cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.1.5.5 Par Nicolas Coolman (2018/01/05)
~ Démarré par Marie (Administrator) (2018/01/05 23:10:22)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version:
~ Mode: Scanner
~ Rapport: C:\Users\Marie\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Marie\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ Démarrage du système: Normal (Normal boot)
Windows VISTA, 32-bit Service Pack 2 (Build 6002) =>.Microsoft Corporation

---\\ Navigateurs Internet (2) - 1s
~ MFIE: Mozilla Firefox 52.5.3 ESR (x86 fr)
~ MSIE: Internet Explorer v8.0.6001.19727

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows Operating System - Vista, OEM_COA_SLP channel
Windows ID Activation : OK
~ Windows Partial Key : 4TPHF
Windows License : OK
Windows Automatic Updates : OK
Windows Activation Technologies : KO

---\\ Logiciels de protection (2) - 1s
Avast Antivirus Gratuit v17.9.2322 (Protection)
Malwarebytes version 3.3.1.2183 v3.3.1.2183 (Protection)

---\\ Logiciels de protection et autres (Superflus) (1) - 2s
~ McAfee Security Scan Plus v3.11.266.3 (Superfluous)

---\\ Surveillance de Logiciels (2) - 2s
~ Adobe Flash Player 28 NPAPI (Surveillance)
~ Adobe Reader X (Surveillance)

---\\ Informations sur le système (6) - 0s
~ Operating System: x86 Family 15 Model 107 Stepping 2, AuthenticAMD
~ Operating System: 32-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 2881.288 MB (51% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 61 GB () free of 146 GB : OK =>.Disk Space

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: PC-DE-MARIE
~ User Name: Marie
~ Logged in as Administrator

---\\ Enumération des unités disques (2) - 0s
~ Drive C: has 61 GB free of 146 GB (System)
~ Drive D: has 82 GB free of 148 GB

---\\ Etat du Centre de Sécurité Windows (11) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] Load: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (24) - 0s
[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - 11/04/2009 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2926592] =>.Microsoft Corporation
[MD5.4B555106290BD117334E9A08761C035A] - 02/11/2006 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [44544] =>.Microsoft Corporation
[MD5.101BA3EA053480BB5D957EF37C06B5ED] - 21/01/2008 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [96768] =>.Microsoft Corporation
[MD5.1AD4A322E5B695B92126AAF96C8B0F23] - 16/12/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [916992] =>.Microsoft Corporation
[MD5.898E7C06A350D4A1A64A9EA264D55452] - 11/04/2009 - (.Microsoft Corporation - Application d'ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [314368] =>.Microsoft Corporation
[MD5.85E861D0B88DB2B54ACB0839654C09F7] - 02/03/2011 - (.Microsoft Corporation - DNS DLL de l'API Client.) -- C:\Windows\System32\dnsapi.dll [168448] =>.Microsoft Corporation
[MD5.95F5FF73B076576C41740F1A842B9B57] - 21/01/2008 - (.Microsoft Corporation - DLL client de l'API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.4A0978779958D8FE8F5849F452BCC812] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [273408] =>.Microsoft Corporation
[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - 11/04/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [19944] =>.Microsoft Windows®
[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - 21/01/2008 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [70144] =>.Microsoft Corporation
[MD5.6B4BFFB9BECD728097024276430DB314] - 11/04/2009 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [67072] =>.Microsoft Corporation
[MD5.4E428F992C64E061C9AF56CCD3F78DAE] - 08/09/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [79360] =>.Microsoft Corporation
[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - 11/04/2009 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [561152] =>.Microsoft Corporation
[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - 21/01/2008 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [54784] =>.Microsoft Corporation
[MD5.8793643A67B42CEC66490B2A0CF92D68] - 21/01/2008 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [100864] =>.Microsoft Corporation
[MD5.1B864548B2ACEC1C0BB29B615CC42978] - 09/01/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [107008] =>.Microsoft Corporation
[MD5.BF84E55A9B3AD3CBAB4AAE3BE043E579] - 10/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [185856] =>.Microsoft Corporation
[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - 03/03/2013 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1082232] =>.Microsoft Windows®
[MD5.0FA9B5055484649D63C303FE404E5F4D] - 02/11/2006 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [79360] =>.Microsoft Corporation
[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - 21/01/2008 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [76288] =>.Microsoft Corporation
[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - 21/01/2008 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [248832] =>.Microsoft Corporation
[MD5.7B75299A4D201D6A6533603D6914AB04] - 11/04/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [66560] =>.Microsoft Corporation
[MD5.EC565DFA3D9C45D8083B72DEC5B33710] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [72192] =>.Microsoft Corporation
[MD5.786DB5771F05EF300390399F626BF30A] - 21/08/2012 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [224640] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (9) - 1s
O23 - Service: ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc. - ArcSoft Connect Service.) - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe =>.ArcSoft, Inc.®
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
O23 - Service: Empowering Technology Service (ETService) . (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) - C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe =>.Acer Inc.
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 257.2.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) . (...) - C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (.not file.)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004 - RichVideo Module.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe =>.CyberLink®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Technologies

---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (12) - 14s
SR - Auto [18/03/2010] [ 113152] ArcSoft Connect Daemon (ACDaemon) . (.ArcSoft Inc..) - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe =>.ArcSoft, Inc.®
SR - Auto [13/12/2015] [ 82128] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated®
SS - Demand [29/12/2017] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated
SR - Demand [05/01/2018] [ 5906816] aswbIDSAgent (aswbIDSAgent) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\aswidsagent.exe =>.AVAST Software s.r.o.®
SR - Auto [05/01/2018] [ 301168] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.AVAST Software s.r.o.®
SR - Auto [11/06/2008] [ 24576] Empowering Technology Service (ETService) . (.Copyright © 2007.) - C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe =>.Acer Inc.
SR - Auto [01/11/2017] [ 4563920] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [02/12/2015] [ 235696] McAfee Security Scan Component Host Service (McComponentHostService) . (.McAfee, Inc..) - C:\Program Files\McAfee Security Scan\3.11.266\McCHSvc.exe =>.McAfee, Inc.®
SS - Demand [26/12/2017] [ 174032] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice_tmp.exe =>.Mozilla Corporation®
SR - Auto [07/06/2010] [ 129640] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe =>.NVIDIA Corporation®
SR - Auto [14/05/2007] [ 272024] Cyberlink RichVideo Service(CRVS) (RichVideo) . (.Copyright 2004.) - C:\Program Files\CyberLink\Shared Files\RichVideo.exe =>.CyberLink®
SS - Auto [05/04/2017] [ 317400] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe =>.Skype Technologies

---\\ Tâches planifiées en automatique (Registre) (25) - 3s
O38 - TASK: {033E3F1D-A833-4F49-B562-EEA72672289A}[\{388F5088-0398-477B-9CF5-EEF04DDB77BF}] - (...) -- I:\DirectX9\dxsetup.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {11B03E51-602D-4FB9-80FF-E704634E648E}[\{015A0A79-F005-4C80-AEFF-C5D6A15E45CF}] - (...) -- J:\Machinarium_Setup_EN.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {38FCD4A1-2766-40F3-96ED-A28E1007CD4C}[\RealUpgradeLogonTaskS-1-5-21-2582898930-521773702-2061492934-1002] - (.Alcatel Lucent - .) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {47EEC80C-75B5-430F-907A-0F6893CF4EBE}[\{D3E15D87-2F9E-4782-9564-73C50AE704AA}] - (...) -- D:\Marie\Downloads\fritivi_install.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {54DE9B04-4524-4CCB-8C22-6BAC39CB9FE8}[\RealUpgradeLogonTaskS-1-5-21-2582898930-521773702-2061492934-1000] - (.Alcatel Lucent - .) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {5916F864-469C-4391-8604-E4EA141A2699}[\Microsoft\Windows\Wireless\GatherWirelessInfo] - (...) -- C:\Windows\System32\gatherWirelessInfo.vbs [15181]
O38 - TASK: {6E95D53E-493E-48F1-8977-1F6C62149809}[\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656] =>.Adobe Systems Incorporated
O38 - TASK: {71E59953-B4E5-4D5B-B371-03DBB4973020}[\{EADF06E1-A298-465B-A3FF-713D7DFC4E22}] - (...) -- C:\Windows\League of Light - Dark Omens Collector's Edition\uninstall.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {723E7AA1-0CC4-4123-A802-46B45BAF2193}[\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2421816] =>.AVAST Software
O38 - TASK: {94D53FD3-7A81-4BE8-9A08-8B7CA40EE1AF}[\{2C58367E-0B8A-4DDF-9BE5-5A101EDECE8E}] - (...) -- C:\Users\Marie\AppData\Roaming\FissaSearch\FissaUninstaller.exe (.not file.) [0] (.Orphan.) =>PUP.Optional.OfferBox
O38 - TASK: {98C0F1FE-9479-4C25-AE04-E7717CF4C0F8}[\DropboxUpdateTaskUserS-1-5-21-2582898930-521773702-2061492934-1000UA] - (...) -- C:\Users\Marie\AppData\Local\Dropbox\Update\DropboxUpdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {9EAE2D36-B3B7-40C3-934A-F61172075C9D}[\{D66BC5E9-385E-4057-9512-974AE9A92217}] - (...) -- D:\Marie\jeux\Pahelika - Secret Legends v1.02 (by IronCode Software)\Pahelika - Secret Legends.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {9F3B91B4-033A-422E-8CE2-F9EBD602232C}[\SafeZone scheduled Autoupdate 1477578378] - (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [735704] =>.AVAST Software
O38 - TASK: {A5259C3E-4485-4A00-A8EE-5AC212BF005C}[\RealUpgradeScheduledTaskS-1-5-21-2582898930-521773702-2061492934-1002] - (.Alcatel Lucent - .) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {ACDD310F-57C1-44F1-B3DF-C2EB93C99D99}[\Microsoft\Windows\Wired\GatherWiredInfo] - (...) -- C:\Windows\System32\gatherWiredInfo.vbs [12198]
O38 - TASK: {B53F1950-E1E5-4BB5-8080-840BF01D8D22}[\Avast Software\Overseer] - (.AVAST Software - Avast Overseer.) -- C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1469456] =>.AVAST Software
O38 - TASK: {BB4D6266-CB78-4410-85EA-D1E7F66CE9DD}[\{26E873BF-42EF-4925-92E3-062E5CC43C8B}] - (...) -- D:\Vidéos - Films\sherlock_holmes_le_mystere_de_la_momie_demo_anglais.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {BBDE5902-C0BB-40C1-9F43-604C27A8EEA7}[\DropboxUpdateTaskUserS-1-5-21-2582898930-521773702-2061492934-1000Core] - (...) -- C:\Users\Marie\AppData\Local\Dropbox\Update\DropboxUpdate.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {C6A4D1F4-AF1D-4E1A-B663-735A29198091}[\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 28.0 r0.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [272384] =>.Adobe Systems Incorporated
O38 - TASK: {CEB5C057-89CA-43BB-B66F-D42A13A7CAEB}[\RealUpgradeScheduledTaskS-1-5-21-2582898930-521773702-2061492934-1000] - (.Alcatel Lucent - .) -- C:\Program Files\Real\RealUpgrade\RealUpgrade.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {D1ACC24B-09B3-408A-AD91-0E63577FF646}[\{22081FA7-76A5-491E-BAF4-DC7F980D7921}] - (.Acer Inc. - .) -- D:\Marie\jeux\Haunted Hills Fears from Chilhood\flashInstall.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {D331D9BA-6651-4B7E-8BA8-823EFC298C61}[\GU5SkipUAC] - (.Glarysoft Ltd - Glary Utilities 5.) -- C:\Program Files\Glary Utilities 5\Integrator.exe [897520] =>.Glarysoft Ltd
O38 - TASK: {D9BF2C80-E786-419D-9C97-6A61D6DAACFD}[\{7AB4C9BD-9342-442E-905F-6FCCD123B186}] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [27716568] =>.Skype Technologies S.A.
O38 - TASK: {DAE63036-11A2-442E-8F04-7DBCEB632A85}[\GlaryInitialize 5] - (.Glarysoft Ltd - Glary Utilities Initialize.) -- C:\Program Files\Glary Utilities 5\Initialize.exe [134648] =>.Glarysoft Ltd
O38 - TASK: {FEFAA8A5-1821-4FC1-9B6C-355A97A31607}[\SafeZone scheduled Autoupdate 1472661125] - (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe [735704] =>.AVAST Software

---\\ Applications lancées au démarrage du système (8) - 0s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - AvLaunch component.) -- C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.AVAST Software s.r.o.®
O4 - HKCU\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files\Glary Utilities 5\StartupManager.exe =>.Glarysoft LTD®
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Marie\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Centre d'accueil.) -- C:\Windows\System32\oobefldr.dll =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] . (.Microsoft Corporation - Centre d'accueil.) -- C:\Windows\System32\oobefldr.dll =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-2582898930-521773702-2061492934-1000\..\Run: [GUDelayStartup] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files\Glary Utilities 5\StartupManager.exe =>.Glarysoft LTD®
O4 - HKUS\S-1-5-21-2582898930-521773702-2061492934-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Marie\AppData\Roaming\Spotify\SpotifyWebHelper.exe =>.Spotify AB®

---\\ Processus lancés (19) - 2s
[MD5.22EF929DF12AF21965B0BF5558FEAA4A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 257.2.) -- C:\Windows\System32\nvvsvc.exe [129640] [PID.7264] =>.NVIDIA Corporation®
[MD5.22EF929DF12AF21965B0BF5558FEAA4A] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 257.2.) -- C:\Windows\System32\nvvsvc.exe [129640] [PID.7768] =>.NVIDIA Corporation®
[MD5.810213D59B8EF46A27B3BFC4A3431EDC] - (.AVAST Software - Avast Service.) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe [301168] [PID.7984] =>.AVAST Software s.r.o.®
[MD5.ADC420616C501B45D26C0FD3EF1E54E4] - (.ArcSoft Inc. - ArcSoft Connect Service.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152] [PID.1268] =>.ArcSoft, Inc.®
[MD5.F2CEEE9ABBCEF207ACB103215AC28BC2] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [82128] [PID.1380] =>.Adobe Systems, Incorporated®
[MD5.4D06D9A26227AC485305133916888DF1] - (.Copyright © 2007 - Acer Empowering Technology Framework Servic.) -- C:\Program Files\EMACHINES\eMachines Recovery Management\Service\ETService.exe [24576] [PID.1508] =>.Acer Inc.
[MD5.06A49B7BDC36CFBF97DD90804F833369] - (.Copyright 2004 - RichVideo Module.) -- C:\Program Files\CyberLink\Shared Files\RichVideo.exe [272024] [PID.2060] =>.CyberLink®
[MD5.8419248D3F16873230A82D55053445E5] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6144000] [PID.2308] =>.Realtek Semiconductor
[MD5.FB01D4AE207B9EFDBABFC55DC95C7E31] - (.Microsoft Corp. - Microsoft® Windows Live ID Service.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [1713536] [PID.2660] =>.Microsoft Corporation®
[MD5.5400677699FBBBDFF1CB48D05AF55EEC] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\Marie\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524848] [PID.2900] =>.Spotify AB®
[MD5.C649F293B8B047A2694F3C615D09BF17] - (.Microsoft Corp. - Microsoft® Windows Live ID Service Monitor.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE [193920] [PID.3004] =>.Microsoft Corporation®
[MD5.D5C121A4E02B9474DF2AE5FBCE99D19D] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4563920] [PID.3172] =>.Malwarebytes Corporation®
[MD5.F203B5836B4B425E735706B3A82A4B02] - (.AVAST Software - Avast Behavior Shield.) -- C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5906816] [PID.5192] =>.AVAST Software s.r.o.®
[MD5.7891EA436E353768BAA279317A597CA1] - (.AVAST Software - Avast Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [11080896] [PID.6476] =>.AVAST Software s.r.o.®
[MD5.7D758C9243F365E7AE9A4524790B2543] - (.Glarysoft Ltd - Glary Utilities 5.) -- C:\Program Files\Glary Utilities 5\Integrator.exe [897520] [PID.3368] =>.Glarysoft LTD®
[MD5.16A9281154E784285DCE7ADDF3CA1E1A] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3515856] [PID.2328] =>.Malwarebytes Corporation®
[MD5.740091512EE359102BE830CD480C1AB1] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [517072] [PID.6240] =>.Mozilla Corporation®
[MD5.740091512EE359102BE830CD480C1AB1] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [517072] [PID.7052] =>.Mozilla Corporation®
[MD5.A2027141D96AAA85B4B46D7014A6A3BA] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Marie\AppData\Roaming\ZHP\ZHPDiag3.exe [2961280] [PID.2608] =>.Nicolas Coolman

---\\ Google Chrome, Démarrage,Recherche,Extensions (16) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.fr =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://accounts.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://apis.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://d2c87l0yth4zbw.global.ssl.fastly.net
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.spotify.com
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc.
G2 - GCE: Preference [Marie][User Data\Default] [bddmkopdadodhbodbjkegieoeoccnpcg] Simple Adblock =>.applove.tech
G2 - GCE: Preference [Marie][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [Marie][User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf] http://www.google.com/ =>.Google Inc. {Hidden Chrome extensions}
G2 - GCE: Preference [Marie][User Data\Default] [gmlllbghnfkpflemihljekbapjopfjik] Star Page =>.Google Inc.
G2 - GCE: Preference [Marie][User Data\Default] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o
G2 - GCE: Preference [Marie][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [Marie][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 2s
P2 - EXT FILE: (.uBlock Origin - __MSG_popupTipPicker__".) -- C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\04djbdby.default-1514675340142\extensions\uBlock0@raymondhill.net.xpi =>.uBlock Origin
P2 - EXT FILE: (.Avast Online Security - Avast Browser Security and Web Reputat.) -- C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\04djbdby.default-1514675340142\extensions\wrc@avast.com.xpi =>.Avast Online Security
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\e10srollout@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Macromed\Flash\NPSWF32_28_0_0_126.dll =>.Adobe Systems Incorporated

---\\ Opera, Démarrage,Recherche,Plugins (1) - 0s
B2 - EXT: [Game BOX] C:\Users\Marie\AppData\Roaming\Opera Software\Opera Stable\Extensions\mibfbmhijjgpkmobcfdlelpccpeafoom

---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (9) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://mozilla.firefox
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com/ =>.Google Inc.
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs = about:newtab =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Explorer.) (8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer,Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

---\\ Etude du fichier hosts (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (15446)

---\\ Browser Helper Object de navigateur (BHO) (6) - 0s
O2 - BHO: (no name) - {11222041-111B-46E3-BD29-EFB2449479B1} (.Orphan.)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll =>.AVAST Software s.r.o.®
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} . (.Microsoft Corp. - Microsoft® Windows Live ID Login Helper.) -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll =>.Microsoft Corporation®
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} . (.Microsoft Corporation - Windows Live Messenger Companion Core.) -- C:\Program Files\Windows Live\Companion\companioncore.dll =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll =>.Oracle America, Inc.®

---\\ Internet Explorer, Barre d'outil (2) - 1s
O3 - Toolbar: 0xB1C218236549D4119B18009027A5CD4F - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} . (...) -- (.not file.)
O3 - Toolbar: 0x86989D756F0C9844BAB64A5F47C6C72F - [HKCU]{759D9886-0C6F-4498-BAB6-4A5F47C6C72F} . (...) -- (.not file.)

---\\ Raccourcis Global Startup (137) - 9s
O4 - GS\Desktop [Administrateur]: DarkTales_EAP_TheMasqueoftheRedDeath.lnk . (...) D:\Jeux\DarkTalesEdgarAllanPoesMasqueRedDeathCE\Dark Tales - Edgar Allan Poes The Masque of the Red Death Collectors Edition\DarkTales_EAP_TheMasqueoftheRedDeathCE.exe
O4 - GS\Desktop [Administrateur]: Disque C.lnk . (...) C:\
O4 - GS\Desktop [Administrateur]: Disque D.lnk . (...) D:\
O4 - GS\Desktop [Administrateur]: Games.lnk . (.Copyright (C)2006-2013 Big Fish Games, Inc. - Big Fish: Game Manager Application.) C:\Program Files\bfgclient\bfgclient.exe -u =>.Big Fish Games®
O4 - GS\Desktop [Administrateur]: Microsoft Office Word 2003.lnk . (...) C:\Windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe =>.Microsoft Corporation
O4 - GS\Desktop [Administrateur]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Démarrer Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: FreeMi UPnP Media Server (2).lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [Administrateur]: FreeMi UPnP Media Server.lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [Administrateur]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Quicklaunch [Administrateur]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Technologies S.A.
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [Administrateur]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Desktop [ASPNET]: DarkTales_EAP_TheMasqueoftheRedDeath.lnk . (...) D:\Jeux\DarkTalesEdgarAllanPoesMasqueRedDeathCE\Dark Tales - Edgar Allan Poes The Masque of the Red Death Collectors Edition\DarkTales_EAP_TheMasqueoftheRedDeathCE.exe
O4 - GS\Desktop [ASPNET]: Disque C.lnk . (...) C:\
O4 - GS\Desktop [ASPNET]: Disque D.lnk . (...) D:\
O4 - GS\Desktop [ASPNET]: Games.lnk . (.Copyright (C)2006-2013 Big Fish Games, Inc. - Big Fish: Game Manager Application.) C:\Program Files\bfgclient\bfgclient.exe -u =>.Big Fish Games®
O4 - GS\Desktop [ASPNET]: Microsoft Office Word 2003.lnk . (...) C:\Windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe =>.Microsoft Corporation
O4 - GS\Desktop [ASPNET]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [ASPNET]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [ASPNET]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [ASPNET]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [ASPNET]: Démarrer Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [ASPNET]: FreeMi UPnP Media Server (2).lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [ASPNET]: FreeMi UPnP Media Server.lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [ASPNET]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [ASPNET]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Quicklaunch [ASPNET]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\sendTo [ASPNET]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Technologies S.A.
O4 - GS\Programs [ASPNET]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [ASPNET]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [ASPNET]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Programs [ASPNET]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Desktop [charlan]: DarkTales_EAP_TheMasqueoftheRedDeath.lnk . (...) D:\Jeux\DarkTalesEdgarAllanPoesMasqueRedDeathCE\Dark Tales - Edgar Allan Poes The Masque of the Red Death Collectors Edition\DarkTales_EAP_TheMasqueoftheRedDeathCE.exe
O4 - GS\Desktop [charlan]: Disque C.lnk . (...) C:\
O4 - GS\Desktop [charlan]: Disque D.lnk . (...) D:\
O4 - GS\Desktop [charlan]: Games.lnk . (.Copyright (C)2006-2013 Big Fish Games, Inc. - Big Fish: Game Manager Application.) C:\Program Files\bfgclient\bfgclient.exe -u =>.Big Fish Games®
O4 - GS\Desktop [charlan]: Microsoft Office Word 2003.lnk . (...) C:\Windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe =>.Microsoft Corporation
O4 - GS\Desktop [charlan]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [charlan]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [charlan]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [charlan]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [charlan]: Démarrer Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [charlan]: FreeMi UPnP Media Server (2).lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [charlan]: FreeMi UPnP Media Server.lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [charlan]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [charlan]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Quicklaunch [charlan]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\sendTo [charlan]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Technologies S.A.
O4 - GS\Programs [charlan]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [charlan]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [charlan]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Programs [charlan]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Desktop [Marie]: DarkTales_EAP_TheMasqueoftheRedDeath.lnk . (...) D:\Jeux\DarkTalesEdgarAllanPoesMasqueRedDeathCE\Dark Tales - Edgar Allan Poes The Masque of the Red Death Collectors Edition\DarkTales_EAP_TheMasqueoftheRedDeathCE.exe
O4 - GS\Desktop [Marie]: Disque C.lnk . (...) C:\
O4 - GS\Desktop [Marie]: Disque D.lnk . (...) D:\
O4 - GS\Desktop [Marie]: Games.lnk . (.Copyright (C)2006-2013 Big Fish Games, Inc. - Big Fish: Game Manager Application.) C:\Program Files\bfgclient\bfgclient.exe -u =>.Big Fish Games®
O4 - GS\Desktop [Marie]: Microsoft Office Word 2003.lnk . (...) C:\Windows\Installer\{9011040C-6000-11D3-8CFE-0150048383C9}\wordicon.exe =>.Microsoft Corporation
O4 - GS\Desktop [Marie]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [Marie]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Desktop [Marie]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Desktop [Marie]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Marie\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Marie]: Démarrer Microsoft Office Outlook.lnk . (.Microsoft Corporation - Microsoft Office Outlook.) C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Marie]: FreeMi UPnP Media Server (2).lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [Marie]: FreeMi UPnP Media Server.lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\Quicklaunch [Marie]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\Quicklaunch [Marie]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Quicklaunch [Marie]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\sendTo [Marie]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files\Skype\Phone\Skype.exe /sendto: =>.Skype Technologies S.A.
O4 - GS\Programs [Marie]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Marie]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [Marie]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Programs [Marie]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\CommonDesktop [Public]: Avast Antivirus Gratuit.lnk . (.AVAST Software - Avast Antivirus.) C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.AVAST Software s.r.o.®
O4 - GS\CommonDesktop [Public]: Conseiller de mise à niveau vers Windows 7.lnk . (.Microsoft Corporation - Windows 7 Upgrade Advisor.) C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: FastStone Image Viewer.lnk . (.FastStone Soft - FastStone Image Viewer.) C:\Program Files\FastStone Image Viewer\FSViewer.exe =>.FastStone Soft
O4 - GS\CommonDesktop [Public]: FreeMi UPnP Media Server.lnk . (.Stéphane Mitermite - FreeMi UPnP Media Server.) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe =>.Stéphane Mitermite
O4 - GS\CommonDesktop [Public]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD®
O4 - GS\CommonDesktop [Public]: Google Earth.lnk . (.Google - Google Earth.) C:\Program Files\Google\Google Earth\client\googleearth.exe =>.Google
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\CommonDesktop [Public]: Microsoft LifeCam.lnk . (.Microsoft Corporation - LifeCam.exe.) C:\Program Files\Microsoft LifeCam\LifeCam.exe =>.Microsoft Corporation
O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Play Delicious- Emilys Christmas Carol Collectors Edition.lnk . (...) D:\Jeux\Delicious- Emilys Christmas Carol Collectors Edition\LaunchGame.bfg
O4 - GS\CommonDesktop [Public]: Play Mortimer Beckett and the Book of Gold Collectors Edition.lnk . (...) D:\Jeux\Mortimer Beckett and the Book of Gold Collectors Edition\LaunchGame.bfg
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\Windows\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify AB®
O4 - GS\Programs [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\System32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\System32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\System32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\System32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\System32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\System32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sidebar.lnk . (.Microsoft Corporation - Volet Windows.) C:\Program Files\Windows Sidebar\sidebar.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\System32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\control.exe /name Microsoft.WelcomeCenter =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Backup.lnk . (.Microsoft Corporation - Sauvegarde Microsoft® Windows.) C:\Windows\System32\sdclt.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\System32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\System32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\System32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: migwiz.lnk . (.Microsoft Corporation - Transfert de fichiers et paramètres Windows.) C:\Windows\System32\migwiz\migwiz.exe =>.Microsoft Windows®
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\System32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\System32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\System32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Reader X.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AA1000000001}\SC_Reader.ico =>.Adobe Inc.
O4 - GS\ProgramsCommon [Public]: Avast SafeZone Browser.lnk . (.Avast Software - Avast SafeZone Browser.) C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software s.r.o.®
O4 - GS\ProgramsCommon [Public]: Conseiller de mise à niveau vers Windows 7.lnk . (.Microsoft Corporation - Windows 7 Upgrade Advisor.) C:\Program Files\Microsoft Windows 7 Upgrade Advisor\WindowsUpgradeAdvisor.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Game Manager.lnk . (.Copyright (C)2006-2013 Big Fish Games, Inc. - Big Fish: Game Manager Application.) C:\Program Files\bfgclient\bfgclient.exe -u =>.Big Fish Games®
O4 - GS\ProgramsCommon [Public]: Glary Utilities 5.lnk . (.Glarysoft Ltd - Glary Utilities 5.) C:\Program Files\Glary Utilities 5\Integrator.exe =>.Glarysoft LTD®
O4 - GS\ProgramsCommon [Public]: Lanceur de tâches Microsoft Works.lnk . (.Microsoft® Corporation - Microsoft® Works.) C:\Program Files\Microsoft Works\MSWorks.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Visionneuse Microsoft Office PowerPoint 2007.lnk . (...) c:\Windows\Installer\{95120000-00AF-040C-0000-0000000FF1CE}\ppvwicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Calendar.lnk . (.Microsoft Corporation - Calendrier Windows.) C:\Program Files\Windows Calendar\WinCal.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Collaboration.lnk . (.Microsoft Corporation - Windows Meeting Space.) C:\Program Files\Windows Collaboration\WinCollab.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Contacts.lnk . (.Microsoft Corporation - Windows Contacts.) C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Defender.lnk . (.Microsoft Corporation - Windows Defender User Interface.) C:\Program Files\Windows Defender\MSASCui.exe =>.Microsoft Windows®
O4 - GS\ProgramsCommon [Public]: Windows Live Mail.lnk . (.Microsoft Corporation - Windows Live Mail.) C:\Program Files\Windows Live\Mail\wlmail.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Messenger.lnk . (.Microsoft Corporation - Windows Live Messenger.) C:\Program Files\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Movie Maker.lnk . (.Microsoft Corporation - Windows Live Movie Maker.) C:\Program Files\Windows Live\Photo Gallery\MovieMaker.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Live Photo Gallery.lnk . (.Microsoft Corporation - Windows Live Photo Gallery.) C:\Program Files\Windows Live\Photo Gallery\WLXPhotoGallery.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Windows Mail.lnk . (.Microsoft Corporation - Windows Mail.) C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Movie Maker.lnk . (.Microsoft Corporation - Windows Movie Maker.) C:\Program Files\Movie Maker\MOVIEMK.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Photo Gallery.lnk . (.Microsoft Corporation - Galerie de photos Windows.) C:\Program Files\Windows Photo Gallery\WindowsPhotoGallery.exe =>.Microsoft Corporation

---\\ Modification Domaine/Adresses DNS (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{E38947E4-A2A7-40BA-B57C-9BC41B63B78D}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress

---\\ Protocole additionnel (31) - 1s
O18 - Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-help - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft Corporation®
O18 - Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll =>.Microsoft Corporation®
O18 - Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} . (.Microsoft Corporation - Windows Live Messenger Protocol Handler Mod.) -- C:\Program Files\Windows Live\Messenger\msgrapp.dll =>.Microsoft Corporation®
O18 - Handler: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} . (.Microsoft Corporation - Microsoft Office XP Web Components.) -- C:\Program Files\Common Files\microsoft shared\Web Components\10\OWC10.DLL =>.Microsoft Corporation®
O18 - Handler: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} . (.Microsoft Corporation - Microsoft Office Web Components 2003.) -- C:\Program Files\Common Files\microsoft shared\Web Components\11\OWC11.DLL =>.Microsoft Corporation®
O18 - Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} . (.Microsoft Corporation - Windows Live Mail.) -- C:\Program Files\Windows Live\Mail\mailcomm.dll =>.Microsoft Corporation®
O18 - Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} . (.Microsoft Corporation - Windows Live Album Download Protocol Handle.) -- C:\Program Files\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll =>.Microsoft Corporation®
O18 - Filter: application/octet-stream - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ Logiciels installés (99) - 45s
O42 - Logiciel: Adobe Flash Player 28 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Flash Player 28 NPAPI - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player NPAPI =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Reader X (10.1.16) - Français - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-1036-7B44-AA1000000001} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-0804-1033-1959-001824166751} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Shockwave Player 12.3 - (.Adobe Systems, Inc..) [HKLM] -- Adobe Shockwave Player =>.Adobe Systems, Inc.
O42 - Logiciel: Agere Systems PCI-SV92EX Soft Modem - (.Agere Systems.) [HKLM] -- Agere Systems Soft Modem =>.Agere Systems
O42 - Logiciel: Avast Antivirus Gratuit - (.AVAST Software.) [HKLM] -- Avast Antivirus =>.AVAST Software s.r.o.®
O42 - Logiciel: Barn Yarn - (..) [HKLM] -- BFG-Barn Yarn
O42 - Logiciel: Big Fish: Game Manager - (.BigFich.) [HKLM] -- BFGC =>.BigFich
O42 - Logiciel: Canon IJ Scan Utility - (.Canon Inc..) [HKLM] -- Canon_IJ_Scan_Utility =>.Canon Inc.®
O42 - Logiciel: Canon MG2500 series MP Drivers - (.Canon Inc..) [HKLM] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG2500_series =>.Canon Inc.®
O42 - Logiciel: Canon MG2500 series On-screen Manual - (.Canon Inc..) [HKLM] -- Canon MG2500 series On-screen Manual =>.Canon Inc.®
O42 - Logiciel: Canon My Image Garden - (.Canon Inc..) [HKLM] -- Canon My Image Garden =>.Canon Inc.®
O42 - Logiciel: Canon My Image Garden Design Files - (.Canon Inc..) [HKLM] -- Canon My Image Garden Design Files =>.Canon Inc.®
O42 - Logiciel: Canon My Printer - (.Canon Inc..) [HKLM] -- CanonMyPrinter =>.Canon Inc.®
O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM] -- CanonQuickMenu =>.Canon Inc.®
O42 - Logiciel: Complément Messenger - (.Microsoft Corporation.) [HKLM] -- {6E5324C1-84FC-4F76-9A3A-C65E07F80EE6} =>.Microsoft Corporation
O42 - Logiciel: Conseiller de mise à niveau vers Windows 7 - (.Microsoft Corporation.) [HKLM] -- {9D10CB57-B085-44c3-B435-2D193BA153F0} =>.Microsoft Corporation
O42 - Logiciel: Cursed - (.Alawar Entertainment Inc..) [HKCU] -- Cursed =>.Alawar Entertainment Inc.
O42 - Logiciel: CyberLink DVD Suite - (.CyberLink Corp..) [HKLM] -- {1FBF6C24-C1FD-4101-A42B-0C564F9E8E79} =>.CyberLink Corp.
O42 - Logiciel: CyberLink LabelPrint - (.CyberLink Corp..) [HKLM] -- {C59C179C-668D-49A9-B6EA-0121CCFC1243} =>.CyberLink Corp.
O42 - Logiciel: CyberLink Power2Go - (.CyberLink Corp..) [HKLM] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink Corp.
O42 - Logiciel: D3DX10 - (.Microsoft.) [HKLM] -- {E09C4DB7-630C-4F06-A631-8EA7239923AF} =>.Microsoft
O42 - Logiciel: DAMN NFO Viewer 2.10.0031 RC3 - (.DAMN.) [HKLM] -- {DA5E6A2D-DEAA-4152-A43A-FDBDE29AA724} =>.DAMN
O42 - Logiciel: Dark Tales: Edgar Allan Poe's Morella Collector's Edition - (..) [HKLM] -- BFG-Dark Tales - Edgar Allan Poes Morella Collectors Edition
O42 - Logiciel: Delicious: Emily's Christmas Carol Collector's Edition - (..) [HKLM] -- BFG-Delicious- Emilys Christmas Carol Collectors Edition
O42 - Logiciel: DirectVobSub 2.40.4209 - (.MPC-HC Team.) [HKLM] -- vsfilter_is1 =>.MPC-HC Team
O42 - Logiciel: eMachines Recovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9} =>.Acer Incorporated®
O42 - Logiciel: Enregistrement utilisateur de Canon MG2500 series - (.‭Canon Inc..) [HKLM] -- Enregistrement utilisateur de Canon MG2500 series =>.Canon Inc.®
O42 - Logiciel: European Mystery: The Face of Envy Collector's Edition - (..) [HKLM] -- BFG-European Mystery - The Face of Envy Collectors Edition
O42 - Logiciel: European Mystery: Un Parfum de Mystère - (..) [HKLM] -- BFG-European Mystery - Un Parfum de Mystere
O42 - Logiciel: FastStone Image Viewer 6.4 - (.FastStone Soft.) [HKLM] -- FastStone Image Viewer =>.FastStone Soft
O42 - Logiciel: ffdshow v1.1.4399 [2012-03-22] - (.Open Source.) [HKLM] -- ffdshow_is1 =>.Open source
O42 - Logiciel: FreeMi UPnP Media Server - (.Stéphane Mitermite.) [HKLM] -- FreeMi UPnP Media Server =>.Stéphane Mitermite
O42 - Logiciel: Game BOX - (.Alawar.) [HKLM] -- Game BOX =>.Alawar
O42 - Logiciel: GearDrvs - (.GEAR Software.) [HKLM] -- {CB84F0F2-927B-458D-9DC5-87832E3DC653} =>.GEAR Software
O42 - Logiciel: Glary Utilities 5.90 - (.Glarysoft Ltd.) [HKLM] -- Glary Utilities 5 =>.Glarysoft LTD®
O42 - Logiciel: GoGear VIBE Device Manager - (.Philips.) [HKLM] -- {CC8E0363-B20C-4792-8A1C-8DF5E01B68A6} =>.Macrovision Corporation®
O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {F6430171-B86B-4639-839E-374913E7911D} =>.Google
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>.Google Inc.
O42 - Logiciel: Grim Facade: The Message Collector's Edition - (..) [HKLM] -- BFG-Grim Facade - The Message Collector's Edition
O42 - Logiciel: Java 8 Update 111 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180111F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 144 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180144F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 151 - (.Oracle Corporation.) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F32180151F0} =>.Oracle Corporation
O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation
O42 - Logiciel: JavaFX 2.1.1 - (.Oracle Corporation.) [HKLM] -- {1111706F-666A-4037-7777-211328764D10} =>.Oracle Corporation
O42 - Logiciel: Junk Mail filter update - (.Microsoft Corporation.) [HKLM] -- {1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4} =>.Microsoft Corporation
O42 - Logiciel: Lagarith Lossless Codec (1.3.27) - (.Lagarith.) [HKLM] -- {F59AC46C-10C3-4023-882C-4212A92283B3}_is1
O42 - Logiciel: Malwarebytes version 3.3.1.2183 - (.Malwarebytes.) [HKLM] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: McAfee Security Scan Plus - (.McAfee, Inc..) [HKLM] -- McAfee Security Scan =>.McAfee, Inc.®
O42 - Logiciel: Media Converter for Philips - (.ArcSoft.) [HKLM] -- {E623BB3F-F7ED-4148-BEB5-A0D1DB28B4DE} =>.ArcSoft, Inc.®
O42 - Logiciel: Mesh Runtime - (.Microsoft Corporation.) [HKLM] -- {8C6D6116-B724-4810-8F2D-D047E6B7D68E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Application Error Reporting - (.Microsoft Corporation.) [HKLM] -- {95120000-00B9-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Camera Codec Pack - (.Microsoft Corporation.) [HKLM] -- {CF821405-823B-4B7A-B59E-8E15C90FC5DF} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Corporation - (.Microsoft Corporation.) [HKLM] -- {B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800} =>.Microsoft Corporation
O42 - Logiciel: Microsoft LifeCam - (.Microsoft Corporation.) [HKLM] -- {BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {3B160861-7250-451E-B5EE-8B92BF30A710} =>.Microsoft Corporation
O42 - Logiciel: Mises à jour NVIDIA 1.10.8 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: Mortimer Beckett and the Book of Gold Collector's Edition - (..) [HKLM] -- BFG-Mortimer Beckett and the Book of Gold Collectors Edition
O42 - Logiciel: Mozilla Firefox 52.5.3 ESR (x86 fr) - (.Mozilla.) [HKLM] -- Mozilla Firefox 52.5.3 ESR (x86 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSVC80_x86 - (.Nokia.) [HKLM] -- {212748BB-0DA5-46DE-82A1-403736DC9F27} =>.Nokia
O42 - Logiciel: MSVC80_x86_v2 - (.Nokia.) [HKLM] -- {6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6} =>.Nokia
O42 - Logiciel: MSVCRT - (.Microsoft.) [HKLM] -- {8DD46C6A-0056-4FEC-B70A-28BB16A1F11F} =>.Microsoft
O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71} =>.Microsoft Corporation
O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC} =>.Microsoft Corporation
O42 - Logiciel: Mystery Case Files: Le Voile Noir Édition Collector - (..) [HKLM] -- BFG-Mystery Case Files - Le Voile Noir Edition Collector
O42 - Logiciel: NVIDIA Display Control Panel - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Display Control Panel =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA Drivers - (.NVIDIA Corporation.) [HKLM] -- NVIDIA Drivers =>.NVIDIA Corporation®
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM] -- {64467D47-FFE4-4FBC-ABBA-A0DB829A17EB} =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Pilote graphique 307.83 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Components - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update =>.NVIDIA Corporation
O42 - Logiciel: Off The Record: Liberty Stone Edition Collector - (..) [HKLM] -- BFG-Off The Record - Liberty Stone Edition Collector
O42 - Logiciel: OpenAL - (.Open Audio Library.) [HKLM] -- OpenAL =>.Creative Labs Inc®
O42 - Logiciel: OpenSource Flash Video Splitter 1.0.0.5 - (.Inmatrix.) [HKLM] -- OpenSource Flash Video Splitter
O42 - Logiciel: Panneau de configuration NVIDIA 307.83 - (.NVIDIA Corporation.) [HKLM] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: PDFill PDF Editor with FREE Writer and FREE Tools - (.PlotSoft LLC.) [HKLM] -- {D1399216-81B2-457C-A0F7-73B9A2EF6902} =>.PlotSoft LLC
O42 - Logiciel: Phantasmat: Curse of the Mist Collector's Edition - (.Curse Inc.) [HKLM] -- BFG-Phantasmat - Curse of the Mist Collector's Edition =>.Curse Inc
O42 - Logiciel: Phenomenon: Outcome - (..) [HKLM] -- BFG-Phenomenon - Outcome
O42 - Logiciel: PowerDVD - (.CyberLink Corporation.) [HKLM] -- {6811CAA0-BF12-11D4-9EA1-0050BAE317E1} =>.CyberLink Corporation
O42 - Logiciel: ProtectDisc Driver, Version 11 - (.ProtectDisc Software GmbH.) [HKLM] -- ProtectDisc Driver 11 =>.ProtectDisc Software GmbH
O42 - Logiciel: PuppetShow: Bloody Rosie - (..) [HKLM] -- BFG-PuppetShow - Bloody Rosie
O42 - Logiciel: PuppetShow: Poetic Justice Collector's Edition - (..) [HKLM] -- BFG-PuppetShow - Poetic Justice Collectors Edition
O42 - Logiciel: PVSonyDll - (.NVIDIA Corporation.) [HKLM] -- {3D3E663D-4E7E-4577-A560-7ECDDD45548A} =>.NVIDIA Corporation
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Macrovision Corporation®
O42 - Logiciel: Rhianna Ford & La Lettre de Léonard de Vinci - (..) [HKLM] -- BFG-Rhianna Ford - La Lettre de Leonard de Vinci
O42 - Logiciel: SafeZone Stable 1.48.2066.120 - (.Avast Software.) [HKLM] -- SafeZone 1.48.2066.120 =>.AVAST Software s.r.o.®
O42 - Logiciel: Segoe UI - (.Microsoft Corp.) [HKLM] -- {5DD4FCBD-A3C1-4155-9E17-4161C70AAABA} =>.Microsoft Corp
O42 - Logiciel: Skype™ 7.36 - (.Skype Technologies S.A..) [HKLM] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU] -- Spotify =>.Spotify AB®
O42 - Logiciel: swMSM - (.Adobe Systems, Inc.) [HKLM] -- {612C34C7-5E90-47D8-9B5C-0F717DD82726} =>.Adobe Systems, Inc
O42 - Logiciel: VC80CRTRedist - 8.0.50727.6195 - (.DivX, Inc.) [HKLM] -- {933B4015-4618-4716-A828-5289FC03165F} =>.DivX, Inc
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation
O42 - Logiciel: WinRAR 5.50 (32-bit) - (.win.rar GmbH.) [HKLM] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Witches' Legacy: Rise of the Ancient Collector's Edition - (..) [HKLM] -- BFG-Witches Legacy - Rise of the Ancient Collectors Edition
O42 - Logiciel: Xvid Video Codec - (.Xvid Team.) [HKLM] -- Xvid Video Codec 1.3.2 =>.Xvid Team

---\\ HKCU & HKLM Software Keys (262) - 45s
HKLM\SOFTWARE\3Planesoft =>.3Planesoft
HKLM\SOFTWARE\Acer =>.Acer
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Agere =>.Agere Systems
HKLM\SOFTWARE\AlawarElements
HKLM\SOFTWARE\Anti-Malware
HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\ArcSoft =>.ArcSoft
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\AVS4YOU =>.AVS4YOU
HKLM\SOFTWARE\Big Fish Games =>.Big Fish Games
HKLM\SOFTWARE\BigFish
HKLM\SOFTWARE\Boonty =>.Boonty
HKLM\SOFTWARE\Canon =>.Canon
HKLM\SOFTWARE\Canon_Inc_IC =>.Canon Inc.
HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\DAMN =>.DAMN
HKLM\SOFTWARE\Digital River =>.Digital River Entreprise
HKLM\SOFTWARE\Disc Soft =>.Disc Soft
HKLM\SOFTWARE\DivX =>.DivX Inc.
HKLM\SOFTWARE\DivXNetworks =>.DivXNetworks
HKLM\SOFTWARE\Dolby =>.Dolby
HKLM\SOFTWARE\Dropbox =>.Dropbox
HKLM\SOFTWARE\DT Soft =>.DT Soft Ltd
HKLM\SOFTWARE\DTP =>.DTP
HKLM\SOFTWARE\DTS =>.Creative Technology
HKLM\SOFTWARE\ESTsoft =>.ESTsoft
HKLM\SOFTWARE\FastStone Image Viewer =>.FastStone Soft
HKLM\SOFTWARE\Gateway =>.Gateway
HKLM\SOFTWARE\GEAR Software =>.GEAR Software
HKLM\SOFTWARE\GlarySoft =>.Glarysoft
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\GOG.com =>.GOG.com
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript
HKLM\SOFTWARE\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\InstallShield =>.InstallShield
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Knowles =>.Knowles Electronics
HKLM\SOFTWARE\Lake =>.Lake Sofware
HKLM\SOFTWARE\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Malwarebytes Anti-Rootkit =>.Malwarebytes
HKLM\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Malwarebytes' Anti-Malware (Trial) =>.Malwarebytes
HKLM\SOFTWARE\marco6
HKLM\SOFTWARE\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\Micro Application =>.Micro Application
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\mypdfconverter
HKLM\SOFTWARE\Nokia =>.Nokia
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OemSetup =>.Microsoft Corporation
HKLM\SOFTWARE\Oracle =>.Oracle
HKLM\SOFTWARE\oxxogames =>.Intenium GmbH
HKLM\SOFTWARE\Pendulo Studios =>.Pendulo Studios
HKLM\SOFTWARE\Philips =>.Philips
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\PlotSoft =>.PlotSoft
HKLM\SOFTWARE\RealNetworks =>.RealNetworks
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\ReflexiveArcade =>.Games Software
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Revolution
HKLM\SOFTWARE\S3R521
HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKLM\SOFTWARE\SG Interactive =>.SG Interactive
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\SMPlayer
HKLM\SOFTWARE\Software =>.Unknown
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\Symantec =>.Symantec
HKLM\SOFTWARE\SymDebug =>.Symantec Corporation
HKLM\SOFTWARE\VideoLAN =>.VideoLAN
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WarlockStudio =>.Warlock Studio
HKLM\SOFTWARE\WholeSecurity =>.WholeSecurity Inc
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Xvid Team =>.Xvid Team
HKLM\SOFTWARE\Yahoo =>.Yahoo! Inc.
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\iWinArcade =>Adware.iWinArcade
HKCU\SOFTWARE\AcerUtil =>.Acer Inc.
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AdoreGames
HKCU\SOFTWARE\Alawar =>.Alawar
HKCU\SOFTWARE\Alawar111
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\ArberthStudios
HKCU\SOFTWARE\ArcSoft =>.ArcSoft
HKCU\SOFTWARE\ASProtect =>.ASPack Software
HKCU\SOFTWARE\Astar Games
HKCU\SOFTWARE\Audacity =>.Audacity
HKCU\SOFTWARE\AV Technologies
HKCU\SOFTWARE\AVAST Software =>.AVAST Software
HKCU\SOFTWARE\AVES Games
HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU
HKCU\SOFTWARE\BD Studio Games =>.Pinnacle Systems, Inc.
HKCU\SOFTWARE\Big Fish Games =>.Big Fish Games
HKCU\SOFTWARE\Big Fish Games, Inc
HKCU\SOFTWARE\Big Fish Games, Inc.
HKCU\SOFTWARE\Big Top Games
HKCU\SOFTWARE\BigFix =>.BigFix Inc
HKCU\SOFTWARE\Binary Noise =>.Binary Noise
HKCU\SOFTWARE\Bloobuzz
HKCU\SOFTWARE\Blue Tear
HKCU\SOFTWARE\Boolat Games
HKCU\SOFTWARE\Boonty =>.Boonty
HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited
HKCU\SOFTWARE\Canon =>.Canon
HKCU\SOFTWARE\CanonBJ =>.Canon Inc.
HKCU\SOFTWARE\CatsEyeGames
HKCU\SOFTWARE\CDDB =>.Cddb Software
HKCU\SOFTWARE\Chimera Entertainment GmbH
HKCU\SOFTWARE\CITY_INTERACTIVE
HKCU\SOFTWARE\CTPW Data
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\DAMN =>.DAMN
HKCU\SOFTWARE\Darkwave Games
HKCU\SOFTWARE\DEAD:CODE
HKCU\SOFTWARE\Detective Stories: Hollywood
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\DivXNetworks =>.DivXNetworks
HKCU\SOFTWARE\DQ Team
HKCU\SOFTWARE\Dropbox =>.Dropbox
HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKCU\SOFTWARE\dskMetrics
HKCU\SOFTWARE\DSP-worx =>.Microsoft Corporation
HKCU\SOFTWARE\DSS =>.DSS Software
HKCU\SOFTWARE\DT Soft =>.DT Soft Ltd
HKCU\SOFTWARE\EA Games =>.EA Games
HKCU\SOFTWARE\EasyBits =>.EasyBits
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\EKG
HKCU\SOFTWARE\ERS Game Studios
HKCU\SOFTWARE\ESTsoft =>.ESTsoft
HKCU\SOFTWARE\Factory Katz Games
HKCU\SOFTWARE\Far Mills
HKCU\SOFTWARE\FarMills
HKCU\SOFTWARE\Fineway Studios
HKCU\SOFTWARE\Friendly Cactus
HKCU\SOFTWARE\FriendlyCactus
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GameHouse =>.GameHouse
HKCU\SOFTWARE\Gelios Software
HKCU\SOFTWARE\GlarySoft =>.Glarysoft
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\GOG
HKCU\SOFTWARE\Gogii
HKCU\SOFTWARE\Gogii Games
HKCU\SOFTWARE\Good games
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Guillaume Lacasa =>.Guillaume Lacasa
HKCU\SOFTWARE\HakaTeam
HKCU\SOFTWARE\HipSoft =>.HipSoft Games
HKCU\SOFTWARE\HogGame
HKCU\SOFTWARE\HookNetwork =>.Hook Network
HKCU\SOFTWARE\IcarusGames
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Imagination Technologies =>.Imagination Technologies
HKCU\SOFTWARE\IncrediMail =>.IncrediMail
HKCU\SOFTWARE\IndeePop Games
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Intenium
HKCU\SOFTWARE\IronCode
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\JEDI-VCL =>.JEDI Project
HKCU\SOFTWARE\JetDogs Studios
HKCU\SOFTWARE\JetFunDo
HKCU\SOFTWARE\JollyBear =>.JollyBear Games Inc
HKCU\SOFTWARE\JoyBits
HKCU\SOFTWARE\Komar Games
HKCU\SOFTWARE\Lake =>.Lake Sofware
HKCU\SOFTWARE\Lavasoft =>.Lavasoft
HKCU\SOFTWARE\LazyTurtleGames
HKCU\SOFTWARE\LdShih
HKCU\SOFTWARE\Licenses =>.Microsoft Corporation
HKCU\SOFTWARE\Logris
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Macrovision =>.Macrovision
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKCU\SOFTWARE\Margrave 2
HKCU\SOFTWARE\MDNAGames
HKCU\SOFTWARE\Meridian93
HKCU\SOFTWARE\Micro Application =>.Micro Application
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\N Tri studio
HKCU\SOFTWARE\N-Tri Studio
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nobilis =>.Nobilis
HKCU\SOFTWARE\Nokia =>.Nokia
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\O2D
HKCU\SOFTWARE\Oberon
HKCU\SOFTWARE\Oberon Media =>.Oberon Media
HKCU\SOFTWARE\OceanMediaGames
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opalium =>.Opalium
HKCU\SOFTWARE\Paprikari
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\PlotSoft =>.PlotSoft
HKCU\SOFTWARE\PopCap =>.Popcap Games
HKCU\SOFTWARE\Protect Software GmbH =>.Protect Software GmbH
HKCU\SOFTWARE\PySoft
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\QuanticLab
HKCU\SOFTWARE\RealNetworks =>.RealNetworks
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\Restricted
HKCU\SOFTWARE\Royal Philips =>.Royal Philips
HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited
HKCU\SOFTWARE\Screentime Media
HKCU\SOFTWARE\SDPGames =>.SDP Games
HKCU\SOFTWARE\Shaman Games
HKCU\SOFTWARE\Silverback Games
HKCU\SOFTWARE\Silverback Productions
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\Sleepwalker Games
HKCU\SOFTWARE\Smoking Car
HKCU\SOFTWARE\Software =>.Unknown
HKCU\SOFTWARE\SpecialBit Games
HKCU\SOFTWARE\Spotify =>.Spotify
HKCU\SOFTWARE\Symantec =>.Symantec
HKCU\SOFTWARE\Test3D
HKCU\SOFTWARE\The Adventure Company
HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks
HKCU\SOFTWARE\thief
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\URSE Games
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\WarlockStudio =>.Warlock Studio
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Yahoo =>.Yahoo! Inc.
HKCU\SOFTWARE\z2h
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\Zylom =>.Zylom
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow\Software\Canon =>.Canon
HKCU\SOFTWARE\AppDataLow\Software\Friendly Cactus
HKCU\SOFTWARE\AppDataLow\Software\IteraLabs
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\AppDataLow\Software\Just Funny Games
HKCU\SOFTWARE\AppDataLow\Software\Unity =>.Unity

---\\ Contenu des dossiers Programmes (480) - 41s
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Active WebCam
O43 - CFD: 20/07/2011 - [] D -- C:\Program Files\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 21/07/2011 - [] D -- C:\Program Files\Alwil Software =>.ALWIL Software®
O43 - CFD: 29/12/2009 - [] D -- C:\Program Files\Apowersoft =>.Apowersoft
O43 - CFD: 27/10/2016 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.®
O43 - CFD: 27/08/2016 - [] D -- C:\Program Files\bfgclient =>.Big Fish Games®
O43 - CFD: 31/05/2009 - [] D -- C:\Program Files\BigFix
O43 - CFD: 11/05/2017 - [] D -- C:\Program Files\Canon =>.Canon Inc.®
O43 - CFD: 02/09/2014 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc.
O43 - CFD: 05/01/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 10/10/2007 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation
O43 - CFD: 21/06/2012 - [] D -- C:\Program Files\DAMN NFO Viewer =>.Damn
O43 - CFD: 29/10/2009 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [] D -- C:\Program Files\DirectVobSub =>.Gabest Software
O43 - CFD: 29/05/2009 - [] D -- C:\Program Files\EMACHINES =>.eMachines
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files\FastStone Image Viewer =>.FastStone Soft
O43 - CFD: 11/09/2013 - [] D -- C:\Program Files\ffdshow =>.Open Source
O43 - CFD: 25/07/2015 - [] D -- C:\Program Files\FreeMi UPnP Media Server =>.Stéphane Mitermite
O43 - CFD: 23/08/2017 - [] D -- C:\Program Files\Game BOX
O43 - CFD: 05/01/2018 - [] D -- C:\Program Files\Glary Utilities 5 =>.GlarySoft
O43 - CFD: 11/05/2017 - [] D -- C:\Program Files\Google =>.Google
O43 - CFD: 02/08/2012 - [] D -- C:\Program Files\GPLGS =>.Ghostscript Team
O43 - CFD: 10/01/2017 - [] HD -- C:\Program Files\InstallShield Installation Information =>.InstallShield
O43 - CFD: 14/01/2016 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 29/12/2017 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 05/01/2018 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 22/12/2016 - [] D -- C:\Program Files\McAfee Security Scan =>.McAfee
O43 - CFD: 18/08/2016 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 27/02/2011 - [] D -- C:\Program Files\Microsoft LifeCam =>.Microsoft Corporation
O43 - CFD: 15/01/2012 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 15/12/2008 - [] D -- C:\Program Files\Microsoft Office Suite Activation Assistant =>.Microsoft Corporation
O43 - CFD: 21/08/2017 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 20/09/2009 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 24/06/2009 - [] D -- C:\Program Files\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 30/12/2017 - [] D -- C:\Program Files\Microsoft Windows 7 Upgrade Advisor =>.Microsoft Corporation
O43 - CFD: 11/10/2012 - [] D -- C:\Program Files\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 24/06/2010 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 12/08/2010 - [] D -- C:\Program Files\Movie Maker =>.Microsoft Corporation
O43 - CFD: 05/01/2018 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 29/12/2017 - [] D -- C:\Program Files\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 07/12/2011 - [] D -- C:\Program Files\OpenAL =>.Open Audio Library
O43 - CFD: 11/09/2013 - [] D -- C:\Program Files\OpenSource Flash Video Splitter
O43 - CFD: 13/08/2015 - [] D -- C:\Program Files\PlotSoft =>.PlotSoft LLC®
O43 - CFD: 12/02/2014 - [] D -- C:\Program Files\ProtectDisc Driver Installer
O43 - CFD: 27/10/2016 - [] D -- C:\Program Files\Real =>.RealNetworks Inc.
O43 - CFD: 20/08/2016 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 14/05/2010 - [] D -- C:\Program Files\ReflexiveArcade
O43 - CFD: 10/05/2017 - [] RD -- C:\Program Files\Skype =>.Skype
O43 - CFD: 19/01/2013 - [] D -- C:\Program Files\SpeedFan =>.Almico Software
O43 - CFD: 20/08/2016 - [0] HD -- C:\Program Files\Temp =>.Microsoft Corporation
O43 - CFD: 16/04/2011 - [] D -- C:\Program Files\UltimateZip
O43 - CFD: 05/04/2012 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 26/11/2017 - [] RD -- C:\Program Files\Videos
O43 - CFD: 06/10/2009 - [] D -- C:\Program Files\Windows Calendar =>.Microsoft Corporation
O43 - CFD: 11/02/2016 - [] D -- C:\Program Files\Windows Collaboration =>.Microsoft Corporation
O43 - CFD: 06/10/2009 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/09/2011 - [] D -- C:\Program Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 12/03/2016 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/06/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 31/05/2009 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 06/10/2009 - [] D -- C:\Program Files\Windows Photo Gallery =>.Microsoft Corporation
O43 - CFD: 18/11/2009 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 11/02/2017 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 11/09/2013 - [] D -- C:\Program Files\Xvid =>.XviD
O43 - CFD: 17/10/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 18/07/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 29/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft =>.Apowersoft
O43 - CFD: 01/04/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Connect =>.ArcSoft
O43 - CFD: 27/10/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software
O43 - CFD: 29/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Barn Yarn
O43 - CFD: 02/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG2500 series Manual =>.Canon Inc.
O43 - CFD: 02/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities =>.Canon Inc.
O43 - CFD: 10/10/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite =>.CyberLink Corporation
O43 - CFD: 18/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dark Tales - Edgar Allan Poes Morella Collectors Edition
O43 - CFD: 25/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Delicious- Emilys Christmas Carol Collectors Edition
O43 - CFD: 11/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectVobSub =>.Gabest Software
O43 - CFD: 10/10/2007 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines =>.eMachines
O43 - CFD: 02/09/2014 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Enregistrement utilisateur de Canon MG2500 series =>.Canon Inc.
O43 - CFD: 16/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\European Mystery - The Face of Envy Collectors Edition
O43 - CFD: 11/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\European Mystery - Un Parfum de Mystere
O43 - CFD: 21/01/2008 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades =>.Legitimate
O43 - CFD: 17/09/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Image Viewer =>.FastStone Soft
O43 - CFD: 17/08/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMi UPnP Media Server =>.Stéphane Mitermite
O43 - CFD: 04/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 05/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 =>.GlarySoft
O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth
O43 - CFD: 29/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grim Facade - The Message Collector's Edition
O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter =>.Mike Matsnev
O43 - CFD: 29/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 02/11/2006 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 05/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 27/02/2011 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam =>.Microsoft Corporation
O43 - CFD: 11/05/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 21/08/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 11/10/2012 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mortimer Beckett and the Book of Gold Collectors Edition
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPDFConverter
O43 - CFD: 09/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Le Voile Noir Edition Collector
O43 - CFD: 23/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Off The Record - Liberty Stone Edition Collector
O43 - CFD: 13/08/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFill =>.PlotSoft L.L.C.
O43 - CFD: 29/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Phantasmat - Curse of the Mist Collector's Edition
O43 - CFD: 29/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Phenomenon - Outcome
O43 - CFD: 28/12/2009 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Philips Digital Audio Player =>.Philips
O43 - CFD: 18/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuppetShow - Bloody Rosie
O43 - CFD: 28/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuppetShow - Poetic Justice
O43 - CFD: 20/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuppetShow - Poetic Justice Collectors Edition
O43 - CFD: 09/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rhianna Ford - La Lettre de Leonard de Vinci
O43 - CFD: 15/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SMPlayer =>.Ricardo Villalba
O43 - CFD: 26/08/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 21/08/2016 - [0] HD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled =>.Microsoft Corporation
O43 - CFD: 09/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 12/09/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live =>.Microsoft Corporation
O43 - CFD: 18/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Witches Legacy - Rise of the Ancient Collectors Edition
O43 - CFD: 11/09/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid =>.XviD
O43 - CFD: 13/01/2014 - [] D -- C:\ProgramData\3Planesoft =>.3Planesoft
O43 - CFD: 07/08/2012 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 30/04/2017 - [] D -- C:\ProgramData\Alawar Stargaze =>.Alawar Entertainment
O43 - CFD: 26/11/2017 - [] D -- C:\ProgramData\AlawarWrapper =>.Alawar Entertainment
O43 - CFD: 20/07/2011 - [] D -- C:\ProgramData\Alwil Software =>.ALWIL Software
O43 - CFD: 11/08/2012 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 11/04/2017 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 25/12/2017 - [] D -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 09/08/2013 - [] HD -- C:\ProgramData\ArcSoft =>.ArcSoft
O43 - CFD: 17/04/2010 - [] D -- C:\ProgramData\Astar Games
O43 - CFD: 08/10/2017 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 27/08/2016 - [] D -- C:\ProgramData\Big Fish =>.Big Fish
O43 - CFD: 13/04/2014 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc.
O43 - CFD: 07/10/2009 - [] D -- C:\ProgramData\BOONTY =>.Boonty
O43 - CFD: 02/09/2014 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc.
O43 - CFD: 02/09/2014 - [] HD -- C:\ProgramData\CanonIJEGV =>.Canon Inc.
O43 - CFD: 25/09/2014 - [] HD -- C:\ProgramData\CanonIJMIG =>.Canon Inc.
O43 - CFD: 20/09/2014 - [] HD -- C:\ProgramData\CanonIJMyPrinter =>.Canon Inc.
O43 - CFD: 02/09/2014 - [] HD -- C:\ProgramData\CanonIJQuickMenu =>.Canon Inc.
O43 - CFD: 02/09/2014 - [] HD -- C:\ProgramData\CanonIJScan =>.Canon Inc.
O43 - CFD: 02/09/2014 - [] D -- C:\ProgramData\CanonIJWSpt =>.Canon Inc.
O43 - CFD: 26/07/2017 - [] D -- C:\ProgramData\Cateia Games =>.Cateia Games
O43 - CFD: 24/12/2010 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 15/09/2017 - [] D -- C:\ProgramData\DAEMON Tools iSCSI Target
O43 - CFD: 14/02/2012 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 27/10/2016 - [] D -- C:\ProgramData\DivX =>.DivX
O43 - CFD: 30/03/2014 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 16/06/2015 - [] D -- C:\ProgramData\Dropbox =>.Dropbox
O43 - CFD: 29/12/2014 - [] D -- C:\ProgramData\GameHouse =>.GameHouse
O43 - CFD: 17/01/2013 - [] D -- C:\ProgramData\GamePsysch
O43 - CFD: 06/09/2016 - [] D -- C:\ProgramData\GlarySoft =>.GlarySoft
O43 - CFD: 09/12/2017 - [] D -- C:\ProgramData\Green Clover Games =>.Green Clover Games
O43 - CFD: 23/09/2009 - [] D -- C:\ProgramData\HipSoft =>.HipSoft Games
O43 - CFD: 05/01/2010 - [] D -- C:\ProgramData\IM =>.IncrediMail Ltd
O43 - CFD: 28/12/2009 - [] D -- C:\ProgramData\Installations =>.Unknown
O43 - CFD: 08/06/2009 - [] D -- C:\ProgramData\InstallShield =>.InstallShield
O43 - CFD: 14/04/2011 - [] D -- C:\ProgramData\Intenium =>.Intenium GmbH
O43 - CFD: 10/05/2017 - [] D -- C:\ProgramData\JollyBear
O43 - CFD: 05/01/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 16/04/2016 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 22/12/2016 - [] D -- C:\ProgramData\McAfee Security Scan =>.McAfee
O43 - CFD: 14/03/2014 - [] D -- C:\ProgramData\Meridian93 =>.Meridian93 Games
O43 - CFD: 16/04/2011 - [] D -- C:\ProgramData\Micro Application =>.Micro Application
O43 - CFD: 24/03/2017 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 21/08/2017 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 02/04/2012 - [] D -- C:\ProgramData\MumboJumbo =>.MumboJumbo
O43 - CFD: 04/01/2017 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 13/11/2010 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 29/12/2009 - [] D -- C:\ProgramData\Office Genuine Advantage =>.Microsoft Corporation
O43 - CFD: 08/10/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 15/03/2017 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 26/01/2014 - [] D -- C:\ProgramData\Particles =>.Particles
O43 - CFD: 21/06/2012 - [] D -- C:\ProgramData\PC Suite =>.Nokia Inc.
O43 - CFD: 15/10/2014 - [] D -- C:\ProgramData\Pendulo Studios =>.Pendulo Studios
O43 - CFD: 29/11/2017 - [] D -- C:\ProgramData\Playrix Entertainment =>.Playrix Entertainment
O43 - CFD: 21/06/2012 - [] D -- C:\ProgramData\PogoDGC
O43 - CFD: 24/11/2011 - [] D -- C:\ProgramData\Real =>.RealNetworks Inc.
O43 - CFD: 25/05/2014 - [] D -- C:\ProgramData\RTMI2-BF
O43 - CFD: 29/11/2012 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics
O43 - CFD: 16/04/2011 - [] D -- C:\ProgramData\ScanSoft =>.Scansoft
O43 - CFD: 17/05/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 01/02/2014 - [0] SHD -- C:\ProgramData\smss
O43 - CFD: 31/01/2017 - [] D -- C:\ProgramData\Spybot - Search & Destroy =>.SaferNetworking
O43 - CFD: 24/05/2017 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 05/01/2018 - [0] D -- C:\ProgramData\SWCUTemp
O43 - CFD: 01/09/2009 - [] D -- C:\ProgramData\Symantec =>.Symantec
O43 - CFD: 04/01/2018 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 10/07/2011 - [] D -- C:\ProgramData\TheFallTrilogyEp3-BF
O43 - CFD: 06/08/2015 - [] D -- C:\ProgramData\WildTangent =>.WildTangent
O43 - CFD: 29/12/2009 - [] D -- C:\ProgramData\Windows Genuine Advantage =>.Microsoft Corporation
O43 - CFD: 20/07/2011 - [] D -- C:\Program Files\Common Files\Adobe =>.Adobe
O43 - CFD: 26/08/2016 - [0] D -- C:\Program Files\Common Files\Apple =>.Apple Inc.
O43 - CFD: 01/04/2013 - [] D -- C:\Program Files\Common Files\ArcSoft =>.ArcSoft
O43 - CFD: 06/09/2016 - [0] D -- C:\Program Files\Common Files\AV =>.Avast
O43 - CFD: 06/12/2017 - [] D -- C:\Program Files\Common Files\Avast Software =>.AVAST Software
O43 - CFD: 06/08/2015 - [] D -- C:\Program Files\Common Files\AVSMedia =>.AVSMedia
O43 - CFD: 14/05/2014 - [] D -- C:\Program Files\Common Files\DESIGNER =>.Designer
O43 - CFD: 27/10/2016 - [] D -- C:\Program Files\Common Files\DivX Shared =>.DivX
O43 - CFD: 08/06/2009 - [] D -- C:\Program Files\Common Files\InstallShield =>.InstallShield
O43 - CFD: 29/12/2017 - [] D -- C:\Program Files\Common Files\Java =>.Oracle
O43 - CFD: 11/05/2017 - [] D -- C:\Program Files\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 26/06/2009 - [0] D -- C:\Program Files\Common Files\PX Storage Engine =>.Sonic Solutions
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 10/05/2017 - [] D -- C:\Program Files\Common Files\Skype =>.Skype
O43 - CFD: 02/11/2006 - [] D -- C:\Program Files\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 01/09/2009 - [] D -- C:\Program Files\Common Files\Symantec Shared =>.Symantec Corporation
O43 - CFD: 12/03/2016 - [] D -- C:\Program Files\Common Files\System =>.Microsoft Corporation
O43 - CFD: 17/09/2009 - [] D -- C:\Program Files\Common Files\Windows Live =>.Microsoft Corporation
O43 - CFD: 26/07/2017 - [] D -- C:\Users\Marie\AppData\Roaming\2DO
O43 - CFD: 03/11/2014 - [] D -- C:\Users\Marie\AppData\Roaming\3K Studio
O43 - CFD: 06/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\4 Friends Games =>.4 Friends Games
O43 - CFD: 02/11/2015 - [] D -- C:\Users\Marie\AppData\Roaming\8floor =>.Games Software
O43 - CFD: 27/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Absolute Uninstaller =>.GlarySoft
O43 - CFD: 22/08/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Absolutist =>.Absolutist
O43 - CFD: 11/02/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 25/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Alawar =>.Alawar
O43 - CFD: 09/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Alawar Entertainment =>.Alawar Entertainment
O43 - CFD: 16/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\AlawarEntertainment =>.Alawar Entertainment
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\AMAX Interactive
O43 - CFD: 08/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Anino Games
O43 - CFD: 09/10/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Anuman
O43 - CFD: 28/07/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Anvate Games
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 18/11/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Applied Systems Ltd
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\ArcSoft =>.ArcSoft
O43 - CFD: 23/11/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Artifex Mundi =>.Artifex Mundi Games
O43 - CFD: 26/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\ArtifexMundi =>.Artifex Mundi Games
O43 - CFD: 27/10/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Artogon =>.Artogon Games
O43 - CFD: 27/10/2016 - [] D -- C:\Users\Marie\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 23/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Awem =>.Awem Studio
O43 - CFD: 04/06/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Az-ART
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Marie\AppData\Roaming\bicyclestudios
O43 - CFD: 26/07/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Big Fish Games =>.Big Fish Games
O43 - CFD: 15/04/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Big Top Games =>.Big Top Games
O43 - CFD: 16/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\BlamGames =>.Blam! Games
O43 - CFD: 21/09/2014 - [] D -- C:\Users\Marie\AppData\Roaming\blg
O43 - CFD: 24/02/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Blue Brain Games
O43 - CFD: 18/07/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Blue Tea Games
O43 - CFD: 30/08/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Boolat Games =>.Boolat Games
O43 - CFD: 29/11/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Boomzap =>.Boomzap
O43 - CFD: 10/09/2014 - [] D -- C:\Users\Marie\AppData\Roaming\BoonTrollGames
O43 - CFD: 31/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Brave Giant =>.Brave Giant Games
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\BraveGiant
O43 - CFD: 24/04/2011 - [] D -- C:\Users\Marie\AppData\Roaming\Canneverbe Limited =>.Canneverbe Limited
O43 - CFD: 20/06/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Canon =>.Canon
O43 - CFD: 30/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\CasualBrothers
O43 - CFD: 06/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Cateia Games =>.Cateia Games
O43 - CFD: 09/08/2013 - [] D -- C:\Users\Marie\AppData\Roaming\CDXReader
O43 - CFD: 01/11/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Chayowo Games =>.Chayowo Games
O43 - CFD: 23/03/2016 - [] D -- C:\Users\Marie\AppData\Roaming\ColorBrushStudio
O43 - CFD: 29/07/2015 - [] D -- C:\Users\Marie\AppData\Roaming\com.redaphid.agentangie
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\com.studio-fizbin.InnerWorld
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Marie\AppData\Roaming\com.totem.marcopolo
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\CyberLink =>.CyberLink Corporation
O43 - CFD: 15/09/2017 - [] D -- C:\Users\Marie\AppData\Roaming\DAEMON Tools iSCSI Target
O43 - CFD: 15/09/2017 - [] D -- C:\Users\Marie\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 22/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\DailyMagic =>.DailyMagic Games
O43 - CFD: 31/10/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Dark Blue Games
O43 - CFD: 06/01/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Deep Shadows
O43 - CFD: 25/09/2014 - [] D -- C:\Users\Marie\AppData\Roaming\DiskDefrag =>.Auslogics
O43 - CFD: 11/02/2017 - [] D -- C:\Users\Marie\AppData\Roaming\DivX =>.DivX
O43 - CFD: 15/10/2017 - [] D -- C:\Users\Marie\AppData\Roaming\DominiGames =>.Domini Games
O43 - CFD: 19/08/2015 - [] D -- C:\Users\Marie\AppData\Roaming\DraculaLegacy =>.Dracula Games
O43 - CFD: 21/12/2014 - [] D -- C:\Users\Marie\AppData\Roaming\DragonsEye Studios =>.DragonsEye Studios
O43 - CFD: 16/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\DreamsFromThePast
O43 - CFD: 12/05/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Dropbox =>.Dropbox
O43 - CFD: 27/09/2017 - [] D -- C:\Users\Marie\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Eipix =>.Eipix Games
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\EleFun Games =>.EleFun Games
O43 - CFD: 11/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Elephant Games =>.Elephant Games
O43 - CFD: 10/05/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Embrace of Ocean
O43 - CFD: 03/01/2018 - [] D -- C:\Users\Marie\AppData\Roaming\ERS Game Studios =>.ERS Game Studios
O43 - CFD: 16/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\EscapeTheMuseum2
O43 - CFD: 14/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Fanda Games
O43 - CFD: 05/08/2015 - [] D -- C:\Users\Marie\AppData\Roaming\FarMills
O43 - CFD: 04/07/2014 - [] D -- C:\Users\Marie\AppData\Roaming\FarmMystery
O43 - CFD: 07/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\FastStone =>.FastStone Soft
O43 - CFD: 11/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Fenomen Games
O43 - CFD: 07/01/2015 - [] D -- C:\Users\Marie\AppData\Roaming\FGS
O43 - CFD: 19/08/2015 - [] D -- C:\Users\Marie\AppData\Roaming\FinewayStudios
O43 - CFD: 28/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Five-BN Games
O43 - CFD: 07/11/2013 - [] D -- C:\Users\Marie\AppData\Roaming\FreeAudioPack =>.FreeAudioPack
O43 - CFD: 24/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Friendly Cactus
O43 - CFD: 05/03/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Fugazo =>.Games Software
O43 - CFD: 15/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Fuzzy Bug Interactive =>.Fuzzy Bug Interactive
O43 - CFD: 25/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\GameHouse =>.GameHouse
O43 - CFD: 19/05/2017 - [] D -- C:\Users\Marie\AppData\Roaming\GameMill Entertainment =>.GameMill Entertainment
O43 - CFD: 19/06/2014 - [] D -- C:\Users\Marie\AppData\Roaming\GestaltGames
O43 - CFD: 30/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\GlarySoft =>.GlarySoft
O43 - CFD: 19/06/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Goblinz
O43 - CFD: 20/11/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Gogii =>.Games Software
O43 - CFD: 05/11/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Gogii Games
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Google =>.Google
O43 - CFD: 04/01/2018 - [] D -- C:\Users\Marie\AppData\Roaming\GrandMA Studios
O43 - CFD: 24/07/2017 - [] D -- C:\Users\Marie\AppData\Roaming\grandpas_table
O43 - CFD: 09/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Green Clover Games =>.Green Clover Games
O43 - CFD: 14/07/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Gunnar Games
O43 - CFD: 03/09/2017 - [] D -- C:\Users\Marie\AppData\Roaming\HdO Adventure
O43 - CFD: 27/10/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Hidden Objects Frankenstein2
O43 - CFD: 02/11/2015 - [] D -- C:\Users\Marie\AppData\Roaming\HomeMakeover3PC
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Hot Lava Games =>.Hot Lava Games
O43 - CFD: 27/10/2014 - [] D -- C:\Users\Marie\AppData\Roaming\HotLava
O43 - CFD: 28/10/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Icarus Games
O43 - CFD: 16/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\IcarusGames
O43 - CFD: 06/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\iMaxGen
O43 - CFD: 27/05/2016 - [] D -- C:\Users\Marie\AppData\Roaming\InertiaSoft Ltd
O43 - CFD: 14/05/2017 - [] D -- C:\Users\Marie\AppData\Roaming\IteraLabs =>.IteraLabs
O43 - CFD: 04/03/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Jetdogs Studios
O43 - CFD: 14/01/2015 - [] D -- C:\Users\Marie\AppData\Roaming\JetFun
O43 - CFD: 01/05/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Legacy Games =>.Legacy Games
O43 - CFD: 12/05/2016 - [] D -- C:\Users\Marie\AppData\Roaming\LegacyInteractive
O43 - CFD: 28/09/2014 - [] D -- C:\Users\Marie\AppData\Roaming\LestaStudio
O43 - CFD: 29/05/2009 - [] D -- C:\Users\Marie\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 23/11/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Mad Head Games =>.Mad Head Games
O43 - CFD: 14/06/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Mariaglorum =>.Mariaglorum Company
O43 - CFD: 26/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Maximize Games
O43 - CFD: 28/01/2017 - [] D -- C:\Users\Marie\AppData\Roaming\MediaArt
O43 - CFD: 14/03/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Meridian93 =>.Meridian93 Games
O43 - CFD: 10/04/2017 - [] SD -- C:\Users\Marie\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 13/10/2011 - [] D -- C:\Users\Marie\AppData\Roaming\MoMB_Full_Eng =>.Games Software
O43 - CFD: 14/05/2017 - [] D -- C:\Users\Marie\AppData\Roaming\MoonriseInteractive
O43 - CFD: 11/02/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 14/06/2014 - [] D -- C:\Users\Marie\AppData\Roaming\MumboJumbo =>.MumboJumbo
O43 - CFD: 16/12/2014 - [] D -- C:\Users\Marie\AppData\Roaming\My Games =>.My Games
O43 - CFD: 17/05/2015 - [] D -- C:\Users\Marie\AppData\Roaming\MysteryTag
O43 - CFD: 15/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Neverville
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Nokia =>.Nokia
O43 - CFD: 06/05/2012 - [] D -- C:\Users\Marie\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 23/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 01/05/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Organic 2 Digital
O43 - CFD: 20/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Origaming Media
O43 - CFD: 20/10/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Orneon =>.Games Software
O43 - CFD: 29/10/2009 - [] D -- C:\Users\Marie\AppData\Roaming\PC Suite =>.Nokia Inc.
O43 - CFD: 28/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Ph03nixNewMedia
O43 - CFD: 21/03/2015 - [] D -- C:\Users\Marie\AppData\Roaming\pivot-games
O43 - CFD: 30/05/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Playrix Entertainment =>.Playrix Entertainment
O43 - CFD: 05/07/2014 - [] D -- C:\Users\Marie\AppData\Roaming\PlayWay
O43 - CFD: 26/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Private Moon Studios
O43 - CFD: 12/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\ProtectDISC =>.ProtectDisc Software GmbH
O43 - CFD: 01/03/2015 - [] D -- C:\Users\Marie\AppData\Roaming\PuzzleLab
O43 - CFD: 23/11/2014 - [] D -- C:\Users\Marie\AppData\Roaming\PZGames
O43 - CFD: 14/02/2011 - [] D -- C:\Users\Marie\AppData\Roaming\qzLite3
O43 - CFD: 27/10/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Real =>.RealNetworks Inc.
O43 - CFD: 29/11/2017 - [] D -- C:\Users\Marie\AppData\Roaming\RedHedgehog Games
O43 - CFD: 15/07/2012 - [] D -- C:\Users\Marie\AppData\Roaming\ReelTen
O43 - CFD: 26/05/2015 - [] D -- C:\Users\Marie\AppData\Roaming\REXARD
O43 - CFD: 11/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\RobinsonCrusoeBFGFR
O43 - CFD: 08/06/2009 - [] D -- C:\Users\Marie\AppData\Roaming\ScanSoft =>.Scansoft
O43 - CFD: 31/03/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Seven Sails
O43 - CFD: 11/09/2016 - [] D -- C:\Users\Marie\AppData\Roaming\ShamanGS
O43 - CFD: 16/12/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Silverback Games
O43 - CFD: 23/11/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Skype =>.Skype
O43 - CFD: 01/11/2011 - [] D -- C:\Users\Marie\AppData\Roaming\skypePM =>.Skype Technologies
O43 - CFD: 22/03/2015 - [] D -- C:\Users\Marie\AppData\Roaming\SMIGames
O43 - CFD: 03/01/2018 - [] D -- C:\Users\Marie\AppData\Roaming\Spotify =>.Spotify
O43 - CFD: 14/03/2014 - [] D -- C:\Users\Marie\AppData\Roaming\STAHKM
O43 - CFD: 22/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 28/04/2017 - [] D -- C:\Users\Marie\AppData\Roaming\SunRay Games
O43 - CFD: 16/07/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Sunward Games
O43 - CFD: 31/03/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Sylphelabs
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Symantec =>.Symantec
O43 - CFD: 08/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\T1 Games =>.T1 Games
O43 - CFD: 31/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\tabagames =>.Tabagames
O43 - CFD: 01/11/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Tap It Games =>.Tap It Games
O43 - CFD: 01/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Template =>.Microsoft Corporation
O43 - CFD: 19/05/2017 - [] D -- C:\Users\Marie\AppData\Roaming\The House of Fables =>.The House of Fables
O43 - CFD: 23/06/2014 - [] D -- C:\Users\Marie\AppData\Roaming\thecleaner =>.MooSoft Development LLC
O43 - CFD: 30/07/2014 - [] D -- C:\Users\Marie\AppData\Roaming\TikisLab
O43 - CFD: 23/08/2017 - [] D -- C:\Users\Marie\AppData\Roaming\TOMI3
O43 - CFD: 04/07/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Top Evidence
O43 - CFD: 10/02/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Twilight Games
O43 - CFD: 19/09/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Two Desperados
O43 - CFD: 15/07/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Urchin
O43 - CFD: 27/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\URSE Games
O43 - CFD: 02/11/2015 - [] D -- C:\Users\Marie\AppData\Roaming\Vast Studios =>.Vast Studios
O43 - CFD: 27/10/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Vendel-GAMES =>.Vendel Games
O43 - CFD: 14/09/2014 - [] D -- C:\Users\Marie\AppData\Roaming\VendelGAMES
O43 - CFD: 25/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 16/12/2014 - [] D -- C:\Users\Marie\AppData\Roaming\Western Software Technologies
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Roaming\WildTangent =>.WildTangent
O43 - CFD: 16/04/2011 - [] D -- C:\Users\Marie\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 25/05/2014 - [] D -- C:\Users\Marie\AppData\Roaming\World-LooM
O43 - CFD: 27/10/2016 - [] D -- C:\Users\Marie\AppData\Roaming\Yahoo
O43 - CFD: 05/01/2018 - [0] D -- C:\Users\Marie\AppData\Roaming\Yahoo! =>.Yahoo!
O43 - CFD: 13/05/2013 - [] D -- C:\Users\Marie\AppData\Roaming\Youdagames =>.Youdagames
O43 - CFD: 05/01/2018 - [] D -- C:\Users\Marie\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 28/12/2017 - [] D -- C:\Users\Marie\AppData\Local\Adobe =>.Adobe
O43 - CFD: 17/06/2011 - [] D -- C:\Users\Marie\AppData\Local\adslTV =>.adslTV
O43 - CFD: 11/06/2012 - [] D -- C:\Users\Marie\AppData\Local\aladdin
O43 - CFD: 23/08/2017 - [] D -- C:\Users\Marie\AppData\Local\Alawar =>.Alawar
O43 - CFD: 16/04/2017 - [] D -- C:\Users\Marie\AppData\Local\AlawarWrapper =>.Alawar Entertainment
O43 - CFD: 11/08/2012 - [] D -- C:\Users\Marie\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 29/05/2009 - [0] SHD -- C:\Users\Marie\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 11/07/2013 - [] D -- C:\Users\Marie\AppData\Local\ApplicationHistory =>.Microsoft Corporation
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 28/12/2009 - [] D -- C:\Users\Marie\AppData\Local\ArcSoft =>.ArcSoft
O43 - CFD: 25/09/2012 - [] D -- C:\Users\Marie\AppData\Local\Astar Games
O43 - CFD: 14/09/2013 - [] D -- C:\Users\Marie\AppData\Local\avgchrome
O43 - CFD: 08/11/2014 - [] D -- C:\Users\Marie\AppData\Local\Big Fish =>.Big Fish
O43 - CFD: 12/02/2017 - [] D -- C:\Users\Marie\AppData\Local\CEF =>.CEF
O43 - CFD: 08/05/2016 - [] D -- C:\Users\Marie\AppData\Local\com.gamehouse.acid
O43 - CFD: 10/11/2017 - [] D -- C:\Users\Marie\AppData\Local\CrashRpt
O43 - CFD: 15/09/2017 - [] D -- C:\Users\Marie\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 21/06/2012 - [] D -- C:\Users\Marie\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 11/09/2013 - [] D -- C:\Users\Marie\AppData\Local\FreeMi
O43 - CFD: 11/02/2017 - [] D -- C:\Users\Marie\AppData\Local\Google =>.Google
O43 - CFD: 10/11/2017 - [] D -- C:\Users\Marie\AppData\Local\HiddenFears
O43 - CFD: 29/05/2009 - [0] SHD -- C:\Users\Marie\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 05/01/2010 - [] D -- C:\Users\Marie\AppData\Local\IM =>.IncrediMail Ltd
O43 - CFD: 10/05/2017 - [] D -- C:\Users\Marie\AppData\Local\JollyBear
O43 - CFD: 03/09/2015 - [] D -- C:\Users\Marie\AppData\Local\Judge Dee =>.Games Software
O43 - CFD: 12/05/2010 - [] D -- C:\Users\Marie\AppData\Local\LostKing
O43 - CFD: 12/02/2017 - [] D -- C:\Users\Marie\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 11/02/2017 - [] D -- C:\Users\Marie\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/03/2017 - [] D -- C:\Users\Marie\AppData\Local\Microsoft Corporation =>.Microsoft Corporation
O43 - CFD: 02/06/2012 - [] D -- C:\Users\Marie\AppData\Local\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 29/04/2017 - [0] D -- C:\Users\Marie\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 13/02/2012 - [] D -- C:\Users\Marie\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 27/03/2011 - [] D -- C:\Users\Marie\AppData\Local\Namco
O43 - CFD: 13/11/2010 - [] D -- C:\Users\Marie\AppData\Local\Programming_by_marco6,_gr
O43 - CFD: 05/04/2010 - [] D -- C:\Users\Marie\AppData\Local\Programming_by_marco6,_ic
O43 - CFD: 23/09/2009 - [] D -- C:\Users\Marie\AppData\Local\sowhat
O43 - CFD: 19/04/2017 - [] D -- C:\Users\Marie\AppData\Local\SpookyManor
O43 - CFD: 03/01/2018 - [] D -- C:\Users\Marie\AppData\Local\Spotify =>.Spotify
O43 - CFD: 30/04/2017 - [0] D -- C:\Users\Marie\AppData\Local\STARGAZE_IMAGE_CACHE
O43 - CFD: 05/07/2014 - [] D -- C:\Users\Marie\AppData\Local\Stéphane_Mitermite =>.Stéphane Mitermite
O43 - CFD: 02/06/2009 - [] D -- C:\Users\Marie\AppData\Local\Symantec =>.Symantec
O43 - CFD: 05/01/2018 - [] D -- C:\Users\Marie\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 29/05/2009 - [0] SHD -- C:\Users\Marie\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 05/09/2010 - [] D -- C:\Users\Marie\AppData\Local\Vast Studios =>.Vast Studios
O43 - CFD: 29/05/2009 - [] D -- C:\Users\Marie\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 11/05/2017 - [] D -- C:\Users\Marie\AppData\Local\Windows Live =>.Microsoft Corporation
O43 - CFD: 03/05/2015 - [] D -- C:\Users\Marie\AppData\Local\Windows Live Writer =>.Microsoft Corporation
O43 - CFD: 05/09/2009 - [] D -- C:\Users\Marie\AppData\Local\Xenocode =>.Legitimate
O43 - CFD: 23/08/2017 - [] D -- C:\Users\Marie\AppData\Local\Yandex =>.Yandex
O43 - CFD: 05/01/2018 - [] D -- C:\Users\Marie\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 15/11/2011 - [] D -- C:\Users\Marie\AppData\Local\Zylom Games =>.Zylom Games
O43 - CFD: 31/12/2017 - [] D -- C:\Users\Marie\Desktop\Anciennes données de Firefox
O43 - CFD: 05/01/2018 - [] RD -- C:\Users\Marie\Desktop\Demandes de logement et numéro d'enregistrement
O43 - CFD: 26/11/2017 - [] RD -- C:\Users\Marie\Desktop\Fourre-tout
O43 - CFD: 30/01/2015 - [] RD -- C:\Users\Marie\Desktop\Imprimante
O43 - CFD: 22/12/2017 - [] D -- C:\Users\Marie\Desktop\Photos
O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 29/05/2009 - [] RD -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 28/12/2017 - [0] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Alawar.fr
O43 - CFD: 29/11/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Barn Yarn
O43 - CFD: 24/12/2010 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite =>.CyberLink Corporation
O43 - CFD: 15/12/2008 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink LabelPrint =>.CyberLink Corporation
O43 - CFD: 21/06/2012 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAMN NFO Viewer =>.Damn
O43 - CFD: 18/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dark Tales - Edgar Allan Poes Morella Collectors Edition
O43 - CFD: 25/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Delicious- Emilys Christmas Carol Collectors Edition
O43 - CFD: 16/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\European Mystery - The Face of Envy Collectors Edition
O43 - CFD: 11/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\European Mystery - Un Parfum de Mystere
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grim Facade - The Message Collector's Edition
O43 - CFD: 21/01/2008 - [] RD -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mortimer Beckett and the Book of Gold Collectors Edition
O43 - CFD: 09/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mystery Case Files - Le Voile Noir Edition Collector
O43 - CFD: 23/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Off The Record - Liberty Stone Edition Collector
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phantasmat - Curse of the Mist Collector's Edition
O43 - CFD: 29/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Phenomenon - Outcome
O43 - CFD: 18/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PuppetShow - Bloody Rosie
O43 - CFD: 28/12/2017 - [0] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PuppetShow - Poetic Justice
O43 - CFD: 20/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PuppetShow - Poetic Justice Collectors Edition
O43 - CFD: 09/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rhianna Ford - La Lettre de Leonard de Vinci
O43 - CFD: 28/03/2016 - [] RD -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 12/05/2016 - [] HD -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup-Disabled =>.Microsoft Corporation
O43 - CFD: 13/02/2012 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool =>.Microsoft Corporation
O43 - CFD: 18/12/2017 - [] D -- C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Witches Legacy - Rise of the Ancient Collectors Edition
O43 - CFD: 21/08/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 21/08/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 28/12/2009 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 17/12/2013 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Google =>.Google
O43 - CFD: 28/12/2009 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 20/08/2016 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/12/2009 - [0] SHD -- C:\Windows\System32\Config\systemprofile\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/08/2012 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 11/01/2010 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 17/02/2010 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\McAfee =>.McAfee
O43 - CFD: 28/12/2017 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 09/12/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\PC Suite =>.Nokia Inc.
User empty folders CLSID founds (7). Clean with ZHPFix 'EmptyCLSID' command =>.SUP.Empty.CLSID

---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 1s
O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ Raccourcis de menus conceptuels (SCMH) (24) - 1s
O108 - CMH1: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH1: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (...) -- syncui.dll (.not file.)
O108 - CMH1: Glary Utilities - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files\Glary Utilities 5\ContextHandler.dll =>.Glarysoft LTD®
O108 - CMH1: Open With - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (...) -- ntshrui.dll (.not file.)
O108 - CMH2: OpenContainingFolderMenu - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: 00asw - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH3: CopyAsPathMenu - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: Send To - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: EncryptionMenu - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: PowerISO - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Orphan.)
O108 - CMH4: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (...) -- ntshrui.dll (.not file.)
O108 - CMH5: New - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: NvCplDesktopContext - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - .) -- C:\Windows\System32\nvshext.dll =>.NVIDIA Corporation®
O108 - CMH6: avast - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) -- C:\Program Files\AVAST Software\Avast\ashShell.dll =>.AVAST Software s.r.o.®
O108 - CMH6: BriefcaseMenu - {85BBD920-42A0-1069-A2E4-08002B30309D} . (...) -- syncui.dll (.not file.)
O108 - CMH6: Glary Utilities - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files\Glary Utilities 5\ContextHandler.dll =>.Glarysoft LTD®
O108 - CMH6: MBAMShlExt - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: PowerISO - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Extension d'environnement du périphérique d.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Glary Utilities - {B3C418F8-922B-4faf-915E-59BC14448CF7} . (.Glarysoft Ltd - Context Menu Handler.) -- C:\Program Files\Glary Utilities 5\ContextHandler.dll =>.Glarysoft LTD®
O108 - CMH7: Sharing - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (...) -- ntshrui.dll (.not file.)

---\\ Image File Execution Options (1) - 0s
O50 - IFEO:C:\Windows\System32\FlashPlayerApp.exe - (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) [DisableExceptionChainValidation\\0] =>.Adobe Systems Incorporated

---\\ Enumération des clés StartupReg (14) - 1s
O53 - SMSR:HKLM\...\startupreg\APSDaemon [Key] . (...) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\ArcSoft Connection Service [Key] . (.ArcSoft Inc. - ArcSoft Connect Daemon.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe =>.ArcSoft Inc.
O53 - SMSR:HKLM\...\startupreg\CanonQuickMenu [Key] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.
O53 - SMSR:HKLM\...\startupreg\DivXMediaServer [Key] . (...) -- C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\DivXUpdate [Key] . (...) -- C:\Program Files\DivX\DivX Update\DivXUpdate.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Google Update [Key] . (...) -- C:\Users\Marie\AppData\Local\Google\Update\GoogleUpdate.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\GUDelayStartup [Key] . (.Glarysoft Ltd - Glary Utilities StartupManager.) -- C:\Program Files\Glary Utilities 5\StartupManager.exe =>.Glarysoft Ltd
O53 - SMSR:HKLM\...\startupreg\MSC [Key] . (...) -- C:\Program Files\Microsoft Security Client\msseces.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\msnmsgr [Key] . (.Microsoft Corporation - Windows Live Messenger.) -- C:\Program Files\Windows Live\Messenger\msnmsgr.exe =>.Microsoft Corporation
O53 - SMSR:HKLM\...\startupreg\QuickTime Task [Key] . (...) -- C:\Program Files\QuickTime\QTTask.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Spotify [Key] . (.Spotify Ltd - Spotify.) -- C:\Users\Marie\AppData\Roaming\Spotify\Spotify.exe =>.Spotify Ltd
O53 - SMSR:HKLM\...\startupreg\SpybotPostWindows10UpgradeReInstall [Key] . (...) -- C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\TkBellExe [Key] . (...) -- C:\Program Files\Real\RealPlayer\update\realsched.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\WMPNSCFG [Key] . (.Microsoft Corporation - Application de configuration du service Par.) -- C:\Program Files\Windows Media Player\wmpnscfg.exe =>.Microsoft Corporation

---\\ Liste des pilotes du système (95) - 10s
O58 - SDL:2010/02/24 11:22:10 A . (.Protect Software GmbH - ProtectDisc x64/x86 Hybrid Driver.) -- C:\Windows\System32\drivers\acedrv11.sys [185472] =>.Protect Software GmbH®
O58 - SDL:2008/01/21 03:32:46 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [422968] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:51 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [300600] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:52 A . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\drivers\adpu160m.sys [101432] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:53 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\drivers\adpu320.sys [149560] =>.Microsoft Windows®
O58 - SDL:2008/03/05 06:10:00 A . (.Agere Systems - SoftModem Device Driver.) -- C:\Windows\System32\drivers\AGRSM.sys [1203808] =>.Agere Systems
O58 - SDL:2008/01/21 03:32:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [17464] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:49 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [79416] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:50 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [79928] =>.Microsoft Windows®
O58 - SDL:2018/01/05 17:20:16 A . (.AVAST Software - Avast anti rootkit.) -- C:\Windows\System32\drivers\aswArPot.sys [158224] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:19:48 A . (.AVAST Software - IDS Application Activity Monitor Driver..) -- C:\Windows\System32\drivers\aswbidsdriverx.sys [255584] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:19:48 A . (.AVAST Software - Application Activity Monitor Helper Driver.) -- C:\Windows\System32\drivers\aswbidshx.sys [157376] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:19:48 A . (.AVAST Software - Logging Driver.) -- C:\Windows\System32\drivers\aswblogx.sys [276696] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:19:48 A . (.AVAST Software - Universal Driver.) -- C:\Windows\System32\drivers\aswbunivx.sys [50344] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:19:50 A . (.AVAST Software - Home Network Security.) -- C:\Windows\System32\drivers\aswHdsKe.sys [118144] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:16 A . (.AVAST Software - Avast HWID.) -- C:\Windows\System32\drivers\aswHwid.sys [42824] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2017/09/11 09:00:30 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\Windows\System32\drivers\aswKbd.sys [39784] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:16 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\Windows\System32\drivers\aswMonFlt.sys [124408] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:16 A . (.AVAST Software - Avast TDI Redirect Driver.) -- C:\Windows\System32\drivers\aswRdr.sys [70208] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:16 A . (.AVAST Software - Avast Revert.) -- C:\Windows\System32\drivers\aswRvrt.sys [70832] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2018/01/05 17:19:54 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\Windows\System32\drivers\aswSnx.sys [783104] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:16 A . (.AVAST Software - Avast self protection module.) -- C:\Windows\System32\drivers\aswSP.sys [390272] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:17 A . (.AVAST Software - Avast Stream Filter.) -- C:\Windows\System32\drivers\aswStmXP.sys [205360] =>.AVAST Software s.r.o.®
O58 - SDL:2018/01/05 17:20:17 A . (.AVAST Software - Avast VM Monitor.) -- C:\Windows\System32\drivers\aswVmm.sys [294680] =>.AVAST Software s.r.o.® (.AVAST Software)
O58 - SDL:2011/06/25 23:12:53 A . (...) -- C:\Windows\System32\drivers\atksgt.sys [278728] =>.Tages SA®
O58 - SDL:2006/11/02 09:24:45 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [13568] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 09:24:46 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [5248] =>.Brother Industries, Ltd.
O58 - SDL:2006/11/02 09:25:24 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [71808] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [62336] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 09:24:44 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [12160] =>.Brother Industries Ltd.
O58 - SDL:2006/11/02 09:24:47 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [11904] =>.Brother Industries Ltd.
O58 - SDL:2008/01/21 03:32:21 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [19000] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:11 A . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\drivers\djsvs.sys [71272] =>.Microsoft Windows®
O58 - SDL:2017/09/15 14:02:44 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [26168] =>.Disc Soft Ltd®
O58 - SDL:2017/09/15 14:03:23 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [40504] =>.Disc Soft Ltd®
O58 - SDL:2008/01/21 03:32:50 A . (.Intel Corporation - Pilote désérialisé NDIS 6 de la carte Intel.) -- C:\Windows\System32\drivers\E1G60I32.sys [118784] =>.Intel Corporation
O58 - SDL:2008/01/21 03:32:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [342584] =>.Microsoft Windows®
O58 - SDL:2012/08/21 13:01:22 A . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\drivers\GEARAspiWDM.sys [26840] =>.GEAR Software Inc.®
O58 - SDL:2016/12/05 17:57:42 A . (.Glarysoft Ltd - The driver for the Startup Manager tool.) -- C:\Windows\System32\drivers\GUBootStartup.sys [17472] =>.Glarysoft Ltd®
O58 - SDL:2008/01/21 03:32:52 A . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\drivers\HpCISSs.sys [40504] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:49 A . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\drivers\iaStorV.sys [235064] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:17 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [41576] =>.Microsoft Windows®
O58 - SDL:2008/06/11 10:13:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15.sys [15392] =>.Acer Incorporated®
O58 - SDL:2008/06/11 10:13:24 A . (.Acer, Inc. - int15.) -- C:\Windows\System32\drivers\int15_64.sys [17952] =>.Acer Incorporated®
O58 - SDL:2006/11/02 10:50:07 A . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\drivers\iteatapi.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:09 A . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\drivers\iteraid.sys [35944] =>.Microsoft Windows®
O58 - SDL:2011/06/25 23:12:52 A . (...) -- C:\Windows\System32\drivers\lirsgt.sys [25416] =>.Tages SA®
O58 - SDL:2008/01/21 03:32:49 A . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [96312] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:51 A . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [89656] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:48 A . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [96312] =>.Microsoft Windows®
O58 - SDL:2017/11/29 09:11:26 A . (...) -- C:\Windows\System32\drivers\mbae.sys [59896] =>.Malwarebytes Corporation®
O58 - SDL:2018/01/05 23:04:51 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [221112] =>.Malwarebytes Corporation®
O58 - SDL:2008/01/21 03:32:53 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [31288] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:52 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [386616] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:49:59 A . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\Mraid35x.sys [33384] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:19 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [45160] =>.Microsoft Windows®
O58 - SDL:2006/11/02 08:36:50 A . (.N-trig Innovative Technologies - Pilote intégré de digitalisateur de tablett.) -- C:\Windows\System32\drivers\ntrigdigi.sys [20608] =>.N-trig Innovative Technologies
O58 - SDL:2010/06/08 00:57:00 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [10888168] =>.NVIDIA Corporation®
O58 - SDL:2006/11/02 08:30:56 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvm60x32.sys [429056] =>.NVIDIA Corporation
O58 - SDL:2010/08/12 12:07:50 A . (.NVIDIA Corporation - NVIDIA MCP Networking Function Driver..) -- C:\Windows\System32\drivers\nvmfdx32.sys [292712] =>.NVIDIA Corporation®
O58 - SDL:2008/01/21 03:32:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [102968] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [45112] =>.Microsoft Windows®
O58 - SDL:2008/06/06 12:13:10 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor32.sys [145440] =>.NVIDIA Corporation®
O58 - SDL:2008/08/26 09:26:12 A . (.Nokia - PCCS Mode Change Filter Driver.) -- C:\Windows\System32\drivers\pccsmcfd.sys [18816] =>.Nokia
O58 - SDL:2008/01/21 03:32:50 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1122360] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:35 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [106088] =>.Microsoft Windows®
O58 - SDL:2008/05/20 17:01:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHDA.sys [2143136] =>.Realtek Semiconductor Corp®
O58 - SDL:2006/11/02 07:37:21 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [20480] =>.Macrovision Corporation, Macrovision Europe Limited,
O58 - SDL:2008/01/21 03:32:52 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [74808] =>.Microsoft Windows®
O58 - SDL:2012/02/29 09:25:10 A . (.Duplex Secure Ltd. - SCSI Pass Through Direct Host.) -- C:\Windows\System32\drivers\sptd.sys [473656] =>.Duplex Secure Ltd®
O58 - SDL:2006/11/02 10:50:05 A . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\drivers\symc8xx.sys [35944] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:49:56 A . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_hi.sys [31848] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:03 A . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\drivers\sym_u3.sys [34920] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:45 A . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\drivers\uliahci.sys [238648] =>.Microsoft Windows®
O58 - SDL:2006/11/02 10:50:35 A . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win200.) -- C:\Windows\System32\drivers\ulsata.sys [98408] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:49 A . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\drivers\ulsata2.sys [115816] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:21 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [20024] =>.Microsoft Windows®
O58 - SDL:2008/01/21 03:32:49 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [130616] =>.Microsoft Windows®
O58 - SDL:2006/11/02 08:09:42 A . (...) -- C:\Windows\System32\ANSI.SYS [9029] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:45 A . (...) -- C:\Windows\System32\country.sys [27097] =>.Microsoft Corporation
O58 - SDL:1996/04/03 20:33:26 A . (...) -- C:\Windows\System32\giveio.sys [5248] =>.ImageSurfer Software
O58 - SDL:2006/11/02 08:09:41 A . (...) -- C:\Windows\System32\HIMEM.SYS [4768] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEY01.SYS [42809] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:44 A . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:29 A . (...) -- C:\Windows\System32\NTDOS.SYS [27866] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:35 A . (...) -- C:\Windows\System32\NTDOS404.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:38 A . (...) -- C:\Windows\System32\NTDOS411.SYS [29370] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:40 A . (...) -- C:\Windows\System32\NTDOS412.SYS [29274] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:31 A . (...) -- C:\Windows\System32\NTDOS804.SYS [29146] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:20 A . (...) -- C:\Windows\System32\NTIO.SYS [33952] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:23 A . (...) -- C:\Windows\System32\NTIO404.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:24 A . (...) -- C:\Windows\System32\NTIO411.SYS [35776] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:26 A . (...) -- C:\Windows\System32\NTIO412.SYS [35536] =>.Microsoft Corporation
O58 - SDL:2006/11/02 08:09:22 A . (...) -- C:\Windows\System32\NTIO804.SYS [34672] =>.Microsoft Corporation
O58 - SDL:2011/03/18 17:08:54 A . (.Almico Software - SpeedFan x32 Driver.) -- C:\Windows\System32\speedfan.sys [25240] =>.Sokno S.R.L.®

---\\ Associations Shell Spawning (11) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- %1" %*
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ Menu de démarrage Internet (16) - 1s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\Marie\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\Launcher.exe =>.AVAST Software s.r.o.®
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Users\Marie\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Users\Marie\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Users\Marie\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d’Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Avast Software - Avast SafeZone Browser.) -- C:\Program Files\AVAST Software\SZBrowser\launcher.exe =>.AVAST Software

---\\ Recherche d'infection sur les navigateurs (6) - 11s
O69 - SBI: SearchScopes [HKCU]{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKLM]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM]{67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKLM]{E9410C70-B6AE-41FF-AB71-32F4B279EA5F} [DefaultScope] - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKUS\.DEFAULT]{D3894CCE-535C-4871-9D7B-6A95DC7863B8} - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKUS\S-1-5-18]{D3894CCE-535C-4871-9D7B-6A95DC7863B8} - (Google) - http://www.google.com/ =>.Google Inc.

---\\ Enumère les services démarrés par Svchost (31) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [62976] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [40448] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [125952] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [582144] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [444928] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d'accès distant.) -- C:\Windows\System32\rasmans.dll [262144] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [68608] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [47104] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l'application d'assistance à.) -- C:\Windows\System32\ipnathlp.dll [288256] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes Termi.) -- C:\Windows\System32\termsrv.dll [449536] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [1933848] =>.Microsoft Windows Component Publisher®
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [758784] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [247808] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [200704] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d'ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [19968] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [33280] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [45056] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153600] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [57344] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [602112] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service de configuration des services Termi.) -- C:\Windows\System32\SessEnv.dll [84992] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [81920] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [68096] =>.Microsoft Corporation

---\\ Liste des exceptions du parefeu Windows (26) - 4s
O87 - FAEL: "{E56C421D-C2E7-4908-B187-B653D99FED6A}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Lost Civilization\Lost Civilization.wrp.exe (.not file.)
O87 - FAEL: "{4ECFD403-C295-4BD9-AF9E-B42F859FAA00}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Lost Civilization\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{4BB76B7A-CB20-4E25-8609-0553F2B1339E}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Escape the Museum 2\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{C37596FB-BC17-4F29-869C-4E66DE56AB9C}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Cursed Island Mask of Baragus\TheCursedIsland_MaskOfBaragus.wrp.exe (.not file.)
O87 - FAEL: "{13A0A273-AA76-44AE-A1C6-4BF44DB9F8E8}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Cursed Island Mask of Baragus\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{DE655C8D-7BEC-47A2-96CF-0E84D29862FD}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Red Crow Mysteries Legion\legion.wrp.exe (.not file.)
O87 - FAEL: "{F12C106E-7DCA-4B0B-909B-B0029B07E0D4}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Red Crow Mysteries Legion\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{9D77A20B-ABDB-49A9-9291-09C6AF75A9CA}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Sacred Almanac Traces of Greed\SA.wrp.exe (.not file.)
O87 - FAEL: "{55D1A69B-AD70-4DD1-B89B-4D6C1A206837}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Sacred Almanac Traces of Greed\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{4F7E2426-81AB-4B7D-A194-6894EE6B8B6F}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Golden Trails 3 The Guardians Creed Premium Edition\GoldenTrails3TheGuardiansCreed_PE.wrp.exe (.not file.)
O87 - FAEL: "{4F7A0D8B-6C2A-46F2-BEC2-B5E6BD8DCE93}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Legacy Forgotten Gates Collectors Edition\TheLegacy_ForgottenGates_CE.exe (.not file.)
O87 - FAEL: "{E1333332-2744-4C47-A5C7-CE390067DCAB}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Legacy Forgotten Gates Collectors Edition\TheLegacy_ForgottenGates_CE.exe (.not file.)
O87 - FAEL: "{17373042-EAAB-4E12-8C73-B25F9A9091E5}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Ashley Clark Secrets of the Ancient Temple\Game.exe (.not file.)
O87 - FAEL: "{44D68FC2-A2E6-4F29-B6C5-2E7495C8A226}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Ashley Clark Secrets of the Ancient Temple\Game.wrp.exe (.not file.)
O87 - FAEL: "{688CD301-B1AA-4B2E-9AED-16DADBA461C1}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Ashley Clark Secrets of the Ancient Temple\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{5B5751C0-3D29-4600-89B3-630F47FCDC2C}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Cursed\Cursed.exe (.not file.)
O87 - FAEL: "{52D50A3F-5099-47F0-A77C-1A0B337EAB79}" [In-None-P17-TRUE] .(...) -- D:\Jeux\9 Clues The Ward\9Clues2TheWard.exe (.not file.)
O87 - FAEL: "{F5711597-0346-4DE1-A661-3BFEEAE47722}" [In-None-P17-TRUE] .(...) -- D:\Jeux\9 Clues The Ward\9Clues2TheWard.wrp.exe (.not file.)
O87 - FAEL: "{9CB462FA-13E4-4D69-A0BE-A7C2BFBC22F5}" [In-None-P17-TRUE] .(...) -- D:\Jeux\9 Clues The Ward\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{657D3AD0-DF3C-4B33-A584-4639D60EBDD4}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Saint Abyss Of Despair\TheSaintAbyssOfDespair.exe (.not file.)
O87 - FAEL: "{818DA224-B661-48B4-8DF7-E66818FA04B9}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Saint Abyss Of Despair\TheSaintAbyssOfDespair.wrp.exe (.not file.)
O87 - FAEL: "{1371BA93-B277-4020-8AF3-2DF9DBBA9EA7}" [In-None-P17-TRUE] .(...) -- D:\Jeux\The Saint Abyss Of Despair\F2PHttpDaemon.exe (.not file.)
O87 - FAEL: "{A83D699B-1FF3-4EA6-B800-F35D51DC24B8}" [In-None-P17-TRUE] .(...) -- D:\Jeux\Persian Nights Sands of Wonders\PersianNights.exe (.not file.)
O87 - FAEL: "{9EF62747-24C3-4886-BAED-63F6983B396B}" [In-None-P17-TRUE] .(...) -- D:\Jeux\9 Clues The Ward\9Clues2TheWard.exe (.not file.)
O87 - FAEL: "{C9438E81-9B60-4773-AD4D-0734283E3ED5}" [In-None-P17-TRUE] .(...) -- D:\Jeux\9 Clues The Ward\9Clues2TheWard.wrp.exe (.not file.)
O87 - FAEL: "{3955740E-6DC4-42F8-9423-3FE8F3F91504}" [In-None-P17-TRUE] .(...) -- D:\Jeux\9 Clues The Ward\F2PHttpDaemon.exe (.not file.)

---\\ Recherche des packages WindowsInstaller (22) - 5s
[MD5.B44A5DE6C28867D723B83FCDE7FB5358] [WIS][2010/11/13 15:16:54] (.NVIDIA Corporation.) -- C:\Windows\Installer\10b4266.msi [463360] =>.NVIDIA Corporation
[MD5.6000E0C9077838B43320D002803CAEBD] [WIS][2016/10/27 15:15:08] (.Adobe Systems, Inc - swMSM.) -- C:\Windows\Installer\14e9a95.msi [430592] =>.Adobe Systems, Inc
[MD5.5D098B69D10406B1C2653D7323865223] [WIS][2011/07/20 16:12:20] (.Adobe Systems Incorporated - ADOBER~1.0Adobe Reader X (10.0.1).) -- C:\Windows\Installer\1544c0b.msi [2310144] =>.Adobe Systems Incorporated
[MD5.53BDD1FBD5F68F8BCF516570CD8491D0] [WIS][2017/05/17 22:13:25] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\155a67.msi [1656832] =>.Skype Technologies S.A.
[MD5.2755E22C17C5F9DAABA81AAF27C2F4A1] [WIS][2009/05/31 17:12:39] (.GEAR Software.) -- C:\Windows\Installer\156dd4.msi [441856] =>.GEAR Software
[MD5.A804E603436DE9EB25D8CF681E13866C] [WIS][2013/08/09 18:51:14] (.DivX, Inc.) -- C:\Windows\Installer\171c7c2.msi [178688] =>.DivX, Inc
[MD5.783211A3699062D96AA3A92D87B009EC] [WIS][2012/08/02 11:21:46] (.Aedge Performance BCN SL - MyPDFConverter.) -- C:\Windows\Installer\194157.msi [4176384] =>.SUP.PCSpeedUp
[MD5.C6E84AE3264D44B4EBE1FC90DB341B17] [WIS][2013/09/20 21:12:42] (.NVIDIA Corporation - Install/UnInstall PhysX Driver + Engines: 2.) -- C:\Windows\Installer\1da65d9.msi [1556480] =>.NVIDIA Corporation
[MD5.A39E6AFD198E236AF0B27959FC9CFA12] [WIS][2015/08/13 12:07:05] (.PlotSoft LLC - PDFill PDF Editor with FREE Writer and FREE.) -- C:\Windows\Installer\1f3fd55.msi [12288] =>.PlotSoft LLC
[MD5.A79531D15F5032A00E60DB3C4CD3163A] [WIS][2012/07/13 18:51:52] (.Oracle Corporation - Java FX 2.1 Installer.) -- C:\Windows\Installer\23f1c3d.msi [457728] =>.Oracle Corporation
[MD5.406B776A73A56A5BA6F4480A24D4090E] [WIS][2017/12/29 02:50:48] (.Oracle Corporation - Java SE Runtime Environment 8 Update 151.) -- C:\Windows\Installer\53c913.msi [1486336] =>.Oracle Corporation
[MD5.CC0E501A276CC9CFB31C18559C20D2B3] [WIS][2017/12/29 02:52:33] (.Oracle Corporation - Java Auto Updater.) -- C:\Windows\Installer\53c920.msi [231936] =>.Oracle Corporation
[MD5.E56523311B4C4B67385A4018CD207934] [WIS][2009/12/31 10:21:08] (.Nokia - MSVC80_x86_v2.) -- C:\Windows\Installer\58b91.msi [215552] =>.Nokia
[MD5.2F1DA8569CE0C9DB35CC457553213DDA] [WIS][2014/11/22 11:15:02] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\7b1f7.msi [22528] =>.Google Inc.
[MD5.3AEA47F1B7AB9BF79AE653674E15678E] [WIS][2009/10/29 13:06:04] (.Nokia - MSVC80_x86.) -- C:\Windows\Installer\84e48c.msi [163840] =>.Nokia
[MD5.AD28943C0DB277DF7DFF02D909DD47BA] [WIS][2017/04/25 17:52:44] (.Oracle Corporation - Java SE Runtime Environment 8 Update 131.) -- C:\Windows\Installer\88610.msi [29896704] =>.Oracle Corporation
[MD5.3FA50A5CFDBCF01DD4E2FA0E66A666A6] [WIS][2017/01/03 23:43:22] (.Oracle Corporation - Java SE Runtime Environment 8 Update 111.) -- C:\Windows\Installer\88d79.msi [1468928] =>.Oracle Corporation
[MD5.B0BA296AF05ED341A71270A323316EDC] [WIS][2017/01/31 12:23:38] (.Google - Google Earth.) -- C:\Windows\Installer\9992c6.msi [314880] =>.Google
[MD5.F79612C569CD56B6F05E06BEBE439A32] [WIS][2017/10/08 22:05:36] (.Oracle Corporation - Java SE Runtime Environment 8 Update 144.) -- C:\Windows\Installer\9cfa2.msi [1485312] =>.Oracle Corporation
[MD5.D0F74FB92F610E8DCC536716AA51976E] [WIS][2016/01/13 17:25:40] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\Windows\Installer\e9ad4.msi [379904] =>.Adobe Systems Incorporated
[MD5.A1C00C5324BB3733282E3FA2ADC352D1] [WIS][2012/05/14 18:47:05] (.DAMN - DAMN NFO Viewer 2.10.0031 RC3.) -- C:\Windows\Installer\f877a.msi [520704] =>.DAMN

---\\ Scan Additionnel (16) - 25s
C:\Windows\System32\Tasks\{2C58367E-0B8A-4DDF-9BE5-5A101EDECE8E} =>PUP.Optional.OfferBox
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11222041-111B-46E3-BD29-EFB2449479B1} =>.SUP.Orphan
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11222041-111B-46E3-BD29-EFB2449479B1} =>.SUP.Orphan
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{11222041-111B-46E3-BD29-EFB2449479B1} =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} =>.SUP.Orphan
HKLM\Software\Wow6432Node\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Sharing =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =>.SUP.Orphan
HKLM\Software\Wow6432Node\Classes\CLSID\{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Sharing =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\Sharing =>.SUP.Orphan
C:\Windows\Installer\194157.msi =>.SUP.PCSpeedUp

---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/10/15/adware-offerbox/ =>PUP.Optional.OfferBox
https://nicolascoolman.eu/2017/10/28/adware-iwinarcade/ =>Adware.iWinArcade
https://nicolascoolman.eu/2017/11/29/le-format-clsid-registre-windows/ =>.SUP.Empty.CLSID
https://nicolascoolman.eu/2017/03/05/superfluous-pcspeeduppro/ =>.SUP.PCSpeedUp

~ Unselected Options: O82,
~ End of the scan, 40861 items in 03mn43s (1566)(0)

Publicité


Signaler le contenu de ce document

Publicité