cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.5.2.95 Par Nicolas Coolman (2018/05/02)
~ Démarré par asyatte (Administrator) (2018/05/02 10:15:36)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\GALIMA\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\GALIMA\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 16299) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (4) - 0s
~ GCIE: Google Chrome v66.0.3359.139
~ MFIE: Mozilla Firefox 59.0.2 (x64 en-US)
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.248.16299.0

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (1) - 8s
Windows Defender W10 (Activate) (Protection)

---\\ SURVEILLANCE LOGICIEL (1) - 8s
~ Adobe Flash Player 29 PPAPI (Surveillance)

---\\ LOGICIELS DE PARTAGE P2P (1) - 8s
~ µTorrent v3.5.3.44358 (P2P)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 7969.884 MB (51% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 57 GB (18%) free of 303 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: DESKTOP-755UQ09
~ User Name: asyatte
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s
~ Drive C: has 57 GB free of 303 GB (System)

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (24) - 2s
[MD5.A77D56422C38C1F8A00D95D2D5B1675E] - 10/02/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3904296] =>.Microsoft Windows®
[MD5.731A783A36A8E69A6434D19D98B12A09] - 29/09/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [71168] =>.Microsoft Corporation
[MD5.BF3E1D9B2360C6BE4CC3094CD2DDC617] - 29/09/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [359584] =>.Microsoft Windows Publisher®
[MD5.D09D24A071007D66C9ED2B6B40B9D1D3] - 10/02/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [3334144] =>.Microsoft Corporation
[MD5.D0926E8FC082646487BD159538F4D9F5] - 01/01/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [715776] =>.Microsoft Corporation
[MD5.4D487E7D2B047FB929BE00117C09F9EC] - 29/09/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [414720] =>.Microsoft Corporation
[MD5.5AE3B789BC547BBBE2A876F587BE60F6] - 10/02/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [739696] =>.Microsoft Windows®
[MD5.66342F3BB289A5A370127F8385512A84] - 10/02/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [597160] =>.Microsoft Windows®
[MD5.AD7B46330B55170ED706043DE88AC1A9] - 10/02/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [614296] =>.Microsoft Windows®
[MD5.6191B9B2EE0E8CB957C683B9B341CC86] - 29/09/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [28568] =>.Microsoft Windows®
[MD5.9E82A95D77AC78C84BA75FF896B060BF] - 29/09/2017 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [93184] =>.Microsoft Corporation
[MD5.6D83565C1652E80447EDEA6947FA89D7] - 29/09/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation
[MD5.9910E9CFF5ECDCB225F82E72CE9DE459] - 29/09/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [151040] =>.Microsoft Corporation
[MD5.99A34FD1F6431A10D8C3BB50E170D0F2] - 29/09/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation
[MD5.56FF074E50F9042FD2856AB3418F4B18] - 29/09/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation
[MD5.7BEC2AF23F586EFF0DB4DBF4331B0C70] - 29/09/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [214016] =>.Microsoft Corporation
[MD5.71729B1EE949E1B092CB5CB75CC63715] - 10/02/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [494488] =>.Microsoft Windows®
[MD5.7FC54F2AF5EC52C7AC05AD90FFC757E6] - 01/01/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [316928] =>.Microsoft Corporation
[MD5.B6FDEBE8F640E9173AD2BA3F9C014195] - 10/02/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2395032] =>.Microsoft Windows®
[MD5.2E07EC2C1622F5E7B535D62DCD61F3AB] - 29/09/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation
[MD5.E0220BB6580D34001D4D1D133052DAA4] - 29/09/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation
[MD5.DF83769C92527DB50653F8FB57D001FF] - 30/09/2017 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation
[MD5.571D82ABAC428D902ACA0CF60373C039] - 29/09/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [121240] =>.Microsoft Windows®
[MD5.5B27846CF4B1C21AFB3A35A8336BA02F] - 21/12/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [401304] =>.Microsoft Windows®

---\\ LISTE DES SERVICES (Non Microsoft et non désactivés) (16) - 3s
O23 - Service: AdobeUpdateService (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
O23 - Service: AnyDesk Service (AnyDesk) . (...) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: @oem42.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Man (BcmBtRSupport) . (.Broadcom Corporation. - Bluetooth Radio Management Support.) - C:\Windows\System32\BtwRSupportService.exe =>.Broadcom Corporation.
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: Docker for Windows Service (com.docker.service) . (...) - C:\Program Files\Docker\Docker\com.docker.service (.not file.)
O23 - Service: e-express. OUC (e-express. RunOuc) . (...) - C:\Program Files (x86)\e-express\UpdateDog\ouc.exe =>.HUAWEI Technologies Co., Ltd.®
O23 - Service: ForensiT AppX Management Service (ForensiTAppxService) . (...) - C:\Program Files (x86)\ForensiT\AppX Management Service\ForensiTAppxService.exe (.not file.)
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HWDeviceService64.exe (HWDeviceService64.exe) . (. - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService64.exe =>.HUAWEI Technologies Co., Ltd.®
O23 - Service: @oem22.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) . (.Lenovo. - Lenovo Power Management Service.) - C:\Windows\System32\ibmpmsvc.exe =>.Lenovo.
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation
O23 - Service: @oem22.inf,%Lenovo.svcDesc1%;Lenovo Platform Service (LPlatSvc) . (.Lenovo. - Lenovo Platform Service.) - C:\Windows\System32\LPlatSvc.exe =>.Lenovo.
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
O23 - Service: WinZip Smart Monitor Service (WinZip Smart Monitor Service) . (...) - C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe (.not file.) =>.SUP.WinzipSystemUtilities

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (21) - 9s
SS - Demand [12/04/2018] [ 272384] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [20/09/2017] [ 817760] AdobeUpdateService (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [05/01/2018] [ 2319848] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated®
SR - Auto [19/12/2017] [ 1809096] AnyDesk Service (AnyDesk) . (...) - C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
SR - Auto [05/01/2018] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Auto [27/03/2015] [ 2251992] @oem42.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Man (BcmBtRSupport) . (.Broadcom Corporation..) - C:\Windows\System32\BtwRSupportService.exe =>.Broadcom Corporation®
SR - Auto [12/08/2015] [ 462096] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Demand [03/05/2016] [ 299488] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SS - Auto [23/11/2017] [ 655712] e-express. OUC (e-express. RunOuc) . (...) - C:\Program Files (x86)\e-express\UpdateDog\ouc.exe =>.HUAWEI Technologies Co., Ltd.®
SS - Auto [16/10/2017] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [16/10/2017] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [14/03/2011] [ 346976] HWDeviceService64.exe (HWDeviceService64.exe) . (...) - C:\ProgramData\DatacardService\HWDeviceService64.exe =>.HUAWEI Technologies Co., Ltd.®
SR - Auto [06/09/2016] [ 180736] @oem22.inf,%ibm.svcDesc0%;Lenovo PM Service (IBMPMSVC) . (.Lenovo..) - C:\Windows\System32\ibmpmsvc.exe =>.LENOVO®
SR - Auto [03/05/2016] [ 337888] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel(R) pGFX®
SS - Demand [22/01/2018] [ 673080] Service de l’iPod (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe =>.Apple Inc.®
SR - Auto [06/09/2016] [ 710144] @oem22.inf,%Lenovo.svcDesc1%;Lenovo Platform Service (LPlatSvc) . (.Lenovo..) - C:\Windows\System32\LPlatSvc.exe =>.LENOVO®
SS - Demand [30/03/2018] [ 194512] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SS - Demand [13/09/2017] [39511040] MySQL57 (MySQL57) . (...) - C:\Program Files\MySQL\MySQL Server 5.7\bin\mysqld.exe
SS - Demand [27/06/2017] [ 371712] MySQL Router (MySQLRouter) . (...) - C:\Program Files\MySQL\MySQL Router 2.1\bin\mysqlrouter.exe
SS - Demand [19/02/2010] [ 517096] SwitchBoard (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
SR - Auto [25/10/2015] [ 255096] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (8) - 3s
O38 - TASK: {17948702-FFDE-4855-8B07-67DFF8CFF307} [64Bits][\AdobeAAMUpdater-1.0-GALIMA-asyatte] - (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128] =>.Adobe Systems Incorporated
O38 - TASK: {3CA9D044-F37A-4972-8135-9CF19916D5C9} [64Bits][\AdobeGCInvoker-1.0-GALIMA-asyatte] - (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [315880] =>.Adobe Systems, Incorporated
O38 - TASK: {7E02B73B-3C87-49F3-B657-DD60E9C74E41} [64Bits][\InstallShield® Update Service Scheduler] - (.InstallShield® - InstallShield® Update Service Scheduler.) -- C:\Program Files (x86)\Common Files\InstallShield\Update\ISUSPM.exe [388736] =>.InstallShield®
O38 - TASK: {9595AAC4-E214-4C64-947C-EFAC57809FA5} [64Bits][\MySQL\Installer\ManifestUpdate] - (.Oracle Corporation - MySQLInstallerConsole.) -- C:\Program Files (x86)\MySQL\MySQL Installer for Windows\MySQLInstallerConsole.exe [53800] =>.Oracle Corporation
C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-GALIMA-asyatte - (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [-mode=scheduled] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-GALIMA-asyatte - (.Adobe Systems, Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [] =>.Adobe Systems, Incorporated
C:\Windows\System32\Tasks\InstallShield® Update Service Scheduler - (.InstallShield®.) -- C:\Program Files (x86)\Common Files\InstallShield\Update\ISUSPM.exe [] =>.InstallShield®
C:\Windows\System32\Tasks\MySQL\Installer\ManifestUpdate - (.Oracle Corporation.) -- C:\Program Files (x86)\MySQL\MySQL Installer for Windows\MySQLInstallerConsole.exe [Community Update] =>.Oracle Corporation

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (36) - 4s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [WinZip UN] . (.WinZip - WinZip Update Notifier.) -- C:\Program Files\WinZip\WZUpdateNotifier.exe =>.WinZip
O4 - HKLM\..\Run: [WinZip PreLoader] . (.WinZip Computing, S.L. - WinZip Preloader.) -- C:\Program Files\WinZip\WzPreloader.exe =>.Corel Corporation®
O4 - HKLM\..\Run: [WinZip FAH] . (.WinZip Computing, S.L. - File Association Helper.) -- C:\Program Files\WinZip\FAHConsole.exe =>.WinZip Computing LLC®
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Run: [SERVICE] (.Orphan.) =>.SUP.Orphan
O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe =>.Apple Inc.®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\GALIMA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [GoogleDriveSync] . (. - .) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKCU\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE =>.Microsoft Corporation®
O4 - HKCU\..\Run: [Lync] . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office16\lync.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKCU\..\Run: [GrooveMonitor] . (.Microsoft Corporation - Microsoft SharePoint Workspace Monitor.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE =>.Microsoft Corporation®
O4 - HKCU\..\Run: [GreenFrog] . (. - .) -- C:\WINDOWS\rss\csrss.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [MySQL Notifier] . (. - .) -- C:\Program Files (x86)\MySQL\MySQL Notifier 1.1\MySqlNotifier.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [Docker for Windows] . (.Docker Inc. - Docker for Windows.) -- C:\Program Files\Docker\Docker\Docker for Windows.exe {0FB2606BBE81DF0EECFBC3F6BE15D6A1} =>.Docker Inc.
O4 - HKCU\..\Run: [ApplePhotoStreams] . (. - .) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (.Not File.) =>.SUP.Orphan
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [Adobe Creative Cloud] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [331BigDog] . (.Vimicro - VM331 StiMnt.) -- C:\Program Files (x86)\USB Camera\VM331STI.EXE =>.Microsoft Windows Hardware Compatibility Publisher®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\GALIMA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [GoogleDriveSync] . (. - .) -- C:\Program Files (x86)\Google\Drive\googledrivesync.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [uTorrent] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [OfficeSyncProcess] . (.Microsoft Corporation - Microsoft Office Document Cache.) -- C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [Lync] . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\Office16\lync.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [GrooveMonitor] . (.Microsoft Corporation - Microsoft SharePoint Workspace Monitor.) -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVEMN.EXE =>.Microsoft Corporation®
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [GreenFrog] . (. - .) -- C:\WINDOWS\rss\csrss.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [MySQL Notifier] . (. - .) -- C:\Program Files (x86)\MySQL\MySQL Notifier 1.1\MySqlNotifier.exe (.Not File.) =>.SUP.Orphan
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [Docker for Windows] . (.Docker Inc. - Docker for Windows.) -- C:\Program Files\Docker\Docker\Docker for Windows.exe {0FB2606BBE81DF0EECFBC3F6BE15D6A1} =>.Docker Inc.
O4 - HKUS\S-1-5-21-1450264343-1195623236-1147443610-1117\..\Run: [ApplePhotoStreams] . (. - .) -- C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (.Not File.) =>.SUP.Orphan

---\\ PROCESSUS LANCÉS (39) - 7s
[MD5.00000000000000000000000000000000] - (.Lenovo. - Lenovo Power Management Service.) -- C:\Windows\system32\ibmpmsvc.exe [0] [PID.2124] =>.Lenovo.
[MD5.00000000000000000000000000000000] - (.Lenovo. - Lenovo Platform Service.) -- C:\Windows\system32\LPlatSvc.exe [0] [PID.2132] =>.Lenovo.
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\system32\igfxCUIService.exe [0] [PID.2556] =>.Intel Corporation
[MD5.B5C2F92EE1106DFE7BB1CCE4D35B6037] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462096] [PID.3560] =>.Apple Inc.®
[MD5.7EB4548BA1B9ECD1D77A7512E4C3777F] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768] [PID.3568] =>.Apple Inc.®
[MD5.BA4D7EFDEA4603C52851F2FD872C3AF5] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760] [PID.3576] =>.Adobe Systems Incorporated®
[MD5.00000000000000000000000000000000] - (.Broadcom Corporation. - Bluetooth Radio Management Support.) -- C:\Windows\system32\BtwRSupportService.exe [0] [PID.3584] =>.Broadcom Corporation.
[MD5.58A5D48F16E89575C21C0B14A15D4383] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848] [PID.3604] =>.Adobe Systems Incorporated®
[MD5.212BD731AD0A24112B902219BF5DF492] - (...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe [1809096] [PID.3620] =>.philandro Software GmbH®
[MD5.E90DA42B87D684DEBFB73B38A718A006] - (. - DCSHOST.) -- C:\ProgramData\DatacardService\HWDeviceService64.exe [346976] [PID.3648] =>.HUAWEI Technologies Co., Ltd.®
[MD5.9EA5F5E5004CC0371FE28BF679BE78E3] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255096] [PID.3688] =>.Synaptics Incorporated®
[MD5.00000000000000000000000000000000] - (.Lenovo. - Lenovo Platform Service.) -- C:\Windows\system32\LPlatSvc.exe [0] [PID.744] =>.Lenovo.
[MD5.6C5CB67D2B82137538A202B63B4AFE2B] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3961464] [PID.1320] =>.Synaptics Incorporated®
[MD5.84AA84D9025F83D4FC4739E32D7FB748] - (.Synaptics Incorporated - TouchPad Driver Helper Application.) -- C:\Program Files\Synaptics\SynTP\SynTPLpr.exe [220792] [PID.3980] =>.Synaptics Incorporated®
[MD5.7BAAB562F6E98703D75B451C4826061B] - (.Synaptics - SynLenovo Helper tool.) -- C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe [163960] [PID.4820] =>.Synaptics Incorporated®
[MD5.349AB4F70E2AC44970894E7F03E1576E] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [236384] [PID.6268] =>.HUAWEI Technologies Co., Ltd.®
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\system32\igfxEM.exe [0] [PID.6516] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\system32\igfxHK.exe [0] [PID.6540] =>.Intel Corporation
[MD5.00000000000000000000000000000000] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxTray.exe [0] [PID.6588] =>.Intel Corporation
[MD5.E01A533B40E9A3A3247E5137AB41F5EA] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [218744] [PID.6676] =>.Synaptics Incorporated®
[MD5.F8127F4DD22960352C3D65DE26D2542D] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeHost.exe [86528] [PID.7520] =>.Skype Technologies
[MD5.74F5D8AD5AFBC38AA42C1CA58EF32325] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe [27831240] [PID.9076] =>.Skype Software Sarl®
[MD5.F5AF8520466AA191D58D03A01349883B] - (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008] [PID.7580] =>.Adobe Systems Incorporated®
[MD5.279175F66914D5BE0D3A3DD9F85FD5B3] - (.Vimicro - VM331 StiMnt.) -- C:\Program Files (x86)\USB Camera\VM331STI.EXE [571928] [PID.7624] =>.Microsoft Windows Hardware Compatibility Publisher®
[MD5.0545A3EB959CFA4790D267BFB8C1ACA4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] [PID.7424] =>.Google Inc®
[MD5.900236357482B00944826354EEC6B93F] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe [288848] [PID.5596] =>.Google Inc®
[MD5.F107219B133E7E574DA052C5C88FFBF3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe [366672] [PID.7048] =>.Google Inc®
[MD5.7F51B8BC2B98F5709BF2AFA8BA14DEC6] - (.Adobe Systems Incorporated - Adobe IPC Broker.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe [1078344] [PID.1992] =>.Adobe Systems Incorporated®
[MD5.334B83268BECFA35080AA6C0B9F0146B] - (.Adobe Systems Incorporated - Creative Cloud.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe [2382432] [PID.8404] =>.Adobe Systems Incorporated®
[MD5.E9FBCD44CEE5A1B3B29B45011233D2D7] - (.Adobe Systems Incorporated - Adobe CEF Helper.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe [397920] [PID.5928] =>.Adobe Systems Incorporated®
[MD5.E9FBCD44CEE5A1B3B29B45011233D2D7] - (.Adobe Systems Incorporated - Adobe CEF Helper.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe [397920] [PID.8764] =>.Adobe Systems Incorporated®
[MD5.B5173EF6A876BE77FAAFBC9984E299D2] - (.Skype Technologies - Skype Browser Host.) -- C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe [328648] [PID.7152] =>.Skype Software Sarl®
[MD5.3E150EAE2932841C5CA934A009B1C775] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [441296] [PID.6908] =>.Mozilla Corporation®
[MD5.3E150EAE2932841C5CA934A009B1C775] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [441296] [PID.9648] =>.Mozilla Corporation®
[MD5.3E150EAE2932841C5CA934A009B1C775] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [441296] [PID.10280] =>.Mozilla Corporation®
[MD5.3E150EAE2932841C5CA934A009B1C775] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [441296] [PID.10864] =>.Mozilla Corporation®
[MD5.3E150EAE2932841C5CA934A009B1C775] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [441296] [PID.11016] =>.Mozilla Corporation®
[MD5.3E150EAE2932841C5CA934A009B1C775] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [441296] [PID.888] =>.Mozilla Corporation®
[MD5.5C3E3412C789C41B925455D621B13701] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\GALIMA\Downloads\ZHPDiag3.exe [3086720] [PID.5584] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (17) - 6s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://docs.google.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.gstatic.com =>.Google Inc.
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.google.sn =>.Google Inc.
G2 - GCE: Preference [asyatte][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [asyatte][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [asyatte][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [asyatte][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [asyatte][User Data\Default] [dcbeddldohkakodfncjnkkjfojggbahp] Galaxy-View
G2 - GCE: Preference [asyatte][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [asyatte][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [asyatte][User Data\Default] [hidmnkjeakpobdmccbjcokkjgdafjcal] Open Sports Addict New Tab =>PUP.Optional.MyWebSearch
G2 - GCE: Preference [asyatte][User Data\Default] [lgfehfbnofiffladdncogfobimealokp] Ask Web Search =>Toolbar.Ask
G2 - GCE: Preference [asyatte][User Data\Default] [lmjegmlicamnimmfhcmpkclmigmmcbeh] Application Launcher for Drive (by Google) =>.Google Inc.
G2 - GCE: Preference [asyatte][User Data\Default] [mfaojbdfmgiehhgmclenakdpecjimikb] Open YourTemplateFinder New Tab
G2 - GCE: Preference [asyatte][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [asyatte][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [asyatte][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (10) - 1s
P2 - EXT FILE: (.Microsoft Corporation - The plugin allows you to have a better expe.) -- C:\Program Files (x86)\Mozilla Firefox\Plugins\npMeetingJoinPluginOC.dll =>.Microsoft Corporation®
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\activity-stream@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\aushelper@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\firefox@getpocket.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\followonsearch@mozilla.com.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\onboarding@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\shield-recipe-client@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla Corporation

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.16299.15 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (12) - 1s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> =>Hijacker.Proxy
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> =>Hijacker.Proxy
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8080;https=127.0.0.1:8080 =>.Default.Value
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings,ProxySettingsPerUser = 0 =>.SUP.ProxyRestriction
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [1http=127.0.0.1:8080;https=127.0.0.1:8080]
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> =>Hijacker.Proxy
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:8080;https=127.0.0.1:8080 =>.Default.Value
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKLM\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows\CurrentVersion\Internet Settings,ProxySettingsPerUser = 0 =>.SUP.ProxyRestriction

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s
O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Groove GFS Browser Helper [64Bits] - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®

---\\ RACCOURCIS GLOBAL STARTUP (165) - 33s
O4 - GS\Desktop [Administrateur]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_B0FAA512910717810DB647.exe
O4 - GS\Desktop [Administrateur]: Devserver 17.lnk . (.Aestan Software - Aestan Tray Menu.) C:\Program Files (x86)\EasyPHP-Devserver-17\run-devserver.exe =>.Aestan Software
O4 - GS\Desktop [Administrateur]: Docker for Windows.lnk . (.Docker Inc. - .) C:\Program Files (x86)\Docker\Docker\Docker for Windows.exe =>.Docker Inc.
O4 - GS\Desktop [Administrateur]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.®
O4 - GS\Desktop [Administrateur]: Google Drive.lnk . (...) C:\Users\GALIMA\Google Drive
O4 - GS\Desktop [Administrateur]: SQLitePlus Database Explorer.lnk . (.EzTools Software Corporation - SQLitePlus Database Manager.) C:\Program Files (x86)\EzTools\SQLitePlus7\SqlitePlus.exe
O4 - GS\Desktop [Administrateur]: Torrent2Exe.lnk . (.http://www.torrent2exe.com - Torrent2Exe.) C:\Program Files\Torrent2Exe\T2E.exe
O4 - GS\Desktop [Administrateur]: UmmyVideoDownloader.lnk . (...) C:\Users\GALIMA\AppData\Local\UmmyVideoDownloader\UmmyVideoDownloader.exe {65FA5A5518239DCE52EB94EB}
O4 - GS\Desktop [Administrateur]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\GALIMA\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\GALIMA\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [Administrateur]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.®
O4 - GS\sendTo [Administrateur]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Adobe After Effects CS6.lnk . (.Adobe Systems Incorporated - Adobe After Effects CS6.) C:\Program Files\Adobe\Adobe After Effects CS6\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrateur]: Adobe Photoshop CS6.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrateur]: Adobe Premiere Pro CS6.lnk . (.Adobe Systems, Incorporated - Adobe Premiere Pro CS6.) C:\Program Files\Adobe\Adobe Premiere Pro CS6\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrateur]: Excel 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Microsoft Office Project 2003.lnk . (...) C:\Windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
O4 - GS\TaskBar [Administrateur]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d'écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Visual Studio 2017.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2017.) C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Visual Studio Code.lnk . (.Microsoft Corporation - Visual Studio Code.) C:\Program Files (x86)\Microsoft VS Code\Code.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrateur]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Startup [Administrateur]: Microsoft SharePoint Workspace.lnk . (.Microsoft Corporation - Microsoft SharePoint Workspace.) C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE /TrayOnly =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_2736A66768E93AF3087B2E.exe
O4 - GS\Programs [Administrateur]: Fonctionnalités facultatives.lnk . (.Microsoft Corporation - Assistance pour les fonctions sur demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software®
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\GALIMA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrateur]: Xtreme Download Manager.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{544D8CA9-4267-4F3E-A25D-1F20A7677955}\_409DA1791F6FCE4319810C.exe
O4 - GS\Desktop [GALIMA]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_B0FAA512910717810DB647.exe
O4 - GS\Desktop [GALIMA]: Devserver 17.lnk . (.Aestan Software - Aestan Tray Menu.) C:\Program Files (x86)\EasyPHP-Devserver-17\run-devserver.exe =>.Aestan Software
O4 - GS\Desktop [GALIMA]: Docker for Windows.lnk . (.Docker Inc. - .) C:\Program Files (x86)\Docker\Docker\Docker for Windows.exe =>.Docker Inc.
O4 - GS\Desktop [GALIMA]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.®
O4 - GS\Desktop [GALIMA]: Google Drive.lnk . (...) C:\Users\GALIMA\Google Drive
O4 - GS\Desktop [GALIMA]: SQLitePlus Database Explorer.lnk . (.EzTools Software Corporation - SQLitePlus Database Manager.) C:\Program Files (x86)\EzTools\SQLitePlus7\SqlitePlus.exe
O4 - GS\Desktop [GALIMA]: Torrent2Exe.lnk . (.http://www.torrent2exe.com - Torrent2Exe.) C:\Program Files\Torrent2Exe\T2E.exe
O4 - GS\Desktop [GALIMA]: UmmyVideoDownloader.lnk . (...) C:\Users\GALIMA\AppData\Local\UmmyVideoDownloader\UmmyVideoDownloader.exe {65FA5A5518239DCE52EB94EB}
O4 - GS\Desktop [GALIMA]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\GALIMA\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\Desktop [GALIMA]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\GALIMA\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [GALIMA]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [GALIMA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [GALIMA]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [GALIMA]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [GALIMA]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [GALIMA]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [GALIMA]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.®
O4 - GS\sendTo [GALIMA]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [GALIMA]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [GALIMA]: Adobe After Effects CS6.lnk . (.Adobe Systems Incorporated - Adobe After Effects CS6.) C:\Program Files\Adobe\Adobe After Effects CS6\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [GALIMA]: Adobe Photoshop CS6.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [GALIMA]: Adobe Premiere Pro CS6.lnk . (.Adobe Systems, Incorporated - Adobe Premiere Pro CS6.) C:\Program Files\Adobe\Adobe Premiere Pro CS6\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [GALIMA]: Excel 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [GALIMA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [GALIMA]: Microsoft Office Project 2003.lnk . (...) C:\Windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
O4 - GS\TaskBar [GALIMA]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [GALIMA]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d'écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\TaskBar [GALIMA]: Visual Studio 2017.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2017.) C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [GALIMA]: Visual Studio Code.lnk . (.Microsoft Corporation - Visual Studio Code.) C:\Program Files (x86)\Microsoft VS Code\Code.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [GALIMA]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Startup [GALIMA]: Microsoft SharePoint Workspace.lnk . (.Microsoft Corporation - Microsoft SharePoint Workspace.) C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE /TrayOnly =>.Microsoft Corporation®
O4 - GS\Programs [GALIMA]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_2736A66768E93AF3087B2E.exe
O4 - GS\Programs [GALIMA]: Fonctionnalités facultatives.lnk . (.Microsoft Corporation - Assistance pour les fonctions sur demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [GALIMA]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software®
O4 - GS\Programs [GALIMA]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\GALIMA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [GALIMA]: Xtreme Download Manager.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{544D8CA9-4267-4F3E-A25D-1F20A7677955}\_409DA1791F6FCE4319810C.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_B0FAA512910717810DB647.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Devserver 17.lnk . (.Aestan Software - Aestan Tray Menu.) C:\Program Files (x86)\EasyPHP-Devserver-17\run-devserver.exe =>.Aestan Software
O4 - GS\Desktop [WDAGUtilityAccount]: Docker for Windows.lnk . (.Docker Inc. - .) C:\Program Files (x86)\Docker\Docker\Docker for Windows.exe =>.Docker Inc.
O4 - GS\Desktop [WDAGUtilityAccount]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.®
O4 - GS\Desktop [WDAGUtilityAccount]: Google Drive.lnk . (...) C:\Users\GALIMA\Google Drive
O4 - GS\Desktop [WDAGUtilityAccount]: SQLitePlus Database Explorer.lnk . (.EzTools Software Corporation - SQLitePlus Database Manager.) C:\Program Files (x86)\EzTools\SQLitePlus7\SqlitePlus.exe
O4 - GS\Desktop [WDAGUtilityAccount]: Torrent2Exe.lnk . (.http://www.torrent2exe.com - Torrent2Exe.) C:\Program Files\Torrent2Exe\T2E.exe
O4 - GS\Desktop [WDAGUtilityAccount]: UmmyVideoDownloader.lnk . (...) C:\Users\GALIMA\AppData\Local\UmmyVideoDownloader\UmmyVideoDownloader.exe {65FA5A5518239DCE52EB94EB}
O4 - GS\Desktop [WDAGUtilityAccount]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\GALIMA\AppData\Local\WhatsApp\WhatsApp.exe =>.WhatsApp, Inc.®
O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\GALIMA\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Desktop [WDAGUtilityAccount]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Microsoft Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\Office16\OUTLOOK.EXE /recycle =>.Microsoft Corporation®
O4 - GS\Quicklaunch [WDAGUtilityAccount]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [WDAGUtilityAccount]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Format Factory.lnk . (.Free Time Co., Ltd. - FormatFactory.) C:\Program Files (x86)\FormatFactory\FormatFactory.exe =>.Free Time Co., Ltd.®
O4 - GS\sendTo [WDAGUtilityAccount]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Skype\Phone\Skype.exe /sendto: =>.Skype Software Sarl®
O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [WDAGUtilityAccount]: Adobe After Effects CS6.lnk . (.Adobe Systems Incorporated - Adobe After Effects CS6.) C:\Program Files\Adobe\Adobe After Effects CS6\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [WDAGUtilityAccount]: Adobe Photoshop CS6.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CS6.) C:\Program Files (x86)\Adobe\Adobe Photoshop CS6\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [WDAGUtilityAccount]: Adobe Premiere Pro CS6.lnk . (.Adobe Systems, Incorporated - Adobe Premiere Pro CS6.) C:\Program Files\Adobe\Adobe Premiere Pro CS6\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [WDAGUtilityAccount]: Excel 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\TaskBar [WDAGUtilityAccount]: Microsoft Office Project 2003.lnk . (...) C:\Windows\Installer\{903B040C-6000-11D3-8CFE-0150048383C9}\pj11icon.exe
O4 - GS\TaskBar [WDAGUtilityAccount]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [WDAGUtilityAccount]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d'écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\TaskBar [WDAGUtilityAccount]: Visual Studio 2017.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2017.) C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [WDAGUtilityAccount]: Visual Studio Code.lnk . (.Microsoft Corporation - Visual Studio Code.) C:\Program Files (x86)\Microsoft VS Code\Code.exe =>.Microsoft Corporation®
O4 - GS\TaskBar [WDAGUtilityAccount]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®
O4 - GS\Startup [WDAGUtilityAccount]: Microsoft SharePoint Workspace.lnk . (.Microsoft Corporation - Microsoft SharePoint Workspace.) C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE /TrayOnly =>.Microsoft Corporation®
O4 - GS\Programs [WDAGUtilityAccount]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_2736A66768E93AF3087B2E.exe
O4 - GS\Programs [WDAGUtilityAccount]: Fonctionnalités facultatives.lnk . (.Microsoft Corporation - Assistance pour les fonctions sur demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [WDAGUtilityAccount]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software®
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\GALIMA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [WDAGUtilityAccount]: Xtreme Download Manager.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{544D8CA9-4267-4F3E-A25D-1F20A7677955}\_409DA1791F6FCE4319810C.exe
O4 - GS\CommonDesktop [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\CommonDesktop [Public]: AnyDesk.lnk . (...) C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O4 - GS\CommonDesktop [Public]: e-express.lnk . (...) C:\Program Files (x86)\e-express\e-express.exe
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\CommonDesktop [Public]: Google Docs.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_document
O4 - GS\CommonDesktop [Public]: Google Sheets.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_spreadsheet
O4 - GS\CommonDesktop [Public]: Google Slides.lnk . (...) C:\Program Files (x86)\Google\Drive\googledrivesync.exe --new_presentation
O4 - GS\CommonDesktop [Public]: iTools 4.lnk . (.ThinkSky Technology Inc. - iTools 4.) C:\Program Files (x86)\ThinkSky\iTools 4\iTools4.exe =>.Shenzhen Thinksky Technology Co.,Ltd®
O4 - GS\CommonDesktop [Public]: iTunes.lnk . (.Apple Inc. - .) C:\Program Files (x86)\iTunes\iTunes.exe =>.Apple Inc.
O4 - GS\CommonDesktop [Public]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -suite =>.NCH Software®
O4 - GS\CommonDesktop [Public]: Skype.lnk . (...) C:\WINDOWS\Installer\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}\SkypeIcon.exe =>.Skype Technologies
O4 - GS\CommonDesktop [Public]: UltraISO.lnk . (.EZB Systems, Inc. - UltraISO Premium.) C:\Program Files (x86)\UltraISO\UltraISO.exe =>.SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD.®
O4 - GS\CommonDesktop [Public]: Visual Studio Code.lnk . (.Microsoft Corporation - Visual Studio Code.) C:\Program Files (x86)\Microsoft VS Code\Code.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: WavePad Sound Editor.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe =>.NCH Software®
O4 - GS\CommonDesktop [Public]: WinZip.lnk . (.WinZip Computing, S.L. - .) C:\Program Files (x86)\WinZip\WINZIP64.EXE =>.WinZip Computing, S.L.
O4 - GS\Programs [Public]: Custom UI Editor For Microsoft Office.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{C644FAAE-42FD-4FEC-B170-AB40B128B9AF}\_2736A66768E93AF3087B2E.exe
O4 - GS\Programs [Public]: Fonctionnalités facultatives.lnk . (.Microsoft Corporation - Assistance pour les fonctions sur demande.) C:\Windows\System32\fodhelper.exe =>.Microsoft Corporation
O4 - GS\Programs [Public]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\GALIMA\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Xtreme Download Manager.lnk . (...) C:\Users\GALIMA\AppData\Roaming\Microsoft\Installer\{544D8CA9-4267-4F3E-A25D-1F20A7677955}\_409DA1791F6FCE4319810C.exe
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: AnyDesk.lnk . (...) C:\Program Files (x86)\AnyDesk\AnyDesk.exe --control =>.philandro Software GmbH®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\Windows\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d'écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-0000-0000000FF1CE}\accicons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Adobe After Effects CC 2018.lnk . (.Adobe Systems Incorporated - Adobe After Effects CC 2018.0.) C:\Program Files\Adobe\Adobe After Effects CC 2018\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CC 2018.lnk . (.Adobe - Adobe Media Encoder CC 2018.) C:\Program Files\Adobe\Adobe Media Encoder CC 2018\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{19589375-5C58-4AFA-842F-8B34744CCEAD}\AppleSoftwareUpdateIco.exe =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (...) C:\WINDOWS\Installer\{90160000-0011-0000-0000-0000000FF1CE}\xlicons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: NCH Suite.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe -extsuite =>.NCH Software®
O4 - GS\ProgramsCommon [Public]: OneDrive Entreprise.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\grv_icons.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\joticon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\outicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pptico.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\pubs.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Skype Entreprise 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\lyncicon.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Visual Studio 2017.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2017.) C:\Program Files (x86)\Microsoft Visual Studio\2017\Community\Common7\IDE\devenv.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Visual Studio Installer.lnk . (.Microsoft Corporation - Visual Studio Installer.) C:\Program Files (x86)\Microsoft Visual Studio\Installer\vs_installer.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: WavePad Sound Editor.lnk . (.NCH Software - WavePad Sound Editor.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe =>.NCH Software®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (...) C:\Windows\Installer\{90160000-0011-0000-0000-0000000FF1CE}\wordicon.exe =>.Microsoft Corporation®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = galima.local =>.Local Domain
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.2 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{2765eb36-e3b0-4644-a8f0-0bb931fcd777}: NameServer = 8.8.8.8 213.154.64.13 =>.France Google Cloud
O17 - HKLM\System\CCS\Services\Tcpip\..\{0c3591f9-f5b0-4b9e-bfdb-248f5e61c5d9}: DhcpNameServer = 172.20.10.1 =>.Private IP
O17 - HKLM\System\CCS\Services\Tcpip\..\{cb380c28-8e14-4387-8697-24a1299316b0}: DhcpNameServer = 192.168.1.2 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{faad9cf7-6ef6-4c92-bc88-84c8bba3a931}: DhcpNameServer = 172.20.10.1 =>.Private IP

---\\ PROTOCOLE ADDITIONNEL (23) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 0s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (...) -- C:\Windows\inf\unregmp2.exe (.not file.) =>.SUP.Various
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d’initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\Installer\chrmstp.exe =>.Google Inc®

---\\ LOGICIELS INSTALLÉS (187) - 78s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: Active Directory Authentication Library pour SQL Server - (.Microsoft Corporation.) [HKLM][64Bits] -- {C1D40364-88C8-4B47-91B2-CA0146ED0393} =>.Microsoft Corporation
O42 - Logiciel: Adobe After Effects CC 2018 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- AEFT_15_0_0 =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Creative Suite 6 Master Collection - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 29 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Media Encoder CC 2018 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- AME_12_0_0 =>.Adobe Systems Incorporated®
O42 - Logiciel: AnyDesk - (.philandro Software GmbH.) [HKLM][64Bits] -- AnyDesk =>.philandro Software GmbH®
O42 - Logiciel: Apple Application Support (32 bits) - (.Apple Inc..) [HKLM][64Bits] -- {D4C80B0C-CF67-43A7-90C3-466853543B54} =>.Apple Inc.
O42 - Logiciel: Apple Application Support (64 bits) - (.Apple Inc..) [HKLM][64Bits] -- {B2A2E8AF-BC48-4191-B2C4-3846A19835CA} =>.Apple Inc.
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {AA7D90D2-2387-4FA5-A3AF-96811BE49BFD} =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {19589375-5C58-4AFA-842F-8B34744CCEAD} =>.Apple Inc.
O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM][64Bits] -- {4B7277C7-9CEE-45FC-B36B-19AD28281B9C} =>.Google, Inc.
O42 - Logiciel: bl - (.Your Company Name.) [HKLM][64Bits] -- {2A075BB4-E976-4278-BF3F-E5C6945D84C0} =>.Your Company Name
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} =>.Apple Inc.
O42 - Logiciel: Composants requis pour SSDT - (.Microsoft Corporation.) [HKLM][64Bits] -- {D2B694C7-21FB-4E7C-B207-EBC1CB0EBA79} =>.Microsoft Corporation
O42 - Logiciel: DB Browser for SQLite - (.DB Browser for SQLite Team.) [HKLM][64Bits] -- DB Browser for SQLite =>.DB Browser for SQLite Team
O42 - Logiciel: DevExpress CodeRush 15.1 - (.Developer Express Inc..) [HKLM][64Bits] -- DevExpress CodeRush 15.1 =>.Developer Express Incorporated®
O42 - Logiciel: DevExpress Components 15.1 - (.Developer Express Inc..) [HKLM][64Bits] -- DevExpress Components 15.1 =>.Developer Express Incorporated®
O42 - Logiciel: DevExpress DevExtreme 15.1 - (.Developer Express Inc..) [HKLM][64Bits] -- DevExpress DevExtreme 15.1 =>.Developer Express Incorporated®
O42 - Logiciel: DiagnosticsHub_CollectionService - (.Microsoft Corporation.) [HKLM][64Bits] -- {A5DD0731-C724-4037-B35B-B80782AACE00} =>.Microsoft Corporation
O42 - Logiciel: Docker for Windows - (.Docker Inc..) [HKLM][64Bits] -- Docker for Windows {0FB2606BBE81DF0EECFBC3F6BE15D6A1} =>.Docker Inc.
O42 - Logiciel: e-express - (.Huawei Technologies Co.,Ltd.) [HKLM][64Bits] -- e-express =>.Huawei Technologies Co.,Ltd
O42 - Logiciel: Entity Framework 6.1.3 Tools for Visual Studio 15 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8C0447E-D45C-4E52-94E8-C6340AAC9DB8} =>.Microsoft Corporation
O42 - Logiciel: FormatFactory 4.0.0.0 - (.Free Time.) [HKLM][64Bits] -- FormatFactory =>.Free Time
O42 - Logiciel: Full Convert - (.Spectral Core.) [HKLM][64Bits] -- {4A9FA3B6-B3DA-4EE4-8535-17F9FE1E273A}
O42 - Logiciel: Full Convert - (.Spectral Core.) [HKLM][64Bits] -- Full Convert 17.12.1388.0 {00CEBBC1AF4617D94E4A2F5C67C815D615}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: icecap_collection_neutral - (.Microsoft Corporation.) [HKLM][64Bits] -- {9149432D-3BEE-4869-B6F5-7A5CF843A612} =>.Microsoft Corporation
O42 - Logiciel: icecap_collection_x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D0C9796E-CB35-4440-885D-9630A0153D1E} =>.Microsoft Corporation
O42 - Logiciel: icecap_collectionresources - (.Microsoft Corporation.) [HKLM][64Bits] -- {976706DB-0E8C-4EDB-BAE7-278B6300CE1B} =>.Microsoft Corporation
O42 - Logiciel: icecap_collectionresources - (.Microsoft Corporation.) [HKLM][64Bits] -- {B96B62E4-2EE4-45EC-8082-246FFC1B12E3} =>.Microsoft Corporation
O42 - Logiciel: icecap_collectionresourcesx64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {262EE643-72FF-406D-9776-C6B65443DA5B} =>.Microsoft Corporation
O42 - Logiciel: icecap_collectionresourcesx64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B1DC6327-C026-4AA4-857E-D30AB826CDBD} =>.Microsoft Corporation
O42 - Logiciel: IIS 10.0 Express - (.Microsoft Corporation.) [HKLM][64Bits] -- {883ED9A8-3762-481E-A362-3A7BE5CBEB15} =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {08274920-8908-45c2-9258-8ad67ff77b09}.sdb =>.Microsoft Corporation
O42 - Logiciel: IIS Express Application Compatibility Database for x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb =>.Microsoft Corporation
O42 - Logiciel: Intel(R) C++ Redistributables on Intel(R) 64 - (.Intel Corporation.) [HKLM][64Bits] -- {F70BCE36-25F2-4475-A918-6209B3D85BF3} =>.Intel Corporation
O42 - Logiciel: Intel® Hardware Accelerated Execution Manager - (.Intel Corporation.) [HKLM][64Bits] -- {22676F90-06C7-4DC0-96C2-FAE79AB306F4} =>.Intel Corporation
O42 - Logiciel: IntelliTraceProfilerProxy - (.Microsoft Corporation.) [HKLM][64Bits] -- {0A2EDF2C-9A71-43D7-964A-696BB7CEAC65} =>.Microsoft Corporation
O42 - Logiciel: IntelliTraceProfilerProxy - (.Microsoft Corporation.) [HKLM][64Bits] -- {F371B2C2-54DE-4483-8676-202CBFC10DDD} =>.Microsoft Corporation
O42 - Logiciel: iTools 4 - (.ThinkSky Technology Co., Ltd.) [HKLM][64Bits] -- iTools4
O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM][64Bits] -- {79C10DB4-5B09-43B7-BE48-4CF93A30FAA6} =>.Apple Inc.
O42 - Logiciel: Java SE Development Kit 8 Update 131 - (.Oracle Corporation.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0180131} =>.Oracle Corporation
O42 - Logiciel: Java SE Development Kit 8 Update 131 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180131} =>.Oracle Corporation
O42 - Logiciel: Java SE Development Kit 8 Update 161 - (.Oracle Corporation.) [HKLM][64Bits] -- {32A3A4F4-B792-11D6-A78A-00B0D0180161} =>.Oracle Corporation
O42 - Logiciel: Java SE Development Kit 8 Update 161 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {64A3A4F4-B792-11D6-A78A-00B0D0180161} =>.Oracle Corporation
O42 - Logiciel: KB4023057 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B977A833-7734-41A5-B820-1F23D81DC87B} =>.Microsoft Corporation
O42 - Logiciel: Lenovo EasyCamera - (.Vimicro.) [HKLM][64Bits] -- {ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332} =>.Microsoft Windows Hardware Compatibility Publisher®
O42 - Logiciel: Lenovo Power Management Driver - (.Lenovo.) [HKLM][64Bits] -- Power Management Driver =>.Lenovo
O42 - Logiciel: Microsoft .NET Core Host - 2.0.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {CC604AD5-82F0-47C4-BC0E-635DC1092828} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Host - 2.0.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {2961BF80-8CDD-4595-B6B4-04D5024929B1} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Host - 2.0.5 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {33775280-ED8A-4FAE-8773-648355259E5C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 2.0.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {EFF72D79-E9BA-44B2-8187-DBC6D69E7F22} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 2.0.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7BBA8A68-0EB8-4236-A1B0-CF887C47E9D9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 2.0.5 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {D8F37D18-2AB9-48EE-A5FC-50782A41EC5C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Runtime - 2.0.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE54D79A-4E7F-4F5D-AB22-9CD46397F2F3} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Runtime - 2.0.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F4AD258A-97CA-4AEA-BA75-E9CD9344D656} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core Runtime - 2.0.5 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {77312BF7-5C28-4DF8-A70E-5CE0FC8DC238} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core SDK - 2.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F57119A-E76E-4BE9-9110-0E09933FB3F9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core SDK - 2.0.2 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7976d84c-fdff-4801-99ca-cd8354fbbaaf} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft .NET Core SDK - 2.0.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5c81045f-7a1c-4d79-9c41-32a11f6615fc} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft .NET Core SDK - 2.0.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {A013E843-0B9B-4870-9B74-2A41E8665703} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core SDK - 2.1.4 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {04570DFE-949F-4308-8375-15CF9CC73C02} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core SDK - 2.1.4 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9e732e8f-9e57-467d-a425-6f2387bdabd0} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft .NET CoreRuntime For CoreCon - (.Microsoft Corporation.) [HKLM][64Bits] -- {48A8F171-52F2-372B-8414-EA50617708BE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET CoreRuntime SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {12491A47-4CEB-34C3-8D71-1980D90088B6} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Native SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {13F79D3A-88C2-3A1C-9035-6A99EE478DF2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Access MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0015-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Authoring Tools - v2.9.5.3 - (.Microsoft Corporation.) [HKLM][64Bits] -- {086C537B-DE1A-4A11-8441-6AAF076174B8} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Compute Emulator - v2.9.5.3 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BB44C8F9-C555-45CF-B6DA-80131B139165} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Compute Emulator - v2.9.5.3 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Azure Compute Emulator - v2.9.5.3 =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Libraries for .NET – v2.9 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C5C91AA6-3E83-430E-8B7A-6B790083F28D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Storage Emulator - v5.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {98A7870A-AC69-4531-A142-19EBB75B9996} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Azure Storage Emulator - v5.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Azure Storage Emulator - v5.2 =>.Microsoft Corporation
O42 - Logiciel: Microsoft DCF MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0090-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0016-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Exchange Web Services Managed API 2.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {24CA683D-8174-4EBF-AD4D-3F2DD7814716} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Groove MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00BA-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Identity Extensions - (.Microsoft Corporation.) [HKLM][64Bits] -- {F99F24BF-0B90-463E-9658-3FD2EFC3C992} =>.Microsoft Corporation
O42 - Logiciel: Microsoft InfoPath MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0044-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft NetStandard SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {737FDDA7-B944-4CB5-92D9-3D56373BD301} =>.Microsoft Corporation
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft OneNote MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00A1-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Outlook MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001A-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {812F31DC-FAA6-3979-B3D6-5D6BAAF2945D} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - enu - (.Microsoft Corporation.) [HKLM][64Bits] -- {BA3309CA-7099-3F6B-B386-EB7CC895C410} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - fra - (.Microsoft Corporation.) [HKLM][64Bits] -- {CA68042E-86E1-3340-A4C2-A5D02B7FF98F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft PowerPoint MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0018-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Publisher MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-0019-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight 5 SDK - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {80125E8C-304D-4637-974A-2547049B0E24} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Skype for Business MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-012B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2017 CTP2.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BAD8F82-A221-42CE-AFF0-7CAB825790C9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2017 CTP2.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0DD1AA8-44D7-4ACE-AF65-7378EA5D884C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types pour SQL Server 2012 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F6DA7ACD-4377-477F-9422-6A7AB9E6DF1E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Web Deploy 3.6 - (.Microsoft Corporation.) [HKLM][64Bits] -- {65C71B09-C33D-4F60-93EA-DF3AD1D40600} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Windows Communication Foundation Diagnostic Pack for x86 - (.Microsoft.) [HKLM][64Bits] -- {B4A4856F-7A4F-3BC4-A469-690D3CA52894} =>.Microsoft
O42 - Logiciel: Microsoft Word MUI (French) 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-001B-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Workflow Debugger v1.0 for amd64 - (.Microsoft.) [HKLM][64Bits] -- {FDF4D780-EEDB-3DB2-B938-719843D0FFFF} =>.Microsoft
O42 - Logiciel: Microsoft Workflow Debugger v1.0 for x86 - (.Microsoft.) [HKLM][64Bits] -- {17AECC2C-06A8-3917-9C31-3AC5E9FCE97C} =>.Microsoft
O42 - Logiciel: Microsoft Workflow Diagnostic Pack for x64 - (.Microsoft.) [HKLM][64Bits] -- {F1144D3D-F00E-32C5-B50B-1805666A30B9} =>.Microsoft
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- {4727EDB7-0478-31CF-AD6C-346D29254144} =>.Microsoft Corporation
O42 - Logiciel: Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA - (.Microsoft Corporation.) [HKLM][64Bits] -- Module linguistique de la visionneuse d'aide Microsoft 2.1 - FRA =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 59.0.2 (x64 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 59.0.2 (x64 en-US) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: MSI to redistribute MS VS2010 CRT libraries - (.The Firebird Project.) [HKLM][64Bits] -- {3EE48F79-0D53-4FE3-B611-280D1EB6873A} =>.The Firebird Project
O42 - Logiciel: MSI to redistribute MS VS2010 CRT libraries - (.The Firebird Project.) [HKLM][64Bits] -- {D9D020C0-B53E-4A40-B2FA-35D47966601B} =>.The Firebird Project
O42 - Logiciel: MySQL Connector C++ 1.1.9 - (.Oracle and/or its affiliates.) [HKLM][64Bits] -- {C91610F0-0500-4C1D-90DF-B050E2DFD6E9} =>.Oracle and/or its affiliates
O42 - Logiciel: MySQL Connector J - (.Oracle Corporation.) [HKLM][64Bits] -- {B43F7028-7511-4F84-BB71-CA14FFDA42CC} =>.Oracle Corporation
O42 - Logiciel: MySQL Connector Net 6.9.9 - (.Oracle.) [HKLM][64Bits] -- {E09F82E9-3EB3-4725-BDC8-3C77F83E262C} =>.Oracle
O42 - Logiciel: MySQL Connector/C 6.1 - (.Oracle Corporation.) [HKLM][64Bits] -- {EFBE5AED-E6E8-42AC-9092-B9D5A69616C8} =>.Oracle Corporation
O42 - Logiciel: MySQL Connector/ODBC 5.1 - (.Oracle Corporation.) [HKLM][64Bits] -- {EDB9F166-FA9B-4F71-B2C8-BECD561BD77F} =>.Oracle Corporation
O42 - Logiciel: MySQL Connector/ODBC 5.3 - (.Oracle Corporation.) [HKLM][64Bits] -- {62749F06-4DFD-477D-9724-751366511E5D} =>.Oracle Corporation
O42 - Logiciel: MySQL Documents 5.7 - (.Oracle Corporation.) [HKLM][64Bits] -- {8ABEC623-85C2-4C51-BB35-4D169600A1A4} =>.Oracle Corporation
O42 - Logiciel: MySQL Examples and Samples 5.7 - (.Oracle Corporation.) [HKLM][64Bits] -- {E7E330CF-A042-4D56-9CA4-BD21ABE49AEF} =>.Oracle Corporation
O42 - Logiciel: MySQL Installer - Community - (.Oracle Corporation.) [HKLM][64Bits] -- {7999380B-7D4E-4E76-B61D-3AFCA710F24D} =>.Oracle Corporation
O42 - Logiciel: MySQL Notifier 1.1.7 - (.Oracle.) [HKLM][64Bits] -- {724CDD73-430E-47DA-8F4E-7DF2000BA268} =>.Oracle
O42 - Logiciel: MySQL Router 2.1 - (.Oracle Corporation.) [HKLM][64Bits] -- {24C82225-F777-47CD-9D1D-2B0F635B3E24} =>.Oracle Corporation
O42 - Logiciel: MySQL Server 5.7 - (.Oracle Corporation.) [HKLM][64Bits] -- {81B27388-3733-4B65-8D84-AD9C9113B498} =>.Oracle Corporation
O42 - Logiciel: MySQL Shell 1.0.10 - (.Oracle and/or its affiliates.) [HKLM][64Bits] -- {4CDA2B48-1BE6-4AE2-A9BF-D94E9DC03148} =>.Oracle and/or its affiliates
O42 - Logiciel: MySQL Utilities - (.Oracle Corporation.) [HKLM][64Bits] -- {BEDAC2EF-DBA2-4B25-857A-7DF385FA645E} =>.Oracle Corporation
O42 - Logiciel: MySQL Workbench 6.3 CE - (.Oracle Corporation.) [HKLM][64Bits] -- {CD8C5EC0-56A3-4F6E-BB22-E230059DF1F2} =>.Oracle Corporation
O42 - Logiciel: Online Application - (.Microleaves.) [HKLM][64Bits] -- {5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} =>.SUP.Microleaves
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} =>.Adobe Systems Incorporated
O42 - Logiciel: ph - (.Your Company Name.) [HKLM][64Bits] -- {185F9795-9663-4F13-9EF9-307A282ADB5A} =>.Your Company Name
O42 - Logiciel: Shadowsocks version 1.0 - (.Shadowsocks Co..) [HKLM][64Bits] -- {55C331C0-43FB-41EE-A00E-3897C3EE0C2C}_is1 =>.Shadowsocks Co.
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95150002-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: SharePoint Client Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {95160001-1163-0409-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Skype for Business Web App Plug-in - (.Microsoft Corporation.) [HKLM][64Bits] -- {37C8167B-B653-4955-A6E8-EBB8DE937DDD} =>.Microsoft Corporation
O42 - Logiciel: Skype™ 7.41 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {3B7E914A-93D5-4A29-92BB-AF8C3F66C431} =>.Skype Technologies S.A.
O42 - Logiciel: Smart Indenter - (..) [HKLM][64Bits] -- Smart Indenter
O42 - Logiciel: sptools_Microsoft.VisualStudio.OfficeDeveloperTools.Msi - (.Microsoft Corporation.) [HKLM][64Bits] -- {72BA31CD-9667-422B-A8A4-65C248E06222} =>.Microsoft Corporation
O42 - Logiciel: SQLite ODBC Driver (remove only) - (.Legitimate.) [HKLM][64Bits] -- SQLite ODBC Driver
O42 - Logiciel: SQLitePlus 7 Database Explorer - (.EzTools Software.) [HKLM][64Bits] -- SQLitePlus 7 Database Explorer_is1
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated®
O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1690CE56-2231-4E59-9006-A0876D949EA8} =>.Microsoft Corporation
O42 - Logiciel: Tools for .Net 3.5 - FRA Lang Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {C37962EE-EE24-4E9F-8A41-514ACD79177C} =>.Microsoft Corporation
O42 - Logiciel: Torrent2Exe - (.www.torrent2exe.com.) [HKCU][64Bits] -- Torrent2Exe
O42 - Logiciel: Types CLR du système Microsoft pour SQL Server 2012 - (.Microsoft Corporation.) [HKLM][64Bits] -- {06E862CA-3920-4745-9C26-2DE51B50057E} =>.Microsoft Corporation
O42 - Logiciel: TypeScript SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {B08D05BC-7897-4616-B34C-95B58D07650C} =>.Microsoft Corporation
O42 - Logiciel: TypeScript SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFA1F87E-EF2B-4785-812C-4BEEA22CFD06} =>.Microsoft Corporation
O42 - Logiciel: UltraISO Premium V9.66 - (.ZBShareware Labs.) [HKLM][64Bits] -- UltraISO_is1 =>.ZBShareware Labs
O42 - Logiciel: UmmyVideoDownloader - (.Ummy Software.) [HKLM][64Bits] -- {E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1
O42 - Logiciel: Update for Skype for Business 2016 (KB4018323) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-0011-0000-0000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2016 (KB4018323) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-002A-0000-1000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646} =>.Microsoft Corporation®
O42 - Logiciel: Update for Skype for Business 2016 (KB4018323) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90160000-012B-040C-0000-0000000FF1CE}_Office16.PROPLUS_{FC6D613D-A7D9-4C85-AC63-D2C4AFC69646} =>.Microsoft Corporation®
O42 - Logiciel: UpdateAssistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {DE45508F-369E-4476-8F19-088F4933340E} =>.Microsoft Corporation
O42 - Logiciel: vcpp_crt.redist.clickonce - (.Microsoft Corporation.) [HKLM][64Bits] -- {0074562E-F896-4994-9086-79F8BC8DE02C} =>.Microsoft Corporation
O42 - Logiciel: vcpp_crt.redist.clickonce - (.Microsoft Corporation.) [HKLM][64Bits] -- {1700EAB7-8401-4B47-AFEF-02AFC40F8BDD} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 4.1 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {35EE76E6-C7B4-4953-9562-84DFB59AF40C} =>.Microsoft Corporation
O42 - Logiciel: Visual F# 4.1 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {E3D2907E-3CF0-47C3-9F62-53A12D2F94ED} =>.Microsoft Corporation
O42 - Logiciel: Visual Studio Community 2017 - (.Microsoft Corporation.) [HKLM][64Bits] -- c4941640 =>.Microsoft Corporation®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VS Immersive Activate Helper - (.Microsoft Corporation.) [HKLM][64Bits] -- {8A2BDA07-3417-46C1-9058-CB32BC63E30E} =>.Microsoft Corporation
O42 - Logiciel: VS JIT Debugger - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8F52853-A1A7-42C7-A082-5A6D5853BB0B} =>.Microsoft Corporation
O42 - Logiciel: VS Script Debugging Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {0EE5749D-2DC0-460F-AB1C-06B3EDB42426} =>.Microsoft Corporation
O42 - Logiciel: VS WCF Debugging - (.Microsoft Corporation.) [HKLM][64Bits] -- {209A1A84-1A06-4954-9D73-7E654C5F8D7A} =>.Microsoft Corporation
O42 - Logiciel: vs_clickoncebootstrappermsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {A68D7884-F036-4A0D-AE1A-410E0311E135} =>.Microsoft Corporation
O42 - Logiciel: vs_clickoncebootstrappermsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {91DDDFB5-1782-48C2-BA2A-8F4D9DE39D27} =>.Microsoft Corporation
O42 - Logiciel: vs_clickoncesigntoolmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A1ECF65-2CBF-4B33-9D4A-D1C0A0E5FE45} =>.Microsoft Corporation
O42 - Logiciel: vs_communitymsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {595F5D63-8773-4182-A1E0-EC9ECF4B6EA4} =>.Microsoft Corporation
O42 - Logiciel: vs_communitymsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {1A7B945D-ACF2-447F-AF55-A9351F2A70AB} =>.Microsoft Corporation
O42 - Logiciel: vs_communitymsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {40040E64-50EB-4FCF-B209-DA0B20821759} =>.Microsoft Corporation
O42 - Logiciel: vs_devenvmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {BFFA2FFB-1095-4ADD-A352-368806D2412B} =>.Microsoft Corporation
O42 - Logiciel: vs_filehandler_amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9414C260-D479-49EB-B0BF-01C1F5076EA0} =>.Microsoft Corporation
O42 - Logiciel: vs_filehandler_x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A57BD1C0-42AD-42F8-AFEB-FAC7E6ABB005} =>.Microsoft Corporation
O42 - Logiciel: vs_FileTracker_Singleton - (.Microsoft Corporation.) [HKLM][64Bits] -- {70F69B4F-7950-4841-8139-5D0C7EDD2FE6} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellinteropmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {231C8ADB-BF59-458E-A909-CFA825F46388} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {9CDD69A2-765A-4970-AB6B-595A740C614F} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellmsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {6DFE6F8D-B61D-4348-AB70-4ABF1210DFD5} =>.Microsoft Corporation
O42 - Logiciel: vs_minshellmsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {853FD6F3-0BC9-414A-986B-90EF538DBAA1} =>.Microsoft Corporation
O42 - Logiciel: vs_SQLClickOnceBootstrappermsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {5779B6DD-604A-41CE-BC3D-9D4BDDA22AD2} =>.Microsoft Corporation
O42 - Logiciel: vs_tipsmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {1AC6CC3D-7724-4D84-9270-798A2191AB1C} =>.Microsoft Corporation
O42 - Logiciel: WavePad Sound Editor - (.NCH Software.) [HKLM][64Bits] -- WavePad =>.NCH Software®
O42 - Logiciel: WCF RIA Services V1.0 SP2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5D8DD6A8-C4D7-4554-93F9-F1CC28C72600} =>.Microsoft Corporation
O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp =>.WhatsApp, Inc.®
O42 - Logiciel: WinRAR archiver - (.RarLab.) [HKLM][64Bits] -- WinRAR archiver =>.RarLab
O42 - Logiciel: WinZip 21.5 - (.WinZip Computing, S.L..) [HKLM][64Bits] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C2410F} =>.WinZip Computing, S.L.
O42 - Logiciel: Workflow Manager Client 1.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {69CD1F2D-DF68-4E23-9108-1B70783F2855} =>.Microsoft Corporation
O42 - Logiciel: Workflow Manager Client 1.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A471CF2D-2572-4872-88A0-D558B3C971DC} =>.Microsoft Corporation
O42 - Logiciel: Workflow Manager Tools 1.0 for Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {7E351EBA-A063-4DE6-9F95-094883AAF7DA} =>.Microsoft Corporation
O42 - Logiciel: Workflow Manager Tools 1.0 for Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {F308DC01-FAB9-4CC8-ADAD-2D74AD869AAE} =>.Microsoft Corporation
O42 - Logiciel: Xamarin PCL Profiles v1.0.9 - (.Xamarin.) [HKLM][64Bits] -- {5E6844AB-A867-419C-A376-B12B574AA5F7} =>.Xamarin
O42 - Logiciel: Xamarin.Bonjour v1.0.13 - (.Xamarin.) [HKLM][64Bits] -- {32B2DF61-DE93-4AF9-A7A6-79B03299A0AA} =>.Xamarin
O42 - Logiciel: Xtreme Download Manager - (.Subhra Das Gupta.) [HKLM][64Bits] -- {544D8CA9-4267-4F3E-A25D-1F20A7677955}

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (134) - 78s
HKCU\Software\csastats =>Adware.InstallCore
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\DB Browser for SQLite Team =>.Legitimate
HKLM\SOFTWARE\Developer Express =>.Developer Express
HKLM\SOFTWARE\DevExpress =>.DevExpress
HKLM\SOFTWARE\dotnet
HKLM\SOFTWARE\EasyBoot Systems =>.EasyBoot Systems
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Huawei technologies =>.Huawei Technologies
HKLM\SOFTWARE\IM Providers =>.IM Providers
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\MySQL =>.MySQL AB
HKLM\SOFTWARE\MySQL AB =>.MySQL AB
HKLM\SOFTWARE\NCH Software =>.NCH Software
HKLM\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing
HKLM\SOFTWARE\Nuget =>.Microsoft Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Skype =>.Skype
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\Spectral Core
HKLM\SOFTWARE\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Xamarin =>.Xamarin
HKLM\SOFTWARE\ZSMC =>.ZSMC Corporation
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\DB Browser for SQLite Team =>.Legitimate
HKLM\SOFTWARE\WOW6432Node\Developer Express =>.Developer Express
HKLM\SOFTWARE\WOW6432Node\DevExpress =>.DevExpress
HKLM\SOFTWARE\WOW6432Node\dotnet
HKLM\SOFTWARE\WOW6432Node\EasyBoot Systems =>.EasyBoot Systems
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Huawei technologies =>.Huawei Technologies
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\MySQL =>.MySQL AB
HKLM\SOFTWARE\WOW6432Node\MySQL AB =>.MySQL AB
HKLM\SOFTWARE\WOW6432Node\NCH Software =>.NCH Software
HKLM\SOFTWARE\WOW6432Node\NCH Swift Sound =>.NCH Swift Sound
HKLM\SOFTWARE\WOW6432Node\Nico Mak Computing =>.Nico Mak Computing
HKLM\SOFTWARE\WOW6432Node\Nuget =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node\Sonic =>.Sonic
HKLM\SOFTWARE\WOW6432Node\Spectral Core
HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Xamarin =>.Xamarin
HKLM\SOFTWARE\WOW6432Node\ZSMC =>.ZSMC Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Adobe-BackupByPhotoshopCS6Portable
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\Automobile
HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Corel =>.Corel
HKCU\SOFTWARE\DMSoft Technologies
HKCU\SOFTWARE\EasyBoot Systems =>.EasyBoot Systems
HKCU\SOFTWARE\EpicNet Inc. =>Adware.MSIL
HKCU\SOFTWARE\EzTools =>.EZTools
HKCU\SOFTWARE\ForensiT
HKCU\SOFTWARE\FreeTime =>.FreeTime Inc
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\IMDownloader =>.Legitimate
HKCU\SOFTWARE\InstallShield =>.InstallShield
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Intel Corporation =>.Intel Corporation
HKCU\SOFTWARE\Magicbit =>.SUP.Magicbit
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MySQL =>.MySQL AB
HKCU\SOFTWARE\MySQL AB =>.MySQL AB
HKCU\SOFTWARE\NCH Software =>.NCH Software
HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Oracle =>.Oracle
HKCU\SOFTWARE\PACE Anti-Piracy =>.PACE Anti-Piracy
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SetupCompany
HKCU\SOFTWARE\Shadowsocks
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\skypeapp-1ac7f5d06c67 =>.Skype Technologies
HKCU\SOFTWARE\sqlitebrowser =>.Legitimate
HKCU\SOFTWARE\Subhra Das Gupta
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\ThinkSky =>.ThinkSky Inc
HKCU\SOFTWARE\Tiramisu
HKCU\SOFTWARE\Torrent2Exe.com
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\UptimeHandler
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\WinZip Computing =>.WinZip Computing
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\Xamarin =>.Xamarin
HKCU\SOFTWARE\YeaDesktop =>Trojan.Zusy
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation

---\\ CONTENU DES DOSSIERS PROGRAMMES (202) - 253s
O43 - CFD: 21/11/2017 - [] AD -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 19/12/2017 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 26/12/2017 - [] D -- C:\Program Files\DB Browser for SQLite =>.Legitimate
O43 - CFD: 08/01/2018 - [] D -- C:\Program Files\Docker {0FB2606BBE81DF0EECFBC3F6BE15D6A1} =>.Docker
O43 - CFD: 06/02/2018 - [] AD -- C:\Program Files\dotnet =>.Microsoft Corporation®
O43 - CFD: 26/03/2018 - [] D -- C:\Program Files\Google =>.Google Inc®
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files\IIS Express =>.Microsoft Corporation®
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 01/02/2018 - [] D -- C:\Program Files\iPod =>.Apple Inc.®
O43 - CFD: 01/02/2018 - [] D -- C:\Program Files\iTunes =>.Apple Inc.
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 07/04/2018 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files\MySQL =>.MySQL AB
O43 - CFD: 20/10/2017 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation®
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files\Shadowsocks
O43 - CFD: 26/12/2017 - [] D -- C:\Program Files\Spectral Core {00CEBBC1AF4617D94E4A2F5C67C815D615}
O43 - CFD: 21/12/2017 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 20/03/2018 - [] D -- C:\Program Files\Torrent2Exe
O43 - CFD: 26/04/2018 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 20/10/2017 - [] AD -- C:\Program Files\VS2010Schemas
O43 - CFD: 20/10/2017 - [] AD -- C:\Program Files\VS2012Schemas
O43 - CFD: 14/11/2017 - [] D -- C:\Program Files\WinRAR =>.WinRAR
O43 - CFD: 17/10/2017 - [] AD -- C:\Program Files\WinZip =>.Add-in Express®
O43 - CFD: 23/01/2018 - [] D -- C:\Program Files\WinZip Smart Monitor =>.SUP.WinzipSystemUtilities
O43 - CFD: 12/12/2017 - [] AD -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 19/12/2017 - [] D -- C:\Program Files (x86)\AnyDesk =>.philandro Software GmbH
O43 - CFD: 01/02/2018 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
O43 - CFD: 12/12/2017 - [] D -- C:\Program Files (x86)\AppsPro
O43 - CFD: 19/12/2017 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 08/03/2018 - [] D -- C:\Program Files (x86)\CustomUIEditor
O43 - CFD: 26/12/2017 - [] D -- C:\Program Files (x86)\DBConvert
O43 - CFD: 21/12/2017 - [] D -- C:\Program Files (x86)\DevExpress 15.1 =>.DevExpress
O43 - CFD: 23/11/2017 - [] D -- C:\Program Files (x86)\e-express =>.HUAWEI Technologies Co., Ltd.®
O43 - CFD: 12/02/2018 - [] D -- C:\Program Files (x86)\EasyPHP-Devserver-17 =>.Emmanuel Faivre
O43 - CFD: 20/10/2017 - [] D -- C:\Program Files (x86)\Entity Framework Tools =>.Microsoft Corporation®
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files (x86)\EzTools =>.EZTools
O43 - CFD: 29/12/2017 - [] D -- C:\Program Files (x86)\ForensiT
O43 - CFD: 25/10/2017 - [] D -- C:\Program Files (x86)\FormatFactory =>.Free Time Co., Ltd.®
O43 - CFD: 26/03/2018 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files (x86)\IIS Express =>.Microsoft Corporation®
O43 - CFD: 16/10/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 06/02/2018 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 27/12/2017 - [] D -- C:\Program Files (x86)\Microleaves =>.SUP.Microleaves
O43 - CFD: 20/10/2017 - [] AD -- C:\Program Files (x86)\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 11/03/2018 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 07/04/2018 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 15/11/2017 - [] D -- C:\Program Files (x86)\My Company Name =>.My Company Name
O43 - CFD: 14/02/2018 - [] D -- C:\Program Files (x86)\MySQL =>.MySQL AB
O43 - CFD: 30/12/2017 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software
O43 - CFD: 26/04/2018 - [] RD -- C:\Program Files (x86)\Skype =>.Skype
O43 - CFD: 26/12/2017 - [] D -- C:\Program Files (x86)\SQLite ODBC Driver =>.Legitimate
O43 - CFD: 18/10/2017 - [] D -- C:\Program Files (x86)\Subhra Das Gupta
O43 - CFD: 20/11/2017 - [] D -- C:\Program Files (x86)\ThinkSky =>.ThinkSky Inc
O43 - CFD: 25/10/2017 - [] AD -- C:\Program Files (x86)\UltraISO =>.EZB Systems
O43 - CFD: 20/12/2017 - [] D -- C:\Program Files (x86)\USB Camera =>.Microsoft Windows Hardware Compatibility Publisher®
O43 - CFD: 19/10/2017 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 22/04/2018 - [] D -- C:\Program Files (x86)\VMware =>.VMware
O43 - CFD: 20/10/2017 - [] D -- C:\Program Files (x86)\Workflow Manager Tools =>.Microsoft Corporation®
O43 - CFD: 20/10/2017 - [] D -- C:\Program Files (x86)\Xamarin =>.Xamarin Inc.®
O43 - CFD: 16/02/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk =>.philandro Software GmbH
O43 - CFD: 26/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
O43 - CFD: 26/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DB Browser for SQLite =>.Legitimate
O43 - CFD: 21/12/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DevExpress 15.1 =>.DevExpress
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-express
O43 - CFD: 03/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EzTools =>.EZTools
O43 - CFD: 26/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Full Convert
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTools 4 =>.ThinkSky Inc
O43 - CFD: 01/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes =>.Apple Inc.
O43 - CFD: 06/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit =>.Oracle
O43 - CFD: 27/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL =>.MySQL AB
O43 - CFD: 30/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO =>.EZB Systems
O43 - CFD: 26/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2017 =>.Pinnacle Systems, Inc.
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Code =>.Pinnacle Systems, Inc.
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 21.5
O43 - CFD: 23/11/2017 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 19/12/2017 - [] D -- C:\ProgramData\AnyDesk =>.philandro Software GmbH
O43 - CFD: 27/10/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 27/10/2017 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 20/03/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 26/12/2017 - [] D -- C:\ProgramData\Caphyon =>.Caphyon
O43 - CFD: 23/11/2017 - [] D -- C:\ProgramData\DatacardService =>.Entriq, Inc.
O43 - CFD: 20/10/2017 - [0] D -- C:\ProgramData\dbg =>.DBG
O43 - CFD: 20/10/2017 - [] D -- C:\ProgramData\dftmp
O43 - CFD: 23/01/2018 - [] D -- C:\ProgramData\Docker =>.Docker
O43 - CFD: 23/11/2017 - [] D -- C:\ProgramData\e-express
O43 - CFD: 18/04/2018 - [] D -- C:\ProgramData\InstallShield =>.InstallShield
O43 - CFD: 16/10/2017 - [] D -- C:\ProgramData\KMSAuto =>HackTool.WinActivator
O43 - CFD: 27/12/2017 - [] D -- C:\ProgramData\Microleaves =>.SUP.Microleaves
O43 - CFD: 27/12/2017 - [] D -- C:\ProgramData\MySQL =>.MySQL AB
O43 - CFD: 30/12/2017 - [] D -- C:\ProgramData\NCH Software =>.NCH Software
O43 - CFD: 20/10/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 16/11/2017 - [] D -- C:\ProgramData\PACE Anti-Piracy =>.PACE Anti-Piracy
O43 - CFD: 27/12/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 21/12/2017 - [] D -- C:\ProgramData\regid.1986-12.com.adobe-BackupByPhotoshopCS6Portable =>.Adobe Inc.
O43 - CFD: 26/04/2018 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 20/11/2017 - [] D -- C:\ProgramData\ThinkSky =>.ThinkSky Inc
O43 - CFD: 22/04/2018 - [] D -- C:\ProgramData\VMware =>.VMware
O43 - CFD: 17/10/2017 - [] AD -- C:\ProgramData\WinZip =>.WinZip
O43 - CFD: 21/11/2017 - [] AD -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 08/02/2018 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 15/02/2018 - [] AD -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 25/10/2017 - [] D -- C:\Program Files (x86)\Common Files\EZB Systems =>.EZB Systems
O43 - CFD: 03/01/2018 - [] D -- C:\Program Files (x86)\Common Files\EzTools =>.EZTools
O43 - CFD: 18/04/2018 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 21/12/2017 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 15/11/2017 - [] AD -- C:\Program Files (x86)\Common Files\PX Storage Engine =>.Sonic Solutions
O43 - CFD: 26/04/2018 - [] D -- C:\Program Files (x86)\Common Files\Skype =>.Skype
O43 - CFD: 15/11/2017 - [] D -- C:\Program Files (x86)\Common Files\Sonic Shared =>.Sonic
O43 - CFD: 22/04/2018 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware
O43 - CFD: 01/02/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 19/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\AnyDesk =>.philandro Software GmbH
O43 - CFD: 08/02/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 24/10/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Code
O43 - CFD: 24/01/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\DataRecommendations =>.Unknown
O43 - CFD: 22/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\DevExpress =>.DevExpress
O43 - CFD: 08/01/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Docker =>.Docker
O43 - CFD: 27/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\EpicNet Inc =>Adware.MSIL
O43 - CFD: 08/01/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Kitematic
O43 - CFD: 17/10/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 27/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microleaves =>.SUP.Microleaves
O43 - CFD: 17/03/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 27/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\MySQL =>.MySQL AB
O43 - CFD: 30/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\NCH Software =>.NCH Software
O43 - CFD: 20/10/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\npm-cache
O43 - CFD: 23/11/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\obs-studio =>.OBS-Studio
O43 - CFD: 27/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Oracle =>.Oracle
O43 - CFD: 16/11/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\PACE Anti-Piracy =>.PACE Anti-Piracy
O43 - CFD: 02/05/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Skype =>.Skype
O43 - CFD: 26/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Spectral Core
O43 - CFD: 18/10/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Subhra Das Gupta
O43 - CFD: 20/03/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Torrent2Exe
O43 - CFD: 28/04/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\uTorrent
O43 - CFD: 06/02/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Visual Studio Setup =>.Pinnacle Systems, Inc.
O43 - CFD: 25/04/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 20/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\VMware =>.VMware
O43 - CFD: 20/10/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\vstelemetry =>.Legitimate
O43 - CFD: 13/04/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\WhatsApp =>.WhatsApp
O43 - CFD: 14/11/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 02/05/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 08/01/2018 - [] D -- C:\Users\GALIMA\AppData\Local\.IdentityService
O43 - CFD: 01/05/2018 - [] D -- C:\Users\GALIMA\AppData\Local\Adobe =>.Adobe
O43 - CFD: 27/12/2017 - [0] D -- C:\Users\GALIMA\AppData\Local\AdService =>Trojan.Agent
O43 - CFD: 27/12/2017 - [] D -- C:\Users\GALIMA\AppData\Local\AdvinstAnalytics =>.SUP.Various
O43 - CFD: 16/11/2017 - [] HD -- C:\Users\GALIMA\AppData\Local\aoaGOZ4r
O43 - CFD: 27/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 01/02/2018 - [] D -- C:\Users\GALIMA\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 02/02/2018 - [] D -- C:\Users\GALIMA\AppData\Local\Apple Inc =>.Apple Inc.
O43 - CFD: 08/01/2018 - [] D -- C:\Users\GALIMA\AppData\Local\ASP.NET
O43 - CFD: 21/12/2017 - [] D -- C:\Users\GALIMA\AppData\Local\assembly =>.Assembly
O43 - CFD: 19/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\CEF =>.CEF
O43 - CFD: 20/11/2017 - [] D -- C:\Users\GALIMA\AppData\Local\CrashRpt
O43 - CFD: 24/01/2018 - [] D -- C:\Users\GALIMA\AppData\Local\DataRecommendation =>.Unknown
O43 - CFD: 25/10/2017 - [0] D -- C:\Users\GALIMA\AppData\Local\DBG =>.DBG
O43 - CFD: 22/12/2017 - [] D -- C:\Users\GALIMA\AppData\Local\Developer_Express_Inc
O43 - CFD: 30/01/2018 - [] D -- C:\Users\GALIMA\AppData\Local\Docker =>.Docker
O43 - CFD: 21/11/2017 - [] D -- C:\Users\GALIMA\AppData\Local\fontconfig =>.Portable Apps
O43 - CFD: 29/12/2017 - [] D -- C:\Users\GALIMA\AppData\Local\ForensiT
O43 - CFD: 08/01/2018 - [] D -- C:\Users\GALIMA\AppData\Local\GitCredentialManager
O43 - CFD: 30/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\Google =>.Google
O43 - CFD: 17/03/2018 - [] D -- C:\Users\GALIMA\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 16/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\MSfree Inc =>HackTool.WinActivator
O43 - CFD: 16/10/2017 - [0] D -- C:\Users\GALIMA\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 20/12/2017 - [] D -- C:\Users\GALIMA\AppData\Local\OfficeBSCache-MyComputer
O43 - CFD: 16/11/2017 - [0] D -- C:\Users\GALIMA\AppData\Local\PACE Anti-Piracy =>.PACE Anti-Piracy
O43 - CFD: 14/03/2018 - [0] D -- C:\Users\GALIMA\AppData\Local\PlaceholderTileLogoFolder
O43 - CFD: 20/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\ServiceHub
O43 - CFD: 13/04/2018 - [] D -- C:\Users\GALIMA\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 26/04/2018 - [] D -- C:\Users\GALIMA\AppData\Local\UmmyVideoDownloader =>.UmmyVideoDownloader
O43 - CFD: 20/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\VisualStudio
O43 - CFD: 20/12/2017 - [] D -- C:\Users\GALIMA\AppData\Local\VMware =>.VMware
O43 - CFD: 13/04/2018 - [] D -- C:\Users\GALIMA\AppData\Local\WhatsApp =>.WhatsApp
O43 - CFD: 02/11/2017 - [] D -- C:\Users\GALIMA\AppData\Local\WinZip =>.WinZip
O43 - CFD: 20/10/2017 - [] D -- C:\Users\GALIMA\AppData\Local\Xamarin =>.Xamarin
O43 - CFD: 02/05/2018 - [] D -- C:\Users\GALIMA\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 16/11/2017 - [] HD -- C:\Users\GALIMA\AppData\Local\ZwvkPMwvpe
O43 - CFD: 20/11/2017 - [] D -- C:\Users\GALIMA\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 02/05/2018 - [] D -- C:\Users\GALIMA\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 20/10/2017 - [] D -- C:\Users\GALIMA\AppData\LocalLow\Oracle =>.Oracle
O43 - CFD: 27/04/2018 - [] D -- C:\Users\GALIMA\AppData\LocalLow\uTorrent
O43 - CFD: 15/11/2017 - [] D -- C:\Users\GALIMA\Desktop\Adobe CS6 Master Collection
O43 - CFD: 19/01/2018 - [] D -- C:\Users\GALIMA\Desktop\Cdt
O43 - CFD: 16/04/2018 - [] D -- C:\Users\GALIMA\Desktop\conv
O43 - CFD: 30/04/2018 - [] RD -- C:\Users\GALIMA\Desktop\Perso
O43 - CFD: 16/02/2018 - [] RD -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 21/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory =>.FormatFactory
O43 - CFD: 26/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SQLite ODBC Driver =>.Legitimate
O43 - CFD: 20/03/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torrent2Exe
O43 - CFD: 26/04/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UmmyVideoDownloader =>.UmmyVideoDownloader
O43 - CFD: 13/04/2018 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp =>.WhatsApp
O43 - CFD: 21/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 17/10/2017 - [0] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinZip 21.5
O43 - CFD: 21/12/2017 - [] D -- C:\Users\GALIMA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xtreme Download Manager
O43 - CFD: 31/10/2017 - [] D -- C:\Users\Default\AppData\Local\Google =>.Google
O43 - CFD: 31/10/2017 - [] D -- C:\Users\Default User\AppData\Local\Google =>.Google
O43 - CFD: 20/03/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\AVAST Software =>.AVAST Software
O43 - CFD: 22/04/2018 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware
User empty folders CLSID founds (1). Clean with ZHPFix 'EmptyCLSID' command =>.SUP.Empty.CLSID

---\\ ShellIconOverlayIdentifiers (SIOI) (13) - 1s
O106 - SIOI: [ AccExtIco1] - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}. (. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco2] - {853B7E05-C47D-4985-909A-D0DC5C6D7303}. (. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco3] - {42D38F2E-98E9-4382-B546-E24E4D6D04BB}. (. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: Groove Explorer Icon Overlay 1 (GFS Unread Stub) [Groove Explorer Icon Overlay 1 (GFS Unread Stub)] - {99FD978C-D287-4F50-827F-B2C658EDA8E7}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2 (GFS Stub) [Groove Explorer Icon Overlay 2 (GFS Stub)] - {AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 2.5 (GFS Unread Folder) [Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)] - {920E6DB1-9907-4370-B3A0-BAFC03D81399}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 3 (GFS Folder) [Groove Explorer Icon Overlay 3 (GFS Folder)] - {16F3DD56-1AF5-4347-846D-7C10C4192619}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: Groove Explorer Icon Overlay 4 (GFS Unread Mark) [Groove Explorer Icon Overlay 4 (GFS Unread Mark)] - {2916C86E-86A6-43FE-8112-43ABE6BF8DCC}. (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (44) - 8s
O108 - CMH1: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension d'environnement Microsoft Securit.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows®
O108 - CMH1: FormatFactoryShell [64Bits] - {A3777921-CFD3-4A6B-89BF-08E6B95716E8} . (.Free Time - FormatFactory Shell Menu Module.) -- C:\Program Files (x86)\FormatFactory\ShellEx64_103.dll =>.Free Time
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de noyau pour le partage.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de noyau pour le partage.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH1: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\WZSHLS64.dll =>.Corel Corporation®
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d'environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH1: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH2: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\WZSHLS64.dll =>.Corel Corporation®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension d'environnement Microsoft Securit.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows®
O108 - CMH4: FormatFactoryShell [64Bits] - {A3777921-CFD3-4A6B-89BF-08E6B95716E8} . (.Free Time - FormatFactory Shell Menu Module.) -- C:\Program Files (x86)\FormatFactory\ShellEx64_103.dll =>.Free Time
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de noyau pour le partage.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: UltraISO [64Bits] - {AD392E40-428C-459F-961E-9B147782D099} . (.EZB Systems, Inc. - ISOShell.) -- C:\Program Files (x86)\UltraISO\isoshl64.dll =>.SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD.®
O108 - CMH4: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll
O108 - CMH4: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH4: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\WZSHLS64.dll =>.Corel Corporation®
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d'environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH4: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de noyau pour le partage.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d'environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH6: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (. - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution des applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH6: UltraISO [64Bits] - {AD392E40-428C-459F-961E-9B147782D099} . (.EZB Systems, Inc. - ISOShell.) -- C:\Program Files (x86)\UltraISO\isoshl64.dll =>.SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD.®
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- C:\Program Files\WinRAR\RarExt.dll
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH6: WinZip [64Bits] - {E0D79304-84BE-11CE-9641-444553540000} . (.WinZip Computing, S.L. - WinZip Shell Extension DLL.) -- C:\Program Files\WinZip\WZSHLS64.dll =>.Corel Corporation®
O108 - CMH6: XXX Groove GFS Context Menu Handler XXX [64Bits] - {6C467336-8281-4E60-8204-430CED96822D} . (.Microsoft Corporation - Microsoft SharePoint Workspace Extensions.) -- C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL =>.Microsoft Corporation®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension d'environnement Microsoft Securit.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de noyau pour le partage.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: UltraISO [64Bits] - {AD392E40-428C-459F-961E-9B147782D099} . (.EZB Systems, Inc. - ISOShell.) -- C:\Program Files (x86)\UltraISO\isoshl64.dll =>.SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD.®

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (18) - 1s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d’initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (83) - 31s
O58 - SDL:2017/09/29 13:41:02 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [107416] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [258592] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [131992] =>.Microsoft Windows®
O58 - SDL:2015/03/27 10:33:14 A . (.Broadcom Corporation. - Broadcom Bluetooth Firmware Download Filter.) -- C:\Windows\System32\drivers\bcbtums.sys [173312] =>.Broadcom Corporation®
O58 - SDL:2017/09/29 13:41:02 A . (. - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation
O58 - SDL:2017/09/29 13:40:59 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\Windows\System32\drivers\BCMWL63a.SYS [7585280] =>.Broadcom Corporation
O58 - SDL:2015/03/27 10:33:20 A . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter.) -- C:\Windows\System32\drivers\btwampfl.sys [188160] =>.Broadcom Corporation®
O58 - SDL:2017/09/29 13:41:01 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows®
O58 - SDL:2011/10/17 03:00:00 A . (.Sonic Solutions - CDR4 64-bit CD and DVD Place Holder Driver.) -- C:\Windows\System32\drivers\cdr4_xp.sys [10224] =>.Sonic Solutions®
O58 - SDL:2011/10/17 03:00:00 A . (.Sonic Solutions - CDRAL 64-bit Place Holder Driver (see PxHel.) -- C:\Windows\System32\drivers\cdralw2k.sys [10224] =>.Sonic Solutions®
O58 - SDL:2017/09/29 13:41:02 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\Windows\System32\drivers\cht4dx64.sys [141208] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\Windows\System32\drivers\cht4sx64.sys [357272] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\Windows\System32\drivers\cht4vx64.sys [1723288] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:01 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows®
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Tech. Co., Ltd. - HUAWEI USB Smart Card Driver.) -- C:\Windows\System32\drivers\ewdcsc.sys [32768] =>.Huawei Tech. Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - ew_hwupgrade Driver.) -- C:\Windows\System32\drivers\ew_hwupgrade.sys [22016] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys [117248] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - ew_jubusenum Driver.) -- C:\Windows\System32\drivers\ew_jubusenum.sys [90112] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - ew_jucdcacm Driver.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys [104448] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys [73216] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - ew_juextctrl Driver.) -- C:\Windows\System32\drivers\ew_juextctrl.sys [30720] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - ew_jucdcndis Driver.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys [229376] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/11/23 18:16:56 A . (.Huawei Technologies Co., Ltd. - Filter Driver.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys [13952] =>.Huawei Technologies Co., Ltd.
O58 - SDL:2017/09/29 13:41:02 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 13:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\Windows\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 13:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation
O58 - SDL:2017/09/29 13:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation
O58 - SDL:2017/09/29 13:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation
O58 - SDL:2017/09/29 13:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation
O58 - SDL:2017/09/29 13:41:01 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/09/29 13:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2017/09/29 13:41:03 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\Windows\System32\drivers\iaStorAV.sys [674200] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412056] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\Windows\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows®
O58 - SDL:2016/09/06 08:33:40 A . (.Lenovo. - Lenovo Power Management Driver.) -- C:\Windows\System32\drivers\ibmpmdrv.sys [82232] =>.LENOVO®
O58 - SDL:2016/05/03 23:30:46 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [3811288] =>.Intel(R) pGFX®
O58 - SDL:2015/08/21 11:50:48 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\Windows\System32\drivers\IntcDAud.sys [463112] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/07/12 18:40:14 A . (.Intel Corporation - HAXM_Driver.) -- C:\Windows\System32\drivers\IntelHaxm.sys [126064] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2015/12/01 19:46:03 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\Windows\System32\drivers\iwdbus.sys [38896] =>.Intel(R) Wireless Display®
O58 - SDL:2018/03/20 18:44:15 A . (...) -- C:\Windows\System32\drivers\lpsport.sys [61304] =>.AVG Technologies CZ, s.r.o.®
O58 - SDL:2017/09/29 13:41:02 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [108064] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2i.sys [123800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3i.sys [103320] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82840] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [59800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\MegaSas2i.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Mellanox - MLX4 Bus Driver.) -- C:\Windows\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows®
O58 - SDL:2017/11/23 18:16:56 A . (.DiBcom SA - DiBcom AVSTREAM BDA driver.) -- C:\Windows\System32\drivers\mod7700.sys [1001472] =>.DiBcom SA
O58 - SDL:2017/09/29 13:41:02 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\Windows\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows®
O58 - SDL:2017/09/07 13:04:48 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\Windows\System32\drivers\netaapl64.sys [23040] =>.Apple Inc.
O58 - SDL:2017/09/29 13:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166296] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2011/11/03 03:01:00 A . (.Rovi Corporation - Px Engine Device Driver for 64-bit Windows.) -- C:\Windows\System32\drivers\PxHlpa64.sys [56208] =>.Sonic Solutions®
O58 - SDL:2017/09/29 13:41:03 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\Windows\System32\drivers\rt640x64.sys [604160] =>.Realtek
O58 - SDL:2017/09/29 13:41:14 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\Windows\System32\drivers\rteth.sys [59904] =>.Realtek
O58 - SDL:2015/08/18 03:23:04 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) -- C:\Windows\System32\drivers\RtsPStor.sys [375536] =>.Realtek Semiconductor Corp®
O58 - SDL:2017/09/29 13:41:02 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows®
O58 - SDL:2015/10/25 13:25:30 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_AMDASF_Aux.sys [50808] =>.Synaptics Incorporated®
O58 - SDL:2015/10/25 13:25:30 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [51320] =>.Synaptics Incorporated®
O58 - SDL:2015/10/25 13:25:30 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel_Aux.sys [51320] =>.Synaptics Incorporated®
O58 - SDL:2016/09/05 05:47:06 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\Windows\System32\drivers\ssudbus.sys [131712] =>.Samsung Electronics CO., LTD.®
O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\Windows\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD®
O58 - SDL:2017/09/29 13:41:02 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows®
O58 - SDL:2015/10/25 13:25:42 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\Windows\System32\drivers\SynRMIHID_Aux.sys [65656] =>.Synaptics Incorporated®
O58 - SDL:2015/10/25 13:23:30 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\Windows\System32\drivers\SynTP.sys [636536] =>.Synaptics Incorporated®
O58 - SDL:2013/11/22 18:55:06 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tap0901.sys [40664] =>.OpenVPN Technologies, Inc.®
O58 - SDL:2016/01/19 22:50:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverW8x64.sys [202032] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2017/09/07 13:04:56 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] =>.Apple, Inc.
O58 - SDL:2015/09/03 14:38:36 A . (.Vimicro Corporation - VM0331 Digital Camera Driver.) -- C:\Windows\System32\drivers\vm331avs.sys [648872] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2017/09/29 13:41:02 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows®
O58 - SDL:2017/09/29 13:41:02 A . (.Mellanox - Kernel WinMad.) -- C:\Windows\System32\drivers\winmad.sys [32152] =>.Microsoft Windows®
O58 - SDL:2017/12/27 09:43:15 A . (...) -- C:\Windows\System32\drivers\Winmon.sys [9352] =>Trojan.Agent
O58 - SDL:2017/09/29 13:41:02 A . (.Mellanox - Kernel WinVerbs.) -- C:\Windows\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (3) - 217s
O61 - LFC: 2018/04/26 16:41:27 A . (..) -- C:\Users\GALIMA\AppData\Local\UmmyVideoDownloader\UmmyVideoDownloader.exe [12160728] {65FA5A5518239DCE52EB94EB}
O61 - LFC: 2018/04/26 16:40:32 A . (..) -- C:\Users\GALIMA\AppData\Local\UmmyVideoDownloader\unins000.exe [1253073]
O61 - LFC: 2018/04/26 16:39:54 A . (..) -- C:\Users\GALIMA\Downloads\UmmyVD_setup-[7f5825de8cdbe940bf88a9bbc41dbfeb#113#].exe [30111472] {65FA5A5518239DCE52EB94EB}

---\\ ASSOCIATION Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d’initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d’initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (2) - 6s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (50) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [270848] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1275904] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [984064] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [820224] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [144896] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109056] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [880640] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220160] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [407040] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [387584] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [108544] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [254976] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [194560] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1272320] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [795136] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1228800] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [46080] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1107968] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Infrared Monitor.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [930816] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [491520] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [601088] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsof® Windows(MC).) -- C:\Windows\System32\tapisrv.dll [307200] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2784256] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1345536] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [702464] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [779264] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [284672] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1143808] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1294848] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [951808] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1313792] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [387072] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [238080] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service de Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [308224] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [170496] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2223104] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [196096] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [132608] =>.Microsoft Corporation
O83 - Search Svchost Services: hns (hns) . (.Microsoft Corporation - Service de réseau hôte.) -- C:\Windows\System32\HostNetSvc.dll [1412096] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (25) - 8s
O87 - FAEL: "UDP Query User{3F8A871B-6ABB-4925-9630-67C6DA0D9082}C:\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{42F13158-6861-4734-9617-079537CAB4E7}C:\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{8F64F6EC-E11F-462F-A3A0-B20FA1498728}C:\uwamp\bin\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\uwamp\bin\apache\bin\httpd.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{EE6EC5D8-440F-4F28-A6BE-4DA1839B72C0}C:\uwamp\bin\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\uwamp\bin\apache\bin\httpd.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{176D348C-185A-4239-A805-272D141A94AD}C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{D1F5DDDA-4ECA-4136-AFAA-6469697CEBA8}C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\database\mysql-5.7.11\bin\mysqld.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{CB1A809C-E7A4-4F8A-980F-88DEC516A081}C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\apache\bin\httpd.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{C359F7EE-E3BE-4BC3-A523-D3B4D7605B8F}C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\users\galima\desktop\perso\outils\uwamp\uwamp\bin\apache\bin\httpd.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{8968131E-1439-4756-AC7E-DF00E6A52E92}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE (.not file.) =>.SUP.Orphan
O87 - FAEL: "{19EAA467-1D3E-471E-AA55-CF25D1866FE0}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE (.not file.) =>.SUP.Orphan
O87 - FAEL: "{35B4C82D-0DC1-4854-A5BD-7B47950CD1FF}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{2FDB3644-5AE0-4B64-86C7-C75BD3B1F44A}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\GALIMA\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{6A5F8D6D-2053-4595-A652-3AD39307A195}" [In-None-P6-TRUE] .(...) -- C:\Program Files\Docker\Docker\Resources\com.docker.proxy.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{03141374-75A0-43D6-9F6D-8FA5E65B6D56}C:\program files\docker\docker\resources\vpnkit.exe" [In-None-P6-TRUE] .(...) -- C:\program files\docker\docker\resources\vpnkit.exe
O87 - FAEL: "UDP Query User{A591FE8C-5ED6-4B32-9871-B96316FEFCA1}C:\program files\docker\docker\resources\vpnkit.exe" [In-None-P17-TRUE] .(...) -- C:\program files\docker\docker\resources\vpnkit.exe
O87 - FAEL: "{B2170902-7A53-4E70-A4FB-26CD1E23E3C5}" [In-None-P17-TRUE] .(...) -- C:\program files\docker\docker\resources\vpnkit.exe
O87 - FAEL: "{EF2653B1-FC23-4600-BA5D-9C7BA43BCF14}" [In-None-P6-TRUE] .(...) -- C:\program files\docker\docker\resources\vpnkit.exe
O87 - FAEL: "{4E95A24F-3782-4A71-9A8C-670286979D93}" [In-None-P6-TRUE] .(.http://www.torrent2exe.com - Torrent2Exe.) -- C:\Program Files\Torrent2Exe\T2E.exe
O87 - FAEL: "{926DF7EC-584C-44F0-893D-6E414A624FA0}" [In-None-P17-TRUE] .(.http://www.torrent2exe.com - Torrent2Exe.) -- C:\Program Files\Torrent2Exe\T2E.exe
O87 - FAEL: "{0ECC1DD5-04B0-46BF-8637-A7B1C8D218E7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{32B185E1-3D92-4264-B176-5A4EF819D194}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{0AF904AE-1889-49D7-9557-CFC43D058BF1}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{6B90C59E-FDB2-463E-B37E-57B1EC85A3D3}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{C6007BFD-E909-4693-AEA6-4DE904EB3A0D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®
O87 - FAEL: "{3C5021A7-1A2E-489F-B20A-BA3081470367}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\AnyDesk\AnyDesk.exe =>.philandro Software GmbH®

---\\ CODES PRODUITS LOGICIELS (26) - 1s
O90 - PUC: "0C020D9DE35B04A42BAF534D976606B1" [HKLM] . (.MSI to redistribute MS VS2010 CRT libraries.)
O90 - PUC: "10006159361190400100000000F01FEC" [HKLM] . (.SharePoint Client Components.)
O90 - PUC: "1370DD5A427C73043BB58B7028AAEC00" [HKLM] . (.DiagnosticsHub_CollectionService.)
O90 - PUC: "166F59DC4C5A5F446AAACEDD192C14F0" [HKLM] . (.WinZip 21.5.)
O90 - PUC: "20005159361190400100000000F01FEC" [HKLM] . (.SharePoint Client Components.)
O90 - PUC: "338A779B43775A148B02F1328DD18CB7" [HKLM] . (.KB4023057.)
O90 - PUC: "35825F8F7A1A7C240A28A5D68535BBB0" [HKLM] . (.VS JIT Debugger.)
O90 - PUC: "436F6625D7B77354DBCD89DDC6CFAB1A" [HKLM] . (.Online Application.) -- C:\WINDOWS\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}\online.exe =>.SUP.Microleaves
O90 - PUC: "48A1A90260A14594D937E756C4F5D8A7" [HKLM] . (.VS WCF Debugging.)
O90 - PUC: "4BB570A2679E8724FBF35E6C49D5480C" [HKLM] . (.bl.) -- C:\WINDOWS\Installer\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}\ARPPRODUCTICON.exe
O90 - PUC: "5979F581366931F4E99F03A782A2BDA5" [HKLM] . (.ph.) -- C:\WINDOWS\Installer\{185F9795-9663-4F13-9EF9-307A282ADB5A}\ARPPRODUCTICON.exe
O90 - PUC: "6B3AF9A4AD3B4EE45853719FEFE172A3" [HKLM] . (.Full Convert.) -- C:\WINDOWS\Installer\{4A9FA3B6-B3DA-4EE4-8535-17F9FE1E273A}\fullconvert.exe
O90 - PUC: "6E67EE534B7C3594592648FD5BA94FC0" [HKLM] . (.Visual F# 4.1 SDK.)
O90 - PUC: "70ADB2A871431C640985BC23CB363EE0" [HKLM] . (.VS Immersive Activate Helper.)
O90 - PUC: "77EAAEFBF7DB43542B68C9C54B96E71B" [HKLM] . (.PDF Settings CS6.)
O90 - PUC: "7BAE0071104874B4FAFE20FA4CF0B8DD" [HKLM] . (.vcpp_crt.redist.clickonce.)
O90 - PUC: "7C496B2DBF12C7E42B70BE1CBCE0AB97" [HKLM] . (.Composants requis pour SSDT .) -- C:\Windows\Installer\{D2B694C7-21FB-4E7C-B207-EBC1CB0EBA79}\ARPIco
O90 - PUC: "8A9DE3882673E1843A26A3B75EBCBE51" [HKLM] . (.IIS 10.0 Express.) -- C:\Windows\Installer\{883ED9A8-3762-481E-A362-3A7BE5CBEB15}\Icon_IisExpress
O90 - PUC: "97F84EE335D03EF46B1182D0E16B78A3" [HKLM] . (.MSI to redistribute MS VS2010 CRT libraries.)
O90 - PUC: "D2F1DC9686FD32E41980B10787F38255" [HKLM] . (.Workflow Manager Client 1.0.) -- C:\Windows\Installer\{69CD1F2D-DF68-4E23-9108-1B70783F2855}\ARPIcon
O90 - PUC: "D2FC174A27522784880A5D853B9C17CD" [HKLM] . (.Workflow Manager Client 1.0.) -- C:\Windows\Installer\{A471CF2D-2572-4872-88A0-D558B3C971DC}\ARPIcon
O90 - PUC: "E2654700698F49940968978FCBD80EC2" [HKLM] . (.vcpp_crt.redist.clickonce.)
O90 - PUC: "E7092D3E0FC33C74F926351AD2F249DE" [HKLM] . (.Visual F# 4.1 SDK.)
O90 - PUC: "F80554EDE9636744F89180F8943343E0" [HKLM] . (.UpdateAssistant.)
O90 - PUC: "9AC8D4457624E3F42AD5F1027A769755" [HKCU] . (.Xtreme Download Manager.) -- %APPDATA%\Microsoft\Installer\{544D8CA9-4267-4F3E-A25D-1F20A7677955}\_853F67D554F05449430E7E.exe
O90 - PUC: "9AC8D4457624E3F42AD5F1027A769755" [HKU] . (.Xtreme Download Manager.) -- %APPDATA%\Microsoft\Installer\{544D8CA9-4267-4F3E-A25D-1F20A7677955}\_853F67D554F05449430E7E.exe

---\\ PACKAGES WINDOWS INSTALLER (64) - 229s
[MD5.D72BF97587E243393C1B948A995F8FCA] [WIS][2017/10/20 12:57:35] (.Xamarin - Xamarin.Bonjour v1.0.13.) -- C:\Windows\Installer\1052b21b.msi [966656] =>.Xamarin
[MD5.BEE8CBCC37FA15585708964BA3187424] [WIS][2017/10/20 12:57:37] (.Xamarin - Xamarin PCL Profiles v1.0.9.) -- C:\Windows\Installer\1052b221.msi [827392] =>.Xamarin
[MD5.01FE0C1312121DA9B07291259598783A] [WIS][2017/10/20 13:33:22] (.Oracle Corporation - Java SE Development Kit 8 Update 131.) -- C:\Windows\Installer\10732dd9.msi [970752] =>.Oracle Corporation
[MD5.F197B6065399CA3AC9D1689B5971BE44] [WIS][2017/10/20 13:40:40] (.Oracle Corporation - Java SE Development Kit 8 Update 131 (64-bi.) -- C:\Windows\Installer\1079d816.msi [1212416] =>.Oracle Corporation
[MD5.25D3547DA03E4532C54FDBD10CA71810] [WIS][2018/04/26 08:57:58] (.Skype Technologies S.A. - Skype.) -- C:\Windows\Installer\15e63782.msi [45539328] =>.Skype Technologies S.A.
[MD5.BAB85911E99F454B8231466E33969F7C] [WIS][2017/11/02 11:18:13] (.Microleaves - Online Application.) -- C:\Windows\Installer\16a456.msi [2806272] =>.SUP.Microleaves
[MD5.86E2B390629665FBC20E06DFBF01A48F] [WIS][2017/12/19 09:36:28] (.Apple Inc. - [ProductName] Installer.) -- C:\Windows\Installer\18076497.msi [2732032] =>.Apple Inc.
[MD5.484BE36C04E189B5A0F66C40B1BA08F8] [WIS][2017/10/04 01:14:22] (.Intel Corporation - Intel(R) C++ Redistributables on Intel(R) 6.) -- C:\Windows\Installer\1a7608e7.msi [9863168] =>.Intel Corporation
[MD5.F7D042AECC9EBF1CC3DFBFDCB2D826EC] [WIS][2018/02/06 12:26:46] (.Oracle Corporation - Java SE Development Kit 8 Update 161.) -- C:\Windows\Installer\235c135f.msi [974848] =>.Oracle Corporation
[MD5.395783CE005FD0971E23A16EF7EBCA23] [WIS][2018/02/06 12:47:06] (.Oracle Corporation - Java SE Development Kit 8 Update 161 (64-bi.) -- C:\Windows\Installer\236ea537.msi [1220608] =>.Oracle Corporation
[MD5.0BE1C575AA2BE0AF25FEB2D40C5F4926] [WIS][2017/07/12 18:41:34] (.Intel Corporation - Intel® Hardware Accelerated Execution Manag.) -- C:\Windows\Installer\23757ea2.msi [1785856] =>.Intel Corporation
[MD5.F0EE2E7F283866A2A0FEA9BE2D12A979] [WIS][2017/11/14 14:29:36] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\3f00e910.msi [40960] =>.Google Inc.
[MD5.78B41A323699DAF1C25265890733BE26] [WIS][2012/04/15 04:48:02] (.Adobe.) -- C:\Windows\Installer\460824d6.msi [1997312] =>.Adobe
[MD5.E4AF16B0574B2598AADD353A35A3722B] [WIS][2012/04/15 04:48:02] (.Adobe.) -- C:\Windows\Installer\460824dc.msi [2211328] =>.Adobe
[MD5.5EE609A2EEC40D710274413D4DD40ABB] [WIS][2012/04/15 04:47:26] (.Adobe Systems Incorporated - PDF Settings CS6.) -- C:\Windows\Installer\460824fa.msi [2259968] =>.Adobe Systems Incorporated
[MD5.196C1593D5125203D8A7E874DBFA3176] [WIS][2012/04/15 04:48:04] (.InstallShield.) -- C:\Windows\Installer\46082502.msi [593408] =>.InstallShield
[MD5.108C5BD11E8A89108594525A03ADB716] [WIS][2012/04/15 04:48:04] (.InstallShield.) -- C:\Windows\Installer\46082506.msi [1436672] =>.InstallShield
[MD5.54D6526FBFA9EDA6BB680B960D570B99] [WIS][2017/12/27 11:10:56] (.Oracle Corporation - MySQL Installer - Community.) -- C:\Windows\Installer\4dcc34.msi [394584064] =>.Oracle Corporation
[MD5.487345178A328567C9AD26F6E0320EBB] [WIS][2017/09/13 23:54:20] (.Oracle Corporation - MySQL Database Server.) -- C:\Windows\Installer\4dcc38.msi [91381760] =>.Oracle Corporation
[MD5.89773C47E3F43D247182A9C0270C2BC5] [WIS][2017/02/06 12:53:52] (.Oracle Corporation - MySQL Workbench.) -- C:\Windows\Installer\4dcc3c.msi [29650944] =>.Oracle Corporation
[MD5.04E90B4DFC14BA7078223F28CF8356D2] [WIS][2016/07/30 00:45:42] (.Oracle - MySQL Notifier 1.1.7.) -- C:\Windows\Installer\4dcc40.msi [1650688] =>.Oracle
[MD5.B7676C1C24FA1751EA0D0CD5CC89F637] [WIS][2017/01/18 04:51:34] (.Oracle Corporation - MySQL Utilities 1.6.5 Installer.) -- C:\Windows\Installer\4dcc44.msi [4423680] =>.Oracle Corporation
[MD5.5CB0AA9399C6A67D21EBF82B58F64148] [WIS][2017/07/18 16:23:46] (.Oracle and/or its affiliates - MySQL Shell 1.0.10.) -- C:\Windows\Installer\4dcc48.msi [16330752] =>.Oracle and/or its affiliates
[MD5.D82DB1981C3AAD657B0147A78D80D5CE] [WIS][2017/06/27 14:46:42] (.Oracle Corporation - MySQL Router.) -- C:\Windows\Installer\4dcc4c.msi [2863104] =>.Oracle Corporation
[MD5.4A2AFF355DEAD58DAA78E561DEDB01DE] [WIS][2017/07/18 14:57:26] (.Oracle Corporation - MySQL Connector/ODBC.) -- C:\Windows\Installer\4dcc50.msi [8527872] =>.Oracle Corporation
[MD5.F789FA68CB58BA17AC439DADF42D65BD] [WIS][2017/05/11 07:00:24] (.Oracle and/or its affiliates - MySQL C++ Connector 1.1.9.) -- C:\Windows\Installer\4dcc54.msi [11591680] =>.Oracle and/or its affiliates
[MD5.0083C12BB5095D86EF336D1E0490C085] [WIS][2017/08/29 07:52:06] (.Oracle Corporation - MySQL Connector J.) -- C:\Windows\Installer\4dcc58.msi [6254592] =>.Oracle Corporation
[MD5.C7E42DDA591B1A0482F5AF32DA33E1A0] [WIS][2016/06/27 22:07:00] (.Oracle - MySQL Connector Net 6.9.9.) -- C:\Windows\Installer\4dcc5c.msi [8417280] =>.Oracle
[MD5.F81D7571E7FA4E519FF663A1E4605FDC] [WIS][2017/07/13 14:40:22] (.Oracle Corporation - MySQL Client Libraries and Tools.) -- C:\Windows\Installer\4dcc60.msi [7970816] =>.Oracle Corporation
[MD5.9C6F9524603A7F6B217D7FDB8167AF55] [WIS][2017/09/14 00:01:02] (.Oracle Corporation - MySQL Documents 5.7.) -- C:\Windows\Installer\4dcc64.msi [41795584] =>.Oracle Corporation
[MD5.46930A691F3FCBA9A325E096F843F4BC] [WIS][2017/09/14 00:06:38] (.Oracle Corporation - MySQL Examples and Samples 5.7.) -- C:\Windows\Installer\4dcc68.msi [856064] =>.Oracle Corporation
[MD5.62A34D7F59B62CC67A4A627001FE1CE4] [WIS][2017/10/18 10:14:02] (.Subhra Das Gupta.) -- C:\Windows\Installer\5704aa4.msi [13590528]
[MD5.12EA3DD671A16950439A429547844E1A] [WIS][2018/02/01 11:51:45] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\97ce5bb.msi [51113984] =>.Apple Inc.
[MD5.86D4E38DF3802125FE670A2E8BD5B82C] [WIS][2018/02/01 11:52:24] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\97ce601.msi [46137344] =>.Apple Inc.
[MD5.24E1B96B703E125A98774CCB8A1ED785] [WIS][2018/02/01 11:52:28] (.Apple Inc. - Apple Software Update Installer.) -- C:\Windows\Installer\97ce684.msi [3608576] =>.Apple Inc.
[MD5.5D3ABA1DB1E58B162D3B193B1778E917] [WIS][2018/02/01 11:55:08] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\Windows\Installer\97ce6c5.msi [14032896] =>.Apple Inc.
[MD5.770232DBED4BD0E47A2AAD43EA5B6991] [WIS][2018/02/01 11:57:29] (.Apple Inc. - iTunes Installer.) -- C:\Windows\Installer\97cfd44.msi [162029568] =>.Apple Inc.
[MD5.4C437779A6509CF619F2AEF048F7659E] [WIS][2017/12/26 13:50:09] (.The Firebird Project - MSI to redistribute VS2010 CRT libraries.) -- C:\Windows\Installer\9931df8.msi [589824] =>.The Firebird Project
[MD5.0B634E2D17FF27BC6962B4D90D061983] [WIS][2017/12/26 13:50:09] (.The Firebird Project - MSI to redistribute VS2010 CRT libraries.) -- C:\Windows\Installer\9931dfb.msi [577536] =>.The Firebird Project
[MD5.7460B6BF6EF90E243BF94F7C9802BE13] [WIS][2017/12/19 11:28:38] (.Spectral Core - Full Convert.) -- C:\Windows\Installer\9931dfe.msi [3215360]
[MD5.564069C6C31F9682D0099CA660E9A25F] [WIS][2017/10/17 11:48:10] (.Copyright (c) 1991-2017 Corel Corporation. All rights reserved. - WinZip Compression Utility.) -- C:\Windows\Installer\9fc755.msi [81838592]
[MD5.DBE91F23E6767A13E5057760E1A0446F] [WIS][2018/02/14 10:20:33] (.Oracle Corporation - MySQL Connector/ODBC.) -- C:\Windows\Installer\a72ae35.msi [2797056] =>.Oracle Corporation
[MD5.D1038CE4B919E199E81C7C9CCBC2B752] [WIS][2018/03/15 19:10:43] (.Google, Inc. - Backup and Sync from Google.) -- C:\Windows\Installer\e5ad628.msi [57098240] =>.Google, Inc.
[MD5.4A1DBEB5EA6A8912B8E01460D66D7DAA] [WIS][2011/05/24 16:27:26] (..) -- C:\Windows\Installer\1b3bbb.msp [60928]
[MD5.7DBC02A737F847DAB76F944569FF1688] [WIS][2007/07/14 23:17:16] (..) -- C:\Windows\Installer\1b3c3e.msp [50909696]
[MD5.4E3BED37901306A7E79B96609DB39E89] [WIS][2007/10/06 08:42:44] (..) -- C:\Windows\Installer\ec55c.msp [203264]
[MD5.8A5754B72FA4F7138D89E1F17C3946B3] [WIS][2008/10/17 15:32:50] (..) -- C:\Windows\Installer\ec56d.msp [1017856]
[MD5.55DDC5AA8B2C0D6120540BACD2401E7F] [WIS][2009/07/01 13:21:28] (..) -- C:\Windows\Installer\ec585.msp [8891904]
[MD5.E8F7E8FF5EAE5E626AC1266BB4850F5F] [WIS][2009/07/01 13:19:52] (..) -- C:\Windows\Installer\ec586.msp [10607104]
[MD5.74D6B9D3123A336BD27B6D4FEA6E887F] [WIS][2009/08/20 05:02:38] (..) -- C:\Windows\Installer\ec595.msp [5204992]
[MD5.B87F63EFCDB96173ABD55866514F1A64] [WIS][2009/07/23 15:36:02] (..) -- C:\Windows\Installer\ec5aa.msp [7497216]
[MD5.13C79372FA2CA72F15C2E31406FEB924] [WIS][2009/09/03 11:23:04] (..) -- C:\Windows\Installer\ec5b9.msp [626176]
[MD5.90367B9C8AA86A7B19F4D70CE5A49C7B] [WIS][2010/08/25 17:06:30] (..) -- C:\Windows\Installer\ec5c9.msp [6479360]
[MD5.F1C8682370B1874EDB939A70C5CBE5EB] [WIS][2010/11/12 11:42:32] (..) -- C:\Windows\Installer\ec5d8.msp [879616]
[MD5.3240D2D3AB5B0F136D42823210FEC96C] [WIS][2011/05/17 18:28:52] (..) -- C:\Windows\Installer\ec5e8.msp [6862848]
[MD5.23ECC2EB4B5A0061020049741AB987AB] [WIS][2012/09/26 14:03:58] (..) -- C:\Windows\Installer\ec5f8.msp [6063616]
[MD5.3D7E66F66C099A2210A45DF056DAED62] [WIS][2012/11/15 12:44:38] (..) -- C:\Windows\Installer\ec607.msp [43956736]
[MD5.4089D7EE9B04BB9EB586A8AF27FB3198] [WIS][2012/12/12 10:40:24] (..) -- C:\Windows\Installer\ec617.msp [6141440]
[MD5.5226330970BA90522D341E1663233CE7] [WIS][2013/06/18 07:15:50] (..) -- C:\Windows\Installer\ec627.msp [6696448]
[MD5.DE22BB56B351E2015121E10E7E35267A] [WIS][2013/08/06 09:55:42] (..) -- C:\Windows\Installer\ec637.msp [10988032]
[MD5.07384B09C4CA81F9BBBFBF3ADF14A04F] [WIS][2013/08/14 13:11:04] (..) -- C:\Windows\Installer\ec647.msp [6743040]
[MD5.152E6EC0B1AFBF0E74C533C46B08CF50] [WIS][2013/10/08 14:59:22] (..) -- C:\Windows\Installer\ec656.msp [627200]
[MD5.858E0288D15D122160EA2748581C7BAB] [WIS][2013/11/20 19:35:18] (..) -- C:\Windows\Installer\ec666.msp [6696448]
[MD5.593AC9C9A460D308281F68FE2C47C823] [WIS][2017/06/03 00:35:02] (..) -- C:\Windows\Installer\ec67c.msp [6668288]

---\\ RECHERCHE DE CLÉS DE REGISTRE Tracing (4) - 1s
HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASMANCS =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence

---\\ FEATURE CONTROLE. (48) - 0s
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController64.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:msoia.exe
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOXMLED.EXE
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController64.exe

---\\ SCAN ADDITIONNEL (47) - 81s
HKLM\SYSTEM\CurrentControlSet\Services\WinZip Smart Monitor Service =>.SUP.WinzipSystemUtilities
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\hidmnkjeakpobdmccbjcokkjgdafjcal =>PUP.Optional.MyWebSearch
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\lgfehfbnofiffladdncogfobimealokp =>Toolbar.Ask
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} =>.SUP.Microleaves
C:\Program Files\WinZip Smart Monitor =>.SUP.WinzipSystemUtilities
C:\ProgramData\KMSAuto =>HackTool.WinActivator
C:\ProgramData\Microleaves =>.SUP.Microleaves
C:\Users\GALIMA\AppData\Roaming\EpicNet Inc =>Adware.MSIL
C:\Users\GALIMA\AppData\Roaming\Microleaves =>.SUP.Microleaves
C:\Users\GALIMA\AppData\Local\AdService =>Trojan.Agent
C:\Users\GALIMA\AppData\Local\AdvinstAnalytics =>.SUP.Various
C:\Users\GALIMA\AppData\Local\MSfree Inc =>HackTool.WinActivator
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
C:\Windows\System32\drivers\Winmon.sys =>Trojan.Agent
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{645B33EA-39DB-47A1-A9B1-8CBE1093424D} =>Trojan.Dropper
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{341651E5-7E78-4F2C-8074-3CAE690DEC3C} =>Adware.MSIL
C:\WINDOWS\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}\online.exe =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Products\436F6625D7B77354DBCD89DDC6CFAB1A =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Features\436F6625D7B77354DBCD89DDC6CFAB1A =>.SUP.Microleaves
C:\Windows\Installer\16a456.msi =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceService_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceService_RASMANCS =>.SUP.ByteFence
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\002 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\013 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\015 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\016 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\017 =>.SUP.Temporary.Chrome
C:\Users\GALIMA\AppData\Local\Google\Chrome\User Data\Default\File System\018 =>.SUP.Temporary.Chrome

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (19) - 0s
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.WinzipSystemUtilities
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/12/17/adware-mywebsearch/ =>PUP.Optional.MyWebSearch
https://nicolascoolman.eu/2017/02/28/toolbar-ask/ =>Toolbar.Ask
https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.ProxyRestriction
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P)
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various
https://nicolascoolman.eu/2017/12/24/sup-microleaves/ =>.SUP.Microleaves
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/09/13/adware-msil/ =>Adware.MSIL
https://nicolascoolman.eu/2017/12/23/sup-magicbit/ =>.SUP.Magicbit
https://nicolascoolman.eu/2017/10/24/trojan-zusy/ =>Trojan.Zusy
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.Agent
https://nicolascoolman.eu/2017/11/29/le-format-clsid-registre-windows/ =>.SUP.Empty.CLSID
https://www.anti-malware.top/2016/09/07/trojan-dropper/ =>Trojan.Dropper
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome

~ Unselected Options: O82,
~ End of the scan, 23182 items in 17mn15s (1536)(0)

Publicité


Signaler le contenu de ce document

Publicité