cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.2.22.37 By Nicolas Coolman (2018/02/22)
~ Run by Pilote12549 (Administrator) (2018/02/22 14:38:09)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ State version: Version KO
~ Mode: Scan
~ Report: C:\Users\Pilote12549\Desktop\ZHPDiag.txt
~ Report: C:\Users\Pilote12549\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 16299) =>.Microsoft Corporation

---\\ Internet Browsers (3) - 0s
~ MFIE: Mozilla Firefox 58.0.2 (x64 en-US)
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.248.16299.0

---\\ Windows Product Information (3) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ System protection software (2) - 0s
McAfee LiveSafe v16.0 R7 (Protection)
Windows Defender (Activate) (Protection)

---\\ Informations on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 94 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8266.656 MB (45% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 343 GB (70%) free of 487 GB : OK =>.Disk Space

---\\ Connection to the system mode (3) - 0s
~ Computer Name: LAPTOP-4Q0EDSGH
~ User Name: Pilote12549
~ Logged in as Administrator

---\\ Enumeration of the disk units (1) - 0s
~ Drive C: has 343 GB free of 487 GB (System)

---\\ State of the Windows Security Center (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (25) - 1s
[MD5.A77D56422C38C1F8A00D95D2D5B1675E] - 10/02/2018 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [3904296] =>.Microsoft Windows®
[MD5.731A783A36A8E69A6434D19D98B12A09] - 29/09/2017 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71168] =>.Microsoft Corporation
[MD5.BF3E1D9B2360C6BE4CC3094CD2DDC617] - 29/09/2017 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [359584] =>.Microsoft Windows Publisher®
[MD5.D09D24A071007D66C9ED2B6B40B9D1D3] - 10/02/2018 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [3334144] =>.Microsoft Corporation
[MD5.D0926E8FC082646487BD159538F4D9F5] - 01/01/2018 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [715776] =>.Microsoft Corporation
[MD5.4D487E7D2B047FB929BE00117C09F9EC] - 29/09/2017 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [414720] =>.Microsoft Corporation
[MD5.5AE3B789BC547BBBE2A876F587BE60F6] - 10/02/2018 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [739696] =>.Microsoft Windows®
[MD5.66342F3BB289A5A370127F8385512A84] - 10/02/2018 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [597160] =>.Microsoft Windows®
[MD5.3B34C7B9D7E22AEF58DF0CFC4C7CC82D] - 14/02/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.AD7B46330B55170ED706043DE88AC1A9] - 10/02/2018 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [614296] =>.Microsoft Windows®
[MD5.6191B9B2EE0E8CB957C683B9B341CC86] - 29/09/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Windows®
[MD5.9E82A95D77AC78C84BA75FF896B060BF] - 29/09/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation
[MD5.6D83565C1652E80447EDEA6947FA89D7] - 29/09/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation
[MD5.9910E9CFF5ECDCB225F82E72CE9DE459] - 29/09/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [151040] =>.Microsoft Corporation
[MD5.99A34FD1F6431A10D8C3BB50E170D0F2] - 29/09/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation
[MD5.56FF074E50F9042FD2856AB3418F4B18] - 29/09/2017 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation
[MD5.7BEC2AF23F586EFF0DB4DBF4331B0C70] - 29/09/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214016] =>.Microsoft Corporation
[MD5.71729B1EE949E1B092CB5CB75CC63715] - 10/02/2018 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [494488] =>.Microsoft Windows®
[MD5.7FC54F2AF5EC52C7AC05AD90FFC757E6] - 01/01/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [316928] =>.Microsoft Corporation
[MD5.B6FDEBE8F640E9173AD2BA3F9C014195] - 10/02/2018 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2395032] =>.Microsoft Windows®
[MD5.2E07EC2C1622F5E7B535D62DCD61F3AB] - 29/09/2017 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation
[MD5.E0220BB6580D34001D4D1D133052DAA4] - 29/09/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation
[MD5.DF83769C92527DB50653F8FB57D001FF] - 29/09/2017 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation
[MD5.571D82ABAC428D902ACA0CF60373C039] - 29/09/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121240] =>.Microsoft Windows®
[MD5.5B27846CF4B1C21AFB3A35A8336BA02F] - 14/02/2018 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [401304] =>.Microsoft Windows®

---\\ Non Microsoft non disabled Windows Services (21) - 0s
O23 - Service: Amazon Assistant Service (Amazon Assistant Service) . (. - AmazonAssistantService.) - C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe =>.Amazon Services LLC®
O23 - Service: AtherosSvc (AtherosSvc) . (. - Windows Setup API.) - C:\WINDOWS\System32\AdminService.exe =>.Atheros
O23 - Service: Bonjour Service (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: CCDMonitorService (CCDMonitorService) . (.Acer Incorporated - CCD Monitor Service.) - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe =>.Acer Incorporated®
O23 - Service: Dashlane Upgrade Service (Dashlane Upgrade Service) . (.Dashlane SAS - DashlaneUpgradeService.) - C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe =>.Dashlane®
O23 - Service: Dolby DAX2 API Service (DAX2API) . (.© 2016 Dolby Laboratories, Inc. All rights reserved. - DolbyDAX2API.) - C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe =>.Dolby Laboratories, Inc.®
O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxCUIService.exe =>.Intel(R) pGFX®
O23 - Service: Intel SST Parameter Service (IntelSSTSvc) . (.Intel Corporation - ParameterService.) - C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe =>.Intel Corporation
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc. - McAfee WebAdvisor.) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.®
O23 - Service: McAfee AP Service (McAPExe) . (.McAfee, Inc. - McAfee Access Protection.) - C:\Program Files\Common Files\McAfee\VSCore_15_7\mcapexe.exe =>.McAfee, Inc.®
O23 - Service: McAfee CSP Service (mccspsvc) . (.McAfee, Inc. - McAfee CSP Service Host.) - C:\Program Files\Common Files\McAfee\CSP\2.7.371.0\McCSPServiceHost.exe =>.McAfee, Inc.®
O23 - Service: McAfee Service Controller (mfemms) . (.McAfee LLC - McAfee Management Service.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.®
O23 - Service: McAfee Module Core Service (ModuleCoreService) . (.McAfee, Inc. - McAfee Module Core Service.) - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe =>.McAfee, Inc.®
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation®
O23 - Service: Intel Security PEF Service (PEFService) . (.Intel Security, Inc. - Intel Security PEF Service.) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc.®
O23 - Service: Avast SecureLine (SecureLine) . (...) - C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe =>.AVAST Software a.s.®

---\\ Services not Microsoft (SR=Run, SS=Stop) (39) - 6s
SR - Auto [04/10/2017] [ 105136] Amazon Assistant Service (Amazon Assistant Service) . (...) - C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe =>.Amazon Services LLC®
SR - Auto [26/06/2016] [ 355760] AtherosSvc (AtherosSvc) . (...) - C:\WINDOWS\System32\AdminService.exe =>.Qualcomm Atheros®
SR - Auto [18/05/2010] [ 345376] Bonjour Service (Bonjour Service) . (.Apple Inc..) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Auto [20/03/2017] [ 2278616] CCDMonitorService (CCDMonitorService) . (.Acer Incorporated.) - C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe =>.Acer Incorporated®
SS - Demand [21/09/2017] [ 1511728] ClientAnalyticsService (ClientAnalyticsService) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe =>.McAfee, Inc.®
SR - Demand [23/11/2016] [ 301528] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SS - Demand [23/11/2016] [ 480216] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\IntelCpHDCPSvc.exe =>.Intel(R) pGFX®
SR - Auto [24/06/2015] [ 75056] Dashlane Upgrade Service (Dashlane Upgrade Service) . (.Dashlane SAS.) - C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe =>.Dashlane®
SR - Auto [18/07/2016] [ 154816] Dolby DAX2 API Service (DAX2API) . (.© 2016 Dolby Laboratories, Inc. All rights reserved..) - C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe =>.Dolby Laboratories, Inc.®
SR - Demand [14/05/2015] [ 2573568] ePower Service (ePowerSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe =>.Acer Incorporated®
SR - Auto [14/04/2015] [ 373312] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc®
SS - Demand [16/12/2014] [ 265808] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc®
SR - Auto [23/11/2016] [ 341976] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxCUIService.exe =>.Intel(R) pGFX®
SS - Demand [22/05/2015] [ 881152] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SR - Demand [19/05/2015] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe =>.Intel Corporation
SR - Auto [12/07/2016] [ 26608] Intel SST Parameter Service (IntelSSTSvc) . (.Intel Corporation.) - C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe =>.Intel(R) Smart Sound Technology®
SS - Auto [19/05/2015] [ 7680] Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation
SR - Auto [18/09/2015] [ 207648] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SR - Auto [18/09/2015] [ 415520] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SR - Auto [19/01/2018] [ 604312] McAfee SiteAdvisor Service (McAfee SiteAdvisor Service) . (.McAfee, Inc..) - C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe =>.McAfee, Inc.®
SR - Auto [20/12/2017] [ 728808] McAfee AP Service (McAPExe) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\VSCore_15_7\mcapexe.exe =>.McAfee, Inc.®
SS - Demand [20/03/2015] [ 338208] McAfee Activation Service (McAWFwk) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe =>.McAfee, Inc.®
SR - Auto [14/12/2017] [ 2140888] McAfee CSP Service (mccspsvc) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\CSP\2.7.371.0\McCSPServiceHost.exe =>.McAfee, Inc.®
SS - Disabl [19/12/2017] [ 697288] McAfee OOBE Service2 (McOobeSv2) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe =>.McAfee, Inc.®
SS - Demand [29/09/2017] [ 357840] McAfee Firewall Core Service (mfefire) . (.McAfee LLC.) - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe =>.McAfee, Inc.®
SR - Auto [29/09/2017] [ 509904] McAfee Service Controller (mfemms) . (.McAfee LLC.) - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe =>.McAfee, Inc.®
SR - Demand [29/09/2017] [ 466384] McAfee Validation Trust Protection Service (mfevtp) . (.McAfee LLC.) - C:\Windows\system32\mfevtps.exe =>.McAfee, Inc.®
SR - Auto [19/12/2017] [ 1666224] McAfee Module Core Service (ModuleCoreService) . (.McAfee, Inc..) - C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe =>.McAfee, Inc.®
SS - Demand [14/02/2018] [ 194512] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [24/01/2018] [ 519240] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SS - Demand [24/01/2018] [ 519240] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe =>.NVIDIA Corporation®
SR - Auto [24/01/2018] [ 462920] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Auto [24/01/2018] [ 460872] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe =>.NVIDIA Corporation®
SR - Auto [24/09/2017] [ 1046456] Intel Security PEF Service (PEFService) . (.Intel Security, Inc..) - C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe =>.McAfee, Inc.®
SR - Demand [04/09/2015] [ 401248] Quick Access Local Service (QALSvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Quick Access\QALSvc.exe =>.Acer Incorporated®
SR - Demand [04/09/2015] [ 453984] Quick Access Service (QASvc) . (.Acer Incorporated.) - C:\Program Files\Acer\Acer Quick Access\QASvc.exe =>.Acer Incorporated®
SR - Auto [04/02/2018] [ 592392] Avast SecureLine (SecureLine) . (...) - C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe =>.AVAST Software a.s.®
SS - Demand [04/08/2015] [ 1770136] Thunderbolt(TM) Service (ThunderboltService) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe =>.Intel(R) Client Connectivity Division SW®
SR - Demand [27/05/2015] [ 247040] User Experience Improvement Program (UEIPSvc) . (.acer.) - C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe =>.Acer Incorporated®

---\\ Task Planned Automatically (Register) (28) - 1s
O38 - TASK: {00618C43-7C6C-4D46-9D98-0E11325AB307} [64Bits][\ACC] - (.(C) All rights reserved - LiveUpdate Checker.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2919840]
O38 - TASK: {091FE7B5-1E6C-4502-A3DC-FA4E5A9094A4} [64Bits][\Intel\Thunderbolt\Start Thunderbolt application on login if service is up] - (.Intel Corporation - Thunderbolt(TM) Software.) -- C:\Program Files (x86)\Intel\Thunderbolt Software\Thunderbolt.exe [346776] =>.Intel Corporation
O38 - TASK: {12B18B40-06B8-4201-99AE-60E72C8E2689} [64Bits][\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519240] =>.NVIDIA Corporation
O38 - TASK: {24CEF3E3-D749-4F6D-915E-1831FB956FD3} [64Bits][\Quick Access] - (.Acer Incorporated - QALauncher.) -- C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [383840] =>.Acer Incorporated
O38 - TASK: {2A3C5D29-963B-4D6C-AE04-BED13B1ADC38} [64Bits][\Avast SecureLine] - (.AVAST Software - SecureLine.) -- C:\Program Files\AVAST Software\SecureLine\SecureLine.exe [3438680] =>.AVAST Software
O38 - TASK: {2B6EEC65-2AE1-4A30-B999-146F462BF719} [64Bits][\Power Button] - (.Acer Incorporated - ePowerButton_NB.) -- C:\Program Files\Acer\Acer Power Management\ePowerButton_NB.exe [2770688] =>.Acer Incorporated
O38 - TASK: {37E69BD2-C277-4F7F-94A4-20261DA4FF39} [64Bits][\avast! SL Update] - (.AVAST Software - avast! SecureLine Update.) -- C:\Program Files\AVAST Software\SecureLine\slupdate.exe [863040] =>.AVAST Software
O38 - TASK: {3B45DC50-5E25-42EC-9DF9-F155B57DB428} [64Bits][\ACCBackgroundApplication] - (.(C)All rights reserved - ACCStd.) -- C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4644256]
O38 - TASK: {420F21E1-9D65-422D-A65A-CC6DE1743F1A} [64Bits][\UbtFrameworkService] - (.TODO: - TriggerFramework.) -- C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [216296]
O38 - TASK: {4B20C08E-D75D-4FCA-AEA7-C5328C4CC891} [64Bits][\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected] - (.Intel Corporation - Thunderbolt(TM) Software.) -- C:\Program Files (x86)\Intel\Thunderbolt Software\Thunderbolt.exe [346776] =>.Intel Corporation
O38 - TASK: {4FBC0105-ED0A-430A-8F94-45C00CF39F6C} [64Bits][\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056] =>.NVIDIA Corporation
O38 - TASK: {5695CDCA-639B-4C5C-BA51-6B68CF585548} [64Bits][\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040] =>.NVIDIA Corporation
O38 - TASK: {5C3FBF44-1BB8-4918-8BA1-4010172B4C39} [64Bits][\Software Update Application] - (.Acer Incorporated - ListCheck.) -- C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472928] =>.Acer Incorporated
O38 - TASK: {6156E0DF-6690-42C7-9B7D-BE1ED48E5572} [64Bits][\McAfee\DAD.Execute.Updates] - (.McAfee, Inc. - DAD Updater.) -- C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [1897616] =>.McAfee, Inc.
O38 - TASK: {6A01E6D5-B699-4A4B-A11C-93F0D2066BE3} [64Bits][\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA driver profile updater.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [660040] =>.NVIDIA Corporation
O38 - TASK: {6F7B048B-3DBA-4347-89CD-B6E97F094903} [64Bits][\McAfeeLogon] - (.McAfee, Inc. - McAfee.) -- C:\Program Files\Common Files\McAfee\platform\McUICnt.exe [745296] =>.McAfee, Inc.
O38 - TASK: {80454613-4CE4-43A0-8FEC-4C3F77E166AE} [64Bits][\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up] - (.Intel Corporation - Thunderbolt(TM) Service.) -- C:\Program Files (x86)\Intel\Thunderbolt Software\tbtsvc.exe [1770136] =>.Intel Corporation
O38 - TASK: {8CE82B20-3B4E-458A-A62D-EAE217BC12D1} [64Bits][\Power Management] - (.Acer Incorporated - ePowerTrayLauncher.) -- C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [384256] =>.Acer Incorporated
O38 - TASK: {9495295C-CD39-43B1-9DAB-37A672F8520F} [64Bits][\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA telemetry monitor.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [524360] =>.NVIDIA Corporation
O38 - TASK: {A40AAE8E-DA60-4185-9F0C-946B25224C1F} [64Bits][\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected] - (.Intel(R) - Start Thunderbolt service when hardware is .) -- C:\Program Files (x86)\Intel\Thunderbolt Software\sc.exe (.not file.) [0] (.Orphan.) =>.SUP.Orphan
O38 - TASK: {AB7632BA-97C4-41A4-B7B9-E3AFBB47A2BC} [64Bits][\ACCAgent] - (.(C) All rights reserved - LiveUpdate Agent.) -- C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [40288]
O38 - TASK: {AE4B5D00-AEE3-4DE5-9736-47633A1D09AB} [64Bits][\FUBTrackingByPLD] - (. - FubTracking.) -- C:\OEM\Preload\FubTracking\FubTracking.exe [30976]
O38 - TASK: {AFFA6791-6C0A-4CC4-94BC-C43A938627F4} [64Bits][\McAfee Remediation (Prepare)] - (.McAfee, Inc. - McAfee Installer.) -- C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [37713272] =>.McAfee, Inc.
O38 - TASK: {DECC7AA8-AD7D-41CA-9C98-B1F695149E0C} [64Bits][\AcerCloud] - (.Acer - Acer Portal.) -- C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2437920] =>.Acer
O38 - TASK: {ED681A4A-1FD9-4D0E-8B7D-F52730DD1769} [64Bits][\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA nodejs launcher.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [968264] =>.NVIDIA Corporation
O38 - TASK: {FD6F708A-D57E-44ED-8A19-3885700D7E0B} [64Bits][\BacKGroundAgent] - (.Acer Incorporated - Background Agent.) -- C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752] =>.Acer Incorporated
O38 - TASK: {FD81B1D7-995D-4705-A081-63F286A91EC1} [64Bits][\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA GeForce Experience.) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1930312] =>.NVIDIA Corporation
O38 - TASK: {FFE54D92-18B4-4000-B4E3-04D429D78702} [64Bits][\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (.NVIDIA Corporation - NVIDIA crash and telemetry reporter.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [746056] =>.NVIDIA Corporation

---\\ Auto loading programs from Registry and folders (7) - 1s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [RtHDVBg_Dolby] . (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp.®
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp.®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-2140218877-370500549-2138604128-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®

---\\ Process running (64) - 3s
[MD5.FD39DD4C2275AFC06DC366987F015856] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462920] [PID.1680] =>.NVIDIA Corporation®
[MD5.CE2942271F966C6FC274306C0E1E2506] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxCUIService.exe [341976] [PID.1156] =>.Intel(R) pGFX®
[MD5.00000000000000000000000000000000] - (.Intel Corporation - ParameterService.) -- C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [0] [PID.2328] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (. - Windows Setup API.) -- C:\WINDOWS\system32\AdminService.exe [0] [PID.3204] =>.Atheros
[MD5.CE9C99874E2D9EF6A1E4ECC9F9BD2F7A] - (. - AmazonAssistantService.) -- C:\Program Files (x86)\Amazon\Amazon Assistant\amazonAssistantService.exe [105136] [PID.4120] =>.Amazon Services LLC®
[MD5.5AB58C337AC65837FE404462AD6265AB] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe [345376] [PID.4128] =>.Apple Inc.®
[MD5.1229678A60A9AC5A4B0A15EEBE8FCC24] - (.Acer Incorporated - CCD Monitor Service.) -- C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2278616] [PID.4136] =>.Acer Incorporated®
[MD5.A9D9CAD73E628E21FDF08CA833B81268] - (.McAfee LLC - McAfee Management Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [509904] [PID.4244] =>.McAfee, Inc.®
[MD5.573DC0C23E5A1F5C5A88810DC32548BA] - (.McAfee, Inc. - McAfee Module Core Service.) -- c:\program files\common files\McAfee\modulecore\modulecoreservice.exe [1666224] [PID.4264] =>.McAfee, Inc.®
[MD5.7E422AD7479503D9F595899D0101664D] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [460872] [PID.4400] =>.NVIDIA Corporation®
[MD5.EA160DB2589350DFF52C7ACCD7763187] - (...) -- C:\Program Files\AVAST Software\SecureLine\vpnsvc.exe [592392] [PID.4444] =>.AVAST Software a.s.®
[MD5.50999D0BD02CEAC6A7B6BF6DB60A8AE5] - (.Intel Security, Inc. - Intel Security PEF Service.) -- C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1046456] [PID.4452] =>.McAfee, Inc.®
[MD5.9CCD75A3EE733584FB1B723C2CF72539] - (.McAfee, Inc. - McAfee Management Service Host.) -- C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe [493248] [PID.5080] =>.McAfee, Inc.®
[MD5.00000000000000000000000000000000] - (.McAfee LLC - McAfee Process Validation Service.) -- C:\Windows\system32\mfevtps.exe [0] [PID.5184] =>.McAfee LLC
[MD5.7B9C366C38E469267985988777EB1EF1] - (.McAfee LLC - McAfee Core Firewall Service.) -- C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [357840] [PID.7552] =>.McAfee, Inc.®
[MD5.1595A0DA6158E941DDCA40A2934AFA55] - (.Acer Incorporated - QASvc.) -- C:\Program Files\Acer\Acer Quick Access\QASvc.exe [453984] [PID.8576] =>.Acer Incorporated®
[MD5.4D1EF45DEA606CA10C8DE5725D70294A] - (.Acer Incorporated - QALSvc.) -- C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [401248] [PID.9076] =>.Acer Incorporated®
[MD5.484B8B0EE02587A6E52570C09A2057DF] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [604312] [PID.9672] =>.McAfee, Inc.®
[MD5.00000000000000000000000000000000] - (.McAfee LLC - McAfee Process Validation Service.) -- C:\Windows\system32\mfevtps.exe [0] [PID.9720] =>.McAfee LLC
[MD5.02997F80DF693ADF95536E48AAF1B404] - (.McAfee, Inc. - McAfee Access Protection.) -- C:\Program Files\Common Files\McAfee\VSCore_15_7\mcapexe.exe [728808] [PID.9788] =>.McAfee, Inc.®
[MD5.00070CDD3D533F289F428C34B1478E1E] - (.McAfee, Inc. - McAfee Cloud AV.) -- C:\Program Files\mcafee\MfeAV\MfeAVSvc.exe [3973296] [PID.9836] =>.McAfee, Inc.®
[MD5.656870CE3F9D7F62264F1B0ABE9AD335] - (.McAfee LLC. - McAfee Scanner service.) -- C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1715464] [PID.9664] =>.McAfee, Inc.®
[MD5.A395E144924334C6E9875F96A929D1AE] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\IntelCpHeciSvc.exe [301528] [PID.10536] =>.Intel(R) pGFX®
[MD5.A8E20F4E597B2FBE69384247F2564BE8] - (.McAfee, Inc. - McAfee CSP Service Host.) -- C:\Program Files\Common Files\McAfee\CSP\2.7.371.0\McCSPServiceHost.exe [2140888] [PID.10604] =>.McAfee, Inc.®
[MD5.B17FB7318D7CB8E315309F7484461369] - (.Acer Incorporated - ePowerSvc.) -- C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573568] [PID.6656] =>.Acer Incorporated®
[MD5.364DBCB7F09072EFD68A4D758579BDE6] - (.Acer Cloud Technology - AcerCloud Client.) -- C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe [9239768] [PID.3352] =>.Acer Incorporated®
[MD5.40AC93BBF9EF8AF973AD1F22E6668B91] - (.Dashlane SAS - DashlaneUpgradeService.) -- C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [75056] [PID.4564] =>.Dashlane®
[MD5.D519FF1E2DF36CD53BE76A16506D4CD4] - (.© 2016 Dolby Laboratories, Inc. All rights reserved. - DolbyDAX2API.) -- C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [154816] [PID.9028] =>.Dolby Laboratories, Inc.®
[MD5.D32DCD05E383D673F31FEB4442A52AA5] - (.WildTangent - WildTangent Games App Integration Service.) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [373312] [PID.10620] =>.WildTangent Inc®
[MD5.1D6E77475AF059458AB7E15034EE1F9D] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [207648] [PID.8348] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.258B7A8D42365472A184C064154F265F] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [415520] [PID.844] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.AD53262AFF486D28190439D3A59C80F7] - (.acer - UEIPSvc.) -- C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [247040] [PID.1712] =>.Acer Incorporated®
[MD5.8213094EA736A9C575AB0E22AD09B0BA] - (.Intel Corporation - Intel(R) Security Assist.) -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872] [PID.6232] =>.Intel Corporation
[MD5.780311733EA2AD29937EE6C1A4A56850] - (.McAfee, Inc. - McAfee ENT and INSTRU EXE.) -- C:\Program Files\Common Files\McAfee\platform\CommonBuild\McCBEntAndInstru.exe [1267976] [PID.6132] =>.McAfee, Inc.®
[MD5.F9D36F9392132D8028D52360B98B680B] - (.McAfee, Inc. - McAfee.) -- C:\Program Files\Common Files\McAfee\platform\McUICnt.exe [745296] [PID.1060] =>.McAfee, Inc.®
[MD5.FD39DD4C2275AFC06DC366987F015856] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462920] [PID.12228] =>.NVIDIA Corporation®
[MD5.67AEF2B31AF43FFEF702922493FA57E7] - (.McAfee, Inc. - McAfee WebAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [2208016] [PID.9252] =>.McAfee, Inc.®
[MD5.85C22B6CEE8D4BF798E05DE4DC54501C] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxEM.exe [523224] [PID.5208] =>.Intel(R) pGFX®
[MD5.F9D36F9392132D8028D52360B98B680B] - (.McAfee, Inc. - McAfee.) -- C:\Program Files\Common Files\McAfee\platform\McUICnt.exe [745296] [PID.13292] =>.McAfee, Inc.®
[MD5.F544E3EB8AB5B19AF535AACCB1752190] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1803.279.0_x64__kzf8qxf38zg5c\SkypeHost.exe [86528] [PID.13224] =>.Skype Technologies
[MD5.9B5E6CAE86F9384F52A1D6EA587B4400] - (.Acer Incorporated - QAAgent.) -- C:\Program Files\Acer\Acer Quick Access\QAAgent.exe [400224] [PID.12132] =>.Acer Incorporated®
[MD5.688C802EDA72F89F00AF1ADA842C3E12] - (.Acer Incorporated - QALockHandler.) -- C:\Program Files\Acer\Acer Quick Access\QALockHandler.exe [387936] [PID.13376] =>.Acer Incorporated®
[MD5.CAB5002DA3AED32F52FD023CA22C03FD] - (.Acer Incorporated - QAAdminAgent.) -- C:\Program Files\Acer\Acer Quick Access\QAAdminAgent.exe [525664] [PID.5816] =>.Acer Incorporated®
[MD5.C1C36E867617ABAE2B16A839C0A902BB] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1471488] [PID.11360] =>.Realtek Semiconductor Corp.®
[MD5.9B0469F26AC83BAE1561932F363EC529] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16704512] [PID.6476] =>.Realtek Semiconductor Corp.®
[MD5.5DAF33FC6EC8591F723B525FC3E451DD] - (...) -- C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [629248] [PID.11148]
[MD5.30730E5F04C6AE04B219307FF8EF608B] - (.Acer Incorporated - ePowerTray.) -- C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [5479680] [PID.1688] =>.Acer Incorporated®
[MD5.7B7428C160B3D03DE8F62974E341492C] - (.Intel Corporation - igfxext Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxext.exe [302552] [PID.6284] =>.Intel(R) pGFX®
[MD5.BB9135E1FD46E99949F644AA0D4329C0] - (.Acer Incorporated - ePowerEvent.) -- C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe [407296] [PID.11592] =>.Acer Incorporated®
[MD5.573DC0C23E5A1F5C5A88810DC32548BA] - (.McAfee, Inc. - McAfee Module Core Service.) -- c:\program files\common files\McAfee\modulecore\ModuleCoreService.exe [1666224] [PID.12360] =>.McAfee, Inc.®
[MD5.DBA34666ADB6ECA5197C6E727F9EF2F9] - (.AVAST Software - SecureLine.) -- C:\Program Files\AVAST Software\SecureLine\SecureLine.exe [3438680] [PID.8100] =>.AVAST Software a.s.®
[MD5.A93EA5ADEB55C7C5319902B471AC246C] - (.Acer Incorporated - Background Agent.) -- C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752] [PID.10100] =>.Acer Incorporated®
[MD5.E9F20B384C858FA30571DC04E89070F7] - (.Acer - Acer Portal.) -- C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe [2437920] [PID.7564] =>.Acer Incorporated®
[MD5.ACF2D0BF9E531E2AC7A921B084CF7D11] - (.(C)All rights reserved - ACCStd.) -- C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4644256] [PID.8844] =>.Acer Incorporated®
[MD5.F457C2D9698F46ED3BD1B6F4F15618F9] - (.Acer Incorporated - ePowerButton_NB.) -- C:\Program Files\Acer\Acer Power Management\ePowerButton_NB.exe [2770688] [PID.7716] =>.Acer Incorporated®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.9320] =>.Mozilla Corporation®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.13592] =>.Mozilla Corporation®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.11808] =>.Mozilla Corporation®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.8752] =>.Mozilla Corporation®
[MD5.A936CCC95C9E9F9F95224C7E30253AF5] - (.McAfee, Inc. - SiteAdvisor.) -- C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe [642344] [PID.6588] =>.McAfee, Inc.®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.5960] =>.Mozilla Corporation®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.11696] =>.Mozilla Corporation®
[MD5.22819EB3C648583352AE83003E4C9A56] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [439248] [PID.2348] =>.Mozilla Corporation®
[MD5.DB52BE842130E07CD6F167108C510981] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Pilote12549\Desktop\ZHPDiag3.exe [3016064] [PID.7508] =>.Nicolas Coolman

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (15) - 1s
P2 - EXT FILE: (.English (US) Language Pack", - Language pack for Firefox for en-US".) -- C:\Users\Pilote12549\AppData\Roaming\Mozilla\Firefox\Profiles\8ie13jd1.default\extensions\langpack-en-US@firefox.mozilla.org.xpi
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT: (.mozilla.org - English (US) Language Pack.) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-en-US@firefox.mozilla.org =>.mozilla.org
P2 - EXT: (.Mozilla - Mozilla Partner Defaults.) -- C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\partnerdefaults@mozilla.com =>.Mozilla
P2 - EXT: (.Mozilla - Mozilla Partner Defaults.) -- C:\Users\Pilote12549\AppData\Roaming\Mozilla\Firefox\Profiles\8ie13jd1.default\extensions\partnerdefaults@mozilla.com =>.Mozilla
P2 - FPN: [HKLM] [@mcafee.com/MSC,version=10] - (.McAfee Total Protection MIME Plugin.) -- c:\Program Files (x86)\McAfee\msc\npMcSnFFPl.dll =>.McAfee Total Protection MIME Plugin
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent

---\\ Internet Explorer Extensions, Start, Search (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://acer15.msn.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer15.msn.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.16299.15 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ Internet Explorer, Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ Browser Helper Object (BHO) (1) - 0s
O2 - BHO: McAfee WebAdvisor BHO [64Bits] - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll =>.McAfee, Inc.®

---\\ Global shortcuts Startup (91) - 3s
O4 - GS\Desktop [Administrator]: Active Sky 2016 for P3D.lnk . (.HiFi Technologies, Inc. - Active Sky 2016 for P3D.) C:\Program Files (x86)\HiFi\AS16_P3D\AS16.exe {0E38A718E5F1951B} =>.HiFi Technologies, Inc.
O4 - GS\Desktop [Administrator]: App Explorer.lnk . (.SweetLabs, Inc - Host App Service.) C:\Users\Pilote12549\AppData\Local\Host App Service\Engine\HostAppService.exe /OPEN"4efc125e5bdfe64bf86cc73a85a9d56ebf10231c" =>.SweetLabs Inc.®
O4 - GS\Desktop [Administrator]: Dashlane Password Manager.lnk . (.Dashlane SAS - DashlaneDownloader.) C:\Program Files (x86)\Dashlane\Upgrade\DashlaneDownloader.exe =>.Dashlane®
O4 - GS\Desktop [Administrator]: Teamspeak 2 RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Pilote12549\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Administrator]: Acer Portal.lnk . (.Acer - Acer Portal.) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe =>.Acer Incorporated®
O4 - GS\TaskBar [Administrator]: Acer Quick Access.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Acer\Acer Quick Access\QuickAccess.exe =>.Acer Incorporated
O4 - GS\TaskBar [Administrator]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrator]: Teamspeak RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Programs [Administrator]: HD Audio Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor
O4 - GS\Programs [Administrator]: McAfee WebAdvisor.lnk . (.McAfee, Inc. - McAfee WebAdvisor.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe =>.McAfee, Inc.®
O4 - GS\Programs [Administrator]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Guest]: Active Sky 2016 for P3D.lnk . (.HiFi Technologies, Inc. - Active Sky 2016 for P3D.) C:\Program Files (x86)\HiFi\AS16_P3D\AS16.exe {0E38A718E5F1951B} =>.HiFi Technologies, Inc.
O4 - GS\Desktop [Guest]: App Explorer.lnk . (.SweetLabs, Inc - Host App Service.) C:\Users\Pilote12549\AppData\Local\Host App Service\Engine\HostAppService.exe /OPEN"4efc125e5bdfe64bf86cc73a85a9d56ebf10231c" =>.SweetLabs Inc.®
O4 - GS\Desktop [Guest]: Dashlane Password Manager.lnk . (.Dashlane SAS - DashlaneDownloader.) C:\Program Files (x86)\Dashlane\Upgrade\DashlaneDownloader.exe =>.Dashlane®
O4 - GS\Desktop [Guest]: Teamspeak 2 RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Pilote12549\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Guest]: Acer Portal.lnk . (.Acer - Acer Portal.) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe =>.Acer Incorporated®
O4 - GS\TaskBar [Guest]: Acer Quick Access.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Acer\Acer Quick Access\QuickAccess.exe =>.Acer Incorporated
O4 - GS\TaskBar [Guest]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Guest]: Teamspeak RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Programs [Guest]: HD Audio Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor
O4 - GS\Programs [Guest]: McAfee WebAdvisor.lnk . (.McAfee, Inc. - McAfee WebAdvisor.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe =>.McAfee, Inc.®
O4 - GS\Programs [Guest]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [Pilote12549]: Active Sky 2016 for P3D.lnk . (.HiFi Technologies, Inc. - Active Sky 2016 for P3D.) C:\Program Files (x86)\HiFi\AS16_P3D\AS16.exe {0E38A718E5F1951B} =>.HiFi Technologies, Inc.
O4 - GS\Desktop [Pilote12549]: App Explorer.lnk . (.SweetLabs, Inc - Host App Service.) C:\Users\Pilote12549\AppData\Local\Host App Service\Engine\HostAppService.exe /OPEN"4efc125e5bdfe64bf86cc73a85a9d56ebf10231c" =>.SweetLabs Inc.®
O4 - GS\Desktop [Pilote12549]: Dashlane Password Manager.lnk . (.Dashlane SAS - DashlaneDownloader.) C:\Program Files (x86)\Dashlane\Upgrade\DashlaneDownloader.exe =>.Dashlane®
O4 - GS\Desktop [Pilote12549]: Teamspeak 2 RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Desktop [Pilote12549]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Pilote12549\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\sendTo [Pilote12549]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Pilote12549]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Pilote12549]: Acer Portal.lnk . (.Acer - Acer Portal.) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe =>.Acer Incorporated®
O4 - GS\TaskBar [Pilote12549]: Acer Quick Access.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Acer\Acer Quick Access\QuickAccess.exe =>.Acer Incorporated
O4 - GS\TaskBar [Pilote12549]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Pilote12549]: Teamspeak RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Programs [Pilote12549]: HD Audio Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor
O4 - GS\Programs [Pilote12549]: McAfee WebAdvisor.lnk . (.McAfee, Inc. - McAfee WebAdvisor.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe =>.McAfee, Inc.®
O4 - GS\Programs [Pilote12549]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [WDAGUtilityAccount]: Active Sky 2016 for P3D.lnk . (.HiFi Technologies, Inc. - Active Sky 2016 for P3D.) C:\Program Files (x86)\HiFi\AS16_P3D\AS16.exe {0E38A718E5F1951B} =>.HiFi Technologies, Inc.
O4 - GS\Desktop [WDAGUtilityAccount]: App Explorer.lnk . (.SweetLabs, Inc - Host App Service.) C:\Users\Pilote12549\AppData\Local\Host App Service\Engine\HostAppService.exe /OPEN"4efc125e5bdfe64bf86cc73a85a9d56ebf10231c" =>.SweetLabs Inc.®
O4 - GS\Desktop [WDAGUtilityAccount]: Dashlane Password Manager.lnk . (.Dashlane SAS - DashlaneDownloader.) C:\Program Files (x86)\Dashlane\Upgrade\DashlaneDownloader.exe =>.Dashlane®
O4 - GS\Desktop [WDAGUtilityAccount]: Teamspeak 2 RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Pilote12549\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\sendTo [WDAGUtilityAccount]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [WDAGUtilityAccount]: Acer Portal.lnk . (.Acer - Acer Portal.) C:\Program Files (x86)\Acer\Acer Portal\AcerPortal.exe =>.Acer Incorporated®
O4 - GS\TaskBar [WDAGUtilityAccount]: Acer Quick Access.lnk . (.Acer Incorporated - .) C:\Program Files (x86)\Acer\Acer Quick Access\QuickAccess.exe =>.Acer Incorporated
O4 - GS\TaskBar [WDAGUtilityAccount]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [WDAGUtilityAccount]: Teamspeak RC2.lnk . (.Dominating Bytes Design - The TeamSpeak 2 client.) C:\Program Files (x86)\IVAO\IvAp v2\ts2\TeamSpeak.exe =>.Dominating Bytes Design
O4 - GS\Programs [WDAGUtilityAccount]: HD Audio Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor
O4 - GS\Programs [WDAGUtilityAccount]: McAfee WebAdvisor.lnk . (.McAfee, Inc. - McAfee WebAdvisor.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe =>.McAfee, Inc.®
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Acer Care Center.lnk . (.(C) All rights reserved - Care Center.) C:\Program Files (x86)\Acer\Care Center\CareCenter.exe =>.Acer Incorporated®
O4 - GS\CommonDesktop [Public]: Acheter en ligne.lnk . (...) C:\Program Files (x86)\Accessory Store\StartUrl.exe http://go.acer.com/
O4 - GS\CommonDesktop [Public]: AirHauler 2.lnk . (.V1 Software - AirHauler 2.) C:\Program Files (x86)\Just Flight\AirHauler 2\AirHauler2.exe
O4 - GS\CommonDesktop [Public]: Booking.com.lnk . (...) C:\Program Files (x86)\Booking.COM\StartURL.exe http://www.booking.com/
O4 - GS\CommonDesktop [Public]: eBay.lnk . (...) c:\WINDOWS\Installer\{3DC26EA7-03E3-4353-9424-EEB7A34A7504}\_697C8F93ABDF89FB4ABDD9.exe
O4 - GS\CommonDesktop [Public]: FSDT GSX Manual.lnk . (...) C:\Program Files (x86)\Addon Manager\couatl\GSX\GSX_manual.pdf
O4 - GS\CommonDesktop [Public]: FSDT Installation Guide.lnk . (...) C:\Program Files (x86)\Addon Manager\FSdt_install_guide.pdf
O4 - GS\CommonDesktop [Public]: FSDT Live Update.lnk . (.VIRTUALI Sagl - FSDreamTeam Updater.) C:\Program Files (x86)\Addon Manager\Couatl_Updater.exe {32C34168EB3AB2DFED83FF99DF414D69} =>.VIRTUALI Sagl
O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - NVIDIA GeForce Experience.) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe =>.NVIDIA Corporation®
O4 - GS\CommonDesktop [Public]: Navigraph Charts Desktop.lnk . (.Navigraph - Navigraph Charts Desktop.) C:\Program Files (x86)\Navigraph\Charts Desktop\NavigraphChartsDesktop.exe {5B22BBAFF7DEA4C523DF44FF51F1B12D} =>.Navigraph
O4 - GS\CommonDesktop [Public]: Prepar3D v3.lnk . (.Lockheed Martin® - Prepar3D exe.) C:\Program Files (x86)\Lockheed Martin\Prepar3D v3\Prepar3D.exe =>.Lockheed Martin®
O4 - GS\Programs [Public]: HD Audio Manager.lnk . (.Realtek Semiconductor - .) C:\Program Files (x86)\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor
O4 - GS\Programs [Public]: McAfee WebAdvisor.lnk . (.McAfee, Inc. - McAfee WebAdvisor.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe =>.McAfee, Inc.®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Pilote12549\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Steps Recorder.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: App Explorer.lnk . (.SweetLabs, Inc - Host App Service.) C:\Users\Pilote12549\AppData\Local\Host App Service\Engine\HostAppService.exe /OPEN"4efc125e5bdfe64bf86cc73a85a9d56ebf10231c" =>.SweetLabs Inc.®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Office.lnk . (.Microsoft Corporation - Microsoft Office.) C:\Program Files (x86)\Microsoft Office\Office15\FIRSTRUN.EXE /OEMTA =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Navigraph Charts Desktop.lnk . (.Navigraph - Navigraph Charts Desktop.) C:\Program Files (x86)\Navigraph\Charts Desktop\NavigraphChartsDesktop.exe {5B22BBAFF7DEA4C523DF44FF51F1B12D} =>.Navigraph
O4 - GS\ProgramsCommon [Public]: Navigraph Simlink.lnk . (.Navigraph - Navigraph Simlink.) C:\Program Files (x86)\Navigraph\Simlink\NavigraphSimlink.exe {5B22BBAFF7DEA4C523DF44FF51F1B12D} =>.Navigraph
O4 - GS\ProgramsCommon [Public]: WildTangent Games App - acer.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp ACERlt =>.WildTangent Inc®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation

---\\ Lop.com/Domain Hijackers (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{ab32c796-3c24-4e8f-8b8c-21e05b77f87c}: DhcpNameServer = 192.168.43.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{f7d90cf6-be46-4d16-b64e-a31eade0e2f5}: DhcpNameServer = 192.17.128.24 =>.USA Urbana University Of Illinois

---\\ Extra protocols (24) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: sacore [64Bits] - {5513F07E-936B-4E52-9B00-067394E91CC5} . (.McAfee, Inc. - WebAdvisor.) -- c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll =>.McAfee, Inc.®
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-mfe-ipt [64Bits] - {3EF5086B-5478-4598-A054-786C45D75692} . (.McAfee, Inc. - McAfee MSC IE plugin DLL.) -- c:\Program Files\mcafee\msc\McSnIePl64.dll =>.McAfee, Inc.®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation

---\\ Software installed (115) - 6s
O42 - Logiciel: 12 Labours of Hercules III: Girl Power - (.WildTangent.) [HKLM][64Bits] -- WTA-ee961eac-160b-4b13-a691-a35f85301a1e =>.WildTangent Inc®
O42 - Logiciel: abFiles - (.Acer Incorporated.) [HKLM][64Bits] -- {13885028-098C-4799-9B71-27DAC96502D5} =>.Acer Incorporated®
O42 - Logiciel: abPhoto - (.Acer Incorporated.) [HKLM][64Bits] -- {B5AD89F2-03D3-4206-8487-018298007DD0} =>.Acer Incorporated®
O42 - Logiciel: Acer Care Center - (.Acer Incorporated.) [HKLM][64Bits] -- {1AF41E84-3408-499A-8C93-8891F0612719} =>.Acer Incorporated
O42 - Logiciel: Acer Explorer Agent - (.Acer Incorporated.) [HKLM][64Bits] -- {4D0F42CF-1693-43D9-BDC8-19141D023EE0} =>.Acer Incorporated
O42 - Logiciel: Acer Portal - (.Acer Incorporated.) [HKLM][64Bits] -- {A5AD0B17-F34D-49BE-A157-C8B3D52ACD13} =>.Acer Incorporated®
O42 - Logiciel: Acer Power Management - (.Acer Incorporated.) [HKLM][64Bits] -- {91F52DE4-B789-42B0-9311-A349F10E5479} =>.Acer Incorporated
O42 - Logiciel: Acer Quick Access - (.Acer Incorporated.) [HKLM][64Bits] -- {E3678E72-78E3-4F91-A9FB-913876FF6DA2} =>.Acer Incorporated
O42 - Logiciel: Acer UEIP Framework - (.Acer Incorporated.) [HKLM][64Bits] -- {12A718F2-2357-4D41-9E1F-18583A4745F7} =>.Acer Incorporated
O42 - Logiciel: Active Sky 2016 for P3D - (.HiFi Technologies, Inc..) [HKLM][64Bits] -- {d0b0a249-0f47-46a8-a765-1d2601fd6e94}_is1 {0E38A718E5F1951B} =>.HiFi Technologies, Inc.
O42 - Logiciel: Aerosoft's - Airbus A320-A321 - PREPAR3D V3.x - (.Aerosoft.) [HKLM][64Bits] -- Airbus A320-A321 - PREPAR3D V3.x {0B8A36719AD5F149D98383C529B8142A} =>.aerosoft
O42 - Logiciel: AirHauler 2 - (.Just Flight.) [HKLM][64Bits] -- {F60FBDCF-DEA7-406E-B68D-E8F5464CCD77} =>.InstallShield Software Corporation®
O42 - Logiciel: ALC441X FSX/P3D - (.Alabeo.) [HKLM][64Bits] -- ALC441X FSX/P3D =>.Alabeo
O42 - Logiciel: Amazon Assistant - (.Amazon.) [HKLM][64Bits] -- {EDA2A064-F600-47BA-9EBA-58BE807BF6D2} =>.Amazon
O42 - Logiciel: AOP Framework - (.Acer Incorporated.) [HKLM][64Bits] -- {4A37A114-702F-4055-A4B6-16571D4A5353} =>.Acer Incorporated®
O42 - Logiciel: ASConnect 2016 for P3D Installer - (.HiFi Technologies, Inc..) [HKLM][64Bits] -- {137aeb26-3d74-400c-bdbe-a33a0663b5c4}_is1 {0E38A718E5F1951B} =>.HiFi Technologies, Inc.
O42 - Logiciel: Avast SecureLine - (.AVAST Software.) [HKLM][64Bits] -- {2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5}_is1 =>.AVAST Software a.s.®
O42 - Logiciel: B1900D HD SERIES FSX/P3D - (.Carenado.) [HKLM][64Bits] -- B1900D HD SERIES FSX/P3D =>.Carenado
O42 - Logiciel: BE1100X FSX/P3D/STEAM - (.Carenado.) [HKLM][64Bits] -- BE1100X FSX/P3D/STEAM =>.Carenado
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {B91110FB-33B4-468B-90C2-4D5E8AE3FAE1} =>.Apple Inc.
O42 - Logiciel: Dashlane Upgrade Service - (.Dashlane SAS.) [HKLM][64Bits] -- Dashlane Upgrade Service =>.Dashlane®
O42 - Logiciel: DisplayDriverAnalyzer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer =>.NVIDIA Corporation
O42 - Logiciel: Dolby Audio X2 Windows API SDK - (.Dolby Laboratories, Inc..) [HKLM][64Bits] -- {2A027A37-B09B-44FB-B1C9-2DD6BA0014E8} =>.Dolby Laboratories, Inc.
O42 - Logiciel: Dolby Audio X2 Windows APP - (.Dolby Laboratories, Inc..) [HKLM][64Bits] -- {7DA57EF8-9D20-4126-AF15-D0CC97D0C017} =>.Dolby Laboratories, Inc.
O42 - Logiciel: DriverSetupUtility - (.Acer Incorporated.) [HKLM][64Bits] -- {2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6} =>.Acer Incorporated
O42 - Logiciel: eBay Worldwide - (.OEM.) [HKLM][64Bits] -- {3DC26EA7-03E3-4353-9424-EEB7A34A7504} =>.OEM
O42 - Logiciel: Foxit PhantomPDF - (.Foxit Software Inc..) [HKLM][64Bits] -- {A4023BDF-82D5-412D-9D58-8C2819EBFE2E} =>.Foxit Software Inc.
O42 - Logiciel: FSDreamTeam GSX version 2.2.0.4 - (.VIRTUALI Sagl.) [HKLM][64Bits] -- FSDreamTeam GSX_is1 =>.VIRTUALI Sagl
O42 - Logiciel: FsPassengersP3D for Prepar3D - (.SecondReality Software.) [HKLM][64Bits] -- FsPassengersP3D =>.SecondReality Software s.a.r.l®
O42 - Logiciel: Game Explorer Categories - genres - (.WildTangent, Inc..) [HKLM][64Bits] -- WildTangentGameProvider-acer-genres =>.WildTangent, Inc.
O42 - Logiciel: Game Explorer Categories - main - (.WildTangent, Inc..) [HKLM][64Bits] -- WildTangentGameProvider-acer-main =>.WildTangent, Inc.
O42 - Logiciel: Home Makeover - (.WildTangent.) [HKLM][64Bits] -- WTA-2225b057-5e44-474a-bc60-d2ce55caaaf6 =>.WildTangent Inc®
O42 - Logiciel: HS-748 Propliner for Prepar3D V3 - (.Just Flight.) [HKLM][64Bits] -- {DF016669-6C34-4945-A013-54840B50C892} =>.InstallShield Software Corporation®
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {7EEC6C54-5441-472A-8792-A5185CC17DF1} =>.Intel Corporation
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {846DE3C3-F079-4E2D-AE25-74D2B62B1D9F} =>.Intel Corporation
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {D622E3AC-0583-4CEC-9455-8B9139C7B4A2} =>.Intel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX®
O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {96CDD845-6C53-4DFB-B26F-A711FA439E1E} =>.Intel Corporation
O42 - Logiciel: Intel(R) Serial IO - (.Intel Corporation.) [HKLM][64Bits] -- {9FD91C5C-44AE-4D9D-85BE-AE52816B0294} =>.Intel Corporation
O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] -- {4B230374-6475-4A73-BA6E-41015E9C5013} =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {7D84E343-A23D-451C-B123-0195B2D903A6} =>.Intel Corporation
O42 - Logiciel: IvAp v2.0.2 (build 2773) - (.IVAO.) [HKLM][64Bits] -- IvAp-v2_is1 =>.IVAO
O42 - Logiciel: Jewel Match 3 - (.WildTangent.) [HKLM][64Bits] -- WTA-0d294a76-9d60-416e-9a2a-c1d0d332df5c =>.WildTangent Inc®
O42 - Logiciel: Jewel Match Snowscapes - (.WildTangent.) [HKLM][64Bits] -- WTA-c9e57160-f096-42bf-b1d4-c8951b0efd39 =>.WildTangent Inc®
O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {fb610cea-ba50-4d4b-a717-cf025419035c} =>.Intel(R) Software and Firmware Products®
O42 - Logiciel: Logiciel Thunderbolt(TM) - (.Intel Corporation.) [HKLM][64Bits] -- {5B88BE64-93E7-4D6B-83D0-37B911166FF2} =>.Intel Corporation
O42 - Logiciel: Magic Academy - (.WildTangent.) [HKLM][64Bits] -- WTA-e86aab4e-cc5a-4b53-99d9-aa33390b821e =>.WildTangent Inc®
O42 - Logiciel: McAfee LiveSafe - (.McAfee, Inc..) [HKLM][64Bits] -- MSC =>.McAfee, Inc.®
O42 - Logiciel: McAfee WebAdvisor - (.McAfee, Inc..) [HKLM][64Bits] -- {35ED3F83-4BDC-4c44-8EC6-6A8301C7413A} =>.McAfee, Inc.®
O42 - Logiciel: Microsoft Flight Simulator SimConnect Client v10.0.60905.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Flight Simulator SimConnect Client v10.0.61242.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {85DF6786-66AA-42EE-8616-AE456B07BD99} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Flight Simulator SimConnect Client v10.0.61259.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D61CA184-3F6D-4A50-B2CC-7A18447D6A8D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtensio - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0169E83-757B-EF66-E2F0-391944D785BC} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Mozilla Firefox 58.0.2 (x64 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 58.0.2 (x64 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Navigraph Charts Desktop 6.0.19.1219 - (.Navigraph.) [HKLM][64Bits] -- {A2CFEB97-9771-4B47-9BDF-EC91D5351652}}_is1 {5B22BBAFF7DEA4C523DF44FF51F1B12D} =>.Navigraph
O42 - Logiciel: Navigraph Simlink 1.0.19.1219 - (.Navigraph.) [HKLM][64Bits] -- {E5431A0D-8735-4E89-9E41-D820334B2909}}_is1 {5B22BBAFF7DEA4C523DF44FF51F1B12D} =>.Navigraph
O42 - Logiciel: NVIDIA Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Control Panel 390.77 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA GeForce Experience 3.12.0.84 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Graphics Driver 390.77 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA NodeJS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Optimus Update 31.0.11.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA PhysX System Software 9.17.0524 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA ShadowPlay 3.12.0.84 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation
O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA TelemetryApi helper for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update 31.0.11.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Audio 4.04.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Virtual Host Controller - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation
O42 - Logiciel: Polar Bowler 1st Frame - (.WildTangent.) [HKLM][64Bits] -- WTA-21e19a8a-1304-432a-8b73-5d2f118abe93 =>.WildTangent Inc®
O42 - Logiciel: Prepar3D v3 Academic - (.Lockheed Martin.) [HKLM][64Bits] -- {cdd40cf2-9726-4eaf-b3b0-b6fb6b0884e8} =>.Lockheed Martin
O42 - Logiciel: Prepar3D v3 Academic Client - (.Lockheed Martin.) [HKLM][64Bits] -- {213CD124-D688-436D-9BD8-FFB56DC830BE} =>.Lockheed Martin
O42 - Logiciel: Prepar3D v3 Content - (.Lockheed Martin.) [HKLM][64Bits] -- {CE8E65FC-9BE3-438A-8449-BCD5E8ACC6BE} =>.Lockheed Martin
O42 - Logiciel: Prepar3D v3 Scenery - (.Lockheed Martin.) [HKLM][64Bits] -- {3F2CF900-1437-4F93-9ABF-07B8B80E37DA} =>.Lockheed Martin
O42 - Logiciel: Qualcomm Atheros 11ac Wireless LAN&Bluetooth Installer - (.Qualcomm Atheros.) [HKLM][64Bits] -- {3241744A-BA36-41F0-B4AA-EF3946D00632} =>.Qualcomm Atheros®
O42 - Logiciel: RAAS Professional by FS2Crew (LOCKED) P3D V3 - (..) [HKLM][64Bits] -- RAAS Professional by FS2Crew (LOCKED) P3D V3
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Rory's Restaurant - (.WildTangent.) [HKLM][64Bits] -- WTA-2b144f67-0846-494b-a0e0-d538b1dfc27a =>.WildTangent Inc®
O42 - Logiciel: Runefall - (.WildTangent.) [HKLM][64Bits] -- WTA-8d39958d-2af1-4131-a677-34804a50b945 =>.WildTangent Inc®
O42 - Logiciel: SimObject Display Engine - (.12bPilot.) [HKLM][64Bits] -- {CF01DDCE-487C-40D1-A798-BE842515661D} =>.12bPilot
O42 - Logiciel: Sky AI Traffic P3D 2.0 versión 2.0 - (.Sky AI Traffic.) [HKLM][64Bits] -- {33063246-4819-4224-85F9-4B050D32DAD9}_is1
O42 - Logiciel: TeamSpeak 2 RC2 - (.Dominating Bytes Design.) [HKLM][64Bits] -- Teamspeak 2 RC2_is1 =>.Dominating Bytes Design
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9C4F3AF4-21D8-43BD-A69C-517BB96012CF} =>.Microsoft Corporation
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc®
O42 - Logiciel: Vegas World - (.WildTangent.) [HKLM][64Bits] -- WildTangentGDF-acer-vegasworld =>.WildTangent Inc
O42 - Logiciel: Villagers and Heroes - (.WildTangent.) [HKLM][64Bits] -- WildTangentGDF-acer-villagersandheroes =>.WildTangent Inc
O42 - Logiciel: Vulkan Run Time Libraries 1.0.65.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.65.0 =>.LunarG, Inc.®
O42 - Logiciel: WildTangent Games - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent Inc®
O42 - Logiciel: WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer =>.WildTangent Inc®
O42 - Logiciel: Windows Setup Remediations (x64) (KB4023057) - (..) [HKLM][64Bits] -- {5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb
O42 - Logiciel: WinRAR 5.50 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®

---\\ HKCU & HKLM Software Keys (105) - 6s
HKLM\SOFTWARE\12bPilot =>.12bPilot
HKLM\SOFTWARE\Acer =>.Acer
HKLM\SOFTWARE\Aerosoft =>.aerosoft
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\ATHEROS =>.Qualcomm Atheros
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Clearfi =>.Samsung Electronics
HKLM\SOFTWARE\DashlaneUpgrade =>.Dashlane, Inc
HKLM\SOFTWARE\eSellerate =>.eSellerate
HKLM\SOFTWARE\Florenc
HKLM\SOFTWARE\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\HiFi
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Just Flight =>.Just Flight
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Lockheed Martin =>.Lockheed Martin
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Mastertronic =>.Mastertronic
HKLM\SOFTWARE\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Network Associates =>.Network Associates
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\Qualcomm Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\SiteAdvisor =>.McAfee Inc.
HKLM\SOFTWARE\WildTangent =>.WildTangent
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\12bPilot =>.12bPilot
HKLM\SOFTWARE\WOW6432Node\Acer =>.Acer
HKLM\SOFTWARE\WOW6432Node\Aerosoft =>.aerosoft
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\ATHEROS =>.Qualcomm Atheros
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\Clearfi =>.Samsung Electronics
HKLM\SOFTWARE\WOW6432Node\DashlaneUpgrade =>.Dashlane, Inc
HKLM\SOFTWARE\WOW6432Node\eSellerate =>.eSellerate
HKLM\SOFTWARE\WOW6432Node\Florenc
HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\HiFi
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Just Flight =>.Just Flight
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Lockheed Martin =>.Lockheed Martin
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Mastertronic =>.Mastertronic
HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\McAfee.com =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\Network Associates =>.Network Associates
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OEM =>.OEM
HKLM\SOFTWARE\WOW6432Node\Qualcomm Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\SiteAdvisor =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent
HKLM\SOFTWARE\WOW6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\12bPilot =>.12bPilot
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\DashlaneUpgrade =>.Dashlane, Inc
HKCU\SOFTWARE\eSellerate =>.eSellerate
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\FSDreamTeam
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\HiFi
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\Lockheed Martin =>.Lockheed Martin
HKCU\SOFTWARE\LockheedMartin =>.Thomas Ruth
HKCU\SOFTWARE\McAfee =>.McAfee Inc.
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\OEM =>.OEM
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\Amazon =>.Amazon

---\\ Contents of the Common Files folders (221) - 8s
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\Accessory Store =>.Acer Incorporated®
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\Acer =>.Acer Incorporated®
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software a.s.®
O43 - CFD: 04/02/2018 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\Booking.COM =>.Acer Incorporated®
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Dolby =>.Dolby
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\DriverSetupUtility =>.Acer Incorporated®
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation
O43 - CFD: 08/02/2018 - [] AD -- C:\Program Files\mcafee =>.McAfee
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files\mcafee.com =>.McAfee Inc.
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation®
O43 - CFD: 04/11/2015 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/02/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files (x86)\12bPilot =>.12bPilot
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Acer =>.Acer Incorporated®
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files (x86)\Addon Manager {32C34168EB3AB2DFED83FF99DF414D69}
O43 - CFD: 07/02/2018 - [] D -- C:\Program Files (x86)\Amazon =>.Amazon Services LLC®
O43 - CFD: 04/02/2018 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Dashlane =>.Dashlane®
O43 - CFD: 04/02/2018 - [] AD -- C:\Program Files (x86)\Foxit PhantomPDF =>.Foxit Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\HiFi {0E38A718E5F1951B}
O43 - CFD: 14/02/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\IVAO =>.IVAO
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Just Flight =>.Just Flight
O43 - CFD: 20/02/2018 - [] D -- C:\Program Files (x86)\LastChaosFR
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Lockheed Martin =>.Lockheed Martin
O43 - CFD: 08/02/2018 - [] D -- C:\Program Files (x86)\McAfee =>.McAfee
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\mcafee.com =>.McAfee Inc.
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files (x86)\Navigraph {5B22BBAFF7DEA4C523DF44FF51F1B12D} =>.Navigraph
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\OEM =>.OEM
O43 - CFD: 04/02/2018 - [] AD -- C:\Program Files (x86)\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 25/03/2016 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc
O43 - CFD: 04/02/2018 - [] AD -- C:\Program Files (x86)\WildGames =>.WildTangent Inc®
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] AD -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer =>.Acer
O43 - CFD: 15/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft - Airbus A320-A321 - PREPAR3D V3.x
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software =>.AVAST Software
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby =>.Dolby
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF =>.Foxit Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FS2Crew2012
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSDreamTeam
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FsPassengersP3D
O43 - CFD: 15/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiFi
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IVAO =>.IVAO
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Just Flight =>.Just Flight
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lockheed Martin =>.Lockheed Martin
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logiciel Thunderbolt(TM)
O43 - CFD: 29/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 22/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee =>.McAfee
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimObject Display Engine
O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 30/10/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Teamspeak2 RC2 =>.TeamSpeak
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\12bPilot =>.12bPilot
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Acer =>.Acer
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 14/02/2018 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Dashlane =>.Dashlane
O43 - CFD: 14/02/2018 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Dolby =>.Dolby
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\DriverSetupUtility
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Esellerate =>.eSellerate
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Intel Security =>.Intel Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Lockheed Martin =>.Lockheed Martin
O43 - CFD: 20/02/2018 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 14/02/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 22/02/2018 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 04/02/2018 - [] HD -- C:\ProgramData\O949
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\OEM =>.OEM
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\OEM_YAHOO =>.OEM Yahoo
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\rtkSSTSetting =>.Realtek Semiconductor Corp.
O43 - CFD: 29/09/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 14/02/2018 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\ProgramData\Virtuali
O43 - CFD: 04/02/2018 - [] D -- C:\ProgramData\WildTangent =>.WildTangent
O43 - CFD: 29/09/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] HDC -- C:\ProgramData\{2B89F58C-32F7-46EC-A448-AECDF1F22B7B}
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Qualcomm Atheros
O43 - CFD: 14/02/2018 - [0] D -- C:\Program Files (x86)\Common Files\eSellerate =>.eSellerate
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files (x86)\Common Files\McAfee =>.McAfee
O43 - CFD: 15/02/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Program Files (x86)\Common Files\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\AVAST Software =>.AVAST Software
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Hifi
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\IVAO =>.IVAO
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Lockheed Martin =>.Lockheed Martin
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/02/2018 - [] SD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 08/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 06/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Navigraph =>.Navigraph
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\RAASPRO
O43 - CFD: 07/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\teamspeak2 =>.TeamSpeak
O43 - CFD: 15/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Virtuali
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 22/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\AOP SDK =>.Acer Inc.
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Pilote12549\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\CareCenter =>.Acer Inc.
O43 - CFD: 06/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\clear.fi =>.CyberLink Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] D -- C:\Users\Pilote12549\AppData\Local\DBG =>.DBG
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\GMap.NET =>.GMap.NET
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Pilote12549\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Host App Service =>.SUP.SweetLabs
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Lockheed Martin =>.Lockheed Martin
O43 - CFD: 15/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 06/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\NavigraphChartsDesktop
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 06/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 22/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Pilote12549\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 17/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\V1_Software
O43 - CFD: 07/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 22/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 04/02/2018 - [0] D -- C:\Users\Pilote12549\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] SD -- C:\Users\Pilote12549\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/02/2018 - [] D -- C:\Users\Pilote12549\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Pilote12549\Desktop\Acer Audio
O43 - CFD: 07/02/2018 - [] D -- C:\Users\Pilote12549\Desktop\ADD ON
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\Desktop\IVAO =>.IVAO
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] RD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] RD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dashlane =>.Dashlane
O43 - CFD: 29/09/2017 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 15/02/2018 - [] RD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\Users\Pilote12549\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Default\AppData\Local\Host App Service =>.SUP.SweetLabs
O43 - CFD: 29/09/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 04/02/2018 - [] D -- C:\Users\Default User\AppData\Local\Host App Service =>.SUP.SweetLabs
O43 - CFD: 29/09/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/02/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent

---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s
O106 - SIOI: [ ACloudSynced] - {5CCE71FA-9F61-4F24-9CD1-98D819B40D68}. (.Acer Incorporated - abBox Shell Extension.) -- C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll =>.Acer Incorporated®
O106 - SIOI: [ ACloudSyncing] - {C1E1456F-C2D8-4C96-870D-35F1E13941EE}. (.Acer Incorporated - abBox Shell Extension.) -- C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll =>.Acer Incorporated®
O106 - SIOI: [ ACloudToBeSynced] - {307523FA-DDC0-4068-983F-2A6B34627744}. (.Acer Incorporated - abBox Shell Extension.) -- C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll =>.Acer Incorporated®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ Search Context Menu Handlers (SCMH) (31) - 2s
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\shellext.dll =>.Microsoft Windows®
O108 - CMH1: Foxit_ConvertToPDF [64Bits] - {C5269811-4A29-4818-A4BB-111F9FC63A5F} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated®
O108 - CMH1: McCtxMenuFrmWrk [64Bits] - {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} . (.McAfee, Inc. - McAfee ContextMenu Framework.) -- c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll =>.McAfee, Inc.®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH2: McCtxMenuFrmWrk [64Bits] - {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} . (.McAfee, Inc. - McAfee ContextMenu Framework.) -- c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll =>.McAfee, Inc.®
O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\shellext.dll =>.Microsoft Windows®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_7ee21f0fcd504371\igfxDTCM.dll =>.Microsoft Windows Hardware Compatibility Publisher®
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll =>.NVIDIA Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: McCtxMenuFrmWrk [64Bits] - {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} . (.McAfee, Inc. - McAfee ContextMenu Framework.) -- c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll =>.McAfee, Inc.®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - App Resolver.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\shellext.dll =>.Microsoft Windows®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Image File Execution Options (18) - 0s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - IE Per-User Initialization Utility.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - IE 7.0 Unattended Install Utility.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Microsoft Windows Malicious Software Remova.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Microsoft (R) HTML Application host.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Windows host process (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Spooler SubSystem App.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Host Process for Windows Services.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Host Process for Windows Services.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ System Drivers List (76) - 4s
O58 - SDL:2017/09/29 14:41:02 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [258592] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131992] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation
O58 - SDL:2016/06/26 00:57:00 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [610656] =>.Qualcomm Atheros®
O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - McAfee Personal Firewall IDS Plugin.) -- C:\WINDOWS\System32\drivers\cfwids.sys [77280] =>.McAfee, Inc.®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [141208] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [357272] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1723288] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows®
O58 - SDL:2017/10/09 23:14:58 A . (.McAfee, Inc. - McAfee HIP IPS Driver.) -- C:\WINDOWS\System32\drivers\HipShieldK.sys [218336] =>.McAfee, Inc.®
O58 - SDL:2017/09/29 14:41:02 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation
O58 - SDL:2015/07/08 11:52:58 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2_I2C.sys [185128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/09/29 14:41:01 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [674200] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412056] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows®
O58 - SDL:2016/11/08 01:55:44 A . (.Intel(R) Corporation - Intel® Smart Sound Technology (Intel® SST).) -- C:\WINDOWS\System32\drivers\IntcAudioBus.sys [227952] =>.Intel(R) Smart Sound Technology®
O58 - SDL:2016/10/07 08:25:26 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [822248] =>.Intel(R) OWR®
O58 - SDL:2016/11/08 01:55:44 A . (.Intel(R) Corporation - Intel® Smart Sound Technology (Intel® SST).) -- C:\WINDOWS\System32\drivers\IntcDMic.sys [616072] =>.Intel(R) Smart Sound Technology®
O58 - SDL:2016/11/08 01:55:44 A . (.Intel(R) Corporation - Intel® Smart Sound Technology (Intel® SST).) -- C:\WINDOWS\System32\drivers\IntcOED.sys [659544] =>.Intel(R) Smart Sound Technology®
O58 - SDL:2015/09/04 19:51:58 A . (.Acer Incorporated - LMDriver.) -- C:\WINDOWS\System32\drivers\LMDriver.sys [21344] =>.Acer Incorporated®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108064] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [123800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [103320] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82840] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - McAfee Arbitrary Access Control Driver.) -- C:\WINDOWS\System32\drivers\mfeaack.sys [492512] =>.McAfee, Inc.®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - Anti-Virus File System Filter Driver.) -- C:\WINDOWS\System32\drivers\mfeavfk.sys [355808] =>.McAfee, Inc.®
O58 - SDL:2017/11/15 02:00:06 A . (.McAfee LLC. - McAfee Driver Cleaning Driver.) -- C:\WINDOWS\System32\drivers\mfeclnrk.sys [31144] =>.McAfee, Inc.®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - McAfee ELAM Driver.) -- C:\WINDOWS\System32\drivers\mfeelamk.sys [84016] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - McAfee Core Firewall Engine Driver.) -- C:\WINDOWS\System32\drivers\mfefirek.sys [506336] =>.McAfee, Inc.®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - McAfee Link Driver.) -- C:\WINDOWS\System32\drivers\mfehidk.sys [938464] =>.McAfee, Inc.®
O58 - SDL:2017/11/15 02:00:06 A . (.McAfee LLC. - Event Driver.) -- C:\WINDOWS\System32\drivers\mfencbdc.sys [507304] =>.McAfee, Inc.®
O58 - SDL:2017/11/15 02:00:06 A . (.McAfee LLC. - Detection driver.) -- C:\WINDOWS\System32\drivers\mfencrk.sys [108456] =>.McAfee, Inc.®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - AAC Protected Launch Plugin Driver.) -- C:\WINDOWS\System32\drivers\mfeplk.sys [115168] =>.McAfee, Inc.®
O58 - SDL:2017/10/19 09:36:42 A . (.McAfee LLC - Anti-Virus Mini-Firewall Driver.) -- C:\WINDOWS\System32\drivers\mfewfpk.sys [252896] =>.McAfee, Inc.®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166296] =>.Microsoft Windows®
O58 - SDL:2017/05/18 06:54:46 A . (.NVIDIA Corporation - Stereoscopic 3D USB controller driver.) -- C:\WINDOWS\System32\drivers\nvstusb.sys [486936] =>.NVIDIA Corporation®
O58 - SDL:2018/01/24 01:23:45 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [59240] =>.NVIDIA Corporation®
O58 - SDL:2018/01/24 01:23:45 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\WINDOWS\System32\drivers\nvvhci.sys [57928] =>.NVIDIA Corporation®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Qualcomm Atheros, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2344448] =>.Qualcomm Atheros, Inc.
O58 - SDL:2015/09/04 19:52:00 A . (.Acer Incorporated - RadioShim.) -- C:\WINDOWS\System32\drivers\RadioShim.sys [14688] =>.Acer Incorporated®
O58 - SDL:2015/09/23 08:58:23 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [889584] =>.Realtek Semiconductor Corp®
O58 - SDL:2017/09/29 14:41:14 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [59904] =>.Realtek
O58 - SDL:2016/11/08 01:55:48 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5284864] =>.Realtek Semiconductor Corp.®
O58 - SDL:2016/09/06 05:08:56 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [426504] =>.Realtek Semiconductor Corp.®
O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows®
O58 - SDL:2015/07/29 06:41:14 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID.sys [47784] =>.Synaptics Incorporated®
O58 - SDL:2015/08/10 02:54:30 A . (.Intel Corporation - Thunderbolt(TM) Bus Driver.) -- C:\WINDOWS\System32\drivers\tbt81x.sys [125432] =>.Intel(R) Client Connectivity Division SW®
O58 - SDL:2015/08/31 22:50:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [185088] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2017/09/29 14:41:02 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®

---\\ File Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ Start Menu Internet (8) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ Search Browser Infection (5) - 4s
O69 - SBI: SearchScopes [HKCU] [64Bits]{AA9A4890-4262-4441-8977-E2FFCBFB706C} - (Yahoo!) - http://us.yhs4.search.yahoo.com/ =>.Yahoo! Inc.
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{57BBBCD4-D952-4C9D-BAA8-1A804167041D} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{60255CD7-8B4A-492C-815E-E04F9AC4908D} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{AA9A4890-4262-4441-8977-E2FFCBFB706C} - (Yahoo!) - http://us.yhs4.search.yahoo.com/ =>.Yahoo! Inc.

---\\ Search Svchost Services (48) - 0s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [270848] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [1275904] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [984064] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [820224] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [144896] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [109056] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [880640] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220160] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [407040] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [387584] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [108544] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [254976] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [194560] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1272320] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Natural Authentication Service.) -- C:\Windows\System32\NaturalAuth.dll [795136] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\Windows\System32\TokenBroker.dll [1228800] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [46080] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1107968] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Infrared Monitor.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [930816] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [491520] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [601088] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [307200] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2784256] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [1345536] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [702464] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight Settings.) -- C:\Windows\System32\flightsettings.dll [779264] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) -- C:\Windows\System32\WpnService.dll [284672] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1143808] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1294848] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [951808] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1313792] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [387072] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\Windows\System32\DeviceSetupManager.dll [238080] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\Windows\System32\NetSetupSvc.dll [308224] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\Windows\System32\NcaSvc.dll [170496] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\Windows\System32\wlidsvc.dll [2223104] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [132608] =>.Microsoft Corporation

---\\ Windows Installer Scan (30) - 2s
[MD5.CC4E75A811502DDB1CE50B5B6BD70926] [WIS][2015/09/02 04:42:55] (.Acer Incorporated - DriverSetupUtility.) -- C:\WINDOWS\Installer\11153.msi [2527232] =>.Acer Incorporated
[MD5.BF727E12B6A7CF82F87008C97F9E76F7] [WIS][2015/10/28 19:43:34] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\11157.msi [770048] =>.Intel Corporation
[MD5.0736CABF1121C29F1A27A3739BBC727F] [WIS][2015/07/11 04:16:16] (.Intel Corporation - Intel(R) Serial IO.) -- C:\WINDOWS\Installer\1115b.msi [2523136] =>.Intel Corporation
[MD5.FED0EC2248CDF7280136E94E026A550F] [WIS][2015/09/18 23:38:20] (.Intel Corporation - Intel(R) ME UninstallLegacy.) -- C:\WINDOWS\Installer\1118b.msi [397312] =>.Intel Corporation
[MD5.2B30532E2AB4796F4E06A0C1D0367F2A] [WIS][2015/09/18 23:39:04] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\1118f.msi [9744384] =>.Intel Corporation
[MD5.2169C0B0955FBC75BF71277A657D7D83] [WIS][2015/09/18 23:39:18] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\111a1.msi [17088512] =>.Intel Corporation
[MD5.0ED0C9589B99557E514AC19AF6C73A22] [WIS][2015/05/22 17:27:22] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\WINDOWS\Installer\111a5.msi [11005952] =>.Intel Corporation
[MD5.0D69490E64E1185C42AB13FE88AC6335] [WIS][2015/05/22 01:25:00] (.Intel Corporation - Intel® Security Assist.) -- C:\WINDOWS\Installer\111a9.msi [1167360] =>.Intel Corporation
[MD5.A74A4BADB49255EAAB9AA2EAB4FF5EA7] [WIS][2016/09/14 18:05:52] (.Lockheed Martin - Prepar3D v3 Academic Client.) -- C:\WINDOWS\Installer\143cf8.msi [131984962] =>.Lockheed Martin
[MD5.A91D99A61D046A0C11EF31A2B3FE3959] [WIS][2016/09/14 17:27:56] (.Lockheed Martin - Prepar3D v3 Content.) -- C:\WINDOWS\Installer\143cfc.msi [3102395] =>.Lockheed Martin
[MD5.515FC7E14394BFAA18A09BCE5DF11D45] [WIS][2016/09/14 18:01:52] (.Lockheed Martin - Prepar3D v3 Scenery.) -- C:\WINDOWS\Installer\143d00.msi [7042030] =>.Lockheed Martin
[MD5.B76A963BFCAB71354B28DF23E6E38CD4] [WIS][2017/09/22 08:27:00] (.Acer Incorporated - abPhoto.) -- C:\WINDOWS\Installer\16e3da.msi [30225100] =>.Acer Incorporated
[MD5.60788B90DFF35B2EE68BFA967D7137AA] [WIS][2017/09/22 07:50:16] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\16e3de.msi [2526720] =>.Apple Inc.
[MD5.E0981BCAA686C2CE223BF1C704A6EB2A] [WIS][2017/03/20 07:25:53] (.Acer Incorporated - AOP Framework.) -- C:\WINDOWS\Installer\16e3fb.msi [3432448] =>.Acer Incorporated
[MD5.7F07109B655A8BAC7F83211F8C81BA03] [WIS][2016/07/17 20:06:08] (.Dolby Laboratories, Inc. - Dolby Audio X2 Windows API SDK.) -- C:\WINDOWS\Installer\1ef76.msi [5500928] =>.Dolby Laboratories, Inc.
[MD5.5380D04B085F1A85B4EA18A86321D181] [WIS][2015/11/17 12:34:46] (.Dolby Laboratories, Inc. - Dolby Audio X2 Windows APP.) -- C:\WINDOWS\Installer\1ef7b.msi [21352448] =>.Dolby Laboratories, Inc.
[MD5.48A359B4C183BDB4B0369685C141BE61] [WIS][2015/05/26 11:02:42] (.Acer Incorporated - User Experience Improvement Program.) -- C:\WINDOWS\Installer\1efff.msi [9592832] =>.Acer Incorporated
[MD5.C4F5D8C1EE853B24C088ADBF2FB25E40] [WIS][2017/06/26 13:52:18] (.12bPilot - SODE Installer.) -- C:\WINDOWS\Installer\2fc4b01.msi [5259264] =>.12bPilot
[MD5.9C078A2C0CBED869E41DBBC305976AEC] [WIS][2015/04/27 07:36:02] (..) -- C:\WINDOWS\Installer\6e072.msi [1185792]
[MD5.1108130E912F3FCD9356051A376ED0E9] [WIS][2017/10/02 08:05:14] (.Acer Incorporated - Acer Portal.) -- C:\WINDOWS\Installer\a86e46c.msi [14134401] =>.Acer Incorporated
[MD5.F00C4133C9F5755FA1FFD23C1E577A2E] [WIS][2015/05/07 08:51:03] (.Acer Incorporated - abFiles.) -- C:\WINDOWS\Installer\bf00.msi [26222592] =>.Acer Incorporated
[MD5.2F59E4A570A1B58DAA836628F9A6927E] [WIS][2016/03/25 19:21:36] (.InstallShield.) -- C:\WINDOWS\Installer\bf5f8.msi [12836864] =>.InstallShield
[MD5.315FDC277E18AFF3AFDE47458A187E65] [WIS][2016/03/25 19:22:46] (.InstallShield.) -- C:\WINDOWS\Installer\bf60c.msi [33091072] =>.InstallShield
[MD5.CA2200970833EB1FDB083D655709D6D9] [WIS][2015/08/10 02:54:30] (.Intel Corporation - Thunderbolt(TM) Software.) -- C:\WINDOWS\Installer\bf618.msi [71770112] =>.Intel Corporation
[MD5.092354664F7AFEC557A932FE0020F323] [WIS][2014/02/27 08:30:54] (.Acer Incorporated - Explorer Agent.) -- C:\WINDOWS\Installer\d6ea.msi [3801088] =>.Acer Incorporated
[MD5.BBB1ED55A8451BE2475A64BA5D046D1B] [WIS][2015/05/14 06:04:42] (.Acer Incorporated - Power Management.) -- C:\WINDOWS\Installer\d6f2.msi [16584704] =>.Acer Incorporated
[MD5.EAE7D7778533B5562CFF041DE63910FF] [WIS][2015/09/07 06:50:04] (.Acer Incorporated - Quick Access.) -- C:\WINDOWS\Installer\d6f6.msi [7831552] =>.Acer Incorporated
[MD5.FBE6D160FC97A2F4D5A908D0C51DF06F] [WIS][2015/11/25 05:52:40] (.Acer Incorporated - Care Center.) -- C:\WINDOWS\Installer\d728.msi [18587648] =>.Acer Incorporated
[MD5.64B0905553BF8A90F2454E1AF9D2298E] [WIS][2016/03/25 19:33:11] (.Foxit Software Inc. - Foxit PhantomPDF.) -- C:\WINDOWS\Installer\d72d.msi [9445376] =>.Foxit Software Inc.
[MD5.546D2682A5A934C7865E969BF4CD0EF3] [WIS][2018/02/07 17:37:28] (.Amazon - Amazon Assistant.) -- C:\WINDOWS\Installer\f1a5961.msi [2703360] =>.Amazon

---\\ Additional Scan (O88) (6) - 2s
C:\Users\Pilote12549\AppData\Local\Host App Service =>.SUP.SweetLabs
C:\Users\Default\AppData\Local\Host App Service =>.SUP.SweetLabs
C:\Users\Default User\AppData\Local\Host App Service =>.SUP.SweetLabs
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan

---\\ Summary of the elements found (2) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.SweetLabs

~ Unselected Options: O82,
~ End of the scan, 32479 items in 00mn54s (1133)(0)

Publicité


Signaler le contenu de ce document

Publicité