/03/2014 – (.Microsoft Corporation – Bibliothèque de licences.) — C:WindowsSystem32sppcomapi.dll [447488] =>.Microsoft Corporation
    [MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] – 29/10/2014 – (.Microsoft Corporation – DNS DLL de l’API Client.) — C:WindowsSystem32dnsapi.dll [657920] =>.Microsoft Corporation
    [MD5.BD9C7A068C46053F8747CEA73B5930AB] – 29/10/2014 – (.Microsoft Corporation – DNS DLL de l’API Client.) — C:WindowsSyswow64dnsapi.dll [498688] =>.Microsoft Corporation
    [MD5.E37F897ED7B5AFF79B1398258DB96BD9] – 14/01/2015 – (.Microsoft Corporation – DLL client de l’API uilisateur de Windows m.) — C:WindowsSystem32fr-FRuser32.dll.mui [19456] =>.Microsoft Corporation
    [MD5.A460C3AF3755A2A79A3C8EFE72E147B5] – 13/10/2015 – (.Microsoft Corporation – Pilote de fonction connexe pour WinSock.) — C:WindowsSystem32driversAFD.sys [559616] =>.Microsoft Corporation
    [MD5.74B14192CF79A72F7536B27CB8814FBD] – 22/08/2013 – (.Microsoft Corporation – ATAPI IDE Miniport Driver.) — C:WindowsSystem32driversatapi.sys [26464] =>.Microsoft Windows®
    [MD5.2FA6510E33F7DEFEC03658B74101A9B9] – 22/08/2013 – (.Microsoft Corporation – CD-ROM File System Driver.) — C:WindowsSystem32driversCdfs.sys [88576] =>.Microsoft Corporation
    [MD5.C6796EA22B513E3457514D92DCDB1A3D] – 22/08/2013 – (.Microsoft Corporation – SCSI CD-ROM Driver.) — C:WindowsSystem32driversCdrom.sys [164352] =>.Microsoft Corporation
    [MD5.A03F362C5557E238CBFA914689C77248] – 06/03/2014 – (.Microsoft Corporation – DFS Namespace Client Driver.) — C:WindowsSystem32driversDfsC.sys [134144] =>.Microsoft Corporation
    [MD5.D4B7ED39C7900384D9E5C1283F1E7926] – 24/07/2014 – (.Microsoft Corporation – High Definition Audio Bus Driver.) — C:WindowsSystem32driversHDAudBus.sys [76800] =>.Microsoft Corporation
    [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] – 04/11/2014 – (.Microsoft Corporation – Pilote de port i8042.) — C:WindowsSystem32driversi8042prt.sys [108544] =>.Microsoft Corporation
    [MD5.B7342B3C58E91107F6E946A93D9D4EFD] – 18/03/2014 – (.Microsoft Corporation – IP Network Address Translator.) — C:WindowsSystem32driversIpNat.sys [142848] =>.Microsoft Corporation
    [MD5.5F2BB54E0223E46646789E90BB4CCD81] – 10/03/2016 – (.Microsoft Corporation – Minirdr SMB Windows NT.) — C:WindowsSystem32driversMRxSmb.sys [401920] =>.Microsoft Corporation
    [MD5.0217532E19A748F0E5D569307363D5FD] – 22/08/2013 – (.Microsoft Corporation – MBT Transport driver.) — C:WindowsSystem32driversnetBT.sys [282624] =>.Microsoft Corporation
    [MD5.9980B262DBE439AE6BDC91AA985F19EE] – 30/12/2015 – (.Microsoft Corporation – Pilote du système de fichiers NT.) — C:WindowsSystem32driversntfs.sys [2017624] =>.Microsoft Windows®
    [MD5.764B1121867B2D9B31C491668AC72B2B] – 22/08/2013 – (.Microsoft Corporation – Pilote de port parallèle.) — C:WindowsSystem32driversParport.sys [94208] =>.Microsoft Corporation
    [MD5.235624C147E3CB4C288D5D3D8E8D64A2] – 02/02/2016 – (.Microsoft Corporation – RAS L2TP mini-port/call-manager driver.) — C:WindowsSystem32driversRasl2tp.sys [112640] =>.Microsoft Corporation
    [MD5.680C1DAE268B6FB67FA21B389A8B79EF] – 18/03/2014 – (.Microsoft Corporation – Redirecteur de périphérique de Microsoft RD.) — C:WindowsSystem32driversrdpdr.sys [195584] =>.Microsoft Corporation
    [MD5.E0BD2D83875464FEEEB242CBA8B7E073] – 13/10/2015 – (.Microsoft Corporation – TDI Translation Driver.) — C:WindowsSystem32driverstdx.sys [108032] =>.Microsoft Corporation
    [MD5.D537962695CAFEC1301F3EB7C8C3A1D2] – 07/02/2016 – (.Microsoft Corporation – Pilote de cliché instantané du volume.) — C:WindowsSystem32driversvolsnap.sys [316760] =>.Microsoft Windows®

    —\ Liste des services NT non Microsoft et non désactivés (10) – 4s
    O23 – Service: AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider – Windows Setup API.) – C:Program Files (x86)Qualcomm AtherosBluetooth Suiteadminservice.exe =>.Windows (R) Win 7 DDK provider
    O23 – Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software – avast! Service.) – C:Program FilesAVAST SoftwareAvastAvastSvc.exe =>.AVAST Software a.s.®
    O23 – Service: CCDMonitorService (CCDMonitorService) . (.Acer Incorporated – CCD Monitor Service.) – C:Program Files (x86)AcerAOP FrameworkCCDMonitorService.exe =>.Acer Incorporated®
    O23 – Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent – WildTangent Games App Integration Service.) – C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe =>.WildTangent Inc®
    O23 – Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. – Programme d’installation de Google.) – C:Program Files (x86)GoogleUpdateGoogleUpdate.exe =>.Google Inc®
    O23 – Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation – igfxCUIService Module.) – C:WindowsSystem32igfxCUIService.exe =>.Intel Corporation – Software and Firmware Products®
    O23 – Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation – Intel(R) Capability Licensing Service Inter.) – C:Program FilesIntelTXE ComponentsTCSHeciServer.exe =>.Intel(R) Corporation
    O23 – Service: Launch Manager Service (LMSvc) . (.Acer Incorporate – LMSvc.) – C:Program FilesAcerAcer Launch ManagerLMSvc.exe =>.Acer Incorporated®
    O23 – Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 – RichVideo Module.) – C:Program Files (x86)CyberLinkShared filesRichVideo.exe =>.CyberLink®
    O23 – Service: Skype Updater (SkypeUpdate) . (.Skype Technologies – Skype Updater Service.) – C:Program Files (x86)SkypeUpdaterUpdater.exe =>.Skype Software Sarl®

    —\ Services non Microsoft (SR=Démarré,SS=Stoppé) (24) – 77s

    SS – Demand [07/04/2016] [ 269504] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) – C:WindowsSysWOW64MacromedFlashFlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
    SR – Auto [29/04/2014] [ 319104] AtherosSvc (AtherosSvc) . (.Windows (R) Win 7 DDK provider.) – C:Program Files (x86)Qualcomm AtherosBluetooth Suiteadminservice.exe =>.Windows (R) Win 7 DDK provider
    SR – Auto [29/04/2016] [ 243296] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) – C:Program FilesAVAST SoftwareAvastAvastSvc.exe =>.AVAST Software a.s.®
    SR – Auto [18/04/2016] [ 2860760] CCDMonitorService (CCDMonitorService) . (.Acer Incorporated.) – C:Program Files (x86)AcerAOP FrameworkCCDMonitorService.exe =>.Acer Incorporated®
    SS – Demand [09/06/2014] [ 279024] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) – C:WindowsSysWOW64IntelCpHeciSvc.exe =>.Intel Corporation – Software and Firmware Products®
    SR – Demand [12/06/2014] [ 2573032] ePower Service (ePowerSvc) . (.Acer Incorporated.) – C:Program FilesAcerAcer Power ManagementePowerSvc.exe =>.Acer Incorporated®
    SR – Auto [24/04/2014] [ 227904] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) – C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe =>.WildTangent Inc®
    SS – Demand [24/04/2014] [ 203344] GamesAppService (GamesAppService) . (.WildTangent, Inc..) – C:Program Files (x86)WildTangent GamesAppGamesAppService.exe =>.WildTangent Inc®
    SS – Auto [29/04/2016] [ 154440] Service Google Update (gupdate) (gupdate) . (.Google Inc..) – C:Program Files (x86)GoogleUpdateGoogleUpdate.exe =>.Google Inc®
    SS – Demand [29/04/2016] [ 154440] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) – C:Program Files (x86)GoogleUpdateGoogleUpdate.exe =>.Google Inc®
    SS – Demand [29/04/2016] [ 194032] Google Software Updater (gusvc) . (.Google.) – C:Program Files (x86)GoogleCommonGoogle UpdaterGoogleUpdaterService.exe =>.Google Inc®
    SS – Demand [24/04/2012] [ 169752] Intel(R) Integrated Clock Controller Service – Intel(R) ICCS (ICCS) . (.Intel Corporation.) – C:Program Files (x86)IntelIntel(R) Integrated Clock Controller ServiceICCProxy.exe =>.Intel Corporation®
    SR – Auto [09/06/2014] [ 315376] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) – C:WindowsSystem32igfxCUIService.exe =>.Intel Corporation
    SR – Auto [01/07/2013] [ 733696] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) – C:Program FilesIntelTXE ComponentsTCSHeciServer.exe =>.Intel(R) Corporation
    SS – Demand [01/07/2013] [ 822232] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) – C:Program FilesIntelTXE ComponentsTCSSocketHeciServer.exe =>.Intel® Trusted Connect Service®
    SR – Auto [28/07/2014] [ 469736] Launch Manager Service (LMSvc) . (.Acer Incorporate.) – C:Program FilesAcerAcer Launch ManagerLMSvc.exe =>.Acer Incorporated®
    SS – Demand [11/03/2016] [ 293128] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) – C:Program FilesMcAfee Security Scan3.11.309McCHSvc.exe =>.McAfee, Inc.®
    SS – Demand [22/04/2016] [ 146888] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) – C:Program Files (x86)Mozilla Maintenance Servicemaintenanceservice.exe =>.Mozilla Corporation®
    SR – Demand [26/06/2014] [ 458984] Quick Access Service (QASvc) . (.Acer Incorporate.) – C:Program FilesAcerAcer Quick AccessQASvc.exe =>.Acer Incorporated®
    SR – Auto [24/04/2012] [ 254512] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) – C:Program Files (x86)CyberLinkShared filesRichVideo.exe =>.CyberLink®
    SR – Demand [26/06/2014] [ 449768] Quick Access RadioMgr Service (RMSvc) . (.Acer Incorporate.) – C:Program FilesAcerAcer Quick AccessRMSvc.exe =>.Acer Incorporated®
    SS – Auto [23/03/2016] [ 327808] Skype Updater (SkypeUpdate) . (.Skype Technologies.) – C:Program Files (x86)SkypeUpdaterUpdater.exe =>.Skype Software Sarl®
    SR – Demand [15/07/2014] [ 234240] User Experience Improvement Program (UEIPSvc) . (.acer.) – C:Program FilesAcerUser Experience Improvement ProgramFrameworkUBTService.exe =>.Acer Incorporated®

    —\ Tâches planifiées en automatique (35) – 8s
    [MD5.D246B77DF1B4302BDC1332986F26815C] [APT] [abDocsDllLoader] (…) — C:Program Files (x86)AcerabDocsabDocsDllLoaderMonitor.exe [1769312] (.Activate.) =>.Acer Incorporated®
    [MD5.192551432A694B27E9EEBDA5794CCB12] [APT] [ACCAgent] (.(C) All rights reserved.) — C:Program Files (x86)AcerCare CenterLiveUpdateAgent.exe [41728] (.Activate.) =>.Acer Incorporated®
    [MD5.7E2857D4C8F7732AABB68CEBD8C8A239] [APT] [AcerCloud] (.Acer.) — C:Program Files (x86)AcerAcer PortalAcerPortal.exe [2732760] (.Activate.) =>.Acer Incorporated®
    [MD5.28FFB14117CCEDD7D2F124596AA9B785] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) — C:WindowsSysWOW64MacromedFlashFlashPlayerUpdateService.exe [269504] (.Activate.) =>.Adobe Systems Incorporated®
    [MD5.1282F8C897DBF180BCF3F6F6968DE2C3] [APT] [avast! Emergency Update] (.AVAST Software.) — C:Program FilesAVAST SoftwareAvastAvastEmUpdate.exe [1517200] (.Activate.) =>.AVAST Software a.s.®
    [MD5.962C647021EF055DEDDAD5539701F4E5] [APT] [BacKGroundAgent] (.Acer Incorporated.) — C:Program Files (x86)AcerAOP FrameworkBackgroundAgent.exe [65752] (.Activate.) =>.Acer Incorporated®
    [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) — C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
    [MD5.750446ED76A5D13E902174DDDDA1A62B] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) — C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [154440] (.Activate.) =>.Google Inc®
    [MD5.5F3DD75B6509495B32CE535153C8DC4A] [APT] [Launch Manager] (.Acer Incorporate.) — C:Program FilesAcerAcer Launch ManagerLMLauncher.exe [439016] (.Activate.) =>.Acer Incorporated®
    [MD5.31A7FBA1017E8D625FDA12A670316ACC] [APT] [Power Management] (.Acer Incorporated.) — C:Program FilesAcerAcer Power ManagementePowerTrayLauncher.exe [384232] (.Activate.) =>.Acer Incorporated®
    [MD5.E88CD2B99BA576F98EC267E10101A979] [APT] [Quick Access] (.Acer Incorporate.) — C:Program FilesAcerAcer Quick AccessQALauncher.exe [324328] (.Activate.) =>.Acer Incorporated®
    [MD5.E88CD2B99BA576F98EC267E10101A979] [APT] [Quick Access Quick Launcher] (.Acer Incorporate.) — C:Program FilesAcerAcer Quick AccessQALauncher.exe [324328] (.Activate.) =>.Acer Incorporated®
    [MD5.2E696C90B2D1DD842F59E38FD212D225] [APT] [SafeZone scheduled Autoupdate 1461941188] (.Avast Software.) — C:Program FilesAVAST SoftwareSZBrowserlauncher.exe [735736] (.Activate.) =>.AVAST Software s.r.o.®
    [MD5.896E37BE296D7A4061355453F4AE6949] [APT] [Software Update Application] (.Acer Incorporated.) — C:ProgramDataOEMUpgradeToolListCheck.exe [474344] (.Activate.) =>.Acer Incorporated®
    [MD5.6C531EBEFA4718C279D1C1729C77D230] [APT] [UbtFrameworkService] (.TODO: .) — C:Program FilesAcerUser Experience Improvement ProgramFrameworkTriggerFramework.exe [216296] (.Activate.) =>.Acer Incorporated®
    [MD5.E589CA68E70D8821ACC5717F68FB0438] [APT] [{C328AB93-ED7A-443D-9AFC-347EC3A6E97F}] (.Blizzard Entertainment.) — C:ProgramDataBattle.netAgentBlizzard Uninstaller.exe [1420264] (.Activate.) =>.Blizzard Entertainment, Inc.®
    [MD5.00000000000000000000000000000000] [APT] [AVAST Software] (…) — C:Program FilesCommon FilesAVavast! Antivirusbackup.exe (.not file.) [0] (.Activate.) =>.Superfluous.Empty
    O39 – APT: Adobe Flash Player Updater – (.Adobe Systems Incorporated.) — C:WindowsTasksAdobe Flash Player Updater.job [1002] =>.Adobe Systems Incorporated®
    O39 – APT: GoogleUpdateTaskMachineCore – (.Google Inc..) — C:WindowsTasksGoogleUpdateTaskMachineCore.job [1086] =>.Google Inc®
    O39 – APT: GoogleUpdateTaskMachineUA – (.Google Inc..) — C:WindowsTasksGoogleUpdateTaskMachineUA.job [1090] =>.Google Inc®
    O39 – APT: abDocsDllLoader – (…) — C:WindowsSystem32TasksabDocsDllLoader [3338] =>.Acer Incorporated®
    O39 – APT: ACCAgent – (.(C) All rights reserved.) — C:WindowsSystem32TasksACCAgent [4562] =>.Acer Incorporated®
    O39 – APT: AcerCloud – (.Acer.) — C:WindowsSystem32TasksAcerCloud [3334] =>.Acer Incorporated®
    O39 – APT: Adobe Flash Player Updater – (.Adobe Systems Incorporated.) — C:WindowsSystem32TasksAdobe Flash Player Updater [3890] =>.Adobe Systems Incorporated®
    O39 – APT: avast! Emergency Update – (.AVAST Software.) — C:WindowsSystem32Tasksavast! Emergency Update [4182] =>.AVAST Software a.s.®
    O39 – APT: BacKGroundAgent – (.Acer Incorporated.) — C:WindowsSystem32TasksBacKGroundAgent [3442] =>.Acer Incorporated®
    O39 – APT: GoogleUpdateTaskMachineCore – (.Google Inc..) — C:WindowsSystem32TasksGoogleUpdateTaskMachineCore [3826] =>.Google Inc®
    O39 – APT: GoogleUpdateTaskMachineUA – (.Google Inc..) — C:WindowsSystem32TasksGoogleUpdateTaskMachineUA [4062] =>.Google Inc®
    O39 – APT: Launch Manager – (.Acer Incorporate.) — C:WindowsSystem32TasksLaunch Manager [2904] =>.Acer Incorporated®
    O39 – APT: Power Management – (.Acer Incorporated.) — C:WindowsSystem32TasksPower Management [2930] =>.Acer Incorporated®
    O39 – APT: Quick Access – (.Acer Incorporate.) — C:WindowsSystem32TasksQuick Access [2896] =>.Acer Incorporated®
    O39 – APT: Quick Access Quick Launcher – (.Acer Incorporate.) — C:WindowsSystem32TasksQuick Access Quick Launcher [3016] =>.Acer Incorporated®
    O39 – APT: SafeZone scheduled Autoupdate 1461941188 – (.Avast Software.) — C:WindowsSystem32TasksSafeZone scheduled Autoupdate 1461941188 [3912] =>.AVAST Software s.r.o.®
    O39 – APT: Software Update Application – (.Acer Incorporated.) — C:WindowsSystem32TasksSoftware Update Application [5314] =>.Acer Incorporated®
    O39 – APT: UbtFrameworkService – (.TODO:
    .) — C:WindowsSystem32TasksUbtFrameworkService [3268] =>.Acer Incorporated®

    —\ Processus lancés (44) – 8s
    [MD5.5264EE143875DDEA0E8CF8540C2AA743] – (.Intel Corporation – igfxCUIService Module.) — C:WindowsSystem32igfxCUIService.exe [315376] [PID.736] =>.Intel Corporation – Software and Firmware Products®
    [MD5.A24AF1F8186B4B69D54DCC4B059CA695] – (.AVAST Software – avast! Service.) — C:Program FilesAVAST SoftwareAvastAvastSvc.exe [243296] [PID.1196] =>.AVAST Software a.s.®
    [MD5.23C3686D98C650878602066093BAFDCA] – (.Windows (R) Win 7 DDK provider – Windows Setup API.) — C:Program Files (x86)Qualcomm AtherosBluetooth Suiteadminservice.exe [319104] [PID.1456] =>.Windows (R) Win 7 DDK provider
    [MD5.41D709EB4211F6F6411F6105FA39518F] – (.Acer Incorporated – CCD Monitor Service.) — C:Program Files (x86)AcerAOP FrameworkCCDMonitorService.exe [2860760] [PID.1540] =>.Acer Incorporated®
    [MD5.33AB22661E4DE1701F41CAFFB9DA1FEF] – (.Acer Cloud Technology – AcerCloud Client.) — C:Program Files (x86)AcerAOP Frameworkacerccd.exe [9685208] [PID.1600] =>.Acer Incorporated®
    [MD5.768DD5CB66952BC4A3BD474757AEE34F] – (.Intel(R) Corporation – Intel(R) Capability Licensing Service Inter.) — C:Program FilesIntelTXE ComponentsTCSHeciServer.exe [733696] [PID.1744] =>.Intel(R) Corporation
    [MD5.33B494BAED00188832C86C3E9456CFF6] – (.Acer Incorporate – LMSvc.) — C:Program FilesAcerAcer Launch ManagerLMSvc.exe [469736] [PID.1928] =>.Acer Incorporated®
    [MD5.41DDCF1ADD1FB7DE23DCF671740DDBE6] – (.Copyright 2004 – RichVideo Module.) — C:Program Files (x86)CyberLinkShared filesRichVideo.exe [254512] [PID.1996] =>.CyberLink®
    [MD5.C013945767C5777250220330A377E6E0] – (.Acer Incorporate – LMEvent.) — C:Program FilesAcerAcer Launch ManagerLMEvent.exe [488168] [PID.3268] =>.Acer Incorporated®
    [MD5.3C9C7EEEEFD793CDEF34ED27728C43A3] – (.Acer Incorporate – LockHandler.) — C:Program FilesAcerAcer Launch ManagerLMLockHandler.exe [455912] [PID.3284] =>.Acer Incorporated®
    [MD5.2ACAB8C99FFCB2555A5979944D26EB50] – (.Acer Incorporate – QASvc.) — C:Program FilesAcerAcer Quick AccessQASvc.exe [458984] [PID.3484] =>.Acer Incorporated®
    [MD5.0D1DF703F823DC9B93A0E8182AC67219] – (.Acer Incorporate – QAEvent.) — C:Program FilesAcerAcer Quick AccessQAEvent.exe [521960] [PID.3596] =>.Acer Incorporated®
    [MD5.0C396D2FEFBB85F78DCB573993B8EF01] – (.Intel Corporation – igfxHK Module.) — C:WindowsSystem32igfxHK.exe [244208] [PID.3612] =>.Intel Corporation – Software and Firmware Products®
    [MD5.BBB2E8CB493FA6BCAA2D2F87DFCE2F71] – (.Intel Corporation – igfxTray Module.) — C:WindowsSystem32igfxTray.exe [443888] [PID.3700] =>.Intel Corporation – Software and Firmware Products®
    [MD5.09080EB3EFE34B0673424126F6DD3EB3] – (.Acer Incorporate – LMTray.) — C:Program FilesAcerAcer Launch ManagerLMTray.exe [467176] [PID.3724] =>.Acer Incorporated®
    [MD5.D3D4EA7E66F5094B6E37BD742935D684] – (.Intel Corporation – igfxEM Module.) — C:WindowsSystem32igfxEM.exe [501744] [PID.3788] =>.Intel Corporation – Software and Firmware Products®
    [MD5.F1B23CCDFF34381C148DFF00C724858B] – (.Acer Incorporate – QAMsg.) — C:Program FilesAcerAcer Quick AccessQAMsg.exe [447720] [PID.3916] =>.Acer Incorporated®
    [MD5.60C7EEBDA66DBBE45A3D63D4502F8FEE] – (.Qualcomm®Atheros® – Extension Core.) — C:Program Files (x86)Qualcomm AtherosBluetooth SuiteBtvStack.exe [134784] [PID.4160] =>.Qualcomm®Atheros®
    [MD5.6BECBB538954FA2E01194A686AE57D83] – (…) — C:Program Files (x86)Qualcomm AtherosBluetooth SuiteActivateDesktop.exe [12928] [PID.4184]
    [MD5.DA2D7BED47EF71BDFEEDDEEE76C965FD] – (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) — C:Program FilesRealtekAudioHDARAVCpl64.exe [13672664] [PID.4204] =>.Realtek Semiconductor Corp®
    [MD5.CC436BB2A26391F3DEBE316F6FB0474F] – (.© 2015 Microsoft Corporation – Microsoft Bing Service.) — C:UsersthomasAppDataLocalMicrosoftBingSvcBingSvc.exe [144008] [PID.4256] =>.Microsoft Corporation®
    [MD5.F800FEA3F6865E506AC2B218F25F1E38] – (.Acer Incorporated – ePowerSvc.) — C:Program FilesAcerAcer Power ManagementePowerSvc.exe [2573032] [PID.4272] =>.Acer Incorporated®
    [MD5.0C03FB91E17987EED93F60007B08DAA0] – (.Google Inc. – Programme d’installation de Google.) — C:UsersthomasAppDataLocalGoogleUpdateGoogleUpdate.exe [144200] [PID.4280] =>.Google Inc®
    [MD5.E6ABF2F9E5CB1B1C3E61B923D9F1773F] – (.acer – abFiles.) — C:Program Files (x86)AcerabFilesabFilesTrayIcon.exe [2289880] [PID.4376] =>.Acer Incorporated®
    [MD5.0059DF176F4DDA8BC21DF1D62EED37D1] – (.Acer Incorporated – ePowerTray.) — C:Program FilesAcerAcer Power ManagementePowerTray.exe [5471976] [PID.4396] =>.Acer Incorporated®
    [MD5.7E2857D4C8F7732AABB68CEBD8C8A239] – (.Acer – Acer Portal.) — C:Program Files (x86)AcerAcer PortalAcerPortal.exe [2732760] [PID.4412] =>.Acer Incorporated®
    [MD5.1DBD44E4C19F6EC1665A89ABC884DF56] – (.Skype Technologies S.A. – Skype.) — C:Program Files (x86)SkypePhoneSkype.exe [51662464] [PID.4504] =>.Skype Software Sarl®
    [MD5.216B50CA20FFB633F61263D3F7AD4AA9] – (.Intel Corporation – igfxext Module.) — C:WindowsSystem32igfxext.exe [191472] [PID.4516] =>.Intel Corporation – Software and Firmware Products®
    [MD5.868471D645DD04EBECE7E15252E3BB03] – (.Acer Incorporated – ePowerEvent.) — C:Program FilesAcerAcer Power ManagementePowerEvent.exe [394472] [PID.4616] =>.Acer Incorporated®
    [MD5.315B9B9977B03AC004E3B375A39591D6] – (.Acer Incorporated – ePowerWinMonitor.) — C:Program FilesAcerAcer Power ManagementePowerWinMonitor.exe [259304] [PID.4716] =>.Acer Incorporated®
    [MD5.8E43AB1178841FE8F84C0E8610E44F3D] – (.McAfee, Inc. – McAfee Security Scanner Scheduler.) — C:Program FilesMcAfee Security Scan3.11.309SSScheduler.exe [334088] [PID.5060] =>.McAfee, Inc.®
    [MD5.B667FA2111F989360E54BBF2C4D35740] – (.AVAST Software – avast! Antivirus.) — C:Program FilesAVAST SoftwareAvastAvastUI.exe [7391632] [PID.4792] =>.AVAST Software a.s.®
    [MD5.858DB87C457D2B44DDEF876B170AAACE] – (.Acer Incorporate – RMSvc.) — C:Program FilesAcerAcer Quick AccessRMSvc.exe [449768] [PID.4788] =>.Acer Incorporated®
    [MD5.4A336C92A790A3F7C2D9952C73FCFA16] – (.WildTangent – WildTangent Games App Integration Service.) — C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [227904] [PID.5864] =>.WildTangent Inc®
    [MD5.962C647021EF055DEDDAD5539701F4E5] – (.Acer Incorporated – Background Agent.) — C:Program Files (x86)AcerAOP FrameworkBackgroundAgent.exe [65752] [PID.2948] =>.Acer Incorporated®
    [MD5.D246B77DF1B4302BDC1332986F26815C] – (…) — C:Program Files (x86)AcerabDocsabDocsDllLoaderMonitor.exe [1769312] [PID.4296] =>.Acer Incorporated®
    [MD5.C91635CC2BF215F9D7A5A7FC2E385D1D] – (…) — C:Program Files (x86)AcerabDocsabDocsDllLoader.exe [91488] [PID.2992] =>.Acer Incorporated®
    [MD5.9195B4884EA1918FD0ABEA589A684707] – (.Mozilla Corporation – Firefox.) — C:Program Files (x86)Mozilla Firefoxfirefox.exe [392136] [PID.5400] =>.Mozilla Corporation®
    [MD5.EB7E8BF35D31BC9F111E282C2F263854] – (.acer – UEIPSvc.) — C:Program FilesAcerUser Experience Improvement ProgramFrameworkUBTService.exe [234240] [PID.3356] =>.Acer Incorporated®
    [MD5.3DB9682912F54D6E38BD2545914E6657] – (.TODO: – AppMonitorPlugIn.) — C:Program FilesAcerUser Experience Improvement ProgramPluginAppMonitorAppMonitorPlugIn.exe [434944] [PID.6032] =>.Acer Incorporated®
    [MD5.33CBB912048749A887807BA2BA5E22FF] – (.Mozilla Corporation – Plugin Container for Firefox.) — C:Program Files (x86)Mozilla Firefoxplugin-container.exe [276936] [PID.5220] =>.Mozilla Corporation®
    [MD5.C9BD99391553BAD2F43D54E4F43CF944] – (.Adobe Systems, Inc. – Adobe Flash Player 21.0 r0.) — C:WindowsSysWOW64MacromedFlashFlashPlayerPlugin_21_0_0_213.exe [3447488] [PID.5652] =>.Adobe Systems Incorporated®
    [MD5.C9BD99391553BAD2F43D54E4F43CF944] – (.Adobe Systems, Inc. – Adobe Flash Player 21.0 r0.) — C:WindowsSysWOW64MacromedFlashFlashPlayerPlugin_21_0_0_213.exe [3447488] [PID.3300] =>.Adobe Systems Incorporated®
    [MD5.905AA88C8ED186663A39E90F717950FA] – (.Nicolas Coolman – ZHPDiag.) — C:UsersthomasAppDataRoamingZHPZHPDiag3.exe [2199040] [PID.188] =>.Nicolas Coolman

    —\ Google Chrome, Démarrage,Recherche,Extensions (19) – 3s
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://a.global-cdn.co
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://apis.google.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://chrome.google.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://clients2.google.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://clients2.googleusercontent.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://m77.dnsqa365.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://ssl.gstatic.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://www.google.com
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://www.google.fr
    G0 – GCSP: Preferences [User DataDefault][HomePage] http://www.gstatic.com
    G2 – GCE: Preference [User DataDefault] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [fheoggkfdfchfphceeifdbepaooicaho] SiteAdvisor
    G2 – GCE: Preference [User DataDefault] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc.
    G2 – GCE: Preference [User DataDefault] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc.

    —\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) – 4s
    P2 – EXT FILE: (…) — C:UsersthomasAppDataRoamingMozillaFirefoxProfilesetd4xcjq.defaultextensions{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
    P2 – EXT FILE: (…) — C:UsersthomasAppDataRoamingMozillaFirefoxProfilesetd4xcjq.defaultsearchpluginsMcSiteAdvisor.xml
    P2 – EXT: (.Microsoft Corporation – Bing Search.) — C:UsersthomasAppDataRoamingMozillaFirefoxProfilesetd4xcjq.defaultextensionsbingsearch.full@microsoft.com =>.Microsoft Corporation
    P2 – FPN: [HKLM] [@adobe.com/FlashPlayer] – (.Adobe Systems Incorporated.) — C:WindowsSysWOW64MacromedFlashNPSWF32_21_0_0_213.dll =>.Adobe Systems Incorporated
    P2 – FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf] – (…) — C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll
    P2 – FPN: [HKLM] [@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf] – (…) — C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll
    P2 – FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] – (.WildTangent.) — C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll =>.WildTangent

    —\ Internet Explorer,Démarrage,Recherche,URLSearchHook (18) – 1s
    R0 – HKCUSOFTWAREMicrosoftInternet ExplorerMain,Start Page = about:blank
    R0 – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://www.google.com
    R0 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerMain,Start Page = http://www.google.com
    R1 – HKCUSOFTWAREMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/
    R1 – HKCUSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://acer13.msn.com/
    R1 – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/
    R1 – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/
    R1 – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Extensions Off Page = about:noadd-ons
    R1 – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Security Risk Page = about:securityrisk
    R1 – HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/
    R1 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/
    R1 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/
    R1 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/
    R1 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerMain,Extensions Off Page = about:noadd-ons
    R1 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerMain,Security Risk Page = about:securityrisk
    R3 – URLSearchHook: (no name) – {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
    R4 – HKLMSOFTWAREMicrosoftInternet ExplorerPhishingFilter,EnabledV9 = 1
    R4 – HKLMSOFTWAREWow6432NodeMicrosoftInternet ExplorerPhishingFilter,EnabledV9 = 1

    —\ Internet Explorer,Proxy Management (4) – 0s
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,ProxyEnable = 0
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,MigrateProxy = 1
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,EnableHttp1_1 = 1
    R5 – HKCUSoftwareMicrosoftWindowsCurrentVersionInternet Settings,AutoConfigProxy = wininet.dll

    —\ Internet Explorer,IniFiles, Autoloading programs (3) – 0s
    F2 – REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
    F2 – REG:system.ini: Shell=C:Windowsexplorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
    F2 – REG:system.ini: VMApplet=C:WindowsSysWOW64SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

    —\ Etude du fichier hosts (1) – 0s
    ~ Le fichier hôte est sain (The hosts file is clean) (30)

    —\ Browser Helper Object de navigateur (BHO) (5) – 0s
    O2 – BHO: Lync Click to Call BHO [64Bits] – {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (Orphean)
    O2 – BHO: avast! Online Security [64Bits] – {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software – IE Webrep plugin.) — C:Program FilesAVAST SoftwareAvastaswWebRepIE.dll =>.AVAST Software a.s.®
    O2 – BHO: Google Toolbar Helper [64Bits] – {AA58ED58-01DD-4d91-8333-CF10577473F7} . (.Google Inc. – Google Toolbar.) — C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll =>.Google Inc®
    O2 – BHO: SkypeIEPluginBHO [64Bits] – {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} . (.Microsoft Corporation – Skype Click to Call IE Add-on.) — C:Program Files (x86)SkypeToolbarsInternet ExplorerSkypeIEPlugin.dll =>.Skype Software Sarl®
    O2 – BHO: Microsoft OneDrive for Business Browser Helper [64Bits] – {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} (Orphean)

    —\ Applications lancées au démarrage du système (20) – 4s
    O4 – HKLM..Run: [RTHDVCPL] . (.Realtek Semiconductor – Gestionnaire audio HD Realtek.) — C:Program FilesRealtekAudioHDARAVCpl64.exe =>.Realtek Semiconductor Corp®
    O4 – HKCU..Run: [BingSvc] . (.© 2015 Microsoft Corporation – Microsoft Bing Service.) — C:UsersthomasAppDataLocalMicrosoftBingSvcBingSvc.exe =>.Microsoft Corporation®
    O4 – HKCU..Run: [Google Update] . (.Google Inc. – Programme d’installation de Google.) — C:UsersthomasAppDataLocalGoogleUpdateGoogleUpdate.exe =>.Google Inc®
    O4 – HKCU..Run: [RemoteFilesTrayIcon] . (.acer – abFiles.) — C:Program Files (x86)AcerabFilesabFilesTrayIcon.exe =>.Acer Incorporated®
    O4 – HKCU..Run: [AcerPortal] . (.Acer – Acer Portal.) — C:Program Files (x86)AcerAcer PortalAcerPortal.exe =>.Acer Incorporated®
    O4 – HKCU..Run: [Skype] . (.Skype Technologies S.A. – Skype.) — C:Program Files (x86)SkypePhoneSkype.exe =>.Skype Software Sarl®
    O4 – HKCU..Run: [Chromium] c:usersthomasappdatalocalchromiumapplicationchrome.exe (.not file.)
    O4 – HKCU..RunOnce: [Application Restart #1] C:UsersthomasAppDataLocalPokkiEngineServiceHostApp.exe (.not file.)
    O4 – HKCU..RunOnce: [Application Restart #0] C:UsersthomasAppDataLocalPokkiEngineServiceHostApp.exe (.not file.)
    O4 – HKLM..Wow6432NodeRun: [AvastUI.exe] . (.AVAST Software – avast! Antivirus.) — C:Program FilesAVAST SoftwareAvastAvastUI.exe =>.AVAST Software a.s.®
    O4 – HKLM..Wow6432NodeRunOnce: [Gohabi] . (.Microsoft Corporation – Microsoft ® Windows Based Script Host.) — C:WindowsSysWOW64wscript.exe =>.Microsoft Corporation
    O4 – HKLM..policiesExplorerRun: [BtvStack] . (.Qualcomm®Atheros® – Extension Core.) — C:Program Files (x86)Qualcomm AtherosBluetooth SuiteBtvStack.exe =>.Qualcomm®Atheros®
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..Run: [BingSvc] . (.© 2015 Microsoft Corporation – Microsoft Bing Service.) — C:UsersthomasAppDataLocalMicrosoftBingSvcBingSvc.exe =>.Microsoft Corporation®
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..Run: [Google Update] . (.Google Inc. – Programme d’installation de Google.) — C:UsersthomasAppDataLocalGoogleUpdateGoogleUpdate.exe =>.Google Inc®
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..Run: [RemoteFilesTrayIcon] . (.acer – abFiles.) — C:Program Files (x86)AcerabFilesabFilesTrayIcon.exe =>.Acer Incorporated®
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..Run: [AcerPortal] . (.Acer – Acer Portal.) — C:Program Files (x86)AcerAcer PortalAcerPortal.exe =>.Acer Incorporated®
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..Run: [Skype] . (.Skype Technologies S.A. – Skype.) — C:Program Files (x86)SkypePhoneSkype.exe =>.Skype Software Sarl®
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..Run: [Chromium] c:usersthomasappdatalocalchromiumapplicationchrome.exe (.not file.)
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..RunOnce: [Application Restart #1] C:UsersthomasAppDataLocalPokkiEngineServiceHostApp.exe (.not file.)
    O4 – HKUSS-1-5-21-1704502057-2460348180-801270001-1001..RunOnce: [Application Restart #0] C:UsersthomasAppDataLocalPokkiEngineServiceHostApp.exe (.not file.)

    —\ Raccourcis Global Startup (28) – 17s
    O4 – GSDesktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman – ZHPDiag.) C:UsersthomasAppDataRoamingZHPZHPDiag3.exe =>.Nicolas Coolman
    O4 – GSsendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. – Skype.) C:Program Files (x86)SkypePhoneSkype.exe =>.Skype Software Sarl®
    O4 – GSTaskBar [Administrateur]: abPhoto.lnk . (.Acer Incorporated – abPhoto.) C:Program Files (x86)AcerabPhotoabPhoto.exe =>.Acer Incorporated®
    O4 – GSTaskBar [Administrateur]: Acer Quick Access.lnk . (.Acer Incorporate – .) C:Program Files (x86)AcerAcer Quick AccessQuickAccess.exe =>.Acer Incorporate
    O4 – GSDesktop [thomas]: ZHPDiag.lnk . (.Nicolas Coolman – ZHPDiag.) C:UsersthomasAppDataRoamingZHPZHPDiag3.exe =>.Nicolas Coolman
    O4 – GSsendTo [thomas]: Skype.lnk . (.Skype Technologies S.A. – Skype.) C:Program Files (x86)SkypePhoneSkype.exe =>.Skype Software Sarl®
    O4 – GSTaskBar [thomas]: abPhoto.lnk . (.Acer Incorporated – abPhoto.) C:Program Files (x86)AcerabPhotoabPhoto.exe =>.Acer Incorporated®
    O4 – GSTaskBar [thomas]: Acer Quick Access.lnk . (.Acer Incorporate – .) C:Program Files (x86)AcerAcer Quick AccessQuickAccess.exe =>.Acer Incorporate
    O4 – GSCommonDesktop [Public]: abDocs.lnk . (.acer – abDocs.) C:Program Files (x86)AcerabDocsabDocs.exe =>.Acer Incorporated®
    O4 – GSCommonDesktop [Public]: abFiles.lnk . (.acer – abFiles.) C:Program Files (x86)AcerabFilesabFilesTrayIcon.exe =>.Acer Incorporated®
    O4 – GSCommonDesktop [Public]: abMusic.lnk . (.Acer Incorporated – abMusic.) C:Program Files (x86)AcerabMusicabMusic.exe =>.Acer Incorporated®
    O4 – GSCommonDesktop [Public]: abPhoto.lnk . (.Acer Incorporated – abPhoto.) C:Program Files (x86)AcerabPhotoabPhoto.exe =>.Acer Incorporated®
    O4 – GSCommonDesktop [Public]: Acer Care Center.lnk . (.(C)All rights reserved – CareCenter.) C:Program Files (x86)AcerCare CenterCareCenter.exe =>.Acer Incorporated®
    O4 – GSCommonDesktop [Public]: Acer Portal.lnk . (.Acer – Acer Portal.) C:Program Files (x86)AcerAcer PortalAcerPortal.exe =>.Acer Incorporated®
    O4 – GSCommonDesktop [Public]: Acheter en ligne.lnk . (…) C:Program Files (x86)Accessory StoreStartUrl.exe
    O4 – GSCommonDesktop [Public]: Avast Antivirus Gratuit.lnk . (.AVAST Software – avast! Antivirus.) C:Program FilesAVAST SoftwareAvastAvastUI.exe =>.AVAST Software a.s.®
    O4 – GSCommonDesktop [Public]: Avast SafeZone Browser.lnk . (.Avast Software – Avast SafeZone Browser.) C:Program FilesAVAST SoftwareSZBrowserlauncher.exe =>.AVAST Software s.r.o.®
    O4 – GSCommonDesktop [Public]: CyberLink PhotoDirector 3.lnk . (.CyberLink Corp. – CyberLink PhotoDirector 3.) C:Program Files (x86)CyberLinkPhotoDirector3PhotoDirector3.exe =>.CyberLink Corp.®
    O4 – GSCommonDesktop [Public]: CyberLink PowerDirector 10.lnk . (.CyberLink Corp. – PowerDirector 10.) C:Program Files (x86)CyberLinkPowerDirector10PDR10.exe =>.CyberLink Corp.®
    O4 – GSCommonDesktop [Public]: Dropbox.lnk . (…) C:Program Files (x86)DropboxStartURL.exe
    O4 – GSCommonDesktop [Public]: Foxit PhantomPDF.lnk . (.Foxit Corporation – Foxit PhantomPDF 6.0.) C:Program Files (x86)Foxit PhantomPDFFoxitPhantomPDF.exe =>.Foxit Corporation®
    O4 – GSCommonDesktop [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. – McAfee.) C:Program FilesMcAfee Security Scan3.11.309McUICnt.exe =>.McAfee, Inc.®
    O4 – GSCommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation – Firefox.) C:Program Files (x86)Mozilla Firefoxfirefox.exe =>.Mozilla Corporation®
    O4 – GSCommonDesktop [Public]: Skype.lnk . (…) C:WindowsInstaller{FC965A47-4839-40CA-B618-18F486F042C6}SkypeIcon.exe
    O4 – GSStartup [Public]: McAfee Security Scan Plus.lnk . (.McAfee, Inc. – McAfee Security Scanner Scheduler.) C:Program FilesMcAfee Security Scan3.11.309SSScheduler.exe =>.McAfee, Inc.®
    O4 – GSPrograms [Public]: Documents.lnk . (…) C:UsersthomasDocuments
    O4 – GSPrograms [Public]: Gestionnaire audio HD.lnk . (.Realtek Semiconductor – .) C:Program Files (x86)RealtekAudioHDARAVCpl64.exe =>.Realtek Semiconductor
    O4 – GSPrograms [Public]: Pictures.lnk . (…) C:UsersthomasPictures

    —\ Modification Domaine/Adresses DNS (6) – 0s
    O17 – HKLMSystemCCSServicesTcpipParameters: NameServer = 82.163.142.7 95.211.158.134 =>PUP.Optional.DNSUnlocker
    O17 – HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 192.168.1.1 192.168.1.1
    O17 – HKLMSystemCCSServicesTcpip..{37F650BF-BA0B-48A5-9CEA-54F1E05D1189}: DhcpNameServer = 82.163.142.7 =>PUP.Optional.DNSUnlocker
    O17 – HKLMSystemCCSServicesTcpip..{59CD288B-4E76-4638-A0D8-0CCAA58F9BF6}: DhcpNameServer = 192.168.1.1 192.168.1.1
    O17 – HKLMSystemCCSServicesTcpip..{7ECB9E90-E1B4-476D-BEE7-AC32B32EB2DF}: DhcpNameServer = 82.163.142.7 =>PUP.Optional.DNSUnlocker
    O17 – HKLMSystemCCSServicesTcpip..{D5FB136A-FD22-4F9C-84EC-A0FF350762E2}: DhcpNameServer = 82.163.142.7 =>PUP.Optional.DNSUnlocker

    —\ Protocole additionnel (25) – 2s
    O18 – Handler: about [64Bits] – {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation – Visionneuse HTML Microsoft (R).) — C:WindowsSysWOW64mshtml.dll =>.Microsoft Corporation
    O18 – Handler: cdl [64Bits] – {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: dvd [64Bits] – {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation – Contrôle ActiveX pour le flux vidéo.) — C:WindowsSysWOW64MSVidCtl.dll =>.Microsoft Corporation
    O18 – Handler: file [64Bits] – {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: ftp [64Bits] – {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: http [64Bits] – {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: https [64Bits] – {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: its [64Bits] – {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation – Microsoft® InfoTech Storage System Library.) — C:WindowsSysWOW64itss.dll =>.Microsoft Corporation
    O18 – Handler: javascript [64Bits] – {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation – Visionneuse HTML Microsoft (R).) — C:WindowsSysWOW64mshtml.dll =>.Microsoft Corporation
    O18 – Handler: local [64Bits] – {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: mailto [64Bits] – {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation – Visionneuse HTML Microsoft (R).) — C:WindowsSysWOW64mshtml.dll =>.Microsoft Corporation
    O18 – Handler: mhtml [64Bits] – {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation – Microsoft Internet Messaging API Resources.) — C:WindowsSysWOW64inetcomm.dll =>.Microsoft Corporation
    O18 – Handler: mk [64Bits] – {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation – Extensions OLE32 pour Win32.) — C:WindowsSysWOW64urlmon.dll =>.Microsoft Corporation
    O18 – Handler: ms-its [64Bits] – {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation – Microsoft® InfoTech Storage System Library.) — C:WindowsSysWOW64itss.dll =>.Microsoft Corporation
    O18 – Handler: mso-minsb-roaming.16 [64Bits] – {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation – Microsoft Office 2016 component.) — C:Program Files (x86)Microsoft OfficerootOffice16MSOSB.DLL =>.Microsoft Corporation®
    O18 – Handler: mso-minsb.16 [64Bits] – {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation – Microsoft Office 2016 component.) — C:Program Files (x86)Microsoft OfficerootOffice16MSOSB.DLL =>.Microsoft Corporation®
    O18 – Handler: osf-roaming.16 [64Bits] – {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation – Microsoft Office 2016 component.) — C:Program Files (x86)Microsoft OfficerootOffice16MSOSB.DLL =>.Microsoft Corporation®
    O18 – Handler: osf.16 [64Bits] – {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation – Microsoft Office 2016 component.) — C:Program Files (x86)Microsoft OfficerootOffice16MSOSB.DLL =>.Microsoft Corporation®
    O18 – Handler: res [64Bits] – {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation – Visionneuse HTML Microsoft (R).) — C:WindowsSysWOW64mshtml.dll =>.Microsoft Corporation
    O18 – Handler: skypec2c [64Bits] – {91774881-D725-4E58-B298-07617B9B86A8} . (.Microsoft Corporation – Skype Click to Call IE Add-on.) — C:Program Files (x86)SkypeToolbarsInternet ExplorerSkypeIEPlugin.dll =>.Skype Software Sarl®
    O18 – Handler: tv [64Bits] – {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation – Contrôle ActiveX pour le flux vidéo.) — C:WindowsSysWOW64MSVidCtl.dll =>.Microsoft Corporation
    O18 – Handler: vbscript [64Bits] – {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation – Visionneuse HTML Microsoft (R).) — C:WindowsSysWOW64mshtml.dll =>.Microsoft Corporation
    O18 – Filter: application/octet-stream [64Bits] – {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation – Microsoft .NET Runtime Execution Engine.) — C:WindowsSysWOW64mscoree.dll =>.Microsoft Corporation
    O18 – Filter: application/x-complus [64Bits] – {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation – Microsoft .NET Runtime Execution Engine.) — C:WindowsSysWOW64mscoree.dll =>.Microsoft Corporation
    O18 – Filter: application/x-msdownload [64Bits] – {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation – Microsoft .NET Runtime Execution Engine.) — C:WindowsSysWOW64mscoree.dll =>.Microsoft Corporation

    —\ Logiciels installés (78) – 35s
    O42 – Logiciel: abDocs – (.Acer Incorporated.) [HKLM][64Bits] — {CA4FE8B0-298C-4E5D-A486-F33B126D6A0A} =>.Acer Incorporated®
    O42 – Logiciel: abDocs Office AddIn – (.Acer Incorporated.) [HKLM][64Bits] — {DCBF3379-246B-47E1-8173-639B63940838} =>.Acer Incorporated
    O42 – Logiciel: abFiles – (.Acer Incorporated.) [HKLM][64Bits] — {13885028-098C-4799-9B71-27DAC96502D5} =>.Acer Incorporated®
    O42 – Logiciel: abMusic – (.Acer Incorporated.) [HKLM][64Bits] — {E9AF1707-3F3A-49E2-8345-4F2D629D0876} =>.Acer Incorporated®
    O42 – Logiciel: abPhoto – (.Acer Incorporated.) [HKLM][64Bits] — {B5AD89F2-03D3-4206-8487-018298007DD0} =>.Acer Incorporated®
    O42 – Logiciel: Acer Care Center – (.Acer Incorporated.) [HKLM][64Bits] — {A424844F-CDB3-45E2-BB77-1DDE4A091E76} =>.Acer Incorporated
    O42 – Logiciel: Acer Explorer Agent – (.Acer Incorporated.) [HKLM][64Bits] — {4D0F42CF-1693-43D9-BDC8-19141D023EE0} =>.Acer Incorporated
    O42 – Logiciel: Acer Launch Manager – (.Acer Incorporated.) [HKLM][64Bits] — {C18D55BD-1EC6-466D-B763-8EEDDDA9100E} =>.Acer Incorporated
    O42 – Logiciel: Acer Portal – (.Acer Incorporated.) [HKLM][64Bits] — {A5AD0B17-F34D-49BE-A157-C8B3D52ACD13} =>.Acer Incorporated®
    O42 – Logiciel: Acer Power Management – (.Acer Incorporated.) [HKLM][64Bits] — {91F52DE4-B789-42B0-9311-A349F10E5479} =>.Acer Incorporated
    O42 – Logiciel: Acer Quick Access – (.Acer Incorporated.) [HKLM][64Bits] — {C1FA525F-D701-4B31-9D32-504FC0CF0B98} =>.Acer Incorporated
    O42 – Logiciel: Acer Recovery Management – (.Acer Incorporated.) [HKLM][64Bits] — {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} =>.Acer Incorporated
    O42 – Logiciel: Acer User Experience Improvement Program App Monitor Plugin – (.Acer Incorporated.) [HKLM][64Bits] — {978724F6-1863-4DD5-9E66-FB77F5AB5613} =>.Acer Incorporated
    O42 – Logiciel: Acer User Experience Improvement Program Framework – (.Acer Incorporated.) [HKLM][64Bits] — {12A718F2-2357-4D41-9E1F-18583A4745F7} =>.Acer Incorporated
    O42 – Logiciel: Acer Video Player – (.Acer Incorporated.) [HKLM][64Bits] — {B6846F20-4821-11E3-8F96-0800200C9A66} =>.Acer Incorporated®
    O42 – Logiciel: Adobe Flash Player 21 NPAPI – (.Adobe Systems Incorporated.) [HKLM][64Bits] — Adobe Flash Player NPAPI =>.Adobe Systems Incorporated®
    O42 – Logiciel: Aloha TriPeaks – (.WildTangent.) [HKLM][64Bits] — WTA-c8a8163c-57d4-47f6-968a-4e2034d246cf =>.WildTangent Inc®
    O42 – Logiciel: AOP Framework – (.Acer Incorporated.) [HKLM][64Bits] — {4A37A114-702F-4055-A4B6-16571D4A5353} =>.Acer Incorporated®
    O42 – Logiciel: Avast Antivirus Gratuit – (.AVAST Software.) [HKLM][64Bits] — Avast =>.AVAST Software a.s.®
    O42 – Logiciel: Battle.net – (.Blizzard Entertainment.) [HKLM][64Bits] — Battle.net =>.Blizzard Entertainment, Inc.®
    O42 – Logiciel: Bejeweled 2 Deluxe – (.WildTangent.) [HKLM][64Bits] — WTA-e166a577-4513-495a-9dbe-96a72c2ad755 =>.WildTangent Inc®
    O42 – Logiciel: Betclic Poker.fr – (…) [HKCU][64Bits] — BetclicPoker.fr {6B5F59AF1247A2E7A051034FF79F008A}
    O42 – Logiciel: CyberLink PhotoDirector 3 – (.CyberLink Corp..) [HKLM][64Bits] — {39337565-330E-4ab6-A9AE-AC81E0720B10} =>.CyberLink Corp.®
    O42 – Logiciel: CyberLink PhotoDirector 3 – (.CyberLink Corp..) [HKLM][64Bits] — InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10} =>.CyberLink Corp.®
    O42 – Logiciel: CyberLink PowerDirector 10 – (.CyberLink Corp..) [HKLM][64Bits] — {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.®
    O42 – Logiciel: CyberLink PowerDirector 10 – (.CyberLink Corp..) [HKLM][64Bits] — InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.®
    O42 – Logiciel: eBay Worldwide – (.OEM.) [HKLM][64Bits] — {91589413-6675-4C27-8AFC-EFB9103B90A5} =>.OEM
    O42 – Logiciel: Farm to Fork Collector’s Edition – (.WildTangent.) [HKLM][64Bits] — WTA-6e4545af-3e2e-4027-a561-d66ae5840bbb =>.WildTangent Inc®
    O42 – Logiciel: Foxit PhantomPDF – (.Foxit Corporation.) [HKLM][64Bits] — {D4DF5498-C95C-4A02-9951-725FB2D7BC0D} =>.Foxit Corporation
    O42 – Logiciel: Game Explorer Categories – genres – (.WildTangent, Inc..) [HKLM][64Bits] — WildTangentGameProvider-acer-genres =>.WildTangent, Inc.
    O42 – Logiciel: Game Explorer Categories – main – (.WildTangent, Inc..) [HKLM][64Bits] — WildTangentGameProvider-acer-main =>.WildTangent, Inc.
    O42 – Logiciel: Google Talk Plugin – (.Google.) [HKLM][64Bits] — {F9B579C2-D854-300A-BE62-A09EB9D722E4} =>.Google
    O42 – Logiciel: Google Toolbar for Internet Explorer – (.Google Inc..) [HKLM][64Bits] — {18455581-E099-4BA8-BC6B-F34B2F06600C} =>.Google Inc.
    O42 – Logiciel: Google Toolbar for Internet Explorer – (.Google Inc..) [HKLM][64Bits] — {2318C2B1-4965-11d4-9B18-009027A5CD4F} =>.Google Inc®
    O42 – Logiciel: Google Update Helper – (.Google Inc..) [HKLM][64Bits] — {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
    O42 – Logiciel: Google Update Helper – (.Google Inc..) [HKLM][64Bits] — {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
    O42 – Logiciel: Governor of Poker 2 Premium Edition – (.WildTangent.) [HKLM][64Bits] — WTA-76ca1901-3f54-493f-81b5-c79808454dff =>.WildTangent Inc®
    O42 – Logiciel: Intel(R) Control Center – (.Intel Corporation.) [HKLM][64Bits] — {F8A9085D-4C7A-41a9-8A77-C8998A96C421} =>.Intel Corporation – pGFX®
    O42 – Logiciel: Intel(R) Processor Graphics – (.Intel Corporation.) [HKLM][64Bits] — {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation – Software and Firmware Products®
    O42 – Logiciel: Intel(R) Trusted Execution Engine – (.Intel Corporation.) [HKLM][64Bits] — {176E2755-0A17-42C6-88E2-192AB2131278} =>.Intel Corporation
    O42 – Logiciel: Intel(R) Trusted Execution Engine – (.Intel Corporation.) [HKLM][64Bits] — {2D6248C0-4693-4CAB-9922-F05E4015F62A} =>.Intel Corporation
    O42 – Logiciel: Intel(R) Trusted Execution Engine Driver – (.Intel Corporation.) [HKLM][64Bits] — {6307E820-0317-4DCE-AAE0-7B6CAD867055} =>.Intel Corporation
    O42 – Logiciel: Jewel Match 3 – (.WildTangent.) [HKLM][64Bits] — WTA-5755ee5c-133b-4207-b4c3-7dbd077d0c8b =>.WildTangent Inc®
    O42 – Logiciel: King Oddball – (.WildTangent.) [HKLM][64Bits] — WTA-238fe9f9-b6cf-4229-ac6c-6d098ab63f37 =>.WildTangent Inc®
    O42 – Logiciel: LUXOR Evolved – (.WildTangent.) [HKLM][64Bits] — WTA-8fa673ea-77d1-4458-9ff7-57255c515186 =>.WildTangent Inc®
    O42 – Logiciel: Magic Academy – (.WildTangent.) [HKLM][64Bits] — WTA-f0a00875-9924-4842-8297-cd4535da7589 =>.WildTangent Inc®
    O42 – Logiciel: McAfee Security Scan Plus – (.McAfee, Inc..) [HKLM][64Bits] — McAfee Security Scan =>.McAfee, Inc.®
    O42 – Logiciel: Microsoft OneDrive – (.Microsoft Corporation.) [HKCU][64Bits] — OneDriveSetup.exe =>.Microsoft Corporation®
    O42 – Logiciel: Mozilla Firefox 46.0 (x86 fr) – (.Mozilla.) [HKLM][64Bits] — Mozilla Firefox 46.0 (x86 fr) =>.Mozilla Corporation®
    O42 – Logiciel: Mozilla Maintenance Service – (.Mozilla.) [HKLM][64Bits] — MozillaMaintenanceService =>.Mozilla
    O42 – Logiciel: Office 16 Click-to-Run Extensibility Component – (.Microsoft Corporation.) [HKLM][64Bits] — {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
    O42 – Logiciel: Office 16 Click-to-Run Licensing Component – (.Microsoft Corporation.) [HKLM][64Bits] — {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation
    O42 – Logiciel: Office 16 Click-to-Run Localization Component – (.Microsoft Corporation.) [HKLM][64Bits] — {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation
    O42 – Logiciel: Peggle Nights – (.WildTangent.) [HKLM][64Bits] — WTA-01303eba-7d07-4a8c-aedd-4bbbc4303cd5 =>.WildTangent Inc®
    O42 – Logiciel: Plants vs. Zombies – Game of the Year – (.WildTangent.) [HKLM][64Bits] — WTA-a9ce2a46-b987-410f-b7f7-5c046691c30a =>.WildTangent Inc®
    O42 – Logiciel: Polar Bowler 1st Frame – (.WildTangent.) [HKLM][64Bits] — WTA-bae20991-9609-4614-86db-d2d89ab99842 =>.WildTangent Inc®
    O42 – Logiciel: Qualcomm Atheros Bluetooth Suite (64) – (.Qualcomm Atheros Communications.) [HKLM][64Bits] — {A84A4FB1-D703-48DB-89E0-68B6499D2801} =>.Qualcomm Atheros Communications
    O42 – Logiciel: Qualcomm Atheros WLAN and Bluetooth Client Installation Program – (.Qualcomm Atheros.) [HKLM][64Bits] — {28006915-2739-4EBE-B5E8-49B25D32EB33} =>.Qualcomm Atheros
    O42 – Logiciel: Realtek Card Reader – (.Realtek Semiconductor Corp..) [HKLM][64Bits] — {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
    O42 – Logiciel: Realtek Ethernet Controller Driver – (.Realtek.) [HKLM][64Bits] — {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
    O42 – Logiciel: Realtek High Definition Audio Driver – (.Realtek Semiconductor Corp..) [HKLM][64Bits] — {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.
    O42 – Logiciel: SafeZone Stable 1.48.2066.101 – (.Avast Software.) [HKLM][64Bits] — SafeZone 1.48.2066.101 =>.AVAST Software s.r.o.®
    O42 – Logiciel: Skype Click to Call – (.Microsoft Corporation.) [HKLM][64Bits] — {6D1221A9-17BF-4EC0-81F2-27D30EC30701} =>.Microsoft Corporation
    O42 – Logiciel: Skype™ 7.22 – (.Skype Technologies S.A..) [HKLM][64Bits] — {FC965A47-4839-40CA-B618-18F486F042C6} =>.Skype Technologies S.A.
    O42 – Logiciel: The Chronicles of Emerland Solitaire – (.WildTangent.) [HKLM][64Bits] — WTA-384663e7-70fc-4b6e-b0e2-d0e43378bae1 =>.WildTangent Inc®
    O42 – Logiciel: Trinklit Supreme – (.WildTangent.) [HKLM][64Bits] — WTA-de98649c-aca3-431a-b8f8-21431f7f8089 =>.WildTangent Inc®
    O42 – Logiciel: Unity Web Player – (.Unity Technologies ApS.) [HKCU][64Bits] — UnityWebPlayer =>.Unity Technologies ApS
    O42 – Logiciel: Update Installer for WildTangent Games App – (.WildTangent.) [HKLM][64Bits] — {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc®
    O42 – Logiciel: WildTangent Games – (.WildTangent.) [HKLM][64Bits] — WildTangent wildgames Master Uninstall =>.WildTangent Inc®
    O42 – Logiciel: WildTangent Games App – (.WildTangent.) [HKLM][64Bits] — {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer =>.WildTangent Inc®
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.0.0 =>.Winamax
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.1.1 =>.Winamax
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.2.0 =>.Winamax
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.2.1 =>.Winamax
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.2.2 =>.Winamax
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.2.3 =>.Winamax
    O42 – Logiciel: Winamax – (.Winamax.) [HKCU][64Bits] — Winamax 4.4.2 =>.Winamax
    O42 – Logiciel: Zuma’s Revenge – (.WildTangent.) [HKLM][64Bits] — WTA-fddc3f7a-8382-4eae-b627-1cde9b7049bb =>.WildTangent Inc®

    merci de votre aide

  • thom33
    Participant
    Post count: 2

    —\ HKCU & HKLM Software Keys (64) – 35s
    HKLMSOFTWAREWow6432NodeATHEROS
    HKLMSOFTWAREWow6432NodeAVAST Software
    HKLMSOFTWAREWow6432NodeBlizzard Entertainment
    HKLMSOFTWAREWow6432NodeClearfi
    HKLMSOFTWAREWow6432NodeCyberLink
    HKLMSOFTWAREWow6432NodeFoxit Software
    HKLMSOFTWAREWow6432NodeGoogle
    HKLMSOFTWAREWow6432NodeIM Providers
    HKLMSOFTWAREWow6432NodeIntel
    HKLMSOFTWAREWow6432NodeKhronos
    HKLMSOFTWAREWow6432NodeMacromedia
    HKLMSOFTWAREWow6432NodeMcAfee
    HKLMSOFTWAREWow6432Nodemcafeeupdater
    HKLMSOFTWAREWow6432NodeMozilla
    HKLMSOFTWAREWow6432Nodemozilla.org
    HKLMSOFTWAREWow6432NodeMozillaPlugins
    HKLMSOFTWAREWow6432NodeNetwork Associates
    HKLMSOFTWAREWow6432NodeNotepad
    HKLMSOFTWAREWow6432NodeNuance
    HKLMSOFTWAREWow6432NodeODBC
    HKLMSOFTWAREWow6432NodeOEM
    HKLMSOFTWAREWow6432NodeQualcomm Atheros WLAN and Bluetooth Client Installation Program
    HKLMSOFTWAREWow6432NodeRealtek
    HKLMSOFTWAREWow6432NodeRealtek Semiconductor Corp.
    HKLMSOFTWAREWow6432NodeSkype
    HKLMSOFTWAREWow6432NodeVolatile
    HKLMSOFTWAREWow6432NodeWildTangent
    HKLMSOFTWAREWow6432NodeRegisteredApplications
    HKCUSOFTWAREAcer
    HKCUSOFTWAREAppDataLow
    HKCUSOFTWAREAtheros
    HKCUSOFTWAREAVAST Software
    HKCUSOFTWAREBetclicPoker.fr
    HKCUSOFTWAREBlizzard Entertainment
    HKCUSOFTWAREFoxit Software
    HKCUSOFTWAREGoogle
    HKCUSOFTWAREIM Providers
    HKCUSOFTWAREIntel
    HKCUSOFTWARELocal AppWizard-Generated Applications
    HKCUSOFTWAREMacromedia
    HKCUSOFTWAREMerge Gaming
    HKCUSOFTWAREMine
    HKCUSOFTWAREMozilla
    HKCUSOFTWAREMozillaPlugins
    HKCUSOFTWARENetscape
    HKCUSOFTWAREODBC
    HKCUSOFTWAREOEM
    HKCUSOFTWAREpacificpoker
    HKCUSOFTWAREPartyFrance =>.Superfluous.OnlineGames
    HKCUSOFTWAREPMU
    HKCUSOFTWAREpokerinstaller
    HKCUSOFTWAREPTECH
    HKCUSOFTWARERealtek
    HKCUSOFTWARERegisteredApplications
    HKCUSOFTWARESkype
    HKCUSOFTWARETrolltech
    HKCUSOFTWAREundefined =>.Superfluous.Downloader
    HKCUSOFTWAREUnity
    HKCUSOFTWAREVB and VBA Program Settings
    HKCUSOFTWAREVHLD
    HKCUSOFTWAREWow6432Node
    HKCUSOFTWAREZebHelpProcess Helper
    HKCUSOFTWAREAppDataLowSoftware
    HKCUSOFTWAREAppDataLowSoftwareUnity

    —\ Contenu des dossiers Programmes (179) – 58s
    O43 – CFD: 24/06/2015 – [] D — C:Program FilesAccessory Store =>.Acer Incorporated®
    O43 – CFD: 13/01/2015 – [] D — C:Program FilesAcer =>.Acer Incorporated®
    O43 – CFD: 29/04/2016 – [] D — C:Program FilesAVAST Software =>.AVAST Software s.r.o.®
    O43 – CFD: 29/04/2016 – [] D — C:Program FilesCommon Files
    O43 – CFD: 13/01/2015 – [] D — C:Program FilesDropbox =>.Acer Incorporated®
    O43 – CFD: 24/06/2015 – [0] SHD — C:Program FilesFichiers communs
    O43 – CFD: 29/04/2016 – [] D — C:Program FilesGoogle
    O43 – CFD: 13/01/2015 – [] D — C:Program FilesIntel
    O43 – CFD: 14/04/2016 – [] D — C:Program FilesInternet Explorer
    O43 – CFD: 06/04/2016 – [] D — C:Program FilesMcAfee Security Scan =>.McAfee, Inc.®
    O43 – CFD: 14/11/2015 – [] D — C:Program FilesMicrosoft Office 15 =>.Microsoft Corporation®
    O43 – CFD: 25/07/2014 – [] D — C:Program FilesMSBuild
    O43 – CFD: 13/01/2015 – [] D — C:Program FilesRealtek =>.Andrea Electronics®
    O43 – CFD: 25/07/2014 – [] D — C:Program FilesReference Assemblies
    O43 – CFD: 22/08/2013 – [0] HD — C:Program FilesUninstall Information
    O43 – CFD: 15/08/2015 – [] D — C:Program FilesWindows Defender =>.Microsoft Corporation®
    O43 – CFD: 11/02/2016 – [] D — C:Program FilesWindows Journal
    O43 – CFD: 28/06/2015 – [] D — C:Program FilesWindows Mail
    O43 – CFD: 28/06/2015 – [] D — C:Program FilesWindows Media Player
    O43 – CFD: 28/06/2015 – [] D — C:Program FilesWindows Multimedia Platform
    O43 – CFD: 24/06/2015 – [] D — C:Program FilesWindows NT
    O43 – CFD: 28/06/2015 – [] D — C:Program FilesWindows Photo Viewer =>.Microsoft Corporation®
    O43 – CFD: 28/06/2015 – [] D — C:Program FilesWindows Portable Devices
    O43 – CFD: 22/08/2013 – [] SHD — C:Program FilesWindows Sidebar
    O43 – CFD: 29/04/2016 – [] HD — C:Program FilesWindowsApps
    O43 – CFD: 28/06/2015 – [] D — C:Program FilesWindowsPowerShell
    O43 – CFD: 01/04/2016 – [] D — C:Program Files (x86)Acer =>.Acer Incorporated®
    O43 – CFD: 29/04/2016 – [] D — C:Program Files (x86)Common Files
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)CyberLink =>.CyberLink®
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)Foxit PhantomPDF =>.Foxit Corporation®
    O43 – CFD: 29/04/2016 – [] D — C:Program Files (x86)Google =>.Google Inc®
    O43 – CFD: 13/01/2015 – [] HD — C:Program Files (x86)InstallShield Installation Information =>.Macrovision Corporation®
    O43 – CFD: 13/01/2015 – [] D — C:Program Files (x86)Intel =>.Intel Corporation – Software and Firmware Products®
    O43 – CFD: 14/04/2016 – [] D — C:Program Files (x86)Internet Explorer
    O43 – CFD: 20/04/2016 – [] D — C:Program Files (x86)Microsoft Office =>.Microsoft Corporation®
    O43 – CFD: 14/11/2015 – [] D — C:Program Files (x86)Microsoft.NET
    O43 – CFD: 29/04/2016 – [] D — C:Program Files (x86)Mozilla Firefox =>.Mozilla Corporation®
    O43 – CFD: 29/04/2016 – [] D — C:Program Files (x86)Mozilla Maintenance Service =>.Mozilla Corporation®
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)MSBuild
    O43 – CFD: 24/06/2015 – [] D — C:Program Files (x86)OEM
    O43 – CFD: 15/02/2016 – [0] D — C:Program Files (x86)PokerStars.FR
    O43 – CFD: 13/01/2015 – [] D — C:Program Files (x86)Qualcomm Atheros
    O43 – CFD: 13/01/2015 – [] D — C:Program Files (x86)Realtek =>.Realtek Semiconductor Corp®
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)Reference Assemblies
    O43 – CFD: 25/04/2016 – [] RD — C:Program Files (x86)Skype =>.Skype Software Sarl®
    O43 – CFD: 13/01/2015 – [0] HD — C:Program Files (x86)Temp
    O43 – CFD: 02/05/2016 – [0] D — C:Program Files (x86)VS Revo Group
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)WildGames =>.WildTangent Inc®
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)WildTangent Games =>.WildTangent Inc®
    O43 – CFD: 15/08/2015 – [] D — C:Program Files (x86)Windows Defender
    O43 – CFD: 28/06/2015 – [] D — C:Program Files (x86)Windows Mail
    O43 – CFD: 28/06/2015 – [] D — C:Program Files (x86)Windows Media Player
    O43 – CFD: 28/06/2015 – [] D — C:Program Files (x86)Windows Multimedia Platform
    O43 – CFD: 22/08/2013 – [] D — C:Program Files (x86)Windows NT
    O43 – CFD: 28/06/2015 – [] D — C:Program Files (x86)Windows Photo Viewer =>.Microsoft Corporation®
    O43 – CFD: 28/06/2015 – [] D — C:Program Files (x86)Windows Portable Devices
    O43 – CFD: 22/08/2013 – [] SHD — C:Program Files (x86)Windows Sidebar
    O43 – CFD: 22/08/2013 – [] D — C:Program Files (x86)WindowsPowerShell
    O43 – CFD: 28/06/2015 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsAccessibility
    O43 – CFD: 28/06/2015 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsAccessories
    O43 – CFD: 28/04/2016 – [] SD — C:ProgramDataMicrosoftWindowsStart MenuProgramsAcer
    O43 – CFD: 28/06/2015 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsAdministrative Tools
    O43 – CFD: 29/04/2016 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsAVAST Software
    O43 – CFD: 28/06/2015 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsBattle.net
    O43 – CFD: 25/07/2014 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsCyberLink PhotoDirector 3
    O43 – CFD: 25/07/2014 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsCyberLink PowerDirector 10
    O43 – CFD: 25/07/2014 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsFoxit PhantomPDF
    O43 – CFD: 15/02/2016 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsGames
    O43 – CFD: 13/01/2015 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsIntel
    O43 – CFD: 22/08/2013 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsMaintenance
    O43 – CFD: 06/04/2016 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsMcAfee Security Scan Plus
    O43 – CFD: 14/11/2015 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsOutils Microsoft Office 2016
    O43 – CFD: 15/02/2016 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsPokerStars.FR
    O43 – CFD: 11/12/2015 – [] D — C:ProgramDataMicrosoftWindowsStart MenuProgramsSkype
    O43 – CFD: 29/04/2016 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsStartUp
    O43 – CFD: 28/06/2015 – [] RD — C:ProgramDataMicrosoftWindowsStart MenuProgramsSystem Tools
    O43 – CFD: 18/03/2014 – [0] RHD — C:ProgramDataMicrosoftWindowsStart MenuProgramsTablet PC
    O43 – CFD: 03/08/2015 – [] D — C:ProgramDataacer
    O43 – CFD: 22/08/2013 – [0] SHD — C:ProgramDataApplication Data
    O43 – CFD: 13/01/2015 – [] D — C:ProgramDataAtheros
    O43 – CFD: 29/04/2016 – [] D — C:ProgramDataAVAST Software
    O43 – CFD: 02/05/2016 – [] D — C:ProgramDataBattle.net
    O43 – CFD: 28/06/2015 – [] D — C:ProgramDataBlizzard Entertainment
    O43 – CFD: 24/06/2015 – [0] SHD — C:ProgramDataBureau
    O43 – CFD: 25/07/2014 – [] D — C:ProgramDataCyberLink
    O43 – CFD: 22/08/2013 – [0] SHD — C:ProgramDataDesktop
    O43 – CFD: 22/08/2013 – [0] SHD — C:ProgramDataDocuments
    O43 – CFD: 29/04/2016 – [] D — C:ProgramDataGoogle
    O43 – CFD: 25/07/2014 – [] D — C:ProgramDatainstall_clap
    O43 – CFD: 13/01/2015 – [] D — C:ProgramDataIntel
    O43 – CFD: 29/04/2016 – [] D — C:ProgramDataMcAfee
    O43 – CFD: 24/07/2015 – [] D — C:ProgramDataMcAfee Security Scan
    O43 – CFD: 24/06/2015 – [0] SHD — C:ProgramDataMenu Démarrer
    O43 – CFD: 14/11/2015 – [] SD — C:ProgramDataMicrosoft
    O43 – CFD: 14/11/2015 – [] D — C:ProgramDataMicrosoft OneDrive
    O43 – CFD: 24/06/2015 – [0] SHD — C:ProgramDataModèles
    O43 – CFD: 24/06/2015 – [] D — C:ProgramDataMozilla
    O43 – CFD: 07/11/2015 – [] D — C:ProgramDataOEM
    O43 – CFD: 24/06/2015 – [] D — C:ProgramDataOEM_YAHOO
    O43 – CFD: 25/07/2014 – [] D — C:ProgramDataPackage Cache
    O43 – CFD: 13/01/2015 – [] D — C:ProgramDataQualcomm Atheros
    O43 – CFD: 20/04/2016 – [] D — C:ProgramDataregid.1991-06.com.microsoft
    O43 – CFD: 25/04/2016 – [] D — C:ProgramDataSkype
    O43 – CFD: 22/08/2013 – [0] SHD — C:ProgramDataStart Menu
    O43 – CFD: 25/07/2014 – [] D — C:ProgramDataTemp
    O43 – CFD: 22/08/2013 – [0] SHD — C:ProgramDataTemplates
    O43 – CFD: 25/07/2014 – [] D — C:ProgramDataWildTangent
    O43 – CFD: 13/01/2015 – [] D — C:ProgramData{69533018-33A8-4C46-869A-11AA2CDF4EDC}
    O43 – CFD: 13/01/2015 – [] D — C:Program Files (x86)Common FilesAtheros
    O43 – CFD: 29/04/2016 – [] D — C:Program Files (x86)Common FilesAV
    O43 – CFD: 28/06/2015 – [0] D — C:Program Files (x86)Common FilesBlizzard Entertainment
    O43 – CFD: 20/04/2016 – [] D — C:Program Files (x86)Common FilesDESIGNER
    O43 – CFD: 13/01/2015 – [] D — C:Program Files (x86)Common FilesInstallShield
    O43 – CFD: 13/01/2015 – [] D — C:Program Files (x86)Common FilesIntel
    O43 – CFD: 29/04/2016 – [] D — C:Program Files (x86)Common Filesmcafee
    O43 – CFD: 20/04/2016 – [] D — C:Program Files (x86)Common FilesMicrosoft Shared
    O43 – CFD: 25/07/2014 – [] D — C:Program Files (x86)Common FilesNikon
    O43 – CFD: 22/08/2013 – [] D — C:Program Files (x86)Common FilesServices
    O43 – CFD: 23/03/2016 – [] D — C:Program Files (x86)Common FilesSkype
    O43 – CFD: 28/06/2015 – [] D — C:Program Files (x86)Common FilesSystem
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataRoamingAdobe
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataRoamingAtheros
    O43 – CFD: 29/04/2016 – [] D — C:UsersthomasAppDataRoamingAVAST Software
    O43 – CFD: 02/05/2016 – [] D — C:UsersthomasAppDataRoamingBattle.net
    O43 – CFD: 15/02/2016 – [] D — C:UsersthomasAppDataRoamingcef-cache
    O43 – CFD: 11/02/2016 – [] D — C:UsersthomasAppDataRoamingcom.winamax.chat
    O43 – CFD: 08/10/2015 – [] D — C:UsersthomasAppDataRoamingFoxit Software
    O43 – CFD: 28/06/2015 – [] D — C:UsersthomasAppDataRoamingIdentities
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataRoamingMacromedia
    O43 – CFD: 14/11/2015 – [] SD — C:UsersthomasAppDataRoamingMicrosoft
    O43 – CFD: 16/12/2015 – [] D — C:UsersthomasAppDataRoamingMozilla
    O43 – CFD: 15/02/2016 – [] D — C:UsersthomasAppDataRoamingPartyFrance
    O43 – CFD: 30/06/2015 – [] D — C:UsersthomasAppDataRoamingPMU
    O43 – CFD: 02/05/2016 – [] D — C:UsersthomasAppDataRoamingSkype
    O43 – CFD: 09/04/2016 – [] D — C:UsersthomasAppDataRoamingUnity
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataRoamingwam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1
    O43 – CFD: 03/05/2016 – [] D — C:UsersthomasAppDataRoamingZHP
    O43 – CFD: 27/04/2016 – [] HD — C:UsersthomasAppDataLocal22e891d9788f4141
    O43 – CFD: 07/11/2015 – [] D — C:UsersthomasAppDataLocalacer
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataLocalAcer Aspire R7 Tutorial
    O43 – CFD: 24/06/2015 – [0] D — C:UsersthomasAppDataLocalAdobe
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataLocalAOP SDK
    O43 – CFD: 24/06/2015 – [0] SHD — C:UsersthomasAppDataLocalApplication Data
    O43 – CFD: 01/10/2015 – [] D — C:UsersthomasAppDataLocalBattle.net
    O43 – CFD: 29/04/2016 – [] D — C:UsersthomasAppDataLocalBetclic Poker.fr
    O43 – CFD: 28/06/2015 – [] D — C:UsersthomasAppDataLocalBlizzard
    O43 – CFD: 28/06/2015 – [] D — C:UsersthomasAppDataLocalBlizzard Entertainment
    O43 – CFD: 30/10/2015 – [] D — C:UsersthomasAppDataLocalCarbonPoker
    O43 – CFD: 04/11/2015 – [] D — C:UsersthomasAppDataLocalCEF
    O43 – CFD: 15/04/2016 – [] D — C:UsersthomasAppDataLocalChromium
    O43 – CFD: 28/04/2016 – [] D — C:UsersthomasAppDataLocalclear.fi
    O43 – CFD: 29/04/2016 – [] D — C:UsersthomasAppDataLocalCrashDumps
    O43 – CFD: 02/05/2016 – [] D — C:UsersthomasAppDataLocalDiagnostics
    O43 – CFD: 28/06/2015 – [0] SHD — C:UsersthomasAppDataLocalEmieSiteList
    O43 – CFD: 28/06/2015 – [0] SHD — C:UsersthomasAppDataLocalEmieUserList
    O43 – CFD: 06/04/2016 – [] D — C:UsersthomasAppDataLocalGoogle
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataLocalGWX
    O43 – CFD: 24/06/2015 – [0] SHD — C:UsersthomasAppDataLocalHistorique
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataLocalMacromedia
    O43 – CFD: 05/02/2016 – [] D — C:UsersthomasAppDataLocalMicrosoft
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataLocalMozilla
    O43 – CFD: 24/06/2015 – [] D — C:UsersthomasAppDataLocalOEM
    O43 – CFD: 18/01/2016 – [] D — C:UsersthomasAppDataLocalPackages
    O43 – CFD: 06/03/2016 – [] D — C:UsersthomasAppDataLocalPokerClient
    O43 – CFD: 15/02/2016 – [] D — C:UsersthomasAppDataLocalPokerStars.FR
    O43 – CFD: 27/04/2016 – [] D — C:UsersthomasAppDataLocalPrograms
    O43 – CFD: 11/12/2015 – [0] D — C:UsersthomasAppDataLocalSkype
    O43 – CFD: 03/05/2016 – [] D — C:UsersthomasAppDataLocalTemp
    O43 – CFD: 24/06/2015 – [0] SHD — C:UsersthomasAppDataLocalTemporary Internet Files
    O43 – CFD: 09/04/2016 – [] D — C:UsersthomasAppDataLocalUnity
    O43 – CFD: 29/04/2016 – [] D — C:UsersthomasAppDataLocalVirtualStore
    O43 – CFD: 29/04/2016 – [] D — C:UsersthomasAppDataLocal{8557B30B-A1FF-DFB3-CC67-FA5BE80F06C3}
    O43 – CFD: 27/04/2016 – [0] D — C:UsersthomasAppDataLocalProgramsCommon
    O43 – CFD: 18/03/2014 – [] RD — C:UsersthomasAppDataRoamingMicrosoftWindowsStart MenuProgramsAccessibility
    O43 – CFD: 22/08/2013 – [] RD — C:UsersthomasAppDataRoamingMicrosoftWindowsStart MenuProgramsAccessories
    O43 – CFD: 15/04/2016 – [] RD — C:UsersthomasAppDataRoamingMicrosoftWindowsStart MenuProgramsAdministrative Tools
    O43 – CFD: 22/08/2013 – [] D — C:UsersthomasAppDataRoamingMicrosoftWindowsStart MenuProgramsMaintenance
    O43 – CFD: 15/04/2016 – [] RD — C:UsersthomasAppDataRoamingMicrosoftWindowsStart MenuProgramsStartup
    O43 – CFD: 25/07/2014 – [] RD — C:UsersthomasAppDataRoamingMicrosoftWindowsStart MenuProgramsSystem Tools

    —\ Derniers fichiers créés dans Windows Prefetcher (1) – 71s
    O45 – LFCP:[MD5.5CC39A3702070C41F478A37661C6D292] 06/04/2016 A — C:WindowsPrefetchONESYSTEMCARE.EXE-2CCD2217.pf =>PUP.Optional.OneSystemCare

    —\ ShellIconOverlayIdentifiers (SIOI) (1) – 0s
    O106 – SIOI: avast [00avast] – {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software – avast! Shell Extension.) — C:Program FilesAVAST SoftwareAvastashShell.dll =>.AVAST Software a.s.®

    —\ Liste des pilotes du système (59) – 21s
    O58 – SDL:2013/08/22 14:43:41 A . (.LSI – LSI 3ware SCSI Storport Driver.) — C:WindowsSystem32drivers3ware.sys [108896] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:41 A . (.PMC-Sierra – PMC-Sierra Storport Driver For SPC8x6G SAS.) — C:WindowsSystem32driversadp80xx.sys [782176] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices – AHCI 1.3 Device Driver.) — C:WindowsSystem32driversamdsata.sys [79200] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. – AMD Technology AHCI Compatible Controller D.) — C:WindowsSystem32driversamdsbs.sys [259424] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices – Storage Filter Driver.) — C:WindowsSystem32driversamdxata.sys [25952] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. – Adaptec SAS RAID WS03 Driver.) — C:WindowsSystem32driversarcsas.sys [114016] =>.Microsoft Windows®
    O58 – SDL:2016/04/29 16:39:37 A . (.AVAST Software – avast! HWID.) — C:WindowsSystem32driversaswHwid.sys [37656] =>.AVAST Software a.s.® (ALWIL Software)
    O58 – SDL:2016/04/29 16:42:59 A . (.AVAST Software – avast! Keyboard Filter Driver.) — C:WindowsSystem32driversaswKbd.sys [37144] =>.AVAST Software a.s.®
    O58 – SDL:2016/04/29 16:39:37 A . (.AVAST Software – avast! File System Minifilter for Windows 2.) — C:WindowsSystem32driversaswMonFlt.sys [107792] =>.AVAST Software a.s.®
    O58 – SDL:2016/04/29 16:39:36 A . (.AVAST Software – avast! WFP Redirect Driver.) — C:WindowsSystem32driversaswRdr2.sys [103064] =>.AVAST Software a.s.®
    O58 – SDL:2016/04/29 16:39:37 A . (.AVAST Software – avast! Revert.) — C:WindowsSystem32driversaswRvrt.sys [74544] =>.AVAST Software a.s.® (ALWIL Software)
    O58 – SDL:2016/04/29 16:39:14 A . (.AVAST Software – avast! Virtualization Driver.) — C:WindowsSystem32driversaswSnx.sys [1070904] =>.AVAST Software a.s.®
    O58 – SDL:2016/04/29 16:39:37 A . (.AVAST Software – avast! self protection module.) — C:WindowsSystem32driversaswSP.sys [465792] =>.AVAST Software a.s.®
    O58 – SDL:2016/04/29 16:39:37 A . (.AVAST Software – Stream Filter.) — C:WindowsSystem32driversaswStm.sys [166432] =>.AVAST Software a.s.®
    O58 – SDL:2016/04/29 16:39:37 A . (.AVAST Software – avast! VM Monitor.) — C:WindowsSystem32driversaswVmm.sys [287528] =>.AVAST Software a.s.® (ALWIL Software)
    O58 – SDL:2014/04/02 20:02:18 A . (.Qualcomm Atheros Communications, Inc. – Qualcomm Atheros Extensible Wireless LAN de.) — C:WindowsSystem32driversathwbx.sys [3893248] =>.Qualcomm Atheros Communications, Inc.
    O58 – SDL:2013/08/13 01:25:46 A . (.Windows (R) Win 7 DDK provider – BCM Function 2 Device Driver.) — C:WindowsSystem32driversbcmfn2.sys [17624] =>.Broadcom Corporation®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros A2DP driver.) — C:WindowsSystem32driversbtath_a2dp.sys [338120] =>.Qualcomm Atheros®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros Bluetooth AVDT driver.) — C:WindowsSystem32driversbtath_avdt.sys [116424] =>.Qualcomm Atheros®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros BUS driver.) — C:WindowsSystem32driversbtath_bus.sys [35016] =>.Qualcomm Atheros®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros FILTER driver.) — C:WindowsSystem32driversbtath_flt.sys [89800] =>.Qualcomm Atheros®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros FILTER driver.) — C:WindowsSystem32driversbtath_lwflt.sys [77464] =>.Atheros Communications Inc.®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros AVRCP driver.) — C:WindowsSystem32driversbtath_rcp.sys [137928] =>.Qualcomm Atheros®
    O58 – SDL:2014/04/29 03:15:50 A . (.Qualcomm Atheros – Qualcomm Atheros BtFilter Driver.) — C:WindowsSystem32driversbtfilter.sys [599240] =>.Qualcomm Atheros®
    O58 – SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation – Broadcom NetXtreme II GigE VBD.) — C:WindowsSystem32driversbxvbda.sys [531296] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation – Broadcom NetXtreme II 10 GigE VBD.) — C:WindowsSystem32driversevbda.sys [3357024] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company – Smart Array SAS/SATA Controller Media Drive.) — C:WindowsSystem32driversHpSAMD.sys [64352] =>.Microsoft Windows®
    O58 – SDL:2014/06/09 08:20:30 A . (.Intel Corporation – GPIO Controller Driver E.) — C:WindowsSystem32driversiaiogpioe.sys [31232] =>.Intel Corporation
    O58 – SDL:2014/06/09 08:20:30 A . (.Intel Corporation – I2C Controller Driver E.) — C:WindowsSystem32driversiaioi2ce.sys [69632] =>.Intel Corporation
    O58 – SDL:2013/07/30 20:47:35 A . (.Intel Corporation – Intel(R) Serial IO GPIO Controller Driver.) — C:WindowsSystem32driversiaLPSSi_GPIO.sys [24568] =>.Intel Corporation – Software and Firmware Products®
    O58 – SDL:2013/07/25 21:05:39 A . (.Intel Corporation – Intel(R) Serial IO I2C Controller Driver.) — C:WindowsSystem32driversiaLPSSi_I2C.sys [99320] =>.Intel Corporation – Software and Firmware Products®
    O58 – SDL:2013/08/10 02:39:30 A . (.Intel Corporation – Intel Rapid Storage Technology driver (inbo.) — C:WindowsSystem32driversiaStorAV.sys [651248] =>.Intel Corporation – Intel® Rapid Storage Technology®
    O58 – SDL:2013/08/22 14:43:45 A . (.Intel Corporation – Intel Matrix Storage Manager driver – x64.) — C:WindowsSystem32driversiaStorV.sys [412000] =>.Microsoft Windows®
    O58 – SDL:2014/04/23 22:32:30 A . (.Intel Corporation – Intel Graphics Kernel Mode Driver.) — C:WindowsSystem32driversigdkmd64.sys [3789824] =>.Intel Corporation
    O58 – SDL:2014/04/23 22:41:34 A . (.Intel(R) Corporation – Intel(R) Display Audio Driver.) — C:WindowsSystem32driversIntcDAud.sys [450520] =>.Intel Corporation – Software and Firmware Products®
    O58 – SDL:2014/03/26 01:31:04 A . (.Intel Corporation – Intel® WiDi Solution.) — C:WindowsSystem32driversintelaud.sys [38296] =>.Intel Wireless Display®
    O58 – SDL:2014/03/26 01:31:04 A . (.Intel Corporation – Intel® WiDi Solution.) — C:WindowsSystem32driversiwdbus.sys [27032] =>.Intel Wireless Display®
    O58 – SDL:2013/07/17 18:59:00 A . (.Acer Incorporated – LMDriver.) — C:WindowsSystem32driversLMDriver.sys [21360] =>.Acer Incorporated®
    O58 – SDL:2013/08/22 14:43:44 A . (.LSI Corporation – LSI Fusion-MPT SAS Driver (StorPort).) — C:WindowsSystem32driverslsi_sas.sys [109408] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:45 A . (.LSI Corporation – LSI SAS Gen2 Driver (StorPort).) — C:WindowsSystem32driverslsi_sas2.sys [93536] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:44 A . (.LSI Corporation – LSI SAS Gen3 Driver (StorPort).) — C:WindowsSystem32driverslsi_sas3.sys [81760] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:45 A . (.LSI Corporation – LSI SSS PCIe/Flash Driver (StorPort).) — C:WindowsSystem32driverslsi_sss.sys [82784] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:45 A . (.LSI Corporation – MEGASAS RAID Controller Driver for Windows.) — C:WindowsSystem32driversmegasas.sys [56672] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. – LSI MegaRAID Software RAID Driver.) — C:WindowsSystem32driversmegasr.sys [575840] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. – Marvell Flash Controller Driver.) — C:WindowsSystem32driversmvumis.sys [63840] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation – NVIDIA® nForce(TM) RAID Driver.) — C:WindowsSystem32driversnvraid.sys [150368] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation – NVIDIA® nForce(TM) Sata Performance Driver.) — C:WindowsSystem32driversnvstor.sys [168288] =>.Microsoft Windows®
    O58 – SDL:2013/07/17 18:59:00 A . (.Acer Incorporated – RadioShim.) — C:WindowsSystem32driversRadioShim.sys [14680] =>.Acer Incorporated®
    O58 – SDL:2014/05/29 09:55:48 A . (.Realtek – Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) — C:WindowsSystem32driversRt630x64.sys [873176] =>.Realtek Semiconductor Corp®
    O58 – SDL:2014/07/08 13:16:38 A . (.Realtek Semiconductor Corp. – Realtek(r) High Definition Audio Function D.) — C:WindowsSystem32driversRTKVHD64.sys [4007512] =>.Realtek Semiconductor Corp®
    O58 – SDL:2014/03/27 05:06:40 A . (.Realtek Semiconductor Corp. – Realtek USB Mass Storage Driver for 2K/XP/V.) — C:WindowsSystem32driversRtsUVStor.sys [331992] =>.Realtek Semiconductor Corp®
    O58 – SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, – Macrovision SECURITY Driver.) — C:WindowsSystem32driverssecdrv.sys [23040] =>.Macrovision Corporation, Macrovision Europe Limited,
    O58 – SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. – SiS RAID Stor Miniport Driver.) — C:WindowsSystem32driverssisraid2.sys [44896] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems – SiS AHCI Stor-Miniport Driver.) — C:WindowsSystem32driverssisraid4.sys [81760] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. – Promise SuperTrak EX Series Driver for Wind.) — C:WindowsSystem32driversstexstor.sys [31072] =>.Microsoft Windows®
    O58 – SDL:2014/01/15 15:21:46 A . (.Intel Corporation – Intel(R) Trusted Execution Engine Interface.) — C:WindowsSystem32driversTXEIx64.sys [88592] =>.Intel Corporation – Client Components Group®
    O58 – SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. – VIA Generic PCI IDE Bus Driver.) — C:WindowsSystem32driversviaide.sys [19808] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd – VIA RAID DRIVER FOR AMD-X86-64.) — C:WindowsSystem32driversvsmraid.sys [168800] =>.Microsoft Windows®
    O58 – SDL:2013/08/22 14:43:34 A . (.VIA Corporation – VIA StorX RAID Controller Driver.) — C:WindowsSystem32driversVSTXRAID.SYS [305504] =>.Microsoft Windows®

    —\ Derniers fichiers modifiés ou crées (Utilisateur) (9) – 117s
    O61 – LFC: 2016/04/29 16:36:35 A . (..) — C:UsersthomasDownloadsavast_free_antivirus_setup_online.exe [0]
    O61 – LFC: 2016/04/30 12:48:03 A . (.Copyright © 2013.) — C:UsersthomasAppDataLocalPackagesMicrosoft.BingSports_8wekyb3d8bbweACMicrosoftCLR_v4.0NativeImagesMicrosoft.B2e1870ee#c3d2cf3f267b533bad46cf52fc81e8f1Microsoft.Bing.AppEx.Telemetry.ni.dll [2207232]
    O61 – LFC: 2016/04/30 12:48:49 A . (..) — C:UsersthomasAppDataLocalPackagesMicrosoft.BingSports_8wekyb3d8bbweACMicrosoftCLR_v4.0NativeImagesMicrosoft.Ad256fa43#72fbf2455513b5bcaf2caa9c56a889eeMicrosoft.AppEx.Sports.SportsEnums.ni.dll [60416]
    O61 – LFC: 2016/04/30 12:48:43 A . (.Copyright © 2013.) — C:UsersthomasAppDataLocalPackagesMicrosoft.BingSports_8wekyb3d8bbweACMicrosoftCLR_v4.0NativeImagesMicrosoft.Ab11fe181#dd9bb113750249f912def405bd3c0087Microsoft.AppEx.Sports.TransformEngine.BaseSchemas.ni.dll [181248]
    O61 – LFC: 2016/04/30 12:48:33 A . (..) — C:UsersthomasAppDataLocalPackagesMicrosoft.BingSports_8wekyb3d8bbweACMicrosoftCLR_v4.0NativeImagesMicrosoft.A615ea4af#28ae82d3d9e8bc4d645d2e5c6346908aMicrosoft.AppEx.Sports.BaseEnums.ni.dll [79872]
    O61 – LFC: 2016/04/30 12:48:42 A . (.Copyright © 2013.) — C:UsersthomasAppDataLocalPackagesMicrosoft.BingSports_8wekyb3d8bbweACMicrosoftCLR_v4.0NativeImagesMicrosoft.A46d31238#3a9b184ff38d00bf091381593f17c6afMicrosoft.AppEx.Sports.Schemas.ni.dll [4854272]
    O61 – LFC: 2016/04/30 12:47:04 A . (.Copyright © 2013.) — C:UsersthomasAppDataLocalPackagesMicrosoft.BingNews_8wekyb3d8bbweACMicrosoftCLR_v4.0NativeImagesMicrosoft.B2e1870ee#548a3dfc7ad8d8f7ddff8570b173d28fMicrosoft.Bing.AppEx.Telemetry.ni.dll [2207232]
    O61 – LFC: 2016/04/29 19:45:24 A . (..) — C:UsersthomasAppDataLocalMicrosoftWindowsINetCacheIEKUJ57QW7urlblockindex[1].bin [16]
    O61 – LFC: 2016/05/02 23:45:17 A . (..) — C:UsersthomasAppDataLocalAOP SDKAcer InfraacerSyncAgentcccacheusers000000000a5dbc9userdata.bin [4456]

    —\ Associations Shell Spawning (10) – 1s
    O67 – Shell Spawning: < .bat> [HKLM..openCommand] (…) — “%1” %*
    O67 – Shell Spawning: < .cpl> [HKLM..cplopenCommand] (.Microsoft Corporation – Windows Control Panel.) — C:WindowsSystem32control.exe =>.Microsoft Corporation
    O67 – Shell Spawning: < .cmd> [HKLM..openCommand] (…) — “%1” %*
    O67 – Shell Spawning: < .com> [HKLM..openCommand] (…) — “%1” %*
    O67 – Shell Spawning: < .evt> [HKLM..openCommand] (.Microsoft Corporation – Lanceur du composant logiciel enfichable Ob.) — C:WindowsSystem32eventvwr.exe =>.Microsoft Corporation
    O67 – Shell Spawning: < .exe> [HKLM..openCommand] (…) — “%1” %*
    O67 – Shell Spawning: < .html> [HKLM..openCommand] (.Microsoft Corporation – Internet Explorer.) — C:Program FilesInternet Exploreriexplore.exe =>.Microsoft Corporation®
    O67 – Shell Spawning: < .js> [HKLM..openCommand] (.Microsoft Corporation – Microsoft ® Windows Based Script Host.) — C:WindowsSystem32wscript.exe =>.Microsoft Corporation
    O67 – Shell Spawning: < .reg> [HKLM..openCommand] (.Microsoft Corporation – Éditeur du Registre.) — C:Windowsregedit.exe =>.Microsoft Corporation
    O67 – Shell Spawning: < .scr> [HKLM..openCommand] (…) — “%1” /S

    —\ Menu de démarrage Internet (12) – 0s
    O68 – StartMenuInternet: [HKLM..ShellopenCommand] (.Mozilla Corporation – Firefox.) — C:Program Files (x86)Mozilla Firefoxfirefox.exe =>.Mozilla Corporation®
    O68 – StartMenuInternet: [HKLM..ShellopenCommand] (…) — iexplore.exe
    O68 – StartMenuInternet: [HKLM..ShellopenCommand] (.Avast Software – Avast SafeZone Browser.) — C:Program FilesAVAST SoftwareSZBrowserLauncher.exe =>.AVAST Software s.r.o.®
    O68 – StartMenuInternet: [HKLM..InstallInfoShowIconsCommand] (.Mozilla Corporation – Firefox Helper.) — C:Program Files (x86)Mozilla Firefoxuninstallhelper.exe =>.Mozilla Corporation
    O68 – StartMenuInternet: [HKLM..InstallInfoShowIconsCommand] (.Microsoft Corporation – Utilitaire d’initialisation d’Internet Expl.) — C:WindowsSystem32ie4uinit.exe =>.Microsoft Corporation
    O68 – StartMenuInternet: [HKLM..InstallInfoShowIconsCommand] (.Avast Software – Avast SafeZone Browser.) — C:Program FilesAVAST SoftwareSZBrowserlauncher.exe =>.AVAST Software
    O68 – StartMenuInternet: [HKLM..InstallInfoReinstallCommand] (.Mozilla Corporation – Firefox Helper.) — C:Program Files (x86)Mozilla Firefoxuninstallhelper.exe =>.Mozilla Corporation
    O68 – StartMenuInternet: [HKLM..InstallInfoReinstallCommand] (.Microsoft Corporation – Utilitaire d’initialisation d’Internet Expl.) — C:WindowsSystem32ie4uinit.exe =>.Microsoft Corporation
    O68 – StartMenuInternet: [HKLM..InstallInfoReinstallCommand] (.Avast Software – Avast SafeZone Browser.) — C:Program FilesAVAST SoftwareSZBrowserlauncher.exe =>.AVAST Software
    O68 – StartMenuInternet: [HKLM..InstallInfoHideIconsCommand] (.Mozilla Corporation – Firefox Helper.) — C:Program Files (x86)Mozilla Firefoxuninstallhelper.exe =>.Mozilla Corporation
    O68 – StartMenuInternet: [HKLM..InstallInfoHideIconsCommand] (.Microsoft Corporation – Utilitaire d’initialisation d’Internet Expl.) — C:WindowsSystem32ie4uinit.exe =>.Microsoft Corporation
    O68 – StartMenuInternet: [HKLM..InstallInfoHideIconsCommand] (.Avast Software – Avast SafeZone Browser.) — C:Program FilesAVAST SoftwareSZBrowserlauncher.exe =>.AVAST Software

    —\ Recherche d’infection sur les navigateurs (2) – 38s
    O69 – SBI: SearchScopes [HKCU] {2f23ab71-4ac6-41f2-a955-ea576e553146} – (Bing) – http://www.bing.com/
    O69 – SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] – (@ieframe.dll,-12512) – http://www.bing.com/

    —\ Enumère les services démarrés par Svchost (34) – 3s
    O83 – Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation – Service Expérience d’application.) — C:WindowsSystem32aelupsvc.dll [214528] =>.Microsoft Corporation
    O83 – Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation – Service de propagation de certificats de ca.) — C:WindowsSystem32certprop.dll [156160] =>.Microsoft Corporation
    O83 – Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation – Service de propagation de certificats de ca.) — C:WindowsSystem32certprop.dll [156160] =>.Microsoft Corporation
    O83 – Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation – DLL du service Serveur.) — C:Windowssystem32srvsvc.dll [329216] =>.Microsoft Corporation
    O83 – Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation – Client de stratégie de groupe.) — C:WindowsSystem32gpsvc.dll [1360896] =>.Microsoft Corporation
    O83 – Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation – Extension IKE.) — C:WindowsSystem32ikeext.dll [1083904] =>.Microsoft Corporation
    O83 – Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation – Service offrant une connectivité IPv6 sur u.) — C:WindowsSystem32iphlpsvc.dll [926208] =>.Microsoft Corporation
    O83 – Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation – DLL de service d’ouverture de session secon.) — C:Windowssystem32seclogon.dll [31744] =>.Microsoft Corporation
    O83 – Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation – Service Informations d’application.) — C:WindowsSystem32appinfo.dll [110080] =>.Microsoft Corporation
    O83 – Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation – Service de découverte iSCSI.) — C:Windowssystem32iscsiexe.dll [151040] =>.Microsoft Corporation
    O83 – Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation – Service EAPHost Microsoft.) — C:WindowsSystem32eapsvc.dll [110592] =>.Microsoft Corporation
    O83 – Search Svchost Services: schedule (schedule) . (.Microsoft Corporation – Service du Planificateur de tâches.) — C:Windowssystem32schedsvc.dll [1265152] =>.Microsoft Corporation
    O83 – Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation – WMI.) — C:Windowssystem32wbemWMIsvc.dll [230400] =>.Microsoft Corporation
    O83 – Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation – Service Planificateur de classes multimédia.) — C:Windowssystem32mmcss.dll [71168] =>.Microsoft Corporation
    O83 – Search Svchost Services: browser (browser) . (.Microsoft Corporation – DLL du service Explorateur d’ordinateurs.) — C:WindowsSystem32browser.dll [135168] =>.Microsoft Corporation
    O83 – Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation – ProfSvc.) — C:Windowssystem32profsvc.dll [228864] =>.Microsoft Corporation
    O83 – Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation – Service Configuration des services Bureau à.) — C:WindowsSystem32SessEnv.dll [339968] =>.Microsoft Corporation
    O83 – Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation – Rapports et solutions aux problèmes.) — C:WindowsSystem32wercplsupport.dll [84992] =>.Microsoft Corporation
    O83 – Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation – Service Gestion des clés.) — C:Windowssystem32kmsvc.dll [101376] =>.Microsoft Corporation
    O83 – Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation – Service BDE.) — C:WindowsSystem32bdesvc.dll [348672] =>.Microsoft Corporation
    O83 – Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation – Service d’infrastructure de localisation Wi.) — C:WindowsSystem32GeofenceMonitorService.dll [522240] =>.Microsoft Corporation
    O83 – Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation – Service de compte Microsoft®.) — C:Windowssystem32wlidsvc.dll [1639424] =>.Microsoft Corporation
    O83 – Search Svchost Services: Themes (Themes) . (.Microsoft Corporation – DLL du service des thèmes Windows Shell.) — C:Windowssystem32themeservice.dll [59392] =>.Microsoft Corporation
    O83 – Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation – Gestionnaire d’installation de périphérique.) — C:WindowsSystem32DeviceSetupManager.dll [206848] =>.Microsoft Corporation
    O83 – Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation – Service Assistant Connectivité réseau Micro.) — C:WindowsSystem32ncasvc.dll [166400] =>.Microsoft Corporation
    O83 – Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation – Gestionnaire de numérotation automatique d’.) — C:WindowsSystem32rasauto.dll [102912] =>.Microsoft Corporation
    O83 – Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation – Gestionnaire des connexions d’accès à dista.) — C:WindowsSystem32rasmans.dll [542208] =>.Microsoft Corporation
    O83 – Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation – Gestionnaire d’interface dynamique.) — C:WindowsSystem32mprdim.dll [226816] =>.Microsoft Corporation
    O83 – Search Svchost Services: SENS (SENS) . (.Microsoft Corporation – Service de notification d’événements systèm.) — C:WindowsSystem32sens.dll [73728] =>.Microsoft Corporation
    O83 – Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation – Composants de l’application d’assistance à.) — C:WindowsSystem32ipnathlp.dll [452608] =>.Microsoft Corporation
    O83 – Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation – Serveur de téléphonie Microsoft® Windows(TM.) — C:WindowsSystem32tapisrv.dll [313344] =>.Microsoft Corporation
    O83 – Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation – Agent de mise à jour automatique Windows Up.) — C:Windowssystem32wuaueng.dll [3708416] =>.Microsoft Corporation
    O83 – Search Svchost Services: BITS (BITS) . (.Microsoft Corporation – Service de transfert intelligent en arrière.) — C:WindowsSystem32qmgr.dll [933376] =>.Microsoft Corporation
    O83 – Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation – Dll des services Windows Shell.) — C:WindowsSystem32shsvcs.dll [640000] =>.Microsoft Corporation

    —\ Liste des exceptions du parefeu Windows (42) – 23s
    O87 – FAEL: “{0BF25D37-7A6B-4E41-A12B-62590D2F2C8F}” [In-None-P6-TRUE] .(…) — C:Program FilesCommon FilesmcafeeplatformMcSvcHostMcSvHost.exe (.not file.)
    O87 – FAEL: “{3984ECD5-0A07-4416-87DB-87548048FB6A}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)Spotifyspotify.exe (.not file.)
    O87 – FAEL: “{1928A080-1C0B-4035-9166-7F6B268C655C}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)Spotifyspotify.exe (.not file.)
    O87 – FAEL: “{9FA58926-2187-4829-860E-DAEB3250F9BB}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)SpotifyDataSpotifyWebHelper.exe (.not file.)
    O87 – FAEL: “{89A70AFD-9BAF-44B8-9EEC-F2A9CD567226}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)SpotifyDataSpotifyWebHelper.exe (.not file.)
    O87 – FAEL: “{6EA82B28-385F-4C4F-9E30-556B8F5F11DB}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{851DE818-3BFA-42DC-A6A3-DAA32F62D7E1}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{8001557A-C198-4A4E-8C5C-F0E2B106AF5F}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{7A65562C-642D-4BB6-824B-149812AD6E23}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{1C588F05-AC48-443E-A5E0-1EF2B099DD73}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{F0C61676-C046-4F12-A1C6-F0CFC7F8A629}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{7A1D00B0-ADB2-486E-BEA0-FC6A8347E08E}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{FDF840FD-78B7-4936-A37A-E719D39E5B98}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{E7253E85-8D9F-4F95-A966-89C9A03759CC}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{FEF61805-B742-4FAE-BD93-E10D1F734991}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{A94E36F6-E23B-4C9C-828A-EBD6D4EAE8D9}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{0E01D66D-147D-4BC6-A951-B9A8E20AC8E7}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{ADE3ECE9-3C35-4E56-A3BC-230114CA18A7}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{A97104B4-E174-4A1A-BE5E-A733A37B55E8}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{2652CDAA-4D9A-4DAB-9575-FEF730D340CF}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{AA85E6AB-5FB2-4091-B127-1536F1A82274}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{149D2256-7EDF-411F-97F3-5243EB7BBAAB}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)Battle.netBattle.net.exe (.not file.)
    O87 – FAEL: “{13DF1353-DA97-4650-96E4-771C49B2AA1B}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)Battle.netBattle.net.exe (.not file.)
    O87 – FAEL: “{83352746-EC39-40C4-9177-ADDAD0BC7529}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)HearthstoneHearthstone.exe (.not file.)
    O87 – FAEL: “{37DC2BF1-0A4D-4106-BB23-F66896DCF670}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)HearthstoneHearthstone.exe (.not file.)
    O87 – FAEL: “{BFF481A2-4204-4E70-94B3-E2E444B446C4}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{58EA6E7A-5B7F-42C6-99D6-C9C12586775C}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{F02896EE-7673-4D0E-8976-35EF61921F50}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{288CD372-C163-4426-8C34-84B78CFF0963}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{DFB70669-FECA-4EA0-AAD0-C52DB804C7A6}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{31518F1F-D94C-49BC-BE04-EF881F4854F7}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{77236DE8-5F12-458B-B962-E26928719721}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{FDAB51AD-68F8-4C75-90A4-64CE74E082FB}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{8E5F343B-5FE5-4D74-B9C8-D48A3EE19F8B}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{0BAFEE98-724D-4E90-8F9C-8499FE8BB289}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{243477C6-51D5-4A2F-BF52-AFB9162A2D44}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{D52BBE96-15F7-4DCB-BCE0-6C3FFCF5A89B}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{2DBDC986-8942-4D40-BF80-FCBC215B2233}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{3169519E-BCBA-4339-A0DE-EAEC3EB9383E}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaDMCDaemon.exe (.not file.)
    O87 – FAEL: “{0758AA3E-34F9-4840-959D-797416A9B206}” [In-None-P6-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{4169672F-3142-4C09-81B9-1CC0059C101C}” [In-None-P17-TRUE] .(…) — C:Program Files (x86)AcerabMediaWindowsUpnpMV.exe (.not file.)
    O87 – FAEL: “{AEF4AE1E-90EE-4F3B-A2C7-4F6BAFBE99A7}” [In-None-P17-TRUE] .(…) — C:UsersthomasAppDataLocalChromiumApplicationchrome.exe (.not file.)

    —\ Scan Additionnel (5) – 0s
    HKLMSOFTWAREMicrosoftWindowsCurrentVersionUninstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
    HKLMSOFTWAREWow6432NodeMicrosoftWindowsCurrentVersionUninstall{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect
    HKCUSOFTWAREPartyFrance =>.Superfluous.OnlineGames
    HKCUSOFTWAREundefined =>.Superfluous.Downloader
    C:WindowsPrefetchONESYSTEMCARE.EXE-2CCD2217.pf =>PUP.Optional.OneSystemCare

    —\ Récapitulatif des éléments trouvés sur votre station (5) – 0s
    http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.DNSUnlocker
    http://www.nicolascoolman.info/2016/04/22/heuristic-suspect/ =>Heuristic.Suspect
    http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.OnlineGames
    http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Downloader
    http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.OneSystemCare

    ~ End of the scan, 25618 items in 00h10mn17s (841)(0)

  • Anonymous
    Post count: 0

    Hello ,

    Tu as installé des adwares et des logiciels indésirables sur ton PC (Certainement à ton insu).
    Pour comprendre, je t’invite à lire ce sujet : https://www.sosvirus.net/comment-se-debarrasser-des-publicites-intempestives/

    • Désactive ton antivirus le temps du téléchargement et de l’utilisation.
    • Télécharge ZHPCleaner de Nicolas Coolman sur ton bureau.
    • Ferme ton navigateur
    • Fais un double clique sur l’icône pour le lancer
      Note: Clique droit sur l’icône puis Exécuter en tant qu’administrateur sous Windows Vista, Seven et Windows 8
    • Accepte “les conditions d’utilisation
    • Clique sur Nettoyer

    Note: Durant le scan, si l’outil te demande “Avez-vous installé ce proxy ?” et que tu n’en as pas installé, clique sur “Non” ou “Voulez-vous remplacer la page d’accueil ?, clique sur “Non

    • Copie et Colle le contenu du rapport qui apparaît dans ta prochaine réponse.

    #########

    • Télécharge MalwareBytes Anti-Malware
    • Procède à l’installation de celui çi Décocher “Activer l’essai gratuit de Malwarebytes Anti-Malware Premium”

    • Clic sur Examiner maintenant

    • Une fois l’examen terminé vérifie que toutes les détections sont bien cochées, puis clique sur [Supprimer la sélection]

    • Un redémarrage sera peut-être nécessaire, si oui laisse faire et relance ensuite Malwarebytes
    • Ouvre l’onglet “Historique” puis “Journaux de l’application”
    • Fais un double-clic sur le dernier Scan Log en date (celui du haut)

    • En bas clique sur [Exporter] -> sélectionne “Fichier texte (*.txt)”

    • Dans l’explorateur sélectionne le bureau, nomme-le mbam.txt, clique sur [Enregistrer]

    • Copie et Colle le contenu du rapport qui apparaît au redémarrage du PC.
  • You must be logged in to reply to this topic.